Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
Nettitude Group
to client sites . You'll be part of a team delivering security consultancy in a client-facing role, with a primary focus on PCIDSS consultancy and assessments; however, there will also be opportunities to cover a breadth of other GRC related engagements: Security reviews against standards … or supporting third-party risk management and audit programmes Essential skills and experience: You are a current QSA who has completed multiple on-site PCIDSS assessments, and be able to demonstrate a mature understanding of complex PCIDSS environments, and an ability to consult as … sites, primarily in the UK, but with some opportunities for European and international travel; therefore, all candidates must be willing to travel when required PCIDSS assessment activities require on-site work, but most other work is delivered at least partly from home We can support working from more »
authentication solutions. - Plan for scalability, redundancy, and high availability to support future growth. IT Security & Compliance: - Ensure compliance with security and regulatory standards, including PCIDSS, Cyber Essentials+, DORA, and ISO 27001. - Implement and enforce security best practices across infrastructure automation and cloud environments. - Maintain accurate compliance documentation … including PCIDSS scope records and security policies. - Secure high-value and high-risk data, such as cardholder (PCI) and personally identifiable information (PII). Cloud & DevOps Integration (these tools and skills will be taught): - Implement and manage Infrastructure as Code (IaC) for cloud and on-premises … Cyber Essentials, NIST, ISO 27001). - In-depth understanding of network security and compliance in regulated environments. - Proven ability to secure high-value data (PCI cardholder data, PII) and implement security best practices. - Strong networking knowledge (LAN, WAN, DNS, DHCP, VPN, TCP/IP). - Proficiency in firewall and more »
Ely, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
IT Governance Limited, a GRC Solutions Company
Engagements: Work with clients of all merchant levels and service providers across various industries. Career Growth: Enhance your expertise with exposure to frameworks like PCIDSS, ISO27001, SWIFT CSF, and CIS18. Collaborative Culture: Join a team that values innovation, client success, and your professional development. Key Responsibilities: Conducting … comprehensive security assessments, including PCIDSS, ISO27001/27002, SWIFT Security, and Cloud compliance. Preparing executive and technical reports detailing findings, security gaps, and actionable recommendations. Leading PCIDSS Gap Assessments, Risk Assessments, and Reports on Compliance (ROCs) across various industries. Creating roadmaps for compliance, with … or exceeded. Supporting business development efforts by providing technical expertise during client discussions. Were looking for an experienced and proactive QSA Consultant with: Essential: PCI QSA certification, supported by one or more of the following: CISSP, CISA, CISM, or ISO27001 Lead Auditor + Lead Implementer certifications. Experience: Minimum more »
ll be doing: GRC Framework Development: Develop and implement a comprehensive GRC framework that aligns with industry standards such as ISO 27001, NIST CSF, PCI-DSS, and GDPR. Manage and update the information security policies, ensuring they are current and relevant to evolving risks. Ensure alignment with legal … Management: Lead internal and external audits for compliance certifications, ensuring successful completion with minimal business disruption. Manage the lifecycle of compliance initiatives such as PCI-DSS, GDPR, and other regional requirements affecting game development operations. Stay informed of industry trends and changes in regulations that may impact security … role within the gaming, technology, or software development industries. Proven experience in managing security policies, risk assessments, and compliance programs (such as ISO 27001, PCI-DSS, GDPR, etc.). Knowledge & Skills: Deep understanding of governance, risk, and compliance processes as they relate to game development. Strong knowledge of more »
audits, help implement aspects of ISO 27001, and engage in risk management. Furthermore, there is potential for growth into diverse fields such as PCIDSS, privacy, and business continuity. Essential experience and skills: Recognized ISO 27001 Lead Auditor qualification and certificate. Significant experience in auditing ISO 27001 based … of compliance programs. Desirable qualifications and experience: Information security qualifications such as CISSP, CISA, or CISM. Familiarity with GRC cloud-based systems. Experience of PCIDSS or a PCI QSA. Experience auditing SWIFT CSCF. Developing and providing training. Writing policies and technical documents. Managing a team or … clients across all sectors, which presents opportunities for both interesting work and career development. Dionach has leading industry certifications including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF, and ISO 27001, with a focus on improving customers’ security and developing people’s skills and qualifications. Dionach is always looking more »
Glasgow, Renfrewshire, United Kingdom Hybrid / WFH Options
Dionach Ltd
audits, help implement aspects of ISO 27001, and engage in risk management. Furthermore, there is potential for growth into diverse fields such as PCIDSS, privacy, and business continuity. Essential experience and skills: Recognized ISO 27001 Lead Auditor qualification and certificate. Significant experience in auditing ISO 27001 based … of compliance programs. Desirable qualifications and experience: Information security qualifications such as CISSP, CISA, or CISM. Familiarity with GRC cloud-based systems. Experience of PCIDSS or a PCI QSA. Experience auditing SWIFT CSCF. Developing and providing training. Writing policies and technical documents. Managing a team or … clients across all sectors, which presents opportunities for both interesting work and career development. Dionach has leading industry certifications including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF, and ISO 27001, with a focus on improving customers' security and developing people's skills and qualifications. Dionach is always looking more »
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Dionach Ltd
audits, help implement aspects of ISO 27001, and engage in risk management. Furthermore, there is potential for growth into diverse fields such as PCIDSS, privacy, and business continuity. Essential experience and skills: Recognized ISO 27001 Lead Auditor qualification and certificate. Significant experience in auditing ISO 27001 based … of compliance programs. Desirable qualifications and experience: Information security qualifications such as CISSP, CISA, or CISM. Familiarity with GRC cloud-based systems. Experience of PCIDSS or a PCI QSA. Experience auditing SWIFT CSCF. Developing and providing training. Writing policies and technical documents. Managing a team or … clients across all sectors, which presents opportunities for both interesting work and career development. Dionach has leading industry certifications including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF, and ISO 27001, with a focus on improving customers' security and developing people's skills and qualifications. Dionach is always looking more »
Haywards Heath, West Sussex, South East, United Kingdom Hybrid / WFH Options
Sanderson Recruitment
risk and compliance. Key responsibilities You'll play a key part in the implementation and maintenance of established control frameworks such as ISO27001 and PCI-DSS and other relevant security frameworks, including the creation of policies standards and other documentation. You'll lead the governance, oversight and assurance … cloud security. Experience and expertise in Azure environment security, vulnerability management and associated processes. Detailed knowledge of Information Security frameworks and standards, in particular PCI-DSS and ISO27001. Proven track record of undertaking control assurance reviews against best practice standards and identifying gaps. Suitable qualifications, e.g. CRISC, CISM more »
risks, streamline processes, and enhance service delivery across business units. 4. Risk and Compliance Management Ensure IAM practices adhere to regulatory standards, including GDPR, PCI-DSS, and internal governance frameworks. Implement controls to manage third-party access risks and protect sensitive systems and data. Continuously evaluate and mitigate … systems integrators and managed service providers. Risk Management: Proficiency in managing risks related to privileged access, third-party access, and regulatory compliance (e.g., GDPR, PCI-DSS). Collaboration: Strong interpersonal skills with a proven ability to bridge gaps between IT, InfoSec, and business units. Desirable Skills Experience with more »
with Teleperformance’s global security standards and best practices. The role will also ensure operational adherence and certification, where applicable, to standards such as PCI-DSS, ISO27001, and Cyber Essentials Plus. You will drive change through innovation and best practices while maintaining commercial awareness for overall cost management … practices. Scripting and Automation: Proficiency in scripting languages like Python, PowerShell, or Bash. Proficient with industry wide security standards, privacy, and framework such as PCI-DSS, CE/CE+, GDPR etc. Non-Technical Skills: Leadership: Proven ability to lead and inspire a team. Communication: Excellent verbal and written more »
City, Edinburgh, United Kingdom Hybrid / WFH Options
STATE STREET CORPORATION
to ensure effective cryptographic key lifecycle management. Oversee the daily operations and security of cryptographic key management, ensuring compliance with financial industry regulations (e.g., PCIDSS, GDPR, FIPS 140-2/3). Drive the secure generation, storage, distribution, rotation, revocation, and retirement of encryption keys across cloud … with enterprise key management solutions (AWS KMS, Azure Key Vault, HashiCorp Vault, OCI KMS). Familiarity with financial security regulations and standards, such as PCIDSS, FIPS 140-2/3, and NIST guidelines. Security certifications such as CISM, CISSP, CCSP, and AWS Security Specialty. Experience with post more »
Braintree, Essex, United Kingdom Hybrid / WFH Options
Sycurio
and technical specifications for development teams through Jira tickets. Conduct gap analysis between current and future-state payment architectures. Ensure compliance with regulatory requirements (PCI-DSS, etc.) in all payment processes. Functional Architecture & Payment Integration Define and document end-to-end payment transaction workflows, system integrations, and API … major PSPs (e.g., Stripe, Adyen, Worldpay, PayPal, Braintree, etc.). Solid understanding of RESTful APIs, SOAP, JSON, XML, and payment gateway protocols. Knowledge of PCI-DSS compliance, PSD2, 3D Secure (3DS), tokenization, and fraud prevention measures. Familiarity with cloud platforms (AWS) and microservices-based architectures. Proficiency in using more »
Subject Access Requests, including providing guidance and documentation on the legal basis for each process. Ensuring compliance with legislation/standards such as GDPR, PCIDSS etc. What We Are Looking For? 5 years in an information Security role including Information Security Management. Not Highly Technical: The ideal … in the context of the UK market. Self-sufficient, can work autonomously without support in a standalone role. Detailed knowledge of GDPR legislation and PCIDSS framework. Experience managing audits against frameworks such as CIS, NIST or similar along with implementation of ISO27001 is beneficial/advantageous. Company more »
Leatherhead, Surrey, United Kingdom Hybrid / WFH Options
Hamilton Barnes Associates Limited
generous RRSP. Want to be part of a team that thrives in excellence? Feel free to reach out and apply today! Responsibilities: Manage the PCI-DSS (and other) Compliance Manage the SOC and IR Teams and Mature the SOC Capability Build the various security teams and develop their … skills as necessary Improve the Information Security Process and Procedures Stay on top of cyber trends and changes Skills/Must have: Compliance expert - PCI-DSS, GDPR, NIST etc MUST be bilingual Experience managing and improving general Cyber Security posture Vulnerability Management and Risk Management experience Experience managing more »
Responsibilities Development and implementation of security standards, policies, and processes aligned to industry best practice. Ensuring compliance with legislation/standards such as GDPR, PCIDSS etc. Management of external Information and Cyber security partners, including audits and assessments. Lead and manage cybersecurity projects, ensuring completion to deadlines … within a similar Information Security Management role. Experience managing an ISMS (policy, procedures, Risk Management, Information Governance etc.) Detailed knowledge of GDPR legislation and PCIDSS framework. Experience managing audits against frameworks such as CIS, NIST or similar. Ability to work with initiative, requiring minimum supervision. Excellent time more »
scale our Azure-based infrastructure for cost efficiency and reliability, whilst leaning on our Group Infrastructure team Strengthen security policies and ensure compliance with PCIDSS and other standards Implement DevOps best practices, CI/CD pipelines and infrastructure-as-code (IaC). Leadership & Strategic Impact Bridge the … and Azure Experience with AI/ML-driven automation (a plus!) Deep understanding of APIs, microservices, and scalable architectures Knowledge of security, compliance, and PCIDSS standards A strategic thinker who also enjoys solving technical challenges A strong communicator who can bridge technical and non-technical teams A more »
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Robert Half
modelling techniques. API integration and Security techniques. Experience working with Information security frameworks and compliance standards (e.g. ISO27001, Cyber Essentials Plus, NIST, SOC2 and PCI-DSS). Good understanding of the Data Protection Act/General Data Protection Regulation. Comfortable working outside of core working hours, and travelling more »
Cheadle, Cheshire, United Kingdom Hybrid / WFH Options
Cloud Online Recruitment
penetration testing and ethical hacking. Ability to manage security budgets and vendor relationships. Experience with IT governance and compliance frameworks (e.g., ISO 27001, SOX, PCIDSS). Opportunities for professional development and certifications. A dynamic and collaborative work environment. more »
penetration testing and ethical hacking. Ability to manage security budgets and vendor relationships. Experience with IT governance and compliance frameworks (e.g., ISO 27001, SOX, PCIDSS). Opportunities for professional development and certifications. A dynamic and collaborative work environment. #J-18808-Ljbffr more »
AWS, Azure, GCP) and securing hybrid environments. Experience in security operations, threat intelligence, and forensic analysis . Knowledge of regulatory compliance requirements (GDPR, HIPAA, PCI-DSS, etc.). Strong analytical and problem-solving skills with the ability to assess complex security risks. Excellent communication and leadership skills to more »
improve SIEM configurations to adapt to emerging threats. Guide clients in aligning SIEM deployments with security frameworks such as NIST, ISO 27001, GDPR, HIPAA, PCIDSS . Provide strategic guidance on data retention policies and SIEM optimisation. Deployment: Defining project scope, timelines, and budgets, assigning tasks to team … SIEM. Strong knowledge of log management, security analytics, and threat detection methodologies. Experience in security compliance frameworks such as NIST, ISO 27001, GDPR, and PCI DSS. Nice to Have: Previous experience leading SIEM migration projects or working with hybrid cloud security environments. Certifications in any of the following would more »
technologies from the Microsoft technology stack. Compliance and Regulatory Alignment Manage and monitor compliance with relevant regulations and industry standards, such as GDPR, HIPAA, PCI-DSS, and SOX. Lead and prepare for internal and external security audits, documenting compliance status and remediation efforts. Security Operations Lead the team more »
providing governance and oversight across the business to manage security risks effectively. Key Responsibilities: Implement and maintain security control frameworks such as ISO27001 and PCI-DSS. Lead governance, oversight, and assurance on technical security controls and design. Act as an Information Security consultant, ensuring security standards are met in … Ability to translate security frameworks and standards into detailed control requirements. Experience conducting assurance reviews and identifying security gaps. In-depth understanding of ISO27001, PCI-DSS, and other security frameworks. Strong communication skills, able to explain complex technical concepts to non-technical audiences. Excellent stakeholder management and relationship more »
providing governance and oversight across the business to manage security risks effectively. Key Responsibilities: Implement and maintain security control frameworks such as ISO27001 and PCI-DSS. Lead governance, oversight, and assurance on technical security controls and design. Act as an Information Security consultant, ensuring security standards are met in … Ability to translate security frameworks and standards into detailed control requirements. Experience conducting assurance reviews and identifying security gaps. In-depth understanding of ISO27001, PCI-DSS, and other security frameworks. Strong communication skills, able to explain complex technical concepts to non-technical audiences. Excellent stakeholder management and relationship more »