Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system development environments Effective communication and report More ❯
Secure by Design principles Experience in system security engineering, ideally in defence, space, or critical infrastructure Familiarity with MOD, NCSC, and ISO standards (e.g. ISO 27001/2, NIST800-series, JSP 604) Competence in requirements engineering and systems thinking Practical experience with security in software and/or system development environments Effective communication and report More ❯
functions, and key management practices. Experience in designing secure architectures in hybrid or cloud environments. Knowledge of compliance and regulatory standards such as PCI DSS, HIPAA, SOX, GDPR, NIST800-53. Preferred Qualifications: Certifications: CISSP, CISM, CEH, GIAC, Microsoft Certified: Identity and Access, or other IDAM equivalent Technologies. Experience with Zero Trust Architecture and Identity More ❯
PLCs, RTUs, OT protocols (MODBUS, OPC, DNP3). Experience with secure network design (switching, routing, firewalls). Experience conducting audits, risk assessments, and implementing technical security frameworks (e.g., NIST800-53/82, ISO 27001, IEC 62433). Strong stakeholder management and communication skills. Willingness to travel to client sites across UK. Eligible for SC clearance. More ❯
Stone, Staffordshire, England, United Kingdom Hybrid / WFH Options
Meritus Talent
and secure cross-domain communications. Experience delivering projects in sectors such as energy, water, oil & gas, or manufacturing. Demonstrable experience conducting security assessments aligned to frameworks such as NIST800-53/82, ISO 27001, IEC 62443, NIS-D/NIS-R. Desirable Skills: Hands-on experience with offensive security tools and red teaming in OT More ❯
IT Security Monitoring: Continuously monitor the security of both OT and IT environments, including SCADA systems and Industrial Control System (ICS) Governance and compliance of all OT systems - NIST800-82, IEC 62443, OG86, NERC-CIP, SOCI, NIST-CSF, NIS2 Taking a proactive role in threat hunting, incident response from a Collaborating with the … technology teams User training/awareness Key skills needed are: 3+ years in a cyber security role with a good level of exposure to OT security Knowledge of NIST and IEC 62443 OT frameworks Knowledge of the Microsoft security stack and wider IT security experience highly desirable Knowledge of NERC CIP and/or SOCI standards desirable Role More ❯
IT Security Monitoring: Continuously monitor the security of both OT and IT environments, including SCADA systems and Industrial Control System (ICS) Governance and compliance of all OT systems - NIST800-82, IEC 62443, OG86, NERC-CIP, SOCI, NIST-CSF, NIS2 Taking a proactive role in threat hunting, incident response from a Collaborating with the … technology teams User training/awareness Key skills needed are: 3+ years in a cyber security role with a good level of exposure to OT security Knowledge of NIST and IEC 62443 OT frameworks Knowledge of the Microsoft security stack and wider IT security experience highly desirable Knowledge of NERC CIP and/or SOCI standards desirable Role More ❯
london (city of london), south east england, united kingdom
Harrington Starr
IT Security Monitoring: Continuously monitor the security of both OT and IT environments, including SCADA systems and Industrial Control System (ICS) Governance and compliance of all OT systems - NIST800-82, IEC 62443, OG86, NERC-CIP, SOCI, NIST-CSF, NIS2 Taking a proactive role in threat hunting, incident response from a Collaborating with the … technology teams User training/awareness Key skills needed are: 3+ years in a cyber security role with a good level of exposure to OT security Knowledge of NIST and IEC 62443 OT frameworks Knowledge of the Microsoft security stack and wider IT security experience highly desirable Knowledge of NERC CIP and/or SOCI standards desirable Role More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Summer-Browning Associates Ltd
the security of critical systems. Demonstrable experience of managing complexity in a working context. Experience of control frameworks in a technology or information security context. Working Knowledge of NIST800-53 and IS4. Security Institute Membership and/or BCS Membership NB: Successful applicant will require active SC before assignment commences/be willing to undertake More ❯
paisley, central scotland, united kingdom Hybrid / WFH Options
Summer-Browning Associates Ltd
the security of critical systems. Demonstrable experience of managing complexity in a working context. Experience of control frameworks in a technology or information security context. Working Knowledge of NIST800-53 and IS4. Security Institute Membership and/or BCS Membership NB: Successful applicant will require active SC before assignment commences/be willing to undertake More ❯
milton, central scotland, united kingdom Hybrid / WFH Options
Summer-Browning Associates Ltd
the security of critical systems. Demonstrable experience of managing complexity in a working context. Experience of control frameworks in a technology or information security context. Working Knowledge of NIST800-53 and IS4. Security Institute Membership and/or BCS Membership NB: Successful applicant will require active SC before assignment commences/be willing to undertake More ❯
complex software products in the Defence, Automotive, Aerospace or Telecoms sectors (or a similar field) Experience of software security with knowledge of industry security standards, and best practices ( NIST800-53/(Apply online only), IECIEC 62443, Def Stan 00-55/00-56, ISO/IECIEC 27001/27034) A natural collaborator who is a More ❯
lifecycle Work closely with technical architects and business analysts to deliver robust and scalable designs that meet the business needs Must comply with security methodologies polices such as NIST CSF, SP800-160, Secure by Design and internal Cyber Security guidelines Maintaining a Project Schedule/WBS - Updating regularly and reporting progress to the PMO, and the Applications and More ❯
CCP, PTA, AIM. Plan and execute major version upgrades and migrations. Automate credential onboarding, rotation, and decommissioning. Develop and maintain Safes, RBAC structures, and master policies aligned to NIST800-53 and Zero Trust. Build custom connectors for non-standard platforms (e.g., Oracle Cloud). Provide SME-level support and troubleshooting across CyberArk environments. Integrate CyberArk … deliver training to internal teams. Required Skills & Experience 10+ years of hands-on experience with CyberArk PAM suite. Strong knowledge of privileged access concepts, RBAC, and compliance frameworks (NIST, ISO 27001). Experience with Linux (RHEL 9), Windows Server, Oracle DB, and cloud platforms. Scripting and automation skills (PowerShell, REST APIs). Proven track record in CyberArk upgrades More ❯
and manage Google Cloud services (Compute Engine, Storage, IAM, VPC, Kubernetes, Databases) for isolated and highly secure environments. Implement and enforce robust security, governance, and compliance controls (e.g., NIST, FedRAMP, ITAR, HIPAA, GDPR, or similar frameworks). Troubleshoot and optimize workloads in mission-critical, resource-constrained, or disconnected environments. Deliver hands-on technical workshops, knowledge transfer sessions, and … Cloud Engineer or Cloud Architect) preferred. Preferred Qualifications Experience working in classified environments or with security clearances. Familiarity with compliance frameworks (e.g., FedRAMP High, DoD IL5/IL6, NIST800-53, ITAR). Knowledge of secure enclave operations, hardened systems, and cross-domain solutions. Background in system hardening, encryption technologies, and identity/access control in More ❯
cambridge, east anglia, united kingdom Hybrid / WFH Options
Hays
risks. Support AI and automation initiatives to streamline GRC processes. Key Requirements Proven hands-on experience with ServiceNow IRM and risk quantification methodologies. Strong knowledge of ISO 27001, NIST CSF, and NIST SP800-53. Certifications such as CRISC, CISM, CISSP, or FAIR are desirable. Excellent stakeholder management and communication skills. Experience in third-party cyber risk More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
NCC
security risk management and a working knowledge of cybersecurity technologies Knowledge of common information security management frameworks, such as ISO/IEC 27001, as well as those from NIST, including 800-53 and Cybersecurity Framework Desirable: Relevant accreditations including Cyber Essentials, Cyber Assured, etc. In terms of personal qualities, we will look for a high level More ❯
Cambridge, England, United Kingdom Hybrid / WFH Options
Hays
in a technical, large-scale environment such as semiconductors. Hands on experience with risk assessment methodologies. Deep knowledge of security technologies and control frameworks such as ISO 27001, NIST CSF and NIST SP800-53. Strong stakeholder management skills Proven ability to embed frameworks and tools and act as a technical SME. What’s in it for More ❯
cambridge, east anglia, united kingdom Hybrid / WFH Options
Hays
in a technical, large-scale environment such as semiconductors. Hands on experience with risk assessment methodologies. Deep knowledge of security technologies and control frameworks such as ISO 27001, NIST CSF and NIST SP800-53. Strong stakeholder management skills Proven ability to embed frameworks and tools and act as a technical SME. What’s in it for More ❯