The team you'll be working with: The Security Architect will be responsible for the design, implementation and ongoing development of the security architecture of the client's IT systems. The Security Architect will draw upon Enterprise Security Architecture or Security Solutions Architecture to: - Identify business objectives, user needs, risk appetite and cyber security obligations - Identify vulnerabilities, perform threat modelling, undertake risk assessment, evaluate the effectiveness of security controls - Verify and evidence alignment to 'Secure by Design' principles, corporate security policy/standards as well as industry recognised frameworks and best practice What you'll be doing: Develop, deliver and continually enhance a coherent approach to the design of secure client … end-to-end solutions Develop secure conceptual, logical and high level designs by identifying appropriate security controls to be embedded in solutions that meet business requirements whilst evidencing alignment to the target risk appetite. Own the design and be able to articulate and justify design recommendations at security architecture assurance gates Draft design documentation, options papers, risk assessments More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Redefined Ltd
About the job you're considering As a Security Manager, you will be the focal point of contact for any security matters on client engagements. With diverse clients covering a vast expanse of industry sectors, a day in the life of a Capgemini Security Manager is never dull. The role requirements vary from client to client and … sits within a wider Managed Services function, residing in the Cloud Infrastructure Services (CIS) UK business line. You will have the opportunity to interact with our global team of security experts, from Architects to Engineers, Analysts to Compliance Managers. Outreach in CIS doesn’t just stop at security, as we actively encourage our staff to engage with other … back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Your role As a part of our fantastic Cyber Delivery team, comprising of 45+ security professionals, you will aid in delivering crucial security services and be accountable for the end-to-end management of security issues and incidents, acting as a single More ❯
striking and feel effortless to fill out, Typeform drives 500 million responses every year—and integrates with essential tools like Slack, Zapier, and Hubspot. About the Team At Typeform, security isn’t just a requirement—it’s a core part of how we build trust with our customers. Our InformationSecurity … team plays a crucial role in ensuring our business operates securely, complies with industry standards, and supports our teams across the organization. As we scale, we’re expanding our InfoSec team to enhance our security posture, maintain compliance, and support business growth. You’ll be working closely with teams across Security, Sales, Customer Success, Legal, SRE, People, and … Finance to ensure security remains a top priority in everything we do. About the Role As an InformationSecurity Analyst , you will help shape and execute our security and compliance strategy. You will support compliance frameworks such as ISO/IEC 27001, SOC 2, HIPAA, and GDPR , help manage risk, and ensure that security practices More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Computershare
Job Description InformationSecurity Specialist - Bristol In this position, you'll be based in the Bristol office for a minimum of three days a week, with the flexibility to work from home for some of your working week. Find out more about our flexible work culture at computershare.com/flex. We give you a world of potential The … Global InformationSecurity team is responsible to drive the development, deployment and management of information and Cyber Security across the Computershare businesses, globally. Through partnerships with the business units, Technology Services and other support functions, the Global InformationSecurity team actively support the business objectives whilst reducing the overall composite risk to Computershare. The … Global InformationSecurity Senior Analyst will play a key role in the team, accountable for the delivery of the InformationSecurity programme, which as part of the wider GIS strategy aims to develop our processes and technologies. These are maintained in line with the wider technology strategy, whilst continuing to meet the requirements of the wider More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Locke and McCloud
This range is provided by Locke and McCloud. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range InformationSecurity Analyst Location: Bristol (Hybrid, 3 days in-office) Join a leading professional services firm as a InformationSecurity Analyst , where you'll play a key … role in safeguarding the organisation's informationsecurity posture. Working in a growing, collaborative team, you'll contribute to the firm's ISMS expansion and act as deputy to the InformationSecurity Manager when needed. Key Responsibilities & Requirements: Lead and support the implementation and management of the ISO 27001 framework and related compliance efforts. Conduct risk … assessments, third-party/vendor risk management, and business continuity planning. Develop, update, and enforce cybersecurity policies, procedures, and security documentation. Perform incident response planning and investigations, working closely with technical and non-technical teams. Deliver executive-level reporting on security risks, compliance KPIs, and audit outcomes. Provide training and awareness initiatives to enhance security across the More ❯
Job Title: Cyber Security Manager Location: Wiltshire, United Kingdom (with some travel required) Salary: £62,000 - £73,000 (depending on experience) + Bonus + Excellent Benefits Clearance: Must be a British National and SC Cleared or Eligible About the Role: We are seeking a highly skilled and motivated Cyber Security Manager to lead and enhance our cyber security … framework aligned with industry best practices. Key Responsibilities: * Lead and manage cyber security incidents, ensuring timely resolution and root cause analysis. * Oversee the implementation and maintenance of InfoSec and Cyber Security compliance and assurance programs. * Ensure alignment with ISO 27001, NIST, and other relevant security frameworks. * Collaborate with the Security Operations team to monitor, detect … will be treated in the strictest confidence and we would always speak to you before discussing your CV with any potential employer. Keywords: Cyber Security Manager, Incident Management, InfoSec, Cyber Assurance, ISO 27001, NIST, CISSP, CISM, GRC, Security Operations, SOC, Risk Management, Threat Landscape, Defence, Stakeholder Engagement, Security Frameworks, SC Clearance, British National, Cyber Compliance, SecurityMore ❯
Data and Security Compliance Manager - Fixed Term Location: Bristol HR Director, Victoria James • 03 February 2025 We are looking for an experienced Data and Security Compliance Manager to lead and maintain our compliance with ISO 9001, IS0 14001, ISO 27001, Cyber Essentials Plus, MOD-level SAQs, FSQS and GDPR regulations. The role is crucial in ensuring our agency … adheres to best practices and legislation in data protection, informationsecurity, quality management, environmental compliance and industry-specific security standards. The ideal candidate will have experience in compliance management, risk assessment, audits, security frameworks and policy implementation. They will need to work across teams such as IT, Operations, Finance, Delivery and Engineering to ensure robust governance … the conduit between contracts and project teams to ensure we are meeting our commitments Supplier/vendor management including vendor specific assessments and flow down policy control and compliance Informationsecurity and Cyber Essentials Plus Oversee Cyber Essentials Plus compliance ensuring security controls are in place Work closely with the IT team to assess vulnerabilities, manage risk More ❯
Data and Security Compliance Manager - Fixed Term Location: Bristol HR Director, Victoria James • 03 February 2025 We are looking for an experienced Data and Security Compliance Manager to lead and maintain our compliance with ISO 9001, IS0 14001, ISO 27001, Cyber Essentials Plus, MOD-level SAQs, FSQS and GDPR regulations. The role is crucial in ensuring our agency … adheres to best practices and legislation in data protection, informationsecurity, quality management, environmental compliance and industry-specific security standards. The ideal candidate will have experience in compliance management, risk assessment, audits, security frameworks and policy implementation. They will need to work across teams such as IT, Operations, Finance, Delivery and Engineering to ensure robust governance … the conduit between contracts and project teams to ensure we are meeting our commitments Supplier/vendor management including vendor specific assessments and flow down policy control and compliance Informationsecurity and Cyber Essentials Plus Oversee Cyber Essentials Plus compliance ensuring security controls are in place Work closely with the IT team to assess vulnerabilities, manage risk More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
left Client: Location: Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 col-wide Job Description: Company Overview Cyber Security Associates Limited (CSA), established in 2013, provides cyber consultancy and cyber managed services which help to detect, protect and educate against the ever-changing cyber threat. CSA has built … foundation of UK Government (ex-Military) and commercially experienced specialists all holding current and relevant cyber certifications. Today CSA’s core services are based around a 24/7 Security Operations Centre (SOC) based in Gloucester. CSA is backed by FluidOne, a market leading connected cloud solutions provider, who provide support and funding firepower for our ambitious growth plans. … Our vision is to be the best quality UK cyber security managed service provider. Role Overview As a Senior SOC Analyst, Technical Lead, you will work with a specialized and experienced team. Building and maintaining strong client relationships will be at the forefront of your responsibilities. You will assist and be directly involved in daily SOC operations, providing technical More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
gloucester, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 23.05.2025 Expiry Date: 07.07.2025 col-wide Job Description: Company Overview Cyber Security Associates Limited (CSA), established in 2013, provides cyber consultancy and cyber managed services which help to detect, protect and educate against the ever-changing cyber threat. CSA has built … foundation of UK Government (ex-Military) and commercially experienced specialists all holding current and relevant cyber certifications. Today CSA’s core services are based around a 24/7 Security Operations Centre (SOC) based in Gloucester. CSA is backed by FluidOne, a market leading connected cloud solutions provider, who provide support and funding firepower for our ambitious growth plans. … Our vision is to be the best quality UK cyber security managed service provider. Role Overview As a Senior SOC Analyst, Technical Lead, you will work with a specialized and experienced team. Building and maintaining strong client relationships will be at the forefront of your responsibilities. You will assist and be directly involved in daily SOC operations, providing technical More ❯
Operations , Regulatory, Incident & Event Management risk areas, you will: Be part of a team of professionals in areas covering Incident Management, Regulatory, and Event Management. Build and cultivate a security focused culture through partnership and collaboration with the business and technology teams to deliver customer value and improve the security posture of the firm. Provide support and guidance … Management processes specifically is a must. Familiarity with risk management and governance: Experience/involvement with developing and implementing risk management frameworks and governance structures to mitigate technology and security risks. Experience in cybersecurity, technology risk and controls, risk-based consulting, risk assessments, audit, and/or regulatory activities. Strong written and verbal communication skills with ability to effectively … communicate and present security risk and control concepts to senior business and technology partners. Strong analytical and problem-solving skills: Ability to analyze complex issues, identify root causes, and develop effective mitigation strategies, including in the context of emerging technologies. Regulatory and compliance knowledge: Familiarity with relevant regulatory requirements and industry standards (e.g., ITIL, COBIT, ISO 27001, NIST). More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Cyber UK
InformationSecurity Manager Hybrid – MOD Abbey Wood, Bristol Full Time, Permanent Competitive salary plus benefits Join Serco’s UK & Europe division as an InformationSecurity Manager in our Armed Forces Recruitment Service (AFRS) team and take operational ownership and accountability for informationsecurity management processes for Defence opportunities. In this role, you will deliver … manage, and audit the cyber security aspects of contracts in accordance with MOD Secure by Design standards. You will oversee the extensive security arrangements for Serco partners and subcontractors, ensuring their compliance with MOD standards. Additionally, you will ensure adherence to data protection legislation through close collaboration with contract Data Protection Champions and senior management. At Serco, we … source. Main responsibilities of the role: Engage with key industry partners and suppliers to ensure ongoing compliance with MOD standards (e.g., Secure By Design, DefStan 05-138). Conduct informationsecurity risk assessment and management using recognized frameworks such as NIST SP800. Perform informationsecurity assurance activities and manage incidents. Establish and manage internal and external More ❯
Cyber Security Senior Consultant Manchester, Cheltenham or London Role Purpose NCC Group provides Information Assurance consultancy to help companies protect critical systems and information. We do this by defining security strategies, developing policies, conducting security maturity and risk assessments and implementing security solutions. We also provide security staff augmentation to clients so that our … consultants may occupy security roles within the client environment in the short, medium or long term. Our core consulting and implementation services include: Strategy & transformation On-demand virtual roles Data discovery and mapping Risk advisory and assurance Continuity/Resilience Data privacy and GDPR ISO 27001 & NIST CSF Supplier assurance PCI, PA & P2PE Incident response planning Card production audits … Cyber security review SOC advisory & implementation XDR consulting & implementation Alongside our core services, we have a range of bespoke services to help organisations protect their systems and information: Risk Assessments Security Architecture Review InformationSecurity Awareness and Training Programmes InformationSecurity Policy Development Security Transformation Programmes We have a fantastic new opportunity More ❯
Yeovil, Somerset, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
Job Description: The opportunity: Leonardo UK is seeking a proven and experienced Principal Consultant to join the Cyber & Security Solutions Division team. This role is focused on the delivery of one of the company's core products to an existing customer. This role will lead a team that will oversee, co-ordinate and deliver all facets of cyber and … informationsecurity related to the delivery across an engineering lifecycle - from requirements all the way through to in-service support and maintenance. This is an exciting opportunity at the very beginning of a significant programme, during which you will ensure that the product and associated deliverables are as secure as reasonably practicable, and in accordance with customer's … and working on site at one of our Leonardo offices and closely with our customers. Talk to us to find out more. What you'll do as a Principal Security Consultant: Leading a team to meet all aspects of the cyber and informationsecurity delivery across an engineering lifecycle. Interpreting customer requirements into actionable security management More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Motability Operations
Description The Data Security Engineer is responsible for designing, implementing, and maintaining MO's data security frameworks to safeguard sensitive information against unauthorised access, breaches and cyber threats. This role focuses on identifying vulnerabilities, establishing robust security protocols and ensuring compliance with industry standards and regulatory requirements. The Data Security Engineer collaborates with cross-functional … teams to develop security solutions that align with business objectives, enhance system resilience and promote a culture of data security across the organisation. By proactively addressing security challenges, this role plays a pivotal part in protecting MO's digital assets and fostering trust among stakeholders & customers. You are a detail-oriented and analytical professional with a passion … for safeguarding data and a deep understanding of security best practices. With a solid foundation in cybersecurity principles, you have experience designing and implementing security measures that protect sensitive information in complex environments. Your technical expertise spans areas such as encryption, access controls, vulnerability assessments and incident response. You have excellent problem-solving skills and a proactive More ❯
Employment Type: Permanent, Part Time, Work From Home
Bristol, England, United Kingdom Hybrid / WFH Options
LAGOFIRE SRL
Description The Data Security Engineer is responsible for designing, implementing, and maintaining MO's data security frameworks to safeguard sensitive information against unauthorized access, breaches, and cyber threats. This role focuses on identifying vulnerabilities, establishing robust security protocols, and ensuring compliance with industry standards and regulatory requirements. The Data Security Engineer collaborates with cross-functional … teams to develop security solutions that align with business objectives, enhance system resilience, and promote a culture of data security across the organization. By proactively addressing security challenges, this role plays a pivotal part in protecting MO's digital assets and fostering trust among stakeholders & customers. You are a detail-oriented and analytical professional with a passion … for safeguarding data and a deep understanding of security best practices. With a solid foundation in cybersecurity principles, you have experience designing and implementing security measures that protect sensitive information in complex environments. Your technical expertise spans areas such as encryption, access controls, vulnerability assessments, and incident response. You have excellent problem-solving skills and a proactive More ❯
Operations , Regulatory, Incident & Event Management risk areas, you will: Be part of a team of professionals in areas covering Incident Management, Regulatory, and Event Management. Build and cultivate a security focused culture through partnership and collaboration with the business and technology teams to deliver customer value and improve the security posture of the firm. Provide support and guidance … Management processes specifically is a must. Familiarity with risk management and governance: Experience/involvement with developing and implementing risk management frameworks and governance structures to mitigate technology and security risks. Experience in cybersecurity, technology risk and controls, risk-based consulting, risk assessments, audit, and/or regulatory activities. Strong written and verbal communication skills with ability to effectively … communicate and present security risk and control concepts to senior business and technology partners. Strong analytical and problem-solving skills:Ability to analyze complex issues, identify root causes, and develop effective mitigation strategies, including in the context of emerging technologies. Regulatory and compliance knowledge:Familiarity with relevant regulatory requirements and industry standards (e.g., ITIL, COBIT, ISO 27001, NIST). More ❯
work within a dynamic, passionate Cybersecurity Practice. Your role involves implementing cybersecurity solutions for clients across various sectors and environments. This client-facing position focuses on control implementation, infrastructure security hardening, technical remediation, and cyber risk reduction. You will work independently while aligning with industry standards and client needs. The role offers opportunities to work with diverse organizations, technologies … enhancing cyber resilience in complex environments. Responsibilities Implement and support cybersecurity solutions across client environments, ensuring compliance with standards and regulations. Conduct system and infrastructure hardening, including configuration reviews, security baseline application, and policy enforcement across cloud, on-premises, and hybrid setups. Perform control assessments, gap analysis, and remediation planning to address vulnerabilities and non-compliance. Support deployment of … controls like endpoint protection, access management, network segmentation, logging, and encryption. Collaborate with stakeholders to provide guidance and support tailored to specific business and regulatory needs. Participate in security design reviews and technical workshops, offering practical insights. Create technical documentation such as guides, reports, and configuration artifacts for assurance and audits. Stay updated on emerging threats, vulnerabilities, and mitigation More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Ripjar
Chief InformationSecurity Officer (CISO) 1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Ripjar specialises in the development of software and data products that help governments and organisations combat serious financial crime. Our technology is used to identify criminal activity such as money laundering and terrorist … financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief InformationSecurity Officer (CISO), you will be responsible for developing … and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the informationsecurity of Ripjar's technology infrastructure, productsand services as we continue to More ❯
We are seeking an experienced and proactive Programme Security Manager to lead security integration within a major programme, operating as the Delivery Team Security Lead (DTSL). This role sits at the heart of the Secure by Design workstream, ensuring robust cyber and informationsecurity is embedded from concept through to delivery. Key Responsibilities Lead … and coordinate the Secure by Design (SbD) workstream across programme stakeholders. Chair and manage the Security Working Group (SWG), ensuring effective governance and timely decision-making. Advise on security strategies, support acquisition planning, and ensure security is factored into all phases of delivery. Identify, record, and monitor security risks; support governance of cyber security risk … Cyber Compliance Framework (CCF) audits using NCSC and NIST guidance. Guide development teams in embedding SbD principles and support secure development lifecycles. Liaise with incident response teams to coordinate security incident response and recovery. Oversee creation and maintenance of accreditation plans and associated documentation. Lead risk assessments and ensure compliance with organisation’s security standards. Essential Criteria Professional More ❯
among the first 25 applicants Get AI-powered advice on this job and more exclusive features. About The Role Do you want to be at the forefront of cyber security, protecting people, data and systems from the evolving digital threat landscape? Are you looking to apply your technical expertise in a collaborative and forward-thinking environment? About The Role … Do you want to be at the forefront of cyber security, protecting people, data and systems from the evolving digital threat landscape? Are you looking to apply your technical expertise in a collaborative and forward-thinking environment? As a Technical Security Analyst, you'll be part of our Security team who are responsible for keeping our technology … processes and people safe. You'll apply an understanding of cyber security to protect the organisation, systems, information, personal data and people from attacks and unauthorised access. Particular focus will be applied to Security Assessment, analysis, and giving advice on risk mitigations to a broad range of colleagues, internally and externally, including suppliers and customers. As a More ❯
and evaluate control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance Required qualifications, capabilities, and skills Experience or equivalent expertise in technology risk management, informationsecurity, or related field, emphasizing risk identification, assessment, and mitigation Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements Proficient knowledge and expertise in data … security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies Knowledge of security controls, and vulnerability management in public cloud environments Knowledge of IT control policies related to the Public Cloud Strong interpersonal skills and a proven ability to work effectively with diverse teams to achieve common goals Demonstrated … and skills CISM, CRISC, CISSP, Cloud or similar industry-recognized risk and risk certifications are preferred Ability to prioritize and work in a global environment, partnering with global cloud-security product management teams to enhance cloud-security products Experience in managing and securing cloud environments, including AWS, Azure, or Google Cloud Platform Proven track record of implementing cloud More ❯
Your role Responsible for monitoring, reacting, and reporting on informationsecurity events, as well as supporting security operations within the core business lines in the U.K., Europe, Australia, and New Zealand. Provide governance and support for regulatory and industry compliance, facilitate audits, and serve as a trusted security advisor. Your responsibilities Serve as a trusted advisor … to business and IT leadership. Ensure cybersecurity practices are integrated into business initiatives. Collaborate with security leadership on policies, incident response, and infrastructure security. Engage in security projects and advise on disaster recovery and business continuity. Promote a strong security culture and advise on security risks and mitigations. Maintain knowledge of security threats, vulnerabilities, and … compliance standards. Lead efforts in security monitoring and incident response. Support security risk management and compliance with standards like PCI, GDPR, ISO. Perform other duties as assigned. Qualifications 10+ years of experience in informationsecurity, including vulnerability assessment, incident response, and audits. 5+ years working with business leadership and managing projects in a complex environment. Knowledge More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
Ripjar
identify criminal activity such as money laundering and terrorist financing, enabling organisations to enforce sanctions at scale to help combat rogue entities and state actors. Lead Ripjar's Global Security Strategy As we scale globally, this role is central to our mission of delivering secure, resilient technology to governments and enterprises around the world. As Chief InformationSecurity … developing and executing our cyber risk strategy, driving alignment with international frameworks such as ISO27001, SOC2, DORA and regional frameworks like Cyber Essentials, and leading executive team engagement on security governance, regulatory readiness, and organisational resilience. You will be responsible for monitoring and improving the informationsecurity of Ripjar's technology infrastructure, productsand services as we continue … will be responsible not only for setting strategy, but also for directly executing core activities such as policy development, supporting audits and accreditations, incident response, and day-to-day security operations. What you'll be doing: Strategic Security Leadership Set the organisation-wide security vision and roadmap; act as security evangelist at the executive level. Maintain More ❯
Corsham, England, United Kingdom Hybrid / WFH Options
Cyber UK
Our client, a prominent player in the technology, defence, and security sector, is currently seeking a Security Assurance Coordinator to join their dynamic team. Key skills required for this role: JADE, Security assurance Job description Location: Hybrid (Corsham – approx. 2 days per week) Clearance: SC with a willingness to obtain or DV Clearance, UK Nationals Only Compensation … Up to £760/day Inside IR35 About the Role We are looking for an experienced Security Assurance Coordinator (SAC) to support the NSoIT(D) Programme. This role focuses on JADE Black and Red development environments, the OpNET Security Operations Centre (SOC), and NSoIT(D) Cyber and InformationSecurity Risk Management. Reporting to the Chief InformationSecurity Officer (CISO), you will be responsible for ensuring security governance, risk, and compliance across these environments. Key Responsibilities JADE: Oversee all aspects of physical, procedural, and personnel security for JADE operations. Identify security risks and develop mitigation strategies. Produce Security Management Plans and Risk Assessments. Ensure Secure by Design (SbD) compliance. Provide securityMore ❯