of the most complex enterprise environments in the UK and beyond. This isn't a typical penetration testing role. You'll be leading tailored campaigns that emulate real-world threat actors - from phishing initial access through to cloud-native post-exploitation and domain-level compromise in hybrid estates. We focus on intelligence-led engagements, simulating TTPs derived from current … threat actors, helping our clients uncover blind spots and prepare for the attacks that actually matter. We value curiosity, creativity, and diverse experience - some of our team came from medicine, others from blue team, IT, or non-technical backgrounds. If you're an experienced operator looking to work on challenging problems alongside a strong and supportive team, we'd … and social engineering campaigns with behavioural realism. Performing advanced Active Directory enumeration and abuse, including trust path abuse, delegation exploitation, and credential material extraction. Simulating adversary behaviour based on threat intelligence and frameworks (MITRE ATT&CK, TIBER, etc.). Identifying and exploiting weaknesses in cloud environments (Microsoft 365, Azure AD, AWS, GCP, Okta). Bypassing modern detection controls (EDR More ❯
Nottingham, Nottinghamshire, United Kingdom Hybrid / WFH Options
Commify
Principal Security Operations Engineer to join our Technical Operations team. In this pivotal role, you will spearhead security operations initiatives and ensure that our platforms are resilient against cyberthreats while maintaining compliance with industry standards. In your role as Principal Security Operations Engineer, you will: Act as a primary point of contact for security incidents, leading investigations … and infrastructure teams to integrate security practices into the DevOps pipeline Oversee the deployment and management of security monitoring tools to ensure real-time visibility and response capabilities Conduct threat assessments and vulnerability assessments, and implement appropriate mitigation strategies Upskill and mentor the security team on best practices, emerging threats, and innovative security solutions Stay current on the latest More ❯
is to protect our products by implementing proven security practices and leveraging expertise to create experiences that both delight our customers and safeguard them and their information from cyber threats. We are seeking a highly motivated and detail-oriented Junior Product Security Engineer to join our growing Product Security team. This role is a vital component of our … vulnerabilities) in web applications, mobile, and IoT devices. Help ensure the proper implementation of authentication and authorization mechanisms, encryption fundamentals, and secure communication protocols like TLS/SSL. Support threat modeling exercises (e.g., using STRIDE or DREAD methodologies) to identify potential security risks in system designs. Operational Product Security Support: Gain hands-on experience with common security tools and … secure communication protocols like TLS/SSL. Security Tool Familiarity: Familiarity with common security tools and technologies such as static analysis tools, dynamic scanning tools, and security testing frameworks. Threat Modeling: Basic understanding of threat modeling methodologies (such as STRIDE or DREAD) and interest in participating in threat modeling exercises. Research & Documentation: Strong ability to conduct thorough More ❯
is to protect our products by implementing proven security practices and leveraging expertise to create experiences that both delight our customers and safeguard them and their information from cyber threats. We are seeking a highly motivated and detail-oriented Junior Product Security Engineer to join our growing Product Security team. This role is a vital component of our … vulnerabilities ) in web applications, mobile, and IoT devices. Help ensure the proper implementation of authentication and authorization mechanisms, encryption fundamentals, and secure communication protocols like TLS/SSL. Support threat modeling exercises (e.g., using STRIDE or DREAD methodologies) to identify potential security risks in system designs. Operational Product Security Support: Gain hands-on experience with common security tools and … secure communication protocols like TLS/SSL. Security Tool Familiarity: Familiarity with common security tools and technologies such as static analysis tools, dynamic scanning tools, and security testing frameworks. Threat Modeling: Basic understanding of threat modeling methodologies (such as STRIDE or DREAD) and interest in participating in threat modeling exercises. Research & Documentation: Strong ability to conduct thorough More ❯
Engineer | Microsoft Solutions Partner | Edinburgh | Highly Competitive Pay, Performance Bonus + Exceptional Benefits Strengthen Defences. Hunt Threats. Shape the Future of Cybersecurity. Are you ready to take your cyber security expertise to the next level? Join Quorum, a leading Microsoft Solutions Partner and Tier 1 CSP based in Scotland. We’re not your average IT consultancy—we’re … Security, Identity & Access Management, and Microsoft Teams Calling. Now, we’re growing our Managed Security Services team and looking for a Senior Security Engineer with a passion for proactive threat detection, automation, and innovation. Why Join Quorum? Highly competitive salary + Bonus scheme linked to Microsoft accreditations Flexible holiday buying/selling Home broadband paid Private health care & contributory … protect, detect, and respond to evolving cyber threats. Your day-to-day will include: Leading as an escalation point for cyber incidents and alerts Integrating threat intelligence into Microsoft Defender and Sentinel Developing, tuning, and managing detection rules and response policies Performing threat hunting across client environments Maintaining and optimising our security tech stack More ❯
Engineer | Microsoft Solutions Partner | Edinburgh | Highly Competitive Pay, Performance Bonus + Exceptional Benefits Strengthen Defences. Hunt Threats. Shape the Future of Cybersecurity. Are you ready to take your cyber security expertise to the next level? Join Quorum, a leading Microsoft Solutions Partner and Tier 1 CSP based in Scotland. We're not your average IT consultancy—we're … Security, Identity & Access Management, and Microsoft Teams Calling. Now, we're growing our Managed Security Services team and looking for a Senior Security Engineer with a passion for proactive threat detection, automation, and innovation. Why Join Quorum? Highly competitive salary + Bonus scheme linked to Microsoft accreditations Flexible holiday buying/selling Home broadband paid Private health care & contributory … protect, detect, and respond to evolving cyber threats. Your day-to-day will include: Leading as an escalation point for cyber incidents and alerts Integrating threat intelligence into Microsoft Defender and Sentinel Developing, tuning, and managing detection rules and response policies Performing threat hunting across client environments Maintaining and optimising our security tech stack More ❯
Location(s): UK, Europe & Africa: UK: London BAE Systems Digital Intelligence is home to 4,500 digital, cyber, and intelligence experts. We work collaboratively across 10 countries to collect, connect, and understand complex data, enabling governments, armed forces, and commercial businesses to unlock digital advantages in demanding environments. Job Title: SOC Analyst Location: London - We offer hybrid and … intrusion attempts and compromises through analysis. Document security incidents thoroughly and accurately. Assist with remediation activities and support security improvements. Produce incident review reports and support process improvements. Support threat intelligence integration and conduct threat-led exercises. Mentor junior analysts and act as an escalation point. Requirements Technical Basic scripting skills in Python and/or other languages … familiarity with Windows, OS X, Linux. Experience with Splunk, Sentinel, and knowledge of SIEM query languages (SPL, KQL). Splunk configuration, CIM mapping, and API experience. Understanding of threat intelligence, network protocols, and security tools. Certifications in Azure Security and Splunk are desirable. Non-technical Strong stakeholder engagement and communication skills. Mentoring and team collaboration abilities. Adaptability to different More ❯
Newport, Gwent, United Kingdom Hybrid / WFH Options
Hays Technology
Cyber Continuity Specialist Permanent - £60k-£69k + strong benefits Location: Hybrid/Remote Your new company I am looking to recruit an experienced Cyber Continuity Specialist to join a leader in the utilities space. The company is currently embarked on a project to ensure compliance with CAF and are currently investing in and expanding their cyber … business continuity, disaster recovery and security resilience. You will liaise with different stakeholders and departments across the business and ensure that any company BC/DR plans have cyber security in mind and plans. Key parts of the role: Develop and maintain cyber continuity plans to ensure the availability and resilience of critical cyber assets and functions. Collaborate with IT, security, internal audit and business continuity teams to align business continuity efforts with the overall organisational resilience. Stay informed about emerging cyberthreats and vulnerabilities. Conduct Business Impact Analysis and define recovery time objectives (RTO) and recovery point objectives (RPO) for cyber-related processes and systems. Ensure business continuity More ❯
Employment Type: Permanent
Salary: £60000 - £69000/annum Up to £69k + benefits + bonus
Hybrid (London Hub) Does this sound like you? You're a proactive and detail-driven cyber security professional who thrives on staying ahead of threats and building resilient systems. Analytical by nature, you're always two steps ahead - translating complex risks into real-world solutions. Whether it's leading incident response, identifying vulnerabilities, or influencing strategy, you combine … shape a forward-thinking security culture across the business. Day-to-day you can expect to: Lead incident response for breaches, malware attacks, root cause analysis, and recovery Monitor threat feeds and correlate intelligence with tooling to identify emerging risks Oversee vulnerability management and assess remediation effectiveness Collaborate with IT, DevOps, and GRC to align security efforts with business … and remediating software/hardware issues A solid understanding of both automated and manual penetration testing Hands-on experience identifying, testing, and mitigating system vulnerabilities A strong grasp of threat intelligence and incident response processes A collaborative mindset, with the ability to explain technical risks to non-technical audiences Logical and lateral problem-solving skills Calmness under pressure and More ❯
teams to track progress and unblock issues. Present findings, risk summaries, and progress reports to the security steering committee, ensuring business alignment and visibility. Stay current with emerging cyberthreats, vulnerabilities, tools, and mitigation techniques, and evolve the VM function accordingly. Provide guidance and training to internal teams on secure development and remediation practices. Person Specification Proven experience … and its unique security challenges. Advanced knowledge of security tools and technologies. Strong analytical and problem-solving skills, and the ability to interpret data and metrics related to cyber risk. Awareness of current and emerging cyberthreats and trends affecting third parties and organisations. Experience with Wiz.io or Snyk.io platforms for cloud and application security Why More ❯
primarily Google Cloud Platform (GCP) and Microsoft Azure. This role is essential in ensuring that all cloud infrastructure, services, and data remain protected, compliant, and resilient against emerging cyber threats. Working within the broader technology and security teams, the Cloud Security Engineer will be responsible for policy enforcement, incident response, security tooling, and embedding security across the development … of Azure and Microsoft 365 cloud security controls and best practices. Deep understanding of cloud security architecture , the shared responsibility model, and infrastructure-as-code security principles. Experience with threat modelling, incident response, and forensic analysis in cloud environments. Familiarity with container security, Kubernetes, and hybrid or multi-cloud deployments is advantageous. Preferred certifications: Google Professional Cloud Security Engineer More ❯
We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Detections. As part of the Cyber Defence and Security Operations department, you will manage the SOC and other cyber-attack detection services within WTW to ensure a world-leading and comprehensive monitoring capability is delivered to all parts of the business. You will need to have excellent communicative skills to technical and non-technical audiences, and a solid business acumen to deal … the SOC are adequate and effectively identify, triage and investigate cyberthreats and attacks in a timely manner Integrate the detection services with the response teams and threat teams to ensure an efficient incident lifecycle is maintained Implement KPI and SLA’s and monitor adherence to targets Maintain a membership list and call out details of the More ❯
We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Detections. As part of the Cyber Defence and Security Operations department, you will manage the SOC and other cyber-attack detection services within WTW to ensure a world-leading and comprehensive monitoring capability is delivered to all parts of the business. You will need to have excellent communicative skills to technical and non-technical audiences, and a solid business acumen to deal … the SOC are adequate and effectively identify, triage and investigate cyberthreats and attacks in a timely manner Integrate the detection services with the response teams and threat teams to ensure an efficient incident life cycle is maintained Implement KPI and SLA's and monitor adherence to targets Maintain a membership list and call out details of More ❯
Job Title: Cyber Security Engineer Location: Oxford Road, Manchester Salary: £46,735 to £57,422 per annum, dependent on relevant experience Job Type: Permanent, Full Time (1 FTE) Closing Date: 27/08/2025 About IT Services: IT Services at the University of Manchester is a vibrant and fast-moving department, we focus on delivering excellent customer … faculties, projects, and support services to design and implement secure technology solutions. Our team is focused on enabling the University to innovate while staying secure and resilient against cyber threats. We're passionate about building a strong, adaptable security posture that's ready for the future of higher education. The Role: We're looking for a Cyber Security Engineer to help design, implement and maintain secure systems and services across the University. Working closely with cyber security architects, project teams, and other IT professionals, you'll contribute to everything from defining technical controls to validating security solutions. You'll help ensure that new and existing technologies are "secure by design," using a mix More ❯
Job Title: Cyber Security Engineer Location: Oxford Road, Manchester Salary: £46,735 to £57,422 per annum, dependent on relevant experience Job Type: Permanent, Full Time (1 FTE) Closing Date: 27/08/2025 About IT Services: IT Services at the University of Manchester is a vibrant and fast-moving department, we focus on delivering excellent customer … faculties, projects, and support services to design and implement secure technology solutions. Our team is focused on enabling the University to innovate while staying secure and resilient against cyber threats. We're passionate about building a strong, adaptable security posture that's ready for the future of higher education. The Role: We're looking for a Cyber Security Engineer to help design, implement and maintain secure systems and services across the University. Working closely with cyber security architects, project teams, and other IT professionals, you'll contribute to everything from defining technical controls to validating security solutions. You'll help ensure that new and existing technologies are "secure by design," using a mix More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Starling Bank Limited
findings, and remediation steps accurately and comprehensively. Additionally Stay informed about the latest cyberthreats, attack techniques, and vulnerabilities, especially those targeting cloud environments. Participate in proactive threat hunting activities using available tools and data sources. Contribute to the optimisation, tuning, and maintenance of SOC tools Identify opportunities for automation to streamline security operations and enhance detection … years of hands-on experience in a Security Operations Center (SOC) or similar cybersecurity role. Demonstrable experience with cloud security monitoring and incident response. Familiarity with various attack vectors, threat intelligence frameworks (e.g., MITRE ATT&CK). A cyber/information security related degree and/or relevant cybersecurity qualifications would be beneficial e.g. CompTIA Security+, (ISC More ❯
and virtual systems, serverless workloads, container security, and other platforms. This engineer will assist in minimizing attack surfaces through vulnerability management, managing a baselines program, cloud configuration assessments, incorporating threat intelligence, and building policies, standards, and processes. The ideal candidate is passionate about cybersecurity, curious, and willing to challenge the status quo in Attack Surface Management. RESPONSIBILITIES Develop and … and Development teams, providing security recommendations for the CI/CD pipeline. Stay updated on cyberthreats and participate in mapping threats to our attack surface. Review threat intelligence sources for vulnerabilities relevant to Wellington. Engage with third-party vendors to understand exposure to vulnerabilities. Contribute to team documentation and policies. NON-TECHNICAL QUALIFICATIONS Passion for cybersecurity. … . Experience assessing and communicating security risks. Proficiency in scripting languages like Python. Knowledge of Infrastructure as Code, especially AWS. Understanding of network architecture and software development. Familiarity with threat intelligence feeds. Preferred: Experience with Splunk, Qualys, WIZ, Artifactory, AWS CloudFormation. Preferred: AWS services knowledge. Preferred: Personal labs, security meetups, research. JOB TITLE : Senior Systems Engineer JOB FAMILY : Systems More ❯
to join a team focused on protecting enterprise assets against evolving cyber threats. Key Responsibilities: Lead investigations and response efforts for high-severity security incidents. Conduct proactive threat hunting using Microsoft Sentinel and the Defender suite. Develop and fine-tune analytic rules, workbooks, and automation playbooks in Sentinel. Perform deep-dive analysis of malware, phishing, and lateral … Microsoft Sentinel, including KQL, custom analytic rules, and automation. Hands-on experience with Microsoft Defender for Endpoint, Identity, and Office 365. Strong knowledge of the MITRE ATT&CK framework, threat intelligence, and adversary TTPs. Solid understanding of Windows, Linux, and core network security principles. Skilled in incident response, digital forensics, and proactive threat hunting. Experience working with SOAR More ❯
first culture, commitment to innovation, and high-quality service delivery. The Role As an Information Security Consultant , you’ll play a key role in enhancing the organisation’s cyber resilience. You'll provide expert support across Microsoft 365 and Azure environments, ensuring effective security controls, proactive risk management and compliance with global standards. This position is ideal for … process Identify and raise awareness of security risks Develop and enhance security policies, processes, procedures, and technical controls to strengthen the company’s security capabilities and resilience to cyberthreats Take a proactive role in identifying security risks, mitigations, and opportunities to strengthen the company’s resilience to cyber-attacks and security incidents Participate in the … Score, DLP and compliance tools) and Azure Security Stack (including Microsoft Defender for Cloud, Microsoft Sentinel, Azure AD etc). Solid understanding of security frameworks (e.g., ISO 27001, Cyber Essentials, NIST, GDPR etc). Experience with vulnerability scanning, risk assessment, and remediation planning. Strong communication skills with the ability to work with both technical and non-technical teams. More ❯
Employment Type: Permanent
Salary: £50000 - £60000/annum Depending on Experience
first culture, commitment to innovation, and high-quality service delivery. The Role As an Information Security Consultant , you'll play a key role in enhancing the organisation's cyber resilience. You'll provide expert support across Microsoft 365 and Azure environments, ensuring effective security controls, proactive risk management and compliance with global standards. This position is ideal for … process Identify and raise awareness of security risks Develop and enhance security policies, processes, procedures, and technical controls to strengthen the company's security capabilities and resilience to cyberthreats Take a proactive role in identifying security risks, mitigations, and opportunities to strengthen the company's resilience to cyber-attacks and security incidents Participate in the … Score, DLP and compliance tools) and Azure Security Stack (including Microsoft Defender for Cloud, Microsoft Sentinel, Azure AD etc). Solid understanding of security frameworks (e.g., ISO 27001, Cyber Essentials, NIST, GDPR etc). Experience with vulnerability scanning, risk assessment, and remediation planning. Strong communication skills with the ability to work with both technical and non-technical teams. More ❯
to enhance overall security posture What We're Looking For: ️ Proven experience as a Cybersecurity Specialist or in a similar role within IT security ️ Strong knowledge of cybersecurity principles, threat intelligence, and security controls ️ Experience with security tools (e.g., SIEM, firewalls, EDR, VPN, DLP) and vulnerability management ️ Solid understanding of regulatory frameworks and industry standards (e.g., GDPR, NIST, ISO … Certifications such as CISSP, CISM, CompTIA Security+, or CEH are highly desirable Ready to defend against cyberthreatsMore ❯
What You'll Be Working On: ️ Designing, implementing, and managing network security architectures to protect against cyberthreats ️ Monitoring network traffic, identifying potential vulnerabilities, and mitigating security risks ️ Configuring and maintaining firewalls, VPNs, intrusion detection/prevention systems (IDS/IPS), and other security devices ️ Conducting regular security audits and vulnerability assessments on network infrastructure ️ Collaborating with IT … Wireshark, SolarWinds, Nagios) and security incident management tools ️ Proficiency in network administration (e.g., TCP/IP, routing, switching, VLANs, DNS, DHCP) ️ Understanding of security best practices, risk assessment, and threat mitigation techniques ️ Relevant certifications such as CISSP, CISM, CCNP Security, or CompTIA Security+ ️ Strong analytical, troubleshooting, and problem-solving skills ️ Ability to work independently and as part of a More ❯
Paddington, Greater London, England Hybrid / WFH Options
Nexus Jobs Limited
Cyber Security Manager Our Client … to be secured and protected from increased cyberthreats and compliant to industry standards. This role covers information protection, including data loss protection and data classification, and threat protection, including security information and event management (SIEM), user and entity behaviour analytics (UEBA), point products like anti-virus (AV) and intrusion detection system/intrusion prevention system (IDS … testing. The Service Delivery team consists of approximately 20 staff who support and operate the Company’s services and there is an opportunity in that team for a Cyber Security Manager to oversee and govern all security services. Reporting Lines This role reports to Head of Service Delivery Main Accountabilities Technical leadership for all security solutions, including all More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
RSM UK
Cyber Security Consultant (Penetration Tester) Milton Keynes, Buckinghamshire, United Kingdom We are seeking an experienced Cyber Security Consultant (Penetration Tester) . Make an Impact at RSM UK At RSM, our consulting team brings together diverse advisory experts to deliver our six core solutions: business transformation, forensic, deal services, restructuring, finance function support, and risk and governance. … our six solutions, expanding our team of expert consultants, embracing a digital-first approach, strengthening our global presence, and building strong client relationships. We are seeking an enthusiastic Cyber Security Consultant to join our team. Working alongside our experienced team of specialists, you'll deliver offensive security services including digital footprint reconnaissance, social engineering, penetration testing, vulnerability assessments … to high-profile clients across all industries. The purpose of this role is to deliver offensive security services such as digital footprint reconnaissance, social engineering, vulnerability assessments, penetration testing, threat modeling, cyber-attack simulation exercises, and more. You'll benefit from ongoing coaching, career mentoring, and support through our career pathway. You will have opportunities to develop More ❯
team that protects more than systems - help safeguard the financial well-being of thousands. This is your chance to make a real impact as a key defender against cyberthreats in a fast-moving, highly regulated industry. If you're passionate about protecting people, data, and infrastructure, this role is calling your name. C2C is not an option … Compensation $100,000 - $115,000 depending on experience and skillset What You'll Be Doing Leading incident response and managing containment, analysis, and resolution Monitoring security systems (SIEM, EDR, threat intel) to identify and respond to threats Conducting vulnerability assessments and supporting remediation for financial systems Ensuring compliance with GLBA, PCI, FFIEC, and other regulatory frameworks Supporting risk reviews … of relevant experience Prior experience in financial services, banking, or fintech cybersecurity Expertise with SIEM, EDR, NGFW, and vulnerability management tools Familiarity with scripting (Python, PowerShell) for automation and threat detection Experience conducting third-party risk reviews and regulatory reporting ITAC Solutions firstName lastName Email Address Phone Number Attach Resume Accepted file types: pdf, doc, docx, Max. file size More ❯