executing advanced penetration tests and vulnerability assessments across a diverse portfolio of applications. This is a hands-on, technical role where you'll actively identify, exploit, and help remediate security weaknesses in web, mobile, and cloud-based applications. You'll be at the forefront of defending against cyber threats by implementing cutting-edge security tools, collaborating with development … teams to integrate security into the SDLC, and playing a critical role in protecting the organisation's digital assets. The successful candidate will play a hands-on role in testing the security of applications, networks, and systems, while ensuring that security standards are integrated into the development process. Key Responsibilities: Penetration Testing & Vulnerability Assessment: Conduct and oversee … exploits. Analyse and prioritise vulnerabilities based on risk and provide detailed technical reports with recommended remediation steps for developers and system administrators. Keep up to date with the latest security vulnerabilities, exploits, and attack methodologies to ensure effective penetration testing. Security Risk Management: Develop and manage the organisation's vulnerability management program, ensuring compliance with internal policies and More ❯
Cloud Security Engineer – Contract (Inside IR35)/Hybrid We are seeking an experienced Cloud Security Engineer with a strong emphasis on AWS. The successful candidate will be responsible for designing, implementing, and maintaining secure cloud infrastructure, ensuring a robust securityposture and supporting continuous delivery of our applications. Key Responsibilities: Design and implement secure AWS cloud … infrastructure, focusing on system architecture, Identity and Access Management (IAM), encryption, data protection, and network security. Collaborate with the Information Security and application teams to drive cloud security initiatives and align with the broader security strategy. Enhance and secure CI/CD pipelines across multiple applications by embedding secure coding and DevSecOps best practices. Develop automation tools … and scripts to streamline security processes, monitor key security metrics, and support operational demands. Stay up to date with emerging threats, industry trends, and mitigation techniques to continually improve cloud security controls. Required Skills and Experience: Minimum 3 years in a DevSecOps capacity and 5+ years in cloud security or engineering roles. Strong expertise in AWS More ❯
Cloud Security Engineer – Contract (Inside IR35)/Hybrid We are seeking an experienced Cloud Security Engineer with a strong emphasis on AWS. The successful candidate will be responsible for designing, implementing, and maintaining secure cloud infrastructure, ensuring a robust securityposture and supporting continuous delivery of our applications. Key Responsibilities: Design and implement secure AWS cloud … infrastructure, focusing on system architecture, Identity and Access Management (IAM), encryption, data protection, and network security. Collaborate with the Information Security and application teams to drive cloud security initiatives and align with the broader security strategy. Enhance and secure CI/CD pipelines across multiple applications by embedding secure coding and DevSecOps best practices. Develop automation tools … and scripts to streamline security processes, monitor key security metrics, and support operational demands. Stay up to date with emerging threats, industry trends, and mitigation techniques to continually improve cloud security controls. Required Skills and Experience: Minimum 3 years in a DevSecOps capacity and 5+ years in cloud security or engineering roles. Strong expertise in AWS More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
Our client, a leading global organization, is partnering with a prestigious end client based in Reading. Were excited to offer an outstanding opportunity for a Security Architect with strong background in financial services to join a dynamic team on an initial 6-month contract. If you are interested and have the relevant skills and experience, please apply promptly to … discuss further. Location: Reading, UK (Hybrid 4 days onsite) Contract Duration: 6 Months Rate: £700 - 750 Inside IR35 About the Role We are seeking an exceptionally experienced Security Architect to join a major transformation programme in the financial services sector . This is a hands-on, strategic role that involves shaping cloud security architecture, influencing senior stakeholders, and … helping build secure, resilient systems in one of the most tightly regulated industries in the world. Why This Role is Unique Step into a mission-critical role influencing the securityposture of a major financial player. Collaborate on high-scale, multi-cloud projects using cutting-edge technologies (AWS, Azure, GCP). Be part of a forward-thinking environment More ❯
Nottingham, Nottinghamshire, United Kingdom Hybrid / WFH Options
Commify
with our innovative communication solutions. Our comprehensive product portfolio includes SMS, email, WhatsApp, and other services, enabling organisations to communicate brilliantly and effectively. As we enhance our focus on security in an increasingly complex digital environment, we are on the lookout for a Principal Security Operations Engineer to join our Technical Operations team. In this pivotal role, you … will spearhead security operations initiatives and ensure that our platforms are resilient against cyber threats while maintaining compliance with industry standards. In your role as Principal Security Operations Engineer, you will: Act as a primary point of contact for security incidents, leading investigations, and ensuring effective resolution Design, implement, and manage security measures for our applications … and infrastructure to protect against security breaches Develop a rigorous incident response plan and lead post-incident reviews to improve our securityposture Collaborate closely with development and infrastructure teams to integrate security practices into the DevOps pipeline Oversee the deployment and management of security monitoring tools to ensure real-time visibility and response capabilities More ❯
East London, London, United Kingdom Hybrid / WFH Options
A&O Shearman
ability to keep our clients data secure is a bedrock for our reputation as a trustworthy professional services partner to many of the worlds large and prestigious organisations. Information security is not an afterthought; it is core to all that we do, to protect not only our data but that of our clients, and has the unwavering support of … the Board. Led by our new CISO, the in-house Information Security team is a core part of our technology services structure with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 and SOC2 and strive to keep pace with … have experience advising clients on hundreds of incidents. Leveraging this experience, they feedback practical lessons learned into clients cyber risk management and incident response programmes. What you will do Security Architecture Strategy & Governance Orchestrate the Security Architecture team in the development and maintenance of a comprehensive security architecture strategy across the firms platforms, including M365, legal and More ❯
to keep our clients' data secure is a bedrock for our reputation as a trustworthy professional services partner to many of the world's large and prestigious organisations. Information security is not an afterthought; it is core to all that we do, to protect not only our data but that of our clients, and has the unwavering support of … the Board. Led by our new CISO, the in-house Information Security team is a core part of our technology services structure with mature or evolving capability across all areas of digital security and cyber defence. We align our efforts to the NIST framework and other recognised certifications including ISO27001 and SOC2 and strive to keep pace with … have experience advising clients on hundreds of incidents. Leveraging this experience, they feedback practical lessons learned into clients' cyber risk management and incident response programmes. What you will do Security Architecture Strategy & Governance Orchestrate the Security Architecture team in the development and maintenance of a comprehensive security architecture strategy across the firm's platforms, including M365, legal More ❯
Role: Cyber Security Engineer Location: Leeds, West Yorkshire Salary: £55,000 - £70,000 PLUS 25 Days Holiday, Vendor Certifications, International Travel, Private Pension About the Company: Our client, a global leader in Sustainability Consulting, is looking for a Cyber Security Engineer to join their growing Information Security Team. This exciting role provides an opportunity to shape and … strengthen security practices across the organization. If you are passionate about cybersecurity, have a strong technical background, and thrive in a fast-paced environment, we want to hear from you. Position Overview: As a Cyber Security Engineer, you will collaborate with the IT Security Team to advise, develop, and maintain security processes and policies. Your expertise … will guide the organization in enhancing security capabilities across its global infrastructure. This role offers a chance to make a real impact by ensuring the integrity and resilience of the company’s IT environment against evolving cyber threats. Key Responsibilities: Support incident management and security response efforts, providing expertise to address and resolve security incidents quickly and More ❯
Cyber Security Specialist ** Location: London/Hybrid (2 days in office) Rate: A highly competitive salary is available for suitable candidates Role Profile As a Cyber Security Specialist, you will be the go-to Subject Matter Expert (SME) for various projects, offering your insights and recommendations to enhance our security posture. With a strong technical background, you … will work independently while leveraging the support of a tight-knit team. Your primary focus will be on providing expert advice and guidance on security solutions, particularly in cloud environments, especially Azure. Key Responsibilities: Provide expert security advice and guidance on a range of projects. Act as the security SME, ensuring security considerations are integrated into … project plans and deliverables. Collaborate with project teams to identify and mitigate security risks effectively. Conduct comprehensive security assessments and reviews of systems, applications, and processes. Identify vulnerabilities and recommend appropriate security measures. Ensure compliance with security policies, standards, and regulations, contributing to the ongoing maturity of organisational security. Promote security awareness across the organisation. More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
Job title OT Cyber Security Analyst Ref 40929 Division Digital Transformation Location Hybrid - Clearwater Court - RG1 8DB Contract type Permanent Full/Part-time Full-time Salary Up to £65,000 per annum depending on skills and experience Job grade B Closing date 16/05/2025 We are seeking a highly skilled and experienced OT Senior Cyber … Security Analyst to join our dynamic Security Operations team at Thames Water. As the UK's largest water company, we are committed to ensuring the highest level of security and compliance, protecting the critical infrastructure that delivers essential water services to 15 million customers. In this role, you will be responsible for maintaining SecOps solutions, controls, and … SecOps concepts, technologies, and best practices, specifically across IT and OT environments. You will be tasked with ensuring robust incident management, proactive threat detection, and continuous improvement of our security posture. Strong communication and collaboration skills are essential as you will work closely with cross-functional teams to mitigate risks and protect Thames Water's essential services. What you More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Sanderson
Cyber Security Project Manager, SC Clearable We are seeking an experienced Cyber Security Project Manager to lead the delivery of high-impact security initiatives within a fast-paced enterprise environment. This is an exciting opportunity to play a key role in strengthening our client's securityposture during a critical transformation phase. Rate - £650.00 per … day inside ir35 Location - Fully remote Duration - 6 months with the liklihood of extension Key Responsibilities: Lead end-to-end delivery of cyber security projects, ensuring alignment with business goals and compliance requirements Work across InfoSec, IT, risk, and compliance teams to deliver initiatives such as vulnerability management, identity and access management (IAM), SIEM upgrades, and cloud security … execution Develop and maintain project documentation, risk logs, and reports for senior stakeholders Ensure projects adhere to regulatory and governance frameworks Skills and Experience Proven track record delivering cyber security or information security projects in large, complex organisations Strong understanding of cyber risk, threat management, and technical security controls Excellent stakeholder management and communication skills Experience with More ❯
company that is building a people-first culture and is based in one of the best cities to live in the UK? If so, read on. The Information Security & Resilience Team at Unite Students is looking for an experienced, enthusiastic SecOps Engineer. We support the business in all its objectives, from building new interfaces with customers to improving the … student living experience. Your knowledge and experience will be invaluable in shaping our InfoSec capabilities. What You ll Be Doing Network Security: Design, implement, and manage secure network architectures. Monitor traffic for suspicious activity and respond to incidents. Conduct security assessments and audits. Vulnerability Analysis: Conduct assessments and penetration testing. Develop mitigation strategies and track vulnerabilities. Forensic Analysis … Analyze security incidents, collect evidence, and prepare reports to improve security posture. Incident Response: Lead response efforts, develop plans, and conduct post-incident reviews. Security Tools: Manage security tools like firewalls and intrusion detection systems. Evaluate new technologies. Documentation: Maintain detailed records and prepare reports for management. Collaboration: Work with IT, Digital teams, and developers to More ❯
Yorkshire and the Humber, United Kingdom Hybrid / WFH Options
Harvey Nash
We're looking for an experienced IT Security Leader to join a dynamic and forward-thinking organisation. You will be responsible for ensuring the integrity and confidentiality of the organisations systems and data, enhancing the organisations security posture. In this crucial role, develop and implement comprehensive security strategies, manage a high-performing security team and ensure … the protection of assets, information and data. You will be the go-to expert for all things IT security, staying ahead of emerging threats and technologies to keep the organisation secure. Key Responsibilities: Lead and develop the IT security strategy. Manage and mentor a team of IT security professionals. Oversee security operations, incident response and threat … intelligence. Collaborate with cross-functional teams to ensure security best practices. Stay updated with the latest IT security trends and technologies. Key Requirements: A relevant degree or qualified by experience Possession of industry-recognised certifications such as CISSP, CISM, CISA, CRISC, or CGEIT. Proven experience in leading IT cyber security teams, with a strong emphasis on operational More ❯
Bracknell, Berkshire, United Kingdom Hybrid / WFH Options
John Lewis Partnership
Apply on JLP Jobs - the official careers website for John Lewis Partnership, John Lewis & Partners, and Waitrose & Partners. About the role Join the Information Security Engineering team at John Lewis Partnership to help build a secure future for an iconic brand. We work to protect our customers, Partners, and business against an ever-evolving cyber threat landscape.The John Lewis … Partnership's Information Security strategy is bold and ambitious. We provide a collection of security services, delivered via people, processes and technology. Working collaboratively, these services ensure that customers can shop with us efficiently, safely and securely, every single day.Our Threat Defence team is at the forefront of our cyber resilience, proactively monitoring threats, identifying vulnerabilities, and engineering … robust security defences.As we expand our Security Engineering service, you'll be instrumental in developing cutting-edge capabilities and empowering our Security Operations Centre to stay ahead of the latest threats.This is a great opportunity to directly shape our securityposture, getting hands-on with next-generation cyber security tools. You'll thrive in More ❯
Derby, Derbyshire, United Kingdom Hybrid / WFH Options
ENGINEERINGUK
apply for a job. View more categories View less categories Sector Retail and Wholesale Role Senior Executive Contract Type Permanent Hours Full Time About the role Join the Information Security Engineering team at John Lewis Partnership to help build a secure future for an iconic brand. We work to protect our customers, Partners, and business against an ever-evolving … cyber threat landscape. The John Lewis Partnership's Information Security strategy is bold and ambitious. We provide a collection of security services, delivered via people, processes and technology. Working collaboratively, these services ensure that customers can shop with us efficiently, safely and securely, every single day. Our Threat Defence team is at the forefront of our cyber resilience … proactively monitoring threats, identifying vulnerabilities, and engineering robust security defences. As we expand our Security Engineering service, you'll be instrumental in developing cutting-edge capabilities and empowering our Security Operations Centre to stay ahead of the latest threats. This is a great opportunity to directly shape our securityposture, getting hands-on with next More ❯
Huntingdon, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
Leidos Innovations UK Limited
Cyber Security Engineer (DevSecOps) Security Clearance Required - DV ('Developed Vetting') Location: Huntingdon, UK (On-site 4/5 days a week) UNLEASH YOUR POTENTIAL At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers success. We empower our teams, contribute to our communities, and operate sustainably. Everything … people, and our community. Our Mission, Vision, and Values guide the way we do business. Are your ready for your next challenge? We are in search for multiple Cyber Security Engineers with varying technical backgrounds - Required to work at our customer site in Huntingdon, Cambridgeshire with occasional travel to other UK sites. In this role, you will working within … a team of engineers to ensure that the customer sites maintain a strong cyber security posture. Cyber Security Engineers are responsible for providing cybersecurity engineering services for classified and unclassified networks of computer systems. The Cyber Security Engineers will provide operational and engineering support. This position perform the following tasks: Develop creative solutions to complex technical issues More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Arm Limited
Job Overview: We are seeking an accomplished Director of Security Architecture with deep experience in the Technology and Semiconductor industries to build and lead a revamped security architecture capability. Reporting directly into the CISO, this leader will build and lead a team of architects focused on delivering robust, scalable security architectures for a robust securityposture whilst enabling the business. Responsibilities: Develop and implement a comprehensive security architecture strategy tailored to the unique risks and operational needs of the semiconductor design, manufacturing and high-tech partner ecosystem. Define reference architectures, threat models, and security design patterns across hybrid, cloud-native, and on-premise environments. Mentor a technically excellent team, with a solid focus … on domain-specific expertise (cloud, semiconductors, AI). Lead architectural design and implementation of security solutions that span cloud-native, hybrid, and on-premises environments, with a focus on AWS, Azure, and GCP cloud deployments. Collaborate closely with Cyber Defence Operations, Security Technology Operations, Governance, Risk and Compliance, IT Infrastructure, Engineering, Compliance and AI teams to integrate securityMore ❯
Join Us in BCG Worldwide IT! We are seeking an exceptional data protection expert to play key role in our growing Information Protection team, as an IT Data Protection Security Engineer. You will be part of a growing team, providing world class Security Engineering, Architecture and Operations, driving and supporting improvements globally to our Information Protection Portfolio. You … will be: Engaging collaboratively with application development, data protection, information security, and risk management teams to understand and implement data security solutions. Supporting vendor assessments, including proof of concepts & security technologies research Continuously improving data protection services based on input from a diverse network of internal and external stakeholders, technology teams and security industry at large … difficult and stressful situations with poise, tact and patience, while demonstrating a sense of urgency. What You'll Bring Minimum 8+ years of data loss solutions and/or security engineering experience with large scale globally distributed implementations Extensive experience in data-at-rest and data-in-transit, data security techniques and methodologies Experience of using relevant DLP More ❯
identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. We are seeking a highly motivated and experienced Lead Software Security Engineer to join our team. You will have a strong background in software development, security, and operations. This role is required to support the Digital Product Management team … in embedding security requirements and best practices into new Digital Products and Services. You will work closely with the Digital Product Management and IT Security teams to establish and build the right security controls and quality state gates across the product lifecycle. This includes security tooling to manage these controls. In this busy and rewarding role … you'll also: Collaborate with software development teams to integrate security into the development lifecycle Own the cultural shift to a Security DevSecOps mindset Manage & implement security controls, tools, and processes to secure applications and infrastructure Monitor and respond to security incidents and threats in a timely manner Stay up-to-date with security trends More ❯
office. Purpose of the Role Primark Technology is on a transformation journey supporting the business strategy which includes modernising our operating model as well as technology architecture and Cyber Security and Risk posture. This role is key in building and improving Primark's Cyber Security posture. Duties & Responsibilities Actively progress and improve Primark's cyber securityposture … Agile delivery methodology and development methods Certified with appropriate qualifications is desirable, 1. Structured Project Management : Prince/PMP 2. Agile certification, such as Scrum, SaFe, AgilePM 3. Information Security/Data Protection certification An appropriate degree, equivalent qualification or experience Desirable Be a passionate and visionary technologist able to inspire others to challenge and disrupt the current reality … ways to translate that into business opportunities. Be able to take people along with you, empowering new ways of working and successfully executing on those opportunities. Have extensive cyber security delivery and programme/project management experience, Retail experience would be beneficial. Be technically strong across a range of IT disciplines and systems, including cloud and network security. Have More ❯
Role: Information Security Consultant Location: Leeds, West Yorkshire Salary: £60,000 - £75,000 PLUS 25 Days Holiday, Vendor Certifications, International Travel, Private Pension About the Company: Our client, a global leader in Sustainability Consulting, is looking for an Information Security Consultant to join their growing Information Security Team. This exciting role provides an opportunity to shape and … strengthen security practices across the organization. If you are passionate about cybersecurity, have a strong technical background, and thrive in a fast-paced environment, we want to hear from you. Position Overview: As an Information Security Consultant, you will collaborate with the IT Security Team to advise, develop, and maintain security processes and policies. Your expertise … will guide the organization in enhancing security capabilities across its global infrastructure. This role offers a chance to make a real impact by ensuring the integrity and resilience of the company’s IT environment against evolving cyber threats. Key Responsibilities: Support incident management and security response efforts, providing expertise to address and resolve security incidents quickly and More ❯
Job summary We are seeking a skilled and motivated Information Security Lead to support the strategic and operational delivery of information security and infrastructure controls across our digital estate. Reporting to the Head of Information Security and Enterprise Architecture, this role is responsible for driving compliance with cyber and data protection standards (including DSPT, CE+, and CAF … supporting the secure delivery of IT services, and embedding robust security practices across business-as-usual operations and new service transitions. Working within the Information Security and Architecture team, the postholder will serve as a senior technical lead across key domains, including cyber assurance, infrastructure security, policy development, and risk mitigation. You will collaborate with technical teams … service management, suppliers, and transformation programmes to deliver a resilient and secure digital environment. This role is ideal for a technically capable security practitioner or infrastructure expert looking to influence organisation-wide practices while supporting the Head of Information Security in delivering a future-ready, compliant, and secure service model. Base: This is a remote working role with More ❯
about healthcare, and we plan to be the largest digital primary healthcare platform for people across Europe. About the role We are seeking a motivated and detail-oriented Information Security Engineer to join our team here at ZAVA. In this role, the successful candidate will support the organisation's cybersecurity efforts by assisting with the implementation, monitoring, and maintenance … of security systems and processes. They will work closely with senior security team members to identify vulnerabilities, respond to incidents, and ensure compliance with security policies and frameworks. The role involves hands-on tasks such as configuring security tools, analysing alerts, and supporting investigations into potential threats, as well as contributing to the development ofa secure … IT environment. Additionally, the successful candidate will participate in security awareness initiatives, help document processes, and stay updated on emerging threats and technologies to enhance the organisation's security posture. Key Accountabilities You will be working from home, but you do have the opportunity to come to the office, if you wish. You will use our collaboration tools More ❯
Farnborough, Hampshire, South East, United Kingdom
Mondas Consulting Limited
SOC Analyst Mondas Consulting Mondas are looking for a skilled Security Operations Center (SOC) Analyst to strengthen our security team. The ideal candidate will be responsible for monitoring, detecting, and responding to security incidents, as well as conducting thorough investigations to ensure the security of our clients' IT environments. This role requires a proactive and detail … oriented individual with a deep understanding of Cyber Security threats and defences. About Us Our head office located in central Hampshire is the home of our SOC which is the heart and soul of our business identity as a whole. We strive for excellence and our team is full of ambitious, skilled and hard working professionals who all share … the Mondas vision. We are a Cyber Consultancy that specialises in Security prevention and detection. Mondas delivers bespoke Cyber Security Solutions, helping our clients streamline their incident response and recovery process with our automated approach to SOAR, SIEM & MDR. Responsibilities: ? Respond to and manage security incidents, ensuring timely and eff ective resolution ? Conduct in-depth investigations to More ❯
and Lessons Learned - collaborating with a global team of incident responders. You will apply your comprehensive skills in cyber defense, digital forensics, log analysis, and intrusion analysis to address security incidents across our endpoints, network, and cloud infrastructure. In this role, you will be responsible for prevention, detection, response, and remediation activities, ensuring that information assets and technologies are … relevant stakeholders in multicultural and global environments. Responsibilities - Report to Director to facilitate all phases in the incident response lifecycle - Be involved in various incident prevention projects to improve Securityposture Preparation: - Understand different regulatory and compliance requirements like critical time to report, escalation flows, etc. - Take part in self-assessment exercises like Tabletop Exercises, Attack Simulations, Red … incident response runbooks, playbooks and SOPs with reference to different regulatory requirements - Evaluate the incident response readiness of different layers - people, process, technology Detection & Analysis: - Respond to the cyber security incidents escalated from various channels including the 24/7 SOC team. - Respond to cyber security incidents in compliance with the local authority/regulatory requirements. - Assess the More ❯