to hire on a permanent basis. Please contact the HR Service desk ( ) should you have any questions on your nationality eligibility. Why are we recruiting? In a world where cyber challenges and opportunities are constantly evolving, we are committed to staying ahead of the curve. With new investment aimed at enhancing the NAO's security maturity our Information Security … in many new and diverse change and development programmes which will require an open and agile approach to delivering great, innovative security Compliance and Process o Management of the CyberEssentials and CE+ certification process. o Maintaining ISO27001:2022 compliance. o Establish and run the review and improvement of the NAO's Disaster Recovery plans. o Ensuring our … key security principles, threats, controls, and risks • Detailed knowledge of key threat actors affecting the NAO. Desirable • Significant experience working within or implementing ISO 27001:2022 ISMS • Experience maintaining CyberEssentials Plus • Hold one or more of the following industry accreditations, or able to achieve within six months: o CISSP, CISM, CISA, CRISC o Comp TIA Sec+, Azure More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
NCC
creating and editing policies, processes and procedures Knowledge of information security risk management and a working knowledge of cybersecurity would be beneficial but we are not looking for a cyber security professional. Desirable: Relevant accreditations including CyberEssentials, Cyber Assured, etc. In terms of personal qualities, we will look for a high level of personal integrity More ❯
in shaping and safeguarding the organisation's cybersecurity posture - designing and implementing robust security protocols, managing threat detection and response, and ensuring compliance with key standards such as GDPR, CyberEssentials, and ISO 27001. Collaboration is key, as you'll work closely with IT support, application teams, and external partners to maintain a secure, efficient, and future-ready … identity and access management tools like Azure AD, MFA, and SSO. Experience designing and implementing security protocols. Comfortable managing cybersecurity incidents and maintaining compliance with standards such as GDPR, CyberEssentials, ISO 27001, and NIST. Involved in systems design and documentation. Keen interest in emerging technologies and continuous improvement. What you'll get in return 33 days of More ❯
support their high-profile organisation in strengthening their security posture across major transformation initiatives. This is a pivotal role where you'll work closely with delivery teams to ensure cyber security, data protection, and compliance frameworks are baked into every phase of the project lifecycle, right from ideation through to delivery. You'll act as the security conscience across … multiple programmes, helping to identify risks early, reduce costly late-stage rework, and deliver robust, secure-by-default solutions. The Role: Provide subject matter expertise on cyber security and secure design across tech change programmes Work hand-in-hand with delivery managers to embed security controls from day one Review and guide third-party risk assessments and product security … compliance Support DPIAs and ensure alignment with CyberEssentials, ISO 27001, and NIST frameworks Lead threat modelling, risk assessments, and support documentation of potential vulnerabilities Influence strategic investment decisions based on risk and business impact What You'll Need: Proven experience advising on security across the full project lifecycle Deep knowledge of Secure by Design principles and data More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
Sanderson
This is an excellent opportunity to play a key role in advancing the company's security posture by delivering Governance, Risk, and Compliance (GRC) initiatives and embedding the NIST Cyber Security Framework (CSF) across the business. Key skills/responsibilities: Deliver day-to-day GRC activities, including designing and implementing security controls and managing information security risks Interpret and … an information security controls catalogue, policies, and procedures aligned with NIST CSF Collaborate with business units to integrate security measures into operations Support compliance activities for frameworks such as CyberEssentials, PCI DSS, and the Group Information Security Framework Facilitate reviews and updates to ensure controls remain effective against evolving threats Essential skills: Minimum 2 year's experience … developing security controls catalogue in a financial services environment (highly desirable) Proven experience in delivering security projects within a federated organisation Desirable skills: Knowledge of NIST CSF, ISO 27001, CyberEssentials, PCI DSS, DORA Understanding of risk methodologies and data analysis for reporting Strong documentation skills (control matrices, process flows, SOPs) Excellent communication skills for both technical and More ❯
Meriden, Coventry, West Midlands, England, United Kingdom
Recruit4Talent
opportunity to leverage your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, CyberEssentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues Excellent verbal and written communication abilities … learning and developing expertise in information security Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, CyberEssentials and PCI DSS) Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending More ❯
opportunity to leverage your existing skills while developing new ones, contributing to the strategic security objectives of the Company and ensuring adherence to critical accreditations, including ISO 27001, GDPR, CyberEssentials, and PCI DSS. The successful candidate will demonstrate: Strong analytical skills with a meticulous approach to identifying and resolving security issues. Excellent verbal and written communication abilities … learning and developing expertise in information security. Happy to travel occasionally to other sites as required. Desirable Experience: Demonstrable expertise in external audit, compliance, and security processes (ISO27001, GDPR, CyberEssentials and PCI DSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary More ❯
register and ensure comprehensive documentation of all systems, including the Datawarehouse. Test and validate data recovery procedures for disaster recovery scenarios. Work towards and maintain relevant accreditations such as CyberEssentials and IASME Strategic Planning: Lead strategic IT planning and advise the CFO, Executive Leadership Team (ELT), and management on safeguarding the company's IT infrastructure and security. … Maintain knowledge of trends, best practices, regulatory changes, and new technologies in IT and regulations/legislation. Ensure compliance with all existing IT regulation requirements including GDPR etc., accreditations (CyberEssentials, IASME). Advise and guide CFO/ELT/employees on the impact of prospective new IT/Cyber regulations legislation, security, updates, and developments in More ❯
while introducing best practice across the business. You’ll work closely with the Finance & Operations team and the Technical Director, with responsibilities including: Leading the management and implementation of CyberEssentials Plus and ISO27001 standards Overseeing network, firewall, and VPN configuration and support Managing inventory and procurement for laptops, mobiles, AV, printers, and VOIP Supporting the lab environment … with excellent interpersonal skills Desirable: Firewall experience with Cisco ASA and Firepower Site-to-site VPN management Exposure to K3, backup solutions, and disaster recovery Experience implementing ISO and CyberEssentials standards Why Join? You’ll be joining at a pivotal time in the company’s journey — with significant backing, a technically strong leadership team, and a genuine More ❯
Maintain and manage IT tickets, ensuring timely resolution and user satisfaction. Deliver user training and produce clear documentation (FAQs, guides, wikis). Assist in maintaining IT policies and support CyberEssentials compliance. Evaluate and test new technologies to improve IT operations. Provide technical input for device imaging and system configuration. Collaborate with remote teams in the UK and … . Knowledge of Microsoft deployment tools (Intune, Autopilot, SCCM). Scripting or automation skills (PowerShell). Exposure to web or application support (.NET, Power Platform, etc). Experience supporting CyberEssentials or similar standards. Full UK driving licence preferred. More ❯
Croydon or Manchester. You should be self-motivated, a natural problem solver, and used to operating independently. How you will contribute at Janes: Responsible for delivering the annual ISO27001 & CyberEssentials programmes Own and co-ordinate the security testing roadmap, and provide key support to the overall Security strategy Conduct regular risk assessments to identify potential security threats … The ideal skills and experience for this role are: 6+ years experience in Information Security Risk and Compliance Knowledge of security and compliance standards across InfoSec (e.g. ISO 27001, CyberEssentials, NIST, CMMC) Expertise in Azure, Microsoft 365 & AWS Security Compliance Experience of Supply Chain compliance 27 days of annual leave Healthy half (0.5 day leave every More ❯
Croydon or Manchester. You should be self-motivated, a natural problem solver, and used to operating independently. How you will contribute at Janes: Responsible for delivering the annual ISO27001 & CyberEssentials programmes Own and co-ordinate the security testing roadmap, and provide key support to the overall Security strategy Conduct regular risk assessments to identify potential security threats … The ideal skills and experience for this role are: 6+ years experience in Information Security Risk and Compliance Knowledge of security and compliance standards across InfoSec (e.g. ISO 27001, CyberEssentials, NIST, CMMC) Expertise in Azure, Microsoft 365 & AWS Security Compliance Experience of Supply Chain compliance 27 days of annual leave Healthy half (0.5 day leave every More ❯
Reigate, Surrey, South East, United Kingdom Hybrid / WFH Options
Nextech Group Limited
Windows Server: Active Directory, Group Policy, File/Print Services Smoothwall, SonicWALL, or equivalent firewall/content filtering systems Network infrastructure: VLANs, Wi-Fi, switching, AV deployments Familiarity with CyberEssentials and IASME security standards ?Ideal Candidate: Microsoft 365: Exchange Online, SharePoint Online, Teams, OneDrive Microsoft Azure: Azure AD, SSO/Identity Microsoft Intune/Endpoint Manager & Windows … Windows Server: Active Directory, Group Policy, File/Print Services Smoothwall, SonicWALL, or equivalent firewall/content filtering systems Network infrastructure: VLANs, Wi-Fi, switching, AV deployments Familiarity with CyberEssentials and IASME security standards This is an exciting opportunity to join a supportive and forward-thinking team, where your contributions will directly enhance user experience and operational More ❯
Cambridge, Cambridgeshire, England, United Kingdom
Eclectic Recruitment
join their team on a full time, permanent basis with some excellent additional benefits. Responsibilities Include: Provide on-site and remote IT support, maintaining infrastructure and M365 platforms. Ensure CyberEssentials Plus compliance and assist in audits. Manage networks, SharePoint, telephony, and mobile device systems. Configure, deploy, and maintain hardware, virtual desktops, and software updates. Perform backups, monitoring … successful candidate will have: Experience in similar IT support role (3 years +). Strong skills in Microsoft 365, Azure, Active Directory, SharePoint, and networking technologies. Knowledge of Networking, CyberEssentials, Anti-virus and Backup. Excellent troubleshooting skills and ability to translate technical issues to non-technical colleagues. Ability to prioritise, work accurately, and solve problems under pressure. More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Xcede
security projects. Build strong relationships with third-party IT partners, contributing to smooth service delivery and risk mitigation. Deliver and support initiatives aligned with information security standards such as CyberEssentials and ISO 27001. Support and optimise hybrid environments leveraging Microsoft on-premise, Azure, Intune, and Zero Trust networking technologies. About You: You are a confident and customer … service desk tools and ITIL-aligned support processes. Proven experience working with third-party vendors and MSPs in outsourced support models. Exposure to security standards and data protection frameworks (CyberEssentials, ISO 27001). Certifications in Cisco, CompTIA, Microsoft, or ISACA will be highly advantageous. Why Apply? This is a unique opportunity to work in a fast-paced More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
Xcede Recruitment Solutions
security projects. Build strong relationships with third-party IT partners, contributing to smooth service delivery and risk mitigation. Deliver and support initiatives aligned with information security standards such as CyberEssentials and ISO 27001. Support and optimise hybrid environments leveraging Microsoft on-premise, Azure, Intune, and Zero Trust networking technologies. About You: You are a confident and customer … service desk tools and ITIL-aligned support processes. Proven experience working with third-party vendors and MSPs in outsourced support models. Exposure to security standards and data protection frameworks (CyberEssentials, ISO 27001). Certifications in Cisco, CompTIA, Microsoft, or ISACA will be highly advantageous. Why Apply? This is a unique opportunity to work in a fast-paced More ❯
Evidence of and continuing professional development Experience and knowledge in Data Protection & Security and in interpretation and applications of legislation in a large public acting organisation Relevant Data Protection, Cyber Security and Information Technology qualifications. i.e. (Specific expert Data Protection and/Freedom of Information legislation practitioner) (Specialist knowledge in relation to Data Protection and Security) (Data/Information … Security/Cyber Security Qualification Expert knowledge of the Data Protection Act and Freedom of Information Legislation Must be willing to participate in any relevant training to develop skills required to carry out duties Evidence of continuing professional development in relevant area (s) (Records Management, Data Retention, Data Protection, Handling Information) Desirable Data Security/Information Security Qualification Certified … and requirements; Caldicott Guardian role, Senior Information Risk Owner role, Confidentiality, Integrity and Availability and Data Security & Protection Toolkit requirements etc. Highly developed knowledge and understanding if Data/Cyber/Information Security requirements within an NHS environment Expert knowledge of Data Protection Act (DPA) 2018 (UK GDPR)/, Freedom of Information Act (FOIA) 2000, Access to Health Records More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Big Red Recruitment
Design Zero Trust controls via Entra ID: Conditional Access, PIM, RBAC Lead client-facing workshops and contribute to presales and security strategy Create LLDs/HLDs, support compliance (e.g. CyberEssentials), and manage onboarding into Managed Security Services Ideally you'll bring some of the following; Real-world experience deploying Microsoft Purview in enterprise environments Strong working knowledge … consultancy Proven skills in producing design documentation and guiding implementation Certifications (SC-400, AZ-500, SC-300, MS-500 Experience with SentinelOne, CrowdStrike, PowerShell/Python scripting Knowledge of CyberEssentials or similar frameworks We are an equal opportunity recruitment company. This means we welcome applications from all suitably qualified people regardless of race, sex, disability, religion, sexual More ❯
Stratford-upon-avon, Warwickshire, United Kingdom Hybrid / WFH Options
Big Red Recruitment
Design Zero Trust controls via Entra ID: Conditional Access, PIM, RBAC Lead client-facing workshops and contribute to presales and security strategy Create LLDs/HLDs, support compliance (e.g. CyberEssentials), and manage onboarding into Managed Security Services Ideally you'll bring some of the following; Real-world experience deploying Microsoft Purview in enterprise environments Strong working knowledge … consultancy Proven skills in producing design documentation and guiding implementation Certifications (SC-400, AZ-500, SC-300, MS-500 Experience with SentinelOne, CrowdStrike, PowerShell/Python scripting Knowledge of CyberEssentials or similar frameworks We are an equal opportunity recruitment company. This means we welcome applications from all suitably qualified people regardless of race, sex, disability, religion, sexual More ❯
improve how things work. Cross-Functional Collaboration Partner with Customer Success and Account Managers to align on high-priority accounts and deliver a joined-up experience. Assist in managing CyberEssentials Plus audit-related support, customer walkthroughs, and software submissions. Support marketing or product enablement efforts by surfacing customer insights, blockers, and usability trends. What Success Looks Like … chat, phone, and video support with professionalism and clarity. Customer-first mindset with a proven ability to manage high-pressure interactions calmly and constructively. Knowledge of security certifications like CyberEssentials or experience supporting CE+ audits is a bonus. CRM or helpdesk experience (e.g., Zendesk, Salesforce, HubSpot). A competitive salary Flexible working hours and a remote-first More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Ashdown Group
Cyber Security Analyst - Permanent full time role - Salary up to £55k plus benefits and hybrid working (3 days a week in the office) - Based in West London A large West London based company is looking for an experienced Cyber Analyst/Engineer to join its IT function. This is a great opportunity to join a large business that … are going through operational change and growth. Duties will include: - Working with the wider business on ISO27001 and CyberEssentials - Network and data security monitoring - Responding to tickets and working with teams on access, malware and vulnerability - Deploy SIEM - Support ongoing improvements to internal defence - Oversee policies and procedures - Support data protection initiatives - Security projects - Develop disaster recovery … plans - Establish and improve vulnerability management To be considered suitable you will need the following skills and experience: - Relevant cyber certifications - Experience in either a Cyber Analyst or Cyber Engineer role - Knowledge on SIEM and EDR tools - Experience in network audits and penetration testing - Infrastructure support experience - Knowledge on security frameworks More ❯
West London, London, England, United Kingdom Hybrid / WFH Options
Ashdown Group
Cyber Security Analyst - Permanent full time role - Salary up to £55k plus benefits and hybrid working - Based in West London A large West London based company is looking for an experienced Cyber Analyst/Engineer to join its IT function. This is a great opportunity to join a large business that are going through operational change and growth. … Duties will include: - Working with the wider business on ISO27001 and CyberEssentials - Network and data security monitoring - Responding to tickets and working with teams on access, malware and vulnerability - Deploy SIEM - Support ongoing improvements to internal defence - Oversee policies and procedures - Support data protection initiatives - Security projects - Develop disaster recovery plans - Establish and improve vulnerability management To … be considered suitable you will need the following skills and experience: - Experience in either a Cyber Analyst or Cyber Engineer role - Knowledge on SIEM and EDR tools - Experience in network audits and penetration testing - Infrastructure support experience - Knowledge on security frameworks More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Ashdown Group
Cyber Security Analyst - Permanent full time role - Salary up to £55k plus benefits and hybrid working - Based in West London A large West London based company is looking for an experienced Cyber Analyst/Engineer to join its IT function. This is a great opportunity to join a large business that are going through operational change and growth. … Duties will include: - Working with the wider business on ISO27001 and CyberEssentials - Network and data security monitoring - Responding to tickets and working with teams on access, malware and vulnerability - Deploy SIEM - Support ongoing improvements to internal defence - Oversee policies and procedures - Support data protection initiatives - Security projects - Develop disaster recovery plans - Establish and improve vulnerability management To … be considered suitable you will need the following skills and experience: - Experience in either a Cyber Analyst or Cyber Engineer role - Knowledge on SIEM and EDR tools - Experience in network audits and penetration testing - Infrastructure support experience - Knowledge on security frameworks More ❯
Liverpool, Lancashire, United Kingdom Hybrid / WFH Options
Techwaka
Senior Cyber Security Engineer opportunity working within an established fintech firm in Liverpool Attractive benefits package Up to £60,000 per annum depending on experience Full Time - Permanent role - Hybrid working available Sector: Finance Benefits Competitive Salary - £55,000 - £60,000 per annum Generous Annual Leave Paid Sick days Company Pension A comprehensive in-house training Continued training and … development Friendly and supportive working culture About the Role: Lead on technical cyber security initiatives within the Security Operations team Ensure the implementation of robust security controls and best practices Provide specialist security support to IT teams, including infrastructure, development, and database teams Work with stakeholders to maintain compliance with industry standards such as ISO27001, CyberEssentials Plus, PCI/DSS Stay ahead of cyber threats, maintaining and improving security monitoring and risk management processes Support vulnerability management, penetration testing, and incident response Requirements for this role: 3+ years' experience in a senior cyber security role Strong knowledge of security frameworks (NIST, NCSC, CIS, MITRE ATT&CK) Hands-on experience with security tools: SIEM More ❯
business. We continually invest in our people and the latest technologies, so our customers get peace of mind knowing that they have access to the best talent and services. Cyber Practice Claranet’s Cyber Practice is dynamic and fast-moving, delivering a comprehensive range of professional services and managed services both onsite and remotely. The Cyber Practice … skilled professionals delivering a myriad of offensive security testing and governance, risk, and compliance (GRC) services in support of Claranet’s vision. Taking a customer first approach, Claranet’s Cyber Practice prides itself in providing world-class services designed to meet the specific and individual needs of all customers, across all industries. Position Summary As a Security Consultant, you … internal collaboration with other Claranet teams to provide and support customer project delivery, shadowing and mentoring where appropriate. Objectives and Key Results The Security Consultant is part of the Cyber Practice. The key objectives and results will be to: Successful delivery of customer GRC projects across the range of the Cyber Practice GRC services, in line with both More ❯