cyber risk, cyber maturity, security architecture, cyber transformation and regulatory compliance for cyber. Experience of various recognised cybersecurity relevant standards and regulations, such as NIST CSF, CRI2.0, ISO27001, NCSC CAF, GDPR and NIS2. Experience working in a variety of environments or organisational contexts to develop cyber strategy and manage cyber risk. Desire to work with large organisations trying to More ❯
cyber risk, cyber maturity, security architecture, cyber transformation and regulatory compliance for cyber. Experience of various recognised cybersecurity relevant standards and regulations, such as NIST CSF, CRI2.0, ISO27001, NCSC CAF, GDPR and NIS2. Experience working in a variety of environments or organisational contexts to develop cyber strategy and manage cyber risk. Desire to work with large organisations trying to More ❯
cyber risk, cyber maturity, security architecture, cyber transformation and regulatory compliance for cyber. Experience of various recognised cybersecurity relevant standards and regulations, such as NIST CSF, CRI2.0, ISO27001, NCSC CAF, GDPR and NIS2. Experience working in a variety of environments or organisational contexts to develop cyber strategy and manage cyber risk. Desire to work with large organisations trying to More ❯
in this role: Exceptional planning and communication skills are key for this role, and you'll have a knowledge of security standards and processes such as ISO 27001 standards, (NCSC) CAF, Cyber Essentials, NIST and Cyber Essentials/Plus. We'll also look for your experience in: • Developing cyber policy and procedures • Data protection and privacy • Security change management • Understanding More ❯
Bury St Edmunds, England, United Kingdom Hybrid / WFH Options
Hamilton Barnes 🌳
to undergo DBS and Counter Terrorist Check. It would be great if you had: Certifications such as CISSP, or other relevant qualifications. Experience with additional frameworks (e.g., SOC2, NIST, NCSC CAF). More than 2 years’ experience delivering IT or cybersecurity solutions. Benefits: 30 days annual leave + 8 bank holidays Additional day off for your birthday 3% employer pension More ❯
Bury St, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
to undergo DBS and Counter Terrorist Check. It would be great if you had: Certifications such as CISSP, or other relevant qualifications. Experience with additional frameworks (e.g., SOC2, NIST, NCSC CAF). More than 2 years’ experience delivering IT or cybersecurity solutions. 30 days annual leave + 8 bank holidays Additional day off for your birthday Cycle to Work and More ❯
London, England, United Kingdom Hybrid / WFH Options
Moore Kingston Smith
leadership (e.g., blogs, webinars) What we're looking for Experience in cybersecurity consulting, security auditing or risk advisory Working knowledge of industry frameworks such as ISO 27001, NIST, CIS, NCSC 10 Steps and GDPR Excellent written and verbal communication - able to translate tech into plain English A client-focused mindset with strong problem-solving skills Industry certifications (e.g. ISO More ❯
London, England, United Kingdom Hybrid / WFH Options
Ofgem
resilience in the Downstream Gas and Electricity (DGE) sector. The key purpose of the role is to monitor, support, report and instruct against the regulatory frameworks such as the NCSCCyber Assurance Framework to ensure operational systems and networks owned and/or managed, by Operators of Essential Services, in the electricity and downstream gas sectors in Great Britain, remain … be met Key Skills/Capabilities Required Experience of security assurance in the Oil, Gas, Electricity industry. Experience in utilising operational technology/ICS related standards, NIS Regulations and NCSCCyber Assurance Framework. Person specification Role Criteria [LEAD] Qualification in cybersecurity, evidenced through an appropriate professional qualification such as CISSP, CISA, CISM, ISO 27001 Lead Auditor, GICSP, SA/ More ❯
City of London, England, United Kingdom Hybrid / WFH Options
Bridewell
support Quality Assure other consultants work as required Input into the development of Bridewell security methodologies. You will need to have experience in: Implementing security standards such as ISO27001, NCSC CAF, NIST Conducting CyberSecurity risk assessments and managing risk management activities Good general knowledge of IT systems covering traditional infrastructure, cloud platforms and SaaS Working within an operational securityMore ❯
Farnborough, England, United Kingdom Hybrid / WFH Options
Copello Global
Information Security and CyberSecurity skills with knowledge of: Cloud Security (AWS) Experience in Vulnerability Assessments and Incident Management, Implementation of security controls, UK Information Security standards (eg. MoD, NCSC, NIST), Excellent communication skills, Clearance UK Security Clearance is essential to start. Apply To apply, follow the instructions on this page, send an updated CV to myles@copello.co.uk referencing the More ❯
Newcastle upon Tyne, England, United Kingdom Hybrid / WFH Options
Leonardo
verification, validation, and remedial planning. Collaboration with engineers and architects for secure solutions. Nice to have: Understanding of engineering lifecycle. Knowledge of cryptographic technologies, key management, COMSEC, MOD/NCSC standards. Knowledge of CyberSecurity & Airworthiness standards. Security Clearance Eligible for full security clearance. More info: UK Security Clearance Levels Life at Leonardo Benefits include flexible working, private healthcare, generous … Cyber & Security Division (CSD) is a key part of Leonardo UK, delivering innovative security solutions across civil and defence sectors. Our Cyber Consulting Practice is certified by the UK NCSC and works globally to secure infrastructure and commerce. Our Values We promote diversity and inclusion, fostering a welcoming environment where everyone can thrive and feel connected. Locations Primary: Edinburgh, GB More ❯
Pre-Sales, Security Engineering, CyberSecurity Consultant and Solution Architect. Technical University or bachelor's preferred. Preferred experience in Central Government/UK Public Sector/CNI. Understanding of NCSC Secure design principles, NCSC Cloud Security Principles and NIST framework would be beneficial. Good exposure to pre-sales role involved in CyberSecurity Solutioning and understanding the Security Market. Involvement More ❯
product development activities. Liaison with Security Accreditors and Security Assurance Coordinators in support of security accreditation. Preparation of Protection Profiles, Security Targets and Evaluation Management Plans, and liaison with NCSC and commercial evaluation teams in support of evaluation activities. Preparation of TEMPEST Control Plans, advising development teams on appropriate implementation techniques and liaising with TEMPEST test facilities. Advising development teams … solutions for a military &/or commercial products and systems. Graduate degree in relevant engineering, computing or related scientific discipline, and/or evidence of further professional study. Registered NCSC certified professional at senior level or above, or NCSC recognised qualification, e.g. ISC2 Certified Information System Security Professional. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including Government … Functional Standard GovS 007: Security, HMG IS1&2, ISO27000 series standards, NIST SP800 series standards, JSP440, JSP604, guidance material provided by NCSC, CPNI and NIST. Practical experience of producing Security Accreditation documentation. Practical experience of NCSC and Common Criteria security evaluation techniques. Knowledge of current crypto technologies and key management systems. Model Base System Engineering (MBSE) knowledge. Understanding operating systems More ❯
London, England, United Kingdom Hybrid / WFH Options
Gespreksleider Jacobs
and concise written and verbal communications to senior stakeholders on complex issues Relevant certifications such as GRCP, ISC2 CGRC, or CRISC or willingness to obtain Experience of working with NCSC & CAF cybersecurity standards and guidance Excellent leadership skills, with an ability to build, motivate and inspire teams through periods of ambiguity, comfortable working in a complex environment and across More ❯
Conduct technical investigations into a complex hybrid On-Prem AD and Entra environment. Design, document, test, and implement a secure approach to separating high-privilege accounts in line with NCSC and Microsoft best practices. Execute closed user group testing, followed by phased rollout to 30–150 users with minimal disruption. Produce high-quality documentation suitable for direct client consumption and More ❯
Corsham, Wiltshire, United Kingdom Hybrid / WFH Options
Experis
on secure cloud adoption, data protection, and architectural risk management Conduct security assessments, identifying risks and proposing effective mitigation strategies Ensure compliance with MOD policies, including JSP 440, and NCSC cloud security principles Work closely with delivery teams, architects, and senior stakeholders to embed security throughout the solution lifecycle Support security assurance and accreditation activities for cloud-based systems Essential More ❯
Gillingham, Brompton, Medway, Kent, United Kingdom Hybrid / WFH Options
Tilt Recruitment
Strong programming/scripting skills (Python, Go, Groovy) with a clean, secure coding ethos. Microsoft Azure Security Engineer Associate or AWS equivalent is essential, along with Cyber Essentials/NCSC certification (or similar). About the company With a central mission to provide fair financial solutions to all, our client is a specialist lending and retail savings group who are More ❯
Luton, England, United Kingdom Hybrid / WFH Options
LHH
product development activities. Liaison with Security Accreditors and Security Assurance Coordinators in support of security accreditation. Preparation of Protection Profiles, Security Targets and Evaluation Management Plans, and liaison with NCSC and commercial evaluation teams in support of evaluation activities. Preparation of TEMPEST Control Plans, advising development teams on appropriate implementation techniques and liaising with TEMPEST test facilities. Advising development teams … solutions for a military &/or commercial products and systems. Graduate degree in relevant engineering, computing or related scientific discipline, and/or evidence of further professional study. Registered NCSC certified professional at senior level or above, or NCSC recognised qualification, e.g. ISC2Certified Information System Security Professional. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including Government Functional … Standard GovS 007: Security, HMG IS1&2, ISO27000 series standards, NIST SP800 series standards, JSP440, JSP604, guidance material provided by NCSC, CPNI and NIST. Practical experience of producing Security Accreditation documentation Practical experience of NCSC and Common Criteria security evaluation techniques. Knowledge of current crypto technologies and key management systems Model Base System Engineering (MBSE) knowledge Understanding operating systems, firmware More ❯
modern SecOps environments, and engineer automation and orchestration playbooks to streamline detection and response activities. We design playbooks for investigation, response, and recovery. We are assured by the UK NCSC under its Enhanced Cyber Incident Response scheme, to respond to sophisticated attacks on networks of national significance. Recent incidents we have responded to include human-operated ransomware attacks on some More ❯
solving skills Ability to manage competing priorities and deliver under pressure A full UK driving license and access to a business-insured vehicle Desirable Skills Familiarity with Cyber Essentials, NCSC, NIST and ISO 27001 standards Experience with cloud platforms (e.g., Azure, AWS) Knowledge of cybersecurity frameworks and tools Strong communication and stakeholder engagement skills About us At CHCP, we're More ❯
and information security. You will work across diverse systems and projects, supporting end-users, managing incident response workflows, and ensuring security and operational compliance in line with ISO and NCSC frameworks. Key Responsibilities Provide 1 st and 2 nd line technical support across business systems and infrastructure. Analyse IT and business requirements to support system improvements and IT service delivery. … M365, and collaboration tools). Document issues, actions taken, and create knowledge base articles for recurring incidents. Perform basic system security reviews and contribute to compliance efforts (ISO 27001, NCSC). Support onboarding/offboarding processes and manage hardware/software provisioning. Monitor system performance and user access controls to ensure continuity and security. Assist in the preparation of reports More ❯
Rugby, Warwickshire, West Midlands, United Kingdom
Morgan Sindall Construction
risks, and respond to incidents with confidence. - Driving continuous improvement and knowledge sharing across the business. - Playing a key role in service transitions and ensuring compliance with ISO 27001, NCSC guidance, and more. What Youll Bring - Experience in IT service delivery or security operationsespecially in secure or regulated environments. - A working knowledge of SFIA-aligned practices and frameworks. - Strong communication More ❯
prevent recurrence and minimise technical debt Providing out of hours support where necessary - shifts managed via on-call rota Interpreting the client security standards and best practice such as NCSC guidance, then implementing process and tools that allow the team to respond to security incidents in compliance Providing guidance to users and 1st line support agents - including enhanced levels of More ❯
+ Identify Data quality issues and have the fixes in place. Technical Skills: Experience and understanding of secure development practices include OWASP guidelines/top 10, SOC 2, and NCSC cloud security principles. Experience in data and orchestration tools including some of dbt, Apache Airflow, Azure Data Factory. Experience in programming languages including some of Python, Typescript, Javascript, R, Java More ❯
in this role Exceptional planning and communication skills are key for this role, and you'll have a knowledge of security standards and processes such as ISO 27001 standards, (NCSC) CAF, Cyber Essentials, NIST and Cyber Essentials/Plus. We'll also look for your experience in: Developing cyber policy and procedures Data protection and privacy Security change management Understanding More ❯