Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
21/08/2026
Full time
Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
Information Security & Assurance Officer Salary: up to £50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
21/08/2026
Full time
Information Security & Assurance Officer Salary: up to £50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
Role Overview The Technology & Data Risk Manager is a new second line of defence role within the Risk Directorate, responsible for providing independent oversight, assurance and expert challenge across technology, data, cyber security, and related operational risks. Reporting to the Head of Technical Risk and Data Protection Officer, the role supports the effective management of technology and data risks by ensuring first line teams identify, assess and mitigate risks in line with Nest's risk appetite while enabling the organisation to deliver its strategic objectives securely and efficiently.Working across the organisation, the role promotes strong risk management practices, providing expert challenge on technology, data protection, information security, and third-party risk matters. It plays a key role in strengthening governance, embedding a strong data protection and security culture, and supporting compliance with regulatory requirements and recognised standards, includingUK GDPR, the Data Protection Act 2018 and ISO 27001.The Technology & Data Risk Manager also helps the organisation anticipate and respond to emerging risks and opportunities, including developments in artificial intelligence, evolving cyber threats, and third-party dependencies. Through effective stakeholder engagement, assurance activity and risk reporting, the role contributes to maintaining a resilient, compliant, and well-controlled technology and data environment across Nest. The minimum criteria for this role are: Essential Sound knowledge of information security and data risk domains (access control, vulnerability management, logging and monitoring, incident response, secure development etc). Experience in technology, data, security, or technical risk management including control frameworks such as ISO 27001 and NIST, ideally within a regulated or complex organisation. Strong understanding of second line assurance and oversight, including how to challenge constructively while remaining independent. Experience of assessing third-party technical risk. Desirable Experience with product security and secure SDLC assurance. Knowledge of AI risk, data ethics or emerging technology governance. Working knowledge of UK GDPR and the Data Protection Act 2018. Knowledge of threat intelligence, vulnerability disclosure, and security testing approaches. Relevant professional certifications (e.g. CISM, CISSP, ISO 27001 LI/LA, CRISC, ITIL). Don't worry if you think you don't have all the key skills, it might be worth taking the few minutes to apply as we're good at spotting potential. At Nest, you'll have access to a range of learning opportunities to learn, grow and build the skills you need to be successful in your role and career. Flexible and agile working Everyone's personal situation is different.To make the most out of hybrid working, we've introduced different ways of working, which include (subject to role requirements): hybrid of office (Canary Wharf, London) and home working (there will be an expectation to attend the office, once - twice a week, or more, as required) vary working hours Directorate/Department Overview The Technical Risk team sits within the Risk Directorate, along with Risk, Risk Assurance, Risk Operations and Regulatory Risk, and Controls Oversight. The directorate supports the business in delivering its strategic priorities by overseeing that risk and controls are identified, prioritised and managed through an enterprise risk management framework. Nest operates a 'three lines of defence' model, with Risk sitting in the second line providing advice, guidance and challenge to the first line.The Technical Risk team provides support to Nest specifically in relation to risks covering data, privacy, technology, cyber and financial crime. Support includes conducting investigations, regulatory reporting as well as training and awareness across Nest Corporation. Organisational Overview Nest is an award-winning workplace pension scheme, the largest in the country. Set up by the government to give every worker in the UK somewhere to save, our first-class responsible investment practice and governance are the backbone of what we do, supported by all the functions you'd expect to find in a thriving business. We're committed to creating a workplace where you can be your authentic self and offer an inclusive and flexible working environment. Diversity, Equity and Inclusion Everyone is welcome to apply for our roles, and we are determined to ensure that no applicant or employee receives less favourable treatment because of their age, disability, gender identity, marital status, national origin, pregnancy or caring responsibilities, race, religion/belief, sex, sexual orientation or socio economic background.We also recognise the importance of diversity of thought and other forms of neurocognitive variation.Nest is a Disability Confident Leader, which is the highest level of the Disability Confident Scheme. If you have a disability, please declare that you're applying through the scheme. We aim to offer an interview to those applicants who apply through the Disability Confident Scheme and best meet the minimum criteria. However, there may be some circumstances where this is not possible due to the volume of applications.Please note that this advert may close early if we receive a sufficient number of satisfactory applications. If you have any difficulty in sending your application or need the application pack in an alternative format, or you require any reasonable adjustments please contact: .
15/08/2026
Full time
Role Overview The Technology & Data Risk Manager is a new second line of defence role within the Risk Directorate, responsible for providing independent oversight, assurance and expert challenge across technology, data, cyber security, and related operational risks. Reporting to the Head of Technical Risk and Data Protection Officer, the role supports the effective management of technology and data risks by ensuring first line teams identify, assess and mitigate risks in line with Nest's risk appetite while enabling the organisation to deliver its strategic objectives securely and efficiently.Working across the organisation, the role promotes strong risk management practices, providing expert challenge on technology, data protection, information security, and third-party risk matters. It plays a key role in strengthening governance, embedding a strong data protection and security culture, and supporting compliance with regulatory requirements and recognised standards, includingUK GDPR, the Data Protection Act 2018 and ISO 27001.The Technology & Data Risk Manager also helps the organisation anticipate and respond to emerging risks and opportunities, including developments in artificial intelligence, evolving cyber threats, and third-party dependencies. Through effective stakeholder engagement, assurance activity and risk reporting, the role contributes to maintaining a resilient, compliant, and well-controlled technology and data environment across Nest. The minimum criteria for this role are: Essential Sound knowledge of information security and data risk domains (access control, vulnerability management, logging and monitoring, incident response, secure development etc). Experience in technology, data, security, or technical risk management including control frameworks such as ISO 27001 and NIST, ideally within a regulated or complex organisation. Strong understanding of second line assurance and oversight, including how to challenge constructively while remaining independent. Experience of assessing third-party technical risk. Desirable Experience with product security and secure SDLC assurance. Knowledge of AI risk, data ethics or emerging technology governance. Working knowledge of UK GDPR and the Data Protection Act 2018. Knowledge of threat intelligence, vulnerability disclosure, and security testing approaches. Relevant professional certifications (e.g. CISM, CISSP, ISO 27001 LI/LA, CRISC, ITIL). Don't worry if you think you don't have all the key skills, it might be worth taking the few minutes to apply as we're good at spotting potential. At Nest, you'll have access to a range of learning opportunities to learn, grow and build the skills you need to be successful in your role and career. Flexible and agile working Everyone's personal situation is different.To make the most out of hybrid working, we've introduced different ways of working, which include (subject to role requirements): hybrid of office (Canary Wharf, London) and home working (there will be an expectation to attend the office, once - twice a week, or more, as required) vary working hours Directorate/Department Overview The Technical Risk team sits within the Risk Directorate, along with Risk, Risk Assurance, Risk Operations and Regulatory Risk, and Controls Oversight. The directorate supports the business in delivering its strategic priorities by overseeing that risk and controls are identified, prioritised and managed through an enterprise risk management framework. Nest operates a 'three lines of defence' model, with Risk sitting in the second line providing advice, guidance and challenge to the first line.The Technical Risk team provides support to Nest specifically in relation to risks covering data, privacy, technology, cyber and financial crime. Support includes conducting investigations, regulatory reporting as well as training and awareness across Nest Corporation. Organisational Overview Nest is an award-winning workplace pension scheme, the largest in the country. Set up by the government to give every worker in the UK somewhere to save, our first-class responsible investment practice and governance are the backbone of what we do, supported by all the functions you'd expect to find in a thriving business. We're committed to creating a workplace where you can be your authentic self and offer an inclusive and flexible working environment. Diversity, Equity and Inclusion Everyone is welcome to apply for our roles, and we are determined to ensure that no applicant or employee receives less favourable treatment because of their age, disability, gender identity, marital status, national origin, pregnancy or caring responsibilities, race, religion/belief, sex, sexual orientation or socio economic background.We also recognise the importance of diversity of thought and other forms of neurocognitive variation.Nest is a Disability Confident Leader, which is the highest level of the Disability Confident Scheme. If you have a disability, please declare that you're applying through the scheme. We aim to offer an interview to those applicants who apply through the Disability Confident Scheme and best meet the minimum criteria. However, there may be some circumstances where this is not possible due to the volume of applications.Please note that this advert may close early if we receive a sufficient number of satisfactory applications. If you have any difficulty in sending your application or need the application pack in an alternative format, or you require any reasonable adjustments please contact: .
Our client, a well-established provider of housing and community services, is looking for a Director of IT & Data to join their Senior Leadership Team. This is a senior, board-facing role, reporting to the Chief Finance Officer, leading a function of between 33-35 (2 direct reports) with budget responsibility of over 2.0m. The role Set and deliver the technology, data and performance strategy across the organisation Own cyber security strategy, with regular audits and testing Set the architecture roadmap and lead change/release management across IT services Lead supplier relationships and negotiations for hardware and software Ensure compliance with IT and data protection legislation Deliver a company-wide data strategy, covering governance and data quality Lead the Business Intelligence function and support adoption of the UK Housing Data Standard Develop a performance management framework, including KPI tracking Build a business intelligence and analysis framework to support strategy and forecasting Drive continuous improvement methodology (e.g. Lean, Six Sigma) to improve productivity and cut costs Coach and develop your team, building a culture of accountability and trust Present to the Board and relevant committees on performance and major projects What you'll need Experience leading high-performing teams and managing IT, Data and Performance functions Previous Director-level experience in a similar role Degree level education, or equivalent experience Experience with Power BI and related reporting technology ITIL or CoBIT certification (or equivalent) PRINCE2 certification (or equivalent) Strong analytical and communication skills, with confidence influencing senior stakeholders If this sounds like the right next step for you, apply today or get in touch with our client's team to find out more. James Andrews is acting as an employment agency and business in relation to this role. At James Andrews Recruitment Solutions we try to respond to all applications personally, however, due to the high volume of applications this is not always possible. If you have not heard back from us within 72 hours, please assume that your application has been unsuccessful on this occasion. Don't forget our recommendation scheme: Recommend a friend or colleague to us and receive up to 100 each once they have completed 20 days in a role via James Andrews! Terms and conditions apply, contact us for details.
13/08/2026
Full time
Our client, a well-established provider of housing and community services, is looking for a Director of IT & Data to join their Senior Leadership Team. This is a senior, board-facing role, reporting to the Chief Finance Officer, leading a function of between 33-35 (2 direct reports) with budget responsibility of over 2.0m. The role Set and deliver the technology, data and performance strategy across the organisation Own cyber security strategy, with regular audits and testing Set the architecture roadmap and lead change/release management across IT services Lead supplier relationships and negotiations for hardware and software Ensure compliance with IT and data protection legislation Deliver a company-wide data strategy, covering governance and data quality Lead the Business Intelligence function and support adoption of the UK Housing Data Standard Develop a performance management framework, including KPI tracking Build a business intelligence and analysis framework to support strategy and forecasting Drive continuous improvement methodology (e.g. Lean, Six Sigma) to improve productivity and cut costs Coach and develop your team, building a culture of accountability and trust Present to the Board and relevant committees on performance and major projects What you'll need Experience leading high-performing teams and managing IT, Data and Performance functions Previous Director-level experience in a similar role Degree level education, or equivalent experience Experience with Power BI and related reporting technology ITIL or CoBIT certification (or equivalent) PRINCE2 certification (or equivalent) Strong analytical and communication skills, with confidence influencing senior stakeholders If this sounds like the right next step for you, apply today or get in touch with our client's team to find out more. James Andrews is acting as an employment agency and business in relation to this role. At James Andrews Recruitment Solutions we try to respond to all applications personally, however, due to the high volume of applications this is not always possible. If you have not heard back from us within 72 hours, please assume that your application has been unsuccessful on this occasion. Don't forget our recommendation scheme: Recommend a friend or colleague to us and receive up to 100 each once they have completed 20 days in a role via James Andrews! Terms and conditions apply, contact us for details.
Our client is seeking an experienced and immediately available Interim Chief Information Security Officer (CISO) to provide strategic and operational cyber security leadership during a critical phase of security and risk maturity. This is an excellent opportunity for a seasoned security leader who has operated within complex, highly regulated, research-led, public sector or mission-driven environments. Experience across sectors such as Higher Education, Charity, Research & Development, Scientific Research, Government, Not-for-Profit, Public Sector or Similar Organisations would be highly advantageous. The successful candidate will be responsible for leading and enhancing the organisation's cyber security capability across operational security, governance, risk management, cyber assurance, security strategy and stakeholder engagement. The organisation currently operates within a managed SOC environment, and the incoming CISO will be expected to maximise the effectiveness of existing security operations while driving strategic improvements across the wider security function. Key Responsibilities Provide executive leadership for the information and cyber security function. Develop and execute a pragmatic cyber security strategy aligned to business and organisational objectives. Lead cyber governance, risk management and security assurance activities. Oversee operational security capabilities, including management of a third-party SOC and associated security providers. Establish and maintain effective security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure compliance with relevant regulatory, legal and governance requirements. Provide expert guidance on emerging threats, vulnerabilities and cyber risk exposure. Collaborate with technology, data protection, risk and business leaders to embed security across the organisation. Required Experience Previous experience operating as a CISO, Interim CISO, Head of Cyber Security, Director of Information Security or equivalent senior leadership role. Demonstrable experience leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical and non-technical audiences. Proven ability to influence executive leadership and board-level stakeholders. Experience operating within complex, federated, research-led or highly regulated environments. If this sounds of interest please share you profile for more information, If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
10/08/2026
Contractor
Our client is seeking an experienced and immediately available Interim Chief Information Security Officer (CISO) to provide strategic and operational cyber security leadership during a critical phase of security and risk maturity. This is an excellent opportunity for a seasoned security leader who has operated within complex, highly regulated, research-led, public sector or mission-driven environments. Experience across sectors such as Higher Education, Charity, Research & Development, Scientific Research, Government, Not-for-Profit, Public Sector or Similar Organisations would be highly advantageous. The successful candidate will be responsible for leading and enhancing the organisation's cyber security capability across operational security, governance, risk management, cyber assurance, security strategy and stakeholder engagement. The organisation currently operates within a managed SOC environment, and the incoming CISO will be expected to maximise the effectiveness of existing security operations while driving strategic improvements across the wider security function. Key Responsibilities Provide executive leadership for the information and cyber security function. Develop and execute a pragmatic cyber security strategy aligned to business and organisational objectives. Lead cyber governance, risk management and security assurance activities. Oversee operational security capabilities, including management of a third-party SOC and associated security providers. Establish and maintain effective security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure compliance with relevant regulatory, legal and governance requirements. Provide expert guidance on emerging threats, vulnerabilities and cyber risk exposure. Collaborate with technology, data protection, risk and business leaders to embed security across the organisation. Required Experience Previous experience operating as a CISO, Interim CISO, Head of Cyber Security, Director of Information Security or equivalent senior leadership role. Demonstrable experience leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical and non-technical audiences. Proven ability to influence executive leadership and board-level stakeholders. Experience operating within complex, federated, research-led or highly regulated environments. If this sounds of interest please share you profile for more information, If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Job Title: Data Protection Admin Assistant Location: Home-based Salary: £30,000 - £35,000 Hours: Monday Friday, 40 hours per week (8.30am 5.00pm) Contract Type: Permanent About the Role To provide administrative and operational support to the Data Protection Officer, ensuring the organisation remains compliant with data protection legislation and internal policies. This role requires prior experience in a data protection or compliance environment, with a solid understanding of GDPR and related regulations. Key Responsibilities Provide administrative support to the Data Protection Officer, including documentation, reporting, and record keeping Support compliance with GDPR, the UK Data Protection Act, and related legislation Manage and track Data Subject Access Requests (DSARs), ensuring timely responses Maintain data breach logs and support investigations and regulatory reporting Assist with Data Protection Impact Assessments (DPIAs) and risk assessments Coordinate data protection training and maintain accurate training records Act as a first point of contact for internal data protection and privacy queries Support audits, policy updates, and wider compliance reporting Required Skills Good understanding of GDPR and the Data Protection Act 2018 (PECR desirable) Knowledge of key GDPR principles (Article 5) and lawful bases for processing (Article 6) Understanding of core data protection concepts including Data Controller, Data Processor, Special Category data, and Criminal Offence data Awareness of DSARs, data breaches, Privacy Notices, and individual rights requests Understanding of DPIAs and Records of Processing Activities (RoPA) Awareness of the ICO and its regulatory role Strong attention to detail and ability to maintain accurate records Strong organisational skills with ability to manage multiple priorities Confident communication skills and stakeholder engagement Ability to handle confidential and sensitive data appropriately Benefits 25 days annual leave plus bank holidays Health membership with cashback on health services and retail/fitness discounts Life cover 4% employer and 4% employee pension contribution Laptop, phone, and equipment provided as required Employee Assistance Programme (EAP) Employee referral scheme Additional Information The successful candidate will be required to undergo a satisfactory DBS check relevant to the requirements of the role. Please only apply for this role if you have the relevant experience required. To find out more about the role, please contact Kerrie Collett on (phone number removed), or submit your application today.
07/08/2026
Full time
Job Title: Data Protection Admin Assistant Location: Home-based Salary: £30,000 - £35,000 Hours: Monday Friday, 40 hours per week (8.30am 5.00pm) Contract Type: Permanent About the Role To provide administrative and operational support to the Data Protection Officer, ensuring the organisation remains compliant with data protection legislation and internal policies. This role requires prior experience in a data protection or compliance environment, with a solid understanding of GDPR and related regulations. Key Responsibilities Provide administrative support to the Data Protection Officer, including documentation, reporting, and record keeping Support compliance with GDPR, the UK Data Protection Act, and related legislation Manage and track Data Subject Access Requests (DSARs), ensuring timely responses Maintain data breach logs and support investigations and regulatory reporting Assist with Data Protection Impact Assessments (DPIAs) and risk assessments Coordinate data protection training and maintain accurate training records Act as a first point of contact for internal data protection and privacy queries Support audits, policy updates, and wider compliance reporting Required Skills Good understanding of GDPR and the Data Protection Act 2018 (PECR desirable) Knowledge of key GDPR principles (Article 5) and lawful bases for processing (Article 6) Understanding of core data protection concepts including Data Controller, Data Processor, Special Category data, and Criminal Offence data Awareness of DSARs, data breaches, Privacy Notices, and individual rights requests Understanding of DPIAs and Records of Processing Activities (RoPA) Awareness of the ICO and its regulatory role Strong attention to detail and ability to maintain accurate records Strong organisational skills with ability to manage multiple priorities Confident communication skills and stakeholder engagement Ability to handle confidential and sensitive data appropriately Benefits 25 days annual leave plus bank holidays Health membership with cashback on health services and retail/fitness discounts Life cover 4% employer and 4% employee pension contribution Laptop, phone, and equipment provided as required Employee Assistance Programme (EAP) Employee referral scheme Additional Information The successful candidate will be required to undergo a satisfactory DBS check relevant to the requirements of the role. Please only apply for this role if you have the relevant experience required. To find out more about the role, please contact Kerrie Collett on (phone number removed), or submit your application today.
Search for an exact word or phrase "search query" Use quotes to search for an exact word or set of words. Search for either word query OR query If you want to search for jobs that may have just one of several words, include OR (capitalized) between the words. Without the OR, your results would typically show only jobs that match both terms. Exclude a word NOT query Add a NOT before a word to exclude all results that include that word. Include a "fill in the blank" query query Use an asterisk ( ) within a query as a placeholder for any unknown or "wildcard" terms. Use Ctrl (Command on Mac) to Select Multiple Use Ctrl (Command on Mac) to Select Multiple Central Services Support Assistant - Education - Colchester Full-Time GSL Education are seeking an organised and proactive Central Services Support Assistant, School Administrator, Education Administrator, Office Administrator, Business Support Administrator, Finance Administrator, Reception Administrator, Administrative Assistant, or School Office Administrator to join a welcoming education organisation based in Colchester. This is an excellent opportunity for an experienced administrator looking to develop their career within the education sector while supporting the day-to-day operations of a specialist SEND organisation. You will work closely with senior leaders and central services to provide high-quality administrative, financial, and business support, ensuring the smooth running of the organisation. The role offers a varied workload, including finance administration, purchase orders, invoice processing, reception duties, record management, meeting administration, and supporting wider outreach and project activities. If you are an experienced School Administrator, Office Administrator, Business Support Officer, Administrative Assistant, Finance Assistant, Receptionist, Office Coordinator, School Receptionist, Education Administrator, or Customer Service Administrator, we would love to hear from you. You will have opportunities for professional development while supporting a busy education office through: Financial administration including purchase orders, invoices and payments Front of house reception and visitor management General office administration and document management Meeting coordination and minute taking Supporting outreach, project administration and data tracking Maintaining confidential records and ensuring GDPR compliance Providing excellent customer service to staff, parents, visitors and external professionals As a Central Services Support Assistant, you will play a key role in supporting the efficient running of the organisation. You will work collaboratively with senior leaders, finance teams, school staff and external agencies to ensure high standards of administration, communication and operational support are maintained. Central Services Support Assistant - Education - Colchester Position: Central Services Support Assistant Location: Colchester Contract Type: Full-time Fixed-Term Responsibilities: Provide high-quality administrative support across central services Process purchase orders, invoices, payments and financial records accurately Support finance administration and maintain accurate documentation Act as front of house, welcoming visitors and handling telephone and email enquiries Maintain electronic records, filing systems and confidential information Organise meetings, prepare documentation and record meeting minutes Support outreach services, project administration and tracking documents Ensure compliance with safeguarding, GDPR and organisational procedures Work collaboratively with senior leaders and colleagues to deliver an efficient administrative service Qualifications and Skills: Previous experience as a School Administrator, Education Administrator, Office Administrator, Business Support Administrator, Finance Administrator, Receptionist, or similar administrative role Strong organisational skills with excellent attention to detail Experience working within a busy education, school or office environment Confident using Microsoft Office and administrative systems Excellent communication and interpersonal skills Ability to manage multiple priorities and meet deadlines Knowledge of safeguarding, confidentiality and GDPR Experience processing financial transactions, invoices or purchase orders is desirable What We Offer: Competitive daily pay rates of £130-£140 per day A supportive and collaborative education environment Ongoing CPD, administrative training and career progression opportunities The opportunity to work within a specialist education setting supporting children and young people with SEND A varied and rewarding role where no two days are the same This is an excellent opportunity for an organised and motivated administrator to make a real difference within education. You'll play an important role in supporting the smooth running of central services while helping to create positive outcomes for children and young people through outstanding administrative support. Please be advised that this role requires a strong knowledge and understanding of safeguarding and child protection. Successful applicants must satisfy all background safer recruitment checks, including an Enhanced DBS on the Update Service.
06/08/2026
Full time
Search for an exact word or phrase "search query" Use quotes to search for an exact word or set of words. Search for either word query OR query If you want to search for jobs that may have just one of several words, include OR (capitalized) between the words. Without the OR, your results would typically show only jobs that match both terms. Exclude a word NOT query Add a NOT before a word to exclude all results that include that word. Include a "fill in the blank" query query Use an asterisk ( ) within a query as a placeholder for any unknown or "wildcard" terms. Use Ctrl (Command on Mac) to Select Multiple Use Ctrl (Command on Mac) to Select Multiple Central Services Support Assistant - Education - Colchester Full-Time GSL Education are seeking an organised and proactive Central Services Support Assistant, School Administrator, Education Administrator, Office Administrator, Business Support Administrator, Finance Administrator, Reception Administrator, Administrative Assistant, or School Office Administrator to join a welcoming education organisation based in Colchester. This is an excellent opportunity for an experienced administrator looking to develop their career within the education sector while supporting the day-to-day operations of a specialist SEND organisation. You will work closely with senior leaders and central services to provide high-quality administrative, financial, and business support, ensuring the smooth running of the organisation. The role offers a varied workload, including finance administration, purchase orders, invoice processing, reception duties, record management, meeting administration, and supporting wider outreach and project activities. If you are an experienced School Administrator, Office Administrator, Business Support Officer, Administrative Assistant, Finance Assistant, Receptionist, Office Coordinator, School Receptionist, Education Administrator, or Customer Service Administrator, we would love to hear from you. You will have opportunities for professional development while supporting a busy education office through: Financial administration including purchase orders, invoices and payments Front of house reception and visitor management General office administration and document management Meeting coordination and minute taking Supporting outreach, project administration and data tracking Maintaining confidential records and ensuring GDPR compliance Providing excellent customer service to staff, parents, visitors and external professionals As a Central Services Support Assistant, you will play a key role in supporting the efficient running of the organisation. You will work collaboratively with senior leaders, finance teams, school staff and external agencies to ensure high standards of administration, communication and operational support are maintained. Central Services Support Assistant - Education - Colchester Position: Central Services Support Assistant Location: Colchester Contract Type: Full-time Fixed-Term Responsibilities: Provide high-quality administrative support across central services Process purchase orders, invoices, payments and financial records accurately Support finance administration and maintain accurate documentation Act as front of house, welcoming visitors and handling telephone and email enquiries Maintain electronic records, filing systems and confidential information Organise meetings, prepare documentation and record meeting minutes Support outreach services, project administration and tracking documents Ensure compliance with safeguarding, GDPR and organisational procedures Work collaboratively with senior leaders and colleagues to deliver an efficient administrative service Qualifications and Skills: Previous experience as a School Administrator, Education Administrator, Office Administrator, Business Support Administrator, Finance Administrator, Receptionist, or similar administrative role Strong organisational skills with excellent attention to detail Experience working within a busy education, school or office environment Confident using Microsoft Office and administrative systems Excellent communication and interpersonal skills Ability to manage multiple priorities and meet deadlines Knowledge of safeguarding, confidentiality and GDPR Experience processing financial transactions, invoices or purchase orders is desirable What We Offer: Competitive daily pay rates of £130-£140 per day A supportive and collaborative education environment Ongoing CPD, administrative training and career progression opportunities The opportunity to work within a specialist education setting supporting children and young people with SEND A varied and rewarding role where no two days are the same This is an excellent opportunity for an organised and motivated administrator to make a real difference within education. You'll play an important role in supporting the smooth running of central services while helping to create positive outcomes for children and young people through outstanding administrative support. Please be advised that this role requires a strong knowledge and understanding of safeguarding and child protection. Successful applicants must satisfy all background safer recruitment checks, including an Enhanced DBS on the Update Service.
Thomson Reuters is seeking an experienced Privacy Operations Manager to join our General Counsel's Office. Reporting to the Chief Privacy Officer, this role presents an exciting opportunity to operationalize our global privacy program across Thomson Reuters. This role will lead a team of privacy operations specialists and be responsible for implementing privacy policies, managing day-to-day privacy operations, and ensuring compliance with global data protection and cybersecurity regulations including regional (GDPR, NIS2, Digital Services/Markets Act), federal (PIPEDA, UK GDPR), U.S. State (CCPA), provincial (Quebec's Law 25) and sectoral (HIPAA, GLBA, FedRamp, CJIS, etc.) privacy regulation, and other applicable data protection laws. This role will also manage the operational aspects of cyber incident management, coordinate incident response activities and ensuring effective execution of the organization's cyber incident response processes. The ideal candidate will bridge the gap between privacy law, technology and strategy, working cross-functionally to embed privacy practices throughout the organization and drive automation, leveraging the use of AI and other tools to operationalize privacy compliance across products, services and functions. About the Role In this opportunity as a Privacy Operations Manager, you will lead: Privacy Program Management Oversee the day-to-day operations of Thomson Reuters' global privacy program Implement privacy policies, procedures, and operational frameworks Conduct or facilitate the conduct of risk assessments, including - privacy impact assessments (PIAs) data protection impact assessments (DPIAs), transfer impact assessments (TIAs) Coordinate responses to data subject access requests (DSARs) and ensure timely resolution Track and report on privacy program metrics and KPIs Privacy Compliance & Risk Management Track and report changes in new/existing privacy regulations and monitor compliance with key regulations including GDPR, CCPA, PIPEDA, among others Build out and maintain data inventory, and data mapping initiatives Identify privacy risks and work with stakeholders to implement mitigation strategies Support privacy incident response and breach notification processes Conduct privacy audits and assessments of internal processes and third-party vendors Cyber Incident Management Support the day-to-day operational execution of the cyber incident response program, including intake, triage, and escalation of security incidents with privacy implications Support cross-functional co-ordination with Information Security, IT, Legal, and Business teams during active incidents to ensure timely containment, remediation, and communication Support legal assessment of incidents to determine breach notification obligations under applicable privacy and data protection regulations, and drive timely notification to affected individuals and regulators Maintain and continuously improve incident response playbooks, runbooks, and operational procedures for cyber incidents Privacy-by-Design and Cross-Functional Collaboration Partner with Legal, Information Security, IT, Product, and Business teams to integrate and operationalize privacy-by-design principles and guidance into the product development cycle. Serve as a privacy subject matter expert and advisor to business units Facilitate privacy training and awareness programs for employees Work with vendors and partners to ensure contractual privacy obligations are met Identify current sub-processor's and updating contractual documentation to reflect current state Documentation & Reporting Maintain records of processing activities (ROPA) and privacy documentation
06/08/2026
Full time
Thomson Reuters is seeking an experienced Privacy Operations Manager to join our General Counsel's Office. Reporting to the Chief Privacy Officer, this role presents an exciting opportunity to operationalize our global privacy program across Thomson Reuters. This role will lead a team of privacy operations specialists and be responsible for implementing privacy policies, managing day-to-day privacy operations, and ensuring compliance with global data protection and cybersecurity regulations including regional (GDPR, NIS2, Digital Services/Markets Act), federal (PIPEDA, UK GDPR), U.S. State (CCPA), provincial (Quebec's Law 25) and sectoral (HIPAA, GLBA, FedRamp, CJIS, etc.) privacy regulation, and other applicable data protection laws. This role will also manage the operational aspects of cyber incident management, coordinate incident response activities and ensuring effective execution of the organization's cyber incident response processes. The ideal candidate will bridge the gap between privacy law, technology and strategy, working cross-functionally to embed privacy practices throughout the organization and drive automation, leveraging the use of AI and other tools to operationalize privacy compliance across products, services and functions. About the Role In this opportunity as a Privacy Operations Manager, you will lead: Privacy Program Management Oversee the day-to-day operations of Thomson Reuters' global privacy program Implement privacy policies, procedures, and operational frameworks Conduct or facilitate the conduct of risk assessments, including - privacy impact assessments (PIAs) data protection impact assessments (DPIAs), transfer impact assessments (TIAs) Coordinate responses to data subject access requests (DSARs) and ensure timely resolution Track and report on privacy program metrics and KPIs Privacy Compliance & Risk Management Track and report changes in new/existing privacy regulations and monitor compliance with key regulations including GDPR, CCPA, PIPEDA, among others Build out and maintain data inventory, and data mapping initiatives Identify privacy risks and work with stakeholders to implement mitigation strategies Support privacy incident response and breach notification processes Conduct privacy audits and assessments of internal processes and third-party vendors Cyber Incident Management Support the day-to-day operational execution of the cyber incident response program, including intake, triage, and escalation of security incidents with privacy implications Support cross-functional co-ordination with Information Security, IT, Legal, and Business teams during active incidents to ensure timely containment, remediation, and communication Support legal assessment of incidents to determine breach notification obligations under applicable privacy and data protection regulations, and drive timely notification to affected individuals and regulators Maintain and continuously improve incident response playbooks, runbooks, and operational procedures for cyber incidents Privacy-by-Design and Cross-Functional Collaboration Partner with Legal, Information Security, IT, Product, and Business teams to integrate and operationalize privacy-by-design principles and guidance into the product development cycle. Serve as a privacy subject matter expert and advisor to business units Facilitate privacy training and awareness programs for employees Work with vendors and partners to ensure contractual privacy obligations are met Identify current sub-processor's and updating contractual documentation to reflect current state Documentation & Reporting Maintain records of processing activities (ROPA) and privacy documentation
About us Want to shape the future of AI led transformation? So do we. At Optima Partners, we connect business context, advanced analytics and engineering rigour to help organisations solve their most complex challenges and deliver measurable outcomes at speed. Founded in 2013 and headquartered in Edinburgh, Optima is an AI and data consultancy specialising in transformation across Financial Services & Insurance, Energy, Telecoms and Life Sciences. Backed by significant recent investment from Growth Capital Partners (GCP), we are entering an exciting new phase of growth. This funding accelerates our expansion, strengthens our service and innovation propositions, and enables further investment in our people, technology and client delivery capabilities. As a result, we are looking to appoint a Technical Growth Director who can bring deep engineering credibility to client conversations, stand alongside our sector partners in front of CTOs and Chief Data Officers, and help turn technical confidence into signed, outcome-based work. The role This role is for a credible engineering leader who has built and run the kinds of platforms our clients are trying to create. You will be able to hold detailed architecture and delivery conversations with senior technical stakeholders, while helping sector partners move opportunities from interesting capability to funded engagement. This is not a role that owns client relationships from a standing start, and it is not a classic pre-sales or account management role. Sector partners build the relationships and pipeline; your job is to provide the technical credibility that helps them win and close qualified opportunities. As a Technical Growth Director, you will support sector partners and delivery leads across two regulated, technically demanding sectors, energy and financial services. You will join client conversations at the point where technical authority can move a deal forward, shape realistic solutions, and support opportunities through to signed engagements. You will work closely with sector partners, delivery leads and outstanding technical talent across Optima, bringing deep expertise in cloud-native platforms, data engineering, ML/AI and regulated-industry delivery. Operating confidently with CTOs, Chief Data Officers, Heads of Data and Heads of Engineering, you will help translate technical capability into investment cases, commercial propositions and outcome-based programmes of work. Your role will include: Supporting sector partners in converting and closing qualified opportunities and pipeline Leading technical conversations with CTOs, Chief Data Officers, Heads of Data, Heads of Engineering and equivalent stakeholders Building trust through depth of engineering, architecture and delivery experience Translating complex technical capability - including cloud-native platforms, data science, ML/AI and event-driven architectures - into investment cases and outcome-based propositions Owning technical input into proposals, scoping and commercial framing Positioning Optima as an outcomes-focused delivery partner rather than a time-and-materials augmentation provider Bringing deep, current expertise in cloud-native and serverless data platforms, including AWS, Databricks, Snowflake and/or BigQuery Applying regulated-industry delivery experience across data governance, platform resilience, audit and compliance constraints Representing Optima at industry events and through thought leadership that reinforces technical credibility in energy and financial services Mentoring technical teams who are interested in growing with Optima Partners about you You are an experienced engineering or technical practice leader with strong credibility across software engineering, data engineering, cloud-native platforms and modern AI-enabled delivery. You are hands on enough to architect credibly under questioning, while also able to frame complex technical decisions in commercial and outcome-led terms. As a natural collaborator, you work effectively alongside sector partners, delivery leads and technical teams. You are comfortable operating at both ends of the conversation: detailed technical design with engineering teams and outcome-led narrative with commercial sponsors. You build trust with senior client technology leaders through depth, clarity and practical delivery judgment. Essential Extensive experience in software and/or data engineering, with significant time in engineering leadership or practice leadership roles such as Engineering Manager, Principal Consultant, Head of Engineering or CTO Track record of building and scaling cloud-native, serverless platforms in regulated industries Ability to discuss architecture decisions in detail and assess technical trade-offs credibly Working knowledge across major cloud and data platforms including AWS, Databricks, Snowflake and Big Query Deep data engineering and platform credibility, with a working understanding of data science, generative AI and agentic AI Exposure to NBA/personalisation engines, churn or customer treatment platforms, or agentic AI use cases Direct experience in UK energy, such as smart metering, MHHS, HEMS, DERMS, demand side flexibility or energy trading, and/or financial services data, risk, regulatory reporting or trading platforms Demonstrable experience converting technical credibility into commercial outcomes, such as growing an account, leading a competitive pursuit or owning a technical service line P&L Strong stakeholder management and the ability to hold a credible, technically grounded position with senior client technology leaders What we offer Competitive base salary Access to company discretionary bonus in addition to client growth incentive plan. Up to 37 days holiday Private medical insurance Group life and income protection Salary sacrifice Pension Scheme
06/08/2026
Full time
About us Want to shape the future of AI led transformation? So do we. At Optima Partners, we connect business context, advanced analytics and engineering rigour to help organisations solve their most complex challenges and deliver measurable outcomes at speed. Founded in 2013 and headquartered in Edinburgh, Optima is an AI and data consultancy specialising in transformation across Financial Services & Insurance, Energy, Telecoms and Life Sciences. Backed by significant recent investment from Growth Capital Partners (GCP), we are entering an exciting new phase of growth. This funding accelerates our expansion, strengthens our service and innovation propositions, and enables further investment in our people, technology and client delivery capabilities. As a result, we are looking to appoint a Technical Growth Director who can bring deep engineering credibility to client conversations, stand alongside our sector partners in front of CTOs and Chief Data Officers, and help turn technical confidence into signed, outcome-based work. The role This role is for a credible engineering leader who has built and run the kinds of platforms our clients are trying to create. You will be able to hold detailed architecture and delivery conversations with senior technical stakeholders, while helping sector partners move opportunities from interesting capability to funded engagement. This is not a role that owns client relationships from a standing start, and it is not a classic pre-sales or account management role. Sector partners build the relationships and pipeline; your job is to provide the technical credibility that helps them win and close qualified opportunities. As a Technical Growth Director, you will support sector partners and delivery leads across two regulated, technically demanding sectors, energy and financial services. You will join client conversations at the point where technical authority can move a deal forward, shape realistic solutions, and support opportunities through to signed engagements. You will work closely with sector partners, delivery leads and outstanding technical talent across Optima, bringing deep expertise in cloud-native platforms, data engineering, ML/AI and regulated-industry delivery. Operating confidently with CTOs, Chief Data Officers, Heads of Data and Heads of Engineering, you will help translate technical capability into investment cases, commercial propositions and outcome-based programmes of work. Your role will include: Supporting sector partners in converting and closing qualified opportunities and pipeline Leading technical conversations with CTOs, Chief Data Officers, Heads of Data, Heads of Engineering and equivalent stakeholders Building trust through depth of engineering, architecture and delivery experience Translating complex technical capability - including cloud-native platforms, data science, ML/AI and event-driven architectures - into investment cases and outcome-based propositions Owning technical input into proposals, scoping and commercial framing Positioning Optima as an outcomes-focused delivery partner rather than a time-and-materials augmentation provider Bringing deep, current expertise in cloud-native and serverless data platforms, including AWS, Databricks, Snowflake and/or BigQuery Applying regulated-industry delivery experience across data governance, platform resilience, audit and compliance constraints Representing Optima at industry events and through thought leadership that reinforces technical credibility in energy and financial services Mentoring technical teams who are interested in growing with Optima Partners about you You are an experienced engineering or technical practice leader with strong credibility across software engineering, data engineering, cloud-native platforms and modern AI-enabled delivery. You are hands on enough to architect credibly under questioning, while also able to frame complex technical decisions in commercial and outcome-led terms. As a natural collaborator, you work effectively alongside sector partners, delivery leads and technical teams. You are comfortable operating at both ends of the conversation: detailed technical design with engineering teams and outcome-led narrative with commercial sponsors. You build trust with senior client technology leaders through depth, clarity and practical delivery judgment. Essential Extensive experience in software and/or data engineering, with significant time in engineering leadership or practice leadership roles such as Engineering Manager, Principal Consultant, Head of Engineering or CTO Track record of building and scaling cloud-native, serverless platforms in regulated industries Ability to discuss architecture decisions in detail and assess technical trade-offs credibly Working knowledge across major cloud and data platforms including AWS, Databricks, Snowflake and Big Query Deep data engineering and platform credibility, with a working understanding of data science, generative AI and agentic AI Exposure to NBA/personalisation engines, churn or customer treatment platforms, or agentic AI use cases Direct experience in UK energy, such as smart metering, MHHS, HEMS, DERMS, demand side flexibility or energy trading, and/or financial services data, risk, regulatory reporting or trading platforms Demonstrable experience converting technical credibility into commercial outcomes, such as growing an account, leading a competitive pursuit or owning a technical service line P&L Strong stakeholder management and the ability to hold a credible, technically grounded position with senior client technology leaders What we offer Competitive base salary Access to company discretionary bonus in addition to client growth incentive plan. Up to 37 days holiday Private medical insurance Group life and income protection Salary sacrifice Pension Scheme
Salary: Six Figure base + Bonus + benefits Summary: Our client is solutions pioneer to securely and rapidly address challenges such as data privacy compliance automation, data protection and data operations on Salesforce. CFO Role: Building a global financial strategy Acting as Administrator of all subsidiaries Providing strategic recommendations to the CEO and steering committee Managing the processes for financial forecasting and budgets, and overseeing the preparation of all financial reporting Advising on long-term business and financial planning Being responsible for financial audits (internal/external) Establishing and developing relations with senior management, external partners and stakeholders Providing leadership, direction and management of the Finance department Reviewing all formal Finance, HR, Legal and IT related procedures Skills and Experience: Must have recent and significant experience as a Chief Financial Officer at a technology company with MRR such as SaaS, Cloud, hosting, etc. Must have international experience. This is an international company with offices in the United States, France and Australia. It is multi-cultural and entrepreneurial. Ideal candidates will speak French and English fluently and be sensitive to other cultures. Must be a CFO with extended capabilities. Must be able to take over responsibility for Finance, Accounting, HR, and Legal. Need someone who is very strategic, analytical, and collaborative. Must be able to take responsibility for financial analysis and making sure they have the best budgeting system in place. Someone that will validate the numbers. Must be very good at strategic planning and analysis. Ability to create and execute the plan to increase profitability and reduce costs. Must have significant experience creating and executing an overall corporate plan including budgeting, financial analysis, M&A, corporate strategy, and accounting to help the company grow revenues. Must have significant experience packaging and presenting financial and company information to board members and potential investors. You will be someone with strong customer presentation skills including PowerPoint is required. Also, business and revenue modeling with Excel is required. The new CFO must ensure compliance with both U.S., French and Australian regulations. Must have significant equity fund raising experience in the venture capital and private equity arena including investor relations. Must be someone who enjoys the entrepreneurial atmosphere of a small company but has been through the experience of scaling up an enterprise to significant organization size and revenues. The ideal candidates will have gone through the high growth and scalability issues of a startup or high growth stage company AND worked at a Fortune 500 company. Please send CV and cover letter to
04/08/2026
Full time
Salary: Six Figure base + Bonus + benefits Summary: Our client is solutions pioneer to securely and rapidly address challenges such as data privacy compliance automation, data protection and data operations on Salesforce. CFO Role: Building a global financial strategy Acting as Administrator of all subsidiaries Providing strategic recommendations to the CEO and steering committee Managing the processes for financial forecasting and budgets, and overseeing the preparation of all financial reporting Advising on long-term business and financial planning Being responsible for financial audits (internal/external) Establishing and developing relations with senior management, external partners and stakeholders Providing leadership, direction and management of the Finance department Reviewing all formal Finance, HR, Legal and IT related procedures Skills and Experience: Must have recent and significant experience as a Chief Financial Officer at a technology company with MRR such as SaaS, Cloud, hosting, etc. Must have international experience. This is an international company with offices in the United States, France and Australia. It is multi-cultural and entrepreneurial. Ideal candidates will speak French and English fluently and be sensitive to other cultures. Must be a CFO with extended capabilities. Must be able to take over responsibility for Finance, Accounting, HR, and Legal. Need someone who is very strategic, analytical, and collaborative. Must be able to take responsibility for financial analysis and making sure they have the best budgeting system in place. Someone that will validate the numbers. Must be very good at strategic planning and analysis. Ability to create and execute the plan to increase profitability and reduce costs. Must have significant experience creating and executing an overall corporate plan including budgeting, financial analysis, M&A, corporate strategy, and accounting to help the company grow revenues. Must have significant experience packaging and presenting financial and company information to board members and potential investors. You will be someone with strong customer presentation skills including PowerPoint is required. Also, business and revenue modeling with Excel is required. The new CFO must ensure compliance with both U.S., French and Australian regulations. Must have significant equity fund raising experience in the venture capital and private equity arena including investor relations. Must be someone who enjoys the entrepreneurial atmosphere of a small company but has been through the experience of scaling up an enterprise to significant organization size and revenues. The ideal candidates will have gone through the high growth and scalability issues of a startup or high growth stage company AND worked at a Fortune 500 company. Please send CV and cover letter to
Location Hybrid Brixton, UK Hybrid working with one regular weekly day at our office space in Brixton, London. Salary Starting from £42,500 (GBP) Seniority Mid-level Closing: 11:59pm, 26th Aug 2026 BST Job Description Who we are Chefs in Schools is a young, ambitious charity that's rapidly growing. Our mission is to improve kids' health, through improving school food & food education. We focus our efforts in areas of high socio-economic deprivation, where more than a third of children are entitled to free school meals, and diet-related disease is driving further inequality. We support and train school kitchen teams to serve the best, freshest and tastiest food possible, alongside meaningful food education. We share learning and resources, aiming to inspire and enable others to follow our lead. We're backed by some of the biggest names in food and have ambitious targets to ensure every child has access to incredible school food and food education, setting them up for life with the skills and knowledge to feed themselves well. About you and the role As our Digital Manager, you will be the strategic anchor, quality guardian, and operational driving force behind our online presence. You will fully own the performance of our two primary websites: the main Chefs in Schools (CIS) platform and the complex, public-facing School Food Project (SFP) national resource and coalition hub. You will be directly accountable for driving traffic, mastering SEO, maintaining exceptional content quality, and ensuring a seamless, highly secure user experience against clear, measurable targets. This is a leadership role that bridges technical execution and creative strategy. You will act as the crucial, confident link between our external technical agencies (who build and maintain the infrastructure of the sites) and our internal content creators and programme teams. Crucially, you will be an empowering manager, leading a dedicated digital sub team of 1-2 direct reports, supporting them to manage day-to-day content workflows, e-learning administration, and community moderation. We are looking for someone solutions-focused, collaborative, and deeply analytical who takes pride in helping a high-profile, mission-driven organization run at its absolute best. Key responsibilities 1. Website Ownership & Performance Management Own the overarching strategy and performance of our two flagship websites (CIS and SFP), optimizing UX and UI for user journeys, design, and maximum accessibility standards across both sites. Own and maintain a forward-looking, prioritized digital platform roadmap, striking a strategic balance between long-term feature development and agile, day-to-day reactive requests. Ensure both platforms-particularly the highly visible, national School Food Project website-maintain the highest standards of data security, uptime, quality assurance, and accessibility, proactively managing risks associated with public scrutiny. Take end-to-end ownership of web analytics and data integrity-from configuring custom event tracking to reporting on performance-utilizing Google Analytics 4 (GA4) for quantitative metrics and Microsoft Clarity for behavioral insights. Set, monitor, and report against clear performance targets spanning web traffic, user engagement, resource downloads, and search rankings. Lead content and platform feature reviews through a risk mitigation lens-ensuring strict compliance with safeguarding, privacy, and coalition guidelines-while running targeted A/B tests to optimize user experience. Lead on Search Engine Optimization (SEO) strategy to maximize organic reach and connect school leaders, chefs, and partners to our resources. Establish and manage digital incident response protocols, defining clear workflows for first responders, triage steps, and escalation pathways in the event of site outages, technical bugs, or security breaches. 2. Agency & Supplier Management Act as the primary, confident technical interface with our external web development agencies and tech suppliers, holding them accountable to high-quality delivery. Translate internal program, comms, and membership goals into clear technical design briefs, managing timelines and tracking project budgets. Coordinate rigorous testing of new features, bug logging, and site maintenance to guarantee absolute platform stability before public deployments. 3. Team Leadership & Collaboration Line manage, mentor, and support 1-2 direct reports (including roles focused on systems, community moderation, and resource uploads). Work closely with the Communications team, External Relations team and Programme Leads to align digital development with broader organization campaigns and resource rollouts. Oversee the content calendar and governance for both sites, ensuring all published assets strictly adhere to brand tone of voice and quality standards, working closely with the senior social media officer, engagement team to ensure cross-org planning. 4. Data, CRM & Systems Integration Oversee the data integrity and smooth technical flow between our website frontends, e-learning platform (LMS), and internal CRM systems. Ensure all digital systems, data tracking, user permissions, and marketing platforms comply fully with GDPR and organizational data protection policies. Construct and present scannable dashboards and reports (using Google Analytics and CRM data) for the Senior Leadership Team and stakeholders to demonstrate impact. Essential Skills and Experience Digital Product & Platform Leadership: Proven experience managing digital products, websites, or online platforms-ideally at a Manager level within a charity, agency, or fast-paced setting. Complex Systems Integration: Strong confidence managing (or partnering with a technical agency to manage) integrated digital environments where the CMS, CRM, and LMS operate as a unified platform. You must be comfortable understanding and troubleshooting multi-layered user access permissions (e.g., tailored journeys for different school types and member tiers). Foundational literacy in HTML and CSS to troubleshoot layout issues, understand site structure, and effectively translate technical requirements to developers. Agency & Project Management: Confident experience collaborating with, briefing, and managing external technical partners, developers, or freelance technical staff to deliver complex features on time and on budget. People Management: Demonstrable experience managing, mentoring, and developing direct reports, fostering a supportive and high-performing team environment. Data Fluency & Quality Control: Ability to analyze, clean, and visualize data (using Google Analytics, CRM reporting, or spreadsheets) to monitor site performance, ensure data integrity across system integrations, and drive user experience improvements. Communication & Collaboration: Outstanding written and verbal communication skills; able to translate complex "technical speak" for non-expert internal staff, write brand-aligned content, and build strong cross team relationships. Mission Alignment: A deep personal commitment to equity, diversity, and inclusion, alongside a genuine interest in our mission to transform child health through school food. Desirable Skills and Experience Familiarity with online community/forum moderation and user engagement strategies. Prior experience working within the wider charity sector. Benefits You would be joining a friendly, supportive team who works hard but believe in a healthy work/life balance. We were voted one of CODE Hospitality's happiest places to work in 2024. We seek a diverse range of perspectives, skills, experience and knowledge. Joining a small, collaborative team means you'll be able to contribute to and draw on various projects and strategic insights. We offer 33 days of holiday per year including bank holidays, 3 additional office closure days over the Christmas period as well as wellbeing days over the summer school holidays. We also have a Cycle to Work scheme, hybrid working, enhanced parental leave, and free access to the CODE app for discounted restaurants & hospitality venues. We are committed to developing our team and will support you with relevant training opportunities including £250 towards elective training and development of your choice. We also offer Bupa Dental Insurance, Income Protection Insurance, as well as access to the Aviva Smart Health Platform which offers health benefits including free rapid access online GP appointments, free counselling and wellbeing support.
04/08/2026
Full time
Location Hybrid Brixton, UK Hybrid working with one regular weekly day at our office space in Brixton, London. Salary Starting from £42,500 (GBP) Seniority Mid-level Closing: 11:59pm, 26th Aug 2026 BST Job Description Who we are Chefs in Schools is a young, ambitious charity that's rapidly growing. Our mission is to improve kids' health, through improving school food & food education. We focus our efforts in areas of high socio-economic deprivation, where more than a third of children are entitled to free school meals, and diet-related disease is driving further inequality. We support and train school kitchen teams to serve the best, freshest and tastiest food possible, alongside meaningful food education. We share learning and resources, aiming to inspire and enable others to follow our lead. We're backed by some of the biggest names in food and have ambitious targets to ensure every child has access to incredible school food and food education, setting them up for life with the skills and knowledge to feed themselves well. About you and the role As our Digital Manager, you will be the strategic anchor, quality guardian, and operational driving force behind our online presence. You will fully own the performance of our two primary websites: the main Chefs in Schools (CIS) platform and the complex, public-facing School Food Project (SFP) national resource and coalition hub. You will be directly accountable for driving traffic, mastering SEO, maintaining exceptional content quality, and ensuring a seamless, highly secure user experience against clear, measurable targets. This is a leadership role that bridges technical execution and creative strategy. You will act as the crucial, confident link between our external technical agencies (who build and maintain the infrastructure of the sites) and our internal content creators and programme teams. Crucially, you will be an empowering manager, leading a dedicated digital sub team of 1-2 direct reports, supporting them to manage day-to-day content workflows, e-learning administration, and community moderation. We are looking for someone solutions-focused, collaborative, and deeply analytical who takes pride in helping a high-profile, mission-driven organization run at its absolute best. Key responsibilities 1. Website Ownership & Performance Management Own the overarching strategy and performance of our two flagship websites (CIS and SFP), optimizing UX and UI for user journeys, design, and maximum accessibility standards across both sites. Own and maintain a forward-looking, prioritized digital platform roadmap, striking a strategic balance between long-term feature development and agile, day-to-day reactive requests. Ensure both platforms-particularly the highly visible, national School Food Project website-maintain the highest standards of data security, uptime, quality assurance, and accessibility, proactively managing risks associated with public scrutiny. Take end-to-end ownership of web analytics and data integrity-from configuring custom event tracking to reporting on performance-utilizing Google Analytics 4 (GA4) for quantitative metrics and Microsoft Clarity for behavioral insights. Set, monitor, and report against clear performance targets spanning web traffic, user engagement, resource downloads, and search rankings. Lead content and platform feature reviews through a risk mitigation lens-ensuring strict compliance with safeguarding, privacy, and coalition guidelines-while running targeted A/B tests to optimize user experience. Lead on Search Engine Optimization (SEO) strategy to maximize organic reach and connect school leaders, chefs, and partners to our resources. Establish and manage digital incident response protocols, defining clear workflows for first responders, triage steps, and escalation pathways in the event of site outages, technical bugs, or security breaches. 2. Agency & Supplier Management Act as the primary, confident technical interface with our external web development agencies and tech suppliers, holding them accountable to high-quality delivery. Translate internal program, comms, and membership goals into clear technical design briefs, managing timelines and tracking project budgets. Coordinate rigorous testing of new features, bug logging, and site maintenance to guarantee absolute platform stability before public deployments. 3. Team Leadership & Collaboration Line manage, mentor, and support 1-2 direct reports (including roles focused on systems, community moderation, and resource uploads). Work closely with the Communications team, External Relations team and Programme Leads to align digital development with broader organization campaigns and resource rollouts. Oversee the content calendar and governance for both sites, ensuring all published assets strictly adhere to brand tone of voice and quality standards, working closely with the senior social media officer, engagement team to ensure cross-org planning. 4. Data, CRM & Systems Integration Oversee the data integrity and smooth technical flow between our website frontends, e-learning platform (LMS), and internal CRM systems. Ensure all digital systems, data tracking, user permissions, and marketing platforms comply fully with GDPR and organizational data protection policies. Construct and present scannable dashboards and reports (using Google Analytics and CRM data) for the Senior Leadership Team and stakeholders to demonstrate impact. Essential Skills and Experience Digital Product & Platform Leadership: Proven experience managing digital products, websites, or online platforms-ideally at a Manager level within a charity, agency, or fast-paced setting. Complex Systems Integration: Strong confidence managing (or partnering with a technical agency to manage) integrated digital environments where the CMS, CRM, and LMS operate as a unified platform. You must be comfortable understanding and troubleshooting multi-layered user access permissions (e.g., tailored journeys for different school types and member tiers). Foundational literacy in HTML and CSS to troubleshoot layout issues, understand site structure, and effectively translate technical requirements to developers. Agency & Project Management: Confident experience collaborating with, briefing, and managing external technical partners, developers, or freelance technical staff to deliver complex features on time and on budget. People Management: Demonstrable experience managing, mentoring, and developing direct reports, fostering a supportive and high-performing team environment. Data Fluency & Quality Control: Ability to analyze, clean, and visualize data (using Google Analytics, CRM reporting, or spreadsheets) to monitor site performance, ensure data integrity across system integrations, and drive user experience improvements. Communication & Collaboration: Outstanding written and verbal communication skills; able to translate complex "technical speak" for non-expert internal staff, write brand-aligned content, and build strong cross team relationships. Mission Alignment: A deep personal commitment to equity, diversity, and inclusion, alongside a genuine interest in our mission to transform child health through school food. Desirable Skills and Experience Familiarity with online community/forum moderation and user engagement strategies. Prior experience working within the wider charity sector. Benefits You would be joining a friendly, supportive team who works hard but believe in a healthy work/life balance. We were voted one of CODE Hospitality's happiest places to work in 2024. We seek a diverse range of perspectives, skills, experience and knowledge. Joining a small, collaborative team means you'll be able to contribute to and draw on various projects and strategic insights. We offer 33 days of holiday per year including bank holidays, 3 additional office closure days over the Christmas period as well as wellbeing days over the summer school holidays. We also have a Cycle to Work scheme, hybrid working, enhanced parental leave, and free access to the CODE app for discounted restaurants & hospitality venues. We are committed to developing our team and will support you with relevant training opportunities including £250 towards elective training and development of your choice. We also offer Bupa Dental Insurance, Income Protection Insurance, as well as access to the Aviva Smart Health Platform which offers health benefits including free rapid access online GP appointments, free counselling and wellbeing support.
The role of Data Protection Specialist at involves supporting the Data Protection Officer in establishing data privacy strategies in compliance with local legislation. This full-time position is based in Jersey and includes responsibilities like risk mitigation planning, governance processes maintenance, and stakeholder collaboration. Candidates are expected to have relevant degrees, data protection qualifications, and 3-5 years of experience in data privacy, particularly within the financial sector. This position offers a collaborative environment conducive to professional development.
04/08/2026
Full time
The role of Data Protection Specialist at involves supporting the Data Protection Officer in establishing data privacy strategies in compliance with local legislation. This full-time position is based in Jersey and includes responsibilities like risk mitigation planning, governance processes maintenance, and stakeholder collaboration. Candidates are expected to have relevant degrees, data protection qualifications, and 3-5 years of experience in data privacy, particularly within the financial sector. This position offers a collaborative environment conducive to professional development.
Head of ITApplylocations: WEMEA > United Kingdom > Homebased: Remote, Polandtime type: Full timeposted on: Posted Todayjob requisition id: ROur team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!# Job Details Head Of IT - PhlexGlobal Position Overview The Head of IT will lead the technology strategy and operations for a growing organization (based in the UK, US and Poland) specializing in software and services for pharmaceutical companies globally. This role (based in Poland or the UK) , involves managing a small internal IT team responsible for M365, core infrastructure, cloud platforms, and user access, while overseeing external vendors supporting critical business applications such as NetSuite, Mavenlink, ZenQMS, and ZenDesk. The Head of IT will ensure that technology aligns with business objectives, supports operational efficiency, and complies with relevant industry and regional regulations. Key Responsibilities Strategic Leadership Develop and execute the organization's IT strategy to align with business goals and growth objectives. Collaborate with senior leadership to identify technology opportunities that drive innovation and operational efficiency. Act as a strategic advisor for technology adoption, ensuring scalability and long-term planning. Infrastructure and Operations Management Oversee the management of Microsoft 365 (M365), including user access, email, collaboration tools, and security. Ensure proper management of domains, cloud infrastructure, and data integrity across platforms. Maintain IT infrastructure uptime, performance, and reliability, ensuring minimal disruption to business operations. Vendor and Application Management Partner with external vendors to manage and optimize business-critical applications including but not limited to: + NetSuite : ERP for financial and operational management. + Mavenlink : Project and resource management. + ZenQMS : Quality management system for compliance. + ZenDesk : Customer support platform. Monitor vendor performance, negotiate contracts, and ensure SLAs are met. Manage integrations between internal systems and external applications. Team Leadership Lead and mentor a small internal IT team, fostering professional growth and collaboration. Delegate operational tasks while ensuring the team delivers high-quality support and service. Define and track team KPIs related to system uptime, incident resolution, and user satisfaction. Compliance and Security Implement and maintain cybersecurity measures to protect sensitive company and client data. Ensure compliance with regional and industry standards , including GDPR , UK Data Protection Act , and other pharma-specific requirements. Conduct regular audits of IT systems and processes to identify vulnerabilities and ensure data integrity. User Support and Training Ensure timely resolution of IT issues and provide guidance for employees using internal systems and applications. Develop and deliver training programs to enhance employee proficiency with M365 and other tools. Maintain an IT help desk function to support day-to-day operations. Budget and Resource Management Manage the IT budget, including forecasting, cost control, and vendor expenditure. Optimize IT resources to balance cost-effectiveness and performance. Evaluate and recommend new technologies to improve operational efficiency Key Qualifications Education and Experience Bachelor's degree in Information Technology, Computer Science, or a related field (Master's preferred). 8+ years of experience in IT leadership roles, preferably in a mid-sized company or within the pharmaceutical or software industries. Experience managing cloud infrastructure and SaaS platforms (e.g., Microsoft Azure, AWS). Technical Skills Proficiency in managing Microsoft 365 (M365), including security and collaboration tools. Familiarity with ERP systems like NetSuite, project management tools like Mavenlink, quality management systems like ZenQMS, and customer service platforms like ZenDesk. Knowledge of cloud infrastructure management and domain administration. Strong understanding of cybersecurity frameworks and compliance requirements (e.g., GDPR, UK Data Protection Act). Leadership and Communication Proven ability to lead and develop IT teams in a fast-paced environment. Strong vendor management skills, including contract negotiation and performance monitoring. Excellent communication and collaboration skills to work effectively with internal stakeholders and external partners. Problem-Solving and Innovation Demonstrated ability to solve complex IT challenges and implement innovative solutions. Strategic thinker with a focus on scalability and efficiency. Compensation and Benefits Will allow for HR to interject more here on salary and benefits for this JD Reporting Structure Reports to: Chief Technology Officer (CTO) Direct Reports: Internal IT team (e.g., 3 team members). Additional Notes This role requires a hands-on leader who can balance strategic planning with operational execution. The ideal candidate will have experience working in a global or regional capacity and a passion for leveraging technology to drive business success. Regional Compliance Considerations GDPR and UK Data Protection Act : Ensure all IT practices comply with data privacy regulations in the EU and UK. Pharma-Specific Regulations : Familiarity with GxP (Good Practices) and other quality standards commonly required in the pharmaceutical industry.
04/08/2026
Full time
Head of ITApplylocations: WEMEA > United Kingdom > Homebased: Remote, Polandtime type: Full timeposted on: Posted Todayjob requisition id: ROur team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!# Job Details Head Of IT - PhlexGlobal Position Overview The Head of IT will lead the technology strategy and operations for a growing organization (based in the UK, US and Poland) specializing in software and services for pharmaceutical companies globally. This role (based in Poland or the UK) , involves managing a small internal IT team responsible for M365, core infrastructure, cloud platforms, and user access, while overseeing external vendors supporting critical business applications such as NetSuite, Mavenlink, ZenQMS, and ZenDesk. The Head of IT will ensure that technology aligns with business objectives, supports operational efficiency, and complies with relevant industry and regional regulations. Key Responsibilities Strategic Leadership Develop and execute the organization's IT strategy to align with business goals and growth objectives. Collaborate with senior leadership to identify technology opportunities that drive innovation and operational efficiency. Act as a strategic advisor for technology adoption, ensuring scalability and long-term planning. Infrastructure and Operations Management Oversee the management of Microsoft 365 (M365), including user access, email, collaboration tools, and security. Ensure proper management of domains, cloud infrastructure, and data integrity across platforms. Maintain IT infrastructure uptime, performance, and reliability, ensuring minimal disruption to business operations. Vendor and Application Management Partner with external vendors to manage and optimize business-critical applications including but not limited to: + NetSuite : ERP for financial and operational management. + Mavenlink : Project and resource management. + ZenQMS : Quality management system for compliance. + ZenDesk : Customer support platform. Monitor vendor performance, negotiate contracts, and ensure SLAs are met. Manage integrations between internal systems and external applications. Team Leadership Lead and mentor a small internal IT team, fostering professional growth and collaboration. Delegate operational tasks while ensuring the team delivers high-quality support and service. Define and track team KPIs related to system uptime, incident resolution, and user satisfaction. Compliance and Security Implement and maintain cybersecurity measures to protect sensitive company and client data. Ensure compliance with regional and industry standards , including GDPR , UK Data Protection Act , and other pharma-specific requirements. Conduct regular audits of IT systems and processes to identify vulnerabilities and ensure data integrity. User Support and Training Ensure timely resolution of IT issues and provide guidance for employees using internal systems and applications. Develop and deliver training programs to enhance employee proficiency with M365 and other tools. Maintain an IT help desk function to support day-to-day operations. Budget and Resource Management Manage the IT budget, including forecasting, cost control, and vendor expenditure. Optimize IT resources to balance cost-effectiveness and performance. Evaluate and recommend new technologies to improve operational efficiency Key Qualifications Education and Experience Bachelor's degree in Information Technology, Computer Science, or a related field (Master's preferred). 8+ years of experience in IT leadership roles, preferably in a mid-sized company or within the pharmaceutical or software industries. Experience managing cloud infrastructure and SaaS platforms (e.g., Microsoft Azure, AWS). Technical Skills Proficiency in managing Microsoft 365 (M365), including security and collaboration tools. Familiarity with ERP systems like NetSuite, project management tools like Mavenlink, quality management systems like ZenQMS, and customer service platforms like ZenDesk. Knowledge of cloud infrastructure management and domain administration. Strong understanding of cybersecurity frameworks and compliance requirements (e.g., GDPR, UK Data Protection Act). Leadership and Communication Proven ability to lead and develop IT teams in a fast-paced environment. Strong vendor management skills, including contract negotiation and performance monitoring. Excellent communication and collaboration skills to work effectively with internal stakeholders and external partners. Problem-Solving and Innovation Demonstrated ability to solve complex IT challenges and implement innovative solutions. Strategic thinker with a focus on scalability and efficiency. Compensation and Benefits Will allow for HR to interject more here on salary and benefits for this JD Reporting Structure Reports to: Chief Technology Officer (CTO) Direct Reports: Internal IT team (e.g., 3 team members). Additional Notes This role requires a hands-on leader who can balance strategic planning with operational execution. The ideal candidate will have experience working in a global or regional capacity and a passion for leveraging technology to drive business success. Regional Compliance Considerations GDPR and UK Data Protection Act : Ensure all IT practices comply with data privacy regulations in the EU and UK. Pharma-Specific Regulations : Familiarity with GxP (Good Practices) and other quality standards commonly required in the pharmaceutical industry.
Cyber Security Officer London (3 days a week onsite) £61,500 The Opportunity VIQU have partnered with an established UK organisation is looking to appoint a Cyber Security Officer to join its IT & Digital team. This is an excellent opportunity for an experienced cyber security professional to take ownership of the organisation's security posture, ensuring the protection of business-critical systems, infrastructure and sensitive data. Key Responsibilities Develop, maintain and improve the organisation's cyber security framework. Create and maintain security policies, standards and procedures. Monitor, investigate and respond to cyber security threats and incidents. Manage vulnerability management, patching and remediation activities. Ensure compliance with relevant security frameworks and data protection legislation. Manage identity and access management controls. Provide security guidance for cloud services and technology projects. Lead cyber-related change management activities. Stay current with emerging threats, vulnerabilities and security technologies, making recommendations to strengthen the organisation's security posture. Minimum five years' experience in a Cyber Security or Information Security role. Experience working with Microsoft security technologies. Strong understanding of cyber security principles, governance and best practice. Security frameworks including ISO 27001, NIST and Cyber Essentials. Apply now to speak with VIQU IT in confidence. Or reach out to Noah Yeoman via the VIQU Website Do you know someone great? We ll thank you with up to £1,000 if your referral is successful (terms apply). For more exciting roles and opportunities like this, please follow us on IT Recruitment
03/08/2026
Full time
Cyber Security Officer London (3 days a week onsite) £61,500 The Opportunity VIQU have partnered with an established UK organisation is looking to appoint a Cyber Security Officer to join its IT & Digital team. This is an excellent opportunity for an experienced cyber security professional to take ownership of the organisation's security posture, ensuring the protection of business-critical systems, infrastructure and sensitive data. Key Responsibilities Develop, maintain and improve the organisation's cyber security framework. Create and maintain security policies, standards and procedures. Monitor, investigate and respond to cyber security threats and incidents. Manage vulnerability management, patching and remediation activities. Ensure compliance with relevant security frameworks and data protection legislation. Manage identity and access management controls. Provide security guidance for cloud services and technology projects. Lead cyber-related change management activities. Stay current with emerging threats, vulnerabilities and security technologies, making recommendations to strengthen the organisation's security posture. Minimum five years' experience in a Cyber Security or Information Security role. Experience working with Microsoft security technologies. Strong understanding of cyber security principles, governance and best practice. Security frameworks including ISO 27001, NIST and Cyber Essentials. Apply now to speak with VIQU IT in confidence. Or reach out to Noah Yeoman via the VIQU Website Do you know someone great? We ll thank you with up to £1,000 if your referral is successful (terms apply). For more exciting roles and opportunities like this, please follow us on IT Recruitment
Whittington NHS Trust, with their outstanding reputation in safe, personal, coordinated care for their local community, are seeking an enthusiastic Bank Security Officer to join their committed team in a flexible and rewarding role. Known for being one of the safest hospitals in England, Whittington Health provides expert care for more than 500,000 local people and is valued by its local community. Alongside the main Whittington Hospital, they have 30 community locations in the north London boroughs of Islington and Haringey. A fantastic team of more than 4,400 specialist staff also support the boroughs of Barnet, Enfield and Camden, maintaining a professional and highly personable approach to all their patients. The Role: The post holder will provide a professional, responsive and effective security service to Whittington Health NHS Trust on a staff bank basis. The role supports the protection of patients, visitors, staff, Trust property and assets against crime, disorder, violence, aggression and other security-related risks. The Bank Security Officer will be required to work flexibly across a range of shifts, including days, nights, weekends and bank holidays, depending on service need. The post holder will support the substantive security team by carrying out patrols, responding to incidents, operating security systems, supporting clinical teams, assisting with emergency responses and maintaining a safe and secure environment. The post is subject to satisfactory recruitment checks, including enhanced DBS clearance where required, completion of mandatory training, and successful completion of conflict resolution, physical intervention/restraint and officer safety training provided by the Trust. Main Duties and Responsibilities: Undertake security patrols on foot or by vehicle across Trust premises, in line with departmental procedures. Maintain a visible security presence to support staff, patients and visitors. Respond promptly to calls for security assistance from wards, departments, receptions, external areas and community sites. Deal professionally with incidents involving violence, aggression, abuse, disruptive behaviour, theft, criminal damage, anti-social behaviour or other security concerns. Assess situations calmly and take proportionate action in line with Trust policy, legal requirements and training. Support the prevention and management of crime and disorder across Trust premises. Escalate incidents appropriately to the Security Team Leader, Security Manager, Site Manager, Police or other relevant services. Assist clinical staff in managing patients, visitors or members of the public who present with challenging, aggressive or high-risk behaviour. Support clinical teams in the safe management of patients where there is a risk of absconding, self-harm, violence or aggression. Support restraint or physical intervention only when required, proportionate, lawful and in line with Trust training and policy. Attend emergency calls where security support is required, including incidents in non-clinical areas such as receptions, car parks and external Trust grounds. Support staff safety and patient safety while maintaining dignity, respect and confidentiality. Operate CCTV, access control, intruder alarm, fire alarm, panic alarm and other security-related systems as required. Monitor and respond to alarms in accordance with local procedures. Report faults or defects with security systems to the Security Team Leader or relevant manager. Support access control arrangements, including staff identification and access-related queries. Maintain confidentiality when handling CCTV, access control information or incident-related data. Ensure the Security Control Room and other working areas are kept clean, secure and professional. Respond promptly to fire alarms and emergency calls in line with Trust procedures. Support evacuation, site safety and emergency response arrangements where required. Assist with major incident, emergency preparedness and business continuity arrangements. Participate in relevant training and exercises, including fire safety, evacuation, lockdown, lift release or other emergency procedures as required by the Trust. Support the Site Manager and Facilities teams during out-of-hours periods where security assistance is required. Respond promptly to fire alarms and emergency calls in line with Trust procedures. Support evacuation, site safety and emergency response arrangements where required. Assist with major incident, emergency preparedness and business continuity arrangements. Participate in relevant training and exercises, including fire safety, evacuation, lockdown, lift release or other emergency procedures as required by the Trust. Support the Site Manager and Facilities teams during out-of-hours periods where security assistance is required. Requirements: Good basic education e.g. GCSE or equivalent Ability to work on own initiative and minimum supervision Excellent communicator (both verbal and written) Ability to carry out several different tasks simultaneously Ability to maintain accurate records Keyboard and computer skills Checkable DBS history Minimum two years working in a front line security position with direct contact with clients or transferable experience from other front line role Our Bank Staff are invaluable to us and in return for their dedication and commitment, we offer the following benefits: Priority of shifts over an agency worker, accommodating your availability A dedicated recruitment team to ensure you can work as quickly as possible A dedicated compliance team that ensures you remain compliant to work Free annual Core Skills training A bookings team to ensure you work when and wherever you want to
03/08/2026
Full time
Whittington NHS Trust, with their outstanding reputation in safe, personal, coordinated care for their local community, are seeking an enthusiastic Bank Security Officer to join their committed team in a flexible and rewarding role. Known for being one of the safest hospitals in England, Whittington Health provides expert care for more than 500,000 local people and is valued by its local community. Alongside the main Whittington Hospital, they have 30 community locations in the north London boroughs of Islington and Haringey. A fantastic team of more than 4,400 specialist staff also support the boroughs of Barnet, Enfield and Camden, maintaining a professional and highly personable approach to all their patients. The Role: The post holder will provide a professional, responsive and effective security service to Whittington Health NHS Trust on a staff bank basis. The role supports the protection of patients, visitors, staff, Trust property and assets against crime, disorder, violence, aggression and other security-related risks. The Bank Security Officer will be required to work flexibly across a range of shifts, including days, nights, weekends and bank holidays, depending on service need. The post holder will support the substantive security team by carrying out patrols, responding to incidents, operating security systems, supporting clinical teams, assisting with emergency responses and maintaining a safe and secure environment. The post is subject to satisfactory recruitment checks, including enhanced DBS clearance where required, completion of mandatory training, and successful completion of conflict resolution, physical intervention/restraint and officer safety training provided by the Trust. Main Duties and Responsibilities: Undertake security patrols on foot or by vehicle across Trust premises, in line with departmental procedures. Maintain a visible security presence to support staff, patients and visitors. Respond promptly to calls for security assistance from wards, departments, receptions, external areas and community sites. Deal professionally with incidents involving violence, aggression, abuse, disruptive behaviour, theft, criminal damage, anti-social behaviour or other security concerns. Assess situations calmly and take proportionate action in line with Trust policy, legal requirements and training. Support the prevention and management of crime and disorder across Trust premises. Escalate incidents appropriately to the Security Team Leader, Security Manager, Site Manager, Police or other relevant services. Assist clinical staff in managing patients, visitors or members of the public who present with challenging, aggressive or high-risk behaviour. Support clinical teams in the safe management of patients where there is a risk of absconding, self-harm, violence or aggression. Support restraint or physical intervention only when required, proportionate, lawful and in line with Trust training and policy. Attend emergency calls where security support is required, including incidents in non-clinical areas such as receptions, car parks and external Trust grounds. Support staff safety and patient safety while maintaining dignity, respect and confidentiality. Operate CCTV, access control, intruder alarm, fire alarm, panic alarm and other security-related systems as required. Monitor and respond to alarms in accordance with local procedures. Report faults or defects with security systems to the Security Team Leader or relevant manager. Support access control arrangements, including staff identification and access-related queries. Maintain confidentiality when handling CCTV, access control information or incident-related data. Ensure the Security Control Room and other working areas are kept clean, secure and professional. Respond promptly to fire alarms and emergency calls in line with Trust procedures. Support evacuation, site safety and emergency response arrangements where required. Assist with major incident, emergency preparedness and business continuity arrangements. Participate in relevant training and exercises, including fire safety, evacuation, lockdown, lift release or other emergency procedures as required by the Trust. Support the Site Manager and Facilities teams during out-of-hours periods where security assistance is required. Respond promptly to fire alarms and emergency calls in line with Trust procedures. Support evacuation, site safety and emergency response arrangements where required. Assist with major incident, emergency preparedness and business continuity arrangements. Participate in relevant training and exercises, including fire safety, evacuation, lockdown, lift release or other emergency procedures as required by the Trust. Support the Site Manager and Facilities teams during out-of-hours periods where security assistance is required. Requirements: Good basic education e.g. GCSE or equivalent Ability to work on own initiative and minimum supervision Excellent communicator (both verbal and written) Ability to carry out several different tasks simultaneously Ability to maintain accurate records Keyboard and computer skills Checkable DBS history Minimum two years working in a front line security position with direct contact with clients or transferable experience from other front line role Our Bank Staff are invaluable to us and in return for their dedication and commitment, we offer the following benefits: Priority of shifts over an agency worker, accommodating your availability A dedicated recruitment team to ensure you can work as quickly as possible A dedicated compliance team that ensures you remain compliant to work Free annual Core Skills training A bookings team to ensure you work when and wherever you want to
As the Chief Information Security Officer (CISO) for the Actuation GBU/subsidiary, you play a central role in safeguarding the integrity, confidentiality, and availability of all Information Systems (IS) across the GBU's sites. You report hierarchically to the CISO of Safran Electronics & Defense and functionally to the Actuation GBU IT Department. You are responsible for ensuring compliance with all applicable internal and external security frameworks, including (subject to nationality constraints): Safran Information System Security Policy NCSC Cyber Assessment Framework France IGI 1300 Export Control, ITAR, and related regulatory requirements Key Responsibilities Governance & Compliance Oversee and monitor accreditation and approval processes for all local IS within your scope. Ensure compliance with Safran ISS policies and all relevant national and international regulations. Contribute to defining security objectives and requirements for IS across the GBU. Develop, implement, and maintain IS security procedures. Conduct audits and continuous monitoring to ensure adherence to ISS rules. Monitor local enforcement of applicable data protection and regulatory requirements. Security Expertise & Project Support Provide ISS expertise and support for GBU IT projects, including Secure by Design practices. Support Industrial Management teams in securing operational and industrial environments. Act as the primary ISS point of contact for local authorities and external contractors. Awareness, Training & User Engagement Advise, inform, and raise awareness among users on ISS best practices (encryption, removable media, travel procedures, etc.). Deliver onboarding ISS training for newcomers and recurring awareness sessions for all staff. Conduct targeted awareness sessions for newly authorized personnel or those renewing authorization. Incident Response & Operational Security Manage ISS alerts originating from Safran CERT/SOC and the SED ISS operational unit. Handle alerts on administrator and user workstations, including first level forensic analysis, user interviews, and coordination with Local Support teams. Escalate issues requiring clarification or broader company involvement to central ISS teams. Candidate Profile Master's degree in cybersecurity, information systems, or a related field (or equivalent experience). Broad, versatile expertise in information systems security. Knowledge of British, US, French, or European regulations related to the protection of national defence information is a strong advantage. Excellent interpersonal and communication skills, with the ability to educate and influence stakeholders at all levels. Demonstrated availability, reliability, and strong team spirit. Comfortable working in an international, multi site environment with regular travel.
02/08/2026
Full time
As the Chief Information Security Officer (CISO) for the Actuation GBU/subsidiary, you play a central role in safeguarding the integrity, confidentiality, and availability of all Information Systems (IS) across the GBU's sites. You report hierarchically to the CISO of Safran Electronics & Defense and functionally to the Actuation GBU IT Department. You are responsible for ensuring compliance with all applicable internal and external security frameworks, including (subject to nationality constraints): Safran Information System Security Policy NCSC Cyber Assessment Framework France IGI 1300 Export Control, ITAR, and related regulatory requirements Key Responsibilities Governance & Compliance Oversee and monitor accreditation and approval processes for all local IS within your scope. Ensure compliance with Safran ISS policies and all relevant national and international regulations. Contribute to defining security objectives and requirements for IS across the GBU. Develop, implement, and maintain IS security procedures. Conduct audits and continuous monitoring to ensure adherence to ISS rules. Monitor local enforcement of applicable data protection and regulatory requirements. Security Expertise & Project Support Provide ISS expertise and support for GBU IT projects, including Secure by Design practices. Support Industrial Management teams in securing operational and industrial environments. Act as the primary ISS point of contact for local authorities and external contractors. Awareness, Training & User Engagement Advise, inform, and raise awareness among users on ISS best practices (encryption, removable media, travel procedures, etc.). Deliver onboarding ISS training for newcomers and recurring awareness sessions for all staff. Conduct targeted awareness sessions for newly authorized personnel or those renewing authorization. Incident Response & Operational Security Manage ISS alerts originating from Safran CERT/SOC and the SED ISS operational unit. Handle alerts on administrator and user workstations, including first level forensic analysis, user interviews, and coordination with Local Support teams. Escalate issues requiring clarification or broader company involvement to central ISS teams. Candidate Profile Master's degree in cybersecurity, information systems, or a related field (or equivalent experience). Broad, versatile expertise in information systems security. Knowledge of British, US, French, or European regulations related to the protection of national defence information is a strong advantage. Excellent interpersonal and communication skills, with the ability to educate and influence stakeholders at all levels. Demonstrated availability, reliability, and strong team spirit. Comfortable working in an international, multi site environment with regular travel.
Job Title: IT Systems Analyst Job Family: Technology Operations Reports To: IT Systems Team Leader Subordinates: None Company Overview Eastnets is a leading player in the B2B fintech industry. We are a global provider of compliance and payments solutions for the financial services sector. Our experience and expertise help ensure trust at over 800 financial institutions across the world, including 11 of the top global banks. We secure institutions from financial crime by helping our partners manage risk through sanction screening, transaction monitoring, analytics, and reporting, along with market-leading consultancy and customer support. The IT Systems Analyst is responsible for providing technical support to resolve user hardware and software issues and assisting in installing, configuring, and maintaining computer systems and networks. Assist in troubleshooting network problems and ensuring connectivity. And help with system upgrades and maintenance tasks. Learn and adapt to new technologies and tools. This position reports to the IT Systems Team Leader. Key Responsibilities Provide ongoing technical support for staff. Maintain and develop manuals and documentation. Provide computer and applications training for staff as needed. Provide troubleshooting and problem-solving services for staff concerning hardware and software. Network administration experience with an emphasis on Microsoft Windows 10, Microsoft Exchange Online and Microsoft Office suite. Ensure that the LAN is running smoothly and efficiently. Proactively advise management on software and hardware needs. Maintain servers, workstations and peripheral hardware. Purchase, install and maintain software on all computers. Maintain Exchange Server e-mail system, including directory, file permissions and user accounts. Administer the data backup system and restore as required. Design and administer virus protection procedures. Vendor interaction is highly required in evaluating different products to match the needs of the company. Communicate all product procurement requirements to the Procurement officer Work with selected vendors to test/develop new solutions for EN Obtain technical support from vendors as required in a coordinated effort with the procurement office. Maintain Eastnets security of information, devices and systems, and its personnel, customers and partners use. Protect Eastnets business information and any customer, supplier, or partner information within its custody by safeguarding its confidentiality, integrity and availability. Adhere to and comply with Eastnets internal security policies, Code of Ethics, Non-Disclosure Policy, Non-Compete Policy, Email Policy, Proprietary Rights Acknowledgement, Background Check Policy, and all other internal policies and employee handbook. Participate in the company's wide initiatives. Requirements 2-4 years of systems administration experience. A degree in Information Technology or a similar degree. Exchange Server Online. Microsoft Server 2016/2019. Windows 10 Administration. Basic Knowledge of the following protocols and technologies: DNS, DHCP, Backups, VPN, Firewalls, RAID Systems, and FTP Server. Excellent troubleshooting skills and hands-on experience with various Operating Systems. Familiarity with AI technologies and their application is a strong plus. Working knowledge of virtualization, Hyper-V, VMWare or equivalent. Professional certification, Microsoft Certified Systems Administrator (MCSE). Familiarity with Active Directory, Azure AD and Office 365 administration. Apply for this role and join the Eastnets family Fill out the form, send your CV to and our recruitment team will be in touch if your skill set matches our needs. Application First name Last name Email Country Phone number Job title Is there anything you would like us to know? Upload Your CV Please upload your most recent CV in PDF or DOC format. By using this form you agree with the handling of your data in accordance with our Privacy Policy.
02/08/2026
Full time
Job Title: IT Systems Analyst Job Family: Technology Operations Reports To: IT Systems Team Leader Subordinates: None Company Overview Eastnets is a leading player in the B2B fintech industry. We are a global provider of compliance and payments solutions for the financial services sector. Our experience and expertise help ensure trust at over 800 financial institutions across the world, including 11 of the top global banks. We secure institutions from financial crime by helping our partners manage risk through sanction screening, transaction monitoring, analytics, and reporting, along with market-leading consultancy and customer support. The IT Systems Analyst is responsible for providing technical support to resolve user hardware and software issues and assisting in installing, configuring, and maintaining computer systems and networks. Assist in troubleshooting network problems and ensuring connectivity. And help with system upgrades and maintenance tasks. Learn and adapt to new technologies and tools. This position reports to the IT Systems Team Leader. Key Responsibilities Provide ongoing technical support for staff. Maintain and develop manuals and documentation. Provide computer and applications training for staff as needed. Provide troubleshooting and problem-solving services for staff concerning hardware and software. Network administration experience with an emphasis on Microsoft Windows 10, Microsoft Exchange Online and Microsoft Office suite. Ensure that the LAN is running smoothly and efficiently. Proactively advise management on software and hardware needs. Maintain servers, workstations and peripheral hardware. Purchase, install and maintain software on all computers. Maintain Exchange Server e-mail system, including directory, file permissions and user accounts. Administer the data backup system and restore as required. Design and administer virus protection procedures. Vendor interaction is highly required in evaluating different products to match the needs of the company. Communicate all product procurement requirements to the Procurement officer Work with selected vendors to test/develop new solutions for EN Obtain technical support from vendors as required in a coordinated effort with the procurement office. Maintain Eastnets security of information, devices and systems, and its personnel, customers and partners use. Protect Eastnets business information and any customer, supplier, or partner information within its custody by safeguarding its confidentiality, integrity and availability. Adhere to and comply with Eastnets internal security policies, Code of Ethics, Non-Disclosure Policy, Non-Compete Policy, Email Policy, Proprietary Rights Acknowledgement, Background Check Policy, and all other internal policies and employee handbook. Participate in the company's wide initiatives. Requirements 2-4 years of systems administration experience. A degree in Information Technology or a similar degree. Exchange Server Online. Microsoft Server 2016/2019. Windows 10 Administration. Basic Knowledge of the following protocols and technologies: DNS, DHCP, Backups, VPN, Firewalls, RAID Systems, and FTP Server. Excellent troubleshooting skills and hands-on experience with various Operating Systems. Familiarity with AI technologies and their application is a strong plus. Working knowledge of virtualization, Hyper-V, VMWare or equivalent. Professional certification, Microsoft Certified Systems Administrator (MCSE). Familiarity with Active Directory, Azure AD and Office 365 administration. Apply for this role and join the Eastnets family Fill out the form, send your CV to and our recruitment team will be in touch if your skill set matches our needs. Application First name Last name Email Country Phone number Job title Is there anything you would like us to know? Upload Your CV Please upload your most recent CV in PDF or DOC format. By using this form you agree with the handling of your data in accordance with our Privacy Policy.
SH&E OfficerApplyremote type: Fully Onsitelocations: Wales, United Kingdomtime type: Full timeposted on: Posted Todayjob requisition id: R26\_000404Cabot Corporation (NYSE: CBT) is a leading global specialty chemicals and performance materials company headquartered in Boston, Massachusetts, USA. Our businesses deliver a broad range of products and solutions to customers in every corner of the globe, serving the transportation, infrastructure, environment and consumer industry sectors. We bring the power of innovative chemistry to solve customers' challenges today while preparing them to meet tomorrow's needs. Our commitment to innovation is driven by a passion to advance our customers' businesses through our deep understanding of their applications and the global trends that impact their operations. If you do not meet every requirement, or your experience is slightly different that what we have listed, we still encourage you to apply! Summary The HSE Officer works with the SH&E Manager to drive a proactive safety culture and support the effective delivery of Cabot's Safety, Health and Environmental systems. The role leads and supports SHE programmes, audits, inspections and behavioural safety activity, ensuring compliance with legislation, ISO standards, corporate requirements and site procedures.Actively contribute to Process Safety Management (PSM), emergency response preparedness, training delivery, contractor management and life-critical risk controls. This role needs solid HSE knowledge and strong field engagement to influence safe behaviours and help strengthen our ZERO Incident culture.Manages site compliance and continuous improvement with regard to all Environmental legislation includingEnvironmental permit, Waste legislation and Climate Change agreement, any new / future Environmentallegislation, and all external / internal reporting requirements. Essential Functions Apply Cabot SH&E policies and procedures consistently and support the SH&E Manager with maintaining and updating plant standards, procedures and risk assessments. Manage and maintain SH&E systems including Intelex, contractor records, eLearning and induction platforms. Manages interactions with Environmental permitting authority ensuring compliance with all operational and reporting requirements are met Ensure the site remains compliant with all current and future regulatory systems and manages reporting requirements (waste packaging regulations, CCA etc ) Manages ISO 45001 and ISO 14001 BMS system requirements including; audits, documentation and ongoing accreditation requirements. Support Process Safety Management activities, including Risk assessments, MOC, PSI reviews, PSSR and PHA-related tasks. Conduct routine site audits, life-critical audits, safety tours, inspections and behavioural safety conversations (SUSA / MBWA). Support the site Environmental systems (Spill management, noise monitoring etc.) Produce clear audit reports, assign actions in Intelex and verify effective closure. Lead and support behavioural safety initiatives and carry out compliance reviews of work activities, SSOW and permit-to-work documentation. Update occupational health records and SharePoint with employee results, prepare result notifications, and file all industrial hygiene reports and OH surveillance monitoring. Ensure site compliance with the waste management plan to include Vendor management, KPI monitoring and reporting Coordinate relative contractor inductions, competency checks, permits and in-field monitoring support. Develop and deliver Health safety & Environmental inductions, toolbox talks and awareness training, support the Mandatory site EHS training scheduling and maintain accurate competence records. Support employee participation programmes and life-critical risk training. Support emergency response arrangements and help lead exercises, drills and preparedness training. Participate in incident investigations, root cause analysis and tracking corrective actions. Collect, analyse and report key SH&E metrics and monitor trends to drive improvements. Support continuous improvement initiatives, CI projects and assessments of new equipment, processes or materials. Handle daily SH&E queries, support corporate and local SH&E objectives, engage in committees/working groups and deputise for the SH&E Manager when required. Site representative at Environmental groups (Community Advisory Panel, Flood protection, Joint sites) Any other duties deemed appropriate within the scope of the role and in line with skills and experience. Knowledge/Qualification/Education NEBOSH/ISEP (IEMA) General Certificate (or equivalent) preferred; IOSH Managing Safely minimum, with willingness to progress to NEBOSH. Strong foundational knowledge of UK Health, Safety & Environmental legislation, principles, and best practice guidance. Practical understanding of risk assessment, COSHH, safe systems of work, permit-to-work, LOTO, confined space, working at height and other key operational controls. Working knowledge of management systems (ISO 45001 / ISO 14001) and audit processes. Proficient with Microsoft Office software to create EHS Dashboards, Proformas, Presentations, etc. Able to navigate digital systems like Sharepoint, eLearning, Intelex, etc. Experience within a manufacturing, chemical or industrial environment desirable Experience Demonstrable experience within an SH&E related role (entry to mid-level). Strong aptitude and practical application of SH&E principles in industrial environments. Experience conducting audits, inspections and behavioural safety interactions. Experience supporting contractor management and training delivery. Ability to analyse data and produce clear, meaningful reports. Strong organisation and communication skills, comfortable working across all levels of the site Behavioural Competencies Strong interpersonal skills approachable, engaging and confident in coaching others. Proactive with a positive, solutions-focused attitude. Strong sense of urgency and ownership. Able to challenge unsafe behaviours in a professional, constructive manner. Continuous improvement mindset, always looking for ways to raise standards. Ability to influence without authority. Demonstrates Cabot values and contributes positively to site cultureAt Cabot, we bring the power of innovative chemistry and a spirit of partnership with our customers to advance solutions that will enable a sustainable future. Our strength in research and development is a major reason why we have been an industry leader for more than 135 years in products such as reinforcing and specialty carbons, battery materials, aerogel, fumed metal oxides, inkjet colorants, masterbatches and conductive compounds. Our employees around the world are united by our shared purpose: Creating materials that improve daily life and enable a more sustainable future. Through our corporate strategy, "Creating for Tomorrow," we are focused on our core strengths to lead in performance and sustainability - today and into the future.
30/07/2026
Full time
SH&E OfficerApplyremote type: Fully Onsitelocations: Wales, United Kingdomtime type: Full timeposted on: Posted Todayjob requisition id: R26\_000404Cabot Corporation (NYSE: CBT) is a leading global specialty chemicals and performance materials company headquartered in Boston, Massachusetts, USA. Our businesses deliver a broad range of products and solutions to customers in every corner of the globe, serving the transportation, infrastructure, environment and consumer industry sectors. We bring the power of innovative chemistry to solve customers' challenges today while preparing them to meet tomorrow's needs. Our commitment to innovation is driven by a passion to advance our customers' businesses through our deep understanding of their applications and the global trends that impact their operations. If you do not meet every requirement, or your experience is slightly different that what we have listed, we still encourage you to apply! Summary The HSE Officer works with the SH&E Manager to drive a proactive safety culture and support the effective delivery of Cabot's Safety, Health and Environmental systems. The role leads and supports SHE programmes, audits, inspections and behavioural safety activity, ensuring compliance with legislation, ISO standards, corporate requirements and site procedures.Actively contribute to Process Safety Management (PSM), emergency response preparedness, training delivery, contractor management and life-critical risk controls. This role needs solid HSE knowledge and strong field engagement to influence safe behaviours and help strengthen our ZERO Incident culture.Manages site compliance and continuous improvement with regard to all Environmental legislation includingEnvironmental permit, Waste legislation and Climate Change agreement, any new / future Environmentallegislation, and all external / internal reporting requirements. Essential Functions Apply Cabot SH&E policies and procedures consistently and support the SH&E Manager with maintaining and updating plant standards, procedures and risk assessments. Manage and maintain SH&E systems including Intelex, contractor records, eLearning and induction platforms. Manages interactions with Environmental permitting authority ensuring compliance with all operational and reporting requirements are met Ensure the site remains compliant with all current and future regulatory systems and manages reporting requirements (waste packaging regulations, CCA etc ) Manages ISO 45001 and ISO 14001 BMS system requirements including; audits, documentation and ongoing accreditation requirements. Support Process Safety Management activities, including Risk assessments, MOC, PSI reviews, PSSR and PHA-related tasks. Conduct routine site audits, life-critical audits, safety tours, inspections and behavioural safety conversations (SUSA / MBWA). Support the site Environmental systems (Spill management, noise monitoring etc.) Produce clear audit reports, assign actions in Intelex and verify effective closure. Lead and support behavioural safety initiatives and carry out compliance reviews of work activities, SSOW and permit-to-work documentation. Update occupational health records and SharePoint with employee results, prepare result notifications, and file all industrial hygiene reports and OH surveillance monitoring. Ensure site compliance with the waste management plan to include Vendor management, KPI monitoring and reporting Coordinate relative contractor inductions, competency checks, permits and in-field monitoring support. Develop and deliver Health safety & Environmental inductions, toolbox talks and awareness training, support the Mandatory site EHS training scheduling and maintain accurate competence records. Support employee participation programmes and life-critical risk training. Support emergency response arrangements and help lead exercises, drills and preparedness training. Participate in incident investigations, root cause analysis and tracking corrective actions. Collect, analyse and report key SH&E metrics and monitor trends to drive improvements. Support continuous improvement initiatives, CI projects and assessments of new equipment, processes or materials. Handle daily SH&E queries, support corporate and local SH&E objectives, engage in committees/working groups and deputise for the SH&E Manager when required. Site representative at Environmental groups (Community Advisory Panel, Flood protection, Joint sites) Any other duties deemed appropriate within the scope of the role and in line with skills and experience. Knowledge/Qualification/Education NEBOSH/ISEP (IEMA) General Certificate (or equivalent) preferred; IOSH Managing Safely minimum, with willingness to progress to NEBOSH. Strong foundational knowledge of UK Health, Safety & Environmental legislation, principles, and best practice guidance. Practical understanding of risk assessment, COSHH, safe systems of work, permit-to-work, LOTO, confined space, working at height and other key operational controls. Working knowledge of management systems (ISO 45001 / ISO 14001) and audit processes. Proficient with Microsoft Office software to create EHS Dashboards, Proformas, Presentations, etc. Able to navigate digital systems like Sharepoint, eLearning, Intelex, etc. Experience within a manufacturing, chemical or industrial environment desirable Experience Demonstrable experience within an SH&E related role (entry to mid-level). Strong aptitude and practical application of SH&E principles in industrial environments. Experience conducting audits, inspections and behavioural safety interactions. Experience supporting contractor management and training delivery. Ability to analyse data and produce clear, meaningful reports. Strong organisation and communication skills, comfortable working across all levels of the site Behavioural Competencies Strong interpersonal skills approachable, engaging and confident in coaching others. Proactive with a positive, solutions-focused attitude. Strong sense of urgency and ownership. Able to challenge unsafe behaviours in a professional, constructive manner. Continuous improvement mindset, always looking for ways to raise standards. Ability to influence without authority. Demonstrates Cabot values and contributes positively to site cultureAt Cabot, we bring the power of innovative chemistry and a spirit of partnership with our customers to advance solutions that will enable a sustainable future. Our strength in research and development is a major reason why we have been an industry leader for more than 135 years in products such as reinforcing and specialty carbons, battery materials, aerogel, fumed metal oxides, inkjet colorants, masterbatches and conductive compounds. Our employees around the world are united by our shared purpose: Creating materials that improve daily life and enable a more sustainable future. Through our corporate strategy, "Creating for Tomorrow," we are focused on our core strengths to lead in performance and sustainability - today and into the future.
Vice President, Business Information Security OfficerApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: -WD Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management. NUMBER OF DIRECT REPORTS 2 MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed.The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence.This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA. Working with key stakeholders internally to help embed security into the culture, whilst embedding technical controls into the mission critical business systems:Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.2. Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.3. Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.4. Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.5. Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.6. Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.7. Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.8. Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design. KEY RESPONSIBILITIES Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator. People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: + Understand the responsibilities applicable to their roles + Comply with the firm's policies and procedures + Conduct themselves in a manner commensurate with the firm's values Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements. Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility. WORK EXPERIENCE Experienced in information security, technology risk, or related disciplines within financial services sector. Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards. Conversant in the security & risk trends across banking and other industries. Experienced with the Defence in Depth approach Strong track record of managing teams and building effective partnerships with peers. Strong experience in delivering training Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience). Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR). SKILLS AND EXPERIENCE Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. A deep understanding of IT and Cyber Security: + Defence in Depth model. + Network defence, IDS and DMZ + Network protocols and firewall standards + Detective monitoring - SIEM + Vulnerability Management + Access and Privileged Access Management Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business. Good understanding of project lifecycles. Education / Qualifications: Degree educated and / or equivalent experience. PERSONAL REQUIREMENTS Excellent Leadership skills Excellent communication skills Ability to manage constructive conflict effectively Strong facilitation skills Ability to build strong and lasting relationships across the bank Results driven, with a strong sense of accountability, focused on business outcomes A proactive, motivated approach. The ability to operate with urgency and prioritise work accordingly Strong decision-making skills, the ability to demonstrate sound judgement A structured and logical approach to work Strong problem-solving skills A creative and innovative approach to work Excellent interpersonal skills Excellent attention to detail and accuracy Strong numerical skills A confident approach, with the ability to provide clear direction to your team Excellent managerial/leadership experience The ability to articulate and implement the vision/strategy for the planning departmentWe are open to considering flexible working requests in line with organisational requirements.
30/07/2026
Full time
Vice President, Business Information Security OfficerApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: -WD Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management. NUMBER OF DIRECT REPORTS 2 MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed.The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence.This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA. Working with key stakeholders internally to help embed security into the culture, whilst embedding technical controls into the mission critical business systems:Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.2. Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.3. Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.4. Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.5. Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.6. Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.7. Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.8. Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design. KEY RESPONSIBILITIES Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator. People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: + Understand the responsibilities applicable to their roles + Comply with the firm's policies and procedures + Conduct themselves in a manner commensurate with the firm's values Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements. Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility. WORK EXPERIENCE Experienced in information security, technology risk, or related disciplines within financial services sector. Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards. Conversant in the security & risk trends across banking and other industries. Experienced with the Defence in Depth approach Strong track record of managing teams and building effective partnerships with peers. Strong experience in delivering training Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience). Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR). SKILLS AND EXPERIENCE Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. A deep understanding of IT and Cyber Security: + Defence in Depth model. + Network defence, IDS and DMZ + Network protocols and firewall standards + Detective monitoring - SIEM + Vulnerability Management + Access and Privileged Access Management Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business. Good understanding of project lifecycles. Education / Qualifications: Degree educated and / or equivalent experience. PERSONAL REQUIREMENTS Excellent Leadership skills Excellent communication skills Ability to manage constructive conflict effectively Strong facilitation skills Ability to build strong and lasting relationships across the bank Results driven, with a strong sense of accountability, focused on business outcomes A proactive, motivated approach. The ability to operate with urgency and prioritise work accordingly Strong decision-making skills, the ability to demonstrate sound judgement A structured and logical approach to work Strong problem-solving skills A creative and innovative approach to work Excellent interpersonal skills Excellent attention to detail and accuracy Strong numerical skills A confident approach, with the ability to provide clear direction to your team Excellent managerial/leadership experience The ability to articulate and implement the vision/strategy for the planning departmentWe are open to considering flexible working requests in line with organisational requirements.
Overview Sitting in our 2nd Line Function, the Information Security Officer (ISO) plays a pivotal role in helping the bank achieve its growth ambitions in a compliant and secure manner. Working with the Chief Risk Officer and Data Protection Officer, the role holder will ensure the bank has robust and proportionate policies, standards and control frameworks in place. Working with 1st Line colleagues from across the bank, particularly those responsible for Information Security, IT, Operational Resilience and the management, storage and use of data, will provide independent assurance of the efficacy of the control environment and support the delivery of projects and transformational change. A trusted expert and critical friend, the individual will be responsible for working directly with the bank's Executive Team and Board to ensure they have a transparent understanding of the bank's risk posture and responsible for increasing Information Security awareness, skills and understanding across the bank. Responsibilities Provide independent assurance of the control environment by working with 1st Line colleagues across Information Security, IT, Operational Resilience and the management, storage and use of data. Support the delivery of projects and transformational change while promoting information security awareness across the bank. Collaborate with the Executive Team and Board to communicate risk posture and information security considerations clearly. Requirements A minimum of 5 years' experience in a second line information security, GRC or data protection role within a UK regulated financial services firm. Working knowledge of PRA and FCA expectations, UK GDPR, PECR and operational resilience requirements. Experience running security awareness programmes, including phishing simulations and e-learning platforms. Working knowledge of Microsoft Purview 9DLP (Insider Risk management, Communication Compliance) and the wider Microsoft E5 security stack. Experience responding to internal and external audits and drafting Board and committee papers. Experience of third-party security due diligence and supplier risk assessments. Relevant certifications such as CISSP, CISM, CRISC, CIPP/E or ISO 27001 Lead Auditor (desirable).
30/07/2026
Full time
Overview Sitting in our 2nd Line Function, the Information Security Officer (ISO) plays a pivotal role in helping the bank achieve its growth ambitions in a compliant and secure manner. Working with the Chief Risk Officer and Data Protection Officer, the role holder will ensure the bank has robust and proportionate policies, standards and control frameworks in place. Working with 1st Line colleagues from across the bank, particularly those responsible for Information Security, IT, Operational Resilience and the management, storage and use of data, will provide independent assurance of the efficacy of the control environment and support the delivery of projects and transformational change. A trusted expert and critical friend, the individual will be responsible for working directly with the bank's Executive Team and Board to ensure they have a transparent understanding of the bank's risk posture and responsible for increasing Information Security awareness, skills and understanding across the bank. Responsibilities Provide independent assurance of the control environment by working with 1st Line colleagues across Information Security, IT, Operational Resilience and the management, storage and use of data. Support the delivery of projects and transformational change while promoting information security awareness across the bank. Collaborate with the Executive Team and Board to communicate risk posture and information security considerations clearly. Requirements A minimum of 5 years' experience in a second line information security, GRC or data protection role within a UK regulated financial services firm. Working knowledge of PRA and FCA expectations, UK GDPR, PECR and operational resilience requirements. Experience running security awareness programmes, including phishing simulations and e-learning platforms. Working knowledge of Microsoft Purview 9DLP (Insider Risk management, Communication Compliance) and the wider Microsoft E5 security stack. Experience responding to internal and external audits and drafting Board and committee papers. Experience of third-party security due diligence and supplier risk assessments. Relevant certifications such as CISSP, CISM, CRISC, CIPP/E or ISO 27001 Lead Auditor (desirable).