Senior Application Security Engineer Cambridgeshire Based - 1-2 days a week onsite We are looking for an experienced Senior Application Security Engineer to join our client's expanding Cyber Security team. This is an incredible opportunity to craft a world-class Application Security function , playing a critical role in embedding security within all stages of … the development lifecycle. What you'll be doing: Becoming a key contributor to the Cyber team by focusing on application security architecture and implementing a robust risk management programme. Collaborating closely with different teams to devise plans, perform threat modelling, adopt architecture best practices, drive secure development lifecycles, and manage risk remediation. Providing expertise in security best practices … and compliance while undertaking hands-on security testing. Identifying application security risks and supporting requirements for new projects and system developments. Representing the Cyber team during review sprints to ensure application security is prioritised before deployment. Partnering with architecture and development teams to review application design and code for security vulnerabilities. Establishing and promoting a threat More ❯
Royal Devon University Healthcare NHS Foundation Trust
a more exciting time to join the Royal Devon, as youll help to shape our services as we continue along our integration journey. Job description Job responsibilities For more information on the Job Description and Responsibilities please click the link below. More detail about the role Under the operational management of the Head of Digital Infrastructure, the role provides … specialist support and analysis of the Trusts Digital security systems, network technical security requirements and security incident events; to maintain and develop the highest level of IT security, ensuring that the Trusts digital infrastructure and applications comply with best practice, along with technical, health records, cyber, and physical security standards. The role is accountable to … the Trusts Cyber Security Lead providing assurance that they are operating to industry standards, meeting cyber ethics and codes of conducts and NHS national frameworks. This role will be key in supporting the Digital Transformation at the Trust by contributing to both the Security strategy as well as the wider Digital programmes over the coming years. The Cyber More ❯
their greatest potential. Title And Summary Lead React Developer Overview Mastercard Developers ) is the single platform for Mastercard partners to access a diverse range of payment, data, loyalty, and security APIs. The team is responsible for delivering an experience that ensures developers can quickly find the right API, assess its technical capabilities and integrate it into new and innovative … working in an Agile environment with a global team that makes frequent production releases. Background in Dev/Ops a distinct advantage. Background in automation a distinct advantage. Corporate Security Responsibility All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working … for, or on behalf of, Mastercard is responsible for informationsecurity and must: Abide by Mastercard's security policies and practices; Ensure the confidentiality and integrity of the information being accessed; Report any suspected informationsecurity violation or breach, and Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines. More ❯
Teqniq is searching for a Senior ISP IT Security to work in the public sector. 37 hours per week. 3 months contract. 09:00-17:00 Job Description: Strategic Planning and Governance Develop, review, and maintain the IT Security Strategy in line with organisational goals and regulatory obligations. Lead the creation and enforcement of cybersecurity governance frameworks. Align … security objectives with enterprise architecture and digital strategy. Participate in board-level or senior management discussions around cyber risk. Identify and manage strategic security risks (technical, legal, reputational, financial). Evaluate and advise on emerging technologies (e.g. AI, RPA, cloud, hybrid infrastructure) from a security perspective. Policy, Procedure, and Guidance Oversight Review and update security policies … remote access, incident response, etc.). Ensure alignment with frameworks such as NCSC guidance, ISO 27001, NIST, Cyber Essentials, and GDPR. Develop and communicate clear roles and responsibilities for informationsecurity across departments. Support Information Governance and Data Protection with policy harmonisation and compliance efforts. Technical Review and Oversight Undertake technical reviews of: New and existing systems More ❯
Role Overview Our client is seeking an experienced, hands on Senior InformationSecurity Analyst to support both their technical security work and governance, risk and compliance (GRC). You will assess risks, review supplier and project security, respond to security questionnaires and tenders, support incident investigations, and help maintain compliance with Cyber Essentials Plus, ISO More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Colt Technology Services
the enterprise as well as being the main interface between the Colt business units and the cybersecurity groups. You will be the subject matter expert responsible for coordinating cyber security incidents across the enterprise. Job description: You will play a key role within the SOC to manage incidents: Coordinate response efforts to cyber security incidents caused by internal … Perform post incident analysis, identifying lessons learned throughout Fidelity with applicable teams for tactical and strategic remediation. Required profile: Bachelors degree (or foreign education equivalent) in Computer Science, Engineering, Information Technology, Information Systems, Mathematics, Physics, Business Administration, or a closely related field Solid understanding of common threats, penetration/intrusion techniques and attack vectors. Experienced in handling cyber … security incidents as well as other business or IT recovery incidents. An ability to explain sophisticated topics to a varied audience of people who work in both IT and non-IT roles. Proficient with commonly used incident response tools, logging, and SIEM technologies In-depth knowledge of and experience in security concepts such as cyber attacks and techniques More ❯
Reading, Berkshire, England, United Kingdom Hybrid / WFH Options
Certain Advantage
Security Consultant – GRC (Governance, Risk & Compliance) Location: Reading (Remote role with once or twice per month on-site) Rate: Negotiable (DOE) Contract: Until May 2026An excellent opportunity has arisen for an experienced Security Consultant (GRC) to join a global technology organisation that’s expanding its EMEA cyber security consulting practice and investing heavily in a new Centre … of Excellence.This is a hands-on consulting position delivering Governance, Risk and Compliance (GRC) projects for major enterprise clients — including risk management, cloud security governance, and compliance frameworks such as ISO27001, NIST CSF, CIS Top 18 and COBIT .You’ll play a key role in engaging with senior stakeholders, assessing cyber maturity, and driving best-practice improvements across a … of industries. Key Responsibilities Deliver Cyber GRC consulting engagements end-to-end — from scoping and planning through to delivery and close-out. Provide advisory services covering areas such as InformationSecurity Governance, Risk Management, Compliance, Business Continuity, and Cloud Security. Translate complex security and compliance requirements into actionable business solutions. Build trusted relationships with clients at both More ❯
london (harrow), south east england, united kingdom
Reflection AI
states. Our team of AI researchers and company builders come from DeepMind, OpenAI, Google Brain, Meta, Character.AI, Anthropic and beyond. What You'll Do Develop and maintain company-wide informationsecurity policies and frameworks (US: SOC 2, NIST, GDPR; UK: ISO 27001, Cyber Essentials, GDPR) Oversee IT operations across our three offices (London, New York, San Francisco), ensuring … systems, devices, and networks remain secure and reliable Lead incident response, risk assessments, and security awareness initiatives Manage vendor relationships and evaluate security tools Partner with leadership to align IT and security practices with company goals Build scalable processes that support a fast-growing, global team What We're Looking For 10+ years of IT or informationsecurity experience, including leadership in high-growth or tech-driven environments Strong knowledge of network, cloud, and endpoint security (AWS/GCP/Azure) Familiarity with key compliance frameworks (US: SOC 2, NIST; UK: ISO 27001, Cyber Essentials) Experience implementing MDM, SSO, and IAM systems Excellent communication skills and the ability to translate technical risk into practical More ❯
quality incident closure, aiming for first-time fixes where possible and escalation to next level where required Ensure client satisfaction with timely communications and updates Ensure full and correct information is collected and entered into incident record Ensure that IT solutions are relevant to the business need and developed to meet end user requirements Improve own skills and knowledge … for new incidents and requests, ensuring all calls are kept up to date Understand the responsibilities associated with working in a regulated environment, and adhering to SRA obligations Understand informationsecurity and data protection initiatives and regulations Understand and demonstrate a full understanding of informationsecurity and data security policies, best practices, and implications Training … use Microsoft Azure, Microsoft 365, Windows 10, AWS, Linux, PowerShell. 90% of QA apprentices secure permanent employment after completing: this is 20% higher than the national average. Apprenticeship Standard Information communications technician (level 3) Training Provider QA LIMITED Working Week Your working pattern will be on a rota basis covering Monday to Friday 7am – 7pm based in our Bristol More ❯
quality incident closure, aiming for first-time fixes where possible and escalation to next level where required Ensure client satisfaction with timely communications and updates Ensure full and correct information is collected and entered into incident record Ensure that IT solutions are relevant to the business need and developed to meet end user requirements Improve own skills and knowledge … for new incidents and requests, ensuring all calls are kept up to date Understand the responsibilities associated with working in a regulated environment, and adhering to SRA obligations Understand informationsecurity and data protection initiatives and regulations Understand and demonstrate a full understanding of informationsecurity and data security policies, best practices, and implications Desirable … qualifications, at the time of your application you must be able to provide an official document that states how your international qualifications compare to the UK qualifications. For more information please visit the UK ENIC website. Working hours: Your working pattern will be on a rota basis covering Monday to Friday 7am – 7pm based in our Bristol office, with More ❯
Newcastle Upon Tyne, Tyne and Wear, England, United Kingdom
Reed Talent Solutions
Do you have strong communication skills? Are you confident providing clear, precise advice to stakeholders? Then consider the role of Security & Incident Management Executive at Reed in Partnership! You must be based in the NorthEast for this position. This role requires you to travel, therefore you must have a valid UK driving license and access to your own vehicle … What is the role about? The Security & Incident Management Executive, reporting to the Deputy Head of IT & Security, support with all aspects of IT and security across the contract, comprising physical & informationsecurity, including: Act as a Security & Incident Management Executive (SIME) supporting the day-to-day SIM Team operations including Helpdesk duties, fraud … packs and supporting the audit and visit schedule. Act as helpdesk support to frontline test centre staff to resolve and monitor security & operational incidents. Assisting with administrating the fraud management process, assisting with managing fraud trackers, and reporting, remedial training and actions. Creating fraud incident packs & work with frontline staff to gather evidence to support fraud pack assembly, processing More ❯
Information Cyber Security Engineer (ISO 27001, NIST, Cyber Essentials Plus) Cyber Security Engineer to join a growing team, a leading global organisation. In this hands-on role, you’ll be at the heart of the company’s security operations driving innovation, leading key initiatives, and shaping the future of their cybersecurity landscape. Working closely with infrastructure … application, and operations teams, you’ll embed security best practices into every layer of IT. From managing cutting-edge security tools to strengthening defences across on-premises, cloud, and SaaS environments, you’ll play a vital role in safeguarding critical systems and data. The environment is - Mimecast, Antivirus/EDR, CrowdStrike, Security Awareness Platform, KnowBe4, O365, Web … Proxy/proxies, Phishing, Policies, AD/Active Directory. However the client is happy to welcome candidates with other tech backgrounds. You’ll lead and support major IT security projects, ensuring secure, efficient, and timely delivery. You’ll take ownership of incident response activities, continuously refining processes to stay ahead of emerging threats. As a trusted advisor, you’ll More ❯
We are seeking a Cyber Security Risk Engineer to join a leading global financial firm. This role is ideal for someone with deep technical expertise across enterprise environments and the ability to bridge conversations between engineers, stakeholders, and risk leaders. Key Responsibilities Provide expert guidance on secure, resilient system and cloud architectures. Collaborate with compliance, legal, IT, business stakeholders … and external clients to align security with business goals and regulatory needs. Act as a trusted technical advisor-communicating risks clearly to both technical and non-technical audiences. Conduct detailed risk assessments across applications, infrastructure, and business processes. Document risks and design compensating controls where standard solutions are not feasible. Monitor control effectiveness and propose enhancements to reduce residual … risk. Stay current with emerging threats, technologies, regulatory changes, and best practices. Support incident response efforts and post-incident risk evaluations. Required Skills & Experience Bachelor's degree in Cyber Security, Information Technology, Computer Science, or similar. 5+ years of experience in IT or InformationSecurity within enterprise environments. Strong technical understanding of: Operating Systems: Windows, Linux More ❯
Methods is recruiting an Onboarding and Security/Vetting Officer to join our team on a permanent basis in our London office with remote working as feasible. Methods Business and Digital Technology Limited Since our establishment in 1990, Methods has partnered with a range of central government departments and agencies to transform the way the public sector operates in … solve problems. At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them. Methods is currently recruiting for an Onboarding and Security Officer to join our team on a permanent basis working on a hybrid basis between our London office and remote working. The Onboarding and Security Officer will be … expected to work as part of the Group Compliance and Security Team. They will support and administer Methods and its associated businesses onboarding and offboarding off all permanent staff, contractors, and associates. The ideal candidate will have demonstratable experience of security vetting for UK HMG along with general business administration. In addition they should also have excellent interpersonal More ❯
Cyber Security Analyst Salary: Up to £55,000 + £5,600 car allowance + benefits Location: UK (Remote with some travel to UK sites - must have UK Driver's licence) Join a growing organisation in the engineering sector in a newly created role that will play a key role as the company continues to grow. You will contribute to … a dynamic, fast-paced environment, protecting critical systems and data, working on a mix of BAU security operations. The Role We're looking for a Cyber Security Analyst or Engineer with proficiency in a range of security skills including SentinelOne, Mimecast and MS Sentinel. You'll be working closely with the GISO while supporting a collection of … subsidiaries with day-to-day live estate monitoring. This role is perfect for someone with experience of working as part of a small security team, taking responsibility for security initiatives across the organisation. Cyber Security Analyst/Engineer Responsibilities: With day-to-day reporting to the Group InformationSecurity Officer (GISO), you will combine operational More ❯
The Policy Support Lead will be responsible for developing, implementing, and maintaining security policies, standards, and procedures to ensure the protection of our information assets. This role requires a good understanding of security frameworks and regulatory requirements. In addition, this role requires you to have experience of Information Security. The role will report directly to the … Head of Governance, Risk and Compliance, with whom you will work to deliver the goals of the company to have a fit-for-purpose security standards framework. This is a role that requires the individual to be able to work independently, finds fulfilment in a challenging and fast-paced environment and take accountability to meet and drive the needs … of the programme. What you'll do as a Policy Support Lead Security Standards Management: Develop and maintain comprehensive security policies, standards and procedures across the organisation. Align all standards with applicable regulatory requirements and frameworks (e.g., ISO 27001, GDPR, NIS-R). Review and update standards regularly in response to emerging threats and regulatory changes. Governance & Compliance More ❯
Overview The Interim CISO will provide immediate, strategic and operational security leadership on a fixed-term basis. The primary mandate is to conduct a rapid, high-impact review and uplift of critical security governance functions, focusing specifically on asset management, third-party assurance, and incident preparedness. Key Responsibilities and Deliverables: The successful candidate will be a hands-on … leader responsible for the following key reviews: 1. Group Information Asset Register (IAR) Review Audit and Validate the current IAR structure, completeness, and accuracy of Confidentiality, Integrity, and Availability (CIA) classifications. Establish a repeatable, documented process for the continuous identification, registration, and risk-linkage of all high-value information assets. 2. 3rd Party Assurance Process Uplift Assess and … Refine the entire Third-Party Risk Management (TPRM) lifecycle, identifying gaps in vendor security due diligence and ongoing monitoring. Define a tiered, risk-based methodology for assurance reviews, ensuring the rigor of the review matches the vendor's inherent risk to the organization. 3. Incident Response and Recovery Plan (IRRP) Validation Critically Review the current IRRP for clarity, compliance More ❯
Warrington, Cheshire, United Kingdom, Great Sankey Hybrid / WFH Options
Talos
Security, Governance, Risk and Compliance Manager- £(phone number removed) + Bens – Warrington/Hybrid Over the past ten years, Talos360 has firmly established itself as a market leader in talent software solutions and online recruitment media with our innovations in the HR software space, Talos ATS & Talos Engage solving todays talent challenges. 2024 was a year where our business … and are growing quickly. We are a SaaS technology business, with massive growth plans and investment. We have an exciting new opportunity for a forward thinking, effective and passionate Security, Governance, Risk and Compliance Manager to join our team. Our new Security, Governance, Risk and Compliance Manager would be responsible for ensuring effective frameworks, policies, governance, and risk … the review or risk, security and governance frameworks. - Comfortable building relationships with stakeholders across multiple teams and levels within the business, defining internal policies and procedures. - Understanding of Infosec best practice and cybersecurity essentials and an understanding of vulnerability operations such as scanning, and remediation - Experience working with relevant regulations, standards, and requirements (ISO27001, GDPR, DSP Toolkit and Cyber More ❯
application support. Process-Driven Leader: Champions continuous improvement and operational excellence across global sites. Collaborative Influencer: Partner with executive leadership and global teams to align technology with business strategy. Security-Focused: Drives local cybersecurity efforts and ensures compliance with corporate standards. What you will need to succeed: Development & Leadership Experience of building and leading a new IT function from … and deployment of a new SAP ERP systems across a business, ideally within the engineering or manufacturing sector. Have experience defining cloud or on-prem solutions across global businesses. InformationSecurity Drive local security initiatives and support global directives and ensure compliance with Crane's IT policies and industry standards. Experience of dealing with government contracts and … informationsecurity processes on these contracts. Industry Background Ideally, you will have worked in the engineering or manufacturing sectors, but any heavily regulated industry will be considered. Extensive IT Leadership You will need to demonstrate a proven track record in leading enterprise IT functions and possess strong budget management and strategic planning capabilities. What you will get in More ❯
Groby, Leicester, Leicestershire, England, United Kingdom
Druck
application support. Process-Driven Leader: Champions continuous improvement and operational excellence across global sites. Collaborative Influencer: Partner with executive leadership and global teams to align technology with business strategy. Security-Focused: Drives local cybersecurity efforts and ensures compliance with corporate standards. What you will need to succeed: Development & Leadership Experience of building and leading a new IT function from … and deployment of a new SAP ERP systems across a business, ideally within the engineering or manufacturing sector. Have experience defining cloud or on-prem solutions across global businesses. InformationSecurity Drive local security initiatives and support global directives and ensure compliance with Crane’s IT policies and industry standards. Experience of dealing with government contracts and … informationsecurity processes on these contracts. Industry Background Ideally, you will have worked in the engineering or manufacturing sectors, but any heavily regulated industry will be considered. Extensive IT Leadership You will need to demonstrate a proven track record in leading enterprise IT functions and possess strong budget management and strategic planning capabilities. What you will get in More ❯
The role will involve working in their global security team and will be responsible of helping develop effective security controls. Key responsibilities will include: Working closely with the in-house security operations team to drive world class threat detection Building effective detection use cases within the chosen SIEM while minimizing false positives. Utilize online resources for researching … SOC’s abilities to detect cyber-attacks. Utilize telemetry available throughout the environment to build and improve detection capabilities. Testing of existing and new detection use cases Participation in security incidents/investigations Key skills needed for the role: Experience of SIEM administration – Splunk or Exabeam preferred but other SIEM tools considered Broad technical informationsecurity knowledge … including networking, malware analysis, incident response and Knowledge of informationsecurity protection, detection and authentication systems Understanding of tools, techniques and procedures that attackers use to compromise organizations, ideally from direct experience. Basic python\ AWS experience Please send your CV for immediate review More ❯
The role will involve working in their global security team and will be responsible of helping develop effective security controls. Key responsibilities will include: Working closely with the in-house security operations team to drive world class threat detection Building effective detection use cases within the chosen SIEM while minimizing false positives. Utilize online resources for researching … SOC’s abilities to detect cyber-attacks. Utilize telemetry available throughout the environment to build and improve detection capabilities. Testing of existing and new detection use cases Participation in security incidents/investigations Key skills needed for the role: Experience of SIEM administration – Splunk or Exabeam preferred but other SIEM tools considered Broad technical informationsecurity knowledge … including networking, malware analysis, incident response and Knowledge of informationsecurity protection, detection and authentication systems Understanding of tools, techniques and procedures that attackers use to compromise organizations, ideally from direct experience. Basic python\ AWS experience Please send your CV for immediate review More ❯
Compliance Specialist Manchester (Hybrid/Flexible) Salary up to £65,000 Join a leading global technology organisation as a GRC Specialist , supporting governance, risk, and compliance across IT and informationsecurity operations. The Role You’ll help ensure compliance with key regulations (GDPR, NIS, ISO 27001), manage IT security risks, and support governance frameworks. This includes assisting … with audits, policy updates, incident response, and vendor assessments — all while promoting a strong culture of security awareness. Essential Skills & Experience Understanding of key regulatory frameworks including GDPR, NIS, and ISO 27001. Familiarity with PCI or other security standards. Experience with risk management processes and compliance monitoring. Experience supporting internal/external audits or compliance reviews. Strong attention … to detail with excellent analytical and documentation skills. Technical understanding of informationsecurity and governance frameworks. Desirable: AWS experience and/or certification. Degree in Computer Science, IT, or a related discipline. Knowledge of penetration testing tools (e.g. Kali Linux), VPNs, and network security principles What’s in It for You Private healthcare, pension & income protection Life More ❯
headquartered in the UK and FCA-regulated. The Role Goji is looking for a hands-on Head of IT to build and nurture our IT function, ensuring seamless infrastructure, security, and user support. This role provides an exciting opportunity to shape IT operations with a people-first approach, designing systems, processes, and policies that support our teams in doing … The Head of IT will report to the CTO and work closely with key stakeholders across the company to create and deliver an IT strategy that balances operational efficiency, security, and a positive employee experience. We are looking for someone who is collaborative, inclusive, and passionate about enabling teams through technology. How you'll contribute Develop and deliver a … long-term growth. Lead and uplift IT operations and support functions, ensuring a seamless and reliable experience for all teams across the organisation. Work in close partnership with the InformationSecurity Officer (ISO) to continuously evolve our InformationSecurity Management System (ISMS), balancing strong protection with ease of adoption. Provide efficient, empathetic IT support across hardware More ❯
Chief InformationSecurity Officer (CISO) - Critical Infrastructure We are partnered with a world-leading IT company that underpins critical UK infrastructure (including the NHS). They are a mission-driven entity that protects the nation’s digital foundation from state-level cyberattacks. Up to £130k + 20% Bonus | Oxford (1-2 days a week) | Permanent You'll Need … networking, and threat analytics. The ability to influence and present at the Board/Executive level. Lead the transformation to a "world-class software organisation" by embedding DevSecOps and "security as code." Ensure compliance with ISO 27001, Cyber Essentials, and PSN CoC. Why join? . This organisation is a Public Benefit company committed to investing millions into social good. More ❯