London, England, United Kingdom Hybrid / WFH Options
watchTowr
some of the world's largest organisations, our mission is to enable organisations to continuously understand how an attacker would successfully compromise their business-with cutting-edge Attack Surface Management and Continuous Automated Red Teaming technology. watchTowr was named within Gartner's Emerging Tech Impact Radar report in 2023, in Gartner's Innovation Impact report for ASM in … security programme. Sounds great-what will I do? This role involves: Security Architecture in the Cloud : Designing and implementing secure cloud infrastructures, ensuring robust protection against potential threats. Endpoint Management and Administration : Overseeing the deployment, configuration, and maintenance of endpoint security solutions to safeguard all devices within the organisation. Vulnerability Assessment and Management : Conducting regular vulnerability … cloud platforms (AWS), including the design and implementation of security architectures and controls. Endpoint Security : Hands-on experience with endpoint protection solutions, ensuring devices are safeguarded against potential threats. VulnerabilityManagement : Proficiency in conducting vulnerability assessments using industry-standard tools and methodologies, and managing remediation processes. Compliance and Security Controls : Familiarity with implementing security controls aligned with More ❯
IT Operation s Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation’s IT operations, ensuring the stability, continuity, security, and efficiency of its technology … environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks … and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection More ❯
assessing, and mitigating security risks across various platforms. The consultant will play a critical role in evaluating and strengthening our clients’ cybersecurity postures by conducting in-depth security assessments, vulnerability analysis, and developing comprehensive security strategies. RESPONSIBILITIES Conduct comprehensive penetration tests, vulnerability assessments, and security audits to identify risks and ensure compliance with industry best practices. Provide expert … Collaborate with client teams to develop, document, and implement security policies, standards, and guidelines aligned with industry standards (e.g., ISO 27001, NIST). Assist in the deployment, configuration, and management of security infrastructure and technologies, including firewalls, intrusion detection/prevention systems, and secure network architectures. Provide guidance and support on Azure security practices, leveraging expertise in Microsoft Azure … reports on penetration testing findings, including risk levels, remediation steps, and strategic recommendations. EXPERIENCE: Minimum of 4+ years of experience in cybersecurity, specifically in penetration testing and Incident Response, vulnerabilitymanagement, and risk assessment. Public Sector experience, ideally MOD, MOJ, Must be SC clearable. Proven hands-on experience with tools such as Metasploit, Burp Suite, Nessus, and Wireshark. More ❯
in IT infrastructure coupled with security, compliance, and risk management. You must have upwards of 10 years of hands-on expertise in IT infrastructure combined with security and risk management, ideally from within the banking or insurance sector. The IT Operations Platforms and Security Lead is responsible for overseeing the organization’s IT operations, ensuring the stability, continuity, security … of its technology platforms within a global commercial insurance environment. The role involves managing Microsoft technologies (Microsoft 365, Azure, Exchange Online) and broader enterprise IT systems, networking, security, data management, and third-party platforms supporting global operations. This position requires a proactive leader capable of driving operational excellence, managing security risks, implementing service improvements, leading transformational projects, and collaborating … include ensuring outsourced and cloud services are robust, cost-effective, and aligned with business needs, enhancing cybersecurity, driving operational change, and ensuring compliance with relevant regulations. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls. Oversee the adoption of zero-trust security principles. Manage IAM including Azure AD, MFA, Conditional Access, SSO More ❯
environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks … a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. The role requires the ability to "lead by example" and perform line management for direct reports and manage service partners reporting into the function. Additional responsibilities are to respond to support requests by Key Responsibilities: IT Operations & Cloud Platform Management Lead … business continuity (BC) and disaster recovery (DR) plans, ensuring cloud- based solutions support resilience and rapid recovery. Manage Global Infrastructure (Cloud, On-prem and Virtual product) Solution Life Cycle Management and removal (via decommissioning and succession planning) of technical debt. Drive a document first culture to new and legacy platforms/solutions. Oversee management of the End User More ❯
GRC working group. Requirements Operationalising and ensuring delivery of security policy, standards and procedures Assuring day-to-day execution of operational security tasks across multiple areas including threat and vulnerabilitymanagement, anti-virus management, security monitoring etc. Supporting the Technology team to keep information security infrastructure up to date with emerging threats and vulnerabilities, including advising on … looking for include: Experience with GDPR/UK Data Protection, Cyber Essentials and ISO 27001 frameworks Managing technical risks and proposing solutions and recommendations Security Operations procedures, i.e. Incident management and response Configuring, optimising and reporting with Microsoft 365 Security and Compliance modules, including Defender, Security Centre, Protection, Compliance Centre Configuring and maintaining endpoint security technologies (AV, firewall, encryption … RBAC, Security by Design, PAM, Segregation of Duties Data Protection and DLP Experience with the following would also be beneficial: NIST, SOC2 and additional compliance and regulatory frameworks Project Management and technical delivery Experience of, or a keen interest in, the business of sport #J-18808-Ljbffr More ❯
SOC services with business priorities is also essential. Qualifications Degree or equivalent experience Recognized security qualifications (e.g., CISM, CISSP) preferred Experience leading security teams or senior security analysts Project management experience (preferred) Leadership skills for managing security analysts and specialists Expertise in incident detection, analysis, response, and coordination Deep understanding of cybersecurity principles and technologies Proficiency with SOC tools … to evolving threats and technologies Experience Extensive security operations experience Prior CIRT team experience Leadership in Security Incident Response Experience with SIEM/SOAR tools Knowledge of threat intelligence, vulnerabilitymanagement, network security Experience with threat analysis and security alerts Familiarity with frameworks like MITRE ATT&CK, NIST CSF Leadership or strong potential in security teams Performance managementMore ❯
of security tools and technologies (e.g., SIEM, IDS/IPS, EDR/XDR, Email protection, DLP, SOAR, Cloud Security etc.) Knowledge of Cyber Security domains (e.g., Identity and access Management, Network Security, Incident Response etc) Desirable skills Ideally you will come from an Infrastructure engineering background. Relevant industry qualifications and certifications (CompTIA Security+, CEH, GCIH, GCIA CISSP etc) Experience … Knowledge of the following security products are ideal: ? SEIM (Rapid7 IDR, MS Sentinel, SPLUNK) ? SOAR (Rapid7 ICON, MS Sentinel) ? Endpoint Detection and Response (Microsoft Defender) ? Email Security (Proofpoint, Mimecast) ? VulnerabilityManagement (Rapid7 IVM, Nessus, Tenable) Proficiency with scripting and automation (e.g., Powershell, Python) Understanding of Zero-Trust Architecture within a hybrid cloud environment. Working knowledge of cyber threat More ❯
Liverpool, Lancashire, United Kingdom Hybrid / WFH Options
Techwaka
with stakeholders to maintain compliance with industry standards such as ISO27001, Cyber Essentials Plus, PCI/DSS Stay ahead of cyber threats, maintaining and improving security monitoring and risk management processes Support vulnerabilitymanagement, penetration testing, and incident response Requirements for this role: 3+ years' experience in a senior cyber security role Strong knowledge of security frameworks More ❯
Liverpool, England, United Kingdom Hybrid / WFH Options
Techwaka
with stakeholders to maintain compliance with industry standards such as ISO27001, Cyber Essentials Plus, PCI/DSS Stay ahead of cyber threats, maintaining and improving security monitoring and risk management processes Support vulnerabilitymanagement, penetration testing, and incident response Requirements for this role: 3+ years' experience in a senior cyber security role Strong knowledge of security frameworks More ❯
industry Skills/Knowledge Knowledge of audit procedures and technical security and control standards usually obtained through related work experience Solid understanding of ITGC and related processes (e.g., Configuration Management, Vendor Management, Access and Identity Management) Understanding of Information Technology Service Management (ITSM) controls (e.g., Incident Management, Change Management, Problem Management) Skills as … needed to perform testing of application controls (e.g., BC/DR, Application Security Testing, Interface Controls) Skills as needed to perform testing of information security and cybersecurity controls (e.g., VulnerabilityManagement, Incident Response, Network Security) Analytical and organizational skills are necessary to conduct audits Strong issue writing and workpaper documentation skills Knowledge and awareness on NIST More ❯
London, England, United Kingdom Hybrid / WFH Options
Fnality
Security Engineer for a fintech startup Experience of successfully delivering secure, large-scale projects as cloud solutions Experience managing best practice standards, such as ISO27001 and NIST Experience maintaining vulnerability detection tooling, email security gateways, EDR solutions and SIEM technology Experience in red teaming/pen testing advantageous Experience in securing the development of DevOps pipelines Experience with containerisation … Kubernetes, Helm) Knowledge of scripting languages to support automation Strong understanding of network and security concepts Experience working with the M365 platform and tooling; including but not limited to VulnerabilityManagement, Intune MDM, Azure AD, and Azure Sentinel Experience working with the AWS platform and tooling; including but not limited to AWS Security Hub, Inspector, Guard Duty, WAF … limited resources and tight deadlines Attention to detail Ability to see the bigger picture Desirable Skills Experience in a Security Engineering role adhering to regulatory compliance and information security management frameworks (e.g., ISO27001, NIST) Possess one or more of the following certifications: CCSP, CISSP, SSCP Understanding of financial services and relevant regulations Knowledge of blockchain, security operations, financial systems More ❯
Your main duties & responsibilities: Operationalising and ensuring delivery of security policy, standards and procedures Assuring day-to-day execution of operational security tasks across multiple areas including threat and vulnerabilitymanagement, anti-virus management, security monitoring etc Supporting the Technology team to keep information security infrastructure up to date with emerging threats and vulnerabilities, including advising on … looking for include: Experience with GDPR/UK Data Protection, Cyber Essentials and ISO 27001 frameworks Managing technical risks and proposing solutions and recommendations Security Operations procedures, i.e. Incident management and response Configuring, optimising and reporting with Microsoft 365 Security and Compliance modules, including Defender, Security Centre, Protection, Compliance Centre Configuring and maintaining endpoint security technologies (AV, firewall, encryption … RBAC, Security by Design, PAM, Segregation of Duties Data Protection and DLP Experience with the following would also be beneficial: NIST, SOC2 and additional compliance and regulatory frameworks Project Management and technical delivery Experience of, or a keen interest in, the business of sport Seniority level Seniority level Mid-Senior level Employment type Employment type Full-time Job function More ❯
London, England, United Kingdom Hybrid / WFH Options
V7 Labs
is for you. What you will do: Design and implement robust, forward-thinking security strategies, policies, and procedures to safeguard our systems, networks, and data Lead regular security assessments, vulnerability scans, and penetration tests to identify risks and deploy effective remediation measures Monitor systems, networks, and logs for any signs of security incidents or unauthorized access and respond promptly … landscape relevant to SaaS products, preferably in a data-heavy environment Hands-on experience with security technologies such as firewalls, intrusion detection/prevention systems, SIEM, antivirus, encryption, and vulnerability assessment tools You own relevant certifications (Security+, IAT II/III level or similar) You excel in risk assessments, vulnerabilitymanagement, and data-driven decision making Strong More ❯
London, England, United Kingdom Hybrid / WFH Options
V7 Labs
is for you. What you will do: Design and implement robust, forward-thinking security strategies, policies, and procedures to safeguard our systems, networks, and data Lead regular security assessments, vulnerability scans, and penetration tests to identify risks and deploy effective remediation measures Monitor systems, networks, and logs for any signs of security incidents or unauthorised access and respond promptly … landscape relevant to SaaS products, preferably in a data-heavy environment Hands-on experience with security technologies such as firewalls, intrusion detection/prevention systems, SIEM, antivirus, encryption, and vulnerability assessment tools You own relevant certifications (Security+, IAT II/III level or similar) You excel in risk assessments, vulnerabilitymanagement, and data-driven decision making Strong More ❯
London, England, United Kingdom Hybrid / WFH Options
Flagstone
and availability to our clients who trust us with their transactions, data, and availability. You will help to grow the dedicated security function at Flagstone and assist with the management of a secure modern Microsoft Azure hosted services as well as help us to build out our automation and controls in the same way we build and provide our … London, England, United Kingdom 1 week ago London, England, United Kingdom 1 month ago IT Security Solution Architect - Director London, England, United Kingdom 2 weeks ago Senior Security Analyst - VulnerabilityManagement Information Security Architect/Manager London, England, United Kingdom 1 week ago London, England, United Kingdom 1 week ago Experienced Security Architect | Professional Pension Management Firm More ❯
Slough, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Vulnerability Assessment Analyst, Slough Client: The Curve Group Location: Slough, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 4 Posted: 26.06.2025 Expiry Date: 10.08.2025 Job Description: Cyber VulnerabilityManagement Analyst Fixed Term Contract (Maternity Cover) 18 months Our client is a globally recognised, successful … Computer Science, Cyber Security, or related certifications Desirable: Knowledge of IT security principles, standards, and regulations (ISO 27001, NIST, CIS, PCI DSS, GDPR) Certifications: CISM, CISSP Experience with Patch Management, EDR/XDR, Antivirus, NAC (Forescout) Familiarity with Vulnerability Scanning Tools (Tenable One, Qualys) Knowledge of vulnerability scoring systems (CVSS/CMSS) Incident Response & Forensic ManagementMore ❯
Social network you want to login/join with: Vulnerability and Compliance Lead, Belfast col-narrow-left Client: Location: Belfast, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Reference: eb1cb784778d Job Views: 7 Posted: 29.06.2025 Expiry Date: 13.08.2025 col-wide Job Description: Vulnerability & Compliance Lead We are Grant Thornton. We go beyond … valued. If you are looking to deepen and develop your skills, knowledge, and experience throughout your career, then that is what you will get, and more. Job Summary: The Vulnerability & Compliance Lead is responsible for tracking and managing the identification, assessment, and remediation of security vulnerabilities across the organization's infrastructure and endpoints and monitoring and reporting on vulnerability … are applied promptly and effectively. Additionally, the Lead ensures that the organization's security posture remains strong and compliant with industry standards. Key Responsibilities: Knowledge: Subject Matter Expert in vulnerability remediation, offering guidance and support to ensure effective remediation processes Prioritization: determine remediation priorities based on vulnerability severity, exploitability, and potential business impact Planning: Develop strategies to address More ❯
job poster from Gazelle Global Solving problems for leaders in Cybersecurity for IT - OT/ICS Domains.. While Supporting Engineers, Heads of, Managers, and CISO professionals... Remediation Engineer – Security & VulnerabilityManagement We are seeking a technically proficient Remediation Engineer – Security & VulnerabilityManagement to support our vulnerabilitymanagement and threat remediation efforts. The successful candidate … analysing security vulnerabilities, coordinating with cross-functional teams, and implementing timely, effective remediation to reduce the organization’s risk exposure—including on-premise environments, AWS, and Azure—through effective vulnerability lifecycle management, stakeholder engagement, and comprehensive tracking and reporting. Key Responsibilities Lead the identification, assessment, and remediation of vulnerabilities across all operating systems (Windows, Linux, macOS) and platforms … on-premise and cloud). Analyze vulnerability scan results from tools such as Qualys, Nessus and cloud native tools. Collaborate with system, application, and infrastructure teams to prioritize and remediate vulnerabilities across on-premise and cloud environments. Prioritize vulnerabilities based on risk, asset criticality, and threat intelligence, ensuring timely resolution. Perform or coordinate OS and application patching using tools More ❯
are ready for the challenges of today and tomorrow. Essential Duties and Responsibilities: As a Lead InfoSec Consultant, you'll take the lead in executing advanced penetration tests and vulnerability assessments across a diverse portfolio of applications. This is a hands-on, technical role where you'll actively identify, exploit, and help remediate security weaknesses in web, mobile, and … play a hands-on role in testing the security of applications, networks, and systems, while ensuring that security standards are integrated into the development process. Key Responsibilities: Penetration Testing & Vulnerability Assessment: Conduct and oversee regular penetration tests and vulnerability assessments on applications, networks, systems, and infrastructures. Identify, exploit, and document vulnerabilities, including demonstrating the business impact of potential … with recommended remediation steps for developers and system administrators. Keep up to date with the latest security vulnerabilities, exploits, and attack methodologies to ensure effective penetration testing. Security Risk Management: Develop and manage the organisation's vulnerabilitymanagement program, ensuring compliance with internal policies and industry regulations. Identify security weaknesses and work with stakeholders to develop mitigation More ❯
positive difference to the lives of our clients, customers, colleagues, shareholders and society. We are focused on growing our direct and advised wealth platforms and repositioning our specialist asset management business to meet client demand. We are committed to providing excellent client service, supported by leading technology and talent. Aberdeen comprises three businesses, interactive investor (ii), Investments and Adviser … cyber-attacks. This role is technical and will help to deliver continuous operational security improvements across the Cyber Defence function including; Cyber Security Compliance, Penetration Testing , External Attack Surface Management , VulnerabilityManagement and Cloud and Network security The role reports directly to the Cyber Defence Lead and is based in Edinburgh. The role holder will work closely … Security Compliance, Managing Policy Compliance scanning and reporting and Azure Policy compliance Ticket triage & response, managing the Information Security Queue in relation to Cyber Defence tickets External Attack Surface Management, Using our various toolsets to assess and understand our external attack surface and raise actions for technical teams to remediate or mitigate risks.. VulnerabilityManagement, including deploying More ❯
successful Assessment and Authorization (A&A) process activities (ICD-503 RMF) and related documentation such as security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plan of actions and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerabilitymanagement plans. The ISSE will … hundreds of Linux instances on virtual and bare metal hardware. Team responsibilities include Linux system build automation, network architecture and implementation, all facets of cyber security compliance, deployment and management of core subsystems and services such as DNS, FreeIPA, email, Jira, Elastic Stack, VMware, Veeam. The team also maintains a small number of Windows systems. The ISSE will assume … and Information Security (InfoSec) experience working with Intelligence Community (IC) customers, which includes developing and reviewing security concept of operations, systems security plans, security control assessments, contingency plans, configuration management 1 , plans, incident response plans, plan of actions and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerabilitymanagement plans. Must have More ❯
IT Infrastructure Operation s and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology … environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and … access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such More ❯
role offers a chance to make a real impact by ensuring the integrity and resilience of the company’s IT environment against evolving cyber threats. Key Responsibilities: Support incident management and security response efforts, providing expertise to address and resolve security incidents quickly and effectively. Perform regular security checks, including daily, weekly, and monthly monitoring of systems and resolving … security standards such as ISO 27001, Cyber Essentials, GDPR, and Data Protection Act. Experience with Microsoft O365 Security solutions and network security operations. Understanding of security testing principles, including vulnerability scanning, risk identification, and mitigation. Knowledge of security auditing and security incident response processes. Experience with event and log analysis to monitor and assess security risks. Solid understanding of … make an impact in a global organisation, apply now. Keywords: Information Security Consultant, IT Security Consultant, Cybersecurity Specialist, Microsoft O365 Security, Enterprise Security Jobs, Information Security Leeds, IT Risk Management, Security Incident Response, VulnerabilityManagement, ISO 27001, GDPR Compliance, Security Awareness, Disaster Recovery and Business Continuity. More ❯
seeking to appoint a Senior IT Security Engineer to be based in our London office. Main responsibilities within the Senior IT Security Engineer position include: Support Information Security risk management, compliance activities, and governance initiatives. Collaborate with stakeholders to identify, document, and mitigate security risks through effective controls. Work with key software and service vendors to manage security products … and solutions. Lead and support security incident response, including investigation, containment, and remediation. Deploy, manage, and continuously improve security tools, including vulnerabilitymanagement, identity management, and attack surface monitoring. Analyse emerging threats and vulnerabilities, leveraging threat intelligence to proactively mitigate risks Perform proactive threat hunting, research, and analysis, delivering actionable intelligence to IT and security teams Perform … role Strong understanding of security principles, practices and standards and how they translate into real world technical solutions. Significant experience in the field of Information Security including Governance, Risk management and Compliance frameworks, Security Awareness and Threat Intelligence. Ability to effectively communicate complex security or intelligence related information to both technical and non-technical audiences. Proven hands-on expertise More ❯