Manchester, England, United Kingdom Hybrid / WFH Options
Manchester Digital
framework and track risk exposure Work with colleagues across the wider business to promote standard processes and compliance around data risk and control Collaborate with our Data Protection and InformationSecurity teams to explore the broader data risk approach at Co-op Develop interfaces that provide risk reports at our fingertips and carry-out assurance reviews; making sure More ❯
the design, build, test and deployment stages across activities and departments. Carrying out Data Protection Impact Assessments , and providing solutions to mitigate privacy risks. Contributing to our core integrated InformationSecurity and Privacy Management System (ISPMS) processes, including maintaining framework documents and other ISPMS documented information. Assisting with the creation and delivery of staff training and Privacy Champion More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Deloitte LLP
agreements (software licensing, content and data licensing, software services, licensing of models and other AI-related products and services etc.) Experience drafting privacy notices, terms of service, licensing agreements, informationsecurity policies and other data protection policies Connect to your business -Enabling Functions Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and More ❯
Aberdeen, Scotland, United Kingdom Hybrid / WFH Options
Deloitte LLP
agreements (software licensing, content and data licensing, software services, licensing of models and other AI-related products and services etc.) Experience drafting privacy notices, terms of service, licensing agreements, informationsecurity policies and other data protection policies Connect to your business -Enabling Functions Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Deloitte LLP
agreements (software licensing, content and data licensing, software services, licensing of models and other AI-related products and services etc.) Experience drafting privacy notices, terms of service, licensing agreements, informationsecurity policies and other data protection policies Connect to your business -Enabling Functions Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Deloitte LLP
agreements (software licensing, content and data licensing, software services, licensing of models and other AI-related products and services etc.) Experience drafting privacy notices, terms of service, licensing agreements, informationsecurity policies and other data protection policies Connect to your business -Enabling Functions Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and More ❯
Cambridge, England, United Kingdom Hybrid / WFH Options
Deloitte LLP
agreements (software licensing, content and data licensing, software services, licensing of models and other AI-related products and services etc.) Experience drafting privacy notices, terms of service, licensing agreements, informationsecurity policies and other data protection policies Connect to your business -Enabling Functions Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and More ❯
London, England, United Kingdom Hybrid / WFH Options
Deliveroo
outside of ET and learning how each business function operates. Establish and foster visible architectural principles and practices to build reusable designs and systems that promote reliability, velocity, scale, security and efficiency. Engage in, investigate and mature approaches to sustainably scale the end-to-end lifecycle of Enterprise Technology services—from inception and design, through deployment, operations and planned … software and vendor rationalisation are consistently applied. Visibly deliver value early and often. Where applicable, ensure considerations such as cloud-native patterns, automation, APIs, self-service, AI, Business Continuity, InfoSec compliance, monitoring, ITSM are consistently implemented as part of designs. Produce and maintain high-quality documentation, designs, papers, presentations, and plans. Own the strategic architecture roadmap and portfolio, managing technical More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: InformationSecurity Analyst, birmingham col-narrow-left Client: Cloud Decisions Location: birmingham, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 13 Posted: 09.06.2025 Expiry Date: 24.07.2025 col-wide Job Description: Upto £57,500 + Enterprise Benefits (Life Ins/Medical/Pension … the Controls & Compliance with security regulations and standards and is able to work join a small, high-trust team and that can work autonomously while they build their InfoSec capability to ensures regulatory compliance, informationsecurity maturity, and readiness for the next audit, tender or risk review. Control/Compliance Assessment Duties: Schedule and Coordinate Assessments : Schedule … resolve actions within agreed timescales. Audit Preparation and Support : Prepare for and assist with internal and external audits by collecting evidence, responding to audit requests, and addressing audit findings. InfoSec effectiveness - collaboration/continuous improvement: Continuous Improvement: Identify opportunities for process improvements and implement changes to enhance the efficiency and effectiveness of control assessments. Training and Development: Assist in training More ❯
UK, Europe, and US business units. Our 'big ticket' technology teams work with the London Market and Re & ILS businesses. Corporate Centre includes Group & Enterprise Services, IT Services, and Information Security. Each team is led by a Technology Director reporting to the CIO. The goal of the Technology organisation is to put Technology at the heart of the business. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Cititec
Job Title: InformationSecurity Risk Analyst (GRC Focus) Location: London (Hybrid – 3 days on-site per week) Contract Duration: Until end of the year Rate: £550 per day (Inside IR35) Overview: My client is seeking an experienced InformationSecurity Risk Analyst with a strong background in Governance, Risk, and Compliance (GRC) , complemented by hands-on technical … security expertise. This role requires someone who can bridge the gap between policy and practice, ensuring that risk management frameworks are grounded in real-world technical understanding. Key Requirements: Proven experience in informationsecurity risk management , particularly in GRC. Solid technical security background in at least one of the following areas: Vulnerability Assessment & Penetration Testing (VAPT … Threat Intelligence Incident Response Or other relevant technical security domains. Ability to assess, communicate, and manage risk in alignment with security policies and business objectives. Strong stakeholder engagement and reporting skills. More ❯
Job Title: InformationSecurity Risk Analyst (GRC Focus) Location: London (Hybrid – 3 days on-site per week) Contract Duration: Until end of the year Rate: £550 per day (Inside IR35) Overview: My client is seeking an experienced InformationSecurity Risk Analyst with a strong background in Governance, Risk, and Compliance (GRC) , complemented by hands-on technical … security expertise. This role requires someone who can bridge the gap between policy and practice, ensuring that risk management frameworks are grounded in real-world technical understanding. Key Requirements: Proven experience in informationsecurity risk management , particularly in GRC. Solid technical security background in at least one of the following areas: Vulnerability Assessment & Penetration Testing (VAPT … Threat Intelligence Incident Response Or other relevant technical security domains. Ability to assess, communicate, and manage risk in alignment with security policies and business objectives. Strong stakeholder engagement and reporting skills. More ❯
London, England, United Kingdom Hybrid / WFH Options
Michael Page
The InformationSecurity Manager will oversee and enhance the organisation's informationsecurity framework, ensuring compliance with industry standards and safeguarding sensitive data. This role offers an exciting opportunity to make a meaningful contribution within the not–for–profit sector. Client Details My client is a housing group, it is committed to leveraging technology to support … its mission while maintaining a secure and reliable digital environment. Description Develop and maintain the organisation's informationsecurity policies and procedures. Ensure compliance with relevant regulatory and industry standards. Conduct risk assessments to identify and address potential security threats. Collaborate with the Technology team to implement security controls and solutions. Provide training and guidance on … security best practices to employees. Monitor and report on the effectiveness of security measures and systems. Work with external partners to carry out audits and maintain certifications. Profile A strong understanding of informationsecurity frameworks and standards such as ISO 27001, NIST, PCI–DSS Demonstrated experience in risk management includes developing related strategies, action plans Proven More ❯
City of London, England, United Kingdom Hybrid / WFH Options
Michael Page (UK)
a housing group, it is committed to leveraging technology to support its mission while maintaining a secure and reliable digital environment. Job Description Develop and maintain the organisation's informationsecurity policies and procedures. Ensure compliance with relevant regulatory and industry standards. Conduct risk assessments to identify and address potential security threats. Collaborate with the Technology team … to implement security controls and solutions. Provide training and guidance on security best practices to employees. Monitor and report on the effectiveness of security measures and systems. Work with external partners to carry out audits and maintain certifications. The Successful Applicant A strong understanding of informationsecurity frameworks and standards such as ISO 27001, NIST … PCI-DSS Demonstrated experience in risk management includes developing related strategies, action plans Proven ability to work collaboratively across departments. Relevant certifications in informationsecurity or equivalent professional qualifications What's on Offer Yearly bonus Generous pension scheme. Life assurance coverage Support for professional development. Primarily remote working with occasional commuting to London #J-18808-Ljbffr More ❯
London, England, United Kingdom Hybrid / WFH Options
Depop
complete the application to adjustments@depop.com. For any other non-disability related questions, please reach out to our Talent Partners. The Role In 2025 we are investing in improving security capabilities to our Engineering & Data group. We are looking for a security engineer to guide our engineering practices, improve security in our software delivery lifecycle, and work … closely with our InformationSecurity … team.. As a Security Engineer at Depop, you will be responsible for providing security guidance and support, building capabilities which strengthen our security, and support the InfoSec team with our current security policies and processes. As a Staff Engineer, you will demonstrate deep technical expertise to drive high-impact decisions, contribute hands-on to codebases, and More ❯
Washington, Washington DC, United States Hybrid / WFH Options
OMW Consulting
Role: Information System Security Engineer Location: Washington, D.C. - Hybrid with some travel Clearance: Secret minimum, ideally TS Salary: $150K-$185K + Equity My client, a leading defense tech company, is looking to hire an experienced ISSE to join their team based in Washington, D.C. You must have an active Secret clearance or higher and a solid background in … informationsecurity fundamentals and core technologies (e.g., authentication, encryption, firewalls, vulnerability scanning, SIEM/SOAR, audit logs). Your main responsibilities in this position will include: Achieving ATOs for the company's software across multiple government customers with minimal oversight. Providing outstanding customer service, policy expertise, and high-quality documentation. Partnering with engineers to interpret security requirements … and plan effective control implementations. Translating and synthesizing complex concepts and architectures into clear body-of-evidence artifacts, including System Security Plans (SSPs) and architecture diagrams. Representing the company and providing credible cybersecurity expertise in government assessments and audits. If you are interested in learning more about this opportunity, please apply below, and I will contact you to discuss More ❯
cloud consultancy with offices in the UK, Netherlands and Romania. This role is working for tmc3 who is part of the Qodea group of companies. tmc3 is a cyber security consultancy that helps organisations of all sizes protect, comply and thrive in the digital era. Our leadership team founded tmc3 with a shared goal of making data protection and … cyber security a business enabler. We strive for passion, collaboration, and perseverance to ensure the best outcomes for our customers and partners every time. We are looking for a Principal Cyber Security Consultant to play a key role to our success within the Critical National Infrastructure (CNI) sector, focusing on the successful delivery of projects and identifying opportunities … unable to obtain SC level clearance. How You'll Shape Our Success We are looking for a leader with enviable consulting experience helping public sector organisations with complex cyber security challenges. As a Principal Consultant, you will be a key member of the tmc3 team, developing new business and strong customer relationships while leading and delivering great work. With More ❯
London, England, United Kingdom Hybrid / WFH Options
Helios Towers
Join to apply for the IT Security Manager role at Helios Towers Join to apply for the IT Security Manager role at Helios Towers Direct message the job poster from Helios Towers French Language Expert and Senior Talent Acquisition Manager IT Security Manager We are a leading independent telecoms infrastructure company, with one of the most extensive … Africa + Oman in the Middle East). Our purpose, mission and sustainable business strategy are underpinned by our values of integrity, partnership and excellence. Overview As an IT Security Manager, you will be responsible for developing, implementing, and overseeing the organisation's informationsecurity programme to protect critical assets, systems, and data. Role Responsibilities As an … IT Security Manager, you will be responsible for: Serving as a strategic partner to senior leaders, providing guidance on workforce planning, talent management, and succession planning. Providing detailed reports on security posture, incidents, and audit results to senior management. Setting security-related KPI targets and ensuring they are achieved. Overseeing day-to-day management of industry leading More ❯
Lead Application Security Engineer/Ethical Hacker/Security Researcher Location: Fully Remote (UK-based only) Salary: Up to £130,000 base + Bonus Sector: FinTech – Digital Payments/Credit Platforms About the Company We are partnering with a UK-based FinTech at the forefront of redefining consumer credit. With a secure, cloud-native platform and a mission … to simplify the customer finance experience, this business is scaling rapidly while maintaining a deep focus on technology, security, and user trust. With a mature DevSecOps environment and Secure SDLC already in place, this is an opportunity to join a business where security is embedded, respected, and essential. The Role We are seeking a Lead Application Security … role. You will be responsible for identifying and addressing vulnerabilities in the company’s applications – particularly across authentication and payment processing systems – using manual techniques, ethical hacking, and creative security research. You will operate as a subject matter expert in application security, reporting directly to the CIO and working closely with the Head of InformationSecurityMore ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Financial Conduct Authority
Lead Software Security Engineer Division – Data, Technology & Innovation Department - Digital Systems Salary - National (Edinburgh and Leeds) ranging from £59,100 to £82,500 and London from £64,900 to £90,000 per annum (salary offered will be based on skills and experience) About the FCA The FCA regulates the conduct of 45,000 firms in the UK to ensure … our financial markets are honest, fair and competitive. Follow this link to find out more About the FCA . What will you be doing? The Lead Security Engineer role is responsible for technical oversight of secure product development, security testing and security operations. You will work closely with FCA product owners, architects, service managers, and third-party … suppliers who provide the development resources to the FCA to: Embed secure engineering practices in development workflows, ensuring compliance with Secure by Design principles Conduct structured and ad hoc security reviews of code, infrastructure and CI/CD pipelines Define and document secure development lifecycle (SDLC) processes aligned with product needs Lead security education initiatives for development teams More ❯
London, England, United Kingdom Hybrid / WFH Options
Form3 - External
THE ROLE You will build and run defensive security controls for highly-available multi-cloud payment systems running the latest technology. You understand current threats, exploitation paths, and risk tradeoffs to advise engineering teams on security features and prioritize defensive controls. WE'RE LOOKING FOR Essential You live on the Linux command line Your research and experience support … your opinions on security practices and tradeoffs, which you openly debate and share You're sought after for Kubernetes security expertise and have developed complex, heavily customized multi-cluster environments Your security expertise extends to at least one public cloud, including essential security features and long-term hardening practices You appreciate building systems with good engineering … team of security engineers maintaining and expanding security controls, advising wider platform and application teams within R&D. We report to the CISO and collaborate with other InfoSec functions. INTERVIEW PROCESS Screening Call with Talent Team Technical Interview on Kubernetes and Linux Security, including a pre-interview research topic Technical Interview on building secure cloud architectures & team More ❯
London, England, United Kingdom Hybrid / WFH Options
Cyber Crime
UK to ensure our financial markets are honest, fair and competitive. Follow this link to find out more About the FCA . What will you be doing? The Lead Security Engineer role is responsible for technical oversight of secure product development, security testing and security operations. You will work closely with FCA product owners, architects, service managers … suppliers who provide the development resources to the FCA to: Embed secure engineering practices in development workflows, ensuring compliance with Secure by Design principles Conduct structured and ad hoc security reviews of code, infrastructure and CI/CD pipelines Define and document secure development lifecycle (SDLC) processes aligned with product needs Lead security education initiatives for development teams … and product stakeholders Establish and enforce security requirements for new features, APIs and system enhancements Assess and improve security maturity, advocating risk-based methodologies, tooling and automation What will you get from the role? Opportunity to grow in a technology-focused career with meaningful skill development Supportive and collaborative team culture, fostering strong internal and cross-team connections More ❯
sustainable future, recognizing the importance of positively impacting our planet and society. Job Description: You will work with the Management Team to initiate and develop the Occam Group Cyber Security service offering. Supporting our extensive customer base, you will gain diverse experience across multiple projects, including autonomous shipping, novel weapon systems, nuclear power plants, and rail systems. Key Duties … Provide Cyber Security advice and guidance for clients throughout project lifecycles. Apply technical security knowledge and critical thinking to identify and establish good security governance aligned with client needs. Conduct and manage security assurance activities for Defence systems. Perform Cyber Security risk assessments, considering constraints and risk appetite. Create, review, or update security artefacts … such as Security Cases. Build strong relationships with team members and clients. Deliver technical Cyber Security consultancy across Defence and Civil domains. Implement 'Secure by Design' methodology and NIST Risk Management Framework. Maintain awareness of Cyber Security policies and standards such as HMG policies, CESG IA Portfolio, and MoD JSPs. Assist in gaining certifications like ISO27000, NIST More ❯
London, England, United Kingdom Hybrid / WFH Options
Thrive Learning Limited
The Opportunity Join us to own security end-to-end, from shaping WAF rules and cloud posture to building secure APIs that millions rely on. We’re hiring a Senior Security Engineer to help scale Thrive’s security posture as we continue to grow fast and land major enterprise customers. This isn’t your typical security … help teams ship secure-by-design features, and implement pragmatic security improvements across our application codebase, tooling and cloud infrastructure. You’ll work closely with Engineering, Product, and InfoSec to ensure Thrive stays secure by design, especially as we expand into new markets, industries, and regulatory environments. What You’ll Be Doing • Own security across the full stack … from React & NodeJS through to AWS infrastructure, WAFs, and CI/CD. • Build and maintain security-first libraries, tooling and pipelines to support engineering at scale. • Embed secure-by-default practices into our codebase and developer workflows (CI/CD, code reviews, linting, scanning). • Act as an internal consultant and coach, unblocking teams, upskilling devs, and spotting risks More ❯
London, England, United Kingdom Hybrid / WFH Options
Databricks Inc
While candidates in the listed location(s) are encouraged for this role, candidates in other locations will be considered. As a Sr. Enterprise Security Engineer, you will join a growing team that leads our company in enterprise security projects. Reporting to the Director, Enterprise Security, you will be part of the team promoting enterprise security best … practices across the business. You will help to develop and mature our approach to securing all enterprise systems by leveraging your broad technical understanding of Enterprise SaaS security/endpoint security combined with innovative problem solving and creative solutions to novel problems. The impact you will have: Design/Strategy: You will help identify and develop novel solutions … to emerging enterprise security challenges. These may cover multiple disciplines within Enterprise Security such as endpoint security, SaaS application security, and information security. Execution: You will drive the delivery of scalable and technically sound solutions as a service to the business. You will assist other teams outside of Security by performing security design More ❯