Easter Howgate, Midlothian, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
platform lockdown and configurations. It would be nice if you had: Understanding of the engineering lifecycle. Knowledge of current Cryptographic technologies,Key ManagementSystems & practicalCOMSECimplementations in line with MOD/NCSC standards. Knowledge of CyberSecurity & Airworthiness (RCTA-DO-326A/B, 355A & 356A). Security Clearance You must be eligible for full security clearance. For more information and guidance please … including Defence, Telecommunications, Energy and Finance to help secure national infrastructure and commerce in the UK and beyond. Our Practice is certified by the UK NationalCyberSecurityCentre (NCSC) in the provision of advice and guidance to our customers. At Leonardo UK, we believe that a diverse and inclusive work environment unlocks our people's full potential and drives More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Babcock Mission Critical Services España SA
the Security Lead Relevant experience of the Maritime Defence and MOD IT Domain, including knowledge of Government/MOD IA policy and process including JSP440, JSP453, JSP628, DIANs and NCSC IA guidance. Able to demonstrate the application of contextualised risk management in the application of technical/procedural/physical security controls within the risk/cost/benefit space. … Owner forms, Supplier Assurance Questionnaires. Experienced in relevant Security Policy and CyberSecurity Frameworks including the GovS 007, MOD Secure by Design (SbD), ISO27001 - Information Security Management Systems, NIST, NCSC IA Guidance Qualifications for the CyberSecurity Lead Educated to degree level or holds a relevant professional qualification or equivalent experience. Security Clearance The successful candidate must be able to More ❯
Warrington, Cheshire, United Kingdom Hybrid / WFH Options
Babcock Mission Critical Services España SA
CyberSecurity Lead: Relevant experience of the Maritime Defence and MOD IT Domain, including knowledge of Government/MOD IA policy and process including JSP440, JSP453, JSP628, DIANs and NCSC IA guidance. Able to demonstrate the application of contextualised risk management in the application of technical/procedural/physical security controls within the risk/cost/benefit space. … Owner forms, Supplier Assurance Questionnaires. Experienced in relevant Security Policy and CyberSecurity Frameworks including the GovS 007, MOD Secure by Design (SbD), ISO27001 - Information Security Management Systems, NIST, NCSC IA Guidance Qualifications for the IS & CyberSecurity Lead: Educated to degree level or holds a relevant professional qualification or equivalent experience. Security Clearance The successful candidate must be able More ❯
the Synoptix Cybersecurity capability. Skills Required: Essential: Knowledge of Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST 800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system … development environments Effective communication and report-writing skills Ability to work independently as well as collaboratively within multidisciplinary teams Desirable: CISSP, CISM, or relevant NCSC-certified qualifications Experience with model-based systems engineering (MBSE) Experience supporting formal security assurance processes Understanding of space system architectures or satellite communications DevSecOps awareness or experience with security automation Benefits: Annual Company Bonus More ❯
the Synoptix Cybersecurity capability. Skills Required: Essential: Knowledge of Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST 800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system … development environments Effective communication and report-writing skills Ability to work independently as well as collaboratively within multidisciplinary teams Desirable: CISSP, CISM, or relevant NCSC-certified qualifications Experience with model-based systems engineering (MBSE) Experience supporting formal security assurance processes Understanding of space system architectures or satellite communications DevSecOps awareness or experience with security automation Benefits: Annual Company Bonus More ❯
the Synoptix Cybersecurity capability. Skills Required: Essential: Knowledge of Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST 800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system … development environments Effective communication and report-writing skills Ability to work independently as well as collaboratively within multidisciplinary teams Desirable: CISSP, CISM, or relevant NCSC-certified qualifications Experience with model-based systems engineering (MBSE) Experience supporting formal security assurance processes Understanding of space system architectures or satellite communications DevSecOps awareness or experience with security automation Benefits: Annual Company Bonus More ❯
the Synoptix Cybersecurity capability. Skills Required: Essential: Knowledge of Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST 800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system … development environments Effective communication and report-writing skills Ability to work independently as well as collaboratively within multidisciplinary teams Desirable: CISSP, CISM, or relevant NCSC-certified qualifications Experience with model-based systems engineering (MBSE) Experience supporting formal security assurance processes Understanding of space system architectures or satellite communications DevSecOps awareness or experience with security automation Benefits: Annual Company Bonus More ❯
the Synoptix Cybersecurity capability. Skills Required: Essential: Knowledge of Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST 800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system … development environments Effective communication and report-writing skills Ability to work independently as well as collaboratively within multidisciplinary teams Desirable: CISSP, CISM, or relevant NCSC-certified qualifications Experience with model-based systems engineering (MBSE) Experience supporting formal security assurance processes Understanding of space system architectures or satellite communications DevSecOps awareness or experience with security automation Benefits: Annual Company Bonus More ❯
the Synoptix Cybersecurity capability. Skills Required: Essential: Knowledge of Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST 800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system … development environments Effective communication and report-writing skills Ability to work independently as well as collaboratively within multidisciplinary teams Desirable: CISSP, CISM, or relevant NCSC-certified qualifications Experience with model-based systems engineering (MBSE) Experience supporting formal security assurance processes Understanding of space system architectures or satellite communications DevSecOps awareness or experience with security automation Benefits: Annual Company Bonus More ❯
Leeds/London/Exeter: Other locations could be considered, United Kingdom
NHS England
across the organisation, with the opportunity to directly influence key initiatives. The CISO team at NHS England has received national and international recognition from the NationalCyberSecurityCentre (NCSC), Gartner, and other leading authorities, for its pioneering work in areas such as risk remediation, quantum computing, and third-party risk management. At NHS England, your work will have direct More ❯
be responsible for overseeing Security Operations and ensuring the highest level of security for the customer. The CyberSecurity Consultant leads detailed risk assessments, implements industry-standard frameworks (NIST, NCSC, NIS2), and actively manages SIEM/XDR tools such as IBM QRadar, Microsoft Sentinel, and Defender XDR. This role involves deeper client interaction, proactive risk management, and advanced threat detection … XDR and threat detection. Conduct security posture reviews and gap analysis. Prepare reports and present findings to client stakeholders. Location London, UK Good understanding of cybersecurity frameworks (NIST CSF, NCSC CAF, NIS2, NIST 800-30). Good understanding of risk assessment methodologies (NIST 800-30). Hands-on experience with SIEM/XDR solutions (QRadar, Sentinel, Defender XDR). Familiarity More ❯
network/system resilience 3. Ensure that all controls are in place to ensure continued certification to the Information Security Management Standard ISO27001 and continued adherence to the NationalCyberSecurityCentre cloud security principles. 4. When required conduct forensically sound acquisitions of computer systems and associated media to accumulate evidence in the area of forensic computer science. This will … issues as appropriate to the CyberSecurity Operations Team Lead Delivery Management 22. Carry out Information Risk Assessments and produce comprehensive Risk Assessment Documentation in accordance with the NationalCyberSecurityCentre best practice. 23. Acts as an SME and recognised point of contact for advising on queries covering their area of responsibility from internal and external sources. Establishing the More ❯
L33, Knowsley, Merseyside, United Kingdom Hybrid / WFH Options
Curveball Solutions
Microsoft 365 security leveraging Purview, Conditional Access, MFA to safeguard modern workplaces. Ensuring compliance with GDPR (DPA 2018), Cyber Essentials (Basic & Plus), and ISO 27001, supported by frameworks like NCSC and NIST. Operating around cybersecurity fundamentals: CIA (Confidentiality, Integrity, Availability), proactive threat prevention, and rapid incident response About You You’re naturally aligned with MSP-style work, deeply familiar with … designing and delivering compliance aligned services across GDPR, Cyber Essentials, ISO 27001. Proficient in using Microsoft 365 security stack: Purview, Defender, Conditional Access, MFA. Fluent in cybersecurity frameworks (CIA, NCSC, NIST) and modern threat prevention approaches. Why Curveball Make a real impact: You’ll lead the cybersecurity footprint across clients and services. True partnership: We treat clients like collaborators, not More ❯
Liverpool, Merseyside, North West, United Kingdom Hybrid / WFH Options
Curveball Solutions
Microsoft 365 security leveraging Purview, Conditional Access, MFA to safeguard modern workplaces. Ensuring compliance with GDPR (DPA 2018), Cyber Essentials (Basic & Plus), and ISO 27001, supported by frameworks like NCSC and NIST. Operating around cybersecurity fundamentals: CIA (Confidentiality, Integrity, Availability), proactive threat prevention, and rapid incident response About You You're naturally aligned with MSP-style work, deeply familiar with … designing and delivering compliance aligned services across GDPR, Cyber Essentials, ISO 27001. Proficient in using Microsoft 365 security stack: Purview, Defender, Conditional Access, MFA. Fluent in cybersecurity frameworks (CIA, NCSC, NIST) and modern threat prevention approaches. Why Curveball Make a real impact : You'll lead the cybersecurity footprint across clients and services. True partnership : We treat clients like collaborators, not More ❯
system for complex products and high integrity electronic systems in accordance with customer, regulatory and legislative expectations. Familiarity with current Legislation - eg IPA, DPA, Official Secrets Act. Registration with NCSC Certified Professional at lead level, or equivalent NCSC recognised qualification. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including HMG Security Policy Framework, ISO security standards, DO326A. Familiarity … with incident investigation processes and knowledge of how to implement an investigation process. Practical experience of NCSC and Common Criteria security evaluation techniques and requirements up to High Grade. Knowledge of current Crypto technologies, Key Management Systems & practical COMSEC implementations. Ideally a background in design implementation of high integrity complex electronics, such as Software design to DO178C, Complex Electronics hardware More ❯
system for complex products and high integrity electronic systems in accordance with customer, regulatory and legislative expectations. Familiarity with current Legislation - eg IPA, DPA, Official Secrets Act. Registration with NCSC Certified Professional at lead level, or equivalent NCSC recognised qualification. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including HMG Security Policy Framework, ISO security standards, DO326A. Familiarity … with incident investigation processes and knowledge of how to implement an investigation process. Practical experience of NCSC and Common Criteria security evaluation techniques and requirements up to High Grade. Knowledge of current Crypto technologies, Key Management Systems & practical COMSEC implementations. Ideally a background in design implementation of high integrity complex electronics, such as Software design to DO178C, Complex Electronics hardware More ❯
this is a great opportunity to do so. What you'll be doing Design and deliver secure, scalable multi-cloud solutions tailored to UK government needs, ensuring compliance with NCSC, GDPR, and other relevant standards. Lead technical elements of pre-sales engagements, from opportunity qualification to solution design and client presentations. Stay ahead of the curve on cloud technologies, with … and implementing solutions across AWS, Azure, and/or GCP, ideally for public sector clients. Familiarity with cloud certifications and strong platform knowledge. Awareness of UK government frameworks (e.g. NCSC, GDPR) with expertise in secure solution design. Excellent communication skills, able to convey complex concepts to technical and non-technical audiences. Experience in pre-sales, proposal writing, and building long More ❯
of security infrastructure and tools to support a SOC's mission of monitoring, detecting, analysing, and responding to cyber threats. Knowledge of the following policies and processes (required): NIST NCSC SOC Guidance NCSC CAF (CNI) Nice to have: MoD JSP 440 MoD JSP 503 MoD JSP 45 This is an excellent opportunity to work on a significant project. If you More ❯
Belfast, Northern Ireland, United Kingdom Hybrid / WFH Options
Cyber Guarded Ltd
and client site requirements. Sponsorship is not available. Who we are: Cyber Guarded Ltd is a long-established and independent cybersecurity company based in Belfast. As the premier NCSC-approved supplier for CHECK Penetration Testing in Northern Ireland, including Cyber Incident Exercising being conducted at the highest levels, along with Cyber Advisor - Cyber Essentials, we support clients across both … Cyber Scheme Team Member (CSTM) or CREST Registered Penetration Tester (CRT) or have the technical ability and motivation to gain the above qualifications in the near future to achieve NCSC CHECK Penetration Testing status. What You’ll Do: Perform infrastructure, web, cloud, and OT penetration testing Produce clear, actionable reports and remediation advice Engage with clients through the full testing More ❯
newtownabbey, antrim, united kingdom Hybrid / WFH Options
Cyber Guarded Ltd
and client site requirements. Sponsorship is not available. Who we are: Cyber Guarded Ltd is a long-established and independent cybersecurity company based in Belfast. As the premier NCSC-approved supplier for CHECK Penetration Testing in Northern Ireland, including Cyber Incident Exercising being conducted at the highest levels, along with Cyber Advisor - Cyber Essentials, we support clients across both … Cyber Scheme Team Member (CSTM) or CREST Registered Penetration Tester (CRT) or have the technical ability and motivation to gain the above qualifications in the near future to achieve NCSC CHECK Penetration Testing status. What You’ll Do: Perform infrastructure, web, cloud, and OT penetration testing Produce clear, actionable reports and remediation advice Engage with clients through the full testing More ❯
finaghy, antrim, united kingdom Hybrid / WFH Options
Cyber Guarded Ltd
and client site requirements. Sponsorship is not available. Who we are: Cyber Guarded Ltd is a long-established and independent cybersecurity company based in Belfast. As the premier NCSC-approved supplier for CHECK Penetration Testing in Northern Ireland, including Cyber Incident Exercising being conducted at the highest levels, along with Cyber Advisor - Cyber Essentials, we support clients across both … Cyber Scheme Team Member (CSTM) or CREST Registered Penetration Tester (CRT) or have the technical ability and motivation to gain the above qualifications in the near future to achieve NCSC CHECK Penetration Testing status. What You’ll Do: Perform infrastructure, web, cloud, and OT penetration testing Produce clear, actionable reports and remediation advice Engage with clients through the full testing More ❯
and a Build Lead to create new, minimum-viable capabilities and hand them into service. Both posts sit under the CyberSecurity Response Manager and are driven by the NCSCCyber Assessment Framework (CAF) and NIST SP 800-61 r3 guidance for incident response. The culture is "good-enough-today, better-tomorrow": short, bullet-point artefacts, daily measurable progress, and … with the Managed Security Services Provider (MSSP) is essential to uplift the service and assure resilience. ________________________________________ Shared Responsibilities - Operate to recognised frameworks - align policies, processes and runbooks to the NCSC CAF objectives for CNI resilience and the incident-handling lifecycle in NIST SP 800-61 r3, keeping documentation concise and auditable. - Embed pragmatic process - create bullet-point playbooks, runbooks and … led at least five SOC builds or rapid rebuilds from zero to operational within six-to-twelve months, ideally in regulated or high-availability sectors. - Framework fluent - comfortable applying NCSC CAF principles and NIST SP 800-61 r3 incident-handling guidance pragmatically, avoiding bureaucracy. - Hands-on leadership - coaches senior analysts, removes blockers in real time, and can work directly in More ❯