JSP 440, DEF STAN 05-138, and NCSC guidance. Produce and maintain documentation: Security Architecture Documents, Risk Assessments, and Security Management Plans. Lead and support design reviews and assurance gates. Liaise with MOD, NCSC, and InformationAssurance teams to support accreditation and assurance. Collaborate with engineering teams to embed security from concept through to delivery. Keep up … NIST RMF). Excellent communication skills – confident engaging with technical and non-technical stakeholders. Must hold ACTIVE SC Clearance – applicants without current clearance cannot be considered. Preferred Certifications Certified Information Systems Security Professional ( CISSP ) Certified Information Security Manager ( CISM ) SABSA, TOGAF, or equivalent architecture certifications If you are interested and keen to find out more, please apply with More ❯
JSP 440, DEF STAN 05-138, and NCSC guidance. Produce and maintain documentation: Security Architecture Documents, Risk Assessments, and Security Management Plans. Lead and support design reviews and assurance gates. Liaise with MOD, NCSC, and InformationAssurance teams to support accreditation and assurance. Collaborate with engineering teams to embed security from concept through to delivery. Keep up … NIST RMF). Excellent communication skills confident engaging with technical and non-technical stakeholders. Must hold ACTIVE SC Clearance applicants without current clearance cannot be considered. Preferred Certifications Certified Information Systems Security Professional ( CISSP ) Certified Information Security Manager ( CISM ) SABSA, TOGAF, or equivalent architecture certifications If you are interested and keen to find out more, please apply with More ❯
Winchester, Hampshire, United Kingdom Hybrid / WFH Options
Arqiva
wellness and employee assistance programmes, gymflex, travel and dental insurance Work. Life. Smarter. Our commitment to a flexible and hybrid working culture Role Purpose Design and implement changes to information security governance & risk management, to ensure that the organisation's security posture is robust, compliant, and adaptable to emerging threats while aligning with strategic business goals. Accountabilities Ensure ISO27001 … regulatory, and shareholder obligations. Implement and continuously improve a risk management process across the organisation. Maintain and assess the effectiveness of the security controls catalogue; recommend improvements. Own the Information Security Management System (ISMS) to ensure compliance with internal and external requirements. Provide assurance that security controls are operating effectively and aligned with defined frameworks. Maintain company risk … implement governance frameworks aligned with business and regulatory requirements. Skills Cyber Risk Oversight - Strategic understanding of cyber security risks and the ability to oversee the implementation of appropriate controls, assurance mechanisms, and reporting frameworks. Cyber Governance & Advisory - Expertise in leading the adoption of industry cyber frameworks (e.g., NIST, ISO) and providing high-level advisory to boards, executives, and stakeholders More ❯
outlook. HMS Excellent is a unique shore establishment with its roots in more than 100 years of naval history. Navy Digital is required to deliver and sustain digital and information security services that enable the secure operation of Information Communication Technology (ICT) equipment, services, and applications. In order for Navy Digital to achieve this goal in an agile … improve efficiency. This Outcome is for the provision of Security as a Service across a full spectrum of programmes and projects delivering digital outcomes that enable current and future information-based capabilities supporting Navy Command Information, MoD and HMG defence and national security outputs. Tasking Provide a central focal point and function for managing all existing and new … within the RN. Provide central oversight and co-ordinate planning for all through-life security activity across Navy Digital delivery and programmes of work. The development of accreditation and assurance strategies against complex security requirements within the maritime environment and across the Defence Lines of Development (DLODs). The production of key Information Assurancedeliverables to meet the needs More ❯
leading Defence companies based in Frimley. Knowledge, Skills and Qualifications Knowledge: The PSA Principal Engineer will have a good understanding of the applicable regulations, standards, policies and guidance on information risk management, to be able to identify, analyse and evaluate information risks. They will be able to document and present risk management options to the business and participate … in discussions. Good understanding of information security principles and is able to advise on the potential impact to Product Systems. Knowledge of security related activities required to support the engineering lifecycle with experience of operating in the phase relevant to the role. The PSA Principal Engineer will have a working knowledge of the cyber security and informationassurance marketplace, including products, suppliers and key threats, and will also have an understanding of the direction of potential future technologies. Proven experience of assessing and managing information risk in line with industry good practice. Experience of assessing and advising on controls to support Product Safety. Proven experience of applying Product Security/Information Security concepts to applicable More ❯
leading Defence companies based in Frimley. Knowledge, Skills and Qualifications Knowledge: The PSA Principal Engineer will have a good understanding of the applicable regulations, standards, policies and guidance on information risk management, to be able to identify, analyse and evaluate information risks. They will be able to document and present risk management options to the business and participate … in discussions. Good understanding of information security principles and is able to advise on the potential impact to Product Systems. Knowledge of security related activities required to support the engineering lifecycle with experience of operating in the phase relevant to the role. The PSA Principal Engineer will have a working knowledge of the cyber security and informationassurance marketplace, including products, suppliers and key threats, and will also have an understanding of the direction of potential future technologies. Proven experience of assessing and managing information risk in line with industry good practice. Experience of assessing and advising on controls to support Product Safety. Proven experience of applying Product Security/Information Security concepts to applicable More ❯
lead across multiple projects and platforms, with extensive latitude for independent judgment to drive the required outcomes for Aker and its customers. You will: Lead client-specific security and assurance of highly complex, cloud-centric data and digital services across entire lifecycle (strategy, design, implementation and operations) Provide specialist advice and knowledge of HMG government security architecture and assurance … external security testing (e.g ITHC) of solutions on the public cloud (Azure, AWS, GCP), cloud native platforms (Docker, Kubernetes, etc.), and Software as a Service (SaaS) solutions. Formulate HMG InformationAssurance Risk Assessment and Risk Treatment Plans Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, implementing security standards such as ISO 27000 series … architecture experience across multiple domains: Cloud, Network, Infrastructure, Application, Data, IAM Cloud security concepts, technologies and best practices for delivering security across IaaS, PaaS, SaaS and Serverless architectures Implementing Information Security and Privacy Standards and Frameworks (e.g. ISO 27k, NIST800-53, CIS, GDPR) Leading security working groups and external security testing (ITHC, Penetration Testing, etc) of cloud solutions at More ❯
and recommend appropriate mitigations. Produce high-quality security documentation including RMADS, SyOPs, and Security Architecture Documents. Advise on suitable cyber assessment methods, including penetration testing and vulnerability analysis. Provide assurance on the effective implementation of cyber security controls and frameworks. Develop incident response plans and support clients during security breaches, including crisis management and media handling. Communicate clearly and … delivering cyber security consultancy within Defence, Government, or secure environments. Strong understanding of Secure by Design principles and Enterprise Architecture frameworks (e.g. TOGAF, MODAF). Familiarity with NSCS guidance, InformationAssurance standards, and MoD security processes (JSPs, Defcons). Technical expertise in IT security, cloud security, system hardening, boundary controls, cryptography, PKI, and protective monitoring. Experience producing RMADS More ❯
Hereford, Herefordshire, West Midlands, United Kingdom
Ncounter LTD
designing architectures and overseeing secure development. Expect variety: one week advising on risk management, the next helping to design secure solutions for enterprise-scale ICT, followed by leading on assurance activities or reviewing deliverables that set the standard for security across government. Youll work closely with both technical and non-technical stakeholders, translating complex risks into practical recommendations, while … building trusted relationships with clients. What youll be doing Advising projects on informationassurance and cyber security best practice Designing and reviewing security architectures for enterprise systems Delivering risk assessments and presenting findings to senior stakeholders Producing and reviewing security assurance documentation aligned to HMG frameworks Supporting secure development and accreditation activities Contributing to the investigation of More ❯
We're looking for a proactive and security-minded professional to join a government-aligned programme, supporting cyber assurance and compliance activities. This is a hands-on role suited to someone with experience in public sector or defence environments, particularly around informationassurance and threat reporting. Key Responsibilities: Deliver internal security audits aligned to ISO 27001 standards More ❯
of a university IT Group's services and products. This will be dealing directly with end user needs and issues, providing empathy and understanding, whilst also offering confidence and assurance that customers' needs and requirements can be met and solved quickly in a professional manner. The main purpose of the role is to provide smart hands-on support across … expertise to issues, implementing resolutions and escalation pathways for more complex problems Documenting solutions clearly and accurately in a consistent manner Ensuring confidentiality, integrity, and availability for data. Following information security and data management policies ensuring, least privilege and informationassurance Provide comprehensive technical support for hardware, software, and networking issues, including installation, configuration, and troubleshooting. Deliver More ❯
of a university IT Group's services and products. This will be dealing directly with end user needs and issues, providing empathy and understanding, whilst also offering confidence and assurance that customers' needs and requirements can be met and solved quickly in a professional manner. The main purpose of the role is to provide smart hands-on support across … expertise to issues, implementing resolutions and escalation pathways for more complex problems Documenting solutions clearly and accurately in a consistent manner Ensuring confidentiality, integrity, and availability for data. Following information security and data management policies ensuring, least privilege and informationassurance Provide comprehensive technical support for hardware, software, and networking issues, including installation, configuration, and troubleshooting. Deliver More ❯
of a university IT Group's services and products. This will be dealing directly with end user needs and issues, providing empathy and understanding, whilst also offering confidence and assurance that customers' needs and requirements can be met and solved quickly in a professional manner. The main purpose of the role is to provide smart hands-on support across … expertise to issues, implementing resolutions and escalation pathways for more complex problems Documenting solutions clearly and accurately in a consistent manner Ensuring confidentiality, integrity, and availability for data. Following information security and data management policies ensuring, least privilege and informationassurance Provide comprehensive technical support for hardware, software, and networking issues, including installation, configuration, and troubleshooting. Deliver More ❯
of a university IT Group's services and products. This will be dealing directly with end user needs and issues, providing empathy and understanding, whilst also offering confidence and assurance that customers' needs and requirements can be met and solved quickly in a professional manner. The main purpose of the role is to provide smart hands-on support across … expertise to issues, implementing resolutions and escalation pathways for more complex problems Documenting solutions clearly and accurately in a consistent manner Ensuring confidentiality, integrity, and availability for data. Following information security and data management policies ensuring, least privilege and informationassurance Provide comprehensive technical support for hardware, software, and networking issues, including installation, configuration, and troubleshooting. Deliver More ❯
of a university IT Group's services and products. This will be dealing directly with end user needs and issues, providing empathy and understanding, whilst also offering confidence and assurance that customers' needs and requirements can be met and solved quickly in a professional manner. The main purpose of the role is to provide smart hands-on support across … expertise to issues, implementing resolutions and escalation pathways for more complex problems Documenting solutions clearly and accurately in a consistent manner Ensuring confidentiality, integrity, and availability for data. Following information security and data management policies ensuring, least privilege and informationassurance Provide comprehensive technical support for hardware, software, and networking issues, including installation, configuration, and troubleshooting. Deliver More ❯
Hatfield, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
Synergize Consulting Limited
life cycle. Experience in analysing cyber threats. Strong communication skills. Experience producing intelligence reports for varied audiences. Familiarity with cyber threats, threat actors, attack vectors, and vulnerabilities. Knowledge of informationassurance standards and frameworks including CIS, NIST, ISO 27001, Cyber Essentials/Essentials Plus, GDPR. Knowledge of threat cyber security frameworks such as MITRE ATT&CK, Kill Chain More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited trading as CBSbutler
migrations and Cisco Expressway upgrades , ensuring minimal disruption and full compliance with defence standards. Develop and maintain technical documentation, configuration guides, and operational procedures aligned with MOD/Defence InformationAssurance frameworks. Troubleshoot complex UC/network issues, working closely with infrastructure, security, and operations teams. Required Skills & Experience Proven experience supporting secure IT and Unified Communications environments More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited trading as CBSbutler
migrations and Cisco Expressway upgrades , ensuring minimal disruption and full compliance with defence standards. Develop and maintain technical documentation, configuration guides, and operational procedures aligned with MOD/Defence InformationAssurance frameworks. Troubleshoot complex UC/network issues, working closely with infrastructure, security, and operations teams. Required Skills & Experience Proven experience supporting secure IT and Unified Communications environments More ❯
migrations and Cisco Expressway upgrades , ensuring minimal disruption and full compliance with defence standards. Develop and maintain technical documentation, configuration guides, and operational procedures aligned with MOD/Defence InformationAssurance frameworks. Troubleshoot complex UC/network issues, working closely with infrastructure, security, and operations teams. Required Skills & Experience Proven experience supporting secure IT and Unified Communications environments More ❯
design of improvements. o Review/agreement of External Interface documents and management of interface baseline. o Leading other engineering activities such as performance testing, human factors, safety analysis, informationassurance About You: As an experienced Systems Engineer, your skills and experience may include; o Experience of working with Software Systems o Experience of developing and enhancing a More ❯
including how these processes influence the design Customer and/or supplier liaison experience for technical aspects, verifying and obtaining agreement that customer needs are satisfied An understanding of informationassurance, cyber security and environmental impact aspects relating to real time embedded engineering products More ❯
including how these processes influence the design Customer and/or supplier liaison experience for technical aspects, verifying and obtaining agreement that customer needs are satisfied An understanding of informationassurance, cyber security and environmental impact aspects relating to real time embedded engineering products More ❯
learning, and access to an incredible breadth and depth of opportunities to grow your career. The EC&I Systems and Safety team develops the system design, safety case and informationassurance case for the Reactor Control and Instrumentation, Power Systems and Plant Sensors for the Dreadnought and SSN AUKUS classes of submarine. You will be involved in developing More ❯
An exciting opportunity has arisen for a Systems Engineer to join a cutting-edge team developing advanced Cyber and InformationAssurance (IA) products. This role offers the chance to work across multiple development projects, applying innovative engineering solutions to complex, real-world problems. What You’ll Do Take technical ownership of system engineering activities across one or more … fantastic opportunity for an experienced System Engineer, or an electronics/software engineer looking to broaden their scope, to play a key role in the design of unique, high-assurance products used in critical national security applications. You’ll work with an innovative team tackling challenging technical problems and shaping solutions from concept to delivery. More ❯
An exciting opportunity has arisen for a Systems Engineer to join a cutting-edge team developing advanced Cyber and InformationAssurance (IA) products. This role offers the chance to work across multiple development projects, applying innovative engineering solutions to complex, real-world problems. What You’ll Do Take technical ownership of system engineering activities across one or more … fantastic opportunity for an experienced System Engineer, or an electronics/software engineer looking to broaden their scope, to play a key role in the design of unique, high-assurance products used in critical national security applications. You’ll work with an innovative team tackling challenging technical problems and shaping solutions from concept to delivery. More ❯