Layer7

3 job(s) at Layer7

Layer7 Manchester, Lancashire
25/09/2026
Contractor
Location: Remote with occasional travel to Manchester Rate: £600 per day IR35 Status: Inside IR35 Clearance: SC Mandatory Overview We are seeking a Security Architect (SFIA Level 4) to join a public sector transformation programme, working predominantly remotely with occasional travel to Manchester. The successful candidate will design and assure secure architectures across a mixed technology estate, embedding secure-by-design principles into new and existing systems. Working closely with enterprise architects, delivery teams and security assurance leads, you will translate policy and risk requirements into practical architectural patterns. This is an excellent opportunity for an experienced Security Architect to shape security outcomes on a high-profile public sector programme. Key Responsibilities Design and document security architectures, patterns and blueprints for new and existing systems Conduct risk assessments and threat modelling to identify and mitigate security vulnerabilities Embed secure-by-design principles across the solution life cycle, working with enterprise and solution architects Review technical designs for security compliance and provide sign-off against organisational policy Design and assure encryption and key management architecture across AWS environments, including AWS KMS and database encryption at rest and in transit Support accreditation activity, ITHC remediation and audit responses Produce clear architectural documentation (HLD/LLD, security patterns) for technical and non-technical stakeholders Engage with delivery teams, technical leads and business stakeholders to align security requirements with delivery timelines Ensure alignment with NCSC guidance, ISO 27001 and relevant government security standards Essential Skills Strong commercial experience working as a Security Architect at SFIA Level 4 or equivalent Proven track record producing security architecture documentation, patterns and design assurance artefacts Hands-on experience securing AWS environments, including AWS KMS and encryption key management Strong experience designing and implementing database encryption strategies (at rest and in transit) Sound knowledge of security frameworks and standards, including NCSC CAF, ISO 27001 and NIST Hands-on experience conducting risk assessments and threat modelling Strong stakeholder engagement and communication skills, able to explain security concepts to technical and non-technical audiences Previous experience within the UK Public Sector SC Mandatory - candidates must hold or be eligible for Security Check clearance Nice To Have Relevant certifications such as CISSP, CISM or TOGAF Exposure to Central Government security accreditation and assurance processes Familiarity with Secure by Design and the NCSC Cyber Assessment Framework AWS Certified Security - Specialty or equivalent AWS security certification
Layer7
24/09/2026
Contractor
CTL/CTM Penetration Tester Remote - With occasional travel to Manchester and Newcastle-Upon-Tyne Rate - £785 per day Outside IR35 Must have Valid SC About the Role We are seeking an experienced CTL/CTM Penetration Tester to join a large Public Sector client delivering high-assurance security testing. This role offers the opportunity to work on complex infrastructure, cloud, containerised, and enterprise environments, helping clients identify vulnerabilities and strengthen their security posture. You will be responsible for leading and delivering penetration testing engagements while providing expert guidance, coaching, and technical leadership to colleagues and clients. Essential Requirements/Certifications Cyber Scheme Team Leader (CSTL) or Crest Certified Tester (CCT) Principal UK Cyber Security Council Professional (PriCSP) Security Cleared Experience Demonstrable experience conducting penetration testing and security assessments within: Public Sector organisations Critical National Infrastructure (CNI) Large enterprise environments Experience delivering advanced penetration testing engagements and leading teams of testers assessing complex environments, including public cloud, infrastructure, Kubernetes, web applications and APIs. Strong understanding of current attack techniques, threat actors, and defensive controls Technical Skills Manual penetration testing across: Internal and external infrastructure Web applications Networks and operating systems Cloud security testing: Microsoft Azure Amazon Web Services (AWS) Oracle Clound Infrastructure (OCI) On-premises infrastructure security assessments Container and orchestration platform security: Docker Kubernetes Identity and Access Management (IAM) security CI/CD pipeline security assessments Cloud-native and hybrid environment testing Security architecture and security control reviews Security Code Review Firewall Configuration Reviews Server and Workstation Build Reviews Key Responsibilities Lead and perform penetration testing engagements across infrastructure, applications, cloud services, and containerised environments. Deliver detailed technical reports and executive-level findings. Conduct security assessments of Azure, AWS, Kubernetes, IAM, and CI/CD environments. Work directly with stakeholders to communicate complex technical risks clearly and effectively. Provide mentorship, coaching, and skills development to junior penetration testers. Support the continuous improvement of testing methodologies, tooling, and service offerings. Contribute to client workshops, security awareness sessions, and technical training activities.
Layer7
23/09/2026
Contractor
Location: hybrid at any of these sites - Birmingham, Sheffield, Leeds, Manchester, Blackpool or Newcastle Rate: £500 per day (Inside IR35) Contract: ASAP Start - Until 31st March Clearance: BPSS must be SC Eligible Overview We are seeking an experienced SFIA Level 5 User Researcher to support a large-scale Digital, Information & Technology (ID&T) programme within a Government client. The successful candidate will lead user research activities, ensuring services are informed by robust evidence, user needs, and best practice research methodologies. Working closely with multidisciplinary teams, stakeholders, and the wider UCD community, you will drive research strategy, deliver actionable insights, and champion user-centred design across complex government services. Key Responsibilities Identify and apply the most effective qualitative and quantitative research methods to address complex problem spaces. Own, develop, and communicate research strategies and plans aligned to programme objectives. Conduct end-to-end user research activities including planning, recruitment, facilitation, analysis, and reporting. Recruit and manage research participants in accordance with governance and accessibility requirements. Synthesize findings from multiple research streams, producing evidence-based recommendations to influence product and service direction. Identify and articulate user needs, behaviours, motivations, and pain points. Assess research quality and ensure outputs align with recognised professional and User Research standards. Contribute to stakeholder engagement and communication strategies to ensure research findings are effectively understood and adopted. Reuse and build upon existing evidence and insights to avoid duplication and maximise organisational value. Collaborate with the wider User Research and UCD communities, sharing knowledge, best practices, and lessons learned. Present research findings and recommendations clearly to senior stakeholders and multidisciplinary teams. Essential Skills & Experience Proven experience operating as a User Researcher at SFIA Level 5 within complex digital transformation programmes. Strong understanding of Government Digital Service (GDS) standards and user-centred design principles. Expertise in selecting and conducting a wide range of user research methods. Experience creating and owning research strategies and delivery plans. Strong stakeholder management and communication skills. Demonstrable experience translating research findings into actionable recommendations. Experience recruiting and managing participants for research activities. Ability to analyse, synthesise, and communicate complex qualitative and quantitative data. Experience working within Agile multidisciplinary teams. Strong report writing and presentation skills. Desirable Experience Previous experience working within DWP , central government, or wider public sector organisations. Experience within large-scale digital, data, or technology transformation programmes. Active involvement in UCD and User Research communities of practice. Familiarity with accessibility standards and inclusive research practices.