Job Description To support the Head of Security Operations in delivering effective day-to-day security operations, ensuring AJ Bell maintains the appropriate capability to detect, investigate and respond to security events and incidents. The Security Operations Technical Lead is responsible for ensuring that security operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements in detection, response, automation and operational processes. The role holder is expected to lead through expertise, supporting analysts and ensuring Security Operations operates with discipline, quality and continuous improvement. The key responsibilities of the role are: Act as the primary technical escalation point for security events and incidents identified by the Security Operations team. Support the Head of Security Operations in ensuring AJ Bell has the appropriate capability to detect and respond to security events and incidents. Oversee the day to day execution of security operations, ensuring alerts and incidents are handled in line with defined processes and SLAs. Ensure security operations SLAs and OLAs are met, including alert triage, escalation and incident response timelines, highlighting and addressing risks where required. Ensure adherence to our KRI and KPI's and any variation in these are raised to the Head of Security Operations. Provide hands on support in the investigation and response to security incidents, including endpoint, identity, network, cloud and insider related threats. Ensure consistent execution and continuous improvement of incident response playbooks and operational runbooks, validating them through real incidents and simulations. Support the optimisation and tuning of security monitoring and detection capabilities, including SIEM and endpoint tooling, to improve signal quality and reduce false positives. Support the execution of the end to end vulnerability management process, including validation of findings and tracking remediation activities. Work closely with MSSP and security vendors to ensure effective delivery of security operations services. Challenge and validate vendor outputs, driving operational efficiency, quality improvements and better use of tooling capabilities. Actively design and implement automation and orchestration to reduce manual effort, repetitive or high volume tasks, improve response times and increase consistency across security operations processes. Work with the Security Engineering team to ensure tooling, logging and detection gaps are identified and addressed. Support the effective operation of 24x7 security monitoring, including coordination with third party providers. Contribute to the development and delivery of operational MI and reporting, ensuring accuracy and insight into security trends and performance. Maintain visibility of security incidents, trends and operational risks, escalating issues where required. Technical Skills: Strong hands on experience of Security Operations tools and capabilities, including SIEM and SOAR platforms (e.g. Sentinel, ServiceNow, Splunk SOAR, Cortex), Endpoint Detection & Response (EDR/XDR), Strong hands on experience of Threat Intelligence platforms (e.g. Recorded Future, Doppel, ZeroFox, Google Threat Intelligence), Vulnerability management solutions (e.g. Tenable, Rapid7), and Insider Risk and DLP tools (e.g. Purview, Netskope). Strong hands on experience with Network security solutions like Next Gen Firewalls, Network Anomaly, WAF & DDoS solutions. Experience of leading and responding to Cyber Incident Response aligned to NIST Knowledge of threat detection techniques and use case development Experience of applying threat intelligence in an operational context Strong experience with vulnerability management tools and processes Strong awareness of cloud services and supporting security controls and monitoring capabilities Working knowledge of Microsoft security stack (Defender, Sentinel, Purview), Active Directory and Azure AD, Windows and Linux environments. Experience with data loss prevention and insider risk tooling advantageous Hands on experience with automation and scripting (e.g. PowerShell, Python) highly desirable Competence Experience working within recognised Information Security frameworks and best practices such as ISO27001, NIST, MITRE ATT&CK Knowledge of relevant regulatory requirements (e.g. GDPR, FCA/PRA) Experience in an Information Security role gained in a financial services environment preferred Experience working in a Security Operations role for a minimum 7 years and operating within a Lead / Senior Analyst role for at least 3 years. Knowledge & Skills Strong analytical and investigative capability Ability to work under pressure and manage multiple concurrent incidents and priorities Strong ownership of tasks, attention to detail and follow through to conclusion Ability to provide technical leadership without formal line management responsibility Ability to challenge approach, tooling and processes to improve operational effectiveness Structured, self starting and able to work under own initiative Effective communication skills, both written and verbal Ability to plan, organise and deliver tasks with minimal supervision Collaborative approach to working with analysts, engineering teams and external partners Strong focus on quality, consistency and continuous improvement About AJ Bell At AJ Bell, we believe investing should feel good. Whether you're looking for an ISA, pension or dealing account, whether you want to invest with the help of a financial adviser or do it yourself, we have easy to use solutions to suit people from all walks of life. We're one of the UK's fastest growing investment platform businesses, trusted by everyone from professional financial advisers to first time investors. Today, over 723,000 customers trust us to manage more than £108.7 billion of assets. By continually striving to make investing simpler and more accessible, we're helping more people take control of their financial futures. We're proud to be recognised as one of the UK's Best 100 Companies to Work For for six consecutive years, and a Great Place to Work in 2025 and 2026, a reflection of our supportive and collaborative culture. What we offer Competitive starting salary 26days holiday, increasing with service + buy/sell scheme + bank holidays 7% Pension with matched contributions Discretionary bonus scheme Share schemes (including free shares and BAYE) Health Cash Plan and discounted private healthcare Free gym Enhanced family leave (subject to qualifying criteria) Travel and bike loan schemes Employee Assistance Programme Life at AJ Bell Regular social events including summer and Christmas parties Learning and development opportunities tailored to you Casual dress code Friendly, supportive team environment Our ways of working At AJ Bell, our people are the heart of our culture. We believe in building strong connections by working together. That's why we offer a hybrid working model, where you'll spend a minimum of 50% of working time per month in the office. For new team members, an initial period will be spent full time in the office to help you immerse yourself in our business and build valuable relationships with your colleagues. Inclusion & diversity We're committed to creating an inclusive environment where everyone feels respected, supported and able to be themselves at work. We welcome applications from all backgrounds and make hiring decisions based on skills, experience and potential. Agency information This vacancy is being managed exclusively by our in house Recruitment team. We are not partnering with recruitment agencies on this opportunity and will only accept applications submitted directly by candidates
27/07/2026
Full time
Job Description To support the Head of Security Operations in delivering effective day-to-day security operations, ensuring AJ Bell maintains the appropriate capability to detect, investigate and respond to security events and incidents. The Security Operations Technical Lead is responsible for ensuring that security operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements in detection, response, automation and operational processes. The role holder is expected to lead through expertise, supporting analysts and ensuring Security Operations operates with discipline, quality and continuous improvement. The key responsibilities of the role are: Act as the primary technical escalation point for security events and incidents identified by the Security Operations team. Support the Head of Security Operations in ensuring AJ Bell has the appropriate capability to detect and respond to security events and incidents. Oversee the day to day execution of security operations, ensuring alerts and incidents are handled in line with defined processes and SLAs. Ensure security operations SLAs and OLAs are met, including alert triage, escalation and incident response timelines, highlighting and addressing risks where required. Ensure adherence to our KRI and KPI's and any variation in these are raised to the Head of Security Operations. Provide hands on support in the investigation and response to security incidents, including endpoint, identity, network, cloud and insider related threats. Ensure consistent execution and continuous improvement of incident response playbooks and operational runbooks, validating them through real incidents and simulations. Support the optimisation and tuning of security monitoring and detection capabilities, including SIEM and endpoint tooling, to improve signal quality and reduce false positives. Support the execution of the end to end vulnerability management process, including validation of findings and tracking remediation activities. Work closely with MSSP and security vendors to ensure effective delivery of security operations services. Challenge and validate vendor outputs, driving operational efficiency, quality improvements and better use of tooling capabilities. Actively design and implement automation and orchestration to reduce manual effort, repetitive or high volume tasks, improve response times and increase consistency across security operations processes. Work with the Security Engineering team to ensure tooling, logging and detection gaps are identified and addressed. Support the effective operation of 24x7 security monitoring, including coordination with third party providers. Contribute to the development and delivery of operational MI and reporting, ensuring accuracy and insight into security trends and performance. Maintain visibility of security incidents, trends and operational risks, escalating issues where required. Technical Skills: Strong hands on experience of Security Operations tools and capabilities, including SIEM and SOAR platforms (e.g. Sentinel, ServiceNow, Splunk SOAR, Cortex), Endpoint Detection & Response (EDR/XDR), Strong hands on experience of Threat Intelligence platforms (e.g. Recorded Future, Doppel, ZeroFox, Google Threat Intelligence), Vulnerability management solutions (e.g. Tenable, Rapid7), and Insider Risk and DLP tools (e.g. Purview, Netskope). Strong hands on experience with Network security solutions like Next Gen Firewalls, Network Anomaly, WAF & DDoS solutions. Experience of leading and responding to Cyber Incident Response aligned to NIST Knowledge of threat detection techniques and use case development Experience of applying threat intelligence in an operational context Strong experience with vulnerability management tools and processes Strong awareness of cloud services and supporting security controls and monitoring capabilities Working knowledge of Microsoft security stack (Defender, Sentinel, Purview), Active Directory and Azure AD, Windows and Linux environments. Experience with data loss prevention and insider risk tooling advantageous Hands on experience with automation and scripting (e.g. PowerShell, Python) highly desirable Competence Experience working within recognised Information Security frameworks and best practices such as ISO27001, NIST, MITRE ATT&CK Knowledge of relevant regulatory requirements (e.g. GDPR, FCA/PRA) Experience in an Information Security role gained in a financial services environment preferred Experience working in a Security Operations role for a minimum 7 years and operating within a Lead / Senior Analyst role for at least 3 years. Knowledge & Skills Strong analytical and investigative capability Ability to work under pressure and manage multiple concurrent incidents and priorities Strong ownership of tasks, attention to detail and follow through to conclusion Ability to provide technical leadership without formal line management responsibility Ability to challenge approach, tooling and processes to improve operational effectiveness Structured, self starting and able to work under own initiative Effective communication skills, both written and verbal Ability to plan, organise and deliver tasks with minimal supervision Collaborative approach to working with analysts, engineering teams and external partners Strong focus on quality, consistency and continuous improvement About AJ Bell At AJ Bell, we believe investing should feel good. Whether you're looking for an ISA, pension or dealing account, whether you want to invest with the help of a financial adviser or do it yourself, we have easy to use solutions to suit people from all walks of life. We're one of the UK's fastest growing investment platform businesses, trusted by everyone from professional financial advisers to first time investors. Today, over 723,000 customers trust us to manage more than £108.7 billion of assets. By continually striving to make investing simpler and more accessible, we're helping more people take control of their financial futures. We're proud to be recognised as one of the UK's Best 100 Companies to Work For for six consecutive years, and a Great Place to Work in 2025 and 2026, a reflection of our supportive and collaborative culture. What we offer Competitive starting salary 26days holiday, increasing with service + buy/sell scheme + bank holidays 7% Pension with matched contributions Discretionary bonus scheme Share schemes (including free shares and BAYE) Health Cash Plan and discounted private healthcare Free gym Enhanced family leave (subject to qualifying criteria) Travel and bike loan schemes Employee Assistance Programme Life at AJ Bell Regular social events including summer and Christmas parties Learning and development opportunities tailored to you Casual dress code Friendly, supportive team environment Our ways of working At AJ Bell, our people are the heart of our culture. We believe in building strong connections by working together. That's why we offer a hybrid working model, where you'll spend a minimum of 50% of working time per month in the office. For new team members, an initial period will be spent full time in the office to help you immerse yourself in our business and build valuable relationships with your colleagues. Inclusion & diversity We're committed to creating an inclusive environment where everyone feels respected, supported and able to be themselves at work. We welcome applications from all backgrounds and make hiring decisions based on skills, experience and potential. Agency information This vacancy is being managed exclusively by our in house Recruitment team. We are not partnering with recruitment agencies on this opportunity and will only accept applications submitted directly by candidates
Chainalysis is seeking a Staff Product Security Engineer to lead product security for our SaaS platform. You'll work with product engineering teams on security reviews, penetration testing, and vulnerability management. Ideal candidates have over 8 years of experience in application security and strong coding abilities in Java. Join us to enhance the security across our innovative platforms!
26/07/2026
Full time
Chainalysis is seeking a Staff Product Security Engineer to lead product security for our SaaS platform. You'll work with product engineering teams on security reviews, penetration testing, and vulnerability management. Ideal candidates have over 8 years of experience in application security and strong coding abilities in Java. Join us to enhance the security across our innovative platforms!
SOC Coordinator Location: Stevenage (Hybrid Working Available) Security Clearance: Must be eligible for UK Security Clearance (If successful we will sponsor you through SC clearance) Hourly rate: £80 per hour Inside IR35 Contract: 12 Months (Extension Likely) About the Opportunity Our client is a leading engineering and technology organisation operating within a highly regulated and security-conscious environment, supporting some of the UK's most complex and mission-critical programmes. As part of continued investment in cyber security capability, they are seeking a SOC Coordinator to support the ongoing growth and maturity of their Security Operations Centre (SOC). This is a fantastic opportunity for a cyber security professional with a background in SOC leadership, cyber governance, information security management, risk & compliance, or security operations to play a key role in strengthening operational resilience and cyber defence capabilities. The Role Reporting into the SOC leadership team, you will act as a key operational and governance lead, helping coordinate the day-to-day operation of the Security Operations Centre while driving security improvement initiatives across the wider business. Responsibilities Deputising for the SOC Manager when required. Coordinating the ongoing maturity and development of cyber security capabilities. Delivering security working groups and tracking remediation activities through to completion. Supporting the resilience and effectiveness of a 24/7 security operations function. Assisting with SOC recruitment, onboarding and team development activities. Managing responses for audits, compliance reviews and assurance activities. Supporting cyber risk management, governance and security policy implementation. Coordinating security documentation, standards and operating procedures. Working closely with cyber security, infrastructure, risk and business stakeholders to drive continuous improvement. Providing oversight of security-related change activities and ensuring appropriate cyber due diligence has been completed. About You We are interested in speaking with candidates from backgrounds such as: SOC Team Lead SOC Manager SOC Coordinator Cyber Security Governance & Assurance Information Security Manager Security Risk & Compliance Manager Security Operations Manager Defence, Aerospace or Critical National Infrastructure Cyber Security You will ideally have experience in: ISO27001 and security compliance frameworks Risk management and risk treatment processes Vulnerability management principles Audit preparation and evidence gathering Security policies, procedures and governance Incident response processes Stakeholder management and leadership Delivering security improvements within complex organisations For a confidential discussion about this opportunity, please apply today or contact us directly.
26/07/2026
Full time
SOC Coordinator Location: Stevenage (Hybrid Working Available) Security Clearance: Must be eligible for UK Security Clearance (If successful we will sponsor you through SC clearance) Hourly rate: £80 per hour Inside IR35 Contract: 12 Months (Extension Likely) About the Opportunity Our client is a leading engineering and technology organisation operating within a highly regulated and security-conscious environment, supporting some of the UK's most complex and mission-critical programmes. As part of continued investment in cyber security capability, they are seeking a SOC Coordinator to support the ongoing growth and maturity of their Security Operations Centre (SOC). This is a fantastic opportunity for a cyber security professional with a background in SOC leadership, cyber governance, information security management, risk & compliance, or security operations to play a key role in strengthening operational resilience and cyber defence capabilities. The Role Reporting into the SOC leadership team, you will act as a key operational and governance lead, helping coordinate the day-to-day operation of the Security Operations Centre while driving security improvement initiatives across the wider business. Responsibilities Deputising for the SOC Manager when required. Coordinating the ongoing maturity and development of cyber security capabilities. Delivering security working groups and tracking remediation activities through to completion. Supporting the resilience and effectiveness of a 24/7 security operations function. Assisting with SOC recruitment, onboarding and team development activities. Managing responses for audits, compliance reviews and assurance activities. Supporting cyber risk management, governance and security policy implementation. Coordinating security documentation, standards and operating procedures. Working closely with cyber security, infrastructure, risk and business stakeholders to drive continuous improvement. Providing oversight of security-related change activities and ensuring appropriate cyber due diligence has been completed. About You We are interested in speaking with candidates from backgrounds such as: SOC Team Lead SOC Manager SOC Coordinator Cyber Security Governance & Assurance Information Security Manager Security Risk & Compliance Manager Security Operations Manager Defence, Aerospace or Critical National Infrastructure Cyber Security You will ideally have experience in: ISO27001 and security compliance frameworks Risk management and risk treatment processes Vulnerability management principles Audit preparation and evidence gathering Security policies, procedures and governance Incident response processes Stakeholder management and leadership Delivering security improvements within complex organisations For a confidential discussion about this opportunity, please apply today or contact us directly.
Lead Software Security Engineer Salary: Up to £150,000 + Benefits Location: London (Hybrid - 3 days per week in the office) We are currently looking for a Lead Software Security Engineer to join a fast-growing, innovative technology business operating at the forefront of AI and data-driven products. This is an exciting opportunity to join a highly collaborative, engineering-led environment where security is viewed as a key enabler of innovation. Reporting to the Head of Engineering, the Lead Security Engineer will play a pivotal role in shaping the organisation's security posture, working closely with software engineers, platform teams and technical leadership to embed security throughout the software development lifecycle. This is not a traditional SOC or operational security position. Instead, the Security Engineer will focus on securing applications, cloud infrastructure and development practices, helping the business build secure products at scale whilst influencing security strategy across the wider organisation. The Opportunity As the Lead Security Engineer, you'll work at the intersection of software engineering, cloud infrastructure and cyber security, helping to build and maintain a secure by design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers to promote secure coding practices Reviewing cloud infrastructure and architecture from a security perspective Supporting incident response and remediation activities when required Defining and promoting security standards, policies and best practices Influencing technical decision-making across engineering and leadership teams This role offers the opportunity to make a genuine impact within a growing technology organisation where security is a strategic priority rather than an afterthought. What's in it for you? Salary up to £150,000 Hybrid working model Opportunity to work on cutting edge AI and technology products High level of autonomy and influence Collaborative engineering culture Career progression opportunities as the business continues to scale Ongoing learning and professional development Pension scheme Generous holiday allowance Skills and Experience Commercial experience as a Security Engineer, Application Security Engineer, Product Security Engineer or DevSecOps Engineer Strong understanding of application security principles and secure software development practices Experience working closely with software engineering teams Hands on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note that candidates must have full, unrestricted right to work in the UK. Unfortunately, sponsorship is not available for this position.
26/07/2026
Full time
Lead Software Security Engineer Salary: Up to £150,000 + Benefits Location: London (Hybrid - 3 days per week in the office) We are currently looking for a Lead Software Security Engineer to join a fast-growing, innovative technology business operating at the forefront of AI and data-driven products. This is an exciting opportunity to join a highly collaborative, engineering-led environment where security is viewed as a key enabler of innovation. Reporting to the Head of Engineering, the Lead Security Engineer will play a pivotal role in shaping the organisation's security posture, working closely with software engineers, platform teams and technical leadership to embed security throughout the software development lifecycle. This is not a traditional SOC or operational security position. Instead, the Security Engineer will focus on securing applications, cloud infrastructure and development practices, helping the business build secure products at scale whilst influencing security strategy across the wider organisation. The Opportunity As the Lead Security Engineer, you'll work at the intersection of software engineering, cloud infrastructure and cyber security, helping to build and maintain a secure by design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers to promote secure coding practices Reviewing cloud infrastructure and architecture from a security perspective Supporting incident response and remediation activities when required Defining and promoting security standards, policies and best practices Influencing technical decision-making across engineering and leadership teams This role offers the opportunity to make a genuine impact within a growing technology organisation where security is a strategic priority rather than an afterthought. What's in it for you? Salary up to £150,000 Hybrid working model Opportunity to work on cutting edge AI and technology products High level of autonomy and influence Collaborative engineering culture Career progression opportunities as the business continues to scale Ongoing learning and professional development Pension scheme Generous holiday allowance Skills and Experience Commercial experience as a Security Engineer, Application Security Engineer, Product Security Engineer or DevSecOps Engineer Strong understanding of application security principles and secure software development practices Experience working closely with software engineering teams Hands on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note that candidates must have full, unrestricted right to work in the UK. Unfortunately, sponsorship is not available for this position.
Cyber Security Engineer - Ethical Hacking - 35K + Bens Location: East Midlands Industry: IT Salary: £30,000 - £35,000 per annum + Flexible benefits Posted: 08/05/2018 We are looking for a Cyber Security Engineer to provide security operations and incident handling, along with vulnerability testing and management. Ideal candidates have experience in a SOC role and are progressing towards ethical hacking qualifications such as CEH, OSCP or GIAC. Key responsibilities Support hosted cloud services and product development teams. Perform vulnerability assessments, penetration testing, and incident response. Use security technologies including NGFW, WAF, SEIM, web application testing and vulnerability scanners. Apply risk management frameworks such as ISO27002, NCSC Critical Controls and ISAE3402. Qualifications and experience Passion for security in software, technology, the Internet and cloud computing. Experience with current cyber threats, attacks and incident handling practices including host and network forensics. Proficient with security technologies and tools (NGFW, WAF, SEIM, vulnerability scanners). Knowledgeable of governance and risk frameworks. Great training and career development opportunities are provided. The role is based in our East Midlands office with a ring fenced training budget for staff development. Candidates of all ages and backgrounds will be considered for this role.
26/07/2026
Full time
Cyber Security Engineer - Ethical Hacking - 35K + Bens Location: East Midlands Industry: IT Salary: £30,000 - £35,000 per annum + Flexible benefits Posted: 08/05/2018 We are looking for a Cyber Security Engineer to provide security operations and incident handling, along with vulnerability testing and management. Ideal candidates have experience in a SOC role and are progressing towards ethical hacking qualifications such as CEH, OSCP or GIAC. Key responsibilities Support hosted cloud services and product development teams. Perform vulnerability assessments, penetration testing, and incident response. Use security technologies including NGFW, WAF, SEIM, web application testing and vulnerability scanners. Apply risk management frameworks such as ISO27002, NCSC Critical Controls and ISAE3402. Qualifications and experience Passion for security in software, technology, the Internet and cloud computing. Experience with current cyber threats, attacks and incident handling practices including host and network forensics. Proficient with security technologies and tools (NGFW, WAF, SEIM, vulnerability scanners). Knowledgeable of governance and risk frameworks. Great training and career development opportunities are provided. The role is based in our East Midlands office with a ring fenced training budget for staff development. Candidates of all ages and backgrounds will be considered for this role.
Make the Connection. At Vix Technology, we're helping millions of people move through cities every day. Globally, our technology powers public transport networks in more than 200 cities worldwide. For over 35 years we've been delivering smarter fare collection, passenger information and transit solutions that make travelling easier. Now we're looking for a Cyber Security Analyst to join our growing global security team. If you've already gained a year or two of experience in cyber security-or recently completed a degree or apprenticeship with some hands on industry exposure-and you're looking for a role where you can learn fast, take ownership and work alongside experienced security professionals, we'd love to hear from you. This isn't a role where you'll be pigeonholed into one area of cyber security. You'll get exposure to vulnerability management, customer security reporting, governance, compliance, incident response, bid support and security operations, giving you a broad foundation to build an exciting career. Working from our Manchester office (three days a week), you'll collaborate with colleagues across the UK, France and the USA, helping to protect systems that support public transport networks across the globe. What you'll be doing You'll become a key member of our Security-as-a-Service team, helping customers understand and improve their security posture while supporting our internal teams to deliver secure, resilient solutions. One day you might be analysing vulnerabilities and helping engineering teams prioritise remediation. The next, you'll be producing customer-facing security reports, supporting an audit, contributing to a security bid or working with colleagues across engineering, cloud and IT to embed security best practice. You'll translate technical information into practical advice, help improve the way we manage security across the business and play an important role in building a positive security culture at Vix. No two days are quite the same-which makes this an ideal opportunity for someone who enjoys variety, solving problems and continually learning. About you You're naturally curious and enjoy understanding how things work. You ask good questions, communicate confidently with different people and like solving problems rather than simply identifying them. You've already developed a solid understanding of cyber security fundamentals through your degree, apprenticeship or your first role, and you're now looking for an environment where you can broaden your experience across multiple areas of security. You'll probably have around 1-2 years' experience in cyber security or IT, along with a good understanding of topics such as vulnerability management, security risk, secure configuration and incident response. Just as importantly, you'll be organised, collaborative and comfortable explaining technical concepts in a way that makes sense to different audiences. We'd especially like to hear from you if you have experience or exposure to: Cyber Security, Computer Science or IT through a degree, apprenticeship or commercial role Security reporting, vulnerability management or governance AWS or cloud security fundamentals Security frameworks such as ISO 27001, NIST or CIS Customer facing communication or stakeholder engagement Security certifications such as Security+, CySA+ or similar (or you're working towards one) Don't worry if you don't tick every box-we're much more interested in your potential, curiosity and willingness to learn. Why Vix? Joining Vix means becoming part of a global technology company where your work has real world impact. You'll work with experienced security professionals across three continents, gain exposure to a broad range of technologies and security disciplines, and have genuine opportunities to develop your career. If you're looking for your next step in cyber security-and a role that will help you build the skills and experience to become a well rounded security professional,we'd love to hear from you. What's in it for you? Besides the opportunity to work for a global company that is customer and people focused, we offer: A great team of like minded professionals Private Healthcare Income Protection Scheme Pension Group Life Assurance Cycle to Work Scheme Electric Car Benefit Scheme Employee Assistance Programme Eyecare and Spectacle Vouchers Add your resume and anything else to showcase why you would be a great addition to our team. We regret that this position is only available for UK&I citizens/Residents with indefinite leave to remain in the UK&I, with current full time work rights for the United Kingdom, currently residing in the UK. No recruitment agencies, please! We won't accept any introductions. Vix Technology is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We are committed to the principle of equal employment opportunity for all people and want to build a workforce as diverse as the community we serve. We aim to have a work environment where everyone feels included and everyone can realise their full potential.
26/07/2026
Full time
Make the Connection. At Vix Technology, we're helping millions of people move through cities every day. Globally, our technology powers public transport networks in more than 200 cities worldwide. For over 35 years we've been delivering smarter fare collection, passenger information and transit solutions that make travelling easier. Now we're looking for a Cyber Security Analyst to join our growing global security team. If you've already gained a year or two of experience in cyber security-or recently completed a degree or apprenticeship with some hands on industry exposure-and you're looking for a role where you can learn fast, take ownership and work alongside experienced security professionals, we'd love to hear from you. This isn't a role where you'll be pigeonholed into one area of cyber security. You'll get exposure to vulnerability management, customer security reporting, governance, compliance, incident response, bid support and security operations, giving you a broad foundation to build an exciting career. Working from our Manchester office (three days a week), you'll collaborate with colleagues across the UK, France and the USA, helping to protect systems that support public transport networks across the globe. What you'll be doing You'll become a key member of our Security-as-a-Service team, helping customers understand and improve their security posture while supporting our internal teams to deliver secure, resilient solutions. One day you might be analysing vulnerabilities and helping engineering teams prioritise remediation. The next, you'll be producing customer-facing security reports, supporting an audit, contributing to a security bid or working with colleagues across engineering, cloud and IT to embed security best practice. You'll translate technical information into practical advice, help improve the way we manage security across the business and play an important role in building a positive security culture at Vix. No two days are quite the same-which makes this an ideal opportunity for someone who enjoys variety, solving problems and continually learning. About you You're naturally curious and enjoy understanding how things work. You ask good questions, communicate confidently with different people and like solving problems rather than simply identifying them. You've already developed a solid understanding of cyber security fundamentals through your degree, apprenticeship or your first role, and you're now looking for an environment where you can broaden your experience across multiple areas of security. You'll probably have around 1-2 years' experience in cyber security or IT, along with a good understanding of topics such as vulnerability management, security risk, secure configuration and incident response. Just as importantly, you'll be organised, collaborative and comfortable explaining technical concepts in a way that makes sense to different audiences. We'd especially like to hear from you if you have experience or exposure to: Cyber Security, Computer Science or IT through a degree, apprenticeship or commercial role Security reporting, vulnerability management or governance AWS or cloud security fundamentals Security frameworks such as ISO 27001, NIST or CIS Customer facing communication or stakeholder engagement Security certifications such as Security+, CySA+ or similar (or you're working towards one) Don't worry if you don't tick every box-we're much more interested in your potential, curiosity and willingness to learn. Why Vix? Joining Vix means becoming part of a global technology company where your work has real world impact. You'll work with experienced security professionals across three continents, gain exposure to a broad range of technologies and security disciplines, and have genuine opportunities to develop your career. If you're looking for your next step in cyber security-and a role that will help you build the skills and experience to become a well rounded security professional,we'd love to hear from you. What's in it for you? Besides the opportunity to work for a global company that is customer and people focused, we offer: A great team of like minded professionals Private Healthcare Income Protection Scheme Pension Group Life Assurance Cycle to Work Scheme Electric Car Benefit Scheme Employee Assistance Programme Eyecare and Spectacle Vouchers Add your resume and anything else to showcase why you would be a great addition to our team. We regret that this position is only available for UK&I citizens/Residents with indefinite leave to remain in the UK&I, with current full time work rights for the United Kingdom, currently residing in the UK. No recruitment agencies, please! We won't accept any introductions. Vix Technology is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We are committed to the principle of equal employment opportunity for all people and want to build a workforce as diverse as the community we serve. We aim to have a work environment where everyone feels included and everyone can realise their full potential.
IT Cyber Security Analyst Scunthorpe, North Lincolnshire £45,000 - £55,000 + Training and Development + Great Pension + 27 Days Annual Leave + Bank Holidays + Life Assurance + Health Cash Plan + EAP + Sick Pay Are you a cyber security professional looking to take ownership of patching, threat detection, and incident response in a large-scale enterprise environment while playing a key role in strengthening security maturity? This is a fantastic opportunity to join a well-established organisation undergoing a major cyber transformation, where you will be at the centre of defending critical IT and OT systems. Working closely with internal teams and external SOC/MDR providers, you will contribute to monitoring threats, responding to incidents, and improving overall security posture. In this role, you will take ownership of patching across the IT estate, coordinate remediation on critical systems, and support vulnerability management processes. You will also contribute to threat hunting activities and help continuously enhance detection and response capabilities. The ideal candidate will have hands on cyber security experience, strong knowledge across networks, endpoints, identity, and cloud security, and the ability to work collaboratively across technical teams to drive security improvements. The Role: Monitor, triage, and respond to security incidents alongside SOC/MDR providers Own patching processes across endpoints and servers Coordinate vulnerability management and remediation activities Support threat hunting and detection improvement initiatives Contribute to audits, compliance, and security control implementation The Person: Experience in cyber security, IT support, or OT/engineering environments Strong understanding of security across networks, endpoints, identity, and cloud Experience with patching tools and vulnerability management Knowledge of SOC operations and incident response Excellent problem solving and communication skills Reference Number: BBBH276210 Rise Technical Recruitment Ltd acts an employment agency for permanent roles and an employment business for temporary roles. The salary advertised is the bracket available for this position. The actual salary paid will be dependent on your level of experience, qualifications and skill set and will be decided by our client, the employer. Rise are not responsible or liable for any hiring decisions made by the end client. We are an equal opportunities company and welcome applications from all suitable candidates.
26/07/2026
Full time
IT Cyber Security Analyst Scunthorpe, North Lincolnshire £45,000 - £55,000 + Training and Development + Great Pension + 27 Days Annual Leave + Bank Holidays + Life Assurance + Health Cash Plan + EAP + Sick Pay Are you a cyber security professional looking to take ownership of patching, threat detection, and incident response in a large-scale enterprise environment while playing a key role in strengthening security maturity? This is a fantastic opportunity to join a well-established organisation undergoing a major cyber transformation, where you will be at the centre of defending critical IT and OT systems. Working closely with internal teams and external SOC/MDR providers, you will contribute to monitoring threats, responding to incidents, and improving overall security posture. In this role, you will take ownership of patching across the IT estate, coordinate remediation on critical systems, and support vulnerability management processes. You will also contribute to threat hunting activities and help continuously enhance detection and response capabilities. The ideal candidate will have hands on cyber security experience, strong knowledge across networks, endpoints, identity, and cloud security, and the ability to work collaboratively across technical teams to drive security improvements. The Role: Monitor, triage, and respond to security incidents alongside SOC/MDR providers Own patching processes across endpoints and servers Coordinate vulnerability management and remediation activities Support threat hunting and detection improvement initiatives Contribute to audits, compliance, and security control implementation The Person: Experience in cyber security, IT support, or OT/engineering environments Strong understanding of security across networks, endpoints, identity, and cloud Experience with patching tools and vulnerability management Knowledge of SOC operations and incident response Excellent problem solving and communication skills Reference Number: BBBH276210 Rise Technical Recruitment Ltd acts an employment agency for permanent roles and an employment business for temporary roles. The salary advertised is the bracket available for this position. The actual salary paid will be dependent on your level of experience, qualifications and skill set and will be decided by our client, the employer. Rise are not responsible or liable for any hiring decisions made by the end client. We are an equal opportunities company and welcome applications from all suitable candidates.
About Us A career at Hitachi Rail will help create a legacy. With operations in every corner of the world, our work goes to the cutting-edge of digital transformation and technology. From the multi-cultural strength of our global organisation to the sustainable and innovative ways we work to bring people together, theres something for everyone to get stuck into. And thats where you come in. Job Description: Your new role We have an exciting opportunity for a Networking & Infrastructure Engineer to join Hitachi Rail on a 12-month fixed term contract, supporting a critical cyber security and network infrastructure transformation programme across our UK locations. This role can be based from any of our major Hitachi Rail sites; however, it will require extensive travel throughout the UK and frequent overnight stays. You will play a key role in assessing and enhancing our existing network infrastructure, working closely with our Cyber Security team to strengthen our security posture across the business. This is a fantastic opportunity for an experienced networking professional who enjoys a varied, project-based environment and wants to make a tangible impact across a multi-site organisation. Some key responsibilities Travel to Hitachi Rail locations across the UK to assess and document existing network infrastructure. Conduct network discovery and infrastructure scoping activities to establish current-state environments. Work closely with the Cyber Security team to deploy and integrate vulnerability monitoring and security appliances across corporate and operational networks. Support the implementation of network improvements and remediation activities identified through security assessments. Provide technical expertise across Cisco networking technologies, wireless infrastructure and Fortinet firewall environments. Configure and support FortiGate firewalls, including firewall policies, VPNs, routing and security controls. Support incident, problem and change management activities relating to network infrastructure. Maintain network security standards through patching, hardening and vulnerability remediation activities. Collaborate with internal stakeholders, third-party suppliers and wider IT teams to ensure successful project delivery. Produce accurate technical documentation, network diagrams and implementation records. About you We re looking for a technically strong and adaptable networking professional who is comfortable working independently across multiple sites and engaging with a range of stakeholders. You will have: Essential Proven experience supporting enterprise network infrastructure within a multi-site organisation. Strong understanding of networking technologies, including TCP/IP, routing, switching, VLANs and network security. Hands-on experience with Cisco network infrastructure, including switches, wireless access points and controllers. Strong experience administering and configuring FortiGate firewalls, including VPNs, firewall rules and security policies. Experience deploying and supporting secure network solutions within complex environments. Excellent troubleshooting and problem-solving skills. Strong communication and stakeholder management skills. Willingness and ability to travel extensively throughout the UK with regular overnight stays. Desirable CCNA certification or equivalent networking qualification. Experience working with OT/IoT or industrial network environments. Knowledge of Cisco ISE and 802.1x network authentication. Familiarity with Zscaler ZIA/ZPA technologies. Experience working alongside cyber security teams on infrastructure security projects. Exposure to wider infrastructure technologies such as DNS, DHCP, virtualisation or Windows Server administration. What we offer We value the importance of all of our employees. If you would like to join our fantastic organisation, you could be entitled to: Competitive salary Potential opportunity for annual performance related bonus 25 days holiday Pension scheme with contributions up to 9% Private medical insurance Personal Accident insurance Group Income Protection Group Life Insurance Employee Assistance Programme We also offer additional perks for you to choose from within a flexible plan that will meet your specific needs and lifestyle. At Hitachi Rail, there is a place for everyone. We welcome and value differences in background, age, gender, sexuality, family status, disability, race, nationality, ethnicity, religion, and world view. It is our commitment to create an inclusive environment - we are proud to be an equal opportunity employer.
26/07/2026
Full time
About Us A career at Hitachi Rail will help create a legacy. With operations in every corner of the world, our work goes to the cutting-edge of digital transformation and technology. From the multi-cultural strength of our global organisation to the sustainable and innovative ways we work to bring people together, theres something for everyone to get stuck into. And thats where you come in. Job Description: Your new role We have an exciting opportunity for a Networking & Infrastructure Engineer to join Hitachi Rail on a 12-month fixed term contract, supporting a critical cyber security and network infrastructure transformation programme across our UK locations. This role can be based from any of our major Hitachi Rail sites; however, it will require extensive travel throughout the UK and frequent overnight stays. You will play a key role in assessing and enhancing our existing network infrastructure, working closely with our Cyber Security team to strengthen our security posture across the business. This is a fantastic opportunity for an experienced networking professional who enjoys a varied, project-based environment and wants to make a tangible impact across a multi-site organisation. Some key responsibilities Travel to Hitachi Rail locations across the UK to assess and document existing network infrastructure. Conduct network discovery and infrastructure scoping activities to establish current-state environments. Work closely with the Cyber Security team to deploy and integrate vulnerability monitoring and security appliances across corporate and operational networks. Support the implementation of network improvements and remediation activities identified through security assessments. Provide technical expertise across Cisco networking technologies, wireless infrastructure and Fortinet firewall environments. Configure and support FortiGate firewalls, including firewall policies, VPNs, routing and security controls. Support incident, problem and change management activities relating to network infrastructure. Maintain network security standards through patching, hardening and vulnerability remediation activities. Collaborate with internal stakeholders, third-party suppliers and wider IT teams to ensure successful project delivery. Produce accurate technical documentation, network diagrams and implementation records. About you We re looking for a technically strong and adaptable networking professional who is comfortable working independently across multiple sites and engaging with a range of stakeholders. You will have: Essential Proven experience supporting enterprise network infrastructure within a multi-site organisation. Strong understanding of networking technologies, including TCP/IP, routing, switching, VLANs and network security. Hands-on experience with Cisco network infrastructure, including switches, wireless access points and controllers. Strong experience administering and configuring FortiGate firewalls, including VPNs, firewall rules and security policies. Experience deploying and supporting secure network solutions within complex environments. Excellent troubleshooting and problem-solving skills. Strong communication and stakeholder management skills. Willingness and ability to travel extensively throughout the UK with regular overnight stays. Desirable CCNA certification or equivalent networking qualification. Experience working with OT/IoT or industrial network environments. Knowledge of Cisco ISE and 802.1x network authentication. Familiarity with Zscaler ZIA/ZPA technologies. Experience working alongside cyber security teams on infrastructure security projects. Exposure to wider infrastructure technologies such as DNS, DHCP, virtualisation or Windows Server administration. What we offer We value the importance of all of our employees. If you would like to join our fantastic organisation, you could be entitled to: Competitive salary Potential opportunity for annual performance related bonus 25 days holiday Pension scheme with contributions up to 9% Private medical insurance Personal Accident insurance Group Income Protection Group Life Insurance Employee Assistance Programme We also offer additional perks for you to choose from within a flexible plan that will meet your specific needs and lifestyle. At Hitachi Rail, there is a place for everyone. We welcome and value differences in background, age, gender, sexuality, family status, disability, race, nationality, ethnicity, religion, and world view. It is our commitment to create an inclusive environment - we are proud to be an equal opportunity employer.
National Gas Transmission PLC
Warwick, Warwickshire
Select how often (in days) to receive an alert: Vulnerability Analyst/ Cyber Security Data Analyst Warwick, Hybrid flexible working At National Gas, the work we do matters. As Britain's national gas network, we help keep the lights on, businesses running, and homes warm by maintaining the critical infrastructure that transports gas across Great Britain. While providing the energy security Britain relies on today, we're also helping transform the network for a clean energy future. Join us and help secure Britain's energy. About the role: The Attack Surface Reduction (ASR) team within Cyber Security is responsible for identifying, measuring and reducing security risk across National Gas by proactively testing, assessing and challenging the resilience of our technology and operational environments. The Vulnerability Analyst (or Cyber Security Data Analyst) helps to deliver a comprehensive programme of security testing, including vulnerability scanning and security configuration reviews, ensuring weaknesses are identified early and accurately. For this role we can consider a strong Data Analyst (MS Excel, Power BI) to manipulate and present data and confidently and clearly manage internal stakeholders. A strong interest and broad knowledge of Cyber Security would be highly regarded. What you'll be doing: Vulnerability Assessment: Conducting regular vulnerability assessments using automated scanning tools, manual testing techniques, and security best practices to identify vulnerabilities in systems, networks, and applications. Vulnerability Reporting: Generating detailed vulnerability assessment reports, including findings, recommendations, and risk assessments, to communicate the status of vulnerabilities to management and stakeholders. Vulnerability Management: Managing the lifecycle of vulnerabilities from discovery to remediation, including vulnerability triage, prioritization, tracking, and reporting. Risk Analysis: Analysing the impact and severity of identified vulnerabilities Remediation Planning: Collaborating with system administrators, developers, and other stakeholders Patch Management: Working closely with IT teams to ensure that security patches and updates are applied promptly Security Awareness: Providing guidance and training to employees. What you'll bring: Strong analytical and investigative skills, using MS Excel and PowerBI confidently Effective communication (written and verbal) and collaboration across different teams. Critical thinking and problem-solving abilities. Prioritisation: working in a rapidly changing environment, you'll need to be able to prioritise multiple activities. Initiative: the ability to work on your own initiative and take responsibility for your and team deliverables. Positive attitude: having a willingness to learn and develop yourself. Relevant University degree in Computer / Cyber Security / Engineering and Security certifications will be an advantage e.g. CISSP, CISM, SEC+, GIAC Security Essentials (GSEC). Knowledge of cybersecurity, physical security, and risk management principles as well as Operational Technology (OT) and Critical National Infrastructure (CNI). Ability to adapt to evolving threat landscapes. Detailed knowledge of the hardware and software systems in use across both IT and OT domains and the architectural arrangements in place to support management and operation of systems. Security Clearance: This role is subject to National Security Vetting (NSV). Candidates must be eligible to obtain and maintain Security Clearance (SC) throughout their employment. For further information, visit (UK Security Vetting: Clearance Levels). What we can offer you: Double-match pension (up to 12% company contribution) Annual performance bonus up to 6% Salary sacrifice car scheme 10x salary life assurance and income protection Flexible benefits including healthcare, dental, and technology options Family-friendly policies, wellbeing support, and professional development opportunities Inclusive recruitment: We're building a workforce that reflects the communities we serve, championing diversity, and creating an inclusive workplace where everyone is valued for their unique contribution. We support reasonable adjustments throughout the recruitment process and beyond. National Gas is a Disability Confident employer and signatory of the Armed Forces Covenant. More Information Advert close: 29th July 2026, with interviews soon after
26/07/2026
Full time
Select how often (in days) to receive an alert: Vulnerability Analyst/ Cyber Security Data Analyst Warwick, Hybrid flexible working At National Gas, the work we do matters. As Britain's national gas network, we help keep the lights on, businesses running, and homes warm by maintaining the critical infrastructure that transports gas across Great Britain. While providing the energy security Britain relies on today, we're also helping transform the network for a clean energy future. Join us and help secure Britain's energy. About the role: The Attack Surface Reduction (ASR) team within Cyber Security is responsible for identifying, measuring and reducing security risk across National Gas by proactively testing, assessing and challenging the resilience of our technology and operational environments. The Vulnerability Analyst (or Cyber Security Data Analyst) helps to deliver a comprehensive programme of security testing, including vulnerability scanning and security configuration reviews, ensuring weaknesses are identified early and accurately. For this role we can consider a strong Data Analyst (MS Excel, Power BI) to manipulate and present data and confidently and clearly manage internal stakeholders. A strong interest and broad knowledge of Cyber Security would be highly regarded. What you'll be doing: Vulnerability Assessment: Conducting regular vulnerability assessments using automated scanning tools, manual testing techniques, and security best practices to identify vulnerabilities in systems, networks, and applications. Vulnerability Reporting: Generating detailed vulnerability assessment reports, including findings, recommendations, and risk assessments, to communicate the status of vulnerabilities to management and stakeholders. Vulnerability Management: Managing the lifecycle of vulnerabilities from discovery to remediation, including vulnerability triage, prioritization, tracking, and reporting. Risk Analysis: Analysing the impact and severity of identified vulnerabilities Remediation Planning: Collaborating with system administrators, developers, and other stakeholders Patch Management: Working closely with IT teams to ensure that security patches and updates are applied promptly Security Awareness: Providing guidance and training to employees. What you'll bring: Strong analytical and investigative skills, using MS Excel and PowerBI confidently Effective communication (written and verbal) and collaboration across different teams. Critical thinking and problem-solving abilities. Prioritisation: working in a rapidly changing environment, you'll need to be able to prioritise multiple activities. Initiative: the ability to work on your own initiative and take responsibility for your and team deliverables. Positive attitude: having a willingness to learn and develop yourself. Relevant University degree in Computer / Cyber Security / Engineering and Security certifications will be an advantage e.g. CISSP, CISM, SEC+, GIAC Security Essentials (GSEC). Knowledge of cybersecurity, physical security, and risk management principles as well as Operational Technology (OT) and Critical National Infrastructure (CNI). Ability to adapt to evolving threat landscapes. Detailed knowledge of the hardware and software systems in use across both IT and OT domains and the architectural arrangements in place to support management and operation of systems. Security Clearance: This role is subject to National Security Vetting (NSV). Candidates must be eligible to obtain and maintain Security Clearance (SC) throughout their employment. For further information, visit (UK Security Vetting: Clearance Levels). What we can offer you: Double-match pension (up to 12% company contribution) Annual performance bonus up to 6% Salary sacrifice car scheme 10x salary life assurance and income protection Flexible benefits including healthcare, dental, and technology options Family-friendly policies, wellbeing support, and professional development opportunities Inclusive recruitment: We're building a workforce that reflects the communities we serve, championing diversity, and creating an inclusive workplace where everyone is valued for their unique contribution. We support reasonable adjustments throughout the recruitment process and beyond. National Gas is a Disability Confident employer and signatory of the Armed Forces Covenant. More Information Advert close: 29th July 2026, with interviews soon after
Intermediate Data Engineer Department: Insurance Retail Employment Type: Permanent - Full Time Location: North West UK - Hybrid Compensation: £40,000 - £45,000 / year Description We're seeking an Intermediate Data Engineer to join our Insurance Retail department, supporting development squads with reliable, automated and cloud-ready data solutions. This role is suited to someone who can combine strong SQL, scripting and AWS experience with modern DevOps practices to build, maintain and improve data pipelines, data services and supporting infrastructure. AI is a key part of the role. You will be expected to use AI-assisted engineering tools responsibly to accelerate development, improve documentation, support analysis and identify opportunities to automate repeatable data engineering and operational tasks. Working closely with engineers, analysts, architects and stakeholders, you will help turn data requirements into maintainable, observable and secure solutions. You will maintain awareness of industry and technology developments, contribute to technical discussions, and support continuous improvement across data engineering, automation and operational practices. The role includes ownership of work throughout its lifecycle, from development and testing through to production support, incident resolution, continuous improvement and knowledge sharing across the department. About CDL CDL is one of the UK's leading software development houses, employing over 600 people at its campus in Stockport. It has a consistent history in the high-volume retail insurance sector. CDL has spearheaded developments in the aggregator, web and telematics space, including connected home, enrichment and self-service solutions. As a result, the company's robust and innovative technologies have enabled its customers to thrive in the highly competitive UK insurance marketplace. We have built a collaborative and creative culture,leveraging AI-driven solutions to enhance our products, processes and decision-making.We pride ourselves on cultivating an inspiring working environment with our employees at the heart of our company. In a nutshell we are the market leading software house in our industry, creating the software, websites & apps for the Insurance & Finance sector across the UK. If you were to go on a price comparison website, approximately 65% of the companies on there are our clients! What You'll Do Building, testing, monitoring and maintaining data pipelines and infrastructure to support the Data Platform using best practices including CI/CD, IaC and DevOps. Apply security best practices across data pipelines, cloud infrastructure and operational processes, ensuring data is protected through appropriate access controls, encryption, monitoring and secure engineering practices Use AWS services and PostgreSQL/AWS RDS knowledge to design, deliver and support scalable, reliable and secure data solutions, ensuring appropriate governance, resilience and protection of business data. Actively embrace AI-assisted engineering practices and demonstrate a willingness to learn, experiment with and responsibly adopt emerging AI tools such as Kiro, GitHub Copilot or equivalent technologies to improve delivery flow, quality, documentation, analysis and operational efficiency. Develop and maintain automated deployment, testing and operational workflows using GitLab pipelines, version control, Terraform/OpenTofu and scripting. Contribute to data quality, lineage, governance and observability practices to ensure data is trusted, traceable, secure and supportable throughout its lifecycle. Investigate data quality, platform reliability, pipeline performance and operational issues, identifying practical improvements, preventative actions and automation opportunities that enable squads to move faster and more safely. Working with business stakeholders, analysts and architects to understand business and technical requirements, designing data models and data structures that support reporting, analytics and operational use cases. Contribute to database and data platform activities such as upgrades, data migrations, schema updates and platform modernisation initiatives. Documenting processes and products, sharing knowledge across the squad and wider business, and supporting the development of less experienced engineers through mentoring, pairing or technical guidance where appropriate. Contribute significantly to small-to-medium feature deliveries and multi-person initiatives, collaborating with engineers and stakeholders to deliver reliable outcomes. About You Hold, or be willing to obtain, a relevant AWS certification that can be registered against the CDL APN. Proven experience working with AWS services relevant to data engineering and operational support, such as RDS, S3, Lambda, ECS, EC2, VPC, CloudWatch and related services. Experience with MySql and Oracle databases would be advantageous. Strong SQL skills, including PostgreSQL experience, query optimisation awareness and the ability to investigate data or performance issues. Good understanding of security principles including least-privilege access, encryption, secrets management, vulnerability remediation and secure handling of sensitive data. Experience with CI/CD pipelines, automated testing and deployment practices using GitLab or similar tooling. Experience with Infrastructure as Code tools such as Terraform, OpenTofu or CloudFormation. Good understanding of version control workflows, branching strategies and GitLab best practice. Experience of, or a strong willingness to learn, AI-assisted engineering tools such as Kiro, GitHub Copilot or similar technologies to improve engineering effectiveness and delivery outcomes. Familiarity with observability and troubleshooting tooling such as Dynatrace, OpenSearch/Elasticsearch or CloudWatch logs. Ability to communicate clearly, analyse problems, work collaboratively and explain technical concepts to both technical and non-technical stakeholders. Familiarity with Agile methodologies and operational tooling such as Jira and ServiceNow. What You'll Get Salary The salary for the role of Intermediate Data Engineer pays up to £45,000p.a. (Level 4) providing a fantastic opportunity for career progression through CDL's clearly defined career framework Your growth and advancement within CDL are only limited by your own ambition and effort. Benefits Hybrid Working (2 Days a Week in the office - SK4 2HD) Flexible working. 25 days holiday to start, increasing by 1 day per 1 year of service up to 30 days. Top employer for 10th year running Excellent training and development platform Opportunities for career progression Health and Wellbeing Programme Virtual activities, lunch and learns, coffee mornings and meetups. Life and health assurance Electric Vehicle Scheme Established Recognition Award System Great Parental Benefits Diversity and Inclusion network Pension scheme Community projects and volunteer days Refer a friend bonus Campus Benefits: On-site free parking Open plan modern offices Quiet Spaces are also available Shuttle bus to and from the station Subsidised restaurant Games room, pool & table-tennis tables and chill out zone Annual Hackathon & Deep Racer Events Social activities, regular social events through our social group Xtra, including a summer BBQ, competitions, bowling, go-karting, football games, Winter party and much more! Car wash, barber, yoga classes, boot camp and massage services all on site Cycle to work scheme Shower and dry rooms Diversity and inclusion: We're on a journey to keep innovating, that means welcoming new ideas and ways of thinking. CDL recognises that building a diverse workforce is critical to the success of our business. We strongly encourage applications from a diverse talent pool and welcome the opportunity to discuss flexibility requirements and workplace adjustments with all our applicants.
26/07/2026
Full time
Intermediate Data Engineer Department: Insurance Retail Employment Type: Permanent - Full Time Location: North West UK - Hybrid Compensation: £40,000 - £45,000 / year Description We're seeking an Intermediate Data Engineer to join our Insurance Retail department, supporting development squads with reliable, automated and cloud-ready data solutions. This role is suited to someone who can combine strong SQL, scripting and AWS experience with modern DevOps practices to build, maintain and improve data pipelines, data services and supporting infrastructure. AI is a key part of the role. You will be expected to use AI-assisted engineering tools responsibly to accelerate development, improve documentation, support analysis and identify opportunities to automate repeatable data engineering and operational tasks. Working closely with engineers, analysts, architects and stakeholders, you will help turn data requirements into maintainable, observable and secure solutions. You will maintain awareness of industry and technology developments, contribute to technical discussions, and support continuous improvement across data engineering, automation and operational practices. The role includes ownership of work throughout its lifecycle, from development and testing through to production support, incident resolution, continuous improvement and knowledge sharing across the department. About CDL CDL is one of the UK's leading software development houses, employing over 600 people at its campus in Stockport. It has a consistent history in the high-volume retail insurance sector. CDL has spearheaded developments in the aggregator, web and telematics space, including connected home, enrichment and self-service solutions. As a result, the company's robust and innovative technologies have enabled its customers to thrive in the highly competitive UK insurance marketplace. We have built a collaborative and creative culture,leveraging AI-driven solutions to enhance our products, processes and decision-making.We pride ourselves on cultivating an inspiring working environment with our employees at the heart of our company. In a nutshell we are the market leading software house in our industry, creating the software, websites & apps for the Insurance & Finance sector across the UK. If you were to go on a price comparison website, approximately 65% of the companies on there are our clients! What You'll Do Building, testing, monitoring and maintaining data pipelines and infrastructure to support the Data Platform using best practices including CI/CD, IaC and DevOps. Apply security best practices across data pipelines, cloud infrastructure and operational processes, ensuring data is protected through appropriate access controls, encryption, monitoring and secure engineering practices Use AWS services and PostgreSQL/AWS RDS knowledge to design, deliver and support scalable, reliable and secure data solutions, ensuring appropriate governance, resilience and protection of business data. Actively embrace AI-assisted engineering practices and demonstrate a willingness to learn, experiment with and responsibly adopt emerging AI tools such as Kiro, GitHub Copilot or equivalent technologies to improve delivery flow, quality, documentation, analysis and operational efficiency. Develop and maintain automated deployment, testing and operational workflows using GitLab pipelines, version control, Terraform/OpenTofu and scripting. Contribute to data quality, lineage, governance and observability practices to ensure data is trusted, traceable, secure and supportable throughout its lifecycle. Investigate data quality, platform reliability, pipeline performance and operational issues, identifying practical improvements, preventative actions and automation opportunities that enable squads to move faster and more safely. Working with business stakeholders, analysts and architects to understand business and technical requirements, designing data models and data structures that support reporting, analytics and operational use cases. Contribute to database and data platform activities such as upgrades, data migrations, schema updates and platform modernisation initiatives. Documenting processes and products, sharing knowledge across the squad and wider business, and supporting the development of less experienced engineers through mentoring, pairing or technical guidance where appropriate. Contribute significantly to small-to-medium feature deliveries and multi-person initiatives, collaborating with engineers and stakeholders to deliver reliable outcomes. About You Hold, or be willing to obtain, a relevant AWS certification that can be registered against the CDL APN. Proven experience working with AWS services relevant to data engineering and operational support, such as RDS, S3, Lambda, ECS, EC2, VPC, CloudWatch and related services. Experience with MySql and Oracle databases would be advantageous. Strong SQL skills, including PostgreSQL experience, query optimisation awareness and the ability to investigate data or performance issues. Good understanding of security principles including least-privilege access, encryption, secrets management, vulnerability remediation and secure handling of sensitive data. Experience with CI/CD pipelines, automated testing and deployment practices using GitLab or similar tooling. Experience with Infrastructure as Code tools such as Terraform, OpenTofu or CloudFormation. Good understanding of version control workflows, branching strategies and GitLab best practice. Experience of, or a strong willingness to learn, AI-assisted engineering tools such as Kiro, GitHub Copilot or similar technologies to improve engineering effectiveness and delivery outcomes. Familiarity with observability and troubleshooting tooling such as Dynatrace, OpenSearch/Elasticsearch or CloudWatch logs. Ability to communicate clearly, analyse problems, work collaboratively and explain technical concepts to both technical and non-technical stakeholders. Familiarity with Agile methodologies and operational tooling such as Jira and ServiceNow. What You'll Get Salary The salary for the role of Intermediate Data Engineer pays up to £45,000p.a. (Level 4) providing a fantastic opportunity for career progression through CDL's clearly defined career framework Your growth and advancement within CDL are only limited by your own ambition and effort. Benefits Hybrid Working (2 Days a Week in the office - SK4 2HD) Flexible working. 25 days holiday to start, increasing by 1 day per 1 year of service up to 30 days. Top employer for 10th year running Excellent training and development platform Opportunities for career progression Health and Wellbeing Programme Virtual activities, lunch and learns, coffee mornings and meetups. Life and health assurance Electric Vehicle Scheme Established Recognition Award System Great Parental Benefits Diversity and Inclusion network Pension scheme Community projects and volunteer days Refer a friend bonus Campus Benefits: On-site free parking Open plan modern offices Quiet Spaces are also available Shuttle bus to and from the station Subsidised restaurant Games room, pool & table-tennis tables and chill out zone Annual Hackathon & Deep Racer Events Social activities, regular social events through our social group Xtra, including a summer BBQ, competitions, bowling, go-karting, football games, Winter party and much more! Car wash, barber, yoga classes, boot camp and massage services all on site Cycle to work scheme Shower and dry rooms Diversity and inclusion: We're on a journey to keep innovating, that means welcoming new ideas and ways of thinking. CDL recognises that building a diverse workforce is critical to the success of our business. We strongly encourage applications from a diverse talent pool and welcome the opportunity to discuss flexibility requirements and workplace adjustments with all our applicants.
Location: Cardiff Hybrid Salary: up to £68,000, depending on experience plus a potential bonus up to £13,600 A hands-on senior role where you'll solve complex technical problems, deliver large and demanding pieces of work, and support the more junior engineers around you, at one of Europe's leading financial businesses About LDMS Founded in 2018, LDMS is part of the LC Financial Holdings group, a three-pillar organisation with over 950 employees across Europe. Between us we have more than 20 years of world-class credit expertise. We build digital lending software in a market growing around 18% a year. We want to lead that space, and to do it we need people who can think, create and challenge each other to find the best solutions for our customers. We have an ambitious to-do list: improving what we've built, building new products, and moving into new markets. The Role You'll join the Engineering team at LDMS as a Senior Engineer, working within a single team and reporting to an Engineering Team Lead. You'll take on challenging problems your team faces, including designing solutions to complex features and writing the design documentation that others build from. You'll work within the technical direction set by your Lead Engineer and be one of the people they rely on to turn that direction into working software. Our stack is React and TypeScript on the frontend, Java with Spring Boot on the backend, and PostgreSQL with schema-per-tenant multi-tenancy underneath, all cloud-hosted on AWS. You'll hold the quality bar for your team through code review, pairing and the example you set, and you'll lead the delivery of large features. Mentoring and growing more junior engineers is a core part of the job. As you develop, your influence will start to reach beyond your own team. This is a senior hands-on role, not a line-management one. Key Responsibilities These may change with the needs of the business, but the main areas are: Technical Skills Design solutions to complex features and write the design documentation that other engineers build from. Hold the technical quality bar for your team through code review, pairing and the example you set. Spot gaps in testing, security or performance across your team's work, and fix them or make the case for fixing them. Work within the technical direction and standards set by your Lead Engineer and feedback into them where you see a better approach. Watch for scaling, reliability and operability problems before they cause incidents and help keep the team's work observable and secure. Delivery Lead the delivery of large features, involving other engineers. Turn vague or unclear requirements into concrete engineering work the team can pick up. Keep the team's delivery standards up, and step in when they slip rather than waiting to be asked. Make sound decisions when the information is incomplete and keep work moving when requirements change or things get blocked. Impact Make a real difference to your team's output, quality and technical ability. Help junior and mid engineers get better through pairing, honest feedback and giving them work that stretches them. Contribute to department-wide engineering standards and documentation. Help shape your team's goals and technical plans and connect the work back to what the business is trying to achieve. Take part in hiring, running technical interviews and giving well-reasoned assessments of candidates. Communication Explain technical decisions clearly to both engineers and people without a technical background. Write things down well, such as designs, technical documentation and runbooks that other people can pick up and use. Help the team reach agreement on hard or contested technical questions. Give clear, specific and kind feedback in code reviews. Inform your Engineering Team Lead promptly when a piece of work is failing behind, rather than letting it surface late. AI and Innovation Explore new tools, including AI, and help bring the genuinely useful tools into your team's day-to-day work while being honest about where they fall short. Follow the team's agreed approach to AI-assisted work so that what gets produced stays consistent, secure and good quality. Use AI coding tools such as Claude in your day-to-day development, moving faster while keeping design quality, security and maintainability high. Essential Strong, hands-on expertise in Java (preferably Java 25+) with a solid command of Spring Boot. Strong relational database skills, ideally PostgreSQL, including schema design and migrations. A track record of designing and delivering complex features, with design work that other engineers could build from. Experience holding a quality bar through code review, pairing and example, and mentoring more junior engineers. Comfortable working within an established architecture and set of standards and improving them where you see a better way. Familiar with observability in practice, and how services are instrumented, monitored and debugged (for example Prometheus, Grafana). Experience keeping a codebase secure and current, including dependency upgrades and vulnerability scanning. Comfortable working with CI/CD pipelines (for example Jenkins) and a sound understanding of performance and scalability. Clear communicator, able to explain technical decisions to engineers and non-technical colleagues. Comfortable making sound decisions when the information is incomplete. Desirable Experience using AI coding tools such as Claude well as part of day-to-day engineering. An understanding of what it takes to build software in a financial environment. A widening base across the stack, such as performance, data, security, reliability and cloud so you can weigh up decisions beyond your own area. Experience working with cloud-hosted systems on AWS, and an understanding of hosting, scaling and cost trade-offs. Exposure to React and TypeScript, enough to work sensibly with patterns defined. Familiarity with tools such as Keycloak for identity and AWS S3 for storage. What's Important to Us Our passion is tech, but the people we bring together are the heart of the business. Over the years we've recruited a fairly eclectic bunch, with hobbies from gaming to ultra-marathon running, snowboarding to chess, hiking to climbing. What we share are our values: Teamwork Merit Develop Honest Impactful Integrity They might look like corporate jargon, but they mean something to us. If they sound like you, get in touch. There's a good chance you'd be a great fit. Discretionary bonus 25 days annual leave (plus bank holidays) Opportunity to purchase additional annual leave 1 day birthday leave 1 day charity leave Private health insurance Employee Assistance Programme (EAP) Season ticket loan for transport Eye care Pension (3% / 5% contribution) Salary sacrifice schemes (cycle to work and electric vehicle) Monthly socials Charity events The discretionary bonus will be pro-rata'd during your first year with the Company.
26/07/2026
Full time
Location: Cardiff Hybrid Salary: up to £68,000, depending on experience plus a potential bonus up to £13,600 A hands-on senior role where you'll solve complex technical problems, deliver large and demanding pieces of work, and support the more junior engineers around you, at one of Europe's leading financial businesses About LDMS Founded in 2018, LDMS is part of the LC Financial Holdings group, a three-pillar organisation with over 950 employees across Europe. Between us we have more than 20 years of world-class credit expertise. We build digital lending software in a market growing around 18% a year. We want to lead that space, and to do it we need people who can think, create and challenge each other to find the best solutions for our customers. We have an ambitious to-do list: improving what we've built, building new products, and moving into new markets. The Role You'll join the Engineering team at LDMS as a Senior Engineer, working within a single team and reporting to an Engineering Team Lead. You'll take on challenging problems your team faces, including designing solutions to complex features and writing the design documentation that others build from. You'll work within the technical direction set by your Lead Engineer and be one of the people they rely on to turn that direction into working software. Our stack is React and TypeScript on the frontend, Java with Spring Boot on the backend, and PostgreSQL with schema-per-tenant multi-tenancy underneath, all cloud-hosted on AWS. You'll hold the quality bar for your team through code review, pairing and the example you set, and you'll lead the delivery of large features. Mentoring and growing more junior engineers is a core part of the job. As you develop, your influence will start to reach beyond your own team. This is a senior hands-on role, not a line-management one. Key Responsibilities These may change with the needs of the business, but the main areas are: Technical Skills Design solutions to complex features and write the design documentation that other engineers build from. Hold the technical quality bar for your team through code review, pairing and the example you set. Spot gaps in testing, security or performance across your team's work, and fix them or make the case for fixing them. Work within the technical direction and standards set by your Lead Engineer and feedback into them where you see a better approach. Watch for scaling, reliability and operability problems before they cause incidents and help keep the team's work observable and secure. Delivery Lead the delivery of large features, involving other engineers. Turn vague or unclear requirements into concrete engineering work the team can pick up. Keep the team's delivery standards up, and step in when they slip rather than waiting to be asked. Make sound decisions when the information is incomplete and keep work moving when requirements change or things get blocked. Impact Make a real difference to your team's output, quality and technical ability. Help junior and mid engineers get better through pairing, honest feedback and giving them work that stretches them. Contribute to department-wide engineering standards and documentation. Help shape your team's goals and technical plans and connect the work back to what the business is trying to achieve. Take part in hiring, running technical interviews and giving well-reasoned assessments of candidates. Communication Explain technical decisions clearly to both engineers and people without a technical background. Write things down well, such as designs, technical documentation and runbooks that other people can pick up and use. Help the team reach agreement on hard or contested technical questions. Give clear, specific and kind feedback in code reviews. Inform your Engineering Team Lead promptly when a piece of work is failing behind, rather than letting it surface late. AI and Innovation Explore new tools, including AI, and help bring the genuinely useful tools into your team's day-to-day work while being honest about where they fall short. Follow the team's agreed approach to AI-assisted work so that what gets produced stays consistent, secure and good quality. Use AI coding tools such as Claude in your day-to-day development, moving faster while keeping design quality, security and maintainability high. Essential Strong, hands-on expertise in Java (preferably Java 25+) with a solid command of Spring Boot. Strong relational database skills, ideally PostgreSQL, including schema design and migrations. A track record of designing and delivering complex features, with design work that other engineers could build from. Experience holding a quality bar through code review, pairing and example, and mentoring more junior engineers. Comfortable working within an established architecture and set of standards and improving them where you see a better way. Familiar with observability in practice, and how services are instrumented, monitored and debugged (for example Prometheus, Grafana). Experience keeping a codebase secure and current, including dependency upgrades and vulnerability scanning. Comfortable working with CI/CD pipelines (for example Jenkins) and a sound understanding of performance and scalability. Clear communicator, able to explain technical decisions to engineers and non-technical colleagues. Comfortable making sound decisions when the information is incomplete. Desirable Experience using AI coding tools such as Claude well as part of day-to-day engineering. An understanding of what it takes to build software in a financial environment. A widening base across the stack, such as performance, data, security, reliability and cloud so you can weigh up decisions beyond your own area. Experience working with cloud-hosted systems on AWS, and an understanding of hosting, scaling and cost trade-offs. Exposure to React and TypeScript, enough to work sensibly with patterns defined. Familiarity with tools such as Keycloak for identity and AWS S3 for storage. What's Important to Us Our passion is tech, but the people we bring together are the heart of the business. Over the years we've recruited a fairly eclectic bunch, with hobbies from gaming to ultra-marathon running, snowboarding to chess, hiking to climbing. What we share are our values: Teamwork Merit Develop Honest Impactful Integrity They might look like corporate jargon, but they mean something to us. If they sound like you, get in touch. There's a good chance you'd be a great fit. Discretionary bonus 25 days annual leave (plus bank holidays) Opportunity to purchase additional annual leave 1 day birthday leave 1 day charity leave Private health insurance Employee Assistance Programme (EAP) Season ticket loan for transport Eye care Pension (3% / 5% contribution) Salary sacrifice schemes (cycle to work and electric vehicle) Monthly socials Charity events The discretionary bonus will be pro-rata'd during your first year with the Company.
Location:Head Office, White City Place, West London Contract Type: Full time, 37.5 hours per week About Us: ME+EM is one of the UK's fastest-growing luxury fashion brands. In addition to a thriving global digital presence, we operate flagship stores in London and Edinburgh, concessions within Harrods and Selfridges, and have recently expanded with new store openings in the U.S. At ME+EM we are an entrepreneurial, creative, and passionate group of people. We work hard, are enthusiastic to learn and are not afraid to take risks. Everyone contributes to our success at all levels, and that precisely what makes being a member of the team so rewarding. Our office and stores are always busy and fast paced, but we work just as hard to make sure it's fun, with social activities and biannual parties. We pride ourselves on being approachable, supportive, and welcoming and ensure that everyone's hard work is rewarded. It takes all these things to build a strong, successful business and our door is always open to new talent ready to contribute to our growth and evolution. About the Role: This role is critical for providing advanced technical expertise and knowledge within the IT team, ensuring the stability, reliability, and performance of IT systems and infrastructure within ME+EM. Job Responsibilities: Provide third-line technical support to resolve complex and escalated IT issues, including incidents and service requests, ensuring timely resolution and minimal disruption to business operations. Own the end-to-end patch and vulnerability management lifecycle, from scanning and prioritisation through to remediation and reporting. Hands on experience configuring and administering enterprise email security platforms such as Mimecast, Proofpoint, or Microsoft Defender for O ice 365, including anti phishing, anti spoofing, DLP policies, and SPF/DKIM/DMARC implementation. Design, implement, and continuously test enterprise Backup and Disaster Recovery strategies, ensuring procedures are clearly defined, documented, and validated through regular DR simulations. Design, implement, and maintain IT infrastructure including servers, storage systems, networking devices, and virtualization environments, to ensure high availability, scalability, and performance to meet the growth needs of ME+EM. Investigate and diagnose advanced software, hardware, and network problems, utilising expert knowledge of Azure, Google Cloud and Hyper V infrastructure to troubleshoot and identify root causes and implement effective solutions. Collaborate with second line engineers, vendors, and other IT teams to resolve escalated issues, providing guidance and expertise as needed. Lead and participate in IT projects, including system upgrades, migrations, and deployments, from planning and design to implementation and postimplementation support. Develop and maintain technical documentation, including system configurations, procedures, and troubleshooting guides, to facilitate knowledge sharing and ensure compliance with regulatory requirements. Provide mentorship and training to junior engineers, sharing expertise and best practices to enhance the overall technical capabilities of the team. Stay abreast of emerging technologies, industry trends, and best practices, evaluating their potential impact and recommending innovative solutions to address business needs. Skills IT-related degree or equivalent professional experience CCNA or Microsoft Azure Administrator (AZ-104) certified - essential Experience in a third line, cloud, or network infrastructure role Proven experience designing and implementing backup & disaster recovery strategies, with clearly defined RTOs and RPOs Experience with backup and recovery tooling such as Veeam, Azure Site Recovery, or equivalent Hands on experience managing the full patch and vulnerability lifecycle, from scanning through to remediation and reporting Experience configuring and administering email security gateways such as Mimecast, Proofpoint, or Microsoft Defender for Office 365, including SPF, DKIM, and DMARC Advanced routing and switching knowledge including BGP, OSPF, VLANs, and QoS Firewall administration experience with platforms such as Palo Alto, Fortinet, or Cisco ASA Experience with network monitoring tools such as SolarWinds, PRTG, or equivalent Strong understanding of VPN technologies including IPSec, SSL, and Always On VPN Azure networking experience covering VNets, ExpressRoute, Azure Firewall, NSGs, and load balancers Experience with Azure Policy and Defender for Cloud for security posture and compliance management Proficiency in Entra ID including Conditional Access, Privileged Identity Management (PIM), and identity governance Familiarity with SIEM platforms such as Microsoft Sentinel or Splunk - desirable Working knowledge of data protection legislation including GDPR and practical implementation of compliance controls - desirable Scripting or automation experience using PowerShell or similar - desirable Employee Benefits: 33 days annual leave for full time employees (25 days holiday + 8 bank holidays) A day off to celebrate your birthday. Pension Scheme Group Life Insurance Employee Assistance Programme (EAP) Length of Service Award Refer a Friend Scheme Generous Staff and Friends and Family Discount Cycle to Work Scheme Eye Care Vouchers Real Living Wage Employer Employee led committees Social events and biannual parties Enhanced maternity and paternity package after 2 years of service. ME+EM is an equal opportunities employer committed to fostering and preserving a culture ofdiversity, equality, and inclusion in our workforce. As an equal opportunities' employer, we do notdiscriminate against applicants based on race, colour, religion, gender, gender identity orexpression, sexual orientation, national origin, genetics, disability, age, or veteran status. Webelieve that diversity enriches our workforce and strengthens our organisation. Therefore, weencourage minorities, LGBTQ+ candidates, and individuals with disabilities to apply for opportunities within our company. Please emailshould you require any adjustments needed to takepart in this recruitment process.
26/07/2026
Full time
Location:Head Office, White City Place, West London Contract Type: Full time, 37.5 hours per week About Us: ME+EM is one of the UK's fastest-growing luxury fashion brands. In addition to a thriving global digital presence, we operate flagship stores in London and Edinburgh, concessions within Harrods and Selfridges, and have recently expanded with new store openings in the U.S. At ME+EM we are an entrepreneurial, creative, and passionate group of people. We work hard, are enthusiastic to learn and are not afraid to take risks. Everyone contributes to our success at all levels, and that precisely what makes being a member of the team so rewarding. Our office and stores are always busy and fast paced, but we work just as hard to make sure it's fun, with social activities and biannual parties. We pride ourselves on being approachable, supportive, and welcoming and ensure that everyone's hard work is rewarded. It takes all these things to build a strong, successful business and our door is always open to new talent ready to contribute to our growth and evolution. About the Role: This role is critical for providing advanced technical expertise and knowledge within the IT team, ensuring the stability, reliability, and performance of IT systems and infrastructure within ME+EM. Job Responsibilities: Provide third-line technical support to resolve complex and escalated IT issues, including incidents and service requests, ensuring timely resolution and minimal disruption to business operations. Own the end-to-end patch and vulnerability management lifecycle, from scanning and prioritisation through to remediation and reporting. Hands on experience configuring and administering enterprise email security platforms such as Mimecast, Proofpoint, or Microsoft Defender for O ice 365, including anti phishing, anti spoofing, DLP policies, and SPF/DKIM/DMARC implementation. Design, implement, and continuously test enterprise Backup and Disaster Recovery strategies, ensuring procedures are clearly defined, documented, and validated through regular DR simulations. Design, implement, and maintain IT infrastructure including servers, storage systems, networking devices, and virtualization environments, to ensure high availability, scalability, and performance to meet the growth needs of ME+EM. Investigate and diagnose advanced software, hardware, and network problems, utilising expert knowledge of Azure, Google Cloud and Hyper V infrastructure to troubleshoot and identify root causes and implement effective solutions. Collaborate with second line engineers, vendors, and other IT teams to resolve escalated issues, providing guidance and expertise as needed. Lead and participate in IT projects, including system upgrades, migrations, and deployments, from planning and design to implementation and postimplementation support. Develop and maintain technical documentation, including system configurations, procedures, and troubleshooting guides, to facilitate knowledge sharing and ensure compliance with regulatory requirements. Provide mentorship and training to junior engineers, sharing expertise and best practices to enhance the overall technical capabilities of the team. Stay abreast of emerging technologies, industry trends, and best practices, evaluating their potential impact and recommending innovative solutions to address business needs. Skills IT-related degree or equivalent professional experience CCNA or Microsoft Azure Administrator (AZ-104) certified - essential Experience in a third line, cloud, or network infrastructure role Proven experience designing and implementing backup & disaster recovery strategies, with clearly defined RTOs and RPOs Experience with backup and recovery tooling such as Veeam, Azure Site Recovery, or equivalent Hands on experience managing the full patch and vulnerability lifecycle, from scanning through to remediation and reporting Experience configuring and administering email security gateways such as Mimecast, Proofpoint, or Microsoft Defender for Office 365, including SPF, DKIM, and DMARC Advanced routing and switching knowledge including BGP, OSPF, VLANs, and QoS Firewall administration experience with platforms such as Palo Alto, Fortinet, or Cisco ASA Experience with network monitoring tools such as SolarWinds, PRTG, or equivalent Strong understanding of VPN technologies including IPSec, SSL, and Always On VPN Azure networking experience covering VNets, ExpressRoute, Azure Firewall, NSGs, and load balancers Experience with Azure Policy and Defender for Cloud for security posture and compliance management Proficiency in Entra ID including Conditional Access, Privileged Identity Management (PIM), and identity governance Familiarity with SIEM platforms such as Microsoft Sentinel or Splunk - desirable Working knowledge of data protection legislation including GDPR and practical implementation of compliance controls - desirable Scripting or automation experience using PowerShell or similar - desirable Employee Benefits: 33 days annual leave for full time employees (25 days holiday + 8 bank holidays) A day off to celebrate your birthday. Pension Scheme Group Life Insurance Employee Assistance Programme (EAP) Length of Service Award Refer a Friend Scheme Generous Staff and Friends and Family Discount Cycle to Work Scheme Eye Care Vouchers Real Living Wage Employer Employee led committees Social events and biannual parties Enhanced maternity and paternity package after 2 years of service. ME+EM is an equal opportunities employer committed to fostering and preserving a culture ofdiversity, equality, and inclusion in our workforce. As an equal opportunities' employer, we do notdiscriminate against applicants based on race, colour, religion, gender, gender identity orexpression, sexual orientation, national origin, genetics, disability, age, or veteran status. Webelieve that diversity enriches our workforce and strengthens our organisation. Therefore, weencourage minorities, LGBTQ+ candidates, and individuals with disabilities to apply for opportunities within our company. Please emailshould you require any adjustments needed to takepart in this recruitment process.
Middleware Support Engineer Stevenage, UK Role - L2/L3 Support Engineer, Middleware COTS applications Technology - ITIL, ITSM/ticketing tools, CMDB practices, TIBCO/ SLM/ Tracker & Simplicio Location - Stevenage, UK Business Unit - MFGADM Compensation - Competitive (including bonus) Job Summary We are seeking a highly skilled L2/L3 Support Engineer to provide advanced application and platform support across enterprise IT systems and business-critical applications. The role is responsible for incident resolution, service improvement, platform administration, and technical troubleshooting while ensuring high availability, performance, and user satisfaction. The successful candidate will act as an escalation point for complex technical issues, working closely with business stakeholders, vendors, infrastructure teams, and application owners to maintain and enhance operational support services. The role requires strong knowledge of ITIL/ITSM processes, CMDB management, application administration, and reporting platforms, with a focus on delivering reliable and efficient support within SLA commitments. Location & Security Requirements Candidates who have previously held Security Check (SC) Clearance or are eligible to obtain SC Clearance will be preferred. Should be based within reasonable commuting distance of Stevenage, United Kingdom, or be willing to travel regularly to the Stevenage office/customer site as required. Key Responsibilities Provide L2/L3 AMS support across multiple COTS and enterprise applications, ensuring service continuity, SLA adherence and high-quality resolution outcomes. Triage, diagnose and resolve incidents; provide workarounds where permanent fixes require change, and maintain clear communication with users and stakeholders throughout the ticket lifecycle. Perform root cause analysis for recurring/major incidents, document findings, maintain known error records and implement preventive actions through problem management. Support service requests covering access, configuration, data updates, application housekeeping and catalogue-driven fulfilment. Coordinate change and release activities including impact assessment, RFC creation, CAB support, deployment validation, back-out planning and post-implementation checks. Maintain operational documentation including SOPs, runbooks, knowledge articles, support models, configuration records and handover artefacts. Work closely with product vendors, third-party suppliers, Service Desk, infrastructure, security and business teams to manage dependencies and restoration paths. Support monitoring, health checks, certificate/service account tracking, vulnerability remediation, patching coordination and license/renewal reporting where applicable. Contribute to service improvement through trend analysis, automation opportunities, backlog reduction, knowledge reuse and operational reporting. Required Skills/Experience Application Management Services (AMS) experience in a managed services or enterprise support environment. Understanding of ITIL-aligned incident, problem, change, release, service request, configuration and knowledge management processes. relevant IT experience, including hands on AMS/application support for enterprise applications. Experience supporting multiple COTS/business applications; exposure to multiple tools such as TIBCO, SLM, Tracker & Simplicio or similar is preferred API Integration and Message Queues knowledge is good to have Strong troubleshooting skills across application, interface, data, access, configuration and environment issues. Working knowledge of ITSM/ticketing tools, CMDB practices, SLA/KPI reporting, dashboarding and operational governance. Ability to analyse logs, coordinate with infrastructure/database/security teams and manage dependencies with product vendors. Good understanding of patching, vulnerability remediation, application maintenance, certificate tracking and service account governance. Basic SQL/database understanding and awareness of integrations, APIs, job scheduling, file transfers and application interfaces. Experience working with onsite, offshore and third party teams in a structured support model. Preferred Experience Aerospace, defence, manufacturing or regulated industry experience is desirable. Application development experience is preferred Personal Skills Besides the professional qualifications, we respect and place equal importance to the candidate's personality which facilitates success in customer environments. Few traits we look for are: High analytical skills A high degree of initiative, flexibility and adaptability High customer orientation Good team engaging skills Quality awareness Good verbal and written communication skills Transparency and Integrity About Infosys Infosys is a global leader in next generation digital services and consulting. We enable clients in 59 countries to navigate their digital transformation. With over four decades of experience in managing the systems and workings of global enterprises, we expertly steer clients, in 59 countries, as they navigate their digital transformation powered by cloud and AI. We enable them with an AI first core, empower the business with agile digital at scale and drive continuous improvement with always on learning through the transfer of digital skills, expertise, and ideas from our innovation ecosystem. We are deeply committed to being a well governed, environmentally sustainable organization where diverse talent thrives in an inclusive workplace. All aspects of employment at Infosys are based on merit, competence and performance. We are committed to embracing diversity and creating an inclusive environment for all employees. Infosys is proud to be an equal opportunity employer
26/07/2026
Full time
Middleware Support Engineer Stevenage, UK Role - L2/L3 Support Engineer, Middleware COTS applications Technology - ITIL, ITSM/ticketing tools, CMDB practices, TIBCO/ SLM/ Tracker & Simplicio Location - Stevenage, UK Business Unit - MFGADM Compensation - Competitive (including bonus) Job Summary We are seeking a highly skilled L2/L3 Support Engineer to provide advanced application and platform support across enterprise IT systems and business-critical applications. The role is responsible for incident resolution, service improvement, platform administration, and technical troubleshooting while ensuring high availability, performance, and user satisfaction. The successful candidate will act as an escalation point for complex technical issues, working closely with business stakeholders, vendors, infrastructure teams, and application owners to maintain and enhance operational support services. The role requires strong knowledge of ITIL/ITSM processes, CMDB management, application administration, and reporting platforms, with a focus on delivering reliable and efficient support within SLA commitments. Location & Security Requirements Candidates who have previously held Security Check (SC) Clearance or are eligible to obtain SC Clearance will be preferred. Should be based within reasonable commuting distance of Stevenage, United Kingdom, or be willing to travel regularly to the Stevenage office/customer site as required. Key Responsibilities Provide L2/L3 AMS support across multiple COTS and enterprise applications, ensuring service continuity, SLA adherence and high-quality resolution outcomes. Triage, diagnose and resolve incidents; provide workarounds where permanent fixes require change, and maintain clear communication with users and stakeholders throughout the ticket lifecycle. Perform root cause analysis for recurring/major incidents, document findings, maintain known error records and implement preventive actions through problem management. Support service requests covering access, configuration, data updates, application housekeeping and catalogue-driven fulfilment. Coordinate change and release activities including impact assessment, RFC creation, CAB support, deployment validation, back-out planning and post-implementation checks. Maintain operational documentation including SOPs, runbooks, knowledge articles, support models, configuration records and handover artefacts. Work closely with product vendors, third-party suppliers, Service Desk, infrastructure, security and business teams to manage dependencies and restoration paths. Support monitoring, health checks, certificate/service account tracking, vulnerability remediation, patching coordination and license/renewal reporting where applicable. Contribute to service improvement through trend analysis, automation opportunities, backlog reduction, knowledge reuse and operational reporting. Required Skills/Experience Application Management Services (AMS) experience in a managed services or enterprise support environment. Understanding of ITIL-aligned incident, problem, change, release, service request, configuration and knowledge management processes. relevant IT experience, including hands on AMS/application support for enterprise applications. Experience supporting multiple COTS/business applications; exposure to multiple tools such as TIBCO, SLM, Tracker & Simplicio or similar is preferred API Integration and Message Queues knowledge is good to have Strong troubleshooting skills across application, interface, data, access, configuration and environment issues. Working knowledge of ITSM/ticketing tools, CMDB practices, SLA/KPI reporting, dashboarding and operational governance. Ability to analyse logs, coordinate with infrastructure/database/security teams and manage dependencies with product vendors. Good understanding of patching, vulnerability remediation, application maintenance, certificate tracking and service account governance. Basic SQL/database understanding and awareness of integrations, APIs, job scheduling, file transfers and application interfaces. Experience working with onsite, offshore and third party teams in a structured support model. Preferred Experience Aerospace, defence, manufacturing or regulated industry experience is desirable. Application development experience is preferred Personal Skills Besides the professional qualifications, we respect and place equal importance to the candidate's personality which facilitates success in customer environments. Few traits we look for are: High analytical skills A high degree of initiative, flexibility and adaptability High customer orientation Good team engaging skills Quality awareness Good verbal and written communication skills Transparency and Integrity About Infosys Infosys is a global leader in next generation digital services and consulting. We enable clients in 59 countries to navigate their digital transformation. With over four decades of experience in managing the systems and workings of global enterprises, we expertly steer clients, in 59 countries, as they navigate their digital transformation powered by cloud and AI. We enable them with an AI first core, empower the business with agile digital at scale and drive continuous improvement with always on learning through the transfer of digital skills, expertise, and ideas from our innovation ecosystem. We are deeply committed to being a well governed, environmentally sustainable organization where diverse talent thrives in an inclusive workplace. All aspects of employment at Infosys are based on merit, competence and performance. We are committed to embracing diversity and creating an inclusive environment for all employees. Infosys is proud to be an equal opportunity employer
Systems Cyber Security Engineer Full Time Location - Heybridge At Rolls Royce we are proud to be a business that has truly helped to shape the modern world and are committed to always being a force for progress; powering, protecting and connecting people everywhere. By joining Rolls Royce, you'll have the opportunity to work on world class solutions, supported by a culture that believes individuality is our greatest strength, and all perspectives, experiences and backgrounds help us innovate and enable our high performance culture. What you will be doing Develop and review Systems Requirements, including cyber security requirements (technology, process etc) across a range of marine automation systems. Understanding and maintaining expertise on statutory and technical compliance rules relevant to Marine Automation systems. Communicate with RR Cyber Security Team in Friedrichshafen on best practices and product security requirements. Take part in and document technical risk assessments. Specify and produce requirements for security measures. Produce reports where required to document the work carried out. Provide technical consultation for programmes on secure development and risk management. Offer support for vulnerability scanning, hardening, and addressing system vulnerabilities. Able to work across multiple business functions (e.g. Software, hardware, maintenance, manufacturing, corporate). Vulnerability assessment. Communicate risk to business stakeholders. May be required to develop, implement, document, and maintain policies, procedures, associated guidelines, tools and training as required. Develop the knowledge required to provide advice to project teams and be able to create, search, and reuse knowledge, good practice and procedures with some guidance from established practitioners. Position Qualifications and pre requisites Good time management skills able to prioritise and execute tasks in a high pressure environment. Dynamically respond to evolving objectives and emerging opportunities while working in coordination with a multidisciplinary, energetic team of engineers and scientists. Understand the Secure Development Lifecycle Use of encryption Security measures Security risk assessment techniques Highly self motivated and directed, with keen attention to detail. Strong problem solving skills, and an ability to understand the level of analysis required Working knowledge of domain Preferred requirements Good written, oral, and interpersonal communication skills, able to communicate ideas in both technical and user friendly language. Able to research application issues and products by being outward focussed and able to seek solutions/information from outside of immediate area, including suppliers, universities, customers, related industries. Skilled at working within a team oriented, collaborative environment or as a sole contributor on identified projects Keen to develop capability through appropriate training courses and workshops. Where required able to train people to improve the capability of the business within a specific area of the business and deliver training material where required. Professional courage to highlight areas of concern and risk with regard to suitability of a product to meet its requirements in a safe and functionally appropriate way. A working appreciation of associated engineering disciplines. Power Systems is the Rolls Royce business which provides world class power solutions and complete life cycle support under our product and solution brand mtu. Through digitalisation and electrification, we strive to develop drive and power generation solutions that provide answers to the challenges posed by the rapidly growing societal demands for energy and mobility. We deliver and service comprehensive, powerful and reliable systems, based on both gas and diesel engines, as well as electrified hybrid systems. These technologically advanced solutions serve our customers in the marine and infrastructure sectors worldwide. Our vision is to ensure that the excellence and ingenuity that shaped our history continues into our future. Our multi year transformation programme aims to turn Rolls Royce into a high performing, competitive, resilient and growing company. Join us, and it can be your future vision too. Rolls Royce are committed to being a respectful, inclusive, and non discriminatory workplace where individuality is valued, diverse perspectives fuel innovation, and everyone can thrive. As part of our selection process, candidates in certain locations may be asked to complete an online assessment, which can include cognitive and behavioural aptitude testing relevant to the role. If required, full instructions for the next steps will be provided. Type of Contract Permanent At the heart of our business is the unrivalled dedication and technical expertise of our people. To support them we provide an environment of caring and belonging where everyone is themselves and supports each other. Discover how you can contribute your unique skills to our dynamic team. We invite you to keep track of any applications and explore our exciting career opportunities. Thank you for considering a rewarding career with us where your talent and passion matter. Our vacancies are always up to date. Once a vacancy has been filled, the advertisement will be removed from our website. You can find further information regarding your application in our FAQ section.
26/07/2026
Full time
Systems Cyber Security Engineer Full Time Location - Heybridge At Rolls Royce we are proud to be a business that has truly helped to shape the modern world and are committed to always being a force for progress; powering, protecting and connecting people everywhere. By joining Rolls Royce, you'll have the opportunity to work on world class solutions, supported by a culture that believes individuality is our greatest strength, and all perspectives, experiences and backgrounds help us innovate and enable our high performance culture. What you will be doing Develop and review Systems Requirements, including cyber security requirements (technology, process etc) across a range of marine automation systems. Understanding and maintaining expertise on statutory and technical compliance rules relevant to Marine Automation systems. Communicate with RR Cyber Security Team in Friedrichshafen on best practices and product security requirements. Take part in and document technical risk assessments. Specify and produce requirements for security measures. Produce reports where required to document the work carried out. Provide technical consultation for programmes on secure development and risk management. Offer support for vulnerability scanning, hardening, and addressing system vulnerabilities. Able to work across multiple business functions (e.g. Software, hardware, maintenance, manufacturing, corporate). Vulnerability assessment. Communicate risk to business stakeholders. May be required to develop, implement, document, and maintain policies, procedures, associated guidelines, tools and training as required. Develop the knowledge required to provide advice to project teams and be able to create, search, and reuse knowledge, good practice and procedures with some guidance from established practitioners. Position Qualifications and pre requisites Good time management skills able to prioritise and execute tasks in a high pressure environment. Dynamically respond to evolving objectives and emerging opportunities while working in coordination with a multidisciplinary, energetic team of engineers and scientists. Understand the Secure Development Lifecycle Use of encryption Security measures Security risk assessment techniques Highly self motivated and directed, with keen attention to detail. Strong problem solving skills, and an ability to understand the level of analysis required Working knowledge of domain Preferred requirements Good written, oral, and interpersonal communication skills, able to communicate ideas in both technical and user friendly language. Able to research application issues and products by being outward focussed and able to seek solutions/information from outside of immediate area, including suppliers, universities, customers, related industries. Skilled at working within a team oriented, collaborative environment or as a sole contributor on identified projects Keen to develop capability through appropriate training courses and workshops. Where required able to train people to improve the capability of the business within a specific area of the business and deliver training material where required. Professional courage to highlight areas of concern and risk with regard to suitability of a product to meet its requirements in a safe and functionally appropriate way. A working appreciation of associated engineering disciplines. Power Systems is the Rolls Royce business which provides world class power solutions and complete life cycle support under our product and solution brand mtu. Through digitalisation and electrification, we strive to develop drive and power generation solutions that provide answers to the challenges posed by the rapidly growing societal demands for energy and mobility. We deliver and service comprehensive, powerful and reliable systems, based on both gas and diesel engines, as well as electrified hybrid systems. These technologically advanced solutions serve our customers in the marine and infrastructure sectors worldwide. Our vision is to ensure that the excellence and ingenuity that shaped our history continues into our future. Our multi year transformation programme aims to turn Rolls Royce into a high performing, competitive, resilient and growing company. Join us, and it can be your future vision too. Rolls Royce are committed to being a respectful, inclusive, and non discriminatory workplace where individuality is valued, diverse perspectives fuel innovation, and everyone can thrive. As part of our selection process, candidates in certain locations may be asked to complete an online assessment, which can include cognitive and behavioural aptitude testing relevant to the role. If required, full instructions for the next steps will be provided. Type of Contract Permanent At the heart of our business is the unrivalled dedication and technical expertise of our people. To support them we provide an environment of caring and belonging where everyone is themselves and supports each other. Discover how you can contribute your unique skills to our dynamic team. We invite you to keep track of any applications and explore our exciting career opportunities. Thank you for considering a rewarding career with us where your talent and passion matter. Our vacancies are always up to date. Once a vacancy has been filled, the advertisement will be removed from our website. You can find further information regarding your application in our FAQ section.
ME+EM is seeking a senior IT specialist to provide advanced, third-line support and to own patching, vulnerability management, and security across Azure, on-premises, and hybrid environments. You will configure email security gateways, disaster recovery, and network infrastructure while collaborating with vendors and internal teams. The role demands leadership in IT projects and documentation. You will mentor junior engineers, stay current with industry trends, and help scale IT services to
26/07/2026
Full time
ME+EM is seeking a senior IT specialist to provide advanced, third-line support and to own patching, vulnerability management, and security across Azure, on-premises, and hybrid environments. You will configure email security gateways, disaster recovery, and network infrastructure while collaborating with vendors and internal teams. The role demands leadership in IT projects and documentation. You will mentor junior engineers, stay current with industry trends, and help scale IT services to
About The Role We're looking for an experienced Vulnerability & Exposure Manager to lead and mature our vulnerability management capability. As a leading UK life and pensions mutual insurer with a proud history dating back to 1843, we exist to help people live financially confident lives - protecting their income while they work and maximising it when they stop. Today, over one million members and customers trust us to look after their futures, families and finances. Joining us means becoming part of a team that puts our members, customers and advisers at the heart of everything we do. We're committed to creating an inclusive culture where colleagues can thrive. We are proud to have built a workplace where our colleagues feel welcomed, respected, supported and valued - reflected in our recognition as one of the Financial Times UK's Best Employers in 2025 and 2026. We celebrate individuality and believe our differences make us stronger, so bring your true self and help shape the future of LV=. This is a highly visible role responsible for identifying, prioritising and driving the remediation of vulnerabilities across infrastructure, cloud platforms, applications, containers and third-party services. Working closely with Security Operations, Cloud Engineering, Platform Teams, Development Teams, Architecture and Technology leadership, you'll ensure that cyber risks are understood, prioritised and reduced through effective governance, intelligence-led decision making and strong stakeholder engagement. This is an excellent opportunity for someone who enjoys combining technical expertise, data-driven analysis and influencing skills to deliver measurable security outcomes. The role follows a hybrid working pattern, with regular attendance required at our Bournemouth office. Key Responsibilities Lead the organisation's end-to-end vulnerability management programme. Manage vulnerability scanning, analysis, prioritisation, reporting and remediation governance. Drive risk-based remediation using threat intelligence, exploitability data and business context. Partner with technology teams to reduce exposure across cloud, infrastructure, applications and endpoints. Maintain and optimise vulnerability management tooling and asset coverage. Produce executive-level reporting, dashboards and KPI metrics demonstrating risk reduction and programme effectiveness. Escalate high-risk or overdue vulnerabilities and influence remediation priorities. Identify systemic weaknesses and recommend strategic improvements to security architecture and operating practices. Support continuous improvement through automation, integration and enhanced asset visibility. About You You'll be comfortable operating at both a technical and strategic level, translating complex vulnerability data into clear risk-based actions. Essential Experience Proven experience in vulnerability management, security operations or security engineering Hands-on experience with vulnerability scanning platforms and remediation workflows Strong understanding of CVEs, CVSS, exploitability, patch management and security configuration practices Experience working with cloud technologies, modern infrastructure and enterprise applications Ability to analyse large datasets and identify trends, risks and systemic issues Strong stakeholder management skills with the confidence to challenge constructively and drive action Experience producing reports and presentations for senior stakeholders Technical Knowledge Experience with some of the following: Vulnerability platforms such as Rapid7, Tenable, Qualys or Microsoft Defender TVM Azure cloud environments Endpoint and patch management technologies SIEM, EDR and threat intelligence platforms Security tools supporting application and container security ITSM, ticketing and reporting solutions such as ServiceNow, Jira or Power BI Desirable Certifications CompTIA Security+ or CySA+ GIAC certifications (GSEC, GCIH, GSTRT) Microsoft SC-200 and/or AZ-500 Tenable, Qualys or Rapid7 certifications ITIL Foundation Rewards and Benefits At LV= Savings and Retirement, you'll go above and beyond to do the right thing for our customers. We'll reward your hard work with an attractive, competitive salary and benefits package, which includes: 30 days' holiday, with the option to buy up to 5 additional days Competitive pension scheme - LV= Life and Pensions will double-match the amount you pay, up to 14% (subject to National Minimum Wage requirements) An annual bonus scheme based on personal performance Single-cover private medical insurance (with the option for you to upgrade to family cover) Flexible benefits, including a cycle to work scheme, personal accident insurance, critical illness cover and dental insurance Up to 20% discount on our life products for you and your immediate family A group life assurance policy with 4 x your basic pay to go to your dependents (you'll have the option to increase to 8 x cover) Group Income Protection (if you become a member of the Pension scheme and reach 5 years of service) Access to our Employee Assistance Programme (EAP) for support when you need it A virtual GP service Shared parental leave Up to 20% discount on our life products for you and your immediate family. Please note that we are unable to offer Skilled Worker Visa Sponsorship for this role. Therefore, you must ensure that you are eligible to work in the UK without our sponsorship for your application to be considered. About Us We're proud of our inclusive culture at LV= and, as an equal-opportunity employer, we continually work to remove unconscious bias from our recruitment process. We value our colleagues for what they bring to our team regardless of any protected status or characteristics they may have. Talk to us about flexible working as part of your application; if it's right for you, our members and customers, and our business, then we'll do everything we can to make it happen.
26/07/2026
Full time
About The Role We're looking for an experienced Vulnerability & Exposure Manager to lead and mature our vulnerability management capability. As a leading UK life and pensions mutual insurer with a proud history dating back to 1843, we exist to help people live financially confident lives - protecting their income while they work and maximising it when they stop. Today, over one million members and customers trust us to look after their futures, families and finances. Joining us means becoming part of a team that puts our members, customers and advisers at the heart of everything we do. We're committed to creating an inclusive culture where colleagues can thrive. We are proud to have built a workplace where our colleagues feel welcomed, respected, supported and valued - reflected in our recognition as one of the Financial Times UK's Best Employers in 2025 and 2026. We celebrate individuality and believe our differences make us stronger, so bring your true self and help shape the future of LV=. This is a highly visible role responsible for identifying, prioritising and driving the remediation of vulnerabilities across infrastructure, cloud platforms, applications, containers and third-party services. Working closely with Security Operations, Cloud Engineering, Platform Teams, Development Teams, Architecture and Technology leadership, you'll ensure that cyber risks are understood, prioritised and reduced through effective governance, intelligence-led decision making and strong stakeholder engagement. This is an excellent opportunity for someone who enjoys combining technical expertise, data-driven analysis and influencing skills to deliver measurable security outcomes. The role follows a hybrid working pattern, with regular attendance required at our Bournemouth office. Key Responsibilities Lead the organisation's end-to-end vulnerability management programme. Manage vulnerability scanning, analysis, prioritisation, reporting and remediation governance. Drive risk-based remediation using threat intelligence, exploitability data and business context. Partner with technology teams to reduce exposure across cloud, infrastructure, applications and endpoints. Maintain and optimise vulnerability management tooling and asset coverage. Produce executive-level reporting, dashboards and KPI metrics demonstrating risk reduction and programme effectiveness. Escalate high-risk or overdue vulnerabilities and influence remediation priorities. Identify systemic weaknesses and recommend strategic improvements to security architecture and operating practices. Support continuous improvement through automation, integration and enhanced asset visibility. About You You'll be comfortable operating at both a technical and strategic level, translating complex vulnerability data into clear risk-based actions. Essential Experience Proven experience in vulnerability management, security operations or security engineering Hands-on experience with vulnerability scanning platforms and remediation workflows Strong understanding of CVEs, CVSS, exploitability, patch management and security configuration practices Experience working with cloud technologies, modern infrastructure and enterprise applications Ability to analyse large datasets and identify trends, risks and systemic issues Strong stakeholder management skills with the confidence to challenge constructively and drive action Experience producing reports and presentations for senior stakeholders Technical Knowledge Experience with some of the following: Vulnerability platforms such as Rapid7, Tenable, Qualys or Microsoft Defender TVM Azure cloud environments Endpoint and patch management technologies SIEM, EDR and threat intelligence platforms Security tools supporting application and container security ITSM, ticketing and reporting solutions such as ServiceNow, Jira or Power BI Desirable Certifications CompTIA Security+ or CySA+ GIAC certifications (GSEC, GCIH, GSTRT) Microsoft SC-200 and/or AZ-500 Tenable, Qualys or Rapid7 certifications ITIL Foundation Rewards and Benefits At LV= Savings and Retirement, you'll go above and beyond to do the right thing for our customers. We'll reward your hard work with an attractive, competitive salary and benefits package, which includes: 30 days' holiday, with the option to buy up to 5 additional days Competitive pension scheme - LV= Life and Pensions will double-match the amount you pay, up to 14% (subject to National Minimum Wage requirements) An annual bonus scheme based on personal performance Single-cover private medical insurance (with the option for you to upgrade to family cover) Flexible benefits, including a cycle to work scheme, personal accident insurance, critical illness cover and dental insurance Up to 20% discount on our life products for you and your immediate family A group life assurance policy with 4 x your basic pay to go to your dependents (you'll have the option to increase to 8 x cover) Group Income Protection (if you become a member of the Pension scheme and reach 5 years of service) Access to our Employee Assistance Programme (EAP) for support when you need it A virtual GP service Shared parental leave Up to 20% discount on our life products for you and your immediate family. Please note that we are unable to offer Skilled Worker Visa Sponsorship for this role. Therefore, you must ensure that you are eligible to work in the UK without our sponsorship for your application to be considered. About Us We're proud of our inclusive culture at LV= and, as an equal-opportunity employer, we continually work to remove unconscious bias from our recruitment process. We value our colleagues for what they bring to our team regardless of any protected status or characteristics they may have. Talk to us about flexible working as part of your application; if it's right for you, our members and customers, and our business, then we'll do everything we can to make it happen.
Roke, Roke Manor, Romsey, Hampshire, United Kingdom Job Description Great ideas come from different minds. That's why we bring together engineers, scientists, analysts, and creatives from every background - and give them the trust, tools, and freedom to make a difference. What connects us is the mission: solving meaningful problems and building capability that protects what matters most. And as the challenges evolve, so do we - working on the technologies that will shape tomorrow, not just today. The Opportunity Roke are now looking for a passionate DevSecOps Engineer with Software Development experience to become an aggregated part of our Defence Information Advantage team. Innovation is at the core of what we do. You will be encouraged to contribute to Roke's innovation process by devising ideas for products/ techniques, developing other people's ideas & your own. You will belong to a community in which to engage about best practice, emerging technologies & CPD. Your Role In this role you will work with software developers, users, project and project managers, heads of engineering, quality assurance and IT colleagues. You will oversee code releases, deployments, and support operational systems. The role calls for both technical skills and soft skills to communicate effectively with colleagues at different levels in the organization in a collaborative and holistic environment. What you'll bring As a DevSecOps Engineer, you will have a degree level qualification in a STEM subject, or an equivalent level of practical experience. Depending on your level of ability/experience, you will have familiarity, competence or expertise in a subset of these areas: Cloud technologies: AWS Programming languages: Java Python node.js SQL Data technologies: Relational databases (e.g. PostgreSQL) Data streaming (e.g. kafka) Big data (e.g. Hadoop) Cyber security Vulnerability management (e.g. tenable) Static and Dynamic Analysis (e.g. SonarQube) Microservices On premise virtualization Cloud Edge compute Containerisation (e.g. Docker, Podman) APIs (e.g. RESTful) DevSecOps tooling Version control (e.g. Git) Continuous Integration/Deployment (e.g. Gitlab CI/CD) Unit testing (e.g. JUnit) Behaviour Driven Development (e.g. Cucumber) Infrastructure as code (e.g. Terraform, Puppet, Ansible) Beyond your technical skills, you will be proactive and able to communicate effectively with a variety of stakeholders. You will work well alone or as part of a team and grasp opportunities. You will be curious and seek out the best approach/solution/tool for the job at hand. You'll need to be able to draw on previous experiences of DevSecOps roles and be able to demonstrate a clear commitment to Continuous Improvement and Learning from Experience. Experience of successful DevSecOps implementation within the defence industry is a bonus! Roke has a hybrid working policy as does our client base. Collaborative activities are likely to take place in our Woking, Romsey and Gloucester locations as well as client sites in Andover, London, Bristol and Cambridge. Areas of responsibility Join and contribute to agile ceremonies following Scrum, Kanban or SAFe Agile. Coach team members in DevSecOps. Work with product owners and software developers to schedule releases and implement CI/CD pipelines. Work with security architects to ensure the products and services are secure by design. Work with quality engineers to ensure the products and services are of high quality. Effectively implement changes to products and services. Participate and contribute to code reviews. Support operational systems, troubleshoot and resolve issues. The Next Step Roke, Roke Manor, Romsey, Hampshire, United Kingdom
26/07/2026
Full time
Roke, Roke Manor, Romsey, Hampshire, United Kingdom Job Description Great ideas come from different minds. That's why we bring together engineers, scientists, analysts, and creatives from every background - and give them the trust, tools, and freedom to make a difference. What connects us is the mission: solving meaningful problems and building capability that protects what matters most. And as the challenges evolve, so do we - working on the technologies that will shape tomorrow, not just today. The Opportunity Roke are now looking for a passionate DevSecOps Engineer with Software Development experience to become an aggregated part of our Defence Information Advantage team. Innovation is at the core of what we do. You will be encouraged to contribute to Roke's innovation process by devising ideas for products/ techniques, developing other people's ideas & your own. You will belong to a community in which to engage about best practice, emerging technologies & CPD. Your Role In this role you will work with software developers, users, project and project managers, heads of engineering, quality assurance and IT colleagues. You will oversee code releases, deployments, and support operational systems. The role calls for both technical skills and soft skills to communicate effectively with colleagues at different levels in the organization in a collaborative and holistic environment. What you'll bring As a DevSecOps Engineer, you will have a degree level qualification in a STEM subject, or an equivalent level of practical experience. Depending on your level of ability/experience, you will have familiarity, competence or expertise in a subset of these areas: Cloud technologies: AWS Programming languages: Java Python node.js SQL Data technologies: Relational databases (e.g. PostgreSQL) Data streaming (e.g. kafka) Big data (e.g. Hadoop) Cyber security Vulnerability management (e.g. tenable) Static and Dynamic Analysis (e.g. SonarQube) Microservices On premise virtualization Cloud Edge compute Containerisation (e.g. Docker, Podman) APIs (e.g. RESTful) DevSecOps tooling Version control (e.g. Git) Continuous Integration/Deployment (e.g. Gitlab CI/CD) Unit testing (e.g. JUnit) Behaviour Driven Development (e.g. Cucumber) Infrastructure as code (e.g. Terraform, Puppet, Ansible) Beyond your technical skills, you will be proactive and able to communicate effectively with a variety of stakeholders. You will work well alone or as part of a team and grasp opportunities. You will be curious and seek out the best approach/solution/tool for the job at hand. You'll need to be able to draw on previous experiences of DevSecOps roles and be able to demonstrate a clear commitment to Continuous Improvement and Learning from Experience. Experience of successful DevSecOps implementation within the defence industry is a bonus! Roke has a hybrid working policy as does our client base. Collaborative activities are likely to take place in our Woking, Romsey and Gloucester locations as well as client sites in Andover, London, Bristol and Cambridge. Areas of responsibility Join and contribute to agile ceremonies following Scrum, Kanban or SAFe Agile. Coach team members in DevSecOps. Work with product owners and software developers to schedule releases and implement CI/CD pipelines. Work with security architects to ensure the products and services are secure by design. Work with quality engineers to ensure the products and services are of high quality. Effectively implement changes to products and services. Participate and contribute to code reviews. Support operational systems, troubleshoot and resolve issues. The Next Step Roke, Roke Manor, Romsey, Hampshire, United Kingdom
About The Company At Fora, we're reimagining what the workplace can be. We create inspiring, design-led spaces that blend hospitality, community, and wellbeing, so people can work productively, creatively, and happily. From our first London workspace over 20 years ago, we've grown to 60+ locations across the UK, supporting 30,000+ members and partnering with trailblazing brands like Ocado, The British Fashion Council, and Pangaia. Backed by The Office Group, Blackstone, and Brockton Capital, we're growing fast and pioneering conscious design, sustainable construction, and workspaces that empower people to work in their own unique way. At Fora, we're not just shaping workplaces, we're shaping the future of work. The Role As we continue to evolve our technology landscape, we're looking for an Infrastructure Cloud Engineer to help maintain, support and strengthen the Microsoft cloud platforms that underpin our business. This is a hands-on engineering role that sits at the intersection of cloud infrastructure, security, networking and modern workplace technologies. You'll work closely with colleagues across Infrastructure, Service Delivery and Project teams to ensure our cloud environment remains secure, resilient and ready to support future growth. Working across Azure, Microsoft Entra ID and Microsoft 365, you'll contribute to projects, service improvements and operational support that directly impact how technology enables the business. Why This Role Matters This role is 4 days in our HQ in London and 1 WFA As Fora continues to grow, our cloud infrastructure needs to remain secure, scalable and dependable. This role plays a key part in strengthening the resilience, security and performance of our Microsoft cloud environment, helping ensure colleagues can work effectively and business-critical services operate reliably. Your work will have a direct impact on how technology supports the wider business. What You'll Be Doing Cloud Infrastructure & Platform Services Support and develop Microsoft Azure infrastructure services that underpin key business operations. Monitor, maintain and optimise cloud platforms to ensure performance, resilience and scalability. Manage core infrastructure resources including virtual machines, storage and backup solutions. Security, Identity & Modern Workplace Support security controls, governance standards and secure configuration practices across Azure and Microsoft 365. Assist with identity and access management through Microsoft Entra ID. Contribute to vulnerability remediation, compliance initiatives and ongoing security improvements. Service Delivery & Continuous Improvement Provide 2nd and 3rd line support across Azure and cloud platform technologies. Support cloud migrations, platform enhancements and infrastructure improvement projects. Identify opportunities to improve automation, operational efficiency and service quality. Collaborate Across Technology Work closely with Infrastructure, Network Engineering, Service Desk and Project teams. Contribute to technical evaluations, implementation planning and proof-of-concept activities. Help translate technical challenges into practical, business-focused solutions. Why Fora? At Fora, we're building more than workspaces, we're creating places where people can do their best work. Joining the team means working across a broad Microsoft cloud estate while contributing to projects and improvements that have visible business impact. You'll have the opportunity to deepen your expertise across Azure, security, networking and modern workplace technologies while helping shape the future of our technology environment. About You You're a technically curious problem-solver who enjoys building practical solutions and improving how technology supports the business. You communicate effectively with both technical and non-technical stakeholders and bring a collaborative, pragmatic approach to delivering secure and reliable services. You're motivated by continuous improvement and enjoy working in an environment where you'll have the opportunity to learn, contribute and make a visible impact. Essential Experience Experience supporting Microsoft Azure Infrastructure-as-a-Service (IaaS) environments. Strong understanding of Azure infrastructure services and cloud operations. Experience supporting Microsoft Entra ID and Microsoft 365 environments. Knowledge of identity and access management principles. Experience troubleshooting cloud infrastructure and networking issues. Windows Server administration experience. PowerShell scripting skills. Understanding of Azure security and governance best practices. Desirable Experience Microsoft Azure Administrator (AZ-104) certification. Experience working with Azure Firewall. Experience supporting Microsoft Intune. ITIL Foundation qualification. Experience contributing to cloud migration or platform improvement projects. At Fora, we believe work should enhance your life - not compete with it. That's why our benefits are designed to support your wellbeing, fuel your ambitions, and give you the freedom to live and work your way. Work Your Way Core working hours with flexibility- because life doesn't run 9-5 Two weeks 'Work from Anywhere' - swap your desk for a beach, a mountain anywhere that inspires you Time to Rest & Recharge 28 days' annual leave + bank holidays Your birthday off - celebrate you Buy additional annual leave to create even more time for what matters Wellbeing & Security 5% matched pension scheme - supporting your future Life assurance for peace of mind Discounted gym membership to keep you feeling your best Health cash plan - supporting day to day medical expenses Mental wellbeing support - confidential in-person or online therapy sessions Smarter, Greener Commuting Cycle to Work Scheme Season Ticket Loan to make your journey easier and more affordable Perks That Make You Smile 25% off at Fora cafés - your morning coffee just got better 2 x volunteer days / year
26/07/2026
Full time
About The Company At Fora, we're reimagining what the workplace can be. We create inspiring, design-led spaces that blend hospitality, community, and wellbeing, so people can work productively, creatively, and happily. From our first London workspace over 20 years ago, we've grown to 60+ locations across the UK, supporting 30,000+ members and partnering with trailblazing brands like Ocado, The British Fashion Council, and Pangaia. Backed by The Office Group, Blackstone, and Brockton Capital, we're growing fast and pioneering conscious design, sustainable construction, and workspaces that empower people to work in their own unique way. At Fora, we're not just shaping workplaces, we're shaping the future of work. The Role As we continue to evolve our technology landscape, we're looking for an Infrastructure Cloud Engineer to help maintain, support and strengthen the Microsoft cloud platforms that underpin our business. This is a hands-on engineering role that sits at the intersection of cloud infrastructure, security, networking and modern workplace technologies. You'll work closely with colleagues across Infrastructure, Service Delivery and Project teams to ensure our cloud environment remains secure, resilient and ready to support future growth. Working across Azure, Microsoft Entra ID and Microsoft 365, you'll contribute to projects, service improvements and operational support that directly impact how technology enables the business. Why This Role Matters This role is 4 days in our HQ in London and 1 WFA As Fora continues to grow, our cloud infrastructure needs to remain secure, scalable and dependable. This role plays a key part in strengthening the resilience, security and performance of our Microsoft cloud environment, helping ensure colleagues can work effectively and business-critical services operate reliably. Your work will have a direct impact on how technology supports the wider business. What You'll Be Doing Cloud Infrastructure & Platform Services Support and develop Microsoft Azure infrastructure services that underpin key business operations. Monitor, maintain and optimise cloud platforms to ensure performance, resilience and scalability. Manage core infrastructure resources including virtual machines, storage and backup solutions. Security, Identity & Modern Workplace Support security controls, governance standards and secure configuration practices across Azure and Microsoft 365. Assist with identity and access management through Microsoft Entra ID. Contribute to vulnerability remediation, compliance initiatives and ongoing security improvements. Service Delivery & Continuous Improvement Provide 2nd and 3rd line support across Azure and cloud platform technologies. Support cloud migrations, platform enhancements and infrastructure improvement projects. Identify opportunities to improve automation, operational efficiency and service quality. Collaborate Across Technology Work closely with Infrastructure, Network Engineering, Service Desk and Project teams. Contribute to technical evaluations, implementation planning and proof-of-concept activities. Help translate technical challenges into practical, business-focused solutions. Why Fora? At Fora, we're building more than workspaces, we're creating places where people can do their best work. Joining the team means working across a broad Microsoft cloud estate while contributing to projects and improvements that have visible business impact. You'll have the opportunity to deepen your expertise across Azure, security, networking and modern workplace technologies while helping shape the future of our technology environment. About You You're a technically curious problem-solver who enjoys building practical solutions and improving how technology supports the business. You communicate effectively with both technical and non-technical stakeholders and bring a collaborative, pragmatic approach to delivering secure and reliable services. You're motivated by continuous improvement and enjoy working in an environment where you'll have the opportunity to learn, contribute and make a visible impact. Essential Experience Experience supporting Microsoft Azure Infrastructure-as-a-Service (IaaS) environments. Strong understanding of Azure infrastructure services and cloud operations. Experience supporting Microsoft Entra ID and Microsoft 365 environments. Knowledge of identity and access management principles. Experience troubleshooting cloud infrastructure and networking issues. Windows Server administration experience. PowerShell scripting skills. Understanding of Azure security and governance best practices. Desirable Experience Microsoft Azure Administrator (AZ-104) certification. Experience working with Azure Firewall. Experience supporting Microsoft Intune. ITIL Foundation qualification. Experience contributing to cloud migration or platform improvement projects. At Fora, we believe work should enhance your life - not compete with it. That's why our benefits are designed to support your wellbeing, fuel your ambitions, and give you the freedom to live and work your way. Work Your Way Core working hours with flexibility- because life doesn't run 9-5 Two weeks 'Work from Anywhere' - swap your desk for a beach, a mountain anywhere that inspires you Time to Rest & Recharge 28 days' annual leave + bank holidays Your birthday off - celebrate you Buy additional annual leave to create even more time for what matters Wellbeing & Security 5% matched pension scheme - supporting your future Life assurance for peace of mind Discounted gym membership to keep you feeling your best Health cash plan - supporting day to day medical expenses Mental wellbeing support - confidential in-person or online therapy sessions Smarter, Greener Commuting Cycle to Work Scheme Season Ticket Loan to make your journey easier and more affordable Perks That Make You Smile 25% off at Fora cafés - your morning coffee just got better 2 x volunteer days / year
Join Barclays as a Cryptography Operations Technician, where you'll play a key role in monitoring and maintaining our critical technology infrastructure. In this role, you will be part of a global Cryptography team within the Chief Information Security Office, Global Information Security. This team provides critical cryptographic services, including Secure Key Management, Hardware Security Modules, Application Cryptography, Strong Authentication, and PKI & Certificate services to Barclays Group. Your primary responsibility will be to complete operational support activities in Cryptographic technology and security functions to ensure information confidentiality, integrity, and availability while supporting security risk mitigation. This is an excellent opportunity to grow your technical capability in Cryptography within a supportive engineering environment. Please note that while you will work standard UK hours (9 AM-5 PM), you will also be required to perform occasional on-call duty. While weekend on-site attendance is not required, weekend shift coverage may be scheduled. To be successful in this role, you will need the following: Strong working knowledge of Incident, Problem, and Change Management, ideally gained within a regulated environment. Proven experience managing Major Incidents (MIM), including leading and coordinating triage sessions. Background in operational environments, IT Infrastructure, process adherence and creation, technology delivery, service management and monitoring. Unix/Windows operating system knowledge. Knowledge of or experience in Cryptography and Information Security. Strong stakeholder management with the ability to influence and negotiate at all levels. Excellent attention to detail and accuracy. Ability to make informed decisions under tight deadlines and manage multiple priorities effectively. Some other highly valued skills may include: Experience in Key Management. Experience in HSM configuration/installation/support. Certificate management experience. Strong documentation skills for operational procedures. Familiarity with SharePoint, Confluence, and JIRA. Expertise in privacy, compliance, and data protection services. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job-specific technical skills. The successful candidate will be based in Radbroke Hall, Knutsford. Purpose of the role To manage and monitor the banks cryptographic assets,for all use cases, whilst ensuring the confidentiality, integrity, and authenticity of sensitive data, both through BAU support and On-Call support as part of a 24/7 global team. Accountabilities Collaboration with internal and external customers and stakeholders to understand and identify cryptographic needs across the organisation, sharing best practices including solutions to business applications and processes. Execution of security assessments and penetration testing to identify vulnerabilities in cryptographic implementations and procedures and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders. Implementation and monitoring of cryptographic solutions used in various banking applications to ensure they function correctly and meet the Cryptography Standard. Development of training content for colleagues to share expertise on cryptographic concepts, best practice and security procedures in line with Standards and Industry regulations Contribute to the creation of technical documentation and specifications related to cryptographic designs and implementations. Provision of subject matter expertise in cryptography methodologies. To manage and support the service management of cryptography solutions consumed by the Bank globally, in line with Technology Controls and Standards, including but not limited to Incident/Problem/Change/Vulnerability Management. Understanding of industry cryptographic principles including algorithms, protocols and technologies including symmetric and asymmetric keys, digital signatures, key exchange and encryption. Advocate the improvement and implementation of security controls when appropriate. Presentation of complex ideas effectively to technical and non-technical audiences at all levels of Leadership. Analyst Expectations To perform prescribed activities in a timely manner and to a high standard consistently driving continuous improvement. Requires in-depth technical knowledge and experience in their assigned area of expertise Thorough understanding of the underlying principles and concepts within the area of expertise They lead and supervise a team, guiding and supporting professional development, allocating work requirements and coordinating team resources. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they develop technical expertise in work area, acting as an advisor where appropriate. Will have an impact on the work of related teams within the area. Partner with other functions and business areas. Takes responsibility for end results of a team's operational processing and activities. Escalate breaches of policies / procedure appropriately. Take responsibility for embedding new policies/ procedures adopted due to risk mitigation. Advise and influence decision making within own area of expertise. Take ownership for managing risk and strengthening controls in relation to the work you own or contribute to. Deliver your workand areas of responsibility in line with relevant rules, regulation and codes of conduct. Maintain and continually build an understanding of how own sub-function integrates with function, alongside knowledge of the organisations products, services and processes within the function. Demonstrate understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function. Make evaluative judgements based on the analysis of factual information, paying attention to detail. Resolve problems by identifying and selecting solutions through the application of acquired technical experience and will be guided by precedents. Guide and persuade team members and communicate complex / sensitive information. Act as contact point for stakeholders outside of the immediate function, while building a network of contacts outside team and external to the organisation. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
26/07/2026
Full time
Join Barclays as a Cryptography Operations Technician, where you'll play a key role in monitoring and maintaining our critical technology infrastructure. In this role, you will be part of a global Cryptography team within the Chief Information Security Office, Global Information Security. This team provides critical cryptographic services, including Secure Key Management, Hardware Security Modules, Application Cryptography, Strong Authentication, and PKI & Certificate services to Barclays Group. Your primary responsibility will be to complete operational support activities in Cryptographic technology and security functions to ensure information confidentiality, integrity, and availability while supporting security risk mitigation. This is an excellent opportunity to grow your technical capability in Cryptography within a supportive engineering environment. Please note that while you will work standard UK hours (9 AM-5 PM), you will also be required to perform occasional on-call duty. While weekend on-site attendance is not required, weekend shift coverage may be scheduled. To be successful in this role, you will need the following: Strong working knowledge of Incident, Problem, and Change Management, ideally gained within a regulated environment. Proven experience managing Major Incidents (MIM), including leading and coordinating triage sessions. Background in operational environments, IT Infrastructure, process adherence and creation, technology delivery, service management and monitoring. Unix/Windows operating system knowledge. Knowledge of or experience in Cryptography and Information Security. Strong stakeholder management with the ability to influence and negotiate at all levels. Excellent attention to detail and accuracy. Ability to make informed decisions under tight deadlines and manage multiple priorities effectively. Some other highly valued skills may include: Experience in Key Management. Experience in HSM configuration/installation/support. Certificate management experience. Strong documentation skills for operational procedures. Familiarity with SharePoint, Confluence, and JIRA. Expertise in privacy, compliance, and data protection services. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job-specific technical skills. The successful candidate will be based in Radbroke Hall, Knutsford. Purpose of the role To manage and monitor the banks cryptographic assets,for all use cases, whilst ensuring the confidentiality, integrity, and authenticity of sensitive data, both through BAU support and On-Call support as part of a 24/7 global team. Accountabilities Collaboration with internal and external customers and stakeholders to understand and identify cryptographic needs across the organisation, sharing best practices including solutions to business applications and processes. Execution of security assessments and penetration testing to identify vulnerabilities in cryptographic implementations and procedures and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders. Implementation and monitoring of cryptographic solutions used in various banking applications to ensure they function correctly and meet the Cryptography Standard. Development of training content for colleagues to share expertise on cryptographic concepts, best practice and security procedures in line with Standards and Industry regulations Contribute to the creation of technical documentation and specifications related to cryptographic designs and implementations. Provision of subject matter expertise in cryptography methodologies. To manage and support the service management of cryptography solutions consumed by the Bank globally, in line with Technology Controls and Standards, including but not limited to Incident/Problem/Change/Vulnerability Management. Understanding of industry cryptographic principles including algorithms, protocols and technologies including symmetric and asymmetric keys, digital signatures, key exchange and encryption. Advocate the improvement and implementation of security controls when appropriate. Presentation of complex ideas effectively to technical and non-technical audiences at all levels of Leadership. Analyst Expectations To perform prescribed activities in a timely manner and to a high standard consistently driving continuous improvement. Requires in-depth technical knowledge and experience in their assigned area of expertise Thorough understanding of the underlying principles and concepts within the area of expertise They lead and supervise a team, guiding and supporting professional development, allocating work requirements and coordinating team resources. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they develop technical expertise in work area, acting as an advisor where appropriate. Will have an impact on the work of related teams within the area. Partner with other functions and business areas. Takes responsibility for end results of a team's operational processing and activities. Escalate breaches of policies / procedure appropriately. Take responsibility for embedding new policies/ procedures adopted due to risk mitigation. Advise and influence decision making within own area of expertise. Take ownership for managing risk and strengthening controls in relation to the work you own or contribute to. Deliver your workand areas of responsibility in line with relevant rules, regulation and codes of conduct. Maintain and continually build an understanding of how own sub-function integrates with function, alongside knowledge of the organisations products, services and processes within the function. Demonstrate understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function. Make evaluative judgements based on the analysis of factual information, paying attention to detail. Resolve problems by identifying and selecting solutions through the application of acquired technical experience and will be guided by precedents. Guide and persuade team members and communicate complex / sensitive information. Act as contact point for stakeholders outside of the immediate function, while building a network of contacts outside team and external to the organisation. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
Senior Cyber Security Engineer / Architect / Lead Location: Farnborough Security Clearance Level High: DV - Developed Vetting Role Overview Everything we do is built on a commitment to do the right thing for our customers, our people and our community. Our mission and our values guide the way we do business. The foundation of our Leidos culture is our Values, Beliefs and Expectations by which we select, recognise and reward employees. They create the environment that drives us toward our mission. Inspired to make a difference, we are committed to solving the world's toughest problems. Passionate about customer success, we work closely with our stakeholders to understand, shape, and deliver secure solutions that enable critical outcomes. United as a team, we are bound together by our conviction that ethics and integrity are core to how we operate. In this role, you will be a trusted security practitioner, working with minimal direction on a critical programme and helping to raise the security bar across engineering and operations. Because of a key strategic development and a new exciting business opportunity, we have a requirement for a security-cleared Senior Cyber Security Engineer based in the UK working at our Farnborough site and remotely. Leidos has more than 30 years' experience of developing and running some of the largest government systems in the world. We are currently hiring to expand our UK based technical team who support our delivery for the UK Govt. Come join our team and further develop your skills as we deliver and support systems key to the defence of the UK and partner nations. Being part of the Leidos team is a commitment to push yourself and those around you to do better, constantly adapt and learn new technologies. We're a passionate team and are committed to developing and growing our staff. Leidos is a global science and technology solutions leader working to solve the world's toughest challenges in the defence, intelligence, homeland security, civil, and health markets. The company's 33,000 employees support vital missions for government and commercial customers. What Will You Be Doing? To support current program delivery, we currently have a permanent vacancy for a Senior Cyber Security Engineer to support the development and transition into live of a MOD application and infrastructure solution providing support to a critical operational end user. Leidos is seeking an enthusiastic protective security specialist to lead the implementation and assurance of security within a key defence project. You will contribute across the delivery lifecycle-shaping secure designs, defining and assuring controls, and providing senior-level security engineering support across protective and information security. You will have demonstrable experience applying recognised security frameworks (e.g., Government Functional Standard 007, NIST, CIS benchmarks) to real-world systems and services. You will be joining a team of highly skilled and highly motivated individuals who are working on one of the UKs leading programmes. Required Skills The Senior Cyber Security Engineer (T4) plays a critical role in protecting and enabling mission IT by combining deep technical expertise with pragmatic risk management. You will be able to work with minimal direction on a specific programme, taking responsibility for planning, implementing, and assuring security controls across infrastructure, platforms, and applications (including cloud services). You will provide clear security advice and assurance to stakeholders, typically aligned to HMG/MOD expectations and recognised standards (e.g., NIST, CIS benchmarks), and you will support teams by sharing knowledge and guiding good practice. Key Functions / Outputs Vulnerability Management, Reporting & Risk Prioritisation Endpoint, Identity & Cloud Security Engineering (AWS) Incident Response Leadership & Operational Security Secure Configuration, Hardening & Compliance Assurance Security Design Review, Change Impact Assessment & ST&V Stakeholder Engagement, Governance & Decision Support Documentation, Mentoring & Continuous Improvement Main Objectives Vulnerability Management, Reporting & Risk Prioritisation Perform regular vulnerability assessments and generate actionable reporting using approved toolsets. The process should focus on ensuring scanners and signatures are current, coverage is agreed, and findings are prioritised based on risk, mission impact, and exploitability. You will support (and where required lead) triage with engineering teams to drive remediation to closure and provide clear risk narratives to senior stakeholders. Code Scans: perform regular code scans to assess code quality, detect potential bugs, and identify security vulnerabilities; work with development teams to agree remediation approaches and prevent recurrence. Vulnerability Management Tooling: perform regular vulnerability management scans and ensure repositories/plugins are maintained to detect emerging vulnerabilities across endpoints, servers, and cloud workloads. Reporting: produce and quality assure recurring vulnerability and risk reporting for the cyber security and IA lead; highlight trends, systemic issues, and recommendations for control improvements. Endpoint, Identity & Cloud Security Engineering (AWS) Endpoint Protection: drive endpoint security posture through regular updates, policy tuning, and validation activities aligned to current threats and programme requirements. Antivirus and Anti malware Protection: perform assurance checks to ensure controls are deployed successfully, monitored, and kept up to date; define exceptions and compensating controls where needed. Network Controls: perform compliance checks and targeted audits of network security controls (e.g., firewall rules, segmentation, proxying) to ensure unauthorised access and threats are blocked and logged appropriately. Access Control & IAM: design and ensure access controls are implemented correctly to enforce least privilege and need to know across systems and data; provide oversight of privileged access, account lifecycle, and authentication policy. AWS Cloud Security: design and assure cloud security controls across networking, identity, logging/monitoring, and configuration management; validate guardrails and support secure landing zone patterns where applicable. Incident Response Leadership & Operational Security Incident Identification: help to recognise and confirm potential incidents through alerts, logs, and user reports; apply sound judgement to distinguish true threats from false positives. Incident Response: lead or provide senior support to containment, eradication, investigation, and recovery activities; coordinate with service owners and stakeholders to restore operations and capture lessons learning. Tickets & Requests: manage and resolve tickets raised to the Leidos Security group that require Cyber Security Engineering input; prioritise based on risk and impact, and mentor others through complex issues. Secure Configuration, Hardening & Compliance Assurance Patch Updates to Security Products: ensure security toolsets are kept up to date with patches and software updates; assess impact and coordinate change implementation in line with governance. System Compliance: perform and oversee regular compliance audits to ensure systems meet agreed baselines and best practices (e.g., CIS, STIG, NIST); manage exceptions with evidence based rationale and compensating controls. Security Enforcing Function Configuration: assist in the design, review, and improvement of security enforcing functions (e.g., GPOs, system policies, cloud guardrails) to ensure they are compliant, testable, and fit for purpose. Assurance Activities: conduct periodic technical assessments (configuration reviews, control testing, threat driven checks) to identify weaknesses and drive measurable improvements. Security Design Review, Change Impact Assessment & ST&V Security Impact Triage Tool (SITT): lead or support evaluation and impact assessment of proposed changes to security posture; provide clear recommendations, conditions, and required evidence for approval. Security Evaluation, Testing and Assurance (ST&V): plan and execute security evaluation and assurance activities for changes delivered through PI Planning; define test scope, coordinate evidence capture, and ensure outcomes are documented and traceable. Stakeholder Engagement, Governance & Decision Support Security Working Group (SWG) Customer/Supplier Security Forums Vulnerability Triage Security Workshop PI Planning Daily Standups (Blue/Green Team) Documentation, Mentoring & Continuous Improvement Senior Cyber Security Engineers are responsible for creating, maintaining, and reviewing high-quality documentation and security evidence. This includes High Level & Low Level Designs (HLD/LLD), Standard Operating Procedures (SOPs), risk assessments, and compliance/assurance reports. You will also support capability uplift through mentoring, knowledge sharing, and identifying opportunities to automate and improve security processes. Essential Experience Proven experience in a senior cyber security engineering role, delivering security outcomes across complex IT environments (on prem and/or cloud). . click apply for full job details
26/07/2026
Full time
Senior Cyber Security Engineer / Architect / Lead Location: Farnborough Security Clearance Level High: DV - Developed Vetting Role Overview Everything we do is built on a commitment to do the right thing for our customers, our people and our community. Our mission and our values guide the way we do business. The foundation of our Leidos culture is our Values, Beliefs and Expectations by which we select, recognise and reward employees. They create the environment that drives us toward our mission. Inspired to make a difference, we are committed to solving the world's toughest problems. Passionate about customer success, we work closely with our stakeholders to understand, shape, and deliver secure solutions that enable critical outcomes. United as a team, we are bound together by our conviction that ethics and integrity are core to how we operate. In this role, you will be a trusted security practitioner, working with minimal direction on a critical programme and helping to raise the security bar across engineering and operations. Because of a key strategic development and a new exciting business opportunity, we have a requirement for a security-cleared Senior Cyber Security Engineer based in the UK working at our Farnborough site and remotely. Leidos has more than 30 years' experience of developing and running some of the largest government systems in the world. We are currently hiring to expand our UK based technical team who support our delivery for the UK Govt. Come join our team and further develop your skills as we deliver and support systems key to the defence of the UK and partner nations. Being part of the Leidos team is a commitment to push yourself and those around you to do better, constantly adapt and learn new technologies. We're a passionate team and are committed to developing and growing our staff. Leidos is a global science and technology solutions leader working to solve the world's toughest challenges in the defence, intelligence, homeland security, civil, and health markets. The company's 33,000 employees support vital missions for government and commercial customers. What Will You Be Doing? To support current program delivery, we currently have a permanent vacancy for a Senior Cyber Security Engineer to support the development and transition into live of a MOD application and infrastructure solution providing support to a critical operational end user. Leidos is seeking an enthusiastic protective security specialist to lead the implementation and assurance of security within a key defence project. You will contribute across the delivery lifecycle-shaping secure designs, defining and assuring controls, and providing senior-level security engineering support across protective and information security. You will have demonstrable experience applying recognised security frameworks (e.g., Government Functional Standard 007, NIST, CIS benchmarks) to real-world systems and services. You will be joining a team of highly skilled and highly motivated individuals who are working on one of the UKs leading programmes. Required Skills The Senior Cyber Security Engineer (T4) plays a critical role in protecting and enabling mission IT by combining deep technical expertise with pragmatic risk management. You will be able to work with minimal direction on a specific programme, taking responsibility for planning, implementing, and assuring security controls across infrastructure, platforms, and applications (including cloud services). You will provide clear security advice and assurance to stakeholders, typically aligned to HMG/MOD expectations and recognised standards (e.g., NIST, CIS benchmarks), and you will support teams by sharing knowledge and guiding good practice. Key Functions / Outputs Vulnerability Management, Reporting & Risk Prioritisation Endpoint, Identity & Cloud Security Engineering (AWS) Incident Response Leadership & Operational Security Secure Configuration, Hardening & Compliance Assurance Security Design Review, Change Impact Assessment & ST&V Stakeholder Engagement, Governance & Decision Support Documentation, Mentoring & Continuous Improvement Main Objectives Vulnerability Management, Reporting & Risk Prioritisation Perform regular vulnerability assessments and generate actionable reporting using approved toolsets. The process should focus on ensuring scanners and signatures are current, coverage is agreed, and findings are prioritised based on risk, mission impact, and exploitability. You will support (and where required lead) triage with engineering teams to drive remediation to closure and provide clear risk narratives to senior stakeholders. Code Scans: perform regular code scans to assess code quality, detect potential bugs, and identify security vulnerabilities; work with development teams to agree remediation approaches and prevent recurrence. Vulnerability Management Tooling: perform regular vulnerability management scans and ensure repositories/plugins are maintained to detect emerging vulnerabilities across endpoints, servers, and cloud workloads. Reporting: produce and quality assure recurring vulnerability and risk reporting for the cyber security and IA lead; highlight trends, systemic issues, and recommendations for control improvements. Endpoint, Identity & Cloud Security Engineering (AWS) Endpoint Protection: drive endpoint security posture through regular updates, policy tuning, and validation activities aligned to current threats and programme requirements. Antivirus and Anti malware Protection: perform assurance checks to ensure controls are deployed successfully, monitored, and kept up to date; define exceptions and compensating controls where needed. Network Controls: perform compliance checks and targeted audits of network security controls (e.g., firewall rules, segmentation, proxying) to ensure unauthorised access and threats are blocked and logged appropriately. Access Control & IAM: design and ensure access controls are implemented correctly to enforce least privilege and need to know across systems and data; provide oversight of privileged access, account lifecycle, and authentication policy. AWS Cloud Security: design and assure cloud security controls across networking, identity, logging/monitoring, and configuration management; validate guardrails and support secure landing zone patterns where applicable. Incident Response Leadership & Operational Security Incident Identification: help to recognise and confirm potential incidents through alerts, logs, and user reports; apply sound judgement to distinguish true threats from false positives. Incident Response: lead or provide senior support to containment, eradication, investigation, and recovery activities; coordinate with service owners and stakeholders to restore operations and capture lessons learning. Tickets & Requests: manage and resolve tickets raised to the Leidos Security group that require Cyber Security Engineering input; prioritise based on risk and impact, and mentor others through complex issues. Secure Configuration, Hardening & Compliance Assurance Patch Updates to Security Products: ensure security toolsets are kept up to date with patches and software updates; assess impact and coordinate change implementation in line with governance. System Compliance: perform and oversee regular compliance audits to ensure systems meet agreed baselines and best practices (e.g., CIS, STIG, NIST); manage exceptions with evidence based rationale and compensating controls. Security Enforcing Function Configuration: assist in the design, review, and improvement of security enforcing functions (e.g., GPOs, system policies, cloud guardrails) to ensure they are compliant, testable, and fit for purpose. Assurance Activities: conduct periodic technical assessments (configuration reviews, control testing, threat driven checks) to identify weaknesses and drive measurable improvements. Security Design Review, Change Impact Assessment & ST&V Security Impact Triage Tool (SITT): lead or support evaluation and impact assessment of proposed changes to security posture; provide clear recommendations, conditions, and required evidence for approval. Security Evaluation, Testing and Assurance (ST&V): plan and execute security evaluation and assurance activities for changes delivered through PI Planning; define test scope, coordinate evidence capture, and ensure outcomes are documented and traceable. Stakeholder Engagement, Governance & Decision Support Security Working Group (SWG) Customer/Supplier Security Forums Vulnerability Triage Security Workshop PI Planning Daily Standups (Blue/Green Team) Documentation, Mentoring & Continuous Improvement Senior Cyber Security Engineers are responsible for creating, maintaining, and reviewing high-quality documentation and security evidence. This includes High Level & Low Level Designs (HLD/LLD), Standard Operating Procedures (SOPs), risk assessments, and compliance/assurance reports. You will also support capability uplift through mentoring, knowledge sharing, and identifying opportunities to automate and improve security processes. Essential Experience Proven experience in a senior cyber security engineering role, delivering security outcomes across complex IT environments (on prem and/or cloud). . click apply for full job details