NYDFS), Sarbanes-Oxyley (SOX), and the Financia Conduct Authority(FCA . Cyber Engineering Oversight Lead engineering teams responsible for core security platforms, including endpoint protection, cloud security, network defense, vulnerability management, and DevSecOps integrations. Build and mature a comprehensive vulnerability management program, including continuous scanning, risk-based prioritization, remediation tracking, and Board-level reporting. Drive innovation by … DLP, and security engineering practices meet regulatory, audit, and policy requirements. Define and maintain standards for identity lifecycle, access controls, data handling, and information protection. Oversee risk assessments and remediation programs tied to IAM, DLP, and security engineering platforms. Senior Management Function (FCA Responsibilities) As an FCA-designated Senior Management Function (SMF) role, the position carries individual accountability under … and cloud services related to IAM, DLP, and cyber platforms. Ensuring Board and regulators receive timely, accurate, and complete information on cyber, identity, and data protection risks, vulnerabilities, and remediation activities. Acting as the point of accountability for operational resilience in cyber engineering, IAM, and DLP, supporting FCA requirements around impact tolerance, scenario testing, and response planning. Qualifications The More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Advanced Resource Managers
schedule penetration testing engagements based on comprehensive threat assessments and client-specific requirements. Produce high-quality, detailed reports that clearly articulate technical findings, potential business impact, and strategic, actionable remediation recommendations for both technical and non-technical stakeholders. Clearly and effectively communicate complex security concepts, adversarial tactics, and critical threat intelligence insights to diverse audiences. Collaborate closely with client … IT and cybersecurity teams to drive the enhancement of security protocols and ensure effective, threat-informed remediation of identified vulnerabilities. Track the progress of remediation efforts and provide regular, concise updates to stakeholders, highlighting the reduction of identified threats. Conduct proactive security research and contribute to the creation of technical content on emerging threats, advanced attack techniques, and … security monitoring (blue team) capabilities by providing valuable insights into offensive techniques and adversarial behaviours to enhance detection and response effectiveness. Drive the patching regime for identified vulnerabilities, prioritizing remediation efforts based on threat intelligence and the potential for exploitation by advanced threat actors. Skills and Qualifications: Minimum of 5 years of demonstrable professional experience in penetration testing, with More ❯
schedule penetration testing engagements based on comprehensive threat assessments and client-specific requirements. Produce high-quality, detailed reports that clearly articulate technical findings, potential business impact, and strategic, actionable remediation recommendations for both technical and non-technical stakeholders. Clearly and effectively communicate complex security concepts, adversarial tactics, and critical threat intelligence insights to diverse audiences. Collaborate closely with client … IT and cybersecurity teams to drive the enhancement of security protocols and ensure effective, threat-informed remediation of identified vulnerabilities. Track the progress of remediation efforts and provide regular, concise updates to stakeholders, highlighting the reduction of identified threats. Conduct proactive security research and contribute to the creation of technical content on emerging threats, advanced attack techniques, and … security monitoring (blue team) capabilities by providing valuable insights into offensive techniques and adversarial behaviours to enhance detection and response effectiveness. Drive the patching regime for identified vulnerabilities, prioritizing remediation efforts based on threat intelligence and the potential for exploitation by advanced threat actors. Skills and Qualifications: Minimum of 5 years of demonstrable professional experience in penetration testing, with More ❯
will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems Perform threat hunting and develop detection use cases Manage vulnerability assessments and remediation efforts Maintain and optimise DLP tools and incident response Support forensic readiness and insider risk initiatives Develop and enforce security policies and awareness programs Lead More ❯
will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems Perform threat hunting and develop detection use cases Manage vulnerability assessments and remediation efforts Maintain and optimise DLP tools and incident response Support forensic readiness and insider risk initiatives Develop and enforce security policies and awareness programs Lead More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom
Tate Milton Keynes
will: Lead cyber incident investigations with SOC and client teams Triage and analyse alerts across email, cloud, and hybrid systems Perform threat hunting and develop detection use cases Manage vulnerability assessments and remediation efforts Maintain and optimise DLP tools and incident response Support forensic readiness and insider risk initiatives Develop and enforce security policies and awareness programs Lead More ❯
Employment Type: Full-Time
Salary: £50,000 - £60,000 per annum, Negotiable, Inc benefits, OTE
Banbury, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
wide range of internal teams, from IT colleagues to Train Engineers, to ensure security best practices are understood and integrated into their processes and systems. Key Accountabilities Threat and Vulnerability Management Develop incidence response and security measures for protection. Complete risk and exploitability assessments against vulnerabilities and live threats. Serve as a subject matter expert in vulnerability management … tools and technologies such as SIEM, DLP, network protection, threat detection, and endpoint protection. An understanding of network infrastructure such as VPNs, firewalls, switches, routers, LANs, Intrusion Detection, and vulnerability scanning. Understanding of IT and cyber security frameworks, standards, and regulations (examples: ISO27001, NIS2, GDPR, and CAF). Understanding of the Cyber Kill Chain and MITRE ATT&CK frameworks. More ❯
Hook Norton, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
wide range of internal teams, from IT colleagues to Train Engineers, to ensure security best practices are understood and integrated into their processes and systems. Key Accountabilities Threat and Vulnerability Management Develop incidence response and security measures for protection. Complete risk and exploitability assessments against vulnerabilities and live threats. Serve as a subject matter expert in vulnerability management … tools and technologies such as SIEM, DLP, network protection, threat detection, and endpoint protection. An understanding of network infrastructure such as VPNs, firewalls, switches, routers, LANs, Intrusion Detection, and vulnerability scanning. Understanding of IT and cyber security frameworks, standards, and regulations (examples: ISO27001, NIS2, GDPR, and CAF). Understanding of the Cyber Kill Chain and MITRE ATT&CK frameworks. More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Lorien
Vulnerability Management Architect 3 Month Contract Hybrid Our Retail client is looking for a Vulnerability Management Architect to lead the transformation of a large-scale enterprise's threat and vulnerability landscape. This role is focused on rebooting the organisation’s vulnerability management capabilities to deliver a more dynamic, risk-based view of threats across cloud, hybrid … and on-prem environments. You’ll be responsible for designing and implementing a modern exposure management framework that enables real-time visibility, prioritisation, and remediation of vulnerabilities. Key Responsibilities Architect and lead the implementation of an enterprise-wide exposure management strategy. Identify and assess digital assets, attack surfaces, and potential vulnerabilities. Develop and apply exposure scoring models to evaluate … risk in context. Recommend and support the selection of appropriate security tools and platforms. Collaborate with engineering, security, and leadership teams to tailor risk reporting and remediation strategies. Maintain continuous monitoring and adapt to evolving environments (cloud, remote work, DevSecOps pipelines). What You’ll Bring Proven experience in Exposure Management , including: - Asset Identification - Attack Surface Mapping - Risk Assessment More ❯
Vulnerability Management Architect 3 Month Contract Hybrid Our Retail client is looking for a Vulnerability Management Architect to lead the transformation of a large-scale enterprise's threat and vulnerability landscape. This role is focused on rebooting the organisation’s vulnerability management capabilities to deliver a more dynamic, risk-based view of threats across cloud, hybrid … and on-prem environments. You’ll be responsible for designing and implementing a modern exposure management framework that enables real-time visibility, prioritisation, and remediation of vulnerabilities. Key Responsibilities Architect and lead the implementation of an enterprise-wide exposure management strategy. Identify and assess digital assets, attack surfaces, and potential vulnerabilities. Develop and apply exposure scoring models to evaluate … risk in context. Recommend and support the selection of appropriate security tools and platforms. Collaborate with engineering, security, and leadership teams to tailor risk reporting and remediation strategies. Maintain continuous monitoring and adapt to evolving environments (cloud, remote work, DevSecOps pipelines). What You’ll Bring Proven experience in Exposure Management , including: - Asset Identification - Attack Surface Mapping - Risk Assessment More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Zero Plus Ltd
to ensure delivery within defined SLAs. While there is a technical component, this is primarily a governance and coordination role, owning the process, producing plans, identifying gaps and managing remediation activity through others. You will: Oversee and manage a wide portfolio of applications and OS updates across multiple platforms Review large datasets to identify compliance gaps, exceptions and priorities … classification, lifecycle and deployment Manage update rings, release cycles and rollout schedules, ensuring appropriate pilots, rollback options and communications are in place Partner with Cyber and Security teams on vulnerability monitoring and remediation planning Lead on End User Compute penetration testing, coordinating scope, scheduling and reporting Produce structured plans, reports and dashboards that provide clear visibility of performance More ❯
to ensure delivery within defined SLAs. While there is a technical component, this is primarily a governance and coordination role, owning the process, producing plans, identifying gaps and managing remediation activity through others. You will: Oversee and manage a wide portfolio of applications and OS updates across multiple platforms Review large datasets to identify compliance gaps, exceptions and priorities … classification, lifecycle and deployment Manage update rings, release cycles and rollout schedules, ensuring appropriate pilots, rollback options and communications are in place Partner with Cyber and Security teams on vulnerability monitoring and remediation planning Lead on End User Compute penetration testing, coordinating scope, scheduling and reporting Produce structured plans, reports and dashboards that provide clear visibility of performance More ❯
DevOps Engineer - AWS Initial 6-month Contract Role 2 days a week in London office £340 - £350, Inside IR35 We're looking for a DevOps Engineer with AWS expertise; the ideal candidate will have a strong background in cloud-native More ❯
Network Threat & Vulnerability Analyst - Hybrid - Lancashire £60k to 68k 10.5% bonus 14% pension healthcare plus additional benefits. Network Threat & Vulnerability Analyst needed as part of a brand new team build in an extremely well funded growing cyber security team for this North West based enterprise level critical national infrastructure organisation. As a threat and vulnerability analyst in … team to identify root causes and implement preventative measures for future incidents. As part of the opportunity to upskill you will conduct or assist with network penetration tests and vulnerability assessments to simulate real-world network attacks. Documenting and prioritising vulnerabilities discovered during testing and collaborate with network teams to implement fixes. You will need as much of the … events and alerts to identify potential threats and incidents. Understanding of network protocols, operating systems, and cybersecurity principles. Ability to investigate security incidents, perform root cause analysis, and recommend remediation actions. Proficiency in using vulnerability scanning tools and remediation best practice. Experience in analysing scan results and generating reports for remediation. Ability to collaborate with system administrators More ❯
Network Threat & Vulnerability Analyst - Hybrid - Lancashire £60k to 68k 10.5% bonus 14% pension healthcare plus additional benefits. Network Threat & Vulnerability Analyst needed as part of a brand new team build in an extremely well funded growing cyber security team for this North West based enterprise level critical national infrastructure organisation. As a threat and vulnerability analyst in … team to identify root causes and implement preventative measures for future incidents. As part of the opportunity to upskill you will conduct or assist with network penetration tests and vulnerability assessments to simulate real-world network attacks. Documenting and prioritising vulnerabilities discovered during testing and collaborate with network teams to implement fixes. You will need as much of the … events and alerts to identify potential threats and incidents. Understanding of network protocols, operating systems, and cybersecurity principles. Ability to investigate security incidents, perform root cause analysis, and recommend remediation actions. Proficiency in using vulnerability scanning tools and remediation best practice. Experience in analysing scan results and generating reports for remediation. Ability to collaborate with system administrators More ❯
Basildon, England, United Kingdom Hybrid/Remote Options
Cloud Decisions
and respond to security alerts, incidents and vulnerabilities. Deliver Cyber Essentials & Cyber Essentials Plus engagements and renewals. Deploy and support Microsoft 365 Security, Intune and Defender solutions. Assist with vulnerability management and remediation across customer estates. Work with platforms like Mimecast, SentinelOne, Sophos and Microsoft Security & Compliance Centre. Act as 2nd/3rd line escalation and drive root More ❯
Greater London, England, United Kingdom Hybrid/Remote Options
TRIA
DevSecOps Engineer - West London - to £84K + benefits - hybrid (c 5 days per month in the office) Our client is seeking a DevSecOps Engineer to join a growing Platforms & Security team. You’ll be responsible for ensuring platforms, products, and More ❯
This is an excellent opportunity for AWS BAU Engineer professionals to be part of leading-edge technology projects. Cognizant’s Cloud, Infrastructure & Security Services Practice provides end-to-end solutions covering architecture, design, implementation, management, and on-going support across More ❯
This is an excellent opportunity for AWS BAU Engineer professionals to be part of leading-edge technology projects. Cognizant’s Cloud, Infrastructure & Security Services Practice provides end-to-end solutions covering architecture, design, implementation, management, and on-going support across More ❯
Huddersfield, England, United Kingdom Hybrid/Remote Options
Fruition Group
Job Title: Azure Platform Engineer Location: Huddersfield - Hybrid, 2 days per week onsite Salary: Up to £55,000 per annum Why Apply? This is a newly created Azure Platform Engineer position within a business undergoing a major cloud transformation, migrating More ❯
london, south east england, united kingdom Hybrid/Remote Options
Polaris Consulting & Services Ltd
role for someone who enjoys implementing business-appropriate structure & process improvement, whilst balancing strategic problem-solving. Key Responsibilities Security Lead and manage customer questionnaires and client audits Oversight of vulnerability management and ensure remediation across environments is in line with company policy Oversight of applicable SIEM and monitoring process to ensure that security response is in line with … or infrastructure changes are performed in line with company policy Partner with business units to embed risk management into day-to-day decision-making Maintaining the Risk Register, tracking remediation tasks and preparing risk reports Customer Engagement Serve as the internal point of contact for supporting customers on process and compliance issues Document and prepare communication around sub-processor … ISO9001, GDPR, and police/public sector compliance frameworks Demonstrated ability to work with customers, auditors, and regulators at all levels Practical experience in defining and oversight of vulnerability management, and change management processes Excellent communication skills able to translate complex process requirements into clear business value A proactive, structured, and detail-oriented mindset, with the ability to influence More ❯
edge security solutions to protect sensitive systems and data. Act as a subject matter expert on security engineering, encryption, and access management. Conduct regular audits, identify vulnerabilities, and drive remediation initiatives across infrastructure and applications. Collaborate with cross-functional teams to ensure cryptographic and IAM solutions align with business, regulatory, and policy objectives. Essential Skills Must have recent hands … on working experience with CyberArk- critical to the role. Proven experience in Identity & Access Management (IAM) and cryptographic technologies. Skilled in conducting risk assessments, vulnerability analysis, and developing secure protocols. Excellent communication and stakeholder management skills, with the ability to influence decision-making. Desired Skills Advanced knowledge of internal controls, governance, and audit frameworks. Experience leading or mentoring teams More ❯