happy business? We are an innovative, agile, and continuously growing modern tech company on a path to improving the work lives of millions around the world. We develop workforce management solutions - software that makes scheduling and time reporting more smooth and more flexible for almost a million users worldwide! We value passion, quality, innovation, trust, and collaboration . You … establishing and maintaining the enterprise vision , strategy , and program to ensure information assets and technologies are adequately protected. The role is broken into three key areas of responsibility: Information security IT, infrastructure and networks Internal data and reporting As CIO you will be responsible for developing integrated strategies and programs of work covering all three areas listed above delivering … maximum value to the business, as well as acting as a chief information security officer (CISO). The CIO role directs staff in developing, implementing, and maintaining processes across the business for IT procurement, deployment and usage within Quinyx. This role also includes the development and deployment of internal data strategies and assets that can be used by the More ❯
Cheltenham, Gloucestershire, United Kingdom Hybrid / WFH Options
Spirax-Sarco Engineering
Benefits: 27 days holiday plus Wellbeing day,Private Medical Insurance, Bonus scheme, Sharescheme, Enhanced pension plan,Life assurance, Discount scheme. Role Overview: Join a dynamic, international team of Information Security and IT professionals at Spirax Group plc as a Group IT Assurance Manager . Reporting to the Group IT GRC Manager and leading a small team, you will play … Group. Acting as a key ambassador for IT assurance and controls, sharing best practices and ensuring delivery of actions. Supporting the maintenance and development of the Group's Information SecurityManagement System (ISMS). Leading compliance assessments and maintaining a central repository of security and compliance documentation. Coaching team members and colleagues on IT General Controls and … assurance practices. Your previous experience is likely to include . Proven experience leading IT assurance programmes. Substantial experience in security assessments and compliance oversight. Familiarity with ISMS and frameworks such as ISO 27001, NIST CSF, CIS Controls, or SCF. Understanding of cloud security, third-party risk, and regulatory standards (e.g., GDPR, UK DPA2018). Experience using GRC tools More ❯
Havant, Hampshire, United Kingdom Hybrid / WFH Options
Reed Technology
Cyber Security Specialist Location: Havant Job Type: Full-time, Hybrid (3-4 days per week), 12-month FTC (with likely extension to permanent) Salary: 50 - 53K plus benefits We are seeking a Cyber Security Specialist to lead the implementation of a new Information SecurityManagement System (ISMS) and ensure compliance with security standards. This role … is crucial in driving security improvements, managing risks, and maintaining regulatory compliance within a dynamic IT environment of circa 500 IT users. Key Accountabilities: * Lead the implementation of a new ISMS, ensuring alignment with industry security standards. * Develop and maintain cyber security policies, procedures, and risk management frameworks. * Manage compliance with cyber security regulations, standards … and frameworks (ISO27001, CAF/eCAF, Cyber Essentials Plus). * Implement and manage security monitoring tools to detect and respond to security events. * Identify and assess security risks and vulnerabilities, developing mitigation strategies. * Support regular audits and assessments to ensure adherence to security policies. * Provide reporting on security incidents, compliance status, and risk assessments. * Collaborate More ❯
Havant, Hampshire, South East, United Kingdom Hybrid / WFH Options
Reed Technology
Cyber Security Specialist Location: Havant Job Type: Full-time, Hybrid (3-4 days per week), 12-month FTC (with likely extension to permanent) Salary: 50 - 53K plus benefits We are seeking a Cyber Security Specialist to lead the implementation of a new Information SecurityManagement System (ISMS) and ensure compliance with security standards. This role … is crucial in driving security improvements, managing risks, and maintaining regulatory compliance within a dynamic IT environment of circa 500 IT users. Key Accountabilities: * Lead the implementation of a new ISMS, ensuring alignment with industry security standards. * Develop and maintain cyber security policies, procedures, and risk management frameworks. * Manage compliance with cyber security regulations, standards … and frameworks (ISO27001, CAF/eCAF, Cyber Essentials Plus). * Implement and manage security monitoring tools to detect and respond to security events. * Identify and assess security risks and vulnerabilities, developing mitigation strategies. * Support regular audits and assessments to ensure adherence to security policies. * Provide reporting on security incidents, compliance status, and risk assessments. * Collaborate More ❯
Chesterfield, Derbyshire, East Midlands, United Kingdom Hybrid / WFH Options
Hays
IT Security & Compliance Lead Chesterfield £50,000 to £55,000+ Excellent Benefits Your new company Hays Technology are recruiting for an Information Security & Compliance Lead to join a large public sector organisation based in the Chesterfield area. You will be reporting to the Head of Digital, Data & Technology. This is a new role to establish and make your … own. Your new role In your new role, you will be responsible for ensuring the security and protection of the organisation's information systems, networks, and data, whilst playing a critical role in developing and implementing information security strategies, policies, and procedures to safeguard the organisation's digital assets and mitigating potential risks. You will oversee information security, compliance, and risk management practices based on industry-accepted information security and risk management frameworks, whilst establishing and maintaining an incident response plan, including incident detection, response, investigation, and resolution, to minimise the impact of security incidents. What you'll need to succeed Demonstrable experience of implementing and maintaining information security frameworks e.g. ISO27001 More ❯
everybody for who they are and what they bring to the table, supporting one another as we continue to deliver for our customers. LI-KS1 The role of Cyber Security Consultant sits within the Cyber Security team in Three UK, which is responsible for providing subject matter expertise and guidance to business units across Three's Network and … policy and standards. In this role you will have a broad and challenging remit, you will therefore need to be flexible and agile in your approach, switching between different security disciplines within the team as necessary. You will be engaging in the delivery of multiple business initiatives by introducing baseline and enhanced security requirements and supporting their implementation … through guidance and advice. You will also be recommending security solutions and then providing design input and technical approvals, assurances, and governance of deliveries that the project carries out with our colleagues and partners. Within the Security team itself you will be expected to collaborate with the wider team and security colleagues providing technical support and guidance More ❯
Luton, Bedfordshire, United Kingdom Hybrid / WFH Options
Matchtech
Location: Luton (Hybrid working - est 1-2 days per week onsite) Duration: 12 month initial contract Rate: 91ph UMB (Inside IR35) Job Title: Security Engineer - Defence & Government Systems Overview: A leading defence technology company is seeking a skilled Security Engineer to develop and manage product security for high-integrity systems. You will oversee security throughout the … product lifecycle-from concept to maintenance-ensuring alignment with customer and regulatory requirements. Key Responsibilities: Lead the definition, implementation, and governance of product security measures across the entire system lifecycle. Develop SecurityManagement Plans, risk assessments, and mitigation strategies. Define and review security requirements for product teams. Support system accreditation, liaising with security accreditors and … assurance teams. Prepare security documentation including Protection Profiles, Security Targets, and TEMPEST Control Plans. Assist with platform lockdown, penetration testing, and vulnerability management. Lead incident response efforts and support product security training. Skills & Experience: Background in securing defence or commercial systems. Degree in engineering, computer science, or related field. Certified security professional (e.g. CISSP, NCSC Certified More ❯
Newcastle Upon Tyne, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
Job Description: Job Description Leonardo UK is seeking a proven, experienced Principal Consultant to join the Cyber & Security Solutions Division team. This role is focused on supporting the delivery of security aspects to the company's core products and to external stakeholders. This requires co-ordination with engineering teams and delivery of all facets of cyber and information … security related to the delivery across the engineering lifecycle - from requirements all the way through to in-service support and maintenance. This is an exciting opportunity to be part of significant programmes, during which you will ensure that products meet the highest standards, in accordance with customer's requirements and risk appetite. You will be supported in this role … and with our customers. Talk to us to find out more. Key Responsibility Areas Leading a team or operating independently to meet all aspects of the cyber and information security delivery across an engineering lifecycle. Interpreting customer requirements into actionable securitymanagement plans, statements of work, and activities to be delivered across the lifecycle. Become the lead More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Tunstall Healthcare (UK) Ltd
We are currently recruiting for a Regional Information Security Officer , reporting to the Global Chief Information Security Officer (CISO), to oversee the information security function across the countries and Tunstall entities in their scope. This is an incredibly exciting time to join Tunstall as we embark on an exciting period of transformation. You will be joining a … recently created and growing global Information Security team within Tunstall and will be in a leadership position playing a key part in the success of this transformation. This role would be based at either our Manchester office or our Whitley site (DN14 0HR) working on a hybrid basis. We are flexible on number of days in the office. What … will you be doing in this role? As our Regional Security Officer , you will be responsible for implementing, running and overseeing the information security function across the countries and Tunstall entities in your scope, ensuring consistent and strong information securitymanagement in support of our business goals and in line with the global Information SecurityMore ❯
Greater London, England, United Kingdom Hybrid / WFH Options
SiSU Health UK
Help build and maintain the infrastructure powering a leading digital health platform. SiSU Health is seeking an experienced DevOps Engineer to ensure the reliability, scalability, and security of our AWS infrastructure and IoT-connected health stations. This is a critical role supporting the operational excellence and future readiness of our infrastructure as we scale across the UK and internationally. … The DevOps Engineer maintains and optimises our cloud platform and health station infrastructure and ensures platform reliability, availability, scalability, recoverability, security and compliance to relevant standards. 🛠️ In this role, you'll: Own and optimise our AWS stack and CI/CD pipelines Maintain our Health Station platform, networks and infrastructure Improve observability, resilience, compliance, security and uptime Collaborate … Work at the intersection of healthcare, infrastructure, and innovation Must haves 4+ years in DevOps/SRE Strong AWS experience and familiarity with Well Architected frameworks Familiarity with Information Securitymanagement, ISO 27001 and digital healthcare technology, compliance, standards and risk management Familiarity with Azure IOT and remote Windows configuration Experience managing databases (backup/recovery, securityMore ❯
South East London, England, United Kingdom Hybrid / WFH Options
SiSU Health UK
Help build and maintain the infrastructure powering a leading digital health platform. SiSU Health is seeking an experienced DevOps Engineer to ensure the reliability, scalability, and security of our AWS infrastructure and IoT-connected health stations. This is a critical role supporting the operational excellence and future readiness of our infrastructure as we scale across the UK and internationally. … The DevOps Engineer maintains and optimises our cloud platform and health station infrastructure and ensures platform reliability, availability, scalability, recoverability, security and compliance to relevant standards. ️ In this role, you'll: Own and optimise our AWS stack and CI/CD pipelines Maintain our Health Station platform, networks and infrastructure Improve observability, resilience, compliance, security and uptime Collaborate … Work at the intersection of healthcare, infrastructure, and innovation Must haves 4+ years in DevOps/SRE Strong AWS experience and familiarity with Well Architected frameworks Familiarity with Information Securitymanagement, ISO 27001 and digital healthcare technology, compliance, standards and risk management Familiarity with Azure IOT and remote Windows configuration Experience managing databases (backup/recovery, securityMore ❯
UCL research activities. Research Data Stewards (also known as research data managers, data consultants, data wranglers, or bioinformaticians) offer technical support and consultancy to UCL researchers, assisting with data management, policy compliance, and promoting Open Science and FAIR data principles. They will be embedded within research projects but also contribute to new research proposals and collaborate on designing research … are essential to clearly explain technical concepts to non-technical staff. At the Senior grade, candidates should have a strong background working with sensitive data, understanding data governance, information security, and risk management, and be familiar with issues related to handling and disseminating sensitive data. We are especially interested in applicants with experience in areas such as ISO27001 … certification, Information SecurityManagement Systems (ISMS), Trusted Research Environments (TRE), Secure Data Environments (SDE), Data Safe Havens (DSH), the Five Safes model, healthcare data processing, NHS Data Security and Protection Toolkit, anonymising personal data, data protection, and ethics. More ❯
uphold best practices, and drive compliance efforts that align with industry standards and regulatory expectations. How Youll Spend Your Time Assistingwith the compliance program and integrated quality/information securitymanagement system to maintain alignment with industry standards Facilitatingand conducting risk assessments in order to ensure risks are effectively identified and managed according to the company framework Interpretingregulatory … compliance frameworks and industry standards such as ISO, SOC, HIPAA, and GDPR Ability to commuteto our UK office up to [insert number] days a week Sincere interestin privacy, risk management, and maintaining ethical operations across a global organization A knack for working collaborativelywithin cross-functional and international teams What you will gain: This is an excellent opportunity for you … Competencies You Will Need: Must have excellent oral and written communication skills and expertise in: UK & EU privacy legislation completing risk assessments in general, privacy assessments in particular risk management managing and completing subject access requests project management It would be desirable if you have: A deep understanding of the regulatory environment in the US, CAN, DE, SWE More ❯
Personnel Security Analyst, AWS Security Job ID: Amazon Web Services Australia Pty Ltd Amazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to … large government customers, run their operations and applications on AWS' highly secure infrastructure. The AWS Personnel Security (PerSec) team is responsible managing security clearance and vetting activities for AWS employees supporting programs, including continual assessments on suitability. As a Personnel Security Analyst, you will join a team of industry-leading security experts working with customer representatives … to operate and continuously improve industry-leading personnel security programs and processes. The AWS Security team requires innovative thinking that is balanced with a strong customer focus on quality and execution. You will have a strong track record of leading and supporting security programs, demonstrable program/project management experience, comprehensive knowledge of government clearance (e.g. More ❯
Luton, England, United Kingdom Hybrid / WFH Options
LHH
Key Responsibility Areas The successful candidate will report to the Head of Engineering Products and be responsible for providing security advice to product development teams in a range areas including: Production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals. Undertaking security risk assessments, risk mitigation plans, mitigation … gap analysis and preparation of securitymanagement documentation for system Accreditation. Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities. Liaison with Security Accreditors and Security Assurance Coordinators in support of security accreditation. Preparation of Protection Profiles, Security Targets and Evaluation Management Plans … platform lockdown and configurations, and supporting Penetration test activities. Analysing penetration test results and preparation of remedial action plans. Prepare and implement through life support and maintenance for product security including vulnerability and patch management plans Lead security incident management teams during incident/crisis situations in conjunction with Head of Product Security for EW More ❯
Our client a leading defence and security company is seeking to recruit experienced security engineers with expertise in developing and maintaining product securitymanagement systems for defence and government customers. About the Role This position will report to the Head of Engineering Projects and will take responsibility for all security aspects of product design, development … verification and maintenance through all phases of the product lifecycle. The role will focus on undertaking security risk assessments for products, preparing security risk mitigation plans, deriving security requirements and working with product development teams to design, implement and maintain appropriate security controls and production of Product Security Artefacts. Responsibilities The successful candidate will report … to the Head of Engineering Products and be responsible for providing security advice to product development teams in a range areas including: Production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals. Undertaking security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of securitymanagementMore ❯
Job Description - Principal Cyber Security Engineer () Principal Cyber Security Engineer - Job Title: Principal Cyber Security Engineer Location: Barrow-In-Furness - We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: Negotiable, depending on experience What you'll be doing: Manage and deliver a Submarines … Business Unit Product Security Assurance Audit schedule within the scope of EPAD Be able to plan and manage work concurrently across multiple security work programmes Be able to select appropriate Product Security Assurance techniques which are consistent and repeatable for use across a programme Represent the EPAD at Design Reviews and other various engagements, to ensure that … Product Security is appropriately considered at each stage of the design lifecycle Be able to contribute and influence the development of Product Security strategies, policies, guidance, good practices and awareness Ensure that Product Security activities within a programme, a project, system or equipment, are delivered and managed using recognised techniques and in accordance with the Submarines Product More ❯
Job title: Cyber Security Assurance Specialist Location: Preston or Frimley - We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: Circa £47,500 depending on skills and experience What you’ll be doing: To support the delivery of an intelligence led and risk-based through life … assurance programme across Sectors, UK Business Groups and Service Providers to underpin HMG Secure by Design requirements Responsible for ensuring the security and resilience of applications, systems and services throughout their lifecycle Participate in the delivery of wider automation within the through life assurance team To assist with the evolution of the through life assurance team as we adopt … cycle Aid the delivery of risk assessment activities for applications, systems and services being used across Shared Services & Head Office Your skills and experiences: Essential: CISMP - Certificate in Information SecurityManagement Principles To work autonomously and manage workload & priorities based on demand from multiple different projects and initiatives Desirable: Has knowledge or worked with the NIST (National Institute More ❯
in energy. Help us make a real impact on shaping a better, more sustainable future. We are very excited to be building a small and efficient Cyber and Information Security team at Octopus Energy Group. We are looking for ambitious, knowledgeable, and experienced InfoSec Analysts to join our team, to grow with the rest of the company, and ensure … we continue to do so in a secure and safe way. You will be a key partner in defining what Security is at Octopus Energy Group. We will be shaping this team to provide a world class support service to our employees, building our way out of problems and undertaking transformational organisational change. You'll be primarily supporting our … to business challenges and opportunities to continually improve our services. Specifically, we're looking for InfoSec Analysts with at least 2 years of relevant experience to help us improve security across the Octopus Energy Group. If you're passionate about Information Security and driving a positive security culture, we encourage you to apply! What you'll do More ❯
Rugby, Warwickshire, West Midlands, United Kingdom
Morgan Sindall Construction
Full time, permanent Are you ready to make a real impact in a growing, security-focused IT environment? At Morgan Sindall, were expanding our public sector and HMG project portfolioand were looking for someone who can help us deliver secure, compliant, and high-performing IT services. As our new IT Secure Projects Service Delivery Manager, youll be the vital … forward-thinking team. What Youll Be Doing - Supporting secure IT service delivery across high-profile public sector and HMG projects. - Collaborating with project teams, suppliers, and clients to embed security from the ground up. - Helping shape policies, assess risks, and respond to incidents with confidence. - Driving continuous improvement and knowledge sharing across the business. - Playing a key role in … service transitions and ensuring compliance with ISO 27001, NCSC guidance, and more. What Youll Bring - Experience in IT service delivery or security operationsespecially in secure or regulated environments. - A working knowledge of SFIA-aligned practices and frameworks. - Strong communication , coordination, and stakeholder management skills. - A proactive mindset and the ability to work both independently and as part of More ❯
Altura, an ambitious SaaS startup! At Altura, we make it easier for organisations to win complex deals (tenders and RFPs). With our AI-powered platform, we simplify bid management by turning it into a smooth and strategic process. We connect workflows, automate tasks, and make knowledge accessible so teams can work more efficiently and effectively. But we're … not stopping there. We're developing the first AI-driven Agentic Virtual Bid Management Assistant, designed to automate the entire bid lifecycle. Altura is growing fast and we have big plans for the future. If you value innovation, enjoy working collaboratively, and want to make a real impact - we'd love to have you on the team. TL;DR … with cross-functional teams. Results-driven, with a focus on exceeding customer expectations. Basic knowledge of ISO 27001 is essential, along with a willingness to comply with our information securitymanagement guidelines regarding risk, cyber resilience, and operational excellence. You should apply if: You thrive in high-impact roles. If you enjoy building scalable processes and seeing the More ❯
estimation Escalating project risks when needed and supporting mitigation planning Promoting a culture of continuous improvement across processes and documentation standards Ensuring all activity is aligned with our Information SecurityManagement Systems (ISMS) Who you are: You’re someone who brings clarity to complexity. You know how to make sense of technical detail and communicate it in a … the best-value approach Proven experience in authoring detailed solution documentation used by development and QA teams A solid understanding of customer databases and CRM journey logic Exceptional time management skills and the ability to juggle multiple priorities You’ll stand out if you’ve worked with: SQL (Stored Procedures, SSMS), SSIS Cloud technologies like Snowflake and AWS Glue More ❯
Lead Security Engineer Luton 12-month contract Paying up to 90p/h (Inside IR35) ARM is assisting a large Aerospace client who is looking for an experienced Lead Security Engineer who will be responsible for all security aspects of product design, development, verification and maintenance through all phases of the product lifecycle. Responsibilities : Production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals. Undertaking security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of securitymanagement documentation for system Accreditation. Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities. Liaison with … Security Accreditors and Security Assurance Coordinators in support of security accreditation. Preparation of Protection Profiles, Security Targets and Evaluation Management Plans, and liaison with NCSC and commercial evaluation teams in support of evaluation activities. Preparation of TEMPEST Control Plans, advising development teams on appropriate implementation techniques and liaising with TEMPEST test facilities. Advising development teams More ❯
Senior Information Security & Quality Officer 11 September 2024 Headquartered in London, CACI Ltd is a wholly owned subsidiary of CACI International Inc., a publicly listed company on the NYSE with annual revenue in excess of US $6.2bn and employing approx. 22,000 people worldwide. CACI Ltd is an international data and technology consultancy with £154m turnover and 1100 employees. … passionate, progressive and unafraid of challenge; our mission is to use technology and data-driven insight to make a commercial difference. We provide expert advice and hands-on system management to help our national and global clients get the most from technology and data. We use innovation wisely to deliver well thought-out digital solutions and software. THE ROLE … CACI are seeking an experienced individual to join our ISQG team in the role of Senior Information Security & Quality Officer. The successful candidate will be responsible for supporting our ISO9001, ISO20000 and ISO27001 certifications, and provide advice and guidance on other quality and security matters. CACI delivers a diverse range of services across both the government and commercial More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
leonardo company
We have an exciting opportunity for a Site Security Manager based at our Southampton site. The Site Security Manager will lead the day to day direction, control and planning of Physical, Personnel and Information Security delivery. You will be responsible for the protection of company employees, assets, infrastructure and capability in alignment with internal and external compliance … requirements. Reporting to the Security Operations Manager, you will use your knowledge and experience in Security to operate at all levels in the business in order to deliver functional and business requirements. The role is site based in Southampton and will additionally require occasional travel to other Leonardo UK sites. You do need to be eligible for DV … clearance What you'll do as a Site Security Manager: Lead all Business Security day to day operational requirements in the delivery of current and future business objectives. Ensuring compliance to policy, process, and procedure adherence to achieve operational objectives. Implementation of Security policies and procedures in a consistent manner. Manage, monitor and report on securityMore ❯