specific experience in testing cloud security controls. Professional certification such as CISA, CISM, CISSP, ISO 27001 Lead Auditor, or equivalent. Knowledge of industry standards and frameworks such as NIST800-53, ISO 27001/27002, CIS Controls, COBIT. Experience with current automated and manual industry methods for evaluating security controls on Perm and in cloud environments. More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Defence
and contribute to security awareness across teams. Clearly communicate risks to technical and non-technical stakeholders. What We're Looking For Essential Experience: Deep understanding of security frameworks: NIST (especially 800-30, 800-53) , ISO27001/2, ISO27005, and OWASP. Experience with Secure by Design principles and MOD-specific guidelines (e.g. JSP, Def Stan More ❯
Old Down, Gloucestershire, United Kingdom Hybrid / WFH Options
Matchtech
and contribute to security awareness across teams. Clearly communicate risks to technical and non-technical stakeholders. What We're Looking For Essential Experience: Deep understanding of security frameworks: NIST (especially 800-30, 800-53) , ISO27001/2, ISO27005, and OWASP. Experience with Secure by Design principles and MOD-specific guidelines (e.g. JSP, Def Stan More ❯
Skills & Experience Required: 8+ years of experience in Information Security or IT , with 3+ years in IT Audit or security control testing Familiar with security frameworks such as NIST800-53, ISO 27001, CIS Controls, COBIT Hands-on experience using RSA Archer, ServiceNow , and familiarity with automation and data-driven testing Working knowledge of cloud environments More ❯
Luton, Bedfordshire, United Kingdom Hybrid / WFH Options
Matchtech
commercial systems. Degree in engineering, computer science, or related field. Certified security professional (e.g. CISSP, NCSC Certified Professional). Familiar with UK/NATO IA standards (ISO 27000, NIST SP800, JSP440, etc.). Experience with accreditation, security evaluation, and cryptographic systems. Strong communication, leadership, and collaboration skills. Eligible for SC clearance (UK-only caveat). Desirable: DV clearance More ❯
Lead; day to day work is managed by allocated team Scrum Master. Responsibilities and Tasks Support delivery of secure Releases and Features aligned with the relevant legacy or NIST assurance processes through Security Assurance stories agreed with nominated team Scrum Master Create security assurance case for releases, including risk assessments and mitigations for identified defects and vulnerabilities Liaise … Authority Escalate relevant security issues via the Security Lead or Security Assurance Lead for resolution at the security working group Knowledge, Experience and Capabilities Cyber Security Assurance ISO27001 NIST800-53 series MOD Secure by Design Information assurance Risk management High quality of written and verbal communication skills Experience of working in Secure environments (Highly desirable More ❯
Lead; day to day work is managed by allocated team Scrum Master. Responsibilities and Tasks * Support delivery of secure Releases and Features aligned with the relevant legacy or NIST assurance processes through Security Assurance stories agreed with nominated team Scrum Master * Create security assurance case for releases, including risk assessments and mitigations for identified defects and vulnerabilities * Liaise … Authority * Escalate relevant security issues via the Security Lead or Security Assurance Lead for resolution at the security working group Knowledge, Experience and Capabilities * Cyber Security Assurance * ISO27001 * NIST800-53 series * MOD Secure by Design * Information assurance * Risk management * High quality of written and verbal communication skills * Experience of working in Secure environments (Highly desirable More ❯
Northampton, Northamptonshire, East Midlands, United Kingdom
Eteam Workforce Limited
Detection: Familiarity with fraud detection systems, including rules engines, threat modelling, and risk assessment. Knowledge of emerging cybersecurity threats and vulnerabilities, as well as industry standards like FIDO, NIST800-63, or ISO 27001. Understanding of Agile and Scrum methodologies, including backlog management, sprint planning, and iterative development. Familiarity with cloud platforms like AWS and Azure More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited trading as CBSbutler
Security Assurance Team (SAT), providing risk management and assurance of programme artefacts. Responsibilities and Tasks Support delivery of secure Releases and Features aligned with the relevant legacy or NIST assurance processes through Security Assurance stories agreed with nominated team Scrum Master Create security assurance case for releases, including risk assessments and mitigations for identified defects and vulnerabilities Liaise … security training and briefings Support development of relevant security documentation; including RMADS, CoCo, RAR, SSP, POAM, OSMP (including SyOps). Knowledge, Experience and Capabilities Cyber Security Assurance ISO27001 NIST800-53 series MOD Secure by Design Information assurance Risk management High quality of written and verbal communication skills Experience of working in Secure environments (Highly desirable More ❯
resolve infrastructure and deployment issues efficiently. Collaborate with developers to ensure smooth integration of code and infrastructure. Implement and maintain technical security controls aligned to frameworks such as NIST800-53, CIS Benchmarks, and JSP standards. Maintain technical documentation and contribute to the infrastructure knowledge base. Support backup and disaster recovery processes and ensure business continuity … orchestration using Docker and Kubernetes. Experience working with DevOps tools such as Jenkins, Azure DevOps, Artifactory, and Git. Understanding of secure system design and relevant security standards (e.g. NIST, NCSC, CIS, JSP). Familiarity with virtualization platforms (e.g., Nutanix, VMware). Working knowledge of monitoring and security tools (e.g., Wazuh, Nessus, PRTG, Microsoft Defender). Ability to quickly More ❯
excellent communication, documentation, analytical and troubleshooting skills, with the ability to work independently while coordinating across multiple teams. Additional exposure to regulatory frameworks such as NIS, ISO 27001, NIST-800 or Cyber Essentials would be beneficial, as would experience with DevOps and cloud-based PAM strategies. The environment is largely based on Microsoft and VMware on-premises infrastructure More ❯
excellent communication, documentation, analytical and troubleshooting skills, with the ability to work independently while coordinating across multiple teams. Additional exposure to regulatory frameworks such as NIS, ISO 27001, NIST-800 or Cyber Essentials would be beneficial, as would experience with DevOps and cloud-based PAM strategies. The environment is largely based on Microsoft and VMware on-premises infrastructure More ❯
excellent communication, documentation, analytical and troubleshooting skills, with the ability to work independently while coordinating across multiple teams. Additional exposure to regulatory frameworks such as NIS, ISO 27001, NIST-800 or Cyber Essentials would be beneficial, as would experience with DevOps and cloud-based PAM strategies. The environment is largely based on Microsoft and VMware on-premises infrastructure More ❯
excellent communication, documentation, analytical and troubleshooting skills, with the ability to work independently while coordinating across multiple teams. Additional exposure to regulatory frameworks such as NIS, ISO 27001, NIST-800 or Cyber Essentials would be beneficial, as would experience with DevOps and cloud-based PAM strategies. The environment is largely based on Microsoft and VMware on-premises infrastructure More ❯
Senior Operational Technology (OT) Consultant Role: Senior Operational Technology (OT) Consultant Specialism(s): OT, Operational Technology, Industry Control Systems, ICS, SCADA, DCS, ISA/IEC62443, NIST, Cyber Security, Audit & Assessment, SoW, Cisco CyberVision, Claroty, SOAR, ISA-95 Type: Contract, Daily Rate Location: UK (Remote Working) Pay Rate: £600 - £725 per day Start: ASAP/Urgent Initial Contract Duration … of OT systems, categorising risks and recommending appropriate mitigation measures based on assessment findings. * Benchmarking cybersecurity posture of OT environments against industry standards (e.g. ISA/IEC 62443, NIST) * Identifying gaps in achieving the desired Security Level (SL) * Advising on applicable controls tailored to the client's specific systems and operational context. * Preparing comprehensive audit and assessment reports. … security practices within engineering and security consulting domains. * Proven familiarity with leading industry standards and frameworks, such as IEC 62443, NIST Cybersecurity Framework (CSF), NISTSP800-82, ONG-C2M2, and NERC-CIP. * Technical Experience with: · Cisco CyberVision or Claroty · Security Orchestration, Automation, and Response (SOAR) platforms · OT asset inventory and change detection tools More ❯