role Be a PCI-DSS expert around payments ISO 27001and GDPR Knowledge of Risk Management, including risk identification, assessment, and mitigation techniques Good experience around Audits and compliance Any penetrationtesting experience would be a bonus You'll work closely with both internal and external stakeholders across Legal, Risk & Audit, Procurement, and IT to embed strong governance and … across business units. Risk Management & Assurance Support risk identification, assessment, and treatment processes. Maintain risk registers and monitor remediation of control gaps and audit findings. Conduct risk assessments, control testing, and compliance reviews to ensure effectiveness. Prepare and deliver reports, dashboards, and metrics for management and board-level reviews. Collaborate with technical teams to address findings and continuously improve … Evaluate security risks of third-party vendors, ensuring alignment with internal security requirements. Maintain documentation, evidence, and metrics to support ongoing audit readiness. Incident Response & Awareness Support the development, testing, and refinement of incident response plans. Assist with investigation and reporting of security incidents. Promote and support information security awareness and training initiatives across the organisation. Our client is More ❯
Engineer will have first-class scoping and planning skills. The IT Project Engineer will host security consultations and conduct vulnerability assessments. The IT Project Engineer will oversee and direct PenetrationTesting exercises. The IT Project Engineer will be familiar with Cyber Essentials, Microsoft Copilot and PCI-DSS. The IT Project Engineer will be network-savvy. Think firewalls, switches More ❯
london (city of london), south east england, united kingdom
Mongoose Gray
Engineer will have first-class scoping and planning skills. The IT Project Engineer will host security consultations and conduct vulnerability assessments. The IT Project Engineer will oversee and direct PenetrationTesting exercises. The IT Project Engineer will be familiar with Cyber Essentials, Microsoft Copilot and PCI-DSS. The IT Project Engineer will be network-savvy. Think firewalls, switches More ❯
Engineer will have first-class scoping and planning skills. The IT Project Engineer will host security consultations and conduct vulnerability assessments. The IT Project Engineer will oversee and direct PenetrationTesting exercises. The IT Project Engineer will be familiar with Cyber Essentials, Microsoft Copilot and PCI-DSS. The IT Project Engineer will be network-savvy. Think firewalls, switches More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom Hybrid / WFH Options
Tank Recruitment
initiatives. Key Responsibilities Develop and execute an information security strategy and roadmap aligned with business goals. Lead on governance, compliance, and audit processes across the organisation. Manage incident response, penetrationtesting, and risk assessments. Support secure software development and supplier risk management. Promote security awareness and report regularly to senior leadership on risk posture. Skills & Experience Required Previous More ❯
Chippenham, Wiltshire, England, United Kingdom Hybrid / WFH Options
Artis Recruitment
both technical teams and senior stakeholders. Desirable Skills 3CX VoIP solutions Email security and filtering (Mimecast, Barracuda) SonicWALL appliances Azure Site Recovery SQL Server, Power BI, and Data Visualisation Penetrationtesting or vulnerability scanning experience Project management appreciation Qualifications Required: Microsoft Certified: Azure Administrator Associate (AZ-104) Microsoft Certified: Azure Solutions Architect Expert (AZ-305) Preferred: Azure Network More ❯
client needs. Conduct technical risk assessments and recommend appropriate mitigations. Produce high-quality security documentation including RMADS, SyOPs, and Security Architecture Documents. Advise on suitable cyber assessment methods, including penetrationtesting and vulnerability analysis. Provide assurance on the effective implementation of cyber security controls and frameworks. Develop incident response plans and support clients during security breaches, including crisis More ❯
Development - Enhance and extend mobile app security solutions using system-level insights. Mobile OS Research - Dive into Android, iOS, and HarmonyOS Next to analyse system behaviours. Reverse Engineering & Security Testing - Utilise white hat techniques, including penetrationtesting and reverse engineering, to identify and address threats. Collaboration & Innovation - Work closely with the team in an office-based setting More ❯
Development - Enhance and extend mobile app security solutions using system-level insights. Mobile OS Research - Dive into Android, iOS, and HarmonyOS Next to analyse system behaviours. Reverse Engineering & Security Testing - Utilise white hat techniques, including penetrationtesting and reverse engineering, to identify and address threats. Collaboration & Innovation - Work closely with the team in an office-based setting More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Digital Waffle
actors, and exploit techniques Mentor junior team members and contribute to tooling, methodology, and lab development Required Skills & Experience 3+ years' experience in red teaming, offensive security, or advanced penetrationtesting Strong knowledge of attacker frameworks (e.g., MITRE ATT&CK, NIST adversary simulation guidelines) Highly proficient with red team tools and techniques (e.g., Cobalt Strike, Mimikatz, Sliver, BloodHound More ❯
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client’s requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client’s requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
london (city of london), south east england, united kingdom
Cognizant
Build and configure virtual networks and subnets to support scalable and secure architecture designs. Perform patching and maintenance of virtual machines and Docker containers to ensure environment stability. Conduct penetrationtesting and IT health checks across all infrastructure resources to maintain compliance with Client’s requirements. Implement Infrastructure as Code (IaC) practices using Terraform and related tools to … with security, compliance, and performance standards. Required Skills Strong experience in infrastructure automation, Azure Devops and IaC scripting. Proficient in managing Terraform configurations and dependencies. Should have experience in testing Terraform infrastructure code. Should have experience in creating automated machine images for multiple platforms. Strong knowledge in configuration management and deployment automation. Hands-on experience in CI/CD More ❯
years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. Risk Assessment and Architecture: Proven experience in creating risk assessment and architecture documentation. PenetrationTesting Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and devising remediation plans. MOD Knowledge: Familiarity with Ministry of Defence (MOD) protocols and requirements. More ❯
years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. Risk Assessment and Architecture: Proven experience in creating risk assessment and architecture documentation. PenetrationTesting Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and devising remediation plans. MOD Knowledge: Familiarity with Ministry of Defence (MOD) protocols - JSP453 . More ❯
years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. Risk Assessment and Architecture: Proven experience in creating risk assessment and architecture documentation. PenetrationTesting Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and devising remediation plans. MOD Knowledge: Familiarity with Ministry of Defence (MOD) protocols and requirements. More ❯
years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. Risk Assessment and Architecture: Proven experience in creating risk assessment and architecture documentation. PenetrationTesting Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and devising remediation plans. MOD Knowledge: Familiarity with Ministry of Defence (MOD) protocols - JSP453 . More ❯
years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. Risk Assessment and Architecture: Proven experience in creating risk assessment and architecture documentation. PenetrationTesting Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and devising remediation plans. MOD Knowledge: Familiarity with Ministry of Defence (MOD) protocols - JSP453 . More ❯
years in Cyber Security roles Defence Experience: A solid background in working on defence-related projects. Risk Assessment and Architecture: Proven experience in creating risk assessment and architecture documentation. PenetrationTesting Processes: A comprehensive understanding of pen testing procedures, including reporting, triaging, and devising remediation plans. MOD Knowledge: Familiarity with Ministry of Defence (MOD) protocols - JSP453 . More ❯
and practices with the Group head of Business Systems Stay up-to-date on information technology trends and security standards. Research security enhancements and make recommendations to management Perform penetrationtesting with 3rd parties or internally. Help colleagues and the wider business understand information security management. Supporting the business in the delivery and release of secure applications Participate More ❯
and practices with the Group head of Business Systems Stay up-to-date on information technology trends and security standards. Research security enhancements and make recommendations to management Perform penetrationtesting with 3rd parties or internally. Help colleagues and the wider business understand information security management. Supporting the business in the delivery and release of secure applications Participate More ❯
and practices with the Group head of Business Systems Stay up-to-date on information technology trends and security standards. Research security enhancements and make recommendations to management Perform penetrationtesting with 3rd parties or internally. Help colleagues and the wider business understand information security management. Supporting the business in the delivery and release of secure applications Participate More ❯
london, south east england, united kingdom Hybrid / WFH Options
Client Server
Senior Security Engineer you will implement and maintain robust security systems and protocols across the company's IT infrastructure, conducting risk assessments and vulnerability scans, mitigating vulnerabilities identified in penetrationtesting and implementing preventative measures to protect against cyber threats with a focus on WAF, IDS, IPS, Windows Security and Palo Alto firewalls. You also manage the 3rd More ❯