London, South East, England, United Kingdom Hybrid/Remote Options
MFK Recruitment
Cyber Security & Centralised Services Manager Location: London Bridge Company: Managed Service Provider (MSP) This role will be office-based for the first 3–6 months, with the option to move to a hybrid working arrangement thereafter. Our client is a well-established MSP based in London Bridge. They are a close-knit team of 30 IT professionals delivering end … to-end technology services and support to a diverse range of clients, with a strong emphasis on cybersecurity, resilience and regulatory compliance. The Opportunity: We are seeking an experienced Cyber Security & Centralised Services Manager with a strong cybersecurity focus to join our growing technical team. In this pivotal role, you will: Act as the primary escalation point for complex … and Account Management teams to maintain high standards of service, document solutions and mentor junior engineers in line with cybersecurity best practices and frameworks such as ISO27001, NIST, and CyberEssentials Plus. Key Responsibilities – Cyber Security & Centralised Services Manager: Serve as the primary escalation point for complex IT and cybersecurity incidents, including malware infections, ransomware attacks, phishing More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
MillsHill Recruitment Limited
Technical Consultant - Managed Services Azure, 365, Networking, CyberEssentials, Endpoint Manager, Copilot, Firewalls. My client is a well established yet growing IT Managed Services provider that are in the market for a proven Technical Consultant. As Technical Consultant you will be working in collaboration with internal teams and directly customers to ensure projects are scoped and deployed efficiently. … a mix of client consultancy and "hands on" technical delivery. As Technical Consultant you will have a proven and broad range of technical skills such as Azure, 365, Networking, CyberEssentials, Endpoint Manager, Copilot, Firewalls and delivering these solutions to clients from within a MSP setting. Alongside your technical ability it is essential that you are a confident … that everything is driven by the needs of the customers. They do aim for 2 days a week from home when possible. Technical Consultant - Managed Services Azure, 365, Networking, CyberEssentials, Endpoint Manager, Copilot, Firewalls. Azure, 365, Networking, CyberEssentials, Endpoint Manager, Copilot, Firewalls.. Azure, 365, Networking, CyberEssentials, Endpoint Manager, Copilot, Firewalls. MillsHill More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
AWD online
Cyber Security Analyst A fantastic opportunity for a motivated Cyber Security Analyst to join a growing technology organisation and help deliver first-class cybersecurity support and compliance solutions to a diverse client base. If you’ve also worked in the following roles, we’d also like to hear from you: Cybersecurity Analyst, Information Security Advisor, Junior Security Consultant … of London office (Faringdon/Chancery Lane EC1N) and 2 day from home JOB TYPE: Full-Time, Permanent JOB OVERVIEW We have a fantastic new job opportunity for a Cyber Security Analyst with a passion for technology, problem-solving, and continuous learning. Working within an innovative team, you’ll play a key role in assessing client systems, improving security … posture, and supporting compliance standards. As a Cyber Security Analyst you will conduct audits, create reports, and implement essential technical controls to strengthen client defences. You’ll work closely with stakeholders, translating complex technical concepts into clear advice that drives meaningful change. This is an exciting opportunity for a Cyber Security Analyst to grow their career in cybersecurity More ❯
infrastructure projects team and act as the technical lead for all security/vulnerability remediation activities of the current Windows endpoint and server estate, with an initial focus of CyberEssentials compliance. The role will also be responsible for the allocation and management of tasks/work packages for a team of Senior System Analysis who will also … devices, plus the University’s current Windows server estates. The initial engagement is for a fix term period of 6 months to assist with the preparation for an upcoming CyberEssentials accreditation. The roles may also be required however to assist with other areas of the general support of the current Windows estate. Key Responsibilities To meet the … Professional certifications (e.g., Microsoft MCSE/MCP). ITIL Foundation or higher; PRINCE2 or Agile project management qualifications. Experience in Higher Education or DevOps. Experience working on and delivering CyberEssentials Technical Requirements Essential 5+ years’ experience in day-to-day management of large Windows endpoint estates of 3,000+ devices 5+ years’ experience in day-to-day More ❯
projects team and be directly responsible for undertaking a range of security/vulnerability remediation activities of the current Windows endpoint and server estate, with an initial focus of CyberEssentials compliance. Candidates may also be expected to provide general support activities for the current Windows estate and related on-going Windows infrastructure maintenance tasks. The overall objective … devices, plus the University’s current Windows server estates. The initial engagement is for a fix term period of 6 months to assist with the preparation for an upcoming CyberEssentials accreditation. The roles may also be required however to assist with other areas of the general support of the current Windows estate. Technical Requirements Essential 5+ years … can-do attitude Strong experience with MS Active Directory, SCCM, Intune AD Group Policy configuration and troubleshooting Solid understanding of security requirements for Windows endpoints/applications to meet CyberEssentials compliance Specific experience of conducting security/vulnerability patching and remediation at scale Application packaging/deployment via SCCM Working in an ITIL environment with change and More ❯
Cyber Security Lead Oxfordshire - Hybrid - 2 days per week (Flexible) £50k - £60k plus Benefits Our Client are an award-winning leading IT company offering complete outsourced IT solutions to organisations across the UK and Europe. Based in Oxfordshire they provide a comprehensive range of support services, software and hardware solutions to major blue-chip clients and their technicians are … security within the MSP. They lead Quarterly Security Reviews (QSRs), own the client risk register and exception process, and ensure services are delivered in line with frameworks such as CyberEssentials, ISO27001, and NIST. Internally, the Security Lead is accountable for the MSP's own security posture ensuring tools, processes, and teams meet the same standards we deliver … . Behaviors Required Strategic Thinking - able to translate technical risks into business outcomes and align security initiatives with client goals and budgets. Strong Governance Mindset - experienced in managing frameworks (CyberEssentials, ISO27001, NIST) and embedding them into MSP operations and client environments. Risk Communication - skilled at presenting complex security issues clearly to non-technical stakeholders, both internally and More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
Franklin Fitch
Cyber Security Assurance Manager Overview An exciting opportunity has arisen for an experienced Cyber Security Assurance Manager to take ownership of security certifications, audits, and assurance standards for a leading Security Operations Centre (SOC) environment. This role will focus on delivering and maintaining key certifications such as ISO/IEC 27001 , SOC 2 Type II , CyberEssentials … global SOC function. Key Responsibilities Certification Delivery & Maintenance Lead the delivery and ongoing maintenance of SOC-related certifications including SOC 2 Type II , SOC 3 , ISO/IEC 27001 , CyberEssentials Plus , and CREST . Manage sector-specific compliance such as PCI DSS and NCSC CIR/CHECK . Ensure timely renewals and proactively address compliance gaps. Security … and awareness sessions on SOC assurance standards and compliance best practices. Experience & Qualifications Proven experience delivering and maintaining certifications such as ISO/IEC 27001 , SOC 2 Type II , CyberEssentials Plus , and CREST . Solid understanding of SOC operations and security assurance frameworks . Experience managing customer-facing assurance activities, including audits, RFIs, and RFPs. Knowledge of More ❯
Head of IT Security - Wembley - (Enterprise-wide Cyber & Information Security) Location: Wembley - 5 days on-site Salary: (phone number removed) per annum My client is looking to recruit a Head of IT Security to lead and shape their enterprise-wide security function. This is a senior leadership role offering the opportunity to define security strategy, strengthen governance, and protect … critical systems, data, and operations. The Role: As Head of Security, you will own the strategic and operational delivery of all information and cyber security activities. You'll develop and implement robust security policies, oversee incident response, and ensure compliance with GDPR, PCI DSS, ISO 27001, and CyberEssentials Plus. You will be the single point of … a 3-5 year Security Strategy and Roadmap covering technology, people, and processes. Embed security by design across projects, platforms, data flows, and product development. Lead enterprise-wide information, cyber, and data security governance. Define and implement security frameworks, policies, and operating models. Ensure compliance with GDPR, PCI DSS, CyberEssentials Plus, and ISO/IEC More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
MFK Recruitment
such as Mimecast, Avanan, SentinelOne, MDR/XDR, Fortinet, Huntress, Datto, and Autotask Strong troubleshooting, analytical, and communication skills Ability to work independently and collaboratively across teams Experience with CyberEssentials, CyberEssentials Plus, and other frameworks such as NIST, ISO27001 Commitment to producing clear documentation and knowledge sharing Desirable Certifications Microsoft Certified: Azure Administrator/ More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom Hybrid/Remote Options
Hays
governance, risk and compliance (GRC). You will assess risks, review supplier and project security, respond to security questionnaires and tenders, support incident investigations, and help maintain compliance with CyberEssentials Plus, ISO 27001, DSPT and GDPR. Responsibilities Conduct risk assessments for systems, projects and third parties; document findings and remediation. Review and respond to supplier/security … security configuration (M365/Azure/Defender/DLP/Conditional Access). Maintain risk register and track remediation actions from audits or incidents. Support compliance activities (ISO 27001, CyberEssentials Plus, DSPT) and contribute to policy updates. Provide clear security advice to projects and senior stakeholders. What you'll need to succeed Proven experience in information security … through questionnaires, procurement documents, and assurance reviews. Knowledgeable in risk management practices and frameworks such as ISO 27005 and NIST RMF. Familiar with key compliance standards including ISO 27001, CyberEssentials Plus, DSPT, and GDPR. Capable of interpreting vulnerability assessments and advising on appropriate remediation strategies. Excellent communication skills, both written and verbal, with the ability to engage More ❯
Employment Type: Contract, Work From Home
Rate: Up to £36.0 per hour + £36 per hour inside IR35 (via Umbrella)
Information Security Manager to lead and strengthen their information security function. This is a hands-on, strategic role where you’ll manage a small team, oversee ISO 27001 and CyberEssentials Plus compliance, and drive continuous improvement across the business. What You’ll Do: Develop and deliver the firm’s information security strategy. Lead and mentor a small … team of IT security professionals. Own ISO 27001 implementation and CyberEssentials Plus certification. Manage operational security: endpoint protection, M365 security, SIEM/SOC, vulnerability management, and incident response. Lead security projects. Build strong relationships with stakeholders and deliver security awareness training. What We’re Looking For: Proven experience in information security management, ideally in professional services. Hands … on experience with ISO 27001 and CyberEssentials Plus. Strong technical knowledge: endpoint security, M365/Entra ID, SIEM, network security, encryption, backup/recovery. Certifications highly desirable: CISM, CISSP, ISO 27001 Lead Implementer . Excellent communicator, strategic thinker, and supportive team leader. Why Apply: This is your chance to shape the security strategy for a forward-thinking More ❯
West Malling, Kent, United Kingdom Hybrid/Remote Options
Lumina Energy
required Salary/package: £100,000 - £110,000 per annum Contract type: Permanent Hours: Full time, 37 hours per week We are looking for an experienced and forward-thinking cyber security leader to join our Corporate Services division as Head of Cyber Security. This is a senior strategic role with organisation-wide visibility and impact. If you have … the vision, expertise and influence to embed robust cyber security across a complex and fast-growing business, we want to hear from you. Who we are Commercial Services Group is one of the UK's largest local authority-owned trading organisations, comprising 33 diverse businesses that operate across education, local government, the NHS and beyond. We provide services in … public services. Corporate Services underpins the success of all Commercial Services Group trading divisions by providing the infrastructure, expertise and governance needed to enable growth, innovation and resilience. The Cyber Security function sits within Corporate IT and plays a central role in protecting the Group's digital assets, data and reputation. Why this role matters As Head of CyberMore ❯
enterprise compute platforms, data networks, UNIX/Linux/Windows environments, cloud services, data centres, commercial software solutions, and end-user support across all UKAEA sites. Role Overview : The Cyber Security Specialist plays a pivotal role in advancing UKAEA's hybrid digital estate, encompassing enterprise IT, operational technology (OT), and research platforms. This role sits within the Information & Cyber Security Group and provides subject matter expertise in security architecture, cyber risk governance, and assurance frameworks. This is a cross-functional role with both advisory and hands-on responsibilities, focusing on security assurance, risk management and supporting architecture reviews, vulnerability management, risk assessments, cyber defence posture, driving technical assurance, and embedding risk-aligned security controls across IT … and platforms. You will also guide teams in applying secure-by-design principles and support both internal audit and external compliance efforts including Gov Assure, CAF, ISO 27001, and CyberEssentials (CE and CE+) while supporting the secure operation of core services. The role requires strong stakeholder engagement, technical depth, and a sound understanding of UK-specific cyberMore ❯
Reading, Berkshire, United Kingdom Hybrid/Remote Options
FSP Retail Team
As a long standing and highly accredited Microsoft Partner, with extensive solution designations, we partner with clients across a range of commercial sectors, enabling digital transformation, innovation and robust cyber security. We navigate the complexities of data sensitivity, confidentiality, governance and compliance. We blend strategic insight, depth of technical expertise, delivery and operational excellence to meet the specific requirements … to security and quality is reinforced by our ISO27001 and ISO9001 certifications (UKAS), as well as our CREST approved penetration testing and SOC capabilities. Additionally, we are an IASME CyberEssentials Certification Body and CyberEssentials Plus certified. Find out more about our accolades here: Why work for FSP? A collaborative and supportive environment in which More ❯
Reading, Berkshire, United Kingdom Hybrid/Remote Options
FSP Retail Team
As a long standing and highly accredited Microsoft Partner, with extensive solution designations, we partner with clients across a range of commercial sectors, enabling digital transformation, innovation and robust cyber security. We navigate the complexities of data sensitivity, confidentiality, governance and compliance. We blend strategic insight, depth of technical expertise, delivery and operational excellence to meet the specific requirements … to security and quality is reinforced by our ISO27001 and ISO9001 certifications (UKAS), as well as our CREST approved penetration testing and SOC capabilities. Additionally, we are an IASME CyberEssentials Certification Body and CyberEssentials Plus certified. Find out more about our accolades here: Why work for FSP? At FSP, we are committed to providing More ❯
Be Doing Delivering and maintaining security across Microsoft 365 and Azure . Building and tuning detections in Microsoft Sentinel . Managing patching, malware protection, and vulnerability remediation . Supporting CyberEssentials Plus and ongoing compliance programmes. Documenting changes, maintaining governance, and ensuring minimal disruption. Mentoring a service desk engineer stepping into cyber security. What You'll Bring … security, Defender, Intune, and Azure AD/Entra ID . Working knowledge of Azure Sentinel (SIEM) and KQL. Solid understanding of patch management and endpoint security. Previous involvement in CyberEssentials Plus or ISO27001 accreditation. Clear communication skills, able to engage technical and non-technical stakeholders. Why Join You'll be stepping into a critical transformation phase where More ❯
all data standards are complied with and to achieve high data quality; to act as the 2LOD role for IT risks including Data Management Risk, Information Security Risk (including Cyber) and Technology Risk, be responsible for defining the relevant key controls, overseeing and challenging the effectiveness of control measures.Responsibilities: Develop Data Protection and Governance policies, procedures and processes related … the software development lifecycle for various kinds of applications, ensuring data is protected and governed. Essential & Desirable KnowledgeProficiency in MS Office applications (Excel, Word, and PowerPoint) is essential.GDPR - ISO27001 - CyberEssentials Plus - PCI DSS - OneTrust.Practical application ability with Microsoft Access, Project, Visio, SQL, Python and Tableau is desirable.Practical application ability with Data Governance and Data Quality Management tools … abilities and problem-solving skills. Ability to work under pressure.Ability to pick up new concepts and skills.Good awareness and understanding of current regulatory compliance requirements: PRA, FCA, ISO27001 - GDPR - CyberEssentials - PCI -DSS A good team player with a flexible approach and a proactive "can do" attitude.Develops in accordance with standards and agreed industry best practice Hays Specialist More ❯
london (harrow), south east england, united kingdom
Reflection AI
Google Brain, Meta, Character.AI, Anthropic and beyond. What You'll Do Develop and maintain company-wide information security policies and frameworks (US: SOC 2, NIST, GDPR; UK: ISO 27001, CyberEssentials, GDPR) Oversee IT operations across our three offices (London, New York, San Francisco), ensuring systems, devices, and networks remain secure and reliable Lead incident response, risk assessments … or tech-driven environments Strong knowledge of network, cloud, and endpoint security (AWS/GCP/Azure) Familiarity with key compliance frameworks (US: SOC 2, NIST; UK: ISO 27001, CyberEssentials) Experience implementing MDM, SSO, and IAM systems Excellent communication skills and the ability to translate technical risk into practical action Certifications such as CISSP, CISM, or Security+ More ❯
of IT on service compliance, health and technical risks Champion best practice across service delivery, patch management and system resilience Contribute directly to the ongoing ISO 27001 certification and CyberEssentials Plus compliance Act as deputy to the Head of IT, maintaining continuity of leadership Some specific tasks include: Operational leadership ie lead daily IT Operations, ensuring system … and policy changes. Service Delivery ie own the service delivery KPIs, and drive process improvement through ITIL aligned practices. Produce weekly operational reports. Governance, Security and Compliance ie Support CyberEssentials Plus and ISO 27001, ensure adherence to patching, backup and endpoint compliance metrics. The Ideal Candidate Were looking for the following in the successful candidate: Solid, progressive More ❯
Chandler's Ford, Eastleigh, Hampshire, England, United Kingdom
Hartley Resourcing
of IT on service compliance, health and technical risks Champion best practice across service delivery, patch management and system resilience Contribute directly to the ongoing ISO 27001 certification and CyberEssentials Plus compliance Act as deputy to the Head of IT, maintaining continuity of leadership Some specific tasks include: Operational leadership – ie lead daily IT Operations, ensuring system … and policy changes. Service Delivery – ie own the service delivery KPIs, and drive process improvement through ITIL aligned practices. Produce weekly operational reports. Governance, Security and Compliance – ie Support CyberEssentials Plus and ISO 27001, ensure adherence to patching, backup and endpoint compliance metrics. The Ideal Candidate We’re looking for the following in the successful candidate: Solid More ❯
facing and internal security strategy within our Managed Services environment. This is a strategic and hands-on leadership position - you'll oversee security governance, ensure compliance with leading frameworks (CyberEssentials, ISO27001, NIST), and maintain a strong internal security posture across our systems and services. You'll lead Quarterly Security Reviews (QSRs), manage client risk registers, and act … compliance, and risk registers. Translate technical risks into meaningful business impacts and recommendations. Manage internal and client risk registers and exception processes. Oversee security compliance across frameworks such as Cyber Essentials+, ISO27001, and NIST . Ensure secure deployment and monitoring of core MSP systems (RMM, XDR, PSA, backup, etc.). Collaborate with service and project teams to embed security … re confident presenting to senior stakeholders and enjoy leading teams and shaping best practice. Essential Skills & Experience 5+ years in IT security or MSP environments . Strong understanding of CyberEssentials, ISO27001, or NIST frameworks. Experience managing patching, vulnerability, and risk governance . Skilled communicator with the ability to explain risks to non-technical audiences. Proven experience leading More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Michael Page Technology
point for complex endpoint issues. Support IT and AV infrastructure including print services, VC/event tech, and room booking systems. Contribute to endpoint security compliance and certifications (e.g., CyberEssentials). Manage diverse EUC environments across multiple teams, ensuring minimal disruption during major upgrades, backup changes, and policy implementation Profile Expertise Proven experience in end-user computing … Strong knowledge of Microsoft Endpoint Manager (Intune) and Microsoft 365. Experience supporting hybrid working environments and implementing BYOD policies. Excellent troubleshooting and communication skills. Familiarity with compliance frameworks (e.g., CyberEssentials, ISO 27001). Ability to manage complex tasks and multi-site projects. Proven experience in managing and optimising end-user computing environments. Strong skills in Intune, Microsoft More ❯
Banbury, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
DDaT). Key purposes of this role include: Safeguarding Operations: Actively manage and enhance our security platforms (primarily SIEM, XDR and IDAM polices) to detect, prevent, and respond to cyber threats across our IT and operational networks. Implementing and reviewing Security Controls: Serve as the subject matter expert for implementing technical security controls on applications, networks, and infrastructure to … Create and update troubleshooting guides and knowledge base articles to support the wider team. Compliance and Governance Ensure practices meet known frameworks and standards including (but not restricted to): CyberEssentials Plus, Cyber Assessment Framework, ISO 27001, and CIS. Support and participate in internal and external security audits, providing technical assurance and evidence to ensure our systems … steering committees, and stakeholder engagements. Provide mentorship to the DDaT team members, promoting a culture of continuous improvement. Person Specification Essential A background in IT infrastructure, cloud services, and cyber security. Proven continuous development in both technical and soft domains. Proficiency with security tools and technologies such as SIEM, DLP, network protection, threat detection, and endpoint protection. An understanding More ❯
Hook Norton, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
DDaT). Key purposes of this role include: Safeguarding Operations: Actively manage and enhance our security platforms (primarily SIEM, XDR and IDAM polices) to detect, prevent, and respond to cyber threats across our IT and operational networks. Implementing and reviewing Security Controls: Serve as the subject matter expert for implementing technical security controls on applications, networks, and infrastructure to … Create and update troubleshooting guides and knowledge base articles to support the wider team. Compliance and Governance Ensure practices meet known frameworks and standards including (but not restricted to): CyberEssentials Plus, Cyber Assessment Framework, ISO 27001, and CIS. Support and participate in internal and external security audits, providing technical assurance and evidence to ensure our systems … steering committees, and stakeholder engagements. Provide mentorship to the DDaT team members, promoting a culture of continuous improvement. Person Specification Essential A background in IT infrastructure, cloud services, and cyber security. Proven continuous development in both technical and soft domains. Proficiency with security tools and technologies such as SIEM, DLP, network protection, threat detection, and endpoint protection. An understanding More ❯
Cyber Security Engineer – Kent (Hybrid) – Circa 55K + Benefits and Bonus 🔒 We’re looking for a hands-on Cyber Security Engineer to join our IT team. You’ll help protect our systems, manage patching, identify vulnerabilities, and respond to security events, while occasionally supporting general IT projects. What you’ll do: Monitor systems and networks for potential threats. … Investigate and respond to security alerts, escalating when needed. Manage security patching: testing, deploying, and verifying updates. Maintain cyber security procedures and documentation. Provide IT support when required. Attend regular cyber/vulnerability meetings and share expertise. What we’re looking for: 2+ years in an IT security role. Experience with vulnerability management and patch deployment (e.g., Microsoft … Intune). Familiarity with ITIL support processes and CyberEssentials or ISO 27001. Strong technical knowledge of IT infrastructure, networks, and operating systems. Good communication skills to explain risks to technical and non-technical teams. CompTIA Security+ or equivalent qualification. Who you are: Methodical, thorough, and detail-oriented. Reliable, proactive, and flexible with a “can do” attitude. Strong More ❯