Senior Telecoms & Technical Assurance Consultant Contract: 6 months rolling Location: Fully remote The Role We are seeking an experienced Senior Telecoms & Technical Assurance Consultant to provide independent technical assurance across a complex communications system. You will assess vendor designs, challenge technical assumptions, identify engineering risks and determine whether proposed solutions are technically mature, feasible and suitable for the operational environment. This is a broad technical assurance role covering RF, cellular communications, mission-critical services, embedded software, networking and telecommunications electronics , alongside security, aviation safety, certification and project management stakeholders. Key Responsibilities Provide independent technical assurance of communications systems and vendor solutions. Review and challenge supplier architectures, designs and technical documentation. Assess RF and antenna designs, including link budgets, RF chains, filtering, LNA/PA, intermodulation and modem coexistence. Assess LTE/3GPP systems, including UE behaviour, mobility, handover, QoS, bearers, SIMs and subscriptions. Evaluate Mission Critical Communications (MCX) , including MCPTT, MCData and MCVideo. Assess MCX architectures, codecs, KPIs, priority, pre-emption and technical trade-offs. Review embedded software/hardware, ideally including Yocto Linux and SoC platforms . Assess networking fundamentals including IP, switching and routing. Assess telecommunications electronics and equipment integration, including aircraft audio systems. Review IT/web technologies, vendor portals and machine-to-machine telemetry. Identify technical, integration and delivery risks. Challenge suppliers and assess the maturity and feasibility of proposed solutions. Work with security, aviation certification, safety and project management SMEs. Provide clear technical recommendations to stakeholders. Essential Experience Extensive telecommunications / wireless / communications systems engineering experience. Strong RF and antenna engineering knowledge. Experience with RF link budgets, RF chains, filtering, amplifiers and intermodulation. Strong LTE / 3GPP knowledge. Understanding of mobility, handover, QoS, bearers, SIMs and subscriptions. Experience with Mission Critical Communications / MCX , particularly MCPTT, MCData and/or MCVideo. Strong systems architecture and technical design assessment experience. CCNA-level networking knowledge covering IP, routing and switching. Understanding of embedded software/hardware, ideally Yocto Linux / SoC . Strong technical judgement and risk assessment capability. Desirable Experience Aviation, aerospace or avionics communications. Aircraft communications or audio integration. Aviation certification or safety environments. Technical or design assurance. Vendor/supplier technical assurance. Cyber security collaboration. Telemetry and machine-to-machine communications. Safety-critical or highly regulated environments. Technical & Stakeholder Skills You should be able to: Challenge suppliers constructively and credibly. Identify weaknesses in technical designs and architectures. Explain complex technical risks to non-specialists. Work effectively with multidisciplinary SMEs. Make sound technical judgements with incomplete information. Understand the project impact of technical decisions. Balance technical feasibility, risk, cost and programme considerations.
25/08/2026
Contractor
Senior Telecoms & Technical Assurance Consultant Contract: 6 months rolling Location: Fully remote The Role We are seeking an experienced Senior Telecoms & Technical Assurance Consultant to provide independent technical assurance across a complex communications system. You will assess vendor designs, challenge technical assumptions, identify engineering risks and determine whether proposed solutions are technically mature, feasible and suitable for the operational environment. This is a broad technical assurance role covering RF, cellular communications, mission-critical services, embedded software, networking and telecommunications electronics , alongside security, aviation safety, certification and project management stakeholders. Key Responsibilities Provide independent technical assurance of communications systems and vendor solutions. Review and challenge supplier architectures, designs and technical documentation. Assess RF and antenna designs, including link budgets, RF chains, filtering, LNA/PA, intermodulation and modem coexistence. Assess LTE/3GPP systems, including UE behaviour, mobility, handover, QoS, bearers, SIMs and subscriptions. Evaluate Mission Critical Communications (MCX) , including MCPTT, MCData and MCVideo. Assess MCX architectures, codecs, KPIs, priority, pre-emption and technical trade-offs. Review embedded software/hardware, ideally including Yocto Linux and SoC platforms . Assess networking fundamentals including IP, switching and routing. Assess telecommunications electronics and equipment integration, including aircraft audio systems. Review IT/web technologies, vendor portals and machine-to-machine telemetry. Identify technical, integration and delivery risks. Challenge suppliers and assess the maturity and feasibility of proposed solutions. Work with security, aviation certification, safety and project management SMEs. Provide clear technical recommendations to stakeholders. Essential Experience Extensive telecommunications / wireless / communications systems engineering experience. Strong RF and antenna engineering knowledge. Experience with RF link budgets, RF chains, filtering, amplifiers and intermodulation. Strong LTE / 3GPP knowledge. Understanding of mobility, handover, QoS, bearers, SIMs and subscriptions. Experience with Mission Critical Communications / MCX , particularly MCPTT, MCData and/or MCVideo. Strong systems architecture and technical design assessment experience. CCNA-level networking knowledge covering IP, routing and switching. Understanding of embedded software/hardware, ideally Yocto Linux / SoC . Strong technical judgement and risk assessment capability. Desirable Experience Aviation, aerospace or avionics communications. Aircraft communications or audio integration. Aviation certification or safety environments. Technical or design assurance. Vendor/supplier technical assurance. Cyber security collaboration. Telemetry and machine-to-machine communications. Safety-critical or highly regulated environments. Technical & Stakeholder Skills You should be able to: Challenge suppliers constructively and credibly. Identify weaknesses in technical designs and architectures. Explain complex technical risks to non-specialists. Work effectively with multidisciplinary SMEs. Make sound technical judgements with incomplete information. Understand the project impact of technical decisions. Balance technical feasibility, risk, cost and programme considerations.
Configuration Manager - Highly Regulated Projects We are seeking experienced Configuration Managers to support major, complex engineering and construction projects through completion, handover and transition into operations. Key Responsibilities Lead Configuration Management activities across complex, safety-critical assets and systems. Establish and maintain configuration baselines, baseline ownership and configuration records. Identify gaps, open points and delivery blockers, driving issues through to resolution. Support engineering, construction and project teams to ensure configuration requirements are met. Manage configuration control of design documentation, changes and project deliverables. Support handover, commissioning and final acceptance activities. Conduct audits and provide configuration status, KPIs and reporting. Ensure compliance with relevant regulatory, quality and project standards. Work closely with multidisciplinary teams across Mechanical, Electrical, C&I, HVAC, Process and Civil/Structural disciplines. Essential Experience Significant Configuration Management experience within nuclear or another highly regulated industry . Experience working on complex engineering, construction, commissioning or handover projects. Strong understanding of configuration control, baselines, change management and document control. Experience identifying and resolving design, construction and delivery gaps. Understanding of safety-critical systems and regulated engineering environments. Strong communication, stakeholder management and problem-solving skills. Desirable Experience with Class 1, 2 and 3 systems/assets and active/passive systems. Knowledge of nuclear safety, safety cases and relevant regulatory requirements. Engineering background in Mechanical, Electrical, C&I, Civil/Structural, Process or HVAC. Familiarity with RCA, FMECA, HAZOP/HAZID and design verification/validation. Experience supporting complex asset lifecycle delivery from design through to handover.
24/08/2026
Full time
Configuration Manager - Highly Regulated Projects We are seeking experienced Configuration Managers to support major, complex engineering and construction projects through completion, handover and transition into operations. Key Responsibilities Lead Configuration Management activities across complex, safety-critical assets and systems. Establish and maintain configuration baselines, baseline ownership and configuration records. Identify gaps, open points and delivery blockers, driving issues through to resolution. Support engineering, construction and project teams to ensure configuration requirements are met. Manage configuration control of design documentation, changes and project deliverables. Support handover, commissioning and final acceptance activities. Conduct audits and provide configuration status, KPIs and reporting. Ensure compliance with relevant regulatory, quality and project standards. Work closely with multidisciplinary teams across Mechanical, Electrical, C&I, HVAC, Process and Civil/Structural disciplines. Essential Experience Significant Configuration Management experience within nuclear or another highly regulated industry . Experience working on complex engineering, construction, commissioning or handover projects. Strong understanding of configuration control, baselines, change management and document control. Experience identifying and resolving design, construction and delivery gaps. Understanding of safety-critical systems and regulated engineering environments. Strong communication, stakeholder management and problem-solving skills. Desirable Experience with Class 1, 2 and 3 systems/assets and active/passive systems. Knowledge of nuclear safety, safety cases and relevant regulatory requirements. Engineering background in Mechanical, Electrical, C&I, Civil/Structural, Process or HVAC. Familiarity with RCA, FMECA, HAZOP/HAZID and design verification/validation. Experience supporting complex asset lifecycle delivery from design through to handover.
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
20/08/2026
Contractor
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Business Analyst / Business Change Analyst - London Location: London (Hybrid) Salary: Competitive, dependent on experience Security Clearance: Active UK Security Clearance required Employment Type: Permanent We are currently working with a leading organisation on an exciting opportunity for a Business Analyst / Business Change Analyst to join their team in London. This is a fantastic opportunity for an experienced Business Analyst or Business Change professional to play an important role in supporting transformation, service improvement and the delivery of effective business outcomes within a complex environment. The successful candidate will work closely with stakeholders, delivery teams and operational functions to understand business and user needs, define requirements and help translate change into practical, sustainable processes and services. The Role You will be involved throughout the transformation lifecycle, supporting discovery, planning, implementation and ongoing service improvement. Key responsibilities will include: Gathering, documenting and validating business, user and service requirements. Supporting workshops, interviews and stakeholder engagement activities. Producing as-is and to-be process maps , user journeys and workflow documentation. Analysing current processes and identifying opportunities for improvement. Contributing to service design, service models and operational requirements. Supporting change impact assessments , business readiness and adoption. Maintaining traceability between business needs, requirements, delivery and outcomes. Supporting service transition, including handover documentation and operational readiness. Defining MI and reporting requirements. Reviewing service performance information and identifying opportunities for continual improvement. Producing clear analysis, recommendations and supporting documentation for stakeholders. About You Our client is looking for someone with experience across Business Analysis, Business Change or Service Improvement , with a structured and delivery-focused approach. You should have experience in: Requirements gathering and analysis. Business process analysis and process mapping. Stakeholder engagement and workshop facilitation. User stories and user journey development. Business change and change impact assessment. Business readiness and service transition. Service design or service improvement. MI and reporting requirements. Producing high-quality business analysis documentation. Experience working within public sector, government, secure, regulated or complex delivery environments would be highly advantageous. Security Clearance Due to the nature of the position, security clearance is a requirement for this opportunity. Candidates holding SC clearance or other relevant UK security clearance will be particularly well suited. What We're Looking For We're looking for someone who is analytical, organised and confident working with a wide range of stakeholders. You will be able to take complex information, understand the underlying business need and translate it into clear, practical requirements and deliverables. Strong communication skills are essential, alongside the ability to work collaboratively while managing your own workload and responsibilities. Business Analyst / Business Change Analyst - London Location: London (Hybrid) Salary: Competitive, dependent on experience Security Clearance: Active UK Security Clearance required Employment Type: Permanent
17/08/2026
Full time
Business Analyst / Business Change Analyst - London Location: London (Hybrid) Salary: Competitive, dependent on experience Security Clearance: Active UK Security Clearance required Employment Type: Permanent We are currently working with a leading organisation on an exciting opportunity for a Business Analyst / Business Change Analyst to join their team in London. This is a fantastic opportunity for an experienced Business Analyst or Business Change professional to play an important role in supporting transformation, service improvement and the delivery of effective business outcomes within a complex environment. The successful candidate will work closely with stakeholders, delivery teams and operational functions to understand business and user needs, define requirements and help translate change into practical, sustainable processes and services. The Role You will be involved throughout the transformation lifecycle, supporting discovery, planning, implementation and ongoing service improvement. Key responsibilities will include: Gathering, documenting and validating business, user and service requirements. Supporting workshops, interviews and stakeholder engagement activities. Producing as-is and to-be process maps , user journeys and workflow documentation. Analysing current processes and identifying opportunities for improvement. Contributing to service design, service models and operational requirements. Supporting change impact assessments , business readiness and adoption. Maintaining traceability between business needs, requirements, delivery and outcomes. Supporting service transition, including handover documentation and operational readiness. Defining MI and reporting requirements. Reviewing service performance information and identifying opportunities for continual improvement. Producing clear analysis, recommendations and supporting documentation for stakeholders. About You Our client is looking for someone with experience across Business Analysis, Business Change or Service Improvement , with a structured and delivery-focused approach. You should have experience in: Requirements gathering and analysis. Business process analysis and process mapping. Stakeholder engagement and workshop facilitation. User stories and user journey development. Business change and change impact assessment. Business readiness and service transition. Service design or service improvement. MI and reporting requirements. Producing high-quality business analysis documentation. Experience working within public sector, government, secure, regulated or complex delivery environments would be highly advantageous. Security Clearance Due to the nature of the position, security clearance is a requirement for this opportunity. Candidates holding SC clearance or other relevant UK security clearance will be particularly well suited. What We're Looking For We're looking for someone who is analytical, organised and confident working with a wide range of stakeholders. You will be able to take complex information, understand the underlying business need and translate it into clear, practical requirements and deliverables. Strong communication skills are essential, alongside the ability to work collaboratively while managing your own workload and responsibilities. Business Analyst / Business Change Analyst - London Location: London (Hybrid) Salary: Competitive, dependent on experience Security Clearance: Active UK Security Clearance required Employment Type: Permanent
Network Specialist Overview We are seeking a hands-on Network Specialist to support the deployment, configuration, monitoring and migration of network devices. The successful candidate will be responsible for ensuring network assets are accurately recorded, router configurations are correctly applied, monitoring is configured appropriately, and existing devices are managed throughout migration and decommissioning activities. This role requires strong attention to detail, practical networking knowledge and experience working with network monitoring, configuration management and asset/CMDB systems. Key Responsibilities Asset and Configuration Management Tag and accurately record network assets. Add and maintain device information within the CMDB. Review and sense-check existing ML devices, including end hosts and device descriptions, to ensure records are accurate. Verify existing device information before replacement or migration to ensure the correct configuration is generated and applied to the new router. Identify peers on Private Wire MLs to ensure the generated configuration is accurate and suitable for the new deployment. Router Deployment and Configuration Support the upload and deployment of router configurations. Verify that the correct firmware version is installed and maintained. Carry out configuration checks prior to implementation to ensure the appropriate configuration is applied. Support network device installations and provide troubleshooting during and after deployment. Network Monitoring Configure monitoring for newly deployed devices. Add new OAPs into Nagios, ensuring devices are correctly incorporated into the monitoring environment. Configure appropriate alarms, alerts and performance thresholds. Ensure relevant devices are automatically captured within RANCID where applicable. Monitor existing devices and respond to configuration or monitoring issues. Migration and Decommissioning Support Manage existing ML devices within Nagios throughout planned migration activities. Mute relevant alarms and alerts for planned migration windows to prevent unnecessary notifications. Validate successful completion of migrations. Remove successfully migrated or decommissioned devices from Nagios. Carry out manual removal of legacy ML devices from RANCID where required. Ensure CMDB, monitoring and configuration records are updated following migrations. Required Skills and Experience Previous experience in a Network Engineer, Network Specialist, Network Operations or Network Support role. Strong understanding of routers and general network infrastructure. Experience uploading, reviewing and validating network device configurations. Experience working with network monitoring tools, ideally Nagios . Experience with configuration management and backup tools, ideally RANCID . Experience managing network assets and maintaining accurate CMDB records. Strong troubleshooting skills across network installations, migrations and device configuration. Ability to review existing network devices and configurations to identify dependencies, end hosts and peers. Understanding of network migrations and the operational requirements around monitoring and alert management. Excellent attention to detail and ability to follow technical processes accurately. Desirable Skills Experience working with Private Wire connectivity and identifying network peers. Experience supporting router replacement and migration projects. Knowledge of firmware management and network device lifecycle management. Experience working in a large-scale or enterprise network environment. Familiarity with structured change and migration processes.
14/08/2026
Contractor
Network Specialist Overview We are seeking a hands-on Network Specialist to support the deployment, configuration, monitoring and migration of network devices. The successful candidate will be responsible for ensuring network assets are accurately recorded, router configurations are correctly applied, monitoring is configured appropriately, and existing devices are managed throughout migration and decommissioning activities. This role requires strong attention to detail, practical networking knowledge and experience working with network monitoring, configuration management and asset/CMDB systems. Key Responsibilities Asset and Configuration Management Tag and accurately record network assets. Add and maintain device information within the CMDB. Review and sense-check existing ML devices, including end hosts and device descriptions, to ensure records are accurate. Verify existing device information before replacement or migration to ensure the correct configuration is generated and applied to the new router. Identify peers on Private Wire MLs to ensure the generated configuration is accurate and suitable for the new deployment. Router Deployment and Configuration Support the upload and deployment of router configurations. Verify that the correct firmware version is installed and maintained. Carry out configuration checks prior to implementation to ensure the appropriate configuration is applied. Support network device installations and provide troubleshooting during and after deployment. Network Monitoring Configure monitoring for newly deployed devices. Add new OAPs into Nagios, ensuring devices are correctly incorporated into the monitoring environment. Configure appropriate alarms, alerts and performance thresholds. Ensure relevant devices are automatically captured within RANCID where applicable. Monitor existing devices and respond to configuration or monitoring issues. Migration and Decommissioning Support Manage existing ML devices within Nagios throughout planned migration activities. Mute relevant alarms and alerts for planned migration windows to prevent unnecessary notifications. Validate successful completion of migrations. Remove successfully migrated or decommissioned devices from Nagios. Carry out manual removal of legacy ML devices from RANCID where required. Ensure CMDB, monitoring and configuration records are updated following migrations. Required Skills and Experience Previous experience in a Network Engineer, Network Specialist, Network Operations or Network Support role. Strong understanding of routers and general network infrastructure. Experience uploading, reviewing and validating network device configurations. Experience working with network monitoring tools, ideally Nagios . Experience with configuration management and backup tools, ideally RANCID . Experience managing network assets and maintaining accurate CMDB records. Strong troubleshooting skills across network installations, migrations and device configuration. Ability to review existing network devices and configurations to identify dependencies, end hosts and peers. Understanding of network migrations and the operational requirements around monitoring and alert management. Excellent attention to detail and ability to follow technical processes accurately. Desirable Skills Experience working with Private Wire connectivity and identifying network peers. Experience supporting router replacement and migration projects. Knowledge of firmware management and network device lifecycle management. Experience working in a large-scale or enterprise network environment. Familiarity with structured change and migration processes.
IT & Network Security Engineer Job Title: IT Security Engineer Location: Oxfordshire - Hybrid (2 days per week on-site) Industry: Enterprise SaaS / Technology Solutions About the Role We are partnering with a rapidly scaling, globally active software and data platform enterprise looking to appoint a dedicated IT Security Engineer to join their growing security operations team. In this role, you will be instrumental in defending core infrastructure, enterprise networks, and critical data against modern cyber threats. Working closely with the Head of IT Security, you will oversee threat detection, manage security appliances, enforce compliance frameworks, and ensure that robust defensive postures are embedded across the technology stack. Key Responsibilities Security Operations: Oversee network telemetry for suspicious activities, execute rapid threat detection and response, tune perimeter defenses (firewalls and virtual private networks), and direct proactive patch management cycles. Compliance & Audits: Drive internal control testing and maintain alignment with structured information security standards such as ISO 27001, supporting both internal evaluations and external auditor walkthroughs. Incident Handling: Manage the end-to-end lifecycle of security alerts or breaches, lead formal root-cause analysis, and embed corrective actions into future preventive safeguards. Third-Party Risk: Evaluate external vendors and technology partners to ensure compliance with internal security policies and benchmark security standards. Cross-Functional Collaboration: Partner directly with IT infrastructure, application support, software engineering, and legal teams to bake security-by-design principles into technical architectures. Key Requirements Experience: A minimum of 3 to 5 years of dedicated professional experience within an IT or information security function. Technical Proficiency: Deep working knowledge of core network protocols (TCP/IP, DNS, routing, switching) and architecture design. Hands-on proficiency with network analysis utilities, packet sniffers, port scanners, and SIEM monitoring suites. Working familiarity with cryptographic methods, identity controls, endpoint hardening, and multi-cloud security management (AWS, Azure, or GCP). Framework Knowledge: Solid comprehension of ISO 27001 principles, threat modelling frameworks, vulnerability scanning, risk treatment life-cycles, and secondary compliance standards (e.g., SOC 2 or PCI DSS). Qualifications: Relevant technical diploma or equivalent practical background, reinforced by desirable professional credentials (such as CISSP, CEH, CCNA Security, or ISO 27001 Lead Auditor certifications). Personal Attributes: Strong analytical problem-solving skills, clear communication capabilities, and the adaptability to thrive in a fast-moving, collaborative environment. What is on Offer Competitive base salary package. Sustainable hybrid working model (2 days on-site in Oxfordshire). Continuous professional development and training opportunities within an expanding tech organisation. If you are a proactive security professional looking to make a meaningful impact, please submit your CV to begin a confidential discussion.
05/08/2026
Full time
IT & Network Security Engineer Job Title: IT Security Engineer Location: Oxfordshire - Hybrid (2 days per week on-site) Industry: Enterprise SaaS / Technology Solutions About the Role We are partnering with a rapidly scaling, globally active software and data platform enterprise looking to appoint a dedicated IT Security Engineer to join their growing security operations team. In this role, you will be instrumental in defending core infrastructure, enterprise networks, and critical data against modern cyber threats. Working closely with the Head of IT Security, you will oversee threat detection, manage security appliances, enforce compliance frameworks, and ensure that robust defensive postures are embedded across the technology stack. Key Responsibilities Security Operations: Oversee network telemetry for suspicious activities, execute rapid threat detection and response, tune perimeter defenses (firewalls and virtual private networks), and direct proactive patch management cycles. Compliance & Audits: Drive internal control testing and maintain alignment with structured information security standards such as ISO 27001, supporting both internal evaluations and external auditor walkthroughs. Incident Handling: Manage the end-to-end lifecycle of security alerts or breaches, lead formal root-cause analysis, and embed corrective actions into future preventive safeguards. Third-Party Risk: Evaluate external vendors and technology partners to ensure compliance with internal security policies and benchmark security standards. Cross-Functional Collaboration: Partner directly with IT infrastructure, application support, software engineering, and legal teams to bake security-by-design principles into technical architectures. Key Requirements Experience: A minimum of 3 to 5 years of dedicated professional experience within an IT or information security function. Technical Proficiency: Deep working knowledge of core network protocols (TCP/IP, DNS, routing, switching) and architecture design. Hands-on proficiency with network analysis utilities, packet sniffers, port scanners, and SIEM monitoring suites. Working familiarity with cryptographic methods, identity controls, endpoint hardening, and multi-cloud security management (AWS, Azure, or GCP). Framework Knowledge: Solid comprehension of ISO 27001 principles, threat modelling frameworks, vulnerability scanning, risk treatment life-cycles, and secondary compliance standards (e.g., SOC 2 or PCI DSS). Qualifications: Relevant technical diploma or equivalent practical background, reinforced by desirable professional credentials (such as CISSP, CEH, CCNA Security, or ISO 27001 Lead Auditor certifications). Personal Attributes: Strong analytical problem-solving skills, clear communication capabilities, and the adaptability to thrive in a fast-moving, collaborative environment. What is on Offer Competitive base salary package. Sustainable hybrid working model (2 days on-site in Oxfordshire). Continuous professional development and training opportunities within an expanding tech organisation. If you are a proactive security professional looking to make a meaningful impact, please submit your CV to begin a confidential discussion.
Information Security & Compliance Lead (GRC) Job Title: Information Security & Compliance Lead Location: Oxfordshire - Hybrid 2 days per week on site Industry: Enterprise SaaS / Technology Solutions About the Role We are partnering with a fast-growing, globally active software and data solutions enterprise looking to appoint an experienced Lead level Information Security & Compliance specialist (GRC). In this position, you will drive the operational security initiatives necessary to achieve and maintain formal security frameworks and attestation standards (including SOC 2 Type I/II lifecycles). You will translate complex trust criteria into practical, sustainable controls, bridge operational gaps, coordinate external audits, and elevate day-to-day security engineering across cloud platforms, products, and supply chains. Collaborating closely with engineering, product, legal, and operational teams, you will ensure security measures are robust, scalable, and integrated seamlessly without causing business friction. Key Responsibilities Assurance & Audit Management: Own the compliance roadmap from initial readiness assessments through to operating effectiveness and annual recurring audits; coordinate third-party auditors and evidence gathering. Control Engineering: Design, implement, and refine technical controls covering identity and access management, cloud security architecture, encryption, logging, monitoring, and endpoint protection. Risk & Governance: Maintain risk registers, execute supplier security due diligence, manage exception workflows, and deliver targeted security awareness programmes across internal teams. Vulnerability & Incident Operations: Strengthen patching schedules, penetration test remediation, secure change management, backup validation, and incident response procedures. Cross-Functional Collaboration: Partner with engineering and product groups to embed security-by-design principles into software delivery pipelines and operational workflows. Key Requirements Experience: Proven professional background delivering or materially supporting SOC 2 compliance readiness programmes or equivalent independent security audits within a cloud-first or SaaS environment. Technical Expertise: Hands-on experience engineering and testing security controls across major cloud infrastructure, IAM systems, endpoint tools, and SIEM monitoring platforms. Framework Knowledge: Strong working familiarity with trust service criteria, information security risk models (such as ISO 27001, NIST, or CIS benchmarks), and third-party risk principles. Competencies: Strong project ownership, excellent cross-functional communication skills, analytical rigor, and the ability to translate technical risk for diverse stakeholders. Qualifications: Relevant degree in Computer Science, Cyber Security, or equivalent practical experience, backed by recognized security or auditing certifications (such as CISSP, CISA, CCSP, or similar credentials).
05/08/2026
Full time
Information Security & Compliance Lead (GRC) Job Title: Information Security & Compliance Lead Location: Oxfordshire - Hybrid 2 days per week on site Industry: Enterprise SaaS / Technology Solutions About the Role We are partnering with a fast-growing, globally active software and data solutions enterprise looking to appoint an experienced Lead level Information Security & Compliance specialist (GRC). In this position, you will drive the operational security initiatives necessary to achieve and maintain formal security frameworks and attestation standards (including SOC 2 Type I/II lifecycles). You will translate complex trust criteria into practical, sustainable controls, bridge operational gaps, coordinate external audits, and elevate day-to-day security engineering across cloud platforms, products, and supply chains. Collaborating closely with engineering, product, legal, and operational teams, you will ensure security measures are robust, scalable, and integrated seamlessly without causing business friction. Key Responsibilities Assurance & Audit Management: Own the compliance roadmap from initial readiness assessments through to operating effectiveness and annual recurring audits; coordinate third-party auditors and evidence gathering. Control Engineering: Design, implement, and refine technical controls covering identity and access management, cloud security architecture, encryption, logging, monitoring, and endpoint protection. Risk & Governance: Maintain risk registers, execute supplier security due diligence, manage exception workflows, and deliver targeted security awareness programmes across internal teams. Vulnerability & Incident Operations: Strengthen patching schedules, penetration test remediation, secure change management, backup validation, and incident response procedures. Cross-Functional Collaboration: Partner with engineering and product groups to embed security-by-design principles into software delivery pipelines and operational workflows. Key Requirements Experience: Proven professional background delivering or materially supporting SOC 2 compliance readiness programmes or equivalent independent security audits within a cloud-first or SaaS environment. Technical Expertise: Hands-on experience engineering and testing security controls across major cloud infrastructure, IAM systems, endpoint tools, and SIEM monitoring platforms. Framework Knowledge: Strong working familiarity with trust service criteria, information security risk models (such as ISO 27001, NIST, or CIS benchmarks), and third-party risk principles. Competencies: Strong project ownership, excellent cross-functional communication skills, analytical rigor, and the ability to translate technical risk for diverse stakeholders. Qualifications: Relevant degree in Computer Science, Cyber Security, or equivalent practical experience, backed by recognized security or auditing certifications (such as CISSP, CISA, CCSP, or similar credentials).