Security Assurance Engineer – with SC Clearance Are you a Security Assurance Engineer with a passion for safeguarding critical systems and delivering high-quality assurance reports? We’re looking for a Security Cleared professional to join a security team and play a key role in protecting digital assets and mission-critical infrastructure. As a Security Assurance Engineer … you’ll be responsible for: Conducting security assurance activities across projects, products, and systems. Supporting risk assessments, security reviews, and compliance checks in line with organisational and government standards (e.g., NCSC, ISO 27001, JSP440). Producing clear, concise, and insightful security assurance reports for technical and non-technical stakeholders. Working closely with engineering, architecture, and risk management teams … Experience: You’ll bring a strong blend of technical knowledge, analytical thinking, and communication skills. You have: Active Security Clearance (e.g., SC/DV). Proven experience in Security Assurance, InformationAssurance, or Cyber Risk Management. Strong understanding of security frameworks (NIST, ISO 27001, MoD JSPs, CAF, etc.). Excellent reporting and documentation skills – able to translate More ❯
Camberley, Surrey, South East, United Kingdom Hybrid / WFH Options
Morson Edge
one of our clients Product Security Engineering teams, supporting the delivery and through-life management of secure submarine systems and products. As a key focal point for security and information risk, you'll apply deep technical expertise to ensure that solutions are designed, delivered, and supported securely, safely, and in compliance with contractual and regulatory requirements. You'll provide … processes. Contribution to broader project artefacts such as training materials, technical publications, and cyber incident plans. About You You'll bring a proven track record in Product Security or InformationAssurance , ideally within the defence or maritime sectors. With strong analytical and communication skills, you can assess and articulate information risks to technical and non-technical stakeholders … alike. Essential Knowledge & Experience: Deep understanding of information risk management, security principles, and relevant MOD/government standards. Proven experience applying security engineering practices across complex systems. Familiarity with cyber and informationassurance technologies and evolving threat landscapes. Experience supporting engineering lifecycle phases and managing security through design and delivery. Background in the defence, maritime, or critical More ❯
as a Security Architect will directly shape the protection of national security systems and platforms. This is a hands-on role for an architect who thrives in complex, high-assurance environments, working alongside government security authorities and engineering teams to deliver robust, secure solutions. Responsibilities • Design, develop, and maintain secure system architectures for MOD platforms, applications, and networks • Ensure … and NCSC guidance • Produce and maintain security documentation including Security Architecture Documents, Security Risk Assessments and Security Management Plans • Lead and support secure design reviews and contribute to engineering assurance gates • Liaise with security stakeholders (MOD, NCSC etc.), InformationAssurance teams, and other stakeholders to support security assurance processes • Collaborate with engineering and development teams to … and both industry and government compliances (e.g. ISO 27001, CE/CE+) • Solid understanding of systems engineering principles and secure development lifecycles • Experience developing artefacts to support MOD security assurance • Hands-on knowledge of risk management frameworks (e.g. HMG IS1/IS2, NIST RMF) • Excellent communication skills, both written and verbal – able to present to technical and non-technical More ❯
and NCSC guidance Produce and maintain security documentation including Security Architecture Documents, Security Risk Assessments and Security Management Plans Lead and support secure design reviews and contribute to engineering assurance gates Liaise with security stakeholders (MOD, NCSC etc.), InformationAssurance teams, and other stakeholders to support security assurance processes Collaborate with engineering and development teams to … and both industry and government compliances (e.g. ISO 27001, CE/CE+) Solid understanding of systems engineering principles and secure development lifecycles Experience developing artefacts to support MOD security assurance Hands-on knowledge of risk management frameworks (e.g. HMG IS1/IS2, NIST RMF) Excellent communication skills, both written and verbal - able to present to technical and non-technical … stakeholders Currently holds SC Clearance Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) SABSA, TOGAF or equivalent architecture certifications More ❯
and NCSC guidance Produce and maintain security documentation including Security Architecture Documents, Security Risk Assessments and Security Management Plans Lead and support secure design reviews and contribute to engineering assurance gates Liaise with security stakeholders (MOD, NCSC etc.), InformationAssurance teams, and other stakeholders to support security assurance processes Collaborate with engineering and development teams to … and both industry and government compliances (e.g. ISO 27001, CE/CE+) Solid understanding of systems engineering principles and secure development lifecycles Experience developing artefacts to support MOD security assurance Hands-on knowledge of risk management frameworks (e.g. HMG IS1/IS2, NIST RMF) Excellent communication skills, both written and verbal - able to present to technical and non-technical … stakeholders Currently holds SC Clearance Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) SABSA, TOGAF or equivalent architecture certifications More ❯
and NCSC guidance Produce and maintain security documentation including; Security Architecture Documents, Security Risk Assessments, and Security Management Plans Lead and support secure design reviews and contribute to engineering assurance gates Liaise with security stakeholders (MOD, NCSC etc.), InformationAssurance teams, and other stakeholders to support security assurance processes Collaborate with engineering and development teams to … and both industry and government compliances (e.g. ISO 27001, CE/CE+) Solid understanding of systems engineering principles and secure development lifecycles Experience developing artefacts to support MOD security assurance Hands-on knowledge of risk management frameworks (e.g. HMG IS1/IS2, NIST RMF) Excellent communication skills, both written and verbal - able to present to technical and non-technical … stakeholders Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) SABSA, TOGAF or equivalent architecture certifications If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further! Security Architect 6 month contract Based in Newport Offering 85ph Inside IR35 Disclaimer: This vacancy is being advertised by More ❯
and NCSC guidance Produce and maintain security documentation including; Security Architecture Documents, Security Risk Assessments, and Security Management Plans Lead and support secure design reviews and contribute to engineering assurance gates Liaise with security stakeholders (MOD, NCSC etc.), InformationAssurance teams, and other stakeholders to support security assurance processes Collaborate with engineering and development teams to … and both industry and government compliances (e.g. ISO 27001, CE/CE+) Solid understanding of systems engineering principles and secure development lifecycles Experience developing artefacts to support MOD security assurance Hands-on knowledge of risk management frameworks (e.g. HMG IS1/IS2, NIST RMF) Excellent communication skills, both written and verbal - able to present to technical and non-technical … stakeholders Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) SABSA, TOGAF or equivalent architecture certifications If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further! Security Architect 6 month contract Based in Newport Offering £85ph Inside IR35 Disclaimer: This vacancy is being advertised by More ❯
JSP 440, DEF STAN 05-138, and NCSC guidance. Produce and maintain documentation: Security Architecture Documents, Risk Assessments, and Security Management Plans. Lead and support design reviews and assurance gates. Liaise with MOD, NCSC, and InformationAssurance teams to support accreditation and assurance. Collaborate with engineering teams to embed security from concept through to delivery. Keep up … NIST RMF). Excellent communication skills confident engaging with technical and non-technical stakeholders. Must hold ACTIVE SC Clearance applicants without current clearance cannot be considered. Preferred Certifications Certified Information Systems Security Professional ( CISSP ) Certified Information Security Manager ( CISM ) SABSA, TOGAF, or equivalent architecture certifications If you are interested and keen to find out more, please apply with More ❯
leading Defence companies based in Frimley. Knowledge, Skills and Qualifications Knowledge: The PSA Principal Engineer will have a good understanding of the applicable regulations, standards, policies and guidance on information risk management, to be able to identify, analyse and evaluate information risks. They will be able to document and present risk management options to the business and participate … in discussions. Good understanding of information security principles and is able to advise on the potential impact to Product Systems. Knowledge of security related activities required to support the engineering lifecycle with experience of operating in the phase relevant to the role. The PSA Principal Engineer will have a working knowledge of the cyber security and informationassurance marketplace, including products, suppliers and key threats, and will also have an understanding of the direction of potential future technologies. Proven experience of assessing and managing information risk in line with industry good practice. Experience of assessing and advising on controls to support Product Safety. Proven experience of applying Product Security/Information Security concepts to applicable More ❯
leading Defence companies based in Frimley. Knowledge, Skills and Qualifications Knowledge: The PSA Principal Engineer will have a good understanding of the applicable regulations, standards, policies and guidance on information risk management, to be able to identify, analyse and evaluate information risks. They will be able to document and present risk management options to the business and participate … in discussions. Good understanding of information security principles and is able to advise on the potential impact to Product Systems. Knowledge of security related activities required to support the engineering lifecycle with experience of operating in the phase relevant to the role. The PSA Principal Engineer will have a working knowledge of the cyber security and informationassurance marketplace, including products, suppliers and key threats, and will also have an understanding of the direction of potential future technologies. Proven experience of assessing and managing information risk in line with industry good practice. Experience of assessing and advising on controls to support Product Safety. Proven experience of applying Product Security/Information Security concepts to applicable More ❯
We're looking for a proactive and security-minded professional to join a government-aligned programme, supporting cyber assurance and compliance activities. This is a hands-on role suited to someone with experience in public sector or defence environments, particularly around informationassurance and threat reporting. Key Responsibilities: Deliver internal security audits aligned to ISO 27001 standards More ❯
Hatfield, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Synergize Consulting Limited
life cycle. Experience in analysing cyber threats. Strong communication skills. Experience producing intelligence reports for varied audiences. Familiarity with cyber threats, threat actors, attack vectors, and vulnerabilities. Knowledge of informationassurance standards and frameworks including CIS, NIST, ISO 27001, Cyber Essentials/Essentials Plus, GDPR. Knowledge of threat cyber security frameworks such as MITRE ATT&CK, Kill Chain More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited trading as CBSbutler
migrations and Cisco Expressway upgrades , ensuring minimal disruption and full compliance with defence standards. Develop and maintain technical documentation, configuration guides, and operational procedures aligned with MOD/Defence InformationAssurance frameworks. Troubleshoot complex UC/network issues, working closely with infrastructure, security, and operations teams. Required Skills & Experience Proven experience supporting secure IT and Unified Communications environments More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited trading as CBSbutler
migrations and Cisco Expressway upgrades , ensuring minimal disruption and full compliance with defence standards. Develop and maintain technical documentation, configuration guides, and operational procedures aligned with MOD/Defence InformationAssurance frameworks. Troubleshoot complex UC/network issues, working closely with infrastructure, security, and operations teams. Required Skills & Experience Proven experience supporting secure IT and Unified Communications environments More ❯
assessment processes including how these processes influence the design e.g. FMECA, Hazard Analysis, Fault Tree Analysis, Common Mode Analysis, using tools such as Reliability Workbench Desirable An understanding of informationassurance, cyber security and environmental impact aspects relating to real time embedded engineering products More ❯
The Information and Data Management (IADM) Programme requires a Project Manager to coordinate and deliver projects pertinent to Enterprise Content management and a number of other business focussed ICT projects. The IADM programme is focussed on utilising technology to enable effective business change across multiple services, to support and embed informationassurance, reduced duplication, business efficiencies and … increased compliance. The PM will need to display a good mix of technological understanding and the impacts this has on culture and business change. The Programme is Information and Business focussed, so it is essential that the successful PM can demonstrate a range of previous projects which display Business and ICT capabilities. DBS - Basic More ❯