Hire the Best Information Security Audit Freelancers
in the United Kingdom

More than 3,000 reviews on G2
Rating is 4.5 out of 5.
4.5/5
of Upwork by G2 peer reviewers
Mark F.

Malmesbury, United Kingdom

$95/hr
5.0
15 jobs

I am a Cyber Security and Information Technology expert with 20 years experience ranging from small start-ups to multi-billion euro businesses. I hold a CISSP, the gold standard of Information Security Qualifications and I am a certified PCI Professional (PCIP) I specialise in Strategy, Governance, Risk and Compliance - this makes me ideal for projects such as: Helping you achieve Cyber Essentials or IASME Governance status PCI-DSS & ISO 27001 compliance programs and audits Being your Cyber Security / Info Sec manager or CISO on a part-time basis Selecting and managing IT and Cyber Security suppliers on your behalf Writing, reviewing and updating your IT and Cyber Security policies Security Awareness Training I am an award winning public speaker and trainer and my Cyber Security Awareness Training is very popular delivered in person or from my online studio to clients around the world.

  • Information Security Audit
  • Information Security
  • Network Security
  • Security Assessment & Testing
  • Vulnerability Assessment
  • Incident Response Plan
  • Security Policies & Procedures Documentation
  • PCI
  • Certified Information Systems Security Professional
  • Information Security Governance
  • PCI DSS
  • ISO 27001
  • Information Security Awareness
  • Security Infrastructure
  • GDPR
Imran R.

Manchester, United Kingdom

$50/hr
5.0
1 jobs

I am a cybersecurity consultant with 20+ years of hands-on experience. I have worked directly for Barclays, HSBC, ABN AMRO, NatWest, IBM, HP, BT, and Computacenter, covering everything from network security and firewall management to compliance audits and cloud security. I have held roles as Security Consultant, CISO, Network Security Specialist, and WAF Engineer across the UK, Netherlands, and beyond. I started my career managing large-scale IP-MPLS networks at BT, moved into network security at Barclays and HSBC, and over the past several years have focused on compliance, risk management, and managed security services through my own company iSoft. Experience highlights: - Delivered Cyber Essentials audits with a 100% pass rate - Reduced client remediation time by 95% using automated controls - Managed security for law enforcement agencies as acting CISO - Secured systems across banking, insurance, government, telecoms, and legal sectors - Led WAF deployments using F5 Big-IP at Co-op Insurance - Designed and managed network security at HSBC for 2.5 years - Built and led the IP-MPLS team at BT Global Services Services I provide: Compliance and Auditing - Cyber Essentials, ISO 27001, GDPR, DORA, PCI-DSS, HIPAA - Gap analysis, audit preparation, and remediation - Policy writing and documentation Risk and Vulnerability Management - Security risk assessments - Internal and external vulnerability scanning - Penetration testing support and remediation planning Network Security - Firewall design, setup, and management - WAF (F5 certified), VPN, zero-trust architecture - Network traffic analysis and management Cloud Security - AWS, Azure (AZ-500), Office 365 - Hybrid environment security assessments - Identity and access management SIEM and Endpoint Protection - SIEM design, deployment, and ongoing management - CrowdStrike Falcon EDR (certified administrator) - Incident detection, response, and reporting Managed Security Services - Ongoing security monitoring for SMEs - Virtual CISO services - Security awareness training for staff Industries I have worked in: Banking, Insurance, Government, Law Enforcement, Telecommunications, Legal, Healthcare, Education, Fintech Certifications: CISA, CEH, CCSE, F5 Big-IP, CrowdStrike Falcon, CCIE Security If you have an upcoming audit, a security issue, or need a reliable consultant for ongoing work, message me and we can discuss your requirements.

  • Information Security
  • Penetration Testing
  • Network Security
  • Internet Security
  • Computer Network
  • Security Analysis
  • System Hardening
  • System Administration
  • Security Engineering
  • Cisco ASA
  • Vulnerability Assessment
  • Cybersecurity Tool
  • Cyber Threat Intelligence
  • Ransomware Mitigation
  • IT Compliance Audit
  • SSL
  • DNS
  • Firewall
  • ISO 27001
  • AT&T Cybersecurity
Omer R.

London, United Kingdom

$10/hr
4.3
8 jobs

Cyber Security, Compliance, and Cloud Infrastructure expert with extensive knowledge of global regulatory standards and secure architecture review. As an ISO 27001 Lead Auditor and the CTO of CyberGaar, I bring deep technical expertise and strategic leadership to ensure your systems meet strict compliance requirements. Compliance & Audit Expertise Includes: - ISO 27001, PCI-DSS, SOC 2, GDPR - NIST SP 800-53, NIST SP 800-63, OWASP Standards - Risk & Gap Analysis, Control Activity Matrix (CAM) development - Vulnerability Assessment review, Penetration Test & Scanning Report analysis - Documentation review, Physical Security assessments, and Control Advisory Technical & Infrastructure Expertise Includes: - Cloud Platforms: AWS, Azure, Oracle Cloud - DevOps & CI/CD Security: Terraform, Ansible - Virtualization & Containerization: Docker, Kubernetes, VMware, Proxmox - Architecture & Code Review: C++, .NET, Java, Python, Node.js, Next.js - On-Premise and Hybrid Cloud environments

  • PCI
  • NIST Cybersecurity Framework
  • NIST SP 800-53
  • GDPR
  • HIPAA
  • ISO 27001
  • Gap Analysis
  • Secure SDLC
  • .NET Core
  • Java
  • C++
  • Python
  • Terraform
  • Ansible
  • Penetration Testing
Creston V.

Wembley, United Kingdom

$75/hr
4.9
27 jobs

Microsoft 365 Architecture Expert! Microsoft Certified: Cybersecurity Architect Expert E-Learn Certified Professional Penetration Tester Dedicated and ambitious Cyber Security Solutions Architect with a extensive experience in information security principles and industry leading best security practices with over 10 years of experience in the corporate world. I have helped companies achieve compliancy & audited for Cyber Security Frameworks such as ISO 27001, SOC 2, Cyber Essentials Plus, GDPR and many more by carefully planning based on budget, current Infrastructure assessment, Security testings and remediation efforts. Proficient in conducting risk assessments, penetrations testing, implementing security controls, and assisting in incident response. Skilled in utilizing cybersecurity tools and technologies to detect and mitigate threats. Committed to learning and expanding knowledge in the field to contribute to the organization's security objectives. Strong teamwork and communication skills, with a passion for maintaining a secure and resilient IT environment.

  • System Security
  • Security Engineering
  • VPN
  • Cloud Security Framework
  • User Identity Management
  • Microsoft Active Directory
  • Office 365
  • Enterprise Architecture
  • Application Security
  • Virtualization
  • Insurance & Risk Management
  • Malware Detection
  • Security Management
  • Threat Detection
  • Data Protection
Ayushi G.

London, United Kingdom

$60/hr
5.0
19 jobs

Top Rated Plus | CISA | ISO 27001 & ISO 42001 Lead Auditor | IAPP Certified Privacy Professional I'm an IT Audit Manager at a leading European consulting firm, with prior experience at a Big 4, delivering high-impact assurance and advisory engagements across Financial Services, Energy & Infrastructure, and Public Sector clients globally. What I bring to the table: ISO 27001 & 42001 - I hold Lead Auditor certifications for both ISO 27001:2022 and ISO 42001 (AI Management Systems). I've led certification audits end-to-end and supported clients through readiness, gap assessment, policy and procedure development, internal audit programmes, and management review - for both first-time certifications and surveillance cycles. My experience spans multinationals, SMEs, and early-stage startups across the UK, US, EU, and beyond, so I understand how to make the standard practical and proportionate regardless of your organisation's size or maturity. AI Governance - One of a small pool of practitioners certified to audit against ISO 42001. I help organisations build and assess governance frameworks for AI systems, covering risk, accountability, and compliance requirements. Privacy & Data Protection - As a CIPP/E certified professional, I've conducted GDPR audits and gap assessments for clients across the UK, US, EU, and South Africa, covering data mapping, lawful basis, DPIAs, and third-party data flows. Broader Assurance Coverage - My engagements span: - SOC 2 (manual and tool-assisted via Vanta, Drata, Secureframe) - SWIFT Customer Security Controls Framework (CSCF) - Third-Party Risk Assessment (NIST SP 800-53, CIS Controls, CSA CCM) - IT Health Checks (ITHC) and penetration testing oversight - Segregation of Duties (SoD) reviews - SDLC, Change & Incident Management - DR/BCP reviews - ISO 9001 and ISO 27701 Certifications: CISA | ISO 27001:2022 Lead Auditor | ISO 42001 Lead Auditor | CIPP/E | SWIFT CSCF | CSM | CSPO Whether you're a startup pursuing your first ISO certification or an established organisation needing an experienced pair of eyes on your controls, I deliver quality work on time with no chasing required. If you need someone who can hit the ground running, ask the right questions, and give you an honest view of where you stand, feel free to reach out.

  • Financial Audit
  • Cybersecurity Management
  • Business Analysis
  • Information Technology
  • Governance, Risk Management & Compliance
  • GDPR
  • Data Privacy
  • Risk Assessment
  • NIST SP 800-53
  • ISO 27001
  • Product Strategy
  • Digital Transformation
  • Secure SDLC
  • Program Management
  • AI Governance
  • ISO 9001
  • Change Management
  • IT Compliance Audit
  • Incident Management
  • Artificial Intelligence
Rob S.

Bembridge, United Kingdom

$60/hr
4.9
353 jobs

IT Professional with over 30 years experience. 15+ years experience in web development. 10+ Years experience in PCI-DSS Consultation, including level 1 companies, working with QSA's to swiftly obtain compliance. For the past seven years, I have been providing GDPR consultation to many small to medium-sized companies. Five years experience with ISO 27001 helping clients get and maintain ISO 27001 accredited certification. I spent 20 years working in various IT roles, mainly support, engineering, and web development, within one of the largest companies in the world. I was awarded Charted IT Professional status from the British Computer Society in July 2008. Since then, I have run my own company with a small team producing web-based platforms and services and offering freelance compliance consultation to small businesses. I have also worked as a CTO on several start-up projects managing their entire IT infrastructure and gaining valuable PCI compliance experience, essential to all e-commerce projects. Due to my experience and varied IT roles, I have a good knowledge of web design, programming, databases, security, SEO, troubleshooting, technical writing & more. I am a highly organised and reliable individual, utilising existing knowledge and experiences to find practical solutions to even the most complex project.

  • Information Security Audit
  • Information Security
  • Security Analysis
  • Web Content Accessibility Guidelines
  • GDPR
  • Risk Assessment
  • ISO 27001
  • Compliance
  • PCI
  • Website Security
  • Data Protection
  • PCI DSS
  • Vulnerability Assessment
  • Data Privacy
  • Compliance Consultation

How it works

Post a job for freePost a job

Tell us what you need. Create your own job post or generate one with AI then filter talent matches.

Hire top talent fast

Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.

Collaborate easily

Use Upwork to chat or video call, share files, and track project progress right from the app.

Payment simplified

Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.

Don't just take our word for it

How do I hire a Information Security Audit Freelancer in the United Kingdom on Upwork?

You can hire a Information Security Audit Freelancer in the United Kingdom on Upwork in four simple steps:

  • Create a job post tailored to your Information Security Audit Freelancer project scope. We'll walk you through the process step by step.
  • Browse top Information Security Audit Freelancer talent on Upwork and invite them to your project.
  • Once the proposals start flowing in, create a shortlist of top Information Security Audit Freelancer profiles and interview.
  • Hire the right Information Security Audit Freelancer for your project from Upwork, the world's largest work marketplace.

At Upwork, we believe talent staffing should be easy.

How much does it cost to hire a Information Security Audit Freelancer?

Rates charged by Information Security Audit Freelancers on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.

Why hire a Information Security Audit Freelancer in the United Kingdom on Upwork?

As the world's work marketplace, we connect highly-skilled freelance Information Security Audit Freelancers and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Information Security Audit Freelancer team you need to succeed.

Can I hire a Information Security Audit Freelancer in the United Kingdom within 24 hours on Upwork?

Depending on availability and the quality of your job post, it's entirely possible to sign up for Upwork and receive Information Security Audit Freelancer proposals within 24 hours of posting a job description.