Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling – Kill Chain – Attack tree analysis. Certifications: AWS More ❯
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling – Kill Chain – Attack tree analysis. Certifications: AWS More ❯
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling – Kill Chain – Attack tree analysis. Certifications: AWS More ❯
Cambridge, Cambridgeshire, UK Hybrid/Remote Options
Sanderson Government & Defence
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling – Kill Chain – Attack tree analysis. Certifications: AWS More ❯
Farnborough, Hampshire, South East, United Kingdom
Sanderson Government and Defence
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
Cambridgeshire, England, United Kingdom Hybrid/Remote Options
Sanderson
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
Cambridgeshire, East Anglia, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
Hampshire, South East, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
Assurance and Risks. Security related legislation (e.g. GDPR, PCI DSS, ICO requirements). Security Control Frameworks such as ISO 27001, NIST CSF and CIS Controls v8. HMG, NPSA and NCSCsecurity policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding More ❯
. Proven experience in shaping technical strategy and leading architecture teams. Deep understanding of secure cloud design, zero trust models, and compliance frameworks such as NIST, DISA STIGs, and NCSC best practice. Expertise in Infrastructure as Code, containerisation (Kubernetes, OpenShift), and automation for secure cloud deployments. Strong knowledge of networking, encryption, IAM, and DevSecOps principles. Excellent stakeholder management, communication, and More ❯
. Proven experience in shaping technical strategy and leading architecture teams. Deep understanding of secure cloud design, zero-trust models, and compliance frameworks such as NIST, DISA STIGs, and NCSC best practice. Expertise in Infrastructure-as-Code, containerisation (Kubernetes, OpenShift), and automation for secure cloud deployments. Strong knowledge of networking, encryption, IAM, and DevSecOps principles. Excellent stakeholder management, communication, and More ❯
Sunderland, Tyne and Wear, UK Hybrid/Remote Options
Version 1
with Oracle Visual Builder or Oracle Process Automation (OPA). Familiarity with UK public-sector environments and UK Gov Cloud security controls. Awareness of industry security and compliance standards (NCSC CAF, ISO 27001, Cyber Essentials Plus). Oracle certifications in OIC, Oracle Cloud Platform, or Integration Specialist credentials. Additional Information Why Join Us Contribute to flagship Oracle Cloud transformation programmes More ❯
with Oracle Visual Builder or Oracle Process Automation (OPA). Familiarity with UK public-sector environments and UK Gov Cloud security controls. Awareness of industry security and compliance standards (NCSC CAF, ISO 27001, Cyber Essentials Plus). Oracle certifications in OIC, Oracle Cloud Platform, or Integration Specialist credentials. Additional Information Why Join Us Contribute to flagship Oracle Cloud transformation programmes More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Akkodis
/CD) Familiarity with scripting languages like PowerShell, YAML, JSON Hands-on with application security tools and DevSecOps processes Understanding of frameworks and standards like OWASP, NIST SSDF, ISO27001, NCSC Experience with threat modelling, risk assessments, and secure design reviews Confident owning security strategy and tooling across complex product landscapes A strong communicator - able to engage with engineers and execs More ❯
IL3/IL4/IL5, SCIF, air-gapped systems). Deep knowledge of: MOD and NATO security policies (JSPs, DEFCONs, STANAGs), NIST, CIS, ISO/IEC 27001 frameworks, UK NCSC principles and secure-by-design methodologies. Competent with cross-border IT operations, including data sovereignty, dual-use controls, and export classification. Strong track record of leading infrastructure, IT operations, and More ❯
IL3/IL4/IL5, SCIF, air-gapped systems). Deep knowledge of: MOD and NATO security policies (JSPs, DEFCONs, STANAGs), NIST, CIS, ISO/IEC 27001 frameworks, UK NCSC principles and secure-by-design methodologies. Competent with cross-border IT operations, including data sovereignty, dual-use controls, and export classification. Strong track record of leading infrastructure, IT operations, and More ❯
SOC environments. Hands-on experience with Azure Security Center, Microsoft Sentinel, Defender ATP, M365 Security & Compliance, and KQL scripting. Knowledge of frameworks such as MITRE ATT&CK, NIST, CIS, NCSC, and Security Scorecard. Understanding of network security systems (Zscaler, Darktrace, Firewalls, NAC, VPN, wireless, segmentation). Strong grasp of cloud computing (IaaS/PaaS/SaaS), authentication (AAD, Managed Identity More ❯
Camberley, Surrey, South East, United Kingdom Hybrid/Remote Options
Morson Edge
security through design and delivery. Background in the defence, maritime, or critical national infrastructure environment. Skills & Qualifications: Degree (or equivalent experience) in a relevant STEM or Information Security discipline. NCSC CCP SIRA status (or ability to achieve). Membership of a relevant professional body. Strong stakeholder engagement, leadership, and mentoring capabilities. Why Join? This is an opportunity to play a More ❯
framework, MOD digital services, or Defence data standards Infrastructure as Code – Terraform or Ansible Experience with MODCloud, AWS, or Azure Testing frameworks: Jest, Mocha, Supertest Familiarity with JSP 440, NCSC Secure Coding Guidelines, or Defence Digital standards Security Clearance Active SC clearance is mandatory. Candidates eligible for DV clearance will be prioritised for longer-term roles. If you're interested More ❯
framework, MOD digital services, or Defence data standards Infrastructure as Code – Terraform or Ansible Experience with MODCloud, AWS, or Azure Testing frameworks: Jest, Mocha, Supertest Familiarity with JSP 440, NCSC Secure Coding Guidelines, or Defence Digital standards Security Clearance Active SC clearance is mandatory. Candidates eligible for DV clearance will be prioritised for longer-term roles. If you're interested More ❯
Corsham, Wiltshire, South West, United Kingdom Hybrid/Remote Options
Sanderson Recruitment
framework , MOD digital services, or Defence data standards Infrastructure as Code - Terraform or Ansible Experience with MODCloud, AWS, or Azure Testing frameworks: Jest, Mocha, Supertest Familiarity with JSP 440 , NCSC Secure Coding Guidelines , or Defence Digital standards Security Clearance Active SC clearance is mandatory . Candidates eligible for DV clearance will be prioritised for longer-term roles. Reasonable Adjustments: Respect More ❯
framework , MOD digital services, or Defence data standards Infrastructure as Code - Terraform or Ansible Experience with MODCloud, AWS, or Azure Testing frameworks: Jest, Mocha, Supertest Familiarity with JSP 440 , NCSC Secure Coding Guidelines , or Defence Digital standards Security Clearance Active SC clearance is mandatory . Candidates eligible for DV clearance will be prioritised for longer-term roles. If you're More ❯
glasgow, central scotland, united kingdom Hybrid/Remote Options
Anson Mccade
development lifecycle. Lead and mentor a small team of CyberSecurity Engineers . Design and deliver secure cloud architectures and solutions. Ensure compliance with key security standards and regulations (NCSC, ISO, NIST, GDPR, etc.). Support Continuous Security, CI/CD, and DevSecOps processes. Key Requirements: Proven experience designing and implementing secure cloud solutions. Strong understanding of application and infrastructure More ❯
Bournemouth, Dorset, South West, United Kingdom Hybrid/Remote Options
Anson Mccade
development lifecycle. Lead and mentor a small team of CyberSecurity Engineers . Design and deliver secure cloud architectures and solutions. Ensure compliance with key security standards and regulations (NCSC, ISO, NIST, GDPR, etc.). Support Continuous Security, CI/CD, and DevSecOps processes. Key Requirements: Proven experience designing and implementing secure cloud solutions. Strong understanding of application and infrastructure More ❯
Plymouth, Devon, South West, United Kingdom Hybrid/Remote Options
Anson Mccade
development lifecycle. Lead and mentor a small team of CyberSecurity Engineers . Design and deliver secure cloud architectures and solutions. Ensure compliance with key security standards and regulations (NCSC, ISO, NIST, GDPR, etc.). Support Continuous Security, CI/CD, and DevSecOps processes. Key Requirements: Proven experience designing and implementing secure cloud solutions. Strong understanding of application and infrastructure More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
Anson Mccade
development lifecycle. Lead and mentor a small team of CyberSecurity Engineers . Design and deliver secure cloud architectures and solutions. Ensure compliance with key security standards and regulations (NCSC, ISO, NIST, GDPR, etc.). Support Continuous Security, CI/CD, and DevSecOps processes. Key Requirements: Proven experience designing and implementing secure cloud solutions. Strong understanding of application and infrastructure More ❯