Guildford, Surrey, United Kingdom Hybrid / WFH Options
BAE Systems (New)
interfacing with the IT team, Accreditor, and affected business units. Maintain compliance with frameworks such as Secure by Design, NIST-800-53, STRAP. Security Testing - Scope and oversee penetrationtesting, vulnerability scanning, and other security validation activities to ensure effectiveness of security controls. Design and Architecture Review More ❯
the IT team, Accreditor and affected business units. Maintain accreditation and compliance with frameworks such as Secure by Design, NIST-800-53, STRAP; Security Testing - Scope and oversee penetrationtesting, vulnerability scanning, and other security validation activities, to ensure effectiveness of security controls; Design and Architecture Review More ❯
attitude with strong oral and written communication skills Knowledge of IP networking and network security including Intrusion Detection Familiarity with common network vulnerability/penetrationtesting tools Familiarity with service management software such as ServiceNow Familiarity with data visualization platforms such as Domo Some experience with system hardening More ❯
Ashford, Kent, United Kingdom Hybrid / WFH Options
UNAVAILABLE
infrastructure. You'll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetrationtesting to stay ahead of cyber threats. You'll enhance identity and access management (IAM) by maintaining Active Directory, Entra ID, MFA, and More ❯
infrastructure. You'll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetrationtesting to stay ahead of cyber threats. You'll enhance identity and access management (IAM) by maintaining Active Directory, Entra ID, MFA, and More ❯
Experience in the following types of Security Testing: - Security Analysis and Consulting - Static Application Security Testing (SAST) - Dynamic Application Security Testing (DAST) - Infrastructure Vulnerability Assessment - Mobile Application Penetrationtesting OWASP JBG81_UKTJ click apply for full job details More ❯
ensure the security posture of Material IT Suppliers, ensuring compliance with security standards and contractual obligations. Risk Assessment: Conduct risk assessments, analyze vulnerability and penetrationtesting reports, and develop risk mitigation strategies. Access Management: Help develop and maintain a robust Role-Based Access Control Framework, ensuring efficient management More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Pertemps
HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge of secure development practices, penetrationtesting, and vulnerability assessments. Ability to communicate security risks and strategies to technical and non-technical stakeholders. Experience in incident response and remediation. More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge of secure development practices, penetrationtesting, and vulnerability assessments. Ability to communicate security risks and strategies to technical and non-technical stakeholders. Experience in incident response and remediation. More ❯
and ensure compliance with IEC 62443, NIST SP 800-82, NERC CIP, ISO 27001, and NIS2 frameworks. Vulnerability & Risk Management: Perform vulnerability analysis and penetrationtesting, and implement risk mitigation strategies tailored for ICS/SCADA and IoT environments. IT-OT Integration: Work closely with IT, engineering, and More ❯
Bradford, West Yorkshire, Yorkshire, United Kingdom
Vanquis Bank Limited
services provided by the Cyber Intelligence Centre including by not limited to Cyber Threat Intelligence, Security Posture Management, Cyber Security Incident Response, Threat Hunting, PenetrationTesting & Red Team Testing, and Cyber Risk Mitigation. Incorporate threat intelligence into CIC activities. Collaborate and assist with the investigation and resolution More ❯
Job Description Penetration Tester Position Description CGI Cyber Security Team in the UK is one of the largest Cyber consultancies in the UK with around 300 members. The UK Cyber team works across a variety of domains including: Government, Defence, Critical Infrastructure, Healthcare, Utilities, Banking and Financial Services and … Assessments, Vulnerability Management, Accreditations (ISO27001, GDPR), GRC (Governance, Risk, Compliance), Security Architecture Design and Build (technical and Non-technical), Incident Response, Protective Monitoring Services, PenetrationTesting and much more. We take clients through a journey to improve their overall security posture and maturity to ensure they feel reassured … available if you hold or fulfil the criteria to obtain a UK Security Clearance. Your future duties and responsibilities An opportunity for an experienced penetration tester has become available due to growth, joining the CGI Cyber Security business unit, one of the largest groups of cyber security specialists in More ❯
Welwyn Garden City, England, United Kingdom Hybrid / WFH Options
PayPoint plc
automating routine tasks to speed up our response times. From start to finish, you’ll oversee cybersecurity incidents, document findings, and suggest improvements. Security Testing & Business Support - You’ll take part in cyber-attack simulations, penetrationtesting, and security drills to make sure our defines are strong. More ❯
welwyn garden city, east anglia, united kingdom Hybrid / WFH Options
PayPoint plc
automating routine tasks to speed up our response times. From start to finish, you’ll oversee cybersecurity incidents, document findings, and suggest improvements. Security Testing & Business Support - You’ll take part in cyber-attack simulations, penetrationtesting, and security drills to make sure our defines are strong. More ❯
involves leading security assurance initiatives, conducting risk assessments, driving compliance activities, and implementing controls to enhance the organisation's security. Key accountabilities: Assurance and Testing: Develop and improve security policies and guidance related to security assurance testing. Coordinate and manage vulnerability assessments, penetrationtesting, and other technical … incidents. Prepare and execute simulated exercises to test resilience. About you We are looking for a candidate with: 5+ years of experience in security testing and assurance. A degree in computer science or similar experience. Relevant professional qualifications such as CISSP or Accredited Security Testing Professional. Strong understanding More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
/53, JSP 440, 604, and Defence Standards. Develop and maintain security documentation (e.g., RMADS, Security Assurance Documents, Security Management Plans). Conduct penetrationtesting, vulnerability assessments, and remediation activities. The Person Key Skills & Experience: Strong knowledge of risk management frameworks and methodologies (ISO 27001/2, ISO27005 … NIST 800-53). Experience with defence and government security standards (JSPs, Def Stan 05-138/139). Proficiency in security testing tools, technologies, and techniques. Ability to analyze and mitigate security vulnerabilities effectively. Strong problem-solving, decision-making, and communication skills. Qualifications & Requirements: Degree in Cybersecurity, Computer More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
/53, JSP 440, 604, and Defence Standards. Develop and maintain security documentation (e.g., RMADS, Security Assurance Documents, Security Management Plans). Conduct penetrationtesting, vulnerability assessments, and remediation activities. The Person Key Skills & Experience: Strong knowledge of risk management frameworks and methodologies (ISO 27001/2, ISO27005 … NIST 800-53). Experience with defence and government security standards (JSPs, Def Stan 05-138/139). Proficiency in security testing tools, technologies, and techniques. Ability to analyze and mitigate security vulnerabilities effectively. Strong problem-solving, decision-making, and communication skills. Qualifications & Requirements: Degree in Cybersecurity, Computer More ❯
minimise business disruption in the event of a cyberattack. Drive threat intelligence programs, proactively identifying and mitigating emerging risks. Manage external teams of security penetration testers working on monthly cycles to test and improve security implementations. Design, implement, and manage robust security measures across networks, endpoints, cloud platforms, and … security into cloud environments (AWS, Azure, Google Cloud) and application development lifecycles. Implantation and management of SOC and EDR functions. Conduct regular vulnerability assessments, penetrationtesting, and red-team exercises, working closely with external partners to continuously test and improve security defences. Develop a comprehensive risk register, prioritising More ❯
and regulations. Collaborate with development teams to integrate security throughout the software development lifecycle (SDLC). Conduct regular security assessments, including vulnerability scans and penetrationtesting, to identify and mitigate risks. Stay up-to-date with the latest security trends, vulnerabilities, and emerging threats, and provide recommendations for More ❯
london, south east england, united kingdom Hybrid / WFH Options
Halian
and regulations. Collaborate with development teams to integrate security throughout the software development lifecycle (SDLC). Conduct regular security assessments, including vulnerability scans and penetrationtesting, to identify and mitigate risks. Stay up-to-date with the latest security trends, vulnerabilities, and emerging threats, and provide recommendations for More ❯
Dundee, Angus, United Kingdom Hybrid / WFH Options
DC Thomson
compliance requirements (e.g., ISO 27001, PCI DSS, GDPR) Work with our SecOps team to develop and implement vulnerability management programs, including regular security assessments, penetrationtesting, and remediation planning Maintain expertise in cloud security best practices including secure configuration, access management, and data protection Work closely with product More ❯
/CMMI Certification or alignment with recognised industry standards Compliance with applicable regulations & legislation Building and implementing governance & risk management processes Design implementation and testing of security tooling BC/DR & Incident response capability building and testing Production of threat intelligence reports and research Supply Chain Risk Management … base requirement to demonstrate understanding of and find ways to integrate activity with BlueVoyant colleagues across the globe, specifically Digital Forensics, Incident Response and PenetrationTesting specialists as well as wider BlueVoyant service offerings when appropriate, to produce threat-aware products, services and outputs that are impactful, efficient More ❯
Building Automation Cybersecurity team, gaining hands-on experience in real-world cybersecurity scenarios. Your responsibilities will include assisting in the development of cyber solutions, testing products, troubleshooting, implementing security measures, conducting vulnerability assessments and penetrationtesting, and participating in cyber assessments while learning about standards such as … systems. Assist in evaluating new cyber solutions and introducing innovative approaches to existing solutions. Assist in varying stages of cyber assessment vulnerability assessment and penetration testing. Assist in detailed design documents for various cyber solutions. Participate in design discussions with end customers and vendors. Manage existing cybersecurity platforms. Key … configuring Microsoft operating systems, firewall switches. Desirable Certifications: MCTS/MCSA (Microsoft) VCP (VMware) CCNA Offensive Security Certified Professional (OSCP) Practical Junior/Network Penetration Tester (PJPT/PNTP) Nice to have: Strong passion for cybersecurity and a desire to learn and grow in the field. Basic knowledge of More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Secure Recruitment Ltd
meaning that Code Reading Skills are also desirable. Skills & Experience of the AppSec Engineer role: Hands-On Experience with Security Assessment Tools & Techniques including PenetrationTesting & Code Review. Use of Planned, Structured Methodologies for Conducting & Reporting on Web Application Penetration Testing. Understanding & Demonstrable Experience of Automated, Dynamic … Static Application Security Testing Tools, as well as Manual Security Testing to find Vulnerabilities & Logical Issues. Broad Understanding of SDLC & Technology Functions and how they relate to Information Security. Understanding of Industry Standard Information Security Practices. Ideally Offensive Security Certified Professional (OSCP) Certification (or similar is Desirable but … the Project Lifecycle. Taking Responsibility for the Security of Tested Products within Project Context. Conducting Manual & Automated Source Code Reviews. Contributing to & Utilising Security Testing Methodologies, Creating & Updating Technical Documentation as necessary. Liaising with Software Development Department to ensure Security is considered throughout SDLC. Identifying any Security Issues within More ❯