Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
21/08/2026
Full time
Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
Information Security & Assurance Officer Salary: up to £50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
21/08/2026
Full time
Information Security & Assurance Officer Salary: up to £50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
Cyber Threat Intelligence Engineer - Hybrid (Edinburgh or London) - 6 month rolling contract - INSIDE IR35 Job Description Our UK based client are looking to hire an additional Cyber Threat Intelligence Engineer or Analyst to join their dedicated Cyber Security function on a rolling 6 month contract. This will require candidates to work on a hybrid basis in either the Central Belt of Scotland or London for 2 days per week, whatever office is most local to you. The role will also be INSIDE IR35. Responsibilities Analyse and interpret threat intelligence data to identify potential risks. Conduct threat hunting activities to proactively detect and mitigate security threats. Utilise tools such as Splunk, CrowdStrike, and Tenable to monitor and manage security threats. Apply the Mitre Defence Framework to enhance threat detection and response strategies. Essential Skills 3-5 years of experience in Threat Intelligence and Cyber Security as a minimum Ideally proficiency in using tools like Splunk, CrowdStrike, and Tenable. Familiarity with the Mitre Defence Framework. Location Edinburgh, UK Trading as TEKsystems. Allegis Group Limited, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at our website. To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go our website. We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice on our website for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.
21/08/2026
Contractor
Cyber Threat Intelligence Engineer - Hybrid (Edinburgh or London) - 6 month rolling contract - INSIDE IR35 Job Description Our UK based client are looking to hire an additional Cyber Threat Intelligence Engineer or Analyst to join their dedicated Cyber Security function on a rolling 6 month contract. This will require candidates to work on a hybrid basis in either the Central Belt of Scotland or London for 2 days per week, whatever office is most local to you. The role will also be INSIDE IR35. Responsibilities Analyse and interpret threat intelligence data to identify potential risks. Conduct threat hunting activities to proactively detect and mitigate security threats. Utilise tools such as Splunk, CrowdStrike, and Tenable to monitor and manage security threats. Apply the Mitre Defence Framework to enhance threat detection and response strategies. Essential Skills 3-5 years of experience in Threat Intelligence and Cyber Security as a minimum Ideally proficiency in using tools like Splunk, CrowdStrike, and Tenable. Familiarity with the Mitre Defence Framework. Location Edinburgh, UK Trading as TEKsystems. Allegis Group Limited, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at our website. To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go our website. We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice on our website for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.
Role: Technical Pre-Sales Consultant Location: Office based in the East Midlands Working Arrangement: REMOTE AND ON CLIENT SITES ACOUND THE M4 CORRIDOR. WITH TEAM VISITS TO EAST MIDLANDS OCCASSIONALLY Salary: Up to 110k (wiggle room for the right candidate) We are seeking an experienced Technical Pre-Sales Consultant to bridge the gap between customer requirements, cyber security challenges, and technical solution delivery. This role combines cyber security consultancy, solution architecture, technical leadership, and business development, supporting customers throughout the early stages of complex technology programmes. Working closely with senior customer stakeholders, architects, engineering teams, and business leaders, you will act as a trusted technical advisor, helping organisations define requirements, shape secure architectures, and develop solutions that address operational and business objectives. The position requires a strong blend of technical credibility, customer engagement skills, and commercial awareness. You will lead technical pre-sales engagements across cyber security, networking, cloud, and information assurance domains, engaging confidently with senior responsible owners, programme directors, chief architects, and technical decision-makers. Capture, analyse, and translate customer business and technical requirements into solution architectures, technical proposals, statements of work, and bid responses. Provide technical leadership throughout the sales lifecycle, ensuring proposed solutions are technically robust, commercially viable, and aligned with customer objectives. Develop high-level and detailed solution architectures encompassing secure systems integration, interoperability, cross-domain information sharing, cloud infrastructure, network design, and security controls. Work closely with engineering and product teams to ensure customer requirements are clearly understood and reflected in solution delivery. Provide technical oversight and assurance for bids, proposals, and customer-facing documentation, ensuring accuracy, consistency, and alignment with industry standards and best practices. Support security accreditation and assurance activities, collaborating with security authorities, accrediting bodies, and customer security teams to address technical risks and define compliant architectures. Maintain a detailed understanding of cyber security technologies, market trends, emerging threats, and competitor capabilities, using this knowledge to identify opportunities, influence product direction, and support strategic growth initiatives. Represent the organisation at customer meetings, industry events, workshops, demonstrations, and technical presentations, acting as a recognised subject matter expert across security architecture, secure information exchange, and systems integration. The successful candidate will demonstrate experience in technical pre-sales, solution architecture, cyber security consulting, or systems engineering within complex enterprise, defence, government, or critical national infrastructure environments. You should have a proven ability to engage with both business and technical stakeholders, produce high-quality technical documentation, and communicate complex concepts at multiple levels of technical detail. Strong knowledge of cyber security principles, information assurance frameworks, secure systems design, networking technologies, and cloud infrastructure is essential. Experience designing and integrating secure solutions across heterogeneous environments is highly desirable. The role requires excellent communication and presentation skills, strong stakeholder management capabilities, and the ability to lead technical discussions from initial discovery through to solution definition and customer approval. Desirable Knowledge Experience with security accreditation processes, risk management frameworks, secure-by-design methodologies, and government or defence security environments. Understanding of enterprise networking technologies, including segmentation, VLAN design, routing, fibre-optic infrastructure, and secure communications. Familiarity with Agile delivery methodologies and the challenges associated with integrating complex technology solutions across multi-vendor environments. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
21/08/2026
Full time
Role: Technical Pre-Sales Consultant Location: Office based in the East Midlands Working Arrangement: REMOTE AND ON CLIENT SITES ACOUND THE M4 CORRIDOR. WITH TEAM VISITS TO EAST MIDLANDS OCCASSIONALLY Salary: Up to 110k (wiggle room for the right candidate) We are seeking an experienced Technical Pre-Sales Consultant to bridge the gap between customer requirements, cyber security challenges, and technical solution delivery. This role combines cyber security consultancy, solution architecture, technical leadership, and business development, supporting customers throughout the early stages of complex technology programmes. Working closely with senior customer stakeholders, architects, engineering teams, and business leaders, you will act as a trusted technical advisor, helping organisations define requirements, shape secure architectures, and develop solutions that address operational and business objectives. The position requires a strong blend of technical credibility, customer engagement skills, and commercial awareness. You will lead technical pre-sales engagements across cyber security, networking, cloud, and information assurance domains, engaging confidently with senior responsible owners, programme directors, chief architects, and technical decision-makers. Capture, analyse, and translate customer business and technical requirements into solution architectures, technical proposals, statements of work, and bid responses. Provide technical leadership throughout the sales lifecycle, ensuring proposed solutions are technically robust, commercially viable, and aligned with customer objectives. Develop high-level and detailed solution architectures encompassing secure systems integration, interoperability, cross-domain information sharing, cloud infrastructure, network design, and security controls. Work closely with engineering and product teams to ensure customer requirements are clearly understood and reflected in solution delivery. Provide technical oversight and assurance for bids, proposals, and customer-facing documentation, ensuring accuracy, consistency, and alignment with industry standards and best practices. Support security accreditation and assurance activities, collaborating with security authorities, accrediting bodies, and customer security teams to address technical risks and define compliant architectures. Maintain a detailed understanding of cyber security technologies, market trends, emerging threats, and competitor capabilities, using this knowledge to identify opportunities, influence product direction, and support strategic growth initiatives. Represent the organisation at customer meetings, industry events, workshops, demonstrations, and technical presentations, acting as a recognised subject matter expert across security architecture, secure information exchange, and systems integration. The successful candidate will demonstrate experience in technical pre-sales, solution architecture, cyber security consulting, or systems engineering within complex enterprise, defence, government, or critical national infrastructure environments. You should have a proven ability to engage with both business and technical stakeholders, produce high-quality technical documentation, and communicate complex concepts at multiple levels of technical detail. Strong knowledge of cyber security principles, information assurance frameworks, secure systems design, networking technologies, and cloud infrastructure is essential. Experience designing and integrating secure solutions across heterogeneous environments is highly desirable. The role requires excellent communication and presentation skills, strong stakeholder management capabilities, and the ability to lead technical discussions from initial discovery through to solution definition and customer approval. Desirable Knowledge Experience with security accreditation processes, risk management frameworks, secure-by-design methodologies, and government or defence security environments. Understanding of enterprise networking technologies, including segmentation, VLAN design, routing, fibre-optic infrastructure, and secure communications. Familiarity with Agile delivery methodologies and the challenges associated with integrating complex technology solutions across multi-vendor environments. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base. The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness 'MDA' technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners. SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world. We are looking for a Security & Compliance Manager to own the security of how our products and systems are deployed, operated and maintained in customer environments around the world, and to lead the security assurance and certification activity that stands behind them. This is a senior, customer-facing leadership role sitting at the intersection of secure delivery, customer operations and corporate security. You as a Security & Compliance Manager will work closely with our delivery, customer-facing, network & infrastructure and corporate IT teams, and with our external security partners, to make sure the systems we deploy remain secure throughout their operational life. The role is focused on leadership, coordination and communication rather than hands-on engineering. Much of the knowledge needed already exists across the business - your job is to bring it together into a coherent programme, and to be the champion who drives it through, backed by enough technical understanding to hold detailed conversations with customers, auditors and developers. The role of Security & Compliance Manager is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, and from time to time to customer sites worldwide, with good flexibility for Hybrid working. Responsibilities - Security & Compliance Manager - not exhaustive: Act as the senior voice and champion for security across our delivery and customer operations, ensuring deployed systems receive the same security attention as new ones. Define the customer operating policies, principles and patterns that delivery and customer-facing teams should follow for the secure implementation and operation of SRT systems. Own the through-life security of equipment deployed in customer environments, including patching, secure configuration, and equipment lifecycle and end-of-life replacement. Lead SRT's responses to customer security requirements, assurance questionnaires and connection approvals, including for sophisticated government and defence customers. Work with internal stakeholders to ensure engineering and operational reality supports the security claims we make to customers, partners and auditors. Lead our assurance and certification activity, including Cyber Essentials Plus, ISO 27001 and other relevant standards. Bring together the security expertise that already exists across the business into one coherent, prioritised programme of improvement. Direct our external security partners as an extended resource pool for monitoring, assessments and remediation. Assign pragmatic risk levels and support sensible prioritisation of remediation alongside project delivery and other commitments. Report clearly to senior leadership on risk, progress and priorities in business terms. Requirements - Security & Compliance Manager - not exhaustive: Strong experience in security management, security assurance, compliance or a similar role, ideally where systems are delivered into and operated within customer environments. A track record of achieving and maintaining certifications such as ISO 27001 and Cyber Essentials Plus, including managing audits. Practical understanding of securing deployed infrastructure, including firewalls, patching, secure configuration and equipment lifecycle management. Experience leading customer-facing security engagements, including security questionnaires, accreditation and third-party assurance. The presence and communication skills to champion change across teams and to influence stakeholders without direct authority. The judgement to assess risk and business impact pragmatically. Experience coordinating third-party security providers such as managed SOC or security service partners. Familiarity with recognised frameworks such as ISO 27001, Cyber Essentials Plus, NIST CSF or similar. Experience in an engineering or manufacturing business delivering long-lived systems would be helpful. Experience in high-trust, regulated or mission-critical environments would be valuable. Benefits Highly Competitive Salary and benefits package 25 days annual leave rising to 28 days with service Real individual development opportunities SRT Marine Systems plc is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and welcome applications from all backgrounds.
20/08/2026
Full time
SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base. The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness 'MDA' technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners. SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world. We are looking for a Security & Compliance Manager to own the security of how our products and systems are deployed, operated and maintained in customer environments around the world, and to lead the security assurance and certification activity that stands behind them. This is a senior, customer-facing leadership role sitting at the intersection of secure delivery, customer operations and corporate security. You as a Security & Compliance Manager will work closely with our delivery, customer-facing, network & infrastructure and corporate IT teams, and with our external security partners, to make sure the systems we deploy remain secure throughout their operational life. The role is focused on leadership, coordination and communication rather than hands-on engineering. Much of the knowledge needed already exists across the business - your job is to bring it together into a coherent programme, and to be the champion who drives it through, backed by enough technical understanding to hold detailed conversations with customers, auditors and developers. The role of Security & Compliance Manager is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, and from time to time to customer sites worldwide, with good flexibility for Hybrid working. Responsibilities - Security & Compliance Manager - not exhaustive: Act as the senior voice and champion for security across our delivery and customer operations, ensuring deployed systems receive the same security attention as new ones. Define the customer operating policies, principles and patterns that delivery and customer-facing teams should follow for the secure implementation and operation of SRT systems. Own the through-life security of equipment deployed in customer environments, including patching, secure configuration, and equipment lifecycle and end-of-life replacement. Lead SRT's responses to customer security requirements, assurance questionnaires and connection approvals, including for sophisticated government and defence customers. Work with internal stakeholders to ensure engineering and operational reality supports the security claims we make to customers, partners and auditors. Lead our assurance and certification activity, including Cyber Essentials Plus, ISO 27001 and other relevant standards. Bring together the security expertise that already exists across the business into one coherent, prioritised programme of improvement. Direct our external security partners as an extended resource pool for monitoring, assessments and remediation. Assign pragmatic risk levels and support sensible prioritisation of remediation alongside project delivery and other commitments. Report clearly to senior leadership on risk, progress and priorities in business terms. Requirements - Security & Compliance Manager - not exhaustive: Strong experience in security management, security assurance, compliance or a similar role, ideally where systems are delivered into and operated within customer environments. A track record of achieving and maintaining certifications such as ISO 27001 and Cyber Essentials Plus, including managing audits. Practical understanding of securing deployed infrastructure, including firewalls, patching, secure configuration and equipment lifecycle management. Experience leading customer-facing security engagements, including security questionnaires, accreditation and third-party assurance. The presence and communication skills to champion change across teams and to influence stakeholders without direct authority. The judgement to assess risk and business impact pragmatically. Experience coordinating third-party security providers such as managed SOC or security service partners. Familiarity with recognised frameworks such as ISO 27001, Cyber Essentials Plus, NIST CSF or similar. Experience in an engineering or manufacturing business delivering long-lived systems would be helpful. Experience in high-trust, regulated or mission-critical environments would be valuable. Benefits Highly Competitive Salary and benefits package 25 days annual leave rising to 28 days with service Real individual development opportunities SRT Marine Systems plc is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and welcome applications from all backgrounds.
SRT Marine Systems plc
Gloucester, Gloucestershire
SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base. The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness 'MDA' technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners. SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world. We are looking for a Security & Compliance Manager to own the security of how our products and systems are deployed, operated and maintained in customer environments around the world, and to lead the security assurance and certification activity that stands behind them. This is a senior, customer-facing leadership role sitting at the intersection of secure delivery, customer operations and corporate security. You as a Security & Compliance Manager will work closely with our delivery, customer-facing, network & infrastructure and corporate IT teams, and with our external security partners, to make sure the systems we deploy remain secure throughout their operational life. The role is focused on leadership, coordination and communication rather than hands-on engineering. Much of the knowledge needed already exists across the business - your job is to bring it together into a coherent programme, and to be the champion who drives it through, backed by enough technical understanding to hold detailed conversations with customers, auditors and developers. The role of Security & Compliance Manager is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, and from time to time to customer sites worldwide, with good flexibility for Hybrid working. Responsibilities - Security & Compliance Manager - not exhaustive: Act as the senior voice and champion for security across our delivery and customer operations, ensuring deployed systems receive the same security attention as new ones. Define the customer operating policies, principles and patterns that delivery and customer-facing teams should follow for the secure implementation and operation of SRT systems. Own the through-life security of equipment deployed in customer environments, including patching, secure configuration, and equipment lifecycle and end-of-life replacement. Lead SRT's responses to customer security requirements, assurance questionnaires and connection approvals, including for sophisticated government and defence customers. Work with internal stakeholders to ensure engineering and operational reality supports the security claims we make to customers, partners and auditors. Lead our assurance and certification activity, including Cyber Essentials Plus, ISO 27001 and other relevant standards. Bring together the security expertise that already exists across the business into one coherent, prioritised programme of improvement. Direct our external security partners as an extended resource pool for monitoring, assessments and remediation. Assign pragmatic risk levels and support sensible prioritisation of remediation alongside project delivery and other commitments. Report clearly to senior leadership on risk, progress and priorities in business terms. Requirements - Security & Compliance Manager - not exhaustive: Strong experience in security management, security assurance, compliance or a similar role, ideally where systems are delivered into and operated within customer environments. A track record of achieving and maintaining certifications such as ISO 27001 and Cyber Essentials Plus, including managing audits. Practical understanding of securing deployed infrastructure, including firewalls, patching, secure configuration and equipment lifecycle management. Experience leading customer-facing security engagements, including security questionnaires, accreditation and third-party assurance. The presence and communication skills to champion change across teams and to influence stakeholders without direct authority. The judgement to assess risk and business impact pragmatically. Experience coordinating third-party security providers such as managed SOC or security service partners. Familiarity with recognised frameworks such as ISO 27001, Cyber Essentials Plus, NIST CSF or similar. Experience in an engineering or manufacturing business delivering long-lived systems would be helpful. Experience in high-trust, regulated or mission-critical environments would be valuable. Benefits Highly Competitive Salary and benefits package 25 days annual leave rising to 28 days with service Real individual development opportunities SRT Marine Systems plc is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and welcome applications from all backgrounds.
20/08/2026
Full time
SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base. The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness 'MDA' technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners. SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world. We are looking for a Security & Compliance Manager to own the security of how our products and systems are deployed, operated and maintained in customer environments around the world, and to lead the security assurance and certification activity that stands behind them. This is a senior, customer-facing leadership role sitting at the intersection of secure delivery, customer operations and corporate security. You as a Security & Compliance Manager will work closely with our delivery, customer-facing, network & infrastructure and corporate IT teams, and with our external security partners, to make sure the systems we deploy remain secure throughout their operational life. The role is focused on leadership, coordination and communication rather than hands-on engineering. Much of the knowledge needed already exists across the business - your job is to bring it together into a coherent programme, and to be the champion who drives it through, backed by enough technical understanding to hold detailed conversations with customers, auditors and developers. The role of Security & Compliance Manager is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, and from time to time to customer sites worldwide, with good flexibility for Hybrid working. Responsibilities - Security & Compliance Manager - not exhaustive: Act as the senior voice and champion for security across our delivery and customer operations, ensuring deployed systems receive the same security attention as new ones. Define the customer operating policies, principles and patterns that delivery and customer-facing teams should follow for the secure implementation and operation of SRT systems. Own the through-life security of equipment deployed in customer environments, including patching, secure configuration, and equipment lifecycle and end-of-life replacement. Lead SRT's responses to customer security requirements, assurance questionnaires and connection approvals, including for sophisticated government and defence customers. Work with internal stakeholders to ensure engineering and operational reality supports the security claims we make to customers, partners and auditors. Lead our assurance and certification activity, including Cyber Essentials Plus, ISO 27001 and other relevant standards. Bring together the security expertise that already exists across the business into one coherent, prioritised programme of improvement. Direct our external security partners as an extended resource pool for monitoring, assessments and remediation. Assign pragmatic risk levels and support sensible prioritisation of remediation alongside project delivery and other commitments. Report clearly to senior leadership on risk, progress and priorities in business terms. Requirements - Security & Compliance Manager - not exhaustive: Strong experience in security management, security assurance, compliance or a similar role, ideally where systems are delivered into and operated within customer environments. A track record of achieving and maintaining certifications such as ISO 27001 and Cyber Essentials Plus, including managing audits. Practical understanding of securing deployed infrastructure, including firewalls, patching, secure configuration and equipment lifecycle management. Experience leading customer-facing security engagements, including security questionnaires, accreditation and third-party assurance. The presence and communication skills to champion change across teams and to influence stakeholders without direct authority. The judgement to assess risk and business impact pragmatically. Experience coordinating third-party security providers such as managed SOC or security service partners. Familiarity with recognised frameworks such as ISO 27001, Cyber Essentials Plus, NIST CSF or similar. Experience in an engineering or manufacturing business delivering long-lived systems would be helpful. Experience in high-trust, regulated or mission-critical environments would be valuable. Benefits Highly Competitive Salary and benefits package 25 days annual leave rising to 28 days with service Real individual development opportunities SRT Marine Systems plc is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and welcome applications from all backgrounds.
SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base. The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness 'MDA' technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners. SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world. We are looking for a Security & Compliance Manager to own the security of how our products and systems are deployed, operated and maintained in customer environments around the world, and to lead the security assurance and certification activity that stands behind them. This is a senior, customer-facing leadership role sitting at the intersection of secure delivery, customer operations and corporate security. You as a Security & Compliance Manager will work closely with our delivery, customer-facing, network & infrastructure and corporate IT teams, and with our external security partners, to make sure the systems we deploy remain secure throughout their operational life. The role is focused on leadership, coordination and communication rather than hands-on engineering. Much of the knowledge needed already exists across the business - your job is to bring it together into a coherent programme, and to be the champion who drives it through, backed by enough technical understanding to hold detailed conversations with customers, auditors and developers. The role of Security & Compliance Manager is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, and from time to time to customer sites worldwide, with good flexibility for Hybrid working. Responsibilities - Security & Compliance Manager - not exhaustive: Act as the senior voice and champion for security across our delivery and customer operations, ensuring deployed systems receive the same security attention as new ones. Define the customer operating policies, principles and patterns that delivery and customer-facing teams should follow for the secure implementation and operation of SRT systems. Own the through-life security of equipment deployed in customer environments, including patching, secure configuration, and equipment lifecycle and end-of-life replacement. Lead SRT's responses to customer security requirements, assurance questionnaires and connection approvals, including for sophisticated government and defence customers. Work with internal stakeholders to ensure engineering and operational reality supports the security claims we make to customers, partners and auditors. Lead our assurance and certification activity, including Cyber Essentials Plus, ISO 27001 and other relevant standards. Bring together the security expertise that already exists across the business into one coherent, prioritised programme of improvement. Direct our external security partners as an extended resource pool for monitoring, assessments and remediation. Assign pragmatic risk levels and support sensible prioritisation of remediation alongside project delivery and other commitments. Report clearly to senior leadership on risk, progress and priorities in business terms. Requirements - Security & Compliance Manager - not exhaustive: Strong experience in security management, security assurance, compliance or a similar role, ideally where systems are delivered into and operated within customer environments. A track record of achieving and maintaining certifications such as ISO 27001 and Cyber Essentials Plus, including managing audits. Practical understanding of securing deployed infrastructure, including firewalls, patching, secure configuration and equipment lifecycle management. Experience leading customer-facing security engagements, including security questionnaires, accreditation and third-party assurance. The presence and communication skills to champion change across teams and to influence stakeholders without direct authority. The judgement to assess risk and business impact pragmatically. Experience coordinating third-party security providers such as managed SOC or security service partners. Familiarity with recognised frameworks such as ISO 27001, Cyber Essentials Plus, NIST CSF or similar. Experience in an engineering or manufacturing business delivering long-lived systems would be helpful. Experience in high-trust, regulated or mission-critical environments would be valuable. Benefits Highly Competitive Salary and benefits package 25 days annual leave rising to 28 days with service Real individual development opportunities SRT Marine Systems plc is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and welcome applications from all backgrounds.
20/08/2026
Full time
SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base. The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness 'MDA' technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners. SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world. We are looking for a Security & Compliance Manager to own the security of how our products and systems are deployed, operated and maintained in customer environments around the world, and to lead the security assurance and certification activity that stands behind them. This is a senior, customer-facing leadership role sitting at the intersection of secure delivery, customer operations and corporate security. You as a Security & Compliance Manager will work closely with our delivery, customer-facing, network & infrastructure and corporate IT teams, and with our external security partners, to make sure the systems we deploy remain secure throughout their operational life. The role is focused on leadership, coordination and communication rather than hands-on engineering. Much of the knowledge needed already exists across the business - your job is to bring it together into a coherent programme, and to be the champion who drives it through, backed by enough technical understanding to hold detailed conversations with customers, auditors and developers. The role of Security & Compliance Manager is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, and from time to time to customer sites worldwide, with good flexibility for Hybrid working. Responsibilities - Security & Compliance Manager - not exhaustive: Act as the senior voice and champion for security across our delivery and customer operations, ensuring deployed systems receive the same security attention as new ones. Define the customer operating policies, principles and patterns that delivery and customer-facing teams should follow for the secure implementation and operation of SRT systems. Own the through-life security of equipment deployed in customer environments, including patching, secure configuration, and equipment lifecycle and end-of-life replacement. Lead SRT's responses to customer security requirements, assurance questionnaires and connection approvals, including for sophisticated government and defence customers. Work with internal stakeholders to ensure engineering and operational reality supports the security claims we make to customers, partners and auditors. Lead our assurance and certification activity, including Cyber Essentials Plus, ISO 27001 and other relevant standards. Bring together the security expertise that already exists across the business into one coherent, prioritised programme of improvement. Direct our external security partners as an extended resource pool for monitoring, assessments and remediation. Assign pragmatic risk levels and support sensible prioritisation of remediation alongside project delivery and other commitments. Report clearly to senior leadership on risk, progress and priorities in business terms. Requirements - Security & Compliance Manager - not exhaustive: Strong experience in security management, security assurance, compliance or a similar role, ideally where systems are delivered into and operated within customer environments. A track record of achieving and maintaining certifications such as ISO 27001 and Cyber Essentials Plus, including managing audits. Practical understanding of securing deployed infrastructure, including firewalls, patching, secure configuration and equipment lifecycle management. Experience leading customer-facing security engagements, including security questionnaires, accreditation and third-party assurance. The presence and communication skills to champion change across teams and to influence stakeholders without direct authority. The judgement to assess risk and business impact pragmatically. Experience coordinating third-party security providers such as managed SOC or security service partners. Familiarity with recognised frameworks such as ISO 27001, Cyber Essentials Plus, NIST CSF or similar. Experience in an engineering or manufacturing business delivering long-lived systems would be helpful. Experience in high-trust, regulated or mission-critical environments would be valuable. Benefits Highly Competitive Salary and benefits package 25 days annual leave rising to 28 days with service Real individual development opportunities SRT Marine Systems plc is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and welcome applications from all backgrounds.
CBSbutler Holdings Limited trading as CBSbutler
Luton, Bedfordshire
Product Security Engineer - Defence & Government Location: Luton - 90% onsite Rate: 80- 90 per hour Security Clearance: Active SC Clearance required Nationality: UK Eyes Only / Sole British National required Contract: 12 Months + The Role We are seeking an experienced Product Security Engineer to support the development and maintenance of bespoke security capabilities for Defence and Government customers. You will take responsibility for security across the full product lifecycle , from design and development through verification, deployment and ongoing maintenance. The role will focus on security risk assessment, security requirements, risk mitigation, security assurance and the implementation of appropriate security controls . You will work closely with product development teams, security assurance authorities, risk owners and engineering SMEs to ensure products meet relevant customer and organisational security requirements. This is a highly technical role suited to a Product Security professional with experience working across UK Defence, Government, aerospace or other highly regulated environments . Key Responsibilities Develop Security Management Plans, work package descriptions and cost estimates for bids, services and proposals. Undertake security risk assessments and develop risk mitigation plans. Conduct mitigation gap analysis and produce security management documentation for system assurance. Define product security requirements and advise engineering teams on security control implementation. Work directly with product development teams throughout the product lifecycle. Liaise with internal and external security assurance authorities to demonstrate compliance with relevant security frameworks. Work collaboratively with external security authorities, including the NCSC , where required to support security assurance. Manage security activities across development, testing and manufacturing environments. Advise engineering teams on platform lockdown, secure configuration and security hardening. Support penetration testing activities, analyse findings and develop remedial action plans. Manage through-life product security, including vulnerability management, patch management and security obsolescence planning. Support security incident management and crisis response activities. Review and contribute to corporate product security policies and processes. Deliver product security training and guidance to engineering teams. Produce and maintain technical security artefacts and assurance documentation. Security Risk & Assurance You will be responsible for ensuring security risks are appropriately identified, assessed and managed throughout the product lifecycle. This will include: Security risk assessments. Risk mitigation planning. Security requirements definition. Security cases and assurance documentation. Mitigation gap analysis. Security verification and testing. Penetration testing support and remediation. Engagement with customer security authorities and risk owners. Demonstrating compliance against applicable UK, NATO and international security frameworks. Product Security Engineering The role will require a strong understanding of how security controls are applied to bespoke products and systems, including: Product-specific operating systems. Firmware. Software. Platform security and hardening. Cryptographic technologies. Key management systems. Secure configuration and lockdown. Vulnerability and patch management. Security monitoring and incident response. You will work closely with engineering teams to ensure security requirements are translated into practical and effective technical controls. Essential Skills & Experience Demonstrable experience developing product-based security solutions for military, defence, government or commercial products and systems. Strong experience in Product Security / Information Security / Cyber Security Engineering . Experience undertaking security risk assessments and developing risk mitigation strategies. Experience defining and managing product security requirements. Experience producing technical security assurance documentation. Experience working directly with engineering and product development teams. Strong understanding of security throughout the product lifecycle. Practical experience with security assurance and compliance activities. Knowledge of UK Defence and Government security frameworks . Recent experience with relevant UK/EU/NATO information security standards and frameworks, including: UK MOD Secure by Design GovS 007 HMG IS1/IS2 ISO 27001 NIST SP 800-30, 800-37 and 800-53 UK MOD Information Security-related JSPs EU Cyber Resilience Act (CRA) US Department of Defense information security policies Experience producing security artefacts such as Key Management Plans, Security Operating Procedures, Security Cases and security testing documentation . Knowledge of cryptographic technologies and key management. Understanding of Model-Based Systems Engineering (MBSE) and the role of Product Security within the systems engineering lifecycle. Understanding of operating system, firmware and software security controls. Excellent written and verbal communication skills. Strong stakeholder management and influencing skills. Ability to work collaboratively with engineering, security and customer stakeholders. Active SC Clearance or eligibility for SC clearance with UK Eyes Only requirements. Desirable Experience DV Clearance . Practical experience with Common Criteria security evaluation techniques. Knowledge of quantum cryptography and quantum key management. Experience using threat intelligence sources. Knowledge of NATO security policy, risk management and accreditation. Understanding of security advisory boards within UK Government or NATO environments. Experience supporting security incidents or crisis management activities. Experience working across classified or highly sensitive environments. Qualifications & Professional Membership Degree or postgraduate qualification in Engineering, Computer Science, Cyber Security or a related scientific/technical discipline , or equivalent professional experience. Professional membership of an NCSC-recognised security organisation such as CIISec, ISC2 or ISACA .
20/08/2026
Contractor
Product Security Engineer - Defence & Government Location: Luton - 90% onsite Rate: 80- 90 per hour Security Clearance: Active SC Clearance required Nationality: UK Eyes Only / Sole British National required Contract: 12 Months + The Role We are seeking an experienced Product Security Engineer to support the development and maintenance of bespoke security capabilities for Defence and Government customers. You will take responsibility for security across the full product lifecycle , from design and development through verification, deployment and ongoing maintenance. The role will focus on security risk assessment, security requirements, risk mitigation, security assurance and the implementation of appropriate security controls . You will work closely with product development teams, security assurance authorities, risk owners and engineering SMEs to ensure products meet relevant customer and organisational security requirements. This is a highly technical role suited to a Product Security professional with experience working across UK Defence, Government, aerospace or other highly regulated environments . Key Responsibilities Develop Security Management Plans, work package descriptions and cost estimates for bids, services and proposals. Undertake security risk assessments and develop risk mitigation plans. Conduct mitigation gap analysis and produce security management documentation for system assurance. Define product security requirements and advise engineering teams on security control implementation. Work directly with product development teams throughout the product lifecycle. Liaise with internal and external security assurance authorities to demonstrate compliance with relevant security frameworks. Work collaboratively with external security authorities, including the NCSC , where required to support security assurance. Manage security activities across development, testing and manufacturing environments. Advise engineering teams on platform lockdown, secure configuration and security hardening. Support penetration testing activities, analyse findings and develop remedial action plans. Manage through-life product security, including vulnerability management, patch management and security obsolescence planning. Support security incident management and crisis response activities. Review and contribute to corporate product security policies and processes. Deliver product security training and guidance to engineering teams. Produce and maintain technical security artefacts and assurance documentation. Security Risk & Assurance You will be responsible for ensuring security risks are appropriately identified, assessed and managed throughout the product lifecycle. This will include: Security risk assessments. Risk mitigation planning. Security requirements definition. Security cases and assurance documentation. Mitigation gap analysis. Security verification and testing. Penetration testing support and remediation. Engagement with customer security authorities and risk owners. Demonstrating compliance against applicable UK, NATO and international security frameworks. Product Security Engineering The role will require a strong understanding of how security controls are applied to bespoke products and systems, including: Product-specific operating systems. Firmware. Software. Platform security and hardening. Cryptographic technologies. Key management systems. Secure configuration and lockdown. Vulnerability and patch management. Security monitoring and incident response. You will work closely with engineering teams to ensure security requirements are translated into practical and effective technical controls. Essential Skills & Experience Demonstrable experience developing product-based security solutions for military, defence, government or commercial products and systems. Strong experience in Product Security / Information Security / Cyber Security Engineering . Experience undertaking security risk assessments and developing risk mitigation strategies. Experience defining and managing product security requirements. Experience producing technical security assurance documentation. Experience working directly with engineering and product development teams. Strong understanding of security throughout the product lifecycle. Practical experience with security assurance and compliance activities. Knowledge of UK Defence and Government security frameworks . Recent experience with relevant UK/EU/NATO information security standards and frameworks, including: UK MOD Secure by Design GovS 007 HMG IS1/IS2 ISO 27001 NIST SP 800-30, 800-37 and 800-53 UK MOD Information Security-related JSPs EU Cyber Resilience Act (CRA) US Department of Defense information security policies Experience producing security artefacts such as Key Management Plans, Security Operating Procedures, Security Cases and security testing documentation . Knowledge of cryptographic technologies and key management. Understanding of Model-Based Systems Engineering (MBSE) and the role of Product Security within the systems engineering lifecycle. Understanding of operating system, firmware and software security controls. Excellent written and verbal communication skills. Strong stakeholder management and influencing skills. Ability to work collaboratively with engineering, security and customer stakeholders. Active SC Clearance or eligibility for SC clearance with UK Eyes Only requirements. Desirable Experience DV Clearance . Practical experience with Common Criteria security evaluation techniques. Knowledge of quantum cryptography and quantum key management. Experience using threat intelligence sources. Knowledge of NATO security policy, risk management and accreditation. Understanding of security advisory boards within UK Government or NATO environments. Experience supporting security incidents or crisis management activities. Experience working across classified or highly sensitive environments. Qualifications & Professional Membership Degree or postgraduate qualification in Engineering, Computer Science, Cyber Security or a related scientific/technical discipline , or equivalent professional experience. Professional membership of an NCSC-recognised security organisation such as CIISec, ISC2 or ISACA .
Ganymede Solutions
Middleton St. George, County Durham
Cyber Security Contractor Rate: £500.00 - £550.00p/d (Outside IR35) North Yorkshire Are you an experienced Cyber Security professional with a background in Defence or regulated industrial environments, looking for a hands-on contract where you can lead the security workstream on a genuinely high-profile project? Do you enjoy working across the full lifecycle, from threat modelling and risk assessment through to customer-facing assurance documentation? My client is an established manufacturer of precision technology, delivering solutions used across a range of regulated sectors including defence, energy, and industrial environments. They've built a strong reputation for reliability and operational integrity, with products used in demanding and safety-critical settings. Lead Cyber Security Delivery on a Live MOD Project This is a hands-on contract covering the full cyber-security workstream for a specialist monitoring and alarm system, delivered in line with the MOD Secure by Design (SbD) approach. You'll be joining at the software delivery stage, with the architectural design already complete, and will take ownership of security from requirements through to implementation, test and handover. You'll be working closely with a small, focused project team, including a Project Manager and Lead Engineer, reporting into the Embedded Software Engineering Manager. Your responsibilities: Your day-to-day work will involve identifying vulnerabilities and developing the project's risk assessment, threat model and security architecture, ensuring security risks are proportionately treated and clearly evidenced. You'll be advising engineering teams on security controls across IT, OT and industrial control-system environments, reviewing system architecture, network design, access management and logging arrangements. You'll also produce a significant volume of customer-facing documentation, including security requirements, risk assessments, design documentation and assurance material, and will support engagement with MOD stakeholders and assurance functions throughout the project. What We're Looking For To be successful in this role, you'll need proven experience delivering cyber security and assurance work within MOD, Defence, government or other regulated industrial environments, along with practical experience applying MOD Secure by Design principles. You should be confident carrying out cyber risk assessment, threat modelling and security requirements engineering, with a solid understanding of OT/ICS security (PLC, HMI, SCADA) and how it interacts with safety and availability. Strong documentation and stakeholder-management skills are essential, along with the ability to work autonomously and explain security requirements pragmatically to non-specialists. You'll need to be eligible to work on UK Defence projects and hold the required security clearance (SC). Why Apply? This is a genuine opportunity to lead cyber security delivery on a fascinating, high-integrity Defence project, for a well-established business with a strong reputation in precision sensing technology. You'll be working in a fully office-based, close-knit team environment, with real ownership over the project's security workstream from this stage through to handover. Ganymede is committed to creating a diverse workforce and is an equal opportunities employer. We welcome applications from all suitably qualified persons regardless of age, disability, gender, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, and sexual orientation
20/08/2026
Contractor
Cyber Security Contractor Rate: £500.00 - £550.00p/d (Outside IR35) North Yorkshire Are you an experienced Cyber Security professional with a background in Defence or regulated industrial environments, looking for a hands-on contract where you can lead the security workstream on a genuinely high-profile project? Do you enjoy working across the full lifecycle, from threat modelling and risk assessment through to customer-facing assurance documentation? My client is an established manufacturer of precision technology, delivering solutions used across a range of regulated sectors including defence, energy, and industrial environments. They've built a strong reputation for reliability and operational integrity, with products used in demanding and safety-critical settings. Lead Cyber Security Delivery on a Live MOD Project This is a hands-on contract covering the full cyber-security workstream for a specialist monitoring and alarm system, delivered in line with the MOD Secure by Design (SbD) approach. You'll be joining at the software delivery stage, with the architectural design already complete, and will take ownership of security from requirements through to implementation, test and handover. You'll be working closely with a small, focused project team, including a Project Manager and Lead Engineer, reporting into the Embedded Software Engineering Manager. Your responsibilities: Your day-to-day work will involve identifying vulnerabilities and developing the project's risk assessment, threat model and security architecture, ensuring security risks are proportionately treated and clearly evidenced. You'll be advising engineering teams on security controls across IT, OT and industrial control-system environments, reviewing system architecture, network design, access management and logging arrangements. You'll also produce a significant volume of customer-facing documentation, including security requirements, risk assessments, design documentation and assurance material, and will support engagement with MOD stakeholders and assurance functions throughout the project. What We're Looking For To be successful in this role, you'll need proven experience delivering cyber security and assurance work within MOD, Defence, government or other regulated industrial environments, along with practical experience applying MOD Secure by Design principles. You should be confident carrying out cyber risk assessment, threat modelling and security requirements engineering, with a solid understanding of OT/ICS security (PLC, HMI, SCADA) and how it interacts with safety and availability. Strong documentation and stakeholder-management skills are essential, along with the ability to work autonomously and explain security requirements pragmatically to non-specialists. You'll need to be eligible to work on UK Defence projects and hold the required security clearance (SC). Why Apply? This is a genuine opportunity to lead cyber security delivery on a fascinating, high-integrity Defence project, for a well-established business with a strong reputation in precision sensing technology. You'll be working in a fully office-based, close-knit team environment, with real ownership over the project's security workstream from this stage through to handover. Ganymede is committed to creating a diverse workforce and is an equal opportunities employer. We welcome applications from all suitably qualified persons regardless of age, disability, gender, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, and sexual orientation
Product Security Engineer - Defence & Government Location: Luton - 90% onsite Rate: £80-£90 per hour Security Clearance: Active SC Clearance required Nationality: UK Eyes Only/Sole British National required Contract: 12 Months + The Role We are seeking an experienced Product Security Engineer to support the development and maintenance of bespoke security capabilities for Defence and Government customers. You will take responsibility for security across the full product life cycle , from design and development through verification, deployment and ongoing maintenance. The role will focus on security risk assessment, security requirements, risk mitigation, security assurance and the implementation of appropriate security controls . You will work closely with product development teams, security assurance authorities, risk owners and engineering SMEs to ensure products meet relevant customer and organisational security requirements. This is a highly technical role suited to a Product Security professional with experience working across UK Defence, Government, aerospace or other highly regulated environments . Key Responsibilities Develop Security Management Plans, work package descriptions and cost estimates for bids, services and proposals. Undertake security risk assessments and develop risk mitigation plans. Conduct mitigation gap analysis and produce security management documentation for system assurance. Define product security requirements and advise engineering teams on security control implementation. Work directly with product development teams throughout the product life cycle. Liaise with internal and external security assurance authorities to demonstrate compliance with relevant security frameworks. Work collaboratively with external security authorities, including the NCSC , where required to support security assurance. Manage security activities across development, testing and manufacturing environments. Advise engineering teams on platform lockdown, secure configuration and security hardening. Support penetration testing activities, analyse findings and develop remedial action plans. Manage through-life product security, including vulnerability management, patch management and security obsolescence planning. Support security incident management and crisis response activities. Review and contribute to corporate product security policies and processes. Deliver product security training and guidance to engineering teams. Produce and maintain technical security artefacts and assurance documentation. Security Risk & Assurance You will be responsible for ensuring security risks are appropriately identified, assessed and managed throughout the product life cycle. This will include: Security risk assessments. Risk mitigation planning. Security requirements definition. Security cases and assurance documentation. Mitigation gap analysis. Security verification and testing. Penetration testing support and remediation. Engagement with customer security authorities and risk owners. Demonstrating compliance against applicable UK, NATO and international security frameworks. Product Security Engineering The role will require a strong understanding of how security controls are applied to bespoke products and systems, including: Product-specific operating systems. Firmware. Software. Platform security and hardening. Cryptographic technologies. Key management systems. Secure configuration and lockdown. Vulnerability and patch management. Security monitoring and incident response. You will work closely with engineering teams to ensure security requirements are translated into practical and effective technical controls. Essential Skills & Experience Demonstrable experience developing product-based security solutions for military, defence, government or commercial products and systems. Strong experience in Product Security/Information Security/Cyber Security Engineering . Experience undertaking security risk assessments and developing risk mitigation strategies. Experience defining and managing product security requirements. Experience producing technical security assurance documentation. Experience working directly with engineering and product development teams. Strong understanding of security throughout the product life cycle. Practical experience with security assurance and compliance activities. Knowledge of UK Defence and Government security frameworks . Recent experience with relevant UK/EU/NATO information security standards and frameworks, including: UK MOD Secure by Design GovS 007 HMG IS1/IS2 ISO 27001 NIST SP 800-30, 800-37 and 800-53 UK MOD Information Security-related JSPs EU Cyber Resilience Act (CRA) US Department of Defense information security policies Experience producing security artefacts such as Key Management Plans, Security Operating Procedures, Security Cases and security testing documentation . Knowledge of cryptographic technologies and key management. Understanding of Model-Based Systems Engineering (MBSE) and the role of Product Security within the systems engineering life cycle. Understanding of operating system, firmware and software security controls. Excellent written and verbal communication skills. Strong stakeholder management and influencing skills. Ability to work collaboratively with engineering, security and customer stakeholders. Active SC Clearance or eligibility for SC clearance with UK Eyes Only requirements. Desirable Experience DV Clearance . Practical experience with Common Criteria security evaluation techniques. Knowledge of quantum cryptography and quantum key management. Experience using threat intelligence sources. Knowledge of NATO security policy, risk management and accreditation. Understanding of security advisory boards within UK Government or NATO environments. Experience supporting security incidents or crisis management activities. Experience working across classified or highly sensitive environments. Qualifications & Professional Membership Degree or postgraduate qualification in Engineering, Computer Science, Cyber Security or a related scientific/technical discipline , or equivalent professional experience. Professional membership of an NCSC-recognised security organisation such as CIISec, ISC2 or ISACA .
20/08/2026
Contractor
Product Security Engineer - Defence & Government Location: Luton - 90% onsite Rate: £80-£90 per hour Security Clearance: Active SC Clearance required Nationality: UK Eyes Only/Sole British National required Contract: 12 Months + The Role We are seeking an experienced Product Security Engineer to support the development and maintenance of bespoke security capabilities for Defence and Government customers. You will take responsibility for security across the full product life cycle , from design and development through verification, deployment and ongoing maintenance. The role will focus on security risk assessment, security requirements, risk mitigation, security assurance and the implementation of appropriate security controls . You will work closely with product development teams, security assurance authorities, risk owners and engineering SMEs to ensure products meet relevant customer and organisational security requirements. This is a highly technical role suited to a Product Security professional with experience working across UK Defence, Government, aerospace or other highly regulated environments . Key Responsibilities Develop Security Management Plans, work package descriptions and cost estimates for bids, services and proposals. Undertake security risk assessments and develop risk mitigation plans. Conduct mitigation gap analysis and produce security management documentation for system assurance. Define product security requirements and advise engineering teams on security control implementation. Work directly with product development teams throughout the product life cycle. Liaise with internal and external security assurance authorities to demonstrate compliance with relevant security frameworks. Work collaboratively with external security authorities, including the NCSC , where required to support security assurance. Manage security activities across development, testing and manufacturing environments. Advise engineering teams on platform lockdown, secure configuration and security hardening. Support penetration testing activities, analyse findings and develop remedial action plans. Manage through-life product security, including vulnerability management, patch management and security obsolescence planning. Support security incident management and crisis response activities. Review and contribute to corporate product security policies and processes. Deliver product security training and guidance to engineering teams. Produce and maintain technical security artefacts and assurance documentation. Security Risk & Assurance You will be responsible for ensuring security risks are appropriately identified, assessed and managed throughout the product life cycle. This will include: Security risk assessments. Risk mitigation planning. Security requirements definition. Security cases and assurance documentation. Mitigation gap analysis. Security verification and testing. Penetration testing support and remediation. Engagement with customer security authorities and risk owners. Demonstrating compliance against applicable UK, NATO and international security frameworks. Product Security Engineering The role will require a strong understanding of how security controls are applied to bespoke products and systems, including: Product-specific operating systems. Firmware. Software. Platform security and hardening. Cryptographic technologies. Key management systems. Secure configuration and lockdown. Vulnerability and patch management. Security monitoring and incident response. You will work closely with engineering teams to ensure security requirements are translated into practical and effective technical controls. Essential Skills & Experience Demonstrable experience developing product-based security solutions for military, defence, government or commercial products and systems. Strong experience in Product Security/Information Security/Cyber Security Engineering . Experience undertaking security risk assessments and developing risk mitigation strategies. Experience defining and managing product security requirements. Experience producing technical security assurance documentation. Experience working directly with engineering and product development teams. Strong understanding of security throughout the product life cycle. Practical experience with security assurance and compliance activities. Knowledge of UK Defence and Government security frameworks . Recent experience with relevant UK/EU/NATO information security standards and frameworks, including: UK MOD Secure by Design GovS 007 HMG IS1/IS2 ISO 27001 NIST SP 800-30, 800-37 and 800-53 UK MOD Information Security-related JSPs EU Cyber Resilience Act (CRA) US Department of Defense information security policies Experience producing security artefacts such as Key Management Plans, Security Operating Procedures, Security Cases and security testing documentation . Knowledge of cryptographic technologies and key management. Understanding of Model-Based Systems Engineering (MBSE) and the role of Product Security within the systems engineering life cycle. Understanding of operating system, firmware and software security controls. Excellent written and verbal communication skills. Strong stakeholder management and influencing skills. Ability to work collaboratively with engineering, security and customer stakeholders. Active SC Clearance or eligibility for SC clearance with UK Eyes Only requirements. Desirable Experience DV Clearance . Practical experience with Common Criteria security evaluation techniques. Knowledge of quantum cryptography and quantum key management. Experience using threat intelligence sources. Knowledge of NATO security policy, risk management and accreditation. Understanding of security advisory boards within UK Government or NATO environments. Experience supporting security incidents or crisis management activities. Experience working across classified or highly sensitive environments. Qualifications & Professional Membership Degree or postgraduate qualification in Engineering, Computer Science, Cyber Security or a related scientific/technical discipline , or equivalent professional experience. Professional membership of an NCSC-recognised security organisation such as CIISec, ISC2 or ISACA .
Job Title : Principal Offensive Security Operator - SC Location: Remote with occasional travel to London - once every couple of months (depending on business need) - No expenses paid Contract Duration : 12 Months Daily Rate : £740/day (Umbrella) IR35 Status: Inside IR35 Security Clearance: SC The Role: You will conduct safe, simulated cyber-attack simulations against our technology estates, acting as a real-world adversary might, to test our defences, highlight weaknesses and contribute cyber security expertise and insight in support of the department's strategic security decision-making functions. You will be familiar with exploitation methodologies across a wide range of technologies, from classic enterprise technology stacks to modern digital services. You will have a well-developed ability to tactically assess and to execute a diversity of attack types, including chained attacks and evasion techniques, to achieve your desired goal. You have a keen instinct for evading detection and avoiding disruption to operations. Key Responsibilities Designing and executing threat intelligence-based full-spectrum cyber-attack simulations, including long-term campaign planning, persistence, and post-exploitation operations against the Ministry of Justice. Adopting a red team approach, discovering high-impact weaknesses across the organisation's most important technology estates and business areas, and validating whether the overarching cyber security apparatus is working effectively. Communicating technical findings in clear risk and impact-focused terms to senior stakeholders, enabling effective understanding and support for strategic decision-making. Development and implementation of tools and methodologies to augment and to automate team offensive and analytical capability. Mentoring junior Red Team members to improve their skills and capabilities, along with wider knowledge transfer to other security and non-security teams to help build a culture of cyber security in the department. Essential Proven ability to plan and execute complex, multi-phase operations. Scenario-driven adversary simulation Threat intelligence analysis and assessment Exploitation of a wide range of technologies, including infrastructure, web application and cloud platforms: Microsoft Entra, Active Directory, M365, macOS. Kubernetes, CI/CD, AWS, Azure. Post-exploitation, persistence and lateral movement, including tactical analysis of attack paths leading to high-value targets Conducting engagement activities in line with operational security best practice and within a range of threat actor capabilities and tradecraft Deep understanding of security technologies found in end-user and server operating systems and supporting infrastructure, including relevant architectural and operational patterns of at-scale deployment and administration of complex Legacy and modern enterprise environments. Experience using, developing and deploying tools in support of red teaming activities, including attack infrastructure, C2 frameworks and infrastructure-as-code technologies. Strong communication skills with the ability to clearly explain complex technical issues related to vulnerabilities and risk to diverse audiences, including senior stakeholders, in support of vulnerability management, threat mitigation, and risk-based decision-making. Participation in GCASE/GBEST/CBEST/TIBER engagements. Desirable: Experience in threat and/or vulnerability research, including publication and presentation to the wider cyber security community. Background in a related a discipline, such as protective monitoring, incident response, security engineering or security architecture. Certifications in the field of red team: CCSAS, CRTL Security Clearance: SC Disability Confident As a member of the disability confident scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. Armed Forces Covenant CLIENT is proud to support the Armed Forces Covenant and as such, we guarantee to interview all veterans or spouses/partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates/military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group. If you qualify for the above, please notify us. We will be in touch to discuss your suitability and arrange your Guaranteed Interview. Should you require reasonable adjustments at any point during the recruitment process or if there is a more accessible way for us to communicate, please do let me know. To apply for this role please submit your latest CV or contact Aspect Resources
20/08/2026
Contractor
Job Title : Principal Offensive Security Operator - SC Location: Remote with occasional travel to London - once every couple of months (depending on business need) - No expenses paid Contract Duration : 12 Months Daily Rate : £740/day (Umbrella) IR35 Status: Inside IR35 Security Clearance: SC The Role: You will conduct safe, simulated cyber-attack simulations against our technology estates, acting as a real-world adversary might, to test our defences, highlight weaknesses and contribute cyber security expertise and insight in support of the department's strategic security decision-making functions. You will be familiar with exploitation methodologies across a wide range of technologies, from classic enterprise technology stacks to modern digital services. You will have a well-developed ability to tactically assess and to execute a diversity of attack types, including chained attacks and evasion techniques, to achieve your desired goal. You have a keen instinct for evading detection and avoiding disruption to operations. Key Responsibilities Designing and executing threat intelligence-based full-spectrum cyber-attack simulations, including long-term campaign planning, persistence, and post-exploitation operations against the Ministry of Justice. Adopting a red team approach, discovering high-impact weaknesses across the organisation's most important technology estates and business areas, and validating whether the overarching cyber security apparatus is working effectively. Communicating technical findings in clear risk and impact-focused terms to senior stakeholders, enabling effective understanding and support for strategic decision-making. Development and implementation of tools and methodologies to augment and to automate team offensive and analytical capability. Mentoring junior Red Team members to improve their skills and capabilities, along with wider knowledge transfer to other security and non-security teams to help build a culture of cyber security in the department. Essential Proven ability to plan and execute complex, multi-phase operations. Scenario-driven adversary simulation Threat intelligence analysis and assessment Exploitation of a wide range of technologies, including infrastructure, web application and cloud platforms: Microsoft Entra, Active Directory, M365, macOS. Kubernetes, CI/CD, AWS, Azure. Post-exploitation, persistence and lateral movement, including tactical analysis of attack paths leading to high-value targets Conducting engagement activities in line with operational security best practice and within a range of threat actor capabilities and tradecraft Deep understanding of security technologies found in end-user and server operating systems and supporting infrastructure, including relevant architectural and operational patterns of at-scale deployment and administration of complex Legacy and modern enterprise environments. Experience using, developing and deploying tools in support of red teaming activities, including attack infrastructure, C2 frameworks and infrastructure-as-code technologies. Strong communication skills with the ability to clearly explain complex technical issues related to vulnerabilities and risk to diverse audiences, including senior stakeholders, in support of vulnerability management, threat mitigation, and risk-based decision-making. Participation in GCASE/GBEST/CBEST/TIBER engagements. Desirable: Experience in threat and/or vulnerability research, including publication and presentation to the wider cyber security community. Background in a related a discipline, such as protective monitoring, incident response, security engineering or security architecture. Certifications in the field of red team: CCSAS, CRTL Security Clearance: SC Disability Confident As a member of the disability confident scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. Armed Forces Covenant CLIENT is proud to support the Armed Forces Covenant and as such, we guarantee to interview all veterans or spouses/partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates/military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group. If you qualify for the above, please notify us. We will be in touch to discuss your suitability and arrange your Guaranteed Interview. Should you require reasonable adjustments at any point during the recruitment process or if there is a more accessible way for us to communicate, please do let me know. To apply for this role please submit your latest CV or contact Aspect Resources
Project Quality Assurance Engineer This role will be based at our Cyber Centre of Excellence in Maidenhead. Hybrid working is available. Candidates must be willing and able to obtain & maintain DV Security Clearance. Our Cyber business unit is at the forefront of pioneering advanced cryptographic and key management solutions, facilitating the confidential exchange of vital information for customers operating at both tactical and strategic echelons. Join our team and participate in the innovation that ensures the highest security and trust worldwide. As Project Quality Engineer, you are responsible for developing and implementing project quality plans that meet business, customer and contractual requirements. Working under the delegated authority of the Director of Security, Quality & Compliance, the role assures quality across assigned projects and supports the mandatory quality elements of the Business Management System, and helps ensure agreed quality objectives and deliverables are consistently achieved. Key Responsibilities: Develop, implement and maintain project and product quality plans to ensure customer flow-down requirements, contractual obligations and applicable quality standards are met. Define, communicate and manage project quality assurance activities through approved quality plans and effective quality controls. Plan and conduct project, product and process audits in line with applicable standards, including AS9101, to confirm compliance with customer, statutory, regulatory and business management system requirements. Carry out in-process, final and first article inspections to verify that defined processes consistently deliver products that meet specification. Manage non-conformance reporting, root cause analysis, corrective and preventive actions to support continual improvement and prevent recurrence. Work with project, production and process teams to improve operating processes, product yields and overall quality performance. Review, improve and, where appropriate, implement quality processes within Cyber to ensure products and services meet customer needs efficiently and cost-effectively. Develop and maintain strong relationships with internal and external stakeholders to support effective quality outcomes. Promote a quality-focused culture across the business. Required Skills and Qualifications: Degree-qualified, or able to demonstrate equivalent verifiable experience, ideally in a business, quality, software engineering or mechanical engineering discipline. Proven quality engineering experience within the aerospace, defence or similarly regulated sector. Qualified internal auditor with experience of AS9100; IRCA-approved Lead Auditor qualification is preferred. Experience working in a business improvement environment, with knowledge of recognised improvement frameworks. Experience in the use of root cause analysis and problem-solving methodologies. Notice: Due to the nature of the programs we deliver for our customers, candidates may need to obtain the relevant security clearance or handle export-controlled material as defined by the role's requirements. Applicants must be able to obtain and maintain the appropriate level of security clearance for the role. Due to the nature of our work, you must be a British Citizen who has been resident in the UK for the past 5 years in order to apply for SC clearance and 10 years for DV. For more information, please visit the UKSV website. Our Benefits: Every employee is critical to our success, and as such, we offer a range of flexible employee benefits, including: Participation in an Annual Bonus Scheme Private Medical Cover 25 days holiday (plus Bank Holidays) with the option to buy an extra 5 days Pension Contribution 4 x Life Assurance Cover Flexible working hours with opportunity for a 1pm finish on a Friday Flexible benefits including cycle to work scheme, will writing and more Security Clearance Allowance where relevant and subject to you holding the required security clearance Diversity, Equity & Inclusion Statement: At Ultra I&C, we are an equal opportunity employer and value diversity and inclusivity. Underpinned by our values, behaviours, and policies, we want you to feel empowered to be the best version of yourself. We also believe that people from different backgrounds and cultures will increase our diversity of thinking, ensuring we successfully deliver to our customers. We, therefore, do not discriminate based on race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We also support requests for flexible working arrangements wherever possible.
20/08/2026
Full time
Project Quality Assurance Engineer This role will be based at our Cyber Centre of Excellence in Maidenhead. Hybrid working is available. Candidates must be willing and able to obtain & maintain DV Security Clearance. Our Cyber business unit is at the forefront of pioneering advanced cryptographic and key management solutions, facilitating the confidential exchange of vital information for customers operating at both tactical and strategic echelons. Join our team and participate in the innovation that ensures the highest security and trust worldwide. As Project Quality Engineer, you are responsible for developing and implementing project quality plans that meet business, customer and contractual requirements. Working under the delegated authority of the Director of Security, Quality & Compliance, the role assures quality across assigned projects and supports the mandatory quality elements of the Business Management System, and helps ensure agreed quality objectives and deliverables are consistently achieved. Key Responsibilities: Develop, implement and maintain project and product quality plans to ensure customer flow-down requirements, contractual obligations and applicable quality standards are met. Define, communicate and manage project quality assurance activities through approved quality plans and effective quality controls. Plan and conduct project, product and process audits in line with applicable standards, including AS9101, to confirm compliance with customer, statutory, regulatory and business management system requirements. Carry out in-process, final and first article inspections to verify that defined processes consistently deliver products that meet specification. Manage non-conformance reporting, root cause analysis, corrective and preventive actions to support continual improvement and prevent recurrence. Work with project, production and process teams to improve operating processes, product yields and overall quality performance. Review, improve and, where appropriate, implement quality processes within Cyber to ensure products and services meet customer needs efficiently and cost-effectively. Develop and maintain strong relationships with internal and external stakeholders to support effective quality outcomes. Promote a quality-focused culture across the business. Required Skills and Qualifications: Degree-qualified, or able to demonstrate equivalent verifiable experience, ideally in a business, quality, software engineering or mechanical engineering discipline. Proven quality engineering experience within the aerospace, defence or similarly regulated sector. Qualified internal auditor with experience of AS9100; IRCA-approved Lead Auditor qualification is preferred. Experience working in a business improvement environment, with knowledge of recognised improvement frameworks. Experience in the use of root cause analysis and problem-solving methodologies. Notice: Due to the nature of the programs we deliver for our customers, candidates may need to obtain the relevant security clearance or handle export-controlled material as defined by the role's requirements. Applicants must be able to obtain and maintain the appropriate level of security clearance for the role. Due to the nature of our work, you must be a British Citizen who has been resident in the UK for the past 5 years in order to apply for SC clearance and 10 years for DV. For more information, please visit the UKSV website. Our Benefits: Every employee is critical to our success, and as such, we offer a range of flexible employee benefits, including: Participation in an Annual Bonus Scheme Private Medical Cover 25 days holiday (plus Bank Holidays) with the option to buy an extra 5 days Pension Contribution 4 x Life Assurance Cover Flexible working hours with opportunity for a 1pm finish on a Friday Flexible benefits including cycle to work scheme, will writing and more Security Clearance Allowance where relevant and subject to you holding the required security clearance Diversity, Equity & Inclusion Statement: At Ultra I&C, we are an equal opportunity employer and value diversity and inclusivity. Underpinned by our values, behaviours, and policies, we want you to feel empowered to be the best version of yourself. We also believe that people from different backgrounds and cultures will increase our diversity of thinking, ensuring we successfully deliver to our customers. We, therefore, do not discriminate based on race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We also support requests for flexible working arrangements wherever possible.
Role: Cyber and Information Assurance Consultant Mid, Senior & Principal Levels Location: Nottingham / Remote-first Working Arrangement: Remote-first, with travel to Nottingham and customer sites as required Salary: £65,000 £120,000 Are you a cyber security or information assurance professional who enjoys working with customers, getting into complex problems and turning security risks into practical solutions? We re looking for Cyber and Information Assurance Consultants across Mid, Senior and Principal levels to join a growing team working on complex, high-assurance environments across defence, government and critical infrastructure. This is a consultancy-focused role, so you won t be sitting in a purely internal security position. You ll work directly with customers, technical teams and senior stakeholders to assess risk, understand threats and vulnerabilities, and provide clear recommendations on how security can be improved. You ll work across areas including cyber risk assessments, information assurance, security governance and secure-by-design. Depending on your level and experience, you could be reviewing solution designs, developing security cases, supporting accreditation and assurance activity, maintaining risk registers or helping shape security requirements across major programmes. You ll also work closely with architects, engineers, project teams, suppliers and customer security teams. A big part of the role will be taking technical evidence and security requirements and explaining what they actually mean from a risk and business perspective. You ll ideally have professional experience in cyber security, information assurance, risk management, systems engineering or a related discipline, alongside experience contributing to security assessment or assurance work. You ll need to be comfortable producing clear security documentation and communicating with both technical and non-technical audiences. Knowledge of areas such as cyber risk management, security controls, threat and vulnerability assessment, security governance and risk acceptance is important. Experience with frameworks such as ISO 27001, ISO 27005, the NCSC Cyber Assessment Framework, NIST or MOD security standards would be beneficial. Experience within defence, government, critical infrastructure or another high-assurance environment would be particularly relevant. Experience with cloud security assurance, security architecture reviews, accreditation or secure information exchange would also be useful. The level you join at will depend on your experience, with opportunities available from Mid-level through to Principal. There is a clear progression route into senior consultancy, security architecture, cyber risk leadership and information assurance leadership, with support towards professional qualifications such as CISSP, CISM, CRISC and ISO 27001. The role is remote-first, although you ll need to be comfortable travelling to the Nottingham office and customer sites when required. Regular UK travel may form part of the role, with occasional international travel possible. If you re looking for a role where you can work on genuinely complex security challenges, have direct customer exposure and continue developing your career across cyber security and assurance, please apply now or get in touch to find out more. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
20/08/2026
Full time
Role: Cyber and Information Assurance Consultant Mid, Senior & Principal Levels Location: Nottingham / Remote-first Working Arrangement: Remote-first, with travel to Nottingham and customer sites as required Salary: £65,000 £120,000 Are you a cyber security or information assurance professional who enjoys working with customers, getting into complex problems and turning security risks into practical solutions? We re looking for Cyber and Information Assurance Consultants across Mid, Senior and Principal levels to join a growing team working on complex, high-assurance environments across defence, government and critical infrastructure. This is a consultancy-focused role, so you won t be sitting in a purely internal security position. You ll work directly with customers, technical teams and senior stakeholders to assess risk, understand threats and vulnerabilities, and provide clear recommendations on how security can be improved. You ll work across areas including cyber risk assessments, information assurance, security governance and secure-by-design. Depending on your level and experience, you could be reviewing solution designs, developing security cases, supporting accreditation and assurance activity, maintaining risk registers or helping shape security requirements across major programmes. You ll also work closely with architects, engineers, project teams, suppliers and customer security teams. A big part of the role will be taking technical evidence and security requirements and explaining what they actually mean from a risk and business perspective. You ll ideally have professional experience in cyber security, information assurance, risk management, systems engineering or a related discipline, alongside experience contributing to security assessment or assurance work. You ll need to be comfortable producing clear security documentation and communicating with both technical and non-technical audiences. Knowledge of areas such as cyber risk management, security controls, threat and vulnerability assessment, security governance and risk acceptance is important. Experience with frameworks such as ISO 27001, ISO 27005, the NCSC Cyber Assessment Framework, NIST or MOD security standards would be beneficial. Experience within defence, government, critical infrastructure or another high-assurance environment would be particularly relevant. Experience with cloud security assurance, security architecture reviews, accreditation or secure information exchange would also be useful. The level you join at will depend on your experience, with opportunities available from Mid-level through to Principal. There is a clear progression route into senior consultancy, security architecture, cyber risk leadership and information assurance leadership, with support towards professional qualifications such as CISSP, CISM, CRISC and ISO 27001. The role is remote-first, although you ll need to be comfortable travelling to the Nottingham office and customer sites when required. Regular UK travel may form part of the role, with occasional international travel possible. If you re looking for a role where you can work on genuinely complex security challenges, have direct customer exposure and continue developing your career across cyber security and assurance, please apply now or get in touch to find out more. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
Are you ready to redefine defence technology and lead innovative software solutions that truly make a difference? This is your chance to join a company at the forefront of pioneering advanced cryptographic and key management solutions. As a Chief Software Architect , you will lead and shape the software engineering strategy for advanced cyber and defence systems, overseeing a team of engineers across multiple high-security projects. The position focuses on defining software architectures, driving best-practice development processes, and ensuring collaboration across software, hardware, systems, and firmware teams to deliver secure, scalable, and high-quality solutions. The role requires deep expertise in embedded and application software development using technologies such as C/C++, Rust, Linux, and RTOS environments, alongside experience with DevSecOps, automated testing, and secure development standards. In addition to technical leadership, the architect will mentor engineers, support bids and proposals, influence organisational software standards, and contribute to the delivery of mission-critical defence technologies requiring DV security clearance. What You Will Do: - Provide technical leadership across multiple projects, ensuring optimal approaches, architecture, and tool chains are selected. - Collaborate with stakeholders to develop software requirements, architectures, and designs that meet system and security needs. - Work closely with software leads and project managers to create development plans that deliver value early to customers. - Mentor and coach software engineers, sharing knowledge and driving process improvements for technical excellence. - Specify, design, and review software using UML and SysML modelling tools, ensuring high-quality, modular, and compliant solutions. - Champion best practices in software development, including continuous integration, automated testing, and secure coding standards. What You Will Bring: - Advanced knowledge and experience in C/C++, Rust, or embedded product development, including RTOSes. - Expertise in software engineering practices, methodologies, and technology trends. - Proven track record of delivering complex software solutions to schedule while exceeding customer expectations. - Experience with tools such as version control systems, change control, bug tracking, and automated testing frameworks. - Familiarity with defence or high-assurance development standards, including coding standards like MISRA. This company is committed to delivering innovative solutions that empower decision-making at both tactical and strategic levels. As a Chief Software Architect , you will be instrumental in driving technical excellence and ensuring the success of critical programmes that protect lives and enhance global security. Your contributions will align with the company's values of trust, collaboration, and innovation, making a real impact in the defence industry. Location: The role is an onsite role in Maidenhead, offering good flexibility with working hours. Interested?: If you're ready to take your career to the next level and lead transformative software projects, apply now to become the Chief Software Architect . Don't miss the opportunity to make a difference in the future of defence technology. Your CV will be forwarded to Jonathan Lee Recruitment, a leading engineering and manufacturing recruitment consultancy established in 1978. The services advertised by Jonathan Lee Recruitment are those of an Employment Agency. In order for your CV to be processed effectively, please ensure your name, email address, phone number and location (post code OR town OR county, as a minimum) are included.
19/08/2026
Full time
Are you ready to redefine defence technology and lead innovative software solutions that truly make a difference? This is your chance to join a company at the forefront of pioneering advanced cryptographic and key management solutions. As a Chief Software Architect , you will lead and shape the software engineering strategy for advanced cyber and defence systems, overseeing a team of engineers across multiple high-security projects. The position focuses on defining software architectures, driving best-practice development processes, and ensuring collaboration across software, hardware, systems, and firmware teams to deliver secure, scalable, and high-quality solutions. The role requires deep expertise in embedded and application software development using technologies such as C/C++, Rust, Linux, and RTOS environments, alongside experience with DevSecOps, automated testing, and secure development standards. In addition to technical leadership, the architect will mentor engineers, support bids and proposals, influence organisational software standards, and contribute to the delivery of mission-critical defence technologies requiring DV security clearance. What You Will Do: - Provide technical leadership across multiple projects, ensuring optimal approaches, architecture, and tool chains are selected. - Collaborate with stakeholders to develop software requirements, architectures, and designs that meet system and security needs. - Work closely with software leads and project managers to create development plans that deliver value early to customers. - Mentor and coach software engineers, sharing knowledge and driving process improvements for technical excellence. - Specify, design, and review software using UML and SysML modelling tools, ensuring high-quality, modular, and compliant solutions. - Champion best practices in software development, including continuous integration, automated testing, and secure coding standards. What You Will Bring: - Advanced knowledge and experience in C/C++, Rust, or embedded product development, including RTOSes. - Expertise in software engineering practices, methodologies, and technology trends. - Proven track record of delivering complex software solutions to schedule while exceeding customer expectations. - Experience with tools such as version control systems, change control, bug tracking, and automated testing frameworks. - Familiarity with defence or high-assurance development standards, including coding standards like MISRA. This company is committed to delivering innovative solutions that empower decision-making at both tactical and strategic levels. As a Chief Software Architect , you will be instrumental in driving technical excellence and ensuring the success of critical programmes that protect lives and enhance global security. Your contributions will align with the company's values of trust, collaboration, and innovation, making a real impact in the defence industry. Location: The role is an onsite role in Maidenhead, offering good flexibility with working hours. Interested?: If you're ready to take your career to the next level and lead transformative software projects, apply now to become the Chief Software Architect . Don't miss the opportunity to make a difference in the future of defence technology. Your CV will be forwarded to Jonathan Lee Recruitment, a leading engineering and manufacturing recruitment consultancy established in 1978. The services advertised by Jonathan Lee Recruitment are those of an Employment Agency. In order for your CV to be processed effectively, please ensure your name, email address, phone number and location (post code OR town OR county, as a minimum) are included.
Systems Engineer - (phone number removed) - £35.94/hr umbrella rate Do you have a proven experience as a Systems Engineer across the entire lifecycle in complex environments such as electrical/electronic, software, or mechatronics? Are you ready to elevate your career as a Systems Engineer? This is your chance to work on cutting-edge projects within an inspiring environment that champions innovation and excellence. This company is seeking talented individuals with real-world systems engineering experience to shape the future of their products and services. If you thrive in industries such as automotive, aerospace, defence, or rail and are passionate about delivering impactful solutions, this role is perfect for you. What You Will Do: - Develop and maintain systems engineering competence within your team, ensuring high-quality standards. - Author robust requirements that meet quality benchmarks and regulatory compliance. - Gather end-user needs and concerns to refine processes and methods. - Collaborate with business analysts to create efficient and compliant processes. - Identify key performance indicators for systems engineering processes and track progress. - Guide the development of tools, training, and methods to support systems engineering principles. What You Will Bring: - Proven experience as a Systems Engineer across the entire lifecycle in complex environments such as electrical/electronic, software, or mechatronics. - Hands-on application of Systems Engineering tools like IBM DOORS, Rhapsody, or Catia Magic. - Expertise in requirements management aligned with Systems Engineering processes. - Real-world experience in process and method development for systems engineering. - Knowledge of system modelling, functional safety practices, and cyber security. Your contributions as a Systems Engineer will be instrumental in driving innovation and excellence within this company. By bringing your skills and expertise, you will play a key role in delivering solutions that align with industry standards and exceed expectations. Location: This position is based in Gaydon, a hub of engineering excellence and innovation. Interested?: Don't miss this opportunity to become a vital part of a forward-thinking team. Apply now to take the next step in your career as a Systems Engineer. Let's make innovation happen together! This role is Inside IR35. Your CV will be forwarded to Jonathan Lee Recruitment, a leading engineering and manufacturing recruitment consultancy established in 1978. The services advertised by Jonathan Lee Recruitment are those of an Employment Agency. In order for your CV to be processed effectively, please ensure your name, email address, phone number and location (post code OR town OR county, as a minimum) are included.
19/08/2026
Contractor
Systems Engineer - (phone number removed) - £35.94/hr umbrella rate Do you have a proven experience as a Systems Engineer across the entire lifecycle in complex environments such as electrical/electronic, software, or mechatronics? Are you ready to elevate your career as a Systems Engineer? This is your chance to work on cutting-edge projects within an inspiring environment that champions innovation and excellence. This company is seeking talented individuals with real-world systems engineering experience to shape the future of their products and services. If you thrive in industries such as automotive, aerospace, defence, or rail and are passionate about delivering impactful solutions, this role is perfect for you. What You Will Do: - Develop and maintain systems engineering competence within your team, ensuring high-quality standards. - Author robust requirements that meet quality benchmarks and regulatory compliance. - Gather end-user needs and concerns to refine processes and methods. - Collaborate with business analysts to create efficient and compliant processes. - Identify key performance indicators for systems engineering processes and track progress. - Guide the development of tools, training, and methods to support systems engineering principles. What You Will Bring: - Proven experience as a Systems Engineer across the entire lifecycle in complex environments such as electrical/electronic, software, or mechatronics. - Hands-on application of Systems Engineering tools like IBM DOORS, Rhapsody, or Catia Magic. - Expertise in requirements management aligned with Systems Engineering processes. - Real-world experience in process and method development for systems engineering. - Knowledge of system modelling, functional safety practices, and cyber security. Your contributions as a Systems Engineer will be instrumental in driving innovation and excellence within this company. By bringing your skills and expertise, you will play a key role in delivering solutions that align with industry standards and exceed expectations. Location: This position is based in Gaydon, a hub of engineering excellence and innovation. Interested?: Don't miss this opportunity to become a vital part of a forward-thinking team. Apply now to take the next step in your career as a Systems Engineer. Let's make innovation happen together! This role is Inside IR35. Your CV will be forwarded to Jonathan Lee Recruitment, a leading engineering and manufacturing recruitment consultancy established in 1978. The services advertised by Jonathan Lee Recruitment are those of an Employment Agency. In order for your CV to be processed effectively, please ensure your name, email address, phone number and location (post code OR town OR county, as a minimum) are included.
Technical Pre-Sales Consultant £80,000 - £120,000 Remote, ideally Southern UK, with travel to customer sites We're recruiting on behalf of a UK cyber security atechnology organisation for a Technical Pre-Sales Consultant to join their team. This is a role for someone who can bridge the gap between sales and engineering. You'll run technical demonstrations, lead proof of concepts, and act as the technical voice in front of customers, from initial discovery through to RFP and RFI response. You'll be comfortable designing solutions and architectures tailored to a customer's environment, not just presenting a fixed script. You'll own the technical content in bids and proposals, and you'll be trusted to build long term relationships with end users, Government Contractor Primes, and other key stakeholders in the defence and public sector space. What you'll be doing Running discovery conversations to understand a customer's technical environment and requirements Delivering tailored demonstrations and proof of concepts that prove the solution works for that customer Designing solutions, including hardware and software sizing and architecture planning Leading the technical content in RFPs, RFIs, and proposals Supporting the sales team as their technical partner in client meetings Feeding market and competitive intelligence back into the business Working closely with product and engineering on feature feedback What we're looking for Strong working knowledge of security principles and security enforcing measures Good understanding of cyber security and IT technologies Solid grasp of networking principles Experience with public and private cloud infrastructure A track record of designing high level architectures and translating requirements into detailed technical designs Excellent written and spoken communication, with the ability to explain complex technical concepts to technical and non-technical audiences alike Comfortable working directly with Government Contractor Primes and public sector stakeholders This is a senior, client facing technical role for someone who wants ownership of the full technical sales cycle, not just supporting it. Get in touch to find out more.
19/08/2026
Full time
Technical Pre-Sales Consultant £80,000 - £120,000 Remote, ideally Southern UK, with travel to customer sites We're recruiting on behalf of a UK cyber security atechnology organisation for a Technical Pre-Sales Consultant to join their team. This is a role for someone who can bridge the gap between sales and engineering. You'll run technical demonstrations, lead proof of concepts, and act as the technical voice in front of customers, from initial discovery through to RFP and RFI response. You'll be comfortable designing solutions and architectures tailored to a customer's environment, not just presenting a fixed script. You'll own the technical content in bids and proposals, and you'll be trusted to build long term relationships with end users, Government Contractor Primes, and other key stakeholders in the defence and public sector space. What you'll be doing Running discovery conversations to understand a customer's technical environment and requirements Delivering tailored demonstrations and proof of concepts that prove the solution works for that customer Designing solutions, including hardware and software sizing and architecture planning Leading the technical content in RFPs, RFIs, and proposals Supporting the sales team as their technical partner in client meetings Feeding market and competitive intelligence back into the business Working closely with product and engineering on feature feedback What we're looking for Strong working knowledge of security principles and security enforcing measures Good understanding of cyber security and IT technologies Solid grasp of networking principles Experience with public and private cloud infrastructure A track record of designing high level architectures and translating requirements into detailed technical designs Excellent written and spoken communication, with the ability to explain complex technical concepts to technical and non-technical audiences alike Comfortable working directly with Government Contractor Primes and public sector stakeholders This is a senior, client facing technical role for someone who wants ownership of the full technical sales cycle, not just supporting it. Get in touch to find out more.
Technical Architect required by my medium sized, extremely busy client. You must have valid SC Clearance . The Technical Architect shall provide technical and architecture expertise across a complex MOD R&D environment supporting defence capability development, systems integration, digital transformation, secure technology adoption and operational capability delivery. The role supports the design, assurance and implementation of secure, resilient and interoperable technical solutions across defence systems, platforms and services. Responsibilities include translating business, operational and enterprise architecture requirements into deliverable technical architectures that support military effectiveness, cyber resilience and future capability growth. The role contributes towards delivery of technology-enabled operational advantage through the development of scalable, secure and supportable technical solutions aligned with MOD strategic objectives, Defence transformation priorities and Integrated Force concepts. Key Responsibilities Technical Architecture Leadership Develop and maintain technical architecture artefacts, standards and design patterns. Produce high-level and low-level technical designs for defence systems and services. Ensure alignment between business requirements, operational needs and technical implementation. Solution Design and Integration Design secure and resilient technical architectures across complex defence environments. Define infrastructure, application, integration and platform architectures. Support interoperability between MOD, allied and industry systems. Develop technical standards, reference architectures and reusable design patterns. Support integration of legacy and modern digital technologies. Infrastructure and Platform Architecture Design and assess Hybrid cloud environments Private cloud infrastructures Edge computing solutions Data platforms Data Fabric Data Centred Security Secure networks Command and control environments Operational technology environments Ensure scalability, performance, resilience and maintainability requirements are achieved. Cyber Security and Technical Assurance Ensure compliance with: MOD Defence Standard 05-138 NCSC Cyber Assessment Framework (CAF) ISO 27001 Secure by Design principles Zero Trust Architecture approaches Support technical risk assessments and accreditation activities. Contribute to cyber resilience, system hardening and security assurance activities. Technical Governance Participate in technical design authorities and architecture review boards. Support technical assurance across programme deliverables. Support engineering governance and configuration management activities. Review supplier and partner technical designs for compliance and interoperability.
17/08/2026
Contractor
Technical Architect required by my medium sized, extremely busy client. You must have valid SC Clearance . The Technical Architect shall provide technical and architecture expertise across a complex MOD R&D environment supporting defence capability development, systems integration, digital transformation, secure technology adoption and operational capability delivery. The role supports the design, assurance and implementation of secure, resilient and interoperable technical solutions across defence systems, platforms and services. Responsibilities include translating business, operational and enterprise architecture requirements into deliverable technical architectures that support military effectiveness, cyber resilience and future capability growth. The role contributes towards delivery of technology-enabled operational advantage through the development of scalable, secure and supportable technical solutions aligned with MOD strategic objectives, Defence transformation priorities and Integrated Force concepts. Key Responsibilities Technical Architecture Leadership Develop and maintain technical architecture artefacts, standards and design patterns. Produce high-level and low-level technical designs for defence systems and services. Ensure alignment between business requirements, operational needs and technical implementation. Solution Design and Integration Design secure and resilient technical architectures across complex defence environments. Define infrastructure, application, integration and platform architectures. Support interoperability between MOD, allied and industry systems. Develop technical standards, reference architectures and reusable design patterns. Support integration of legacy and modern digital technologies. Infrastructure and Platform Architecture Design and assess Hybrid cloud environments Private cloud infrastructures Edge computing solutions Data platforms Data Fabric Data Centred Security Secure networks Command and control environments Operational technology environments Ensure scalability, performance, resilience and maintainability requirements are achieved. Cyber Security and Technical Assurance Ensure compliance with: MOD Defence Standard 05-138 NCSC Cyber Assessment Framework (CAF) ISO 27001 Secure by Design principles Zero Trust Architecture approaches Support technical risk assessments and accreditation activities. Contribute to cyber resilience, system hardening and security assurance activities. Technical Governance Participate in technical design authorities and architecture review boards. Support technical assurance across programme deliverables. Support engineering governance and configuration management activities. Review supplier and partner technical designs for compliance and interoperability.
CBSbutler Holdings Limited trading as CBSbutler
Hanslope, Buckinghamshire
DV Cleared Security Manager - Command Centre Location: Hanslope Park, Milton Keynes Working Arrangement: Onsite Rate: 600- 650 per day, Inside IR35 Contract: 3 years Clearance: Developed Vetting (DV) - Essential The Role We are seeking an experienced DV Cleared Security Manager to join a high-profile government Command Centre capability based at Hanslope Park, Milton Keynes . The Security Manager will act as the senior operational authority and primary point of contact for the Command Centre during their shift , providing command and control across a broad range of operational capabilities, including Cyber/SOC, NOC, Infrastructure, Service Management and Physical Security . This is not a SOC Manager, Cyber Operations Manager or hands-on technical engineering position . The successful candidate will sit across multiple specialist teams, maintaining the overall operational picture, understanding business impact, setting priorities, coordinating responses and managing escalation. Key Responsibilities Act as the senior operational authority for the Command Centre during assigned shifts. Maintain a clear Common Operating Picture (COP) across cyber, network, infrastructure, service management and physical security operations. Coordinate the response to significant incidents, service disruptions, emerging risks and operational issues. Set operational priorities and ensure the appropriate specialist teams are engaged. Manage escalations across multiple technical and operational teams and third-party suppliers. Provide clear, concise and authoritative operational updates to senior leadership and stakeholders. Produce and deliver operational briefings covering significant incidents, service impacts, emerging risks and relevant overnight/weekend activity. Engage confidently with senior stakeholders and provide appropriate challenge where required. Bring in technical specialists when deeper technical expertise is required rather than attempting to resolve technical issues directly. Take operational ownership of the Command Centre's AV and command-wall capability , including SOC, NOC and other operational feeds. Help develop appropriate screen layouts, operational dashboards and the overall Common Operating Picture. Support the development of Command Centre runbooks, escalation procedures, reporting, operating processes and ways of working . Contribute to the transition towards a full 24/7 operational model . Support training and knowledge transfer for Command Centre personnel. Ensure effective handovers between shifts and maintain strong operational continuity. About You We are looking for someone who is comfortable operating at the intersection of technology, service management and operational command . You will ideally have experience in a 24/7 command centre, operations centre, major incident environment, government/defence environment or similarly critical operational setting . You should be able to demonstrate: Significant experience in operational command, duty management, major incident management or service operations . Experience coordinating multiple teams during complex or high-impact incidents. Strong understanding of SOC, NOC, infrastructure and IT service management environments . Experience operating in a 24/7 environment. Excellent stakeholder management skills, including the ability to brief senior leadership. Strong decision-making and prioritisation skills under pressure. Experience managing escalations and coordinating third-party suppliers. Ability to maintain an accurate operational picture across multiple concurrent issues. Strong written and verbal communication skills. Experience developing operational procedures, runbooks and escalation processes. A calm, authoritative and structured approach during significant incidents. Desirable Backgrounds Candidates may come from a variety of backgrounds, including: Duty Manager / Operations Duty Manager Command Centre / Command Centre Manager Major Incident Manager Service Operations Manager Operations Manager Watch Manager / Watch Officer Incident Commander Operations Controller Service Delivery Manager Operational Resilience Defence, government or critical national infrastructure 24/7 managed service or operations environments Experience within government, defence, national security, telecommunications, critical infrastructure or other highly regulated environments would be particularly valuable. Clearance Current Developed Vetting (DV) clearance is essential for this position. Candidates without current DV clearance will not be considered.
14/08/2026
Contractor
DV Cleared Security Manager - Command Centre Location: Hanslope Park, Milton Keynes Working Arrangement: Onsite Rate: 600- 650 per day, Inside IR35 Contract: 3 years Clearance: Developed Vetting (DV) - Essential The Role We are seeking an experienced DV Cleared Security Manager to join a high-profile government Command Centre capability based at Hanslope Park, Milton Keynes . The Security Manager will act as the senior operational authority and primary point of contact for the Command Centre during their shift , providing command and control across a broad range of operational capabilities, including Cyber/SOC, NOC, Infrastructure, Service Management and Physical Security . This is not a SOC Manager, Cyber Operations Manager or hands-on technical engineering position . The successful candidate will sit across multiple specialist teams, maintaining the overall operational picture, understanding business impact, setting priorities, coordinating responses and managing escalation. Key Responsibilities Act as the senior operational authority for the Command Centre during assigned shifts. Maintain a clear Common Operating Picture (COP) across cyber, network, infrastructure, service management and physical security operations. Coordinate the response to significant incidents, service disruptions, emerging risks and operational issues. Set operational priorities and ensure the appropriate specialist teams are engaged. Manage escalations across multiple technical and operational teams and third-party suppliers. Provide clear, concise and authoritative operational updates to senior leadership and stakeholders. Produce and deliver operational briefings covering significant incidents, service impacts, emerging risks and relevant overnight/weekend activity. Engage confidently with senior stakeholders and provide appropriate challenge where required. Bring in technical specialists when deeper technical expertise is required rather than attempting to resolve technical issues directly. Take operational ownership of the Command Centre's AV and command-wall capability , including SOC, NOC and other operational feeds. Help develop appropriate screen layouts, operational dashboards and the overall Common Operating Picture. Support the development of Command Centre runbooks, escalation procedures, reporting, operating processes and ways of working . Contribute to the transition towards a full 24/7 operational model . Support training and knowledge transfer for Command Centre personnel. Ensure effective handovers between shifts and maintain strong operational continuity. About You We are looking for someone who is comfortable operating at the intersection of technology, service management and operational command . You will ideally have experience in a 24/7 command centre, operations centre, major incident environment, government/defence environment or similarly critical operational setting . You should be able to demonstrate: Significant experience in operational command, duty management, major incident management or service operations . Experience coordinating multiple teams during complex or high-impact incidents. Strong understanding of SOC, NOC, infrastructure and IT service management environments . Experience operating in a 24/7 environment. Excellent stakeholder management skills, including the ability to brief senior leadership. Strong decision-making and prioritisation skills under pressure. Experience managing escalations and coordinating third-party suppliers. Ability to maintain an accurate operational picture across multiple concurrent issues. Strong written and verbal communication skills. Experience developing operational procedures, runbooks and escalation processes. A calm, authoritative and structured approach during significant incidents. Desirable Backgrounds Candidates may come from a variety of backgrounds, including: Duty Manager / Operations Duty Manager Command Centre / Command Centre Manager Major Incident Manager Service Operations Manager Operations Manager Watch Manager / Watch Officer Incident Commander Operations Controller Service Delivery Manager Operational Resilience Defence, government or critical national infrastructure 24/7 managed service or operations environments Experience within government, defence, national security, telecommunications, critical infrastructure or other highly regulated environments would be particularly valuable. Clearance Current Developed Vetting (DV) clearance is essential for this position. Candidates without current DV clearance will not be considered.
Introduction Saab UK is part of Scandinavia's largest defence company, bringing together the best of Swedish and British innovation. Saab offers world-leading solutions and services in defence, aviation, space, and civil security to keep people and society safe. Our UK presence has been growing at pace, meaning we can offer a wide range of opportunities for personal fulfilment and career growth. We currently employ over 600 people across eight sites in the UK, and our specialisations include software engineering, underwater robotics, radars, AI, and armed forces training. The Role: This role will be part of our UK Security Team reporting into the Head of Security at Saab UK. The role can be based either in Fareham, Farnborough or Heywood House, however it will require occasional travel oversees and travel to other Saab UK offices. Working collaboratively with the security team and IT, the role will develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise to guide the organisation through compliancy leading on the Cyber security aspects of DefStan 05-138. This role is pivotal in safeguarding against advanced persistent threats, maintaining compliance with defence regulations, and supporting secure operations across all projects. Key Responsibilities: Develop, implement, and oversee cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST. Responsible for the completion of Cyber Security aspects within Supplier Assurance and selection. Maintain cyber threat awareness on a company global scale and bespoke to the organisation. Oversee security within network architecture, encryption protocols, and identity/access management for restricted environments. Direct cyber security audits and penetration testing across defence platforms and supply chains. Provide cyber security training and awareness programs tailored to defence staff and contractors. Collaborate with engineering, IT, and programme teams embedding security into defence projects (DevSecOps). Qualifications and Skills: Required: Extensive experience in cyber security management within defence, aerospace, or government environments. Strong knowledge of classified information handling and secure communication protocols. Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems. Proven track record of leading incident response in high-security environments. Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR). Excellent leadership, stakeholder management, and ability to operate under pressure. Degree in Cyber Security, Computer Science, or related field. Degree or equivalent defence/security qualifications preferred. Security clearance (SC or DV) required or eligibility to obtain. Desirable: Professional certifications: CISSP, CISM, CISA, CEH, or equivalent Experience with secure cloud environments (Azure Government, AWS GovCloud) Knowledge of cyber warfare tactics and countermeasures Experience liaising with national security agencies or defence contractors As a National Security Vetting clearance is required for this role, applicants will be required to hold National Security Vetting clearance to SC level or have the ability to gain it. By submitting an application to Saab UK you consent to undertaking workforce screening activities that may include but are not limited to: Baseline Personnel Security checks, National Security Vetting, reference checks, verification of working rights and in all circumstances preferred candidates will be placed through a security interview.
14/08/2026
Full time
Introduction Saab UK is part of Scandinavia's largest defence company, bringing together the best of Swedish and British innovation. Saab offers world-leading solutions and services in defence, aviation, space, and civil security to keep people and society safe. Our UK presence has been growing at pace, meaning we can offer a wide range of opportunities for personal fulfilment and career growth. We currently employ over 600 people across eight sites in the UK, and our specialisations include software engineering, underwater robotics, radars, AI, and armed forces training. The Role: This role will be part of our UK Security Team reporting into the Head of Security at Saab UK. The role can be based either in Fareham, Farnborough or Heywood House, however it will require occasional travel oversees and travel to other Saab UK offices. Working collaboratively with the security team and IT, the role will develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise to guide the organisation through compliancy leading on the Cyber security aspects of DefStan 05-138. This role is pivotal in safeguarding against advanced persistent threats, maintaining compliance with defence regulations, and supporting secure operations across all projects. Key Responsibilities: Develop, implement, and oversee cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST. Responsible for the completion of Cyber Security aspects within Supplier Assurance and selection. Maintain cyber threat awareness on a company global scale and bespoke to the organisation. Oversee security within network architecture, encryption protocols, and identity/access management for restricted environments. Direct cyber security audits and penetration testing across defence platforms and supply chains. Provide cyber security training and awareness programs tailored to defence staff and contractors. Collaborate with engineering, IT, and programme teams embedding security into defence projects (DevSecOps). Qualifications and Skills: Required: Extensive experience in cyber security management within defence, aerospace, or government environments. Strong knowledge of classified information handling and secure communication protocols. Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems. Proven track record of leading incident response in high-security environments. Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR). Excellent leadership, stakeholder management, and ability to operate under pressure. Degree in Cyber Security, Computer Science, or related field. Degree or equivalent defence/security qualifications preferred. Security clearance (SC or DV) required or eligibility to obtain. Desirable: Professional certifications: CISSP, CISM, CISA, CEH, or equivalent Experience with secure cloud environments (Azure Government, AWS GovCloud) Knowledge of cyber warfare tactics and countermeasures Experience liaising with national security agencies or defence contractors As a National Security Vetting clearance is required for this role, applicants will be required to hold National Security Vetting clearance to SC level or have the ability to gain it. By submitting an application to Saab UK you consent to undertaking workforce screening activities that may include but are not limited to: Baseline Personnel Security checks, National Security Vetting, reference checks, verification of working rights and in all circumstances preferred candidates will be placed through a security interview.
CBSbutler Holdings Limited trading as CBSbutler
Hanslope, Buckinghamshire
DV Cleared Duty Manager - Command Centre Location: Hanslope Park, Milton Keynes Working Arrangement: Onsite Rate: 550- 650 per day, Inside IR35 Contract: 3 years Clearance: Developed Vetting (DV) - Essential The Role We are seeking an experienced DV Cleared Duty Manager to join a high-profile government Command Centre capability based at Hanslope Park, Milton Keynes . The Duty Manager will act as the senior operational authority and primary point of contact for the Command Centre during their shift , providing command and control across a broad range of operational capabilities, including Cyber/SOC, NOC, Infrastructure, Service Management and Physical Security . This is not a SOC Manager, Cyber Operations Manager or hands-on technical engineering position . The successful candidate will sit across multiple specialist teams, maintaining the overall operational picture, understanding business impact, setting priorities, coordinating responses and managing escalation. Key Responsibilities Act as the senior operational authority for the Command Centre during assigned shifts. Maintain a clear Common Operating Picture (COP) across cyber, network, infrastructure, service management and physical security operations. Coordinate the response to significant incidents, service disruptions, emerging risks and operational issues. Set operational priorities and ensure the appropriate specialist teams are engaged. Manage escalations across multiple technical and operational teams and third-party suppliers. Provide clear, concise and authoritative operational updates to senior leadership and stakeholders. Produce and deliver operational briefings covering significant incidents, service impacts, emerging risks and relevant overnight/weekend activity. Engage confidently with senior stakeholders and provide appropriate challenge where required. Bring in technical specialists when deeper technical expertise is required rather than attempting to resolve technical issues directly. Take operational ownership of the Command Centre's AV and command-wall capability , including SOC, NOC and other operational feeds. Help develop appropriate screen layouts, operational dashboards and the overall Common Operating Picture. Support the development of Command Centre runbooks, escalation procedures, reporting, operating processes and ways of working . Contribute to the transition towards a full 24/7 operational model . Support training and knowledge transfer for Command Centre personnel. Ensure effective handovers between shifts and maintain strong operational continuity. About You We are looking for someone who is comfortable operating at the intersection of technology, service management and operational command . You will ideally have experience in a 24/7 command centre, operations centre, major incident environment, government/defence environment or similarly critical operational setting . You should be able to demonstrate: Significant experience in operational command, duty management, major incident management or service operations . Experience coordinating multiple teams during complex or high-impact incidents. Strong understanding of SOC, NOC, infrastructure and IT service management environments . Experience operating in a 24/7 environment. Excellent stakeholder management skills, including the ability to brief senior leadership. Strong decision-making and prioritisation skills under pressure. Experience managing escalations and coordinating third-party suppliers. Ability to maintain an accurate operational picture across multiple concurrent issues. Strong written and verbal communication skills. Experience developing operational procedures, runbooks and escalation processes. A calm, authoritative and structured approach during significant incidents. Desirable Backgrounds Candidates may come from a variety of backgrounds, including: Duty Manager / Operations Duty Manager Command Centre / Command Centre Manager Major Incident Manager Service Operations Manager Operations Manager Watch Manager / Watch Officer Incident Commander Operations Controller Service Delivery Manager Operational Resilience Defence, government or critical national infrastructure 24/7 managed service or operations environments Experience within government, defence, national security, telecommunications, critical infrastructure or other highly regulated environments would be particularly valuable. Clearance Current Developed Vetting (DV) clearance is essential for this position. Candidates without current DV clearance will not be considered.
12/08/2026
Contractor
DV Cleared Duty Manager - Command Centre Location: Hanslope Park, Milton Keynes Working Arrangement: Onsite Rate: 550- 650 per day, Inside IR35 Contract: 3 years Clearance: Developed Vetting (DV) - Essential The Role We are seeking an experienced DV Cleared Duty Manager to join a high-profile government Command Centre capability based at Hanslope Park, Milton Keynes . The Duty Manager will act as the senior operational authority and primary point of contact for the Command Centre during their shift , providing command and control across a broad range of operational capabilities, including Cyber/SOC, NOC, Infrastructure, Service Management and Physical Security . This is not a SOC Manager, Cyber Operations Manager or hands-on technical engineering position . The successful candidate will sit across multiple specialist teams, maintaining the overall operational picture, understanding business impact, setting priorities, coordinating responses and managing escalation. Key Responsibilities Act as the senior operational authority for the Command Centre during assigned shifts. Maintain a clear Common Operating Picture (COP) across cyber, network, infrastructure, service management and physical security operations. Coordinate the response to significant incidents, service disruptions, emerging risks and operational issues. Set operational priorities and ensure the appropriate specialist teams are engaged. Manage escalations across multiple technical and operational teams and third-party suppliers. Provide clear, concise and authoritative operational updates to senior leadership and stakeholders. Produce and deliver operational briefings covering significant incidents, service impacts, emerging risks and relevant overnight/weekend activity. Engage confidently with senior stakeholders and provide appropriate challenge where required. Bring in technical specialists when deeper technical expertise is required rather than attempting to resolve technical issues directly. Take operational ownership of the Command Centre's AV and command-wall capability , including SOC, NOC and other operational feeds. Help develop appropriate screen layouts, operational dashboards and the overall Common Operating Picture. Support the development of Command Centre runbooks, escalation procedures, reporting, operating processes and ways of working . Contribute to the transition towards a full 24/7 operational model . Support training and knowledge transfer for Command Centre personnel. Ensure effective handovers between shifts and maintain strong operational continuity. About You We are looking for someone who is comfortable operating at the intersection of technology, service management and operational command . You will ideally have experience in a 24/7 command centre, operations centre, major incident environment, government/defence environment or similarly critical operational setting . You should be able to demonstrate: Significant experience in operational command, duty management, major incident management or service operations . Experience coordinating multiple teams during complex or high-impact incidents. Strong understanding of SOC, NOC, infrastructure and IT service management environments . Experience operating in a 24/7 environment. Excellent stakeholder management skills, including the ability to brief senior leadership. Strong decision-making and prioritisation skills under pressure. Experience managing escalations and coordinating third-party suppliers. Ability to maintain an accurate operational picture across multiple concurrent issues. Strong written and verbal communication skills. Experience developing operational procedures, runbooks and escalation processes. A calm, authoritative and structured approach during significant incidents. Desirable Backgrounds Candidates may come from a variety of backgrounds, including: Duty Manager / Operations Duty Manager Command Centre / Command Centre Manager Major Incident Manager Service Operations Manager Operations Manager Watch Manager / Watch Officer Incident Commander Operations Controller Service Delivery Manager Operational Resilience Defence, government or critical national infrastructure 24/7 managed service or operations environments Experience within government, defence, national security, telecommunications, critical infrastructure or other highly regulated environments would be particularly valuable. Clearance Current Developed Vetting (DV) clearance is essential for this position. Candidates without current DV clearance will not be considered.