London, England, United Kingdom Hybrid / WFH Options
F5 Consultants
Recognised cyber security certifications (e.g. CISSP, CISM, CISA) Proven experience in a cyber security role Experience in customer-facing roles Familiarity with HMG/MoD cyber policies, standards (e.g. JSP440), and processes Experience with Secure by Design implementation and related tooling Knowledge of NCSC Cyber Assurance Framework (CAF) and GovAssure audits Understanding of NIST Cyber Security Framework and risk assessment More ❯
Corsham, England, United Kingdom Hybrid / WFH Options
Cyber UK
Assurance teams. Deliver security artefacts within tight timescales. Essential Skills, Qualifications & Experience Minimum 5 years’ experience in a Security Assurance Coordinator role. Expertise in defencesecurity policies and standards (JSP440, 453, HMG policies). Proven ability to produce RMADS, Security Instructions, and risk documentation. Knowledge ofSecurity Incident Management processes. Experience conducting Risk Assessments and IT Health More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Recognised cyber security certifications (e.g. CISSP, CISM, CISA) Proven experience in a cyber security role Experience in customer-facing roles Familiarity with HMG/MoD cyber policies, standards (e.g. JSP440), and processes Experience with Secure by Design implementation and related tooling Knowledge of NCSC Cyber Assurance Framework (CAF) and GovAssure audits Understanding of NIST Cyber Security Framework and risk assessment More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Cyber UK
and contain damage, and devise measures to protect against future breaches. What you’ll need: In-depth knowledge and experience with MOD policies and standards, including Secure by Design, JSP440, and DefStan 05-138/DCPP. ISO27001 Lead Implementer/Auditor, CISSP or CISM. Strong understanding of data protection compliance and relevant privacy certifications. Proficiency in risk More ❯
Bath, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
series, NIST Cyber Security & Risk Management Frameworks, NCSC CAF, and other industry standards. Familiarity with NCSC guidance and legacy Information Assurance (IA) standards. Experience with MOD security frameworks including JSP 604, JSP440, JSP 902, and DEFCON 659A. Experience in business growth and bid development is desirable. What We’re Looking for: Certified Information System SecurityMore ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
Bailie Group
of common CS&IA bodies, standards, frameworks, guidelines and legislation, including: HMG/NCSC Information Assurance Policies, Standards and Guidelines Cross-government security accreditation and secure by design processes JSP440 (plus other standard MoD IA methods) DCPP's Cyber Security Model List X, List N Cyber Essentials Office for Nuclear Regulation (ONR) Security Assessment Principles (SyAPs) NIST GDPR, DPA, Computer More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
FR Secure
Government environments. Strong understanding of risk management frameworks and secure-by-design principles. Familiarity with government and defencesecurity standards such as: HMG/NCSC IA Policies and Guidelines JSP440 and other MoD IA standards Cyber Essentials NIST, NIS-D ONR SyAPs (Security Assessment Principles) Excellent stakeholder communication skills – you can clearly explain complex security concepts to both technical and More ❯
Luton, England, United Kingdom Hybrid / WFH Options
LHH
Security Professional. Knowledge of UK/NATO Information Assurance standards, procedures & systems, including Government Functional Standard GovS 007: Security, HMG IS1&2, ISO27000 series standards, NIST SP800 series standards, JSP440, JSP604, guidance material provided by NCSC, CPNI and NIST. Practical experience of producing Security Accreditation documentation Practical experience of NCSC and Common Criteria security evaluation techniques. Knowledge of current crypto More ❯
Almondsbury, Gloucestershire, United Kingdom Hybrid / WFH Options
Frontier Resourcing
Perform security code reviews, provide guidance on secure libraries and frameworks. Standards & Compliance Ensure products meet regulatory and defence standards (ISO 27001/27005, NIST 800-30/53, JSP440/604, Def Stan 05-series). Lead the creation and maintenance ofsecurity documentation (RMADS, Security Assurance Documents, Security Management Plans). Testing & Assurance Design and More ❯
Almondsbury, England, United Kingdom Hybrid / WFH Options
Frontier Resourcing
Perform security code reviews, provide guidance on secure libraries and frameworks. Standards & Compliance Ensure products meet regulatory and defence standards (ISO 27001/27005, NIST 800-30/53, JSP440/604, Def Stan 05-series). Lead the creation and maintenance ofsecurity documentation (RMADS, Security Assurance Documents, Security Management Plans). Testing & Assurance Design and More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Serco
expected but not mandatory. Thorough understanding of modern IT infrastructure, applications and Cloud based technologies. Strong understanding of Secure by Design principles and MOD security policies and requirements (e.g. JSP440, JSP 605, DEFCON 658). Proven analytical skills with a logical approach to problem-solving and the ability to develop innovative ideas and effective solutions. Effective More ❯
Provide strategic guidance on secure cloud adoption, data protection, and architectural risk management Conduct security assessments, identifying risks and proposing effective mitigation strategies Ensure compliance with MOD policies, including JSP440, and NCSC cloud security principles Work closely with delivery teams, architects, and senior stakeholders to embed security throughout the solution lifecycle Support security assurance and accreditation activities … based systems Essential Skills & Experience: Proven experience as a Security Architect within MOD or wider defence/public sector environments Strong understanding of MOD security protocols and delivery frameworks (JSP440, DEFCONs, etc.) Demonstrable experience in cloud security (Azure, AWS or hybrid environments), ideally within secure or classified settings Expertise in risk management, security governance, and assurance practices More ❯
Corsham, Wiltshire, South West, United Kingdom Hybrid / WFH Options
Experis UK
Provide strategic guidance on secure cloud adoption, data protection, and architectural risk management Conduct security assessments, identifying risks and proposing effective mitigation strategies Ensure compliance with MOD policies, including JSP440, and NCSC cloud security principles Work closely with delivery teams, architects, and senior stakeholders to embed security throughout the solution lifecycle Support security assurance and accreditation activities … based systems Essential Skills & Experience: Proven experience as a Security Architect within MOD or wider defence/public sector environments Strong understanding of MOD security protocols and delivery frameworks (JSP440, DEFCONs, etc.) Demonstrable experience in cloud security (Azure, AWS or hybrid environments), ideally within secure or classified settings Expertise in risk management, security governance, and assurance practices More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
QinetiQ
testing Modelling Cyber security risks using established and novel frameworks Essential experience ofthe Principal Cyber Security Consultant: In-depth knowledge of MoD Security policy In-depth knowledge ofJSP440 and JSP604 Experienceof SbD and the application of it to MoD Products, Services or Systems The ability to evaluate established and novel cyber security solution concepts and strategies The ability More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
QinetiQ Limited
testing Modelling Cyber security risks using established and novel frameworks Essential experience ofthe Principal Cyber Security Consultant: In-depth knowledge of MoD Security policy In-depth knowledge ofJSP440 and JSP604 Experienceof SbD and the application of it to MoD Products, Services or Systems The ability to evaluate established and novel cyber security solution concepts and strategies The ability More ❯
Horley, England, United Kingdom Hybrid / WFH Options
Tiger Resourcing Group
into secure, compliant, and cost-effective Azure solutions. Collaborate with cybersecurity teams to ensure solutions meet UK government security classifications, accreditation processes, and relevant compliance frameworks (eg NCSC, MOD JSP, ISO 27001). Support deployment automation and Infrastructure-as-Code (IaC) approaches leveraging Azure Resource Manager (ARM), Bicep, or Terraform. Conduct Azure cost optimisation, performance tuning, and cloud governance … obtain clearance required). Desirable Skills Experience working in Defence, Aerospace, or Government sectors. Familiarity with enterprise network integration and Legacy system interfacing. Knowledge of MOD standards such as JSP440, JSP 604, and Secure by Design principles. Exposure to Microsoft Purview, Defender for Cloud, or other advanced security services. TOGAF or SABSA certification. Certifications (Mandatory) Microsoft More ❯
Cheltenham, Gloucestershire, South West, United Kingdom Hybrid / WFH Options
Forward Role
within public sector/govt. Broad understanding ofSecurity across SecOps, Cloud, Infrastructure, Networks & Engineering. Knowledge of Government cyber requirements related to Defence and Security e.g. Secure by Design, JSP 440. Excellent stakeholder management – must be able to articulate Security principles to both technical and non-technical stakeholders. Previous experience of using appropriate methodologies to identify, assess and manage More ❯
Farnborough, England, United Kingdom Hybrid / WFH Options
SixWorks
Nice to have) Experience of supporting development in a government or defence sector; Hands-on experience of configuring CI/CD tools and Kubernetes; Knowledge of MOD policies (e.g. JSP440); Experience with Slunk, Elastic SIEM, Nessus/Tenable Management of SOC processes Environment and Benefits We have modern offices in Cody Technology Park and have well established More ❯
the following: Essential Ability to travel and work onboard surface and sub-surface vessels Ability to travel for projects as and when required (occasionally includes foreign travel) Knowledge ofJSP440/441 Working knowledge of SharePoint Knowledge and experience with information management MOD security clearance or be willing to undergo Security Clearance to DV level Desirable Skills Some knowledge ofMore ❯
Southwick, Hampshire, United Kingdom Hybrid / WFH Options
Carbon 60
the following: Essential Ability to travel and work onboard surface and sub-surface vessels Ability to travel for projects as and when required (occasionally includes foreign travel) Knowledge ofJSP440/441 Working knowledge of SharePoint Knowledge and experience with information management MOD security clearance or be willing to undergo Security Clearance to DV level Desirable Skills Some knowledge ofMore ❯