Work closely with MOD stakeholders to understand requirements, translate them into architectural solutions, and ensure delivery aligns with their long term cloud roadmap. • Security & Compliance: Embed best practices-covering NCSC principles, government standards, and regulatory requirements-into all designs and transition plans. Required qualifications to be successful in this role • Cloud Expertise: Deep knowledge of private cloud platforms and public … Defence cloud delivery, with 3+ years as lead architect for legacy to cloud migrations. • Certifications: Cloud Architect Expert certification in at least one major platform. • Government Frameworks: Familiarity with NCSC Cloud Security Principles, Technology Code of Practice, G Cloud, Digital Service Standards, or similar. Why CGI? • Shape the UK's Defence cloud transformation strategy • Work on high classification, mission critical More ❯
Guidelines). Has a comprehensive understanding of what it takes to comply with cybersecurity industry standards and frameworks in practise (e.g. ISO 27001, NIST CSF, SP 800-53, NCSC CAF, Cyber Essentials). Has a thorough understanding of cybersecurity threat and risk with the ability to think like an attacker and design controls that make a real difference. More ❯
Guidelines). Has a comprehensive understanding of what it takes to comply with cybersecurity industry standards and frameworks in practise (e.g. ISO 27001, NIST CSF, SP 800-53, NCSC CAF, Cyber Essentials). Has a thorough understanding of cybersecurity threat and risk with the ability to think like an attacker and design controls that make a real difference. More ❯
In this role you will be the driving force behind SLC's cybersecurity strategy, meeting compliance obligations and engaging with key external stakeholders (eg. Government Security Group, GDS and NCSC). You will help shape the security culture, align security with the technology strategy and business objectives, and provide clear and actionable advice to colleagues across SLC to ensure colleague … staff with demonstrated ability to build and develop high-performing security organisations In-depth understanding of government and/or industry cybersecurity frameworks (at least one of the following: NCSC CAF, PCI DSS, NIST, CIS) combined with very good technology and security knowledge, including system architecture understanding with potential specialisation in specific areas Experience developing long-term security strategies that More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
Leonardo
management systems for a range of pan domain products and services in accordance with customer, regulatory and legislative expectations. Familiarity with Legislation – e.g. IPA, DPA, Official Secrets Act Registered NCSC Certified Professional at lead level, or equivalent NCSC recognised qualification. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including HMG Security Policy Framework, ISO security standards, RTCA DO326A. … Familiarity with the principles of incident investigation and knows how to implement an investigation process; Practical experience of NCSC and Common Criteria security evaluation techniques and requirements up to High Grade. Knowledge of current Crypto technologies, Key Management Systems & practical COMSEC implementations. Experience of identifying the future Product Security needs of the company, regularly delivering training courses within a corporate More ❯
Aberdeen, Scotland, United Kingdom Hybrid / WFH Options
KPMG United Kingdom
history in KPMG. Our clients are diverse and we cover many sectors with particular specialisms in Financial Services, High-end Defence Assurance and Telecommunications. We work closely with the NCSC developing new schemes such as Cross Domain Solutions Testing ( https://www.ncsc.gov.uk/blog-post/ncsc-cross-domain-industry-pilot-stage-2 ) and are members of all current … NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn't on offer elsewhere. Our team is made up of skilled individuals at different stages in their careers, centred around three locations in Leeds, Bristol and London, therefore we are able to offer flexibility in base location, as well as embracing remote working. Responsibilities … KPMG's broader offerings • Contributing to proposals and participating in client presentations. The Person Required • Passion for Hacking! • Clear and demonstrable understanding of penetration testing and red-teaming including NCSC and CREST accredited schemes. • Proven experience of successfully delivering testing • Proven experience working within the UK cybersecurity industry • Demonstrable understanding and practical application of information security principles • Strong technical More ❯
Livingston, West Lothian, United Kingdom Hybrid / WFH Options
Sky
any security gaps or vulnerabilities. Work with auditors to and supply evidence as required. Stay ahead of the security curve and make best practice recommendations to senior management (NIST, NCSC etc.) Be able to work autonomously on complex projects, gathering key information and making appropriate recommendations. Mentoring and support for other members of the Team. What You'll Bring Solid More ❯
and delivering services in line with internal and external SLAs. Experience of Information Security and controls to mitigate threats within secure IT environments. Experience of working to CIS, Microsoft, NCSC, ISO27001 and Cyber Essentials Plus frameworks. Networking knowledge and concepts including switching, routing, firewalls, load balancing, TCP/IP, VPN/VLAN, Routing, Enterprise Wi-Fi, DHCP, DNS, IP Addressing More ❯
team of infrastructure and DevOps engineers Build secure, scalable infrastructure (Windows/Linux, VMs, containers) Drive CI/CD, automation, and Infrastructure as Code practices Ensure compliance with NIST, NCSC, CIS, JSP, and ISO 27001 Oversee backup, DR, and business continuity strategies Maintain strong cyber hygiene and proactively manage vulnerabilities Create documentation and a knowledge-sharing culture Work cross-functionally … on expertise with strategic oversight. Essential Experience & Skills: Proven experience in secure IT infrastructure & DevOps leadership Strong technical background in systems administration & automation Solid grasp of compliance frameworks (NIST, NCSC, JSP) Excellent communication and stakeholder management Tech Stack You’ll Work With: OS: Windows Server, Hardened Linux Who You Are You're resilient, resourceful, and ready to lead. You enjoy More ❯
risks, and respond to incidents with confidence.- Driving continuous improvement and knowledge sharing across the business.- Playing a key role in service transitions and ensuring compliance with ISO 27001, NCSC guidance, and more. What You’ll Bring- Experience in IT service delivery or security operations—especially in secure or regulated environments.- A working knowledge of SFIA-aligned practices and frameworks. More ❯
team of infrastructure and DevOps engineers Build secure, scalable infrastructure (Windows/Linux, VMs, containers) Drive CI/CD, automation, and Infrastructure as Code practices Ensure compliance with NIST, NCSC, CIS, JSP, and ISO 27001 Oversee backup, DR, and business continuity strategies Maintain strong cyber hygiene and proactively manage vulnerabilities Create documentation and a knowledge-sharing culture Work cross-functionally … on expertise with strategic oversight. Essential Experience & Skills: Proven experience in secure IT infrastructure & DevOps leadership Strong technical background in systems administration & automation Solid grasp of compliance frameworks (NIST, NCSC, JSP) Excellent communication and stakeholder management Tech Stack You’ll Work With: OS: Windows Server, Hardened Linux Who You Are You're resilient, resourceful, and ready to lead. You enjoy More ❯
Farnborough, Hampshire, England, United Kingdom Hybrid / WFH Options
HighPoint
organisation. Implementing best-practice standards in the use of technology; appropriate and effective choice of technologies, database structures, documentation. Securing in-house software tools in-line, to align with NCSC guidelines and ultimately adhere to MOD requirements (i.e., Secure by Design and JSP440). Architecting and implementing cloud solutions to make software available to stakeholders reliably. Developing the technical knowledge More ❯
Bracknell, Berkshire, South East, United Kingdom Hybrid / WFH Options
CBSbutler Holdings Limited
solutions across IaaS, PaaS, and SaaS - Hands-on experience with automation tools and IaC (e.g. Terraform, Ansible, or similar) - Knowledge of recognised security standards and governance models (e.g. ISO27001, NCSC, CIS Benchmarks) - Proven ability to simplify complex technical concepts for diverse audiences - Experience supporting pre-sales activities and responding to bids/RFIs Please apply for immediate interview! CBSbutler is More ❯
London, England, United Kingdom Hybrid / WFH Options
Zaizi Ltd
Open Source BPMN workflow engines (Camunda, Activiti or Flowable) Experience on a front-end javascript framework such as react, angular or vue.js RedHat OpenShift for container orchestration Knowledge of NCSC’s 14 cloud security principles. SC Clearance: Zaizi works with UK Central Government departments on a range of projects. To be able to work on our customer projects, employees must More ❯
cloud architectures. • Certified Salesforce Application Architect and/or System Architect (CTA preferred). • Knowledge of Azure, AWS, and integrations with legacy systems. • Familiarity with UK public sector compliance (NCSC, ISO 27001, GDS). • Strong commercial and leadership experience in cross-functional delivery teams. • Eligible for SC or DV clearance (active clearance desirable). Package & Benefits • Up to More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Anson McCade
cloud architectures. • Certified Salesforce Application Architect and/or System Architect (CTA preferred). • Knowledge of Azure, AWS, and integrations with legacy systems. • Familiarity with UK public sector compliance (NCSC, ISO 27001, GDS). • Strong commercial and leadership experience in cross-functional delivery teams. • Eligible for SC or DV clearance (active clearance desirable). Package & Benefits • Up to More ❯
Bath, England, United Kingdom Hybrid / WFH Options
Reed
the successful candidate will require SC Clearance. Responsibilities include: Leading technical work and bid input Defining project scopes with clients Supporting career development of cybersecurity professionals Applying HMG, NCSC, and international cyber standards Building stakeholder trust About You: Expertise in: Security governance, risk, and compliance (GRC) for complex systems Securing Operational Technologies (OT), especially in military platforms or Critical More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
FR Secure
Assurance within Defence or UK Government environments. Strong understanding of risk management frameworks and secure-by-design principles. Familiarity with government and defence security standards such as: HMG/NCSC IA Policies and Guidelines JSP440 and other MoD IA standards Cyber Essentials NIST, NIS-D ONR SyAPs (Security Assessment Principles) Excellent stakeholder communication skills – you can clearly explain complex securityMore ❯
Gloucester, Gloucestershire, South West, United Kingdom Hybrid / WFH Options
Forward Role
Assurance within Defence or UK Government environments. Strong understanding of risk management frameworks and secure-by-design principles. Familiarity with government and defence security standards such as: HMG/NCSC IA Policies and Guidelines JSP440 and other MoD IA standards Cyber Essentials NIST, NIS-D ONR SyAPs (Security Assessment Principles) Excellent stakeholder communication skills – you can clearly explain complex securityMore ❯
translating complex concepts into actionable plans. What You’ll Need: Experience delivering cybersecurity in OT environments (e.g., SCADA, ICS, DCS). Knowledge of frameworks like NIST, CAF, and NCSC guidelines. Excellent communication skills, with the ability to bridge the gap between technical and business stakeholders. This is a unique opportunity to step into a senior, impactful role in a More ❯
translating complex concepts into actionable plans. What You’ll Need: Experience delivering cybersecurity in OT environments (e.g., SCADA, ICS, DCS). Knowledge of frameworks like NIST, CAF, and NCSC guidelines. Excellent communication skills, with the ability to bridge the gap between technical and business stakeholders. This is a unique opportunity to step into a senior, impactful role in a More ❯
translating complex concepts into actionable plans. What You’ll Need: Experience delivering cybersecurity in OT environments (e.g., SCADA, ICS, DCS). Knowledge of frameworks like NIST, CAF, and NCSC guidelines. Excellent communication skills, with the ability to bridge the gap between technical and business stakeholders. This is a unique opportunity to step into a senior, impactful role in a More ❯
translating complex concepts into actionable plans. What You’ll Need: Experience delivering cybersecurity in OT environments (e.g., SCADA, ICS, DCS). Knowledge of frameworks like NIST, CAF, and NCSC guidelines. Excellent communication skills, with the ability to bridge the gap between technical and business stakeholders. This is a unique opportunity to step into a senior, impactful role in a More ❯
translating complex concepts into actionable plans. What You’ll Need: Experience delivering cybersecurity in OT environments (e.g., SCADA, ICS, DCS). Knowledge of frameworks like NIST, CAF, and NCSC guidelines. Excellent communication skills, with the ability to bridge the gap between technical and business stakeholders. This is a unique opportunity to step into a senior, impactful role in a More ❯
translating complex concepts into actionable plans. What You’ll Need: Experience delivering cybersecurity in OT environments (e.g., SCADA, ICS, DCS). Knowledge of frameworks like NIST, CAF, and NCSC guidelines. Excellent communication skills, with the ability to bridge the gap between technical and business stakeholders. This is a unique opportunity to step into a senior, impactful role in a More ❯