where you come in. Join our team and help us continue to make Cirrus Logic an exceptional place to grow your career! We are seeking a highly motivated, seasoned security professional to join Information Security as a Senior Attack Surface Management/Vulnerability Management Information Security Analyst. You will be responsible for managing the scanning architecture, as … well as the program to identify, analyze, prioritize, and mitigate security vulnerabilities in our digital assets to enhance cybersecurity and protect sensitive data. This role supports business strategy in a dynamic environment. Responsibilities: Vulnerability Assessment: Conduct regular vulnerability assessments to identify security weaknesses in our systems, applications, and network infrastructure. Risk Analysis: Analyze and prioritize vulnerabilities based on … Mitigation Strategies: Develop and implement effective mitigation strategies to address identified vulnerabilities and reduce attack surfaces. Incident Response: Collaborate with the incident response team to investigate and respond to security incidents, ensuring swift resolution and minimizing damage. Security Tools: Manage and maintain security tools and technologies used for vulnerability management, including scanning tools. Security Policies: Develop More ❯
Are you passionate about Cyber Security and Enterprise Architecture? Do you have senior-level experience as a Cyber Security Professional? Join us to shape the security technology and tooling strategy for HMRC and influence the UK Public Sector. Enjoy a healthy work/life balance while making a significant impact. HMRC are now one of the most … IT Landscape across Multi-Hybrid Cloud Platform. Working in one of the most complex infrastructures across Europe with significant investment and over 1000 changes monthly impacting over 600 services. Security Modernisation is critical to this initiative and our collective success. Now is a great time to join us as we establish a team of outstanding people in the fields … of Security Architecture, Risk Assessment and Testing who will create and run these new and improved technology services. This is a chance to work on services that matter and affect the lives of millions of citizens as well as delivering Government Security services directly across circa 400 Government Departments and Arms-Length Bodies (ALBs). Job description HMRC More ❯
Security Consultant (SecurityOperations) Location: Hybrid; with occasional travel expected to client site or Logiq’s offices in Bristol, Chippenham or Exeter. Salary: Negotiable, plus car allowance, plus up to 10% performance bonus*, plus excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. … Due to rapid growth in our Security Capability, we are looking for experienced Security Consultants to join our team. What is Cyber Risk Management? Cyber risk management ensures that organisations can anticipate, withstand, and recover from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making … to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and context. As leading players in MOD’s cyber security transformation to Secure by Design (SbD), we are looking for team members and leaders who share our vision that cyber risk management is driven by business requirements and More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Harvey Nash Group
Cyber Security Analyst| 12 Months (Outside IR35)| Hybrid (Edinburgh) Harvey Nash's client is recruiting for a Cyber Security Analyst on a 12 month contract. Main Responsibilities Cyber Security Incident Response - process alerts and incidents through tools and direct user reports, knowing when to escalate, ensuring lessons are learned to minimise re-occurrence where appropriate. Cyber Security Detection - configure appropriate alerts and remediation processes including automation where possible to ensure significant volumes of security event data can be manged within the small team Cyber Security Training and Awareness - Proactively engage colleagues to develop understanding of good cyber security across the organisation, not limited to overseeing phishing simulations and drafting news articles. Cyber Security … developers, and business colleagues Proactively highlight potential security improvements Provide excellent service in response to all business requirements Document procedures and share experience with colleagues. Provide recommendations for SecOps processes and automation Key Skills Security products (email filtering, AV, firewalls, WAFs, MS Defender, Sentinel) Enterprise Systems (email, PKI, AD, Azure, M365, Intune) Azure cloud Analytical and troubleshooting skills More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Computershare UK
Join to apply for the Senior Information Security Analyst role at Computershare UK Continue with Google 2 days ago Be among the first 25 applicants Job Description Information Security Specialist – Bristol/Edinburgh In this position, you’ll be based in one of the above office locations for a minimum of three days a week, with the flexibility … to work from home for some of your working week. Find out more about our flexible work culture at computershare.com/flex. About the Role The Global Information Security team is responsible for driving the development, deployment, and management of information and Cyber Security across the Computershare businesses, globally. The Senior Analyst will play a key role in … delivering the Information Security programme, supporting processes and technologies aligned with our strategy and compliance requirements. Key Responsibilities Support a wide range of functions including Third-Party Cyber Risk Management, Risk & Compliance, Policies and Standards, and Security Culture initiatives. Collaborate with securityoperations, procurement, risk management, and other stakeholders across EMEA, Oceania, and North America. Undertake More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
State Street
in transit, and in use, ensuring end-to-end cryptographic protection across applications, infrastructure, and connected devices. The ideal candidate will have deep expertise in cryptographic key management, Hardware Security Modules (HSMs), cloud security, IoT encryption protocols, and enterprise data protection. This role can be performed in a hybrid model, where you can balance work from home and … in transit, and in use, ensuring end-to-end cryptographic protection across applications, infrastructure, and connected devices. The ideal candidate will have deep expertise in cryptographic key management, Hardware Security Modules (HSMs), cloud security, IoT encryption protocols, and enterprise data protection. This role can be performed in a hybrid model, where you can balance work from home and … frameworks. Drive innovation in encryption automation, integrating key management with DevSecOps, and Infrastructure as Code (IaC). Education & Preferred Qualifications You have multiyear (>4 years) experience within Cybersecurity including SecOps, Cloud Security, and secure architecture. Bachelor's Degree in Computer Science/Engineering, related discipline, or equivalent work experience. Strong proficiency in Python, PowerShell, Bash, or Java. Hands-on More ❯
SecurityOperations Analyst page is loaded SecurityOperations Analyst Apply locations Edinburgh WRS - United Kingdom London - United Kingdom time type Full time posted on Posted 6 Days Ago job requisition id REQ-13438 Role Description At FNZ, our purpose is to make wealth management more accessible, bringing easier, fairer and more inclusive solutions to people worldwide. … Here in the Global Information Security team, we work to protect the platforms that support investment solutions for over 20 million people. We are looking for a SecurityOperations Analyst to join the SecurityOperations team. You will be open to looking at all areas of SecurityOperations from technical analysis and root … cause analysis to management information and reporting. We are looking for someone who is early on in their security career or potentially from university who has a keen and proactive approach to investigation and is ready to take on the challenge of less defined day-to-day activities for the benefit of a wide exposure to mini projects across More ❯
Cyber SecurityOperations Lead 12 Months (Outside IR35) Hybrid (Edinburgh) Harvey Nash's client is recruiting for a Cyber SecurityOperations Lead on a 12 Month contract Main Responsibilities Use understanding of digital systems and attack frameworks to apply theory to practice. Be aware of the current cyber threat landscape and industry best practices and standards. … for analysts on significant incidents, investigations, including hands on experience Establish procedures for intelligence ingestion and threat hunting Working with architects and interpreting designs to ensure strong handover to SecOps during new service go live. Recommendation and implement improvements to SecOps processes and tools (e.g. automation of workloads) Design security KPIs and SecOps management reporting, and the gathering of … data in support of them Own completion and accuracy of all SecOps-related product delivery evidence Key Skills Security products (M365 Defender stack, Sentinel/SIEM, email filtering (including authentication protocols), AV, firewalls, WAFs, Defender for Cloud) Security Testing (SAST, DAST, vulnerability scanning, configuration compliance scanning) Virtualisation platforms and operating systems, including Hyper-V and Windows Server. Enterprise More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Acumin
Location: Remote/Hybrid – Flexible for the right candidate We’re looking for a highly skilled Reporting & Analytics Analyst to support cybersecurity governance activities across multiple domains within our SecurityOperations Governance Program. This cross-functional role is ideal for someone passionate about data-driven decision-making and cybersecurity compliance. In this role, you will gather, analyze, and … data to produce governance scorecards and reports spanning key cybersecurity areas such as Data Loss Prevention (DLP), Key/Cert/Encryption Management (KCEM), Software Development Lifecycle (SDLC), Cloud Security (CS), Cyber Incident Management (CIM), and Threat and Vulnerability Management (TVM). Your insights will inform senior leadership, regulatory forums, and operational decision-making. Key Responsibilities: Develop and maintain … regular governance reporting across multiple cybersecurity disciplines Analyze data for compliance with internal security standards and regulatory expectations Collaborate with internal teams and external partners to ensure data integrity and alignment What We’re Looking For: Deep understanding of cybersecurity operations, particularly in CIM and TVM (incident detection, response, patching, and penetration testing) Strong analytical and data visualization More ❯
Social network you want to login/join with: Security Data Loss Prevention DLP Engineer, edinburgh col-narrow-left Client: Harrington Starr Location: edinburgh, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 06.06.2025 Expiry Date: 21.07.2025 col-wide Job Description: Data Loss Prevention/DLP/Insider Threat Analyst required … by Harrington Starr’s global client to play a key role in their Cyber Security Engineering team. The role will play a key role in protecting the organisation from exposure to data loss/theft. Key accountabilities will include: Developing and administering DLP policies Perform analysis and triage of DLP violations Play an integral role in any cyber incidents … with a DLP focus Working with the SecurityOperations and Engineering teams on DLP strategy Provide reporting on DLP incidents Developing Firmwide strategy for Data Loss Prevention Regular usage of DLP tools such as Microsoft Purview In order to be suitable, you will need: Experience in a dedicated DLP role or a cyber security role with a More ❯
of risk and compliance advisory services (preferable candidates from Big4 organizations) • Should have proven capabilities of executing atleast 3-4 advisory/consulting engagements • Excellent technical capabilities around information security, business continuity and technology risk assessments. ISO 27K, NIST, AI Governance, CIS etc. • Good compliance understanding of industry domains such as BFSI – (SOX, FFIEC, PCI-DSS, BASEL, MAS etc. … Healthcare & Life-sciences – (HIPAA, Hi-Trust, FDA CFR, GxP Compliance), Telecom, Retail, Data Privacy (GDPR, CCPA) Energy & Utilities (NERC, FERC) Information Security (ISO 27000, NIST, CIS) TPRM • Business Resiliency & Cyber Recovery, ZTA • GRC Project & Program Management • Excellent written and verbal communications skills • Should be able to travel 70%-80% on short as well as … long term engagements. PLATFORM/TOOL EXPERTISE Experience on the below mentioned tools is not mandated but candidates having exposure to these will be preferred: • MetricStream, Archer, ServiceNow GRC & SecOps, OneTrust QUALIFICATIONS B.E/B.Tech with MBA preferred. Candidates with following Certifications will be preferred: • CISA/CGEIT/CISM/CISSP/CIPP E • ISO 27001 Implementer, Lead Auditor More ❯
Who we are looking for State Street seeks to recruit a cross-functional, Reporting and Analytics (RA) Analyst responsible for a variety of functions within the Fusion & SecurityOperations (F&SO) Governance Program at State Street. This includes gathering, analyzing, and enriching data for utilization on scorecards and related to governance reporting across the cybersecurity space related to … Data Loss Prevention (DLP), Key/Cert/Encryption Management (KCEM), Software Development Lifecycle (SDLC), Cloud Security (CS), Cyber Incident Management (CIM), and Threat and Vulnerability Management (TVM) within the State Street environment. This role requires an individual with deep knowledge of CIM and TVM, including cyber incident detection, assessment, response, and recovery, Patch Management, and infrastructure penetration testing More ❯
a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team The Security Department oversees security, compliance, GRC, and securityoperations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or … This would be a great challenge for those who want to work with the best technology in a dynamic and advanced environment. The Opportunity/Role Summary: Conduct application security reviews and perform penetration testing, ensuring alignment with compliance standards. Engage in projects, research, and security tool development to enhance security measures and meet compliance requirements. Scale … security processes using automation. Provide training, outreach, and develop documentation to guide security practices among internal teams. Offer technical guidance, advocate for automation, evaluate designs, and lead our security teams to empower engineering partners with cutting-edge tools, techniques, and methodologies to naturally build secure products. What you'll Need to Succeed/Role Requirements: Strong foundations More ❯
a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team: The Security Department oversees security, compliance, GRC, and securityoperations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or … advanced environment. The Opportunity: You will be working in a fast paced DevSecOps environment where code change happens at a rapid speed and where it is paramount to control security testing into a continuous deployment/integration flow. In this Role, you'll get to: Play a lead role in developing and designing application-level security controls and … standards. Perform application security design reviews against new products and services. Track and prioritize all security issues. Build internal security tools that help fix security problems at scale. Perform code review and drive remediation of discovered issues. Enable automated security testing at scale to measure vulnerability, and report on risk across all microservice, web and More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Agoda
a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone. Get to Know our Team: The Security Department oversees security, compliance, GRC, and securityoperations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or … advanced environment. The Opportunity: You will be working in a fast paced DevSecOps environment where code change happens at a rapid speed and where it is paramount to control security testing into a continuous deployment/integration flow. In this Role, you’ll get to: Play a lead role in developing and designing application-level security controls and … standards. Perform application security design reviews against new products and services. Track and prioritize all security issues. Build internal security tools that help fix security problems at scale. Perform code review and drive remediation of discovered issues. Enable automated security testing at scale to measure vulnerability, and report on risk across all microservice, web and More ❯
Edinburgh, Midlothian, United Kingdom Hybrid / WFH Options
Red Snapper Recruitment Limited
Location: Remote/Hybrid - Flexible for the right candidate We're looking for a highly skilled Reporting & Analytics Analyst to support cybersecurity governance activities across multiple domains within our SecurityOperations Governance Program. This cross-functional role is ideal for someone passionate about data-driven decision-making and cybersecurity compliance. In this role, you will gather, analyze, and … data to produce governance scorecards and reports spanning key cybersecurity areas such as Data Loss Prevention (DLP), Key/Cert/Encryption Management (KCEM), Software Development Lifecycle (SDLC), Cloud Security (CS), Cyber Incident Management (CIM), and Threat and Vulnerability Management (TVM). Your insights will inform senior leadership, regulatory forums, and operational decision-making. Key Responsibilities: Develop and maintain … regular governance reporting across multiple cybersecurity disciplines Analyze data for compliance with internal security standards and regulatory expectations Collaborate with internal teams and external partners to ensure data integrity and alignment What We're Looking For: Deep understanding of cybersecurity operations, particularly in CIM and TVM (incident detection, response, patching, and penetration testing) Strong analytical and data visualization More ❯
Edinburgh, City of Edinburgh, United Kingdom Hybrid / WFH Options
Red Snapper Recruitment Limited
Location: Remote/Hybrid - Flexible for the right candidate We're looking for a highly skilled Reporting & Analytics Analyst to support cybersecurity governance activities across multiple domains within our SecurityOperations Governance Program. This cross-functional role is ideal for someone passionate about data-driven decision-making and cybersecurity compliance. In this role, you will gather, analyze, and … data to produce governance scorecards and reports spanning key cybersecurity areas such as Data Loss Prevention (DLP), Key/Cert/Encryption Management (KCEM), Software Development Lifecycle (SDLC), Cloud Security (CS), Cyber Incident Management (CIM), and Threat and Vulnerability Management (TVM). Your insights will inform senior leadership, regulatory forums, and operational decision-making. Key Responsibilities: Develop and maintain … regular governance reporting across multiple cybersecurity disciplines Analyze data for compliance with internal security standards and regulatory expectations Collaborate with internal teams and external partners to ensure data integrity and alignment What We're Looking For: Deep understanding of cybersecurity operations, particularly in CIM and TVM (incident detection, response, patching, and penetration testing) Strong analytical and data visualization More ❯
Join us as a Web Proxy Security Analyst at NatWest Group . Responsibilities Provide end-to-end security response, including triage, response, escalation, coordination, and remediation of events and incidents. Proactively identify and anticipate security events and incidents, contributing to database and trend analysis to protect the bank, customers, colleagues, and assets. Collaborate with a diverse network … of stakeholders to ensure effective incident response and security measures. Demonstrate a logical, proactive approach in troubleshooting and daily security tasks. Conduct root cause analysis on security incidents, produce progress reports, and maintain queues in ServiceNow. Automate processes to improve securityoperations, review web proxy system capabilities, and adopt continuous improvement practices. Identify, handle, and … escalate security incidents in line with best practices and risk management protocols. Required Skills and Experience Experience with security incident and event management systems. Understanding of transmission control protocol and internet protocol. Knowledge of networking protocols, routing, and proxy servers. Proficiency in documentation tools such as Excel, Word, PowerPoint, and Visio. Working knowledge of ServiceNow. Excellent communication skills More ❯
Join us as a Security Business Partner In this key role, you’ll apply effective risk management and decision-making capability, anticipating and assessing the potential impacts of risk associated with information and cyber security across the relevant business areas You’ll make sure that the impacts of strategic information and cyber security initiatives on the operational … of work in this fast-paced and varied role, and you’ll gain valuable exposure across a broad range of senior level stakeholders What you'll do As a Security Business Partner, you’ll support and regularly engage with specialist Security stakeholders including second and third lines of defence, and other relevant stakeholders. Working closely with the Control … Testing team, Franchise and Function Control teams and the second line risk, you’ll also provide support on framework execution as an information and cyber security expert, including risk and controls assessments, control design and articulation, control testing and policy compliance, in relation to information and cyber security related risks for the relevant business areas. You’ll lead More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Be-IT
Be-IT Edinburgh, Scotland, United Kingdom Cyber & Data Security Risk Consultant Be-IT Edinburgh, Scotland, United Kingdom Get AI-powered advice on this job and more exclusive features. This range is provided by Be-IT. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range Direct message the … job poster from Be-IT Tech Recruiter at Be-IT | Discovering the best tech talent in the UK | 0141 378 6673 Adam.McGlashan@be-it.co.uk Cyber & Data Security Risk Consultant Location: Edinburgh - Hybrid 50% Salary: Around £55,000 with an up to 14% employer matching pension scheme Our Client is seeking a Cyber & Data Security Risk Consultant to help … shape and oversee the Group’s approach to cyber and data security risks. Sitting in the second line of defence , you’ll act as an expert advisor and independent challenger to senior leaders. What you’ll do: Lead independent, risk-based assurance and oversight of cyber and data security risk. Provide insight and challenge across key domains like More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Acumin
Loss Prevention (DLP) Governance Analyst Location: Remote/Hybrid – Flexible for the right candidate We are seeking a highly motivated Data Loss Prevention (DLP) Governance Analyst to join the SecurityOperations Governance Program. In this critical role, you’ll support the oversight and reporting functions of our enterprise DLP program, helping to ensure adherence to internal information protection … compliance across business units. You will work collaboratively with cross-functional teams and third-party vendors, ensuring that data classification, removable media handling, and media inventorization practices align with security policies and regulatory requirements. Key Responsibilities: Develop and maintain governance reports and scorecards that track DLP compliance Support reporting requirements for internal committees and regulatory forums Collaborate with internal … cybersecurity, DLP, or related fields through work, education, or military service Familiarity with AI/ML governance, encryption practices, and information protection frameworks If you're passionate about data security and want to make a measurable impact, we'd love to hear from you. Apply today to help strengthen our cybersecurity governance program. More ❯
Edinburgh, Midlothian, United Kingdom Hybrid / WFH Options
Red Snapper Recruitment Limited
Loss Prevention (DLP) Governance Analyst Location: Remote/Hybrid - Flexible for the right candidate We are seeking a highly motivated Data Loss Prevention (DLP) Governance Analyst to join the SecurityOperations Governance Program. In this critical role, you'll support the oversight and reporting functions of our enterprise DLP program, helping to ensure adherence to internal information protection … compliance across business units. You will work collaboratively with cross-functional teams and third-party vendors, ensuring that data classification, removable media handling, and media inventorization practices align with security policies and regulatory requirements. Key Responsibilities: Develop and maintain governance reports and scorecards that track DLP compliance Support reporting requirements for internal committees and regulatory forums Collaborate with internal … cybersecurity, DLP, or related fields through work, education, or military service Familiarity with AI/ML governance, encryption practices, and information protection frameworks If you're passionate about data security and want to make a measurable impact, we'd love to hear from you. Apply today to help strengthen our cybersecurity governance program. More ❯
Edinburgh, City of Edinburgh, United Kingdom Hybrid / WFH Options
Red Snapper Recruitment Limited
Loss Prevention (DLP) Governance Analyst Location: Remote/Hybrid - Flexible for the right candidate We are seeking a highly motivated Data Loss Prevention (DLP) Governance Analyst to join the SecurityOperations Governance Program. In this critical role, you'll support the oversight and reporting functions of our enterprise DLP program, helping to ensure adherence to internal information protection … compliance across business units. You will work collaboratively with cross-functional teams and third-party vendors, ensuring that data classification, removable media handling, and media inventorization practices align with security policies and regulatory requirements. Key Responsibilities: Develop and maintain governance reports and scorecards that track DLP compliance Support reporting requirements for internal committees and regulatory forums Collaborate with internal … cybersecurity, DLP, or related fields through work, education, or military service Familiarity with AI/ML governance, encryption practices, and information protection frameworks If you're passionate about data security and want to make a measurable impact, we'd love to hear from you. Apply today to help strengthen our cybersecurity governance program. More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Venesky Brown
Venesky-Brown’s client, a public sector organisation in Edinburgh, is currently looking to recruit a Cyber SecurityOperations Lead for an initial 12 month contract on a rate of £525-£575/day (Outside IR35). This role will be based in Edinburgh - home working will be considered subject to attendance where needed. Responsibilities: - Use understanding of … for analysts on significant incidents, investigations, including hands on experience - Establish procedures for intelligence ingestion and threat hunting - Working with architects and interpreting designs to ensure strong handover to SecOps during new service go live. - Recommendation and implement improvements to SecOps processes and tools (e.g. automation of workloads) - Design security KPIs and SecOps management reporting, and the gathering of … data in support of them - Own completion and accuracy of all SecOps-related product delivery evidence Essential Skills: - Security monitoring service delivery and improvement - Vulnerability detection service improvement, finding prioritisation and reporting. - Ability to communicate on technical issues with users and senior managers - Recent experience in incident response - Ability to work well in small team with internal colleagues and More ❯
Who we are looking for State Street seeks to recruit a Key, Certificate, and Encryption Management (KCEM) Governance Analyst responsible for a variety of functions within the Fusion & SecurityOperations (F&SO) Governance Program at State Street. This includes gathering, analyzing, and enriching data for utilization on scorecards and related governance reporting related to KCEM within the State … Street environment. This role requires an individual with deep knowledge of KCEM, including key and certificate lifecycle management, security governance and compliance, and cryptography/encryption within a corporate environment. What you will be responsible for As a KCEM Governance Analyst you will: Produce regular reporting related to the governance of the KCEM Program to assess compliance with the … education Experience using ticket tracking tools for change management, tracking, and reporting demonstrated through work, military, or education Strong background in cybersecurity, KCEM, including key and certificate lifecycle management, security governance and compliance, and cryptography/encryption Why this role is important to us Our technology function, Global Technology Services (GTS), is vital to State Street and is the More ❯