City of London, London, England, United Kingdom Hybrid / WFH Options
How to Job Ltd
who are eager to develop their skills in a collaborative and fast-paced environment. Responsibilities: •Monitor and analyze security alerts to identify potential threats. •Assist with vulnerability assessments and penetration testing. •Support the implementation of security tools and protocols. •Investigate and respond to security incidents alongside the IT team. •Create detailed reports on security findings and recommendations for stakeholders. More ❯
Aberdeen, Scotland, United Kingdom Hybrid / WFH Options
KPMG United Kingdom
This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Job description Assistant Manager Job title: Senior Penetration Tester - Assistant Manager Location: UK Line of Business: Advisory - Risk Consulting Service Area: Cyber Security Roles and Responsibilities The Role At KPMG we are looking for an Assistant Manager who lives … to cut your teeth on and a friendly, passionate team to develop and grow. The Team The KPMG's Cyber Defence (CDS) Team conducts client facing technical assurance and penetrationtesting and has a long and successful history in KPMG. Our clients are diverse and we cover many sectors with particular specialisms in Financial Services, High-end Defence … Assurance and Telecommunications. We work closely with the NCSC developing new schemes such as Cross Domain Solutions Testing ( https://www.ncsc.gov.uk/blog-post/ncsc-cross-domain-industry-pilot-stage-2 ) and are members of all current NCSC and CREST testing schemes - as a result we conduct interesting and challenging work that isn't on offer More ❯
Sheffield, England, United Kingdom Hybrid / WFH Options
HSBC
Senior Manager, Cyber Security Assessment & Testing CCO Brand: HSBC Area of Interest: Technology Location: Sheffield, GB, S1 4NB Work style: Hybrid Worker Senior Manager, Cyber Security Assessment & Testing CCO The GCIO Chief Control Office (CCO) team plays an important role in enabling the bank to operate within its risk appetite by ensuring efficient and effective risk and control … fantastic new role, you will join a growing team to partner with the CISO CCO to oversee the risk and control portfolio related to the services Cybersecurity Assessment and Testing (CSAT) provides to the Group. CSAT oversees Vulnerability Management, Application Security, PenetrationTesting and Red Teaming, Threat Modelling and other related services You will be a leader … their area of responsibility. To be successful in this role you should have the following skills: Technical: One or more or the control capabilities in the domain (Vulnerability Management, PenetrationTesting and Red Teaming, Application Security, Threat Modelling) Management of operational risk, non-financial risk and/or technology and information security risk Management of diverse risk types More ❯
London, England, United Kingdom Hybrid / WFH Options
Nomios Netherlands
Why join Dionach by Nomios? Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Job Description Location: This role … Why join Dionach by Nomios? Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetrationtesting and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally. Dionach by Nomios holds impressive … enterprise security systems. Delivering presentations to technical and non-technical stakeholders. Main role will be as a Junior Cyber Security Consultant, with options in the future to move into penetrationtesting andto work in other areas of information security consultancy. Focus on your development by attaining industry recognised certifications. Be available for occasional on-call duties and on More ❯
London, England, United Kingdom Hybrid / WFH Options
Marlin Selection
Security Engineer, you will implement and maintain robust security systems and protocols across the IT infrastructure. Your responsibilities include conducting risk assessments and vulnerability scans, mitigating vulnerabilities identified in penetrationtesting, and implementing preventative measures to protect against cyber threats. You will monitor the security infrastructure, detect and respond to potential threats, mentor and develop the IT security … SSO Manage MDMMAM and Conditional Access Manage security certificates and keys Manage IDS and IPS Manage PAM systems Deliver Cyber Security Awareness Training Remediate vulnerabilities and weaknesses identified during penetrationtesting Participate in ad-hoc IT security projects Experience – Essential The successful candidate will have good working knowledge and experience managing the following technology stack: CrowdStrike EDR Mimecast … Menlo Web Security Gateway KnowBe4 Digicert Certificates and Microsoft Certificate Services Ivanti or Automox patching AppCheck or Tenable WAS Desired Education: CISM, MS SC100, 200, 900, OSCP, or other penetrationtesting qualifications Industry: Financial services, SOC, pentesting is desirable Personal Skills: Excellent interpersonal, written, and verbal communication skills; ability to handle multiple priorities and projects; clear and precise More ❯
Almondsbury, Gloucestershire, United Kingdom Hybrid / WFH Options
Frontier Resourcing
/53, JSP 440/604, Def Stan 05-series). Lead the creation and maintenance of security documentation (RMADS, Security Assurance Documents, Security Management Plans). Testing & Assurance Design and execute penetration tests and automated vulnerability scans; validate fixes. Oversee third-party security assessments as required. Continuous Improvement Drive security tooling and automation (CI/CD integration … management frameworks (ISO 27001/2/5/31000, NIST 800-series) and Defence Standards (JSPs, Def Stan 05-138/139). Hands-on experience with security testing tools and techniques (SAST, DAST, penetrationtesting). Eligible for UK SC clearance; right to work in the UK. Why Join? You'll Gain exposure to cutting More ❯
Security Engineer, you will implement and maintain robust security systems and protocols across our IT infrastructure. Your responsibilities include conducting risk assessments and vulnerability scans, mitigating vulnerabilities identified in penetrationtesting, and implementing preventative measures to protect against cyber threats. You will monitor the security infrastructure, detect and respond to potential threats, mentor and develop the IT security … SSO Manage MDM/MAM and Conditional Access Manage security certificates and keys Manage IDS and IPS Manage PAM systems Deliver Cyber Security Awareness Training Remediate vulnerabilities identified during penetrationtesting Handle ad-hoc IT security projects Experience - Essential The successful candidate will have good working knowledge and experience with the following technology stack: CrowdStrike EDR Mimecast Mail … Menlo Web Security Gateway KnowBe4 Digicert Certificates and Microsoft Certificate Services Ivanti or Automox patching AppCheck or Tenable WAS Desired Education: CISM, MS SC100, 200, 900, OSCP or other penetrationtesting qualifications. Industry: Financial services, SOC, Pentesting is desirable Personal Skills: Excellent interpersonal, written, and verbal communication skills Ability to handle multiple priorities, tasks, and projects simultaneously Clear More ❯
and promote a culture of continuous improvement. We are looking for an enthusiastic Senior Test Engineer (Non-Functional Security) with great technical skills, able to deliver and support security testing workstreams, including vulnerability assessments and penetration testing. You will also offer guidance to other testers on security testing best practices. You will be part of our non … functional testing specialist team, working collaboratively with your team and overseeing the testing journey. This provides an opportunity to make the test community thrive by exploring new and emerging tools and approaches and working out how you can help the organisation deliver better services. This is a rewarding role within the Test Team and provides an opportunity to … more information. Job description As a Senior Test Engineer focusing on security you will; Working within a delivery team, you'll contribute to the coordination and execution of security testing across the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, testing security related issues. Support the wider test More ❯
Security Engineer, you will implement and maintain robust security systems and protocols across the our IT infrastructure. You will conduct risk assessments and vulnerability scans, mitigate vulnerabilities identified in penetrationtesting, and implement preventative measures to protect against cyber threats. You will monitor the security infrastructure and detect and respond to potential threats. You will help mentor and … Manage MDM\MAM and Conditional Access Manage security certificates and keys. Manage IDS and IPS. Manage PAM systems Deliver Cyber Security Awareness Training Remediate vulnerabilities and weaknesses identified during penetration testing. Ad-hoc IT security projects The successful candidate will have a good working knowledge and experience in managing the majority of the following technology stack CrowdStrike EDR Mimecast … Microsoft Certificate Services Ivanti or Automox patching AppCheck or Tenable WAS Kali Linux (NMAP, Metasploit, BurpSuite, John etc) Desired Education: CISM, MS SC100, 200 and 900, OSCP or other penetrationtesting qualifications. Industry: Financial services, SOC, Pentesting is desirable Personal Skills: Excellent inter-personal, written and verbal communication skills The ability to handle multiple priorities, tasks and projects More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Marlin Selection Recruitment
Security Engineer, you will implement and maintain robust security systems and protocols across the our IT infrastructure. You will conduct risk assessments and vulnerability scans, mitigate vulnerabilities identified in penetrationtesting, and implement preventative measures to protect against cyber threats. You will monitor the security infrastructure and detect and respond to potential threats. You will help mentor and … Manage MDM\MAM and Conditional Access Manage security certificates and keys. Manage IDS and IPS. Manage PAM systems Deliver Cyber Security Awareness Training Remediate vulnerabilities and weaknesses identified during penetration testing. Ad-hoc IT security projects The successful candidate will have a good working knowledge and experience in managing the majority of the following technology stack CrowdStrike EDR Mimecast … Microsoft Certificate Services Ivanti or Automox patching AppCheck or Tenable WAS Kali Linux (NMAP, Metasploit, BurpSuite, John etc) Desired Education: CISM, MS SC100, 200 and 900, OSCP or other penetrationtesting qualifications. Industry: Financial services, SOC, Pentesting is desirable Personal Skills: Excellent inter-personal, written and verbal communication skills The ability to handle multiple priorities, tasks and projects More ❯
of continuous improvement. We are looking for an enthusiastic Lead Test Engineer (Security) with great technical skills able to coach and mentor other testers and lead the non-functional testing workstream focused on Security testing. You will be part of our lead tester group, working collaboratively with your team and overseeing the testing journey with management responsibilities. This … . Please see 'Things you need to know' section below for more information. Job description As a Lead Test Engineer focusing on security, you will: Take ownership of security testing within the software development lifecycle. This will involve running vulnerability scans using tools such as Burp, coordinating with relevant teams, and testing security-related issues. As a manager … you will provide advice, coaching and mentoring to testers on non-functional testing subjects such as security testing. Attend meetings and provide stakeholders with updates. Design and execute manual and automated security test cases using standard testing techniques. Design and implement pipeline solutions to support automated security testing and reporting. For more information on the Test Engineering More ❯
clearly to both technical and non-technical audiences and hold strong team ethos that encourages diversity. IT WOULD BE GREAT IF YOU ALSO HAD ANY Experience of conducting control testing, technical reviews or audits to understand cyber compliance needs aligned to technical and regulatory standards. Experience of cyber risk management, security frameworks (NIST, ISO27001) cyber compliance, assurance, and attestation … work. Exposure to facilitating penetrationtesting, security risk assessments, driving the remediation of cyber vulnerabilities and remediating or mitigating cyber risks. Experience of security testing services e.g., penetrationtesting, ZAP testing, Burp Suite, Attack & Breach simulation, or similar. Knowledge of emerging threats e.g. Quantum, AI and Digital Ledger Financial Services Regulation and Payments Scheme More ❯
overall security posture. Key responsibilities: Conducting comprehensive security assessments: This involves evaluating an organization's IT infrastructure, networks, systems, and applications to identify potential weaknesses and vulnerabilities. Performing vulnerability testing and penetrationtesting: Using various tools and techniques (like Nessus, Burp Suite, Metasploit), you'll simulate attacks to uncover exploitable flaws. Developing threat analysis schedules and staying More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Global TechForce
overall security posture. Key responsibilities: Conducting comprehensive security assessments: This involves evaluating an organization's IT infrastructure, networks, systems, and applications to identify potential weaknesses and vulnerabilities. Performing vulnerability testing and penetrationtesting: Using various tools and techniques (like Nessus, Burp Suite, Metasploit), you'll simulate attacks to uncover exploitable flaws. Developing threat analysis schedules and staying More ❯
London, England, United Kingdom Hybrid / WFH Options
Global TechForce
overall security posture. Key responsibilities: Conducting comprehensive security assessments: This involves evaluating an organization's IT infrastructure, networks, systems, and applications to identify potential weaknesses and vulnerabilities. Performing vulnerability testing and penetrationtesting: Using various tools and techniques (like Nessus, Burp Suite, Metasploit), you'll simulate attacks to uncover exploitable flaws. Developing threat analysis schedules and staying More ❯
Greater London, England, United Kingdom Hybrid / WFH Options
Gazelle Global
access controls on network device interfaces. Design secure networking in cloud platforms (AWS, Azure, GCP). Support incident response teams in investigating network-related threats. Collaborate with compliance and penetrationtesting teams to ensure end-to-end remediation. Requirements: Proven experience in network security across hybrid environments. Deep understanding of protocols, firewalls, routing, and switching. Familiar with PCI More ❯
Reading, Berkshire, England, United Kingdom Hybrid / WFH Options
Proactive Appointments
implement effective security controls, system hardening and security improvement projects with a particular focus in application/web hosting security. Assist in the management of patching, vulnerability analysis and penetrationtesting to ensure recommendations are risk assessed and implemented in a timely manner Senior Cyber Security Engineer - Skills: Experience in Security Engineering, Network Security, and/or working More ❯
role across various IT and transformation projects: Conduct thorough security risk assessments and translate them into actionable requirements Contribute to and validate secure-by-design architecture Define and coordinate penetrationtesting and security validation activities Actively participate in governance processes (e.g. baseline re-certifications, exception boards, dashboards) Document and implement security standards, processes, and best practices Act as More ❯
cyber domains, and at least one of the below: Network and infrastructure security Security operations and incident response Threat intelligence and threat modelling Governance, risk & compliance (GRC) Cloud security Penetrationtesting and vulnerability management Excellent communication & presentation skills. Desirable: Certifications such as CISSP, CISM, CEH, CPENT, Security+, CySA+, OSCP, AWS, GCP or Azure Security Certs, or similar Why More ❯
City of London, London, United Kingdom Hybrid / WFH Options
FIND | Creating Futures
cyber domains, and at least one of the below: Network and infrastructure security Security operations and incident response Threat intelligence and threat modelling Governance, risk & compliance (GRC) Cloud security Penetrationtesting and vulnerability management Excellent communication & presentation skills. Desirable: Certifications such as CISSP, CISM, CEH, CPENT, Security+, CySA+, OSCP, AWS, GCP or Azure Security Certs, or similar Why More ❯
expertise in AI security . Deep understanding of machine learning, neural networks, and adversarial attacks . Proficiency in cryptographic techniques and secure AI model development . Strong experience with penetrationtesting, threat intelligence, and security auditing . Familiarity with frameworks such as NIST AI Risk Management and Secure AI development guidelines. Excellent problem-solving skills and ability to … service, and other categories protected by federal, state or local law. Reasonable Accommodations If you require a reasonable accommodation in completing a job application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please fill out the accommodations form by clicking on this link Accommodation for disability form . If you're unable to More ❯
London, England, United Kingdom Hybrid / WFH Options
Moore Kingston Smith
plain English A client-focused mindset with strong problem-solving skills Industry certifications (e.g. ISO 27001 Lead Auditor, CISSP, CISA, CISM) are a bonus If you have exposure to penetrationtesting, vulnerability assessments, cloud security (e.g. AWS, Azure, GCP) or Operational Technology (OT) - that's a real plus! What's in it for you? A client-facing role More ❯
London, England, United Kingdom Hybrid / WFH Options
Jobgether
and security tooling recommendations Translate complex technical findings into actionable insights for both technical and non-technical audiences Collaborate across global teams including digital forensics, threat intelligence, and pen testing specialists Contribute to proposal writing and client RFPs as a subject matter expert Drive continuous improvement of services, tools, and processes within the consulting team Adhere to client and … London, England, United Kingdom 3 weeks ago Identity Security Consultant - CyberArk Exp London, England, United Kingdom 6 days ago London, England, United Kingdom 1 week ago Consultant, Application Security Penetration Tester Edinburgh, Scotland, United Kingdom 6 days ago Lead Cyber Security Advisory Consultant - Eviden London, England, United Kingdom 3 days ago London, England, United Kingdom 25 minutes ago London More ❯
London, England, United Kingdom Hybrid / WFH Options
ControlPlane
cloud infrastructures by implementing security measures that are "secure-by-design" and "secure-by-default." This engineering excellence has driven ControlPlane deeper into cybersecurity providing services like threat modelling, penetrationtesting, and supply chain security to ensure robust protection against cyberattacks in containerised and cloud-native environments. We are acclaimed for our contributions to securing highly regulated industries More ❯
Arnold, Missouri, United States Hybrid / WFH Options
Lockheed Martin
with infrastructure as code (IaC) tools (e.g., Terraform, Ansible) • Understanding of Risk Management Framework (RMF) NIST SP 800-53 • Understanding of security best practices and tools (e.g., vulnerability scanning, penetrationtesting) • Strong problem-solving and troubleshooting skills • Excellent communication and collaboration skills • Technical curiosity to learn new skills and are ready to help across the team Security Clearance More ❯