Darkshield is an expert cybersecurity agency based in York, UK. We help organisations navigate an increasingly complex digital landscape by providing expert services in penetrationtesting, vulnerability assessment, managed security, and more. Our mission is to protect businesses by delivering tailored, cutting-edge cybersecurity solutions that keep them More ❯
against regulatory requirements defined against NCSC's Cyber Assessment Framework (CAF) dashboard reporting of CAF attainment status and tracking of assurance activities such as penetrationtesting and management of audit actions. Delivery of these services will require the role to engage with technical and non-stakeholders across our More ❯
and help customers implement incident response plans, which outline steps to take in case of a security breach. Perform security assessments for customers, including penetrationtesting, to identify weaknesses in systems and networks and propose mitigation plans where required. Recommend, design and implement security tools and technologies such More ❯
and help customers implement incident response plans, which outline steps to take in case of a security breach. Perform security assessments for customers, including penetrationtesting, to identify weaknesses in systems and networks and propose mitigation plans where required. Recommend, design and implement security tools and technologies such More ❯
and help customers implement incident response plans, which outline steps to take in case of a security breach. Perform security assessments for customers, including penetrationtesting, to identify weaknesses in systems and networks and propose mitigation plans where required. Recommend, design and implement security tools and technologies such More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Experis UK
since 2003 and our focus has always been on excellence in cyber security. We have teams that offer world class services in red teaming, penetrationtesting, threat intelligence, research and development, detection and response, governance, risk, and compliance, and plenty more. Our business is global and so are More ❯
with NIST, ISO 27001, ITIL Azure - 5 years experience Info Sec (Azure AD, Defender, Sentinel) Audits and report writing Assessments Vulnerability Management and Pen Testing Zero Trust Architecture Automation (eg powershell, python More ❯
scripting (Python or similar) and security automation (SOAR). Understanding of threat intelligence and its operational use. Desirable Skills: Experience in software engineering or penetration testing. Exposure to Splunk ES and development of custom content. Knowledge of security process development and client consulting. Additional Information: This role is based More ❯
app security solutions using system-level insights. ?? Mobile OS Research - Dive into Android, iOS, and HarmonyOS Next to analyse system behaviours. ?? Reverse Engineering & Security Testing - Utilise white hat techniques, including penetrationtesting and reverse engineering, to identify and address threats. ?? Collaboration & Innovation - Work closely with the team More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nominet
both internal and external infrastructure and services. Key responsibilities include: Implement security best practices across the application and infrastructure lifecycle Define and maintain security testing processes for in-scope applications and services Manage identified vulnerabilities through to remediation, in collaboration with relevant teams Provide expert advice and guidance on … Crowdstrike • Experience in conducting security checks, such as SAST, DAST, and SCA with Snyk, OWASP ZAP, Burp Suite tools, vulnerability analysis in applications, and penetrationtesting skills. Familiarity with OWASP Testing Guide v3/4 and OWASP TOP 10. • Knowledge of CI/CD and management technologies More ❯
Code principles Establish and maintain security controls and monitoring systems aligned with ISO27001 requirements Build and maintain CI/CD pipelines with integrated security testing and compliance checks Implement automated security scanning and vulnerability management processes Develop and maintain disaster recovery and backup solutions for critical systems Configure and … best practices and implementing Zero Trust architecture Experience with healthcare compliance requirements (ISO27001, ISO13485, HIPAA) and security controls Proven track record implementing automated security testing and vulnerability management Strong knowledge of monitoring and observability tools (Azure Monitor, Application Insights) Experience implementing secure networking and identity management solutions in Azure … teams Track record of building secure and compliant DevOps practices Desired Skills Experience with quality management systems in medical device software development Experience of penetrationtesting Background in implementing Agile methodologies Experience of startup environments More ❯
Publications (JSP) such as JSP 440, 604 and Defence Standards (Def stans) Produce security documentation like RMADS, Security Assurance Document, Security Management Plan Conduct penetrationtesting, vulnerability assessments and remediation activities Your skillset may include: Understanding and application of risk management frameworks and methodologies (e.g., ISO 27001/… NIST 800-53) Working knowledge of Defence Standards (e.g., JSPs, HMG, Def Stan 05-138, Def Stan 05-139) Experience with security testing tools, technologies and techniques If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further More ❯
Publications (JSP) such as JSP 440, 604 and Defence Standards (Def stans) Produce security documentation like RMADS, Security Assurance Document, Security Management Plan Conduct penetrationtesting, vulnerability assessments and remediation activities Your skillset may include: Understanding and application of risk management frameworks and methodologies (e.g., ISO 27001/… NIST 800-53) Working knowledge of Defence Standards (e.g., JSPs, HMG, Def Stan 05-138, Def Stan 05-139) Experience with security testing tools, technologies and techniques If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further! Product More ❯
and regulations (e.g., NCSC, ISO, SoC, NIST, PCI, GDPR). Experience in application or infrastructure architecture, software development, or related fields. Skills in security testing using appropriate tools. Familiarity with Continuous Security, CI/CD practices. Understanding of network security, web application security (OWASP), and cryptographic controls (PKI, TLS … technical teams. Desirable Skills Experience with identity management and authentication/authorization solutions. Involvement in governance, risk, compliance, operational security, and supply chain security. Penetrationtesting qualifications (e.g., OSCP, CREST). Experience leading security engineers and junior staff. Join Us What are you waiting for? Let's write More ❯
london, south east england, united kingdom Hybrid / WFH Options
Merlin Entertainments
place to protect critical systems and data. Responsibilities Develop and implement Vulnerability Management Strategy. Lead Threat Intelligence and Threat Modelling. Oversee Vulnerability Assessments and Penetration Testing. Collaborate on Security Incident Response. Ensure Compliance with Security Standards. Stakeholder Communication and Reporting. Leadership and Team Accountability. Skills & Experience Mininum of … Defender. In-depth knowledge of security frameworks and compliance standards, such as ISO 27001, NIST, GDPR, and PCI-DSS. Experience in coordinating or conducting penetrationtesting, red teaming, and handling security incidents. Experience with managing security projects and teams. Interview Process Recruiter Call Hiring Manager Intro Final Interview More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
RSM UK
for you! We value diverse experiences and perspectives. Here's what we're looking for in our ideal candidate: Experience delivering offensive security and penetrationtesting engagements. Experience of delivering and leading cyber security advisory and offensive security testing engagements in a professional services context. Understanding of … technology trends, cyber threats, and industry issues. Excellent written and oral communication, report writing, and presentation skills. Experience of executing security testing techniques such as threat modelling, reconnaissance, social engineering, enumeration, attack path mapping, exploitation, and clean up from a variety of adversarial perspectives (white/grey/black … box testing). What we can offer you: We recognise that our people are our most important assets. That's why we offer a flexible reward and benefits package that will help you have a fulfilling experience, both in and out of work. Hybrid working 26 Days Holiday Lifestyle More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
Corriculo Ltd
mail filtering, and other security products Experience with Security Information Event Management (SIEM) tools Any experience or knowledge of ISO27001 as well as with penetrationtesting/vulnerability scanning would be highly advantageous The list above is important, but not as important as hiring the right person! So More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid / WFH Options
Corriculo Ltd
mail filtering and other security products Experience of Security Information Event Management (SIEM) tools Any experience or knowledge of ISO27001 as well as with penetrationtesting/vulnerability scanning would be highly advantageous The list above is important, but not as important as hiring the right person! So More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Inara
or risks. Collaborate with engineering teams to embed secure coding practices and tackle vulnerabilities. Manage security assessments, audit responses, and incident investigations. Run regular penetrationtesting, disaster recovery simulations, and security awareness training. Streamline access controls, onboarding/offboarding processes, and device compliance using SSO/SCIM and More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Gold Group Limited
party security providers. Prepare reports on security incidents and recommend improvements. Develop threat intelligence relevant to the business. Conduct threat hunting, vulnerability analysis, and penetrationtesting to identify risks. Continually assess security systems, suggesting appropriate tools and countermeasures. Prepare and maintain security and incident response documentation. Collaborate with More ❯
team. Define, document, and maintain operational processes. Ensure the effective support and maintenance of security systems used by the team. Run vulnerability management and penetrationtesting programs. Develop and implement strategies to enhance the scope and capability of the Security Operations function. Set and measure KPIs for the More ❯
team. Define, document, and maintain operational processes. Ensure the effective support and maintenance of security systems used by the team. Run vulnerability management and penetrationtesting programs. Develop and implement strategies to enhance the scope and capability of the Security Operations function. Set and measure KPIs for the More ❯
This role requires an individual with deep knowledge of CIM and TVM, including cyber incident detection, assessment, response, and recovery, Patch Management, and infrastructure penetrationtesting within a corporate environment. What you will be responsible for As a CIM and TVM Governance Analyst you will: Produce regular reporting More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
FSP Retail Team
in the UK, Tech and the South East in 2023. We are ISO27001 and ISO9001 Certified by UKAS. We are also a CREST approved penetrationtesting and SOC company, IASME Cyber Essentials Certification body and Cyber Essentials Plus certified. Find out more about our awards here: Why work More ❯
Manchester Area, United Kingdom Hybrid / WFH Options
Senitor Associates
and application landscapes. What you’ll need: 3+ years in a security architecture or cyber consulting role Deep knowledge of enterprise security services – Pen Testing, Threat Modelling, Logging, Vulnerability Mgmt, and Incident Response Proven ability to produce secure design templates and influence technical direction Excellent communication, stakeholder management, and More ❯