
51 - 200 employees
Founded 2017
🔒 Cybersecurity
📋 Compliance
💼 Consulting
💰 Debt financing on 2023-04
Cybersecurity • Compliance • Consulting
Cognisys is a cybersecurity and compliance consultancy that provides governance, risk and compliance (GRC) services, CREST-accredited penetration testing, and vulnerability management. They act as a security and compliance partner (including vCISO engagements), and are a leading global service partner for Vanta, helping clients accelerate compliance like SOC 2 and ISO 27001. Cognisys operates internationally with multiple regional teams and offices, offers remote and hybrid roles, and emphasizes agile, client-focused delivery for organisations ranging from startups to large enterprises.
🔥 9 minutes ago
🇬🇧 United Kingdom – Remote
💵 £35k - £42k / year
⏰ Full Time
🟢 Junior
🟡 Mid-level
👮♂️ Cybersecurity / Security Engineer
🚫👨🎓 No degree required
Improve your chances of getting an interview by checking your resume score before you apply.

51 - 200 employees
Founded 2017
🔒 Cybersecurity
📋 Compliance
💼 Consulting
💰 Debt financing on 2023-04
Cybersecurity • Compliance • Consulting
Cognisys is a cybersecurity and compliance consultancy that provides governance, risk and compliance (GRC) services, CREST-accredited penetration testing, and vulnerability management. They act as a security and compliance partner (including vCISO engagements), and are a leading global service partner for Vanta, helping clients accelerate compliance like SOC 2 and ISO 27001. Cognisys operates internationally with multiple regional teams and offices, offers remote and hybrid roles, and emphasizes agile, client-focused delivery for organisations ranging from startups to large enterprises.
• Deliver Governance, Risk & Compliance consulting engagements across multiple clients and industries • Conduct security posture assessments, gap analyses and maturity reviews • Support clients through audit preparation, certification activities and external assessments • Develop remediation plans and help clients track agreed actions through completion • Facilitate client workshops, risk assessments and stakeholder meetings • Build trusted client relationships through practical, commercially focused security advice • Manage multiple client engagements and deliver projects on time and to a high standard • Help design and implement governance, risk and compliance programmes aligned with ISO 27001, SOC 2, NIST Cybersecurity Framework and other recognised standards • Interpret security standards and regulatory requirements into practical business recommendations • Develop and maintain information security policies, standards, procedures, risk registers, control frameworks, risk assessments and governance documentation • Support clients in embedding governance and compliance activities into operational processes • Produce high-quality consulting deliverables • Improve client security programmes and internal delivery methodologies • Collaborate with consulting and technical teams to deliver successful client outcomes • Contribute to improving methodologies, documentation, templates and ways of working
• 2–5 years’ experience in Governance, Risk & Compliance (GRC), Information Security or Risk Management • Practical experience with one or more recognised security frameworks, including ISO 27001, SOC 2 and NIST Cybersecurity Framework • Experience supporting compliance, assurance or certification activities • Strong written communication skills for producing clear, professional client documentation • Excellent stakeholder management and client communication skills • Strong organisational skills and ability to manage multiple client engagements simultaneously • Analytical mindset with a pragmatic, solution-focused approach to problem solving • Ability to work with technical and non-technical stakeholders • Previous consulting experience in a client-facing professional services environment preferred • Experience delivering ISO 27001 implementation or certification projects desirable • Exposure to SOC 2, NIST, PCI DSS, Cyber Essentials Plus or similar frameworks desirable • Experience conducting information security risk assessments and governance reviews desirable • Experience using GRC platforms such as Vanta or similar tools desirable • Highly regarded certifications include ISO/IEC 27001 Lead Implementer, ISO/IEC 27001 Lead Auditor, CISSP, CISM, CRISC, Security+ or equivalent security certifications
• 25 days annual leave per year plus 8 English bank holidays • 1 day of paid leave for your Birthday • Access to Westfield Health Care Cash Plan • Employee mental health and wellbeing platform • £2,000 annual training budget • Referral bonus of up to £2,000 per successful referral • Collaborative and innovative team environment • Challenging projects with real impact for clients • Professional growth encouraged • Reasonable adjustments and accessibility support available
Apply Now🔥 1 hour ago
AI Security Consultant helping PA Consulting clients secure LLMs, agentic systems and cloud environments. Designing practical controls, threat models and responsible AI-enabled security operations.
🔥 5 hours ago
Information Security Specialist advising clients on cybersecurity posture, compliance, and improvement plans. Delivering security systems, training, and implementation projects for a growing consultancy.
🇬🇧 United Kingdom – Remote
💵 £45k - £55k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🕒 Yesterday
Security Architect designing and assuring secure systems for NEC Software Solutions’ public-sector technology services. Conducting threat modelling, risk assessments, accreditation support, and architecture governance.
🕒 2 days ago
Security Architect designing and assuring secure internal and customer systems for NEC Software Solutions. Supporting critical public-sector services through threat modelling, risk management, and security governance.
🕒 3 days ago
Relief Security Officer providing security services across multiple sites in the UK. Ensuring safety while delivering a high standard of customer service with ongoing training and development opportunities.
🇬🇧 United Kingdom – Remote
💵 £13 / hour
💰 Post-IPO Debt on 2023-09
⏰ Full Time
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer