Our Information & Technology (I&T) Digital Security organisation is on a mission to deliver scalable, flexible, and effective security services that support the evolving needs of our business. We operate as a centralised team, providing strategic security architecture and assurance across all business units, assets, and change initiatives. Our goal is to proactively mitigate threats and … externally with our technology partners. Our team is committed to maintaining a secure digital environment that aligns with regulatory requirements and industry best practices. About the Role As an InformationSecurity Architect, you will play a key role in shaping and maintaining our enterprise security architecture. You'll work closely with enterprise architects, functional area specialists, and … security experts to ensure that all IT systems and platforms are designed with robust, scalable, and compliant security solutions.Your responsibilities will include: Developing and maintaining security architectural models, standards, and procedures. Advising on security strategies to manage risks and ensure compliance with internal policies and external regulations. Supporting the creation of reference architectures and artefacts for More ❯
current frontier AI systems and considering what measures could and should be used to secure such systems in the future. The Safeguard Analysis Team takes a broad view of security threats and interventions. It's keen to hire researchers with expertise developing and analysing attacks and protections for systems based on large language models, but is also keen to … hire security researchers who have historically worked outside of AI, such as in - non-exhaustively - computer security, informationsecurity, web technology policy, and hardware security. Diverse perspectives and research interests are welcomed. The Team seeks people with skillsets leaning in the direction of either or both of Research Scientist and Research Engineer, recognising that some technical … seniority and experience. Person Specification You may be a good fit if you have some of the following skills, experience and attitudes: Experience working on machine learning, AI, AI security, computer security, informationsecurity, or some other security discipline in industry, in academia, or independently. Experience working with a world-class research team comprised of More ❯
Winchester, Hampshire, United Kingdom Hybrid / WFH Options
Arqiva
wellness and employee assistance programmes, gymflex, travel and dental insurance Work. Life. Smarter. Our commitment to a flexible and hybrid working culture Role Purpose Design and implement changes to informationsecurity governance & risk management, to ensure that the organisation's … security posture is robust, compliant, and adaptable to emerging threats while aligning with strategic business goals. Accountabilities Ensure ISO27001 compliance and maturity by identifying and recommending changes to Infosec policies, processes, control frameworks Ensure that we are consistently compliant with customer, regulatory, and shareholder obligations. Implement and continuously improve a risk management process across the organisation. Maintain and assess … the effectiveness of the security controls catalogue; recommend improvements. Own the InformationSecurity Management System (ISMS) to ensure compliance with internal and external requirements. Provide assurance that security controls are operating effectively and aligned with defined frameworks. Maintain company risk portfolio and actively review and risk finding Conduct internal assessments against regulatory and customer obligations, compliance More ❯
Hatfield, Hertfordshire, South East, United Kingdom
Affinity Water Limited
Affinity Water has a exciting opportunity available to work in our Cyber Security Team as a Operational Technology InformationSecurity Analyst. The Role: As a Operational Technology InformationSecurity Analyst will be responsible for safeguarding the organisation's Operational Technology (OT) environments from cyber threats. This role involves implementing OT security measures, monitoring the … OT network for threats, leading incident response efforts, validating security controls, and ensuring the resilience of OT systems. What you'll be doing: Implement and manage OT security controls, measures, and technologies to protect critical assets and systems. Conduct risk assessments, vulnerability management, and security testing. Develop and implement incident response plans and ensure compliance with regulations. … Conduct proactive threat hunting and reactive incident response. Provide regular reports on security status, including incidents, vulnerabilities, and overall health of OT systems. Collaborate with cross-functional teams, including network engineers, system administrators, and external cybersecurity teams. What you'll need: At least 3 years of experience in OT security engineering, incident response, or a related field. Ability More ❯
Cambridge, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
Morson Edge
Security Controller & Assurance Manager Cambridge | Hybrid (Onsite Tue–Thu) ? 6-Month Contract (Inside IR35) – Extension/Perm Potential D ay rate depending on experience Active SC Clearance preferred (or eligibility required) We are seeking an experienced Security Controller & Assurance Manager to take ownership of end-to-end security governance within a leading defence engineering environment. This role … spans protective security, personnel security, information/data security and supporting cyber security , acting as the primary security authority on-site and working closely with senior leadership. This is a key hire driven by increased programme activity and business growth. Key Responsibilities ? Act as Security Controller & Crypto Custodian ? Lead compliance across personnel, facility … informationsecurity ? Oversee accreditation & facility clearance requirements ? Manage handling & protection of classified/protectively marked material ? Own SALs, audits, security reporting & compliance metrics ? Support IT & Cyber teams on secure system governance ? Support HR with vetting and security onboarding ? Deliver security briefings and awareness programmes ? Ensure NPSA-compliant physical security measures across sites & programmes ? Maintain More ❯
Defender | Global Trading Platform £60–70k base + 10% bonus Hybrid in Coventry with monthly travel to London Security certification support & career development built-in Join a growing InfoSec team at the heart of a global financial institution’s expansion. As an Analyst, you’ll work hands-on with data governance, security tooling, and access management — helping to … ability to interrogate data, and the confidence to advise IT teams on the practical steps that keep the business secure. What you’ll bring: 3+ years’ experience in an InfoSec, IT security, or analyst role Security certifications: Security+ and ideally Microsoft security certifications (e.g. SC-200/SC-400) Experience with security tools (Microsoft Defender, web … Involved in data loss prevention, labelling, and stakeholder engagement (including DPO) Practical incident response input : Advising IT on immediate steps during incidents, converting theory into quick, actionable responses Ongoing InfoSec operations : Metrics, monitoring, and security projects across applications and users Tech & tools you’ll use: Microsoft Purview – Data governance and policy enforcement Microsoft Defender – Endpoint & email protection CrowdStrike/ More ❯
Our client, a leading firm in the Defence & Security sector, is currently seeking an experienced Information Assurance Consultant to join their team for a contract role within the National Crime Agency based in London. This position is initially for one year, with the potential for an extension based on performance and project needs. Key Responsibilities: Implementing and maintaining … information assurance and cyber security strategies Providing expert advice on cloud security and IT cyber security practices Conducting risk assessments and developing mitigative measures Ensuring compliance with relevant security policies and standards Collaborating with internal and external stakeholders to enhance informationsecurity frameworks Reviewing and improving security documentation and procedures Regularly liaising … with the National Crime Agency to address security concerns Supporting the improvement of security cleared environments Job Requirements: Experience in IT cyber security and cloud security practices Strong understanding of informationsecurity principles and frameworks Security Clearance - SC minimum Familiarity with the Skills Framework for the Information Age (SFIA) levels 3/ More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
Experian Ltd
Learn more at experianplc.com. Internal Grade E Job Description As a Cyber Defence Analyst, you will join the Cyber Fusion Center, performing in-depth analysis, assessment, and response to security threats by following documented policies to meet Service Level Goals. The team provides global 24x7 security operations and monitoring for cybersecurity events affecting Experian. You will be a … the first line of defence in Experian's broader incident response and incident management departments, responsible for receiving and prioritizing cybersecurity alerts, including being the dedicated contact for potential security incidents reported by users (e.g., Experian employees). Depending on the results of assessment, this team is then responsible for investigating, containing, eradicating, and recovering from events falling in … risk events to dedicated incident response and management teams in the CFC. This role is critical in ensuring the handling of potential threats and plays a part in improving security operations. This is a home based role reporting to the Director of Security Operations for SecOps & Threat Detection. Please note that in this role, you will have an More ❯
Milan, Edinburgh and Madrid. With our focus on growth in the UK and Europe, now is the perfect time to join us on this high speed journey. Introducing the InformationSecurity Team at Trainline As Head of Governance, Risk & Compliance (GRC), you'll play a pivotal role in shaping and leading this transformation of our security function. … you will collaborate closely with cross functional teams including Legal, Engineering, and Procurement to embed risk management into daily operations and strategic initiatives. As a key member of the Security leadership team, your remit will extend beyond risk and compliance to include shaping the security and privacy strategy, enhancing supplier risk processes, and fostering a culture of security … leadership and strategic insight will be essential in navigating the evolving regulatory landscape and supporting Trainline's growth ambitions with robust yet pragmatic risk management. As the Head of InformationSecurity Risk and Compliance at Trainline, you will Redesign and embed a pragmatic, risk first GRC framework that integrates governance, risk, and compliance across the business. Assess current More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
different countries across EMEA with over 30,000 colleagues. About the role Reporting to Head of I&T GRC, Governance and Risk Lead will be responsible for driving information and cyber security awareness, delivering security awareness training including phishing and facilitation of cyber scenario desktop simulations across central and manufacturing site teams. You will review, manage and … where required prepare responses to internal and external customer enquiries in relation to information and cyber security arrangements. You will support IT, procurement, legal, data protection and digital security and business stakeholder in relation to supplier information and cyber security due diligence and requirements. As the successful candidate you will also lead risk-based party … security assurance, management, and continuous improvement activities. In addition, facilitate and coordinate IT risk management risk register, tools, process, reporting and review. You will take responsibility for managing a subset of aspects of ISO 27001 related documentation and control activities. As the I&T Governance and Risk Lead you will have the responsibility of aspects of the I&T More ❯
Overview Make The Connection. Vix Technology, a global leader in automatic fare collection, transit information, and transit analytics solutions, is seeking a highly skilled and experienced Field Engineer. With a presence in over 200 city and regional transport authorities worldwide, Vix has been at the forefront of transforming fare collection for more than 35 years. At Vix, we are … our overall success. We invite you to share your perspectives, cultural backgrounds, and innovative ideas; we look forward to your contributions. Join the Vix team as an experienced Cloud Security Engineer! This on-site position in Manchester involves collaborating with our Cloud Operations team and the Security team to maintain robust security protocols. You'll play a … crucial role in guiding our technical teams to meet security standards, successfully passing security audits, and safeguarding both company and customer data. As the first point of contact for security incidents, your expertise will be essential in keeping our systems secure. We regret that this position is only available for UK citizens/Residents with indefinite leave More ❯
InformationSecurity Architect Hybrid – Coventry 3 days per week Up to £70,000 + bonus + benefits Are you an experienced InformationSecurity Architect who enjoys shaping secure enterprise solutions and embedding security into design from day one? This is an opportunity to join a major UK CNI organisation at the heart of large-scale … digital transformation, working alongside enterprise architects and product teams to define and deliver security across critical systems. What you’ll be doing Lead on secure-by-design architecture, ensuring technology investments are built and maintained securely across multiple business areas. Act as Product Owner for a major cyber programme, defining and prioritising features, epics, and user stories aligned with … strategy and roadmaps. Develop and review security architectures and toolsets across cloud, infrastructure, and application domains (e.g. SIEM, IAM, PAM, DLP, endpoint protection). Provide security assurance and governance across projects, ensuring alignment with frameworks such as ISO 27001, NIST, GDPR, and PCI DSS. Collaborate with enterprise, technology, and business stakeholders to deliver practical, innovative, and cost-effective More ❯
range of benefits to support staff wellbeing. Your Future Starts Here PURPOSE OF JOB: We are seeking an experienced Governance, Risk & Compliance (GRC) Consultant to join our growing cyber security team. You will deliver high-quality GRC services to a diverse client base, help build in-house capability for core offerings, and support the integration of GRC with our … Assurance and DFIM service lines. With 3+ years’ experience in informationsecurity, data protection, risk management, enterprise IT, legal, or compliance roles, you will have a proven track record of delivering GRC consultancy across sectors. You will demonstrate strong knowledge of frameworks such as ISO, ISF, NIST CSF, NIS/NIS2, DORA, CIS, and Cyber Essentials, and the … highest ethical standards in all interactions with clients, colleagues, and partners. Manage workload effectively, balancing delivery commitments with learning and development goals. QUALIFICATIONS, EXPERIENCE, & SKILLS: Educational Requirements Degree in InformationSecurity, Computer Science, Risk Management, or a related field, or equivalent professional experience. - ESSENTIAL Professional Experience One or more of the following: ISO 27001 Lead Auditor or Lead More ❯
Snelshall West, Milton Keynes, Buckinghamshire, England, United Kingdom
DS Smith
About the role Here at DS Smith, a multi-national sustainable packaging provider, we are looking for a Security Assurance Analyst to join our growing Security Team. The mission of the I&T Digital Security organisation is to deliver an efficient and effective service that has scalability and flexibility to support the demands of a FTSE … business.Supporting Head of InformationSecurity Architecture and Assurance as well as working closely with key stakeholders including Head of Governance, Risk and Compliance, Digital Security, IT and business teams you will focus on core areas such as risk management and security due-diligence reviews ensuring compliance with legal, regulatory and relevant security policies and best … practices.In this position you will provide assurance and guidance that the security features, practices, procedures, and architecture of an information system accurately mediates and enforces the security policies.Visibility and the ability to build close working relationships with Information & Technology (I&T) team members, business stakeholders as well as external partners is essential. This will require some More ❯
InformationSecurity Consultant/Officer Hybrid working: 3 days per week required in the office in London. DGH Recruitment are currently recruiting on behalf of a leading global law firm who are looking for an InformationSecurity Consultant/Officer to join the team on a permanent basis. My client are looking for an individual that … has been an informationsecurity SME on technical refresh progr click apply for full job details More ❯
just to name a few! Job Description Your Career As a Senior Consultant in Unit 42 you will have the opportunity to work across a number of proactive cyber security domains including Cloud Security, Security Operations, Cyber Risk Management and Artificial Intelligence in cyber security. We are seeking an individual who is passionate about cyber security … consulting outcomes for clients, as they work to address the challenges associated with today’s cyber threat landscape. Your Impact SOC Advisory: 4+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management and demonstrated success with serving large, multinational organisations in designing and implementing an organisation’s security operations program, organisational structures, and capabilities … Possess a deep technical knowledge in Security Incident and Event Management (SIEM) platforms, Security Orchestration and Response (SOAR) technologies, Endpoint Protection and Response/Next Gen Protection and Response (EDR/XDR) tools, Next GenFirewalls, Threat Intelligence and Hunting platforms Defensive Security Skills (desired) : Experience in security operations design, engineering and/or analysis and investigations More ❯
Senior InformationSecurity Analyst - Watford £28.00 ph Contract Full time Overall purpose We are seeking an experienced Senior InformationSecurity Analyst to provide immediate support to the InformationSecurity team click apply for full job details More ❯
The work we do matters We protect and defend our customers and communities by providing the most comprehensive range of cyber security professional services in the region. With more than 1,400 team members across Australia, New Zealand, the UK and US, we are a leading force in cyber security, offering services from strategy, GRC, managed security services, cloud security, digital forensics and cyber education. If you’re ready to work with teammates that get you, a leader that supports you and customers that need you, then you’re ready for CyberCX. How you will make an impact The Senior Consultant will be responsible for engaging with customers to solve their most challenging cyber security problems, protect their future, and empower them to thrive in an uncertain world. This role requires an experienced cyber security professional capable of leading client meetings and producing high-quality deliverables with minimal supervision while also using their business acumen to identify new opportunities and support business development activities including proposals and presentations. ISO specialism is required. Day More ❯
The work we do matters We protect and defend our customers and communities by providing the most comprehensive range of cyber security professional services in the region. With more than 1,400 team members across Australia, New Zealand, the UK and US, we are a leading force in cyber security, offering services from strategy, GRC, managed security services, cloud security, digital forensics and cyber education. If you’re ready to work with teammates that get you, a leader that supports you and customers that need you, then you’re ready for CyberCX. How you will make an impact The Senior Consultant will be responsible for engaging with customers to solve their most challenging cyber security problems, protect their future, and empower them to thrive in an uncertain world. This role requires an experienced cyber security professional capable of leading client meetings and producing high-quality deliverables with minimal supervision while also using their business acumen to identify new opportunities and support business development activities including proposals and presentations. ISO specialism is required. Day More ❯
InformationSecurity Consultant - Virtual CISO (vCISO) 💷 Up to £60,000 | 🌍 Hybrid My client is seeking an experienced cyber security professional to step into an InformationSecurity Officer role, acting as a trusted advisor to a diverse portfolio of organisations. This is an opportunity to directly influence and shape cyber security strategies at board level … while embedding yourself as a valued extension of your clients’ security teams. Key Responsibilities Serve as a strategic security partner, helping clients to define, develop, and mature their cyber security roadmap. Take ownership of internal Security Improvement Plans, ensuring risks are reduced and resilience is increased. Lead governance and oversight activities, including risk reviews, board-level … reporting, and mentoring client teams. Carry out security reviews across cloud, hybrid, and on-premises environments, identifying vulnerabilities and improvement areas. Provide guidance on compliance and frameworks such as ISO 27001, Cyber Assessment Framework (CAF), and Cyber Essentials. Contribute to incident readiness and response as part of the Cyber Security Incident Response Team (CSIRT). Actively contribute to More ❯
Portsmouth, England, United Kingdom Hybrid / WFH Options
ProCheckUp (PCU)
Senior Technical Consultant UK based Company Description We are looking for an experienced UK based Senior Security Consultant to strengthen the consulting team at this well established security consultancy. Role Description This is a full-time, on-site role based in Portsmouth and potential work-from home for a Cyber Security Consultant. The consultant will conduct vulnerability … assessments, application security reviews, and network security analyses. Responsibilities include evaluating risks, providing actionable security recommendations, and assisting clients with compliance to established standards like ISO 27001 and PCI DSS. The role will involve working closely with clients across sectors to strengthen their overall security posture through proactive planning and solutions. Qualifications Experience in Cybersecurity, including … identifying and addressing security threats and challenges Knowledge of Application Security, with the ability to identify vulnerabilities in web and mobile applications Skills in Network Security, including securing and evaluating infrastructure and cloud environments Expertise in performing Vulnerability Assessments and delivering actionable insights Background in InformationSecurity, with experience in regulatory compliance (e.g., PCI DSS More ❯
We are the Intelligent Internet Platform. We connect People, Places and Things anywhere, managing Internet Performance better than anyone else, while providing One Global Experience, giving Visibility, Control and Security through expereoOne. Expereo believes in the power of Internet connectivity. As the world's largest provider of managed internet, SD-WAN/SASE, and Cloud connectivity solutions, we power … individuals who make Expereo a dynamic, effective, multicultural, and equitable environment. About the role Reports to: Chief Digital Officer (with quarterly Audit/Risk committee updates) The Enterprise & Network Security Director (ENS) is responsible for developing and implementing a holistic security strategy of the Expereo Enterprise Organization and the Network Products and Services delivered to its customers. This … includes corporate IT, cloud application devops, compliance frameworks, and the global network installed base that underpins our services. The ENS Director leads teams across Enterprise IT security, Cloud Security, Network/ISP Security, Compliance, and Security Operations - ensuring resilience, trust, and regulatory alignment across the organization and customer offerings. This role also involves managing a team More ❯
. Do you have hands-on ISO-27001 and security tool We are expanding our InformationSecurity team presence into the European Union. This is an opportunity to become a key member of our team, supporting our commercial business lines. With a large part of the Intellectual Property (IP) technology team residing in Farringdon, this will strengthen … the collaboration between InformationSecurity and Technology, especially as IP focuses on modernization of their AI products with new features and functions to enrich the users' experience. About the Role: The Senior Security Engineer will conduct research, design, and engineering tasks for a dedicated project in the European Union. This role requires the ability to identify, investigate … and resolve ISO-27001 security controls, along with hands-on expertise in Endpoint Detection & Response and Vulnerability and Compliance Management tools. Responsibilities: Security Requirements & Support: Define and document security requirements for new development efforts. Collaboration & Other Duties: Perform other duties as required. Requirements: Experience in informationsecurity or security operations, typically demonstrated over several More ❯
Greater London, England, United Kingdom Hybrid / WFH Options
The Connectr Group
maternity cover and paternity leave • Wellbeing allowance including activity rewards from Yulife • Christmas and Summer team parties To • Volunteer days and ways to give back to our communities chat! InformationSecurity: Ensure compliance of your team to all rules, policies, and regulations at Connectr including HR policies, D&I best practice and informationsecurity and data … privacy guidelines. All positions at Connectr hold responsibility for being up to date and in adherence to informationsecurity training, guidance and policies provided by Connectr on informationsecurity, including GDPR. Connectr’s commitment: Connectr is committed to creating an inclusive environment and is proud to be an equal opportunity employer. We believe that diverse companies More ❯
Chippenham, England, United Kingdom Hybrid / WFH Options
Logiq
excellent benefits package. Logiq is a fast-growing Technology Company, providing cutting-edge solutions to high-risk clients across Private and Public Sector. Due to rapid growth in our Security Capability , we are looking for experienced Security Consultants to join our team. What is Cyber Risk Management? Cyber risk management ensures that organisations can anticipate, withstand, and recover … from cyber incidents, aligning security efforts with business objectives, regulatory requirements, and industry best practices. It involves applying risk-based decision-making to ensure security measures are proportionate to the threats faced, balancing protection, operational effectiveness, and compliance with the organisations need and context. As leading players in MOD’s cyber security transformation to Secure by Design … SbD), we are looking for team members and leaders who share our vision that cyber risk management is driven by business requirements and a holistic view of security that can guide clients to secure solutions that support their business objectives. Why Join Us? Work on impactful projects that drive efficiency and innovation across diverse sectors. Access professional development pathways More ❯