Cyber Security Lead Oxfordshire - Hybrid - 2 days per week (Flexible) £50k - £60k plus Benefits Our Client are an award-winning leading IT company offering complete outsourced IT solutions to organisations across the UK and Europe. Based in Oxfordshire they provide a comprehensive range of support services, software and hardware solutions to major blue-chip clients and their technicians are … in from the team. As part of this strategy, the more staff learn via official courses, the better the service and the more we reward them. Primary Purpose The Security Lead is both the client-facing strategist and the internal accountable owner of security within the MSP. They lead Quarterly Security Reviews (QSRs), own the client risk … register and exception process, and ensure services are delivered in line with frameworks such as Cyber Essentials, ISO27001, and NIST. Internally, the Security Lead is accountable for the MSP's own securityposture ensuring tools, processes, and teams meet the same standards we deliver to clients. They monitor measurable posture metrics (e.g., Microsoft Secure Score, Vulnerability More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
AWD online
Cyber Security Analyst A fantastic opportunity for a motivated Cyber Security Analyst to join a growing technology organisation and help deliver first-class cybersecurity support and compliance solutions to a diverse client base. If you’ve also worked in the following roles, we’d also like to hear from you: Cybersecurity Analyst, Information Security Advisor, Junior Security Consultant, IT Security Engineer, Security Compliance Analyst, Information Risk Advisor SALARY: £29,000 to £31,000 per annum (depending on experience) + Benefits LOCATION: Hybrid. Working 3 days from client sites or the City of London office (Faringdon/Chancery Lane EC1N) and 2 day from home JOB TYPE: Full-Time, Permanent JOB OVERVIEW We have a … fantastic new job opportunity for a Cyber Security Analyst with a passion for technology, problem-solving, and continuous learning. Working within an innovative team, you’ll play a key role in assessing client systems, improving securityposture, and supporting compliance standards. As a Cyber Security Analyst you will conduct audits, create reports, and implement essential technical More ❯
Information Security Engineer – Nationwide Software Company – Worthing, West Sussex (Office based) – 50K to 55K plus excellent benefits Stratospherec is recruiting for an Information Security Engineer to be based in the West Sussex office of our client who is a leading software company. In this role you will use your Information Security Engineer/Analyst expertise both supporting … and enhancing this nationwide company’s cybersecurity posture through the securing of enterprise applications, data and infrastructure and by identifying, assessing, and mitigating security risks. This is a hands-on, predominantly office-based role requiring experience in application and data security, vulnerability assessments, security administration, threat monitoring and response. You will work alongside a multidisciplinary team … of infrastructure, support staff and developers, cross-functionally supporting colleagues from across the business and the wider IT team to ensure security requirements are met and outstanding service delivered. KEY ACTIVITIES • Key activities in relation to application security will include performing security reviews of application architecture, source code, and third-party integrations. • Collaborating with development teams to More ❯
and throughout all levels of the client organization, generating results that allow our clients to thrive. What You'll Do The Global Platform Team Lead and Senior Director - IT Security is responsible for leading the design, delivery, and continuous evolution of BCG's security platforms across identity, device, and data protection domains. This role ensures end-to-end … security engineering across all technology environments, including cloud, on-prem, and hybrid systems. The leader will drive strategic planning, execution, and operations of scalable, automated, and resilient security controls that protect BCG's global operations and users, while enabling innovation and agility across BCG Core, BCG X, and CT worldwide. This role is also accountable for embedding security within DevSecOps practices, enforcing automation at scale, and applying Site Reliability Engineering (SRE) principles across all security services. The role requires strong partnership with ISRM, with a focus on balancing and prioritizing security requirements, automation opportunities, user experience needs, and broader business outcomes. Key Responsibilities Strategic Leadership & Transformation: Define and execute a unified security engineering strategy More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
ProCheckUp (PCU)
Senior Technical Consultant UK based Company Description We are looking for an experienced UK based Senior Security Consultant to strengthen the consulting team at this well established security consultancy. Role Description This is a full-time, on-site role based in Portsmouth and potential work-from home for a Cyber Security Consultant. The consultant will conduct vulnerability … assessments, application security reviews, and network security analyses. Responsibilities include evaluating risks, providing actionable security recommendations, and assisting clients with compliance to established standards like ISO 27001 and PCI DSS. The role will involve working closely with clients across sectors to strengthen their overall securityposture through proactive planning and solutions. Qualifications Experience in Cybersecurity … including identifying and addressing security threats and challenges Knowledge of Application Security, with the ability to identify vulnerabilities in web and mobile applications Skills in Network Security, including securing and evaluating infrastructure and cloud environments Expertise in performing Vulnerability Assessments and delivering actionable insights Background in Information Security, with experience in regulatory compliance (e.g., PCI DSS More ❯
Reading, Berkshire, England, United Kingdom Hybrid/Remote Options
Reed
Senior Application Security Engineer Location: Hybrid working or homeworking with view to attend office occasionally Salary: £60,000 – £70,000 per annum Bonus: Discretionary bonus of up to 10% Are you passionate about securing modern applications and cloud environments? We’re looking for a Senior Application Security Engineer to join my client's growing team and play a … key role in shaping the securityposture of our organisation. About the Role As a Senior Application Security Engineer, you’ll bring deep expertise in application security testing, cloud security, and secure development practices. You’ll work closely with IT, development, and project teams to embed security into every stage of the software development … lifecycle and drive a risk-based approach to vulnerability management. Key Responsibilities Lead application security initiatives across cloud-native and enterprise environments. Promote secure design principles, threat modelling, and best practices across teams. Own and evolve the technical vulnerability management programme. Implement and support security controls, particularly within Azure cloud environments. Evaluate and deploy best-in-class application More ❯
Cyber Security and Resilience Engineer Are you passionate about safeguarding digital landscapes and enhancing organizational resilience? We’re seeking a skilled Cyber Security and Resilience Engineer to play a pivotal role in fortifying security infrastructure. You will support our Cyber Security Operations strategy by managing and optimising threat protection and detection tools across web, email, endpoints … and cloud environments. This is an exciting opportunity to work closely with cross-functional teams, outsourced security partners, and internal stakeholders to elevate our securityposture and drive transformative security initiatives. What You’ll Bring to the Table: Minimum of 5 years’ experience in cybersecurity, especially within Microsoft-centric and large/multi-region corporate environments … Hands-on expertise with Azure, Entra, and Microsoft 365 Cloud Security Engineering Proficiency in writing complex PowerShell scripts Experience managing security for IaaS, PaaS, and SaaS platforms Strong understanding of threat detection, prevention, and response methodologies Hands-on experience with EDR, email security, and web security solutions Knowledge of security frameworks such as NIST, ISO More ❯
Cyber Security and Resilience Engineer Are you passionate about safeguarding digital landscapes and enhancing organizational resilience? We're seeking a skilled Cyber Security and Resilience Engineer to play a pivotal role in fortifying security infrastructure. You will support our Cyber Security Operations strategy by managing and optimising threat protection and detection tools across web, email, endpoints … and cloud environments. This is an exciting opportunity to work closely with cross-functional teams, outsourced security partners, and internal stakeholders to elevate our securityposture and drive transformative security initiatives. What You'll Bring to the Table: Minimum of 5 years' experience in cybersecurity, especially within Microsoft-centric and large/multi-region corporate environments … Hands-on expertise with Azure, Entra, and Microsoft 365 Cloud Security Engineering Proficiency in writing complex PowerShell scripts Experience managing security for IaaS, PaaS, and SaaS platforms Strong understanding of threat detection, prevention, and response methodologies Hands-on experience with EDR, email security, and web security solutions Knowledge of security frameworks such as NIST, ISO More ❯
Security Lead As a Security Lead, you will be both a client facing strategist and internal accountable owner of security within the organisation. This role ensures that security is embedded across all services, aligns with recognised frameworks and maintains both client and internal security excellence. Salary - £65,000 per annum Location - South East Key Responsibilities … Act as the primary security advisor to clients or stakeholders - Lead regular security reviews and maintain the risk register and exception process - Ensure services align with relevant security frameworks and demonstrate compliance through clear reporting and metrics - Own the organisation's securityposture ensuring tools, processes and teams meet defined standards Requirements - Proven experience in … a security leadership or governance role - Strong understanding of Cyber Essentials, ISO27001 and NIST Frameworks - Familiarity with posture metrics and modern security tooling - Relevant Certifications (CISSP, CISM, ISO27001) Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of More ❯
Hampshire, South East, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
Cyber Security GRC Consultant (DV Cleared) Location: Hybrid/Southeast Region - on-site presence required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design risk and security assurance services within MOD and Public Sector environments. You'll collaborate … with multi-disciplinary teams to define and implement security risk assessments and best practice solutions, ensuring alignment with business risk appetites and transformation goals. You'll be part of a knowledge-sharing culture, working alongside expert peers in Secure Architecture and Risk Planning. Key Responsibilities Deliver Secure by Design risk and security assurance functions within MOD/Public … Sector. Lead and advise on risk management frameworks, ISMS, and Enterprise Security Risk Management. Facilitate security and risk workshops with Authority departments. Produce clear reporting on vulnerabilities, risks, controls, and treatment activities. Provide pragmatic remediation and risk management guidance. Support secure design across technology platforms including cloud infrastructures. Contribute to blogs and research within the Cyberfort community. Experience More ❯
Cyber Security Engineer CyberSec Engineer/IT Security Specialist – Disaster Recovery, Resilience Testing, CyberSec Improvements, Vulnerability Scanning/Management, Infrastructure, Nutanix, Commvault, VMware, Azure, PowerShell, Python; Law Firm, Permanent, London/Hybrid (3/2). £80k - £95k (On Experience) +Bonus +Benefits Global Low Firm seeks experienced Cyber Security Engineer/IT Security Specialist to join … the IT Infrastructure Engineering Team and play a key role in the strengthening of the IT security position and critically ensuring that Disaster Recovery, failover, and operational resilience capabilities are effective and continually improved through ongoing testing and (re)engineering. This is a hands-on, process-driven role where you will ensure that disaster recovery (DR), failover, and operational … resilience capabilities are robust, tested, reviewed, and continuously improved. You’ll play a critical part in safeguarding business continuity and strengthening our cyber securityposture, working closely with infrastructure, security, and business continuity teams. As such the CyberSec Engineer/IT Security Specialist will: Lead the planning, orchestration, and execution of DR and resilience testing Perform More ❯
Security Lead Oxfordshire/Hybrid/Permanent/up to £65,000 About the Role We're seeking a Security Lead to take ownership of both client-facing and internal security strategy within our Managed Services environment. This is a strategic and hands-on leadership position - you'll oversee security governance, ensure compliance with leading frameworks … Cyber Essentials, ISO27001, NIST), and maintain a strong internal securityposture across our systems and services. You'll lead Quarterly Security Reviews (QSRs), manage client risk registers, and act as a trusted advisor translating complex risks into clear business outcomes. Internally, you'll own our security frameworks, guide improvement across tools and teams, and ensure compliance … through measurable posture metrics and ongoing development. Key Responsibilities Lead client Quarterly Security Reviews (QSRs) covering vulnerabilities, incidents, compliance, and risk registers. Translate technical risks into meaningful business impacts and recommendations. Manage internal and client risk registers and exception processes. Oversee security compliance across frameworks such as Cyber Essentials+, ISO27001, and NIST . Ensure secure deployment and More ❯
Hampshire, South East, United Kingdom Hybrid/Remote Options
Sanderson Government and Defence
Cyber Security GRC Consultant (DV Cleared) Location: Hybrid/Southeast Region - on-site presence required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role As a Cyber Security Consultant, you will play a pivotal role in delivering Secure by Design risk and security assurance services within MOD and Public Sector environments. You'll collaborate … with multi-disciplinary teams to define and implement security risk assessments and best practice solutions, ensuring alignment with business risk appetites and transformation goals. You'll be part of a knowledge-sharing culture, working alongside expert peers in Secure Architecture and Risk Planning. Key Responsibilities Deliver Secure by Design risk and security assurance functions within MOD/Public … Sector. Lead and advise on risk management frameworks, ISMS, and Enterprise Security Risk Management. Facilitate security and risk workshops with Authority departments. Produce clear reporting on vulnerabilities, risks, controls, and treatment activities. Provide pragmatic remediation and risk management guidance. Support secure design across technology platforms including cloud infrastructures. Contribute to blogs and research within the Cyberfort community. Experience More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Inspire People
Manager to protect DIT and the wider UK government from cyber threats in a fast paced and exciting role, responsible for the Vulnerability Management and Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is … Manager you will be helping to protect DBT and the wider UK government from cyber threats in a fast paced and exciting role.? Reporting to the Head of Cyber Security Operations, the Cyber Threat and Vulnerability Manager will manage and be responsible for the Threat and Vulnerability Management function within the SOC, by providing leadership on identification and improvement … opportunities, and ensuring service owners are aware of weaknesses in their securityposture and are empowered with the right information to take appropriate actions. A healthy curiosity will be essential, to actively go out and discover items of potential interest to the team, ensuring that there is collaboration between the architects, SOC engineers and analysts, and risk managers More ❯
the impregnability of the clients critical digital assets. This includes securing public-facing portals, safeguarding the vital infrastructure links between Aramco and Saudi government projects, and developing a proactive securityposture that anticipates future threats. You are not just a manager; you are a player-coach and a strategic thinker. We are looking for someone currently in a … Responsibilities: Practice Leadership: Define the strategic vision, methodologies, and service offerings for our cybersecurity vertical. Hands-On Technical Delivery: Lead the architecture, design, and hands-on implementation of robust security solutions for critical systems. This includes application security, network security, and infrastructure hardening. Client Liaison: Act as a trusted security advisor to our key stakeholders at … compliance, including those specific to the Kingdom of Saudi Arabia (KSA) and critical national infrastructure. Team Building: Be prepared to recruit, mentor, and lead a team of top-tier security engineers as the practice expands. Who You Are: You have 8+ years of experience in cybersecurity, with at least 2+ years in a Team Lead or Manager capacity. You More ❯
We are an international insurer and reinsurer with a local presence in 27 countries. The Opportunity QBE Europe is currently recruiting a SOC Principal Analyst to join our cyber security team in our London Office. Reporting to regional team leads, the SOC Principal Analyst will be a key member of our rapidly growing Global Security Operations team. Your … new role This is an exciting hands-on technical role in which the specialist will use their security skills and knowledge to perform advanced analysis on the collection of cyber threats using high-level proactive and reactive threat hunting methods, classifying, analysing, prioritising and remediating security alerts/events. The focus is to provide effective, proactive and a … highly technical analytical response to cyber security-related incidents to prevent QBE from becoming compromised by modern attack methods and techniques. Main responsibilities: Act as point of escalation and mentor to junior SOC analysts. Translates business objectives into security objectives by providing support in design/architecture for new security applications to improve the current securityMore ❯
Our client, a leading city-based insurance broker, is seeking an experienced Information Security Manager to lead the development and delivery of the firm's information security programme. This key role will be central to protecting business systems, data, and operations across a growing organisation. Key responsibilities:* Design and implement security policies and procedures aligned with ISO … NIST, and other recognised frameworks. * Manage the information security risk register and lead internal and external audits. * Oversee incident response, including investigation, containment, and recovery. * Conduct vendor security assessments and review contractual security requirements. * Lead day-to-day security operations, including access control, vulnerability management, and endpoint protection. * Build and mentor a new security team … while driving organisation-wide security awareness. Key experience:* Extensive experience in information security within regulated financial services. * Strong understanding of UK insurance broking operations. * Knowledge of FCA, PRA, GDPR, and SOX regulatory frameworks. * Experience in post-acquisition integration and operating model design. * Excellent stakeholder engagement and communication skills. This is an outstanding opportunity for a seasoned information securityMore ❯
Security Risk Assurance Manager - SC cleared Location: Hybrid (75% remote) with on-site presence as required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role The Security Assurance Manager supports the organisation's enterprise security risk management function by conducting assurance activities that evaluate the effectiveness of security controls across people, processes, and … technology. Working as part of a collaborative team that provides impartial assessments of securityposture, evaluates supply chain security, and identifies enterprise-level risks. This role offers the opportunity to work across multiple assurance functions, including internal security assurance, supply chain risk, and strategic enterprise risk management. Key Responsibilities Conduct research and gather evidence to assess … the effectiveness of security controls. Evaluate and interpret assurance data to support a holistic view of organisational security. Record findings accurately using assurance tools and templates. Assist senior team members in testing controls and drafting assurance reports. Support post-incident assurance activities to ensure lessons learned are captured and improvements implemented. Contribute to continuous improvement of assurance methodologies and More ❯
Banbury, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
24th November 2025 There is an expectations to travel to different Chiltern sites outside of your base location to support wider colleagues and attend meetings. Job Purpose The IT Security Operations Engineer is responsible for protecting the digital services that support a safe and reliable journey for our passengers and a secure working environment for our staff. This is … a hands-on role focused on strengthening our securityposture through technical expertise and cross-departmental collaboration. You will report into the IT Information Security Manager with expected collaboration with the wider IT Team management, representing Digital, Data and Technology (DDaT). Key purposes of this role include: Safeguarding Operations: Actively manage and enhance our security platforms (primarily SIEM, XDR and IDAM polices) to detect, prevent, and respond to cyber threats across our IT and operational networks. Implementing and reviewing Security Controls: Serve as the subject matter expert for implementing technical security controls on applications, networks, and infrastructure to mitigate risk. Fostering Collaboration: Work closely with a wide range of internal teams, from More ❯
Hook Norton, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
24th November 2025 There is an expectations to travel to different Chiltern sites outside of your base location to support wider colleagues and attend meetings. Job Purpose The IT Security Operations Engineer is responsible for protecting the digital services that support a safe and reliable journey for our passengers and a secure working environment for our staff. This is … a hands-on role focused on strengthening our securityposture through technical expertise and cross-departmental collaboration. You will report into the IT Information Security Manager with expected collaboration with the wider IT Team management, representing Digital, Data and Technology (DDaT). Key purposes of this role include: Safeguarding Operations: Actively manage and enhance our security platforms (primarily SIEM, XDR and IDAM polices) to detect, prevent, and respond to cyber threats across our IT and operational networks. Implementing and reviewing Security Controls: Serve as the subject matter expert for implementing technical security controls on applications, networks, and infrastructure to mitigate risk. Fostering Collaboration: Work closely with a wide range of internal teams, from More ❯
West Malling, Kent, United Kingdom Hybrid/Remote Options
Lumina Energy
Salary/package: £100,000 - £110,000 per annum Contract type: Permanent Hours: Full time, 37 hours per week We are looking for an experienced and forward-thinking cyber security leader to join our Corporate Services division as Head of Cyber Security. This is a senior strategic role with organisation-wide visibility and impact. If you have the vision … expertise and influence to embed robust cyber security across a complex and fast-growing business, we want to hear from you. Who we are Commercial Services Group is one of the UK's largest local authority-owned trading organisations, comprising 33 diverse businesses that operate across education, local government, the NHS and beyond. We provide services in recruitment, energy … services. Corporate Services underpins the success of all Commercial Services Group trading divisions by providing the infrastructure, expertise and governance needed to enable growth, innovation and resilience. The Cyber Security function sits within Corporate IT and plays a central role in protecting the Group's digital assets, data and reputation. Why this role matters As Head of Cyber SecurityMore ❯
London, South East, England, United Kingdom Hybrid/Remote Options
MFK Recruitment
Cyber Security & Centralised Services Manager Location: London Bridge Company: Managed Service Provider (MSP) This role will be office-based for the first 3–6 months, with the option to move to a hybrid working arrangement thereafter. Our client is a well-established MSP based in London Bridge. They are a close-knit team of 30 IT professionals delivering end … end technology services and support to a diverse range of clients, with a strong emphasis on cybersecurity, resilience and regulatory compliance. The Opportunity: We are seeking an experienced Cyber Security & Centralised Services Manager with a strong cybersecurity focus to join our growing technical team. In this pivotal role, you will: Act as the primary escalation point for complex IT … and cybersecurity incidents. Manage and secure core client infrastructure and cloud environments. Ensure centralised security, monitoring, and incident response platforms operate effectively. You will collaborate closely with our Service Desk, Projects and Account Management teams to maintain high standards of service, document solutions and mentor junior engineers in line with cybersecurity best practices and frameworks such as ISO27001, NIST More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Sanderson
Senior Security Risk Assurance Manager - SC cleared Location: Hybrid (75% remote) with on-site presence as required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role The Senior Security Risk Assurance Manager plays a critical role in strengthening the organisation's securityposture through strategic risk-based assurance activities. This role supports informed … decision-making across the enterprise by providing expert insight into the effectiveness of security controls, risk management practices, and supply chain security. The position may sit within one of several assurance functions, including internal security assurance, supply chain assurance, or enterprise-level risk management. Key Responsibilities Lead and manage a team of security professionals to deliver high … quality assurance activities. Develop and maintain an annual security assurance plan aligned with strategic business risks. Engage with stakeholders to scope, plan, and execute assurance activities across people, processes, and technology. Validate and interpret evidence to provide a holistic view of the organisation's security posture. Present findings and recommendations to senior leadership and governance forums. Collaborate with More ❯
Winchester, Hampshire, United Kingdom Hybrid/Remote Options
Arqiva
and employee assistance programmes, gymflex, travel and dental insurance Work. Life. Smarter. Our commitment to a flexible and hybrid working culture Role Purpose Design and implement changes to information security governance & risk management, to ensure that the organisation's securityposture is robust, compliant, and adaptable to emerging threats while aligning with strategic business goals. Accountabilities Ensure … that we are consistently compliant with customer, regulatory, and shareholder obligations. Implement and continuously improve a risk management process across the organisation. Maintain and assess the effectiveness of the security controls catalogue; recommend improvements. Own the Information Security Management System (ISMS) to ensure compliance with internal and external requirements. Provide assurance that security controls are operating effectively … against regulatory and customer obligations, compliance assessments, and gap analyses. Develop and implement governance frameworks aligned with business and regulatory requirements. Skills Cyber Risk Oversight - Strategic understanding of cyber security risks and the ability to oversee the implementation of appropriate controls, assurance mechanisms, and reporting frameworks. Cyber Governance & Advisory - Expertise in leading the adoption of industry cyber frameworks (e.g. More ❯
Cyber Security Analyst Milton Keynes - hybrid Up to 60,000, 10% annual bonus and excellent benefits. Our client is an impressive, innovative, multiple award-winning, leading IT Managed Service Provider; they believe great people build great companies and invest heavily in staff development, cultivating a culture of innovation, quality, and excellence. We are looking for a skilled and proactive … Cyber Security Analyst to join their specialist security team. This role offers the opportunity to work across a diverse range of clients and environments, applying your technical expertise to enhance security operations, tooling, and compliance. You will play a key role in managing incidents, optimising security tools, and mentoring junior analysts, while contributing to the continuous … improvement of their security posture. This is a hands-on, operationally focused role that blends technical security responsibilities with governance, risk, and compliance (GRC) elements. As Cyber Security Analyst, you will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems Perform threat hunting and develop detection use More ❯