Lead Data Product ManagerApplylocations: London York Roadtime type: Full timeposted on: Posted Todayjob requisition id: R198483, United Kingdom Job Family Group: Trading Jobs Worker Type: Regular Posting Start Date: June 22, 2026 Business Unit: Trading and Supply Experience Level: Experienced Professionals Job Description: What's the role As a Lead Data Product Manager, within the Shell Energy Chief Data Office (CDO) organisation, you will own the business-led data product strategy, acquisition design and delivery for Shell Energy Trading & Supply. The role is accountable for translating trading, risk, finance and operations needs into high-value data products, define onboarding priorities, data contracts, target-state designs and adoption outcomes. Working in partnership with Shell's Information & Digital Technology (IDT) group, you will provide deep commodities data context, business design authority and knowledge to ensure engineered solutions are fit for trading use and deliver measurable business value. What you'll be doing Own business-led data product strategy, acquisition design and ingestion priorities Define the business target state and product roadmap for source onboarding, data acquisition priorities, data contracts, schemas, controls and service expectations across trading, risk, finance and operations. Provide product and design authority on what the data product needs to do for the business, including usability, quality, timeliness, lineage, adoption, control requirements and measurable value delivery. Partner with IDT to ensure technical designs on Azure data platforms are fit for purpose, while maintaining clear separation between business design ownership and IDT-led engineering build, infrastructure, cyber and operational run. Industrialise onboarding of sources such as ETRM/Endur, Trayport, market data vendors, SAP and operational data feeds through clear product requirements, SLAs, observability needs, runbook expectations and adoption measures. Translate business context into product outcomes and engineered delivery Bring deep commodities data knowledge across trading lifecycles, market data, reference data, ETRM workflows and risk/finance dependencies to shape practical, commercially relevant solutions. Translate trading desk, risk, operations and finance needs into a prioritised product backlog, clear epics/stories, acceptance criteria and value measures that IDT and engineering teams can deliver against. Contribute to and challenge designs constructively, shaping best practice and partnering with IDT accountabilities for engineering delivery, platform operations or solution architecture ownership. Partner with Product Owners, Business Interface, Solution/Data Architects and IDT delivery leads to align business requirements, data models, master data standards, prioritisation, adoption and delivery plans. Go to Data Manager responsibilities for the domain Steward business data definitions, ownership, lineage, metadata, quality KPIs, access requirements and product adoption metrics; chair data change forums and ensure decisions are grounded in commodities trading context. Apply Shell's technical information & data lifecycle: register, receive, set up/load, update/maintain, publish/archive or dispose; uphold audit trail and records management. Maintain clear decision rights between business SME data ownership and IDT technical delivery, ensuring requirements, controls and acceptance criteria are agreed before build and evidenced at handover. Shape product capacity plans, skills roadmap and vendor contributions; foster a culture of safety, compliance, customer focus and continuous improvement. Operate reliably & safely Oversee resilience, recoverability and cyber hygiene; meet controls for data privacy, confidentiality and regulatory obligations in trading (e.g., REMIT/EMIR, privacy). Drive incident, change & problem management; measure and report service health and user satisfaction. What you bring Deep commodities data knowledge, ideally within energy trading, including ETRM/Endur workflows, market data, reference data, trade lifecycle, risk, finance and operations data dependencies. Proven ability to translate business needs into data product designs, requirements, data contracts, controls, prioritised backlogs and adoption outcomes that engineering teams can execute. Strong product and technical judgement across modern data platforms, ingestion patterns, APIs, streaming/batch, schema management, CDC, metadata, lineage and data quality, with the ability to assess what good looks like. Experience leading cross-functional product delivery through Product Owners, architects, engineers and business SMEs; comfortable shaping acceptance criteria, priorities, value measures and handover into production. Practical exposure to Azure data services, Databricks, SQL, Python/Spark, event-based integration and DevOps practices; hands-on engineering experience is beneficial. Degree in a relevant discipline or equivalent experience; Azure Data Engineer, Databricks or data governance certifications are a plus. What we offer You bring your skills and experience to Shell and in return you work with talented, committed people on one of the most important challenges facing our planet. You'll have the opportunity to develop the skills you need to grow in an environment where we value honesty, integrity, and respect for one another. You'll be able to balance your priorities as you become the best version of yourself. Progress as a person as we work on the energy transition together. Continuously grow the transferable skills you need to get ahead. Work at the forefront of technology, trends, and practices. Collaborate with experienced colleagues with unique expertise. Achieve your balance in a values-led culture that encourages you to be the best version of yourself. Benefit from a range of flexible working options. Perform at your best with a competitive starting salary and annual performance related salary increase - our pay and benefits packages are considered to be among the best in the world. Take advantage of paid parental leave, including for non-birthing parents. Join an organisation working to become one of the most diverse and inclusive in the world. We strongly encourage applicants of all genders, ages, ethnicities, cultures, abilities, sexual orientation, and life experiences to apply. Grow as you progress through diverse career opportunities in national and international teams. Gain access to a wide range of training and development programmes.We are committed to attracting a broader and more diverse pool of candidates. If this position doesn't feel like the perfect fit for your qualifications right now, we'd still love to hear from you.Shell is working to advance an inclusive, psychologically safe and accessible environment where people with disabilities can excel. If you require any accommodations or accessibility adjustments (e.g. assistive technology, communication support, or other) during the application or interview process, please let us know when prompted in your application. We strive to ensure that our process and workplace is accessible to everyone and are dedicated to making reasonable adjustments to support your needs. Shell in The United Kingdom Shell UK remains one of the North Sea's biggest producers, supplying around 10% of the UK's total oil and gas needs. But perhaps the most recognisable face of Shell in the UK is our network of over 1,000 Shell-branded service stations.In the years ahead, as the UK looks to strengthen energy security and deliver its 2050 net-zero goal, Shell UK aims to play a crucial role. We aim to be a major investor in the UK energy system by helping our customers decarbonise with a focus on transport and industry.- DISCLAIMER: Please note: We occasionally amend or withdraw Shell jobs and reserve the right to do so at any time, including prior to the advertised closing date. Before applying, you are advised to read our data protection policy. This policy describes the processing that may be associated with your personal data and informs you that your personal data may be transferred to Shell/Shell Group companies around the world. The Shell Group and its approved recruitment consultants will never ask you for a fee to process or consider your application for a career with Shell. Anyone who demands such a fee is not an authorised Shell representative and you are strongly advised to refuse any such demand. Shell is an Equal Opportunity Employer.
24/06/2026
Full time
Lead Data Product ManagerApplylocations: London York Roadtime type: Full timeposted on: Posted Todayjob requisition id: R198483, United Kingdom Job Family Group: Trading Jobs Worker Type: Regular Posting Start Date: June 22, 2026 Business Unit: Trading and Supply Experience Level: Experienced Professionals Job Description: What's the role As a Lead Data Product Manager, within the Shell Energy Chief Data Office (CDO) organisation, you will own the business-led data product strategy, acquisition design and delivery for Shell Energy Trading & Supply. The role is accountable for translating trading, risk, finance and operations needs into high-value data products, define onboarding priorities, data contracts, target-state designs and adoption outcomes. Working in partnership with Shell's Information & Digital Technology (IDT) group, you will provide deep commodities data context, business design authority and knowledge to ensure engineered solutions are fit for trading use and deliver measurable business value. What you'll be doing Own business-led data product strategy, acquisition design and ingestion priorities Define the business target state and product roadmap for source onboarding, data acquisition priorities, data contracts, schemas, controls and service expectations across trading, risk, finance and operations. Provide product and design authority on what the data product needs to do for the business, including usability, quality, timeliness, lineage, adoption, control requirements and measurable value delivery. Partner with IDT to ensure technical designs on Azure data platforms are fit for purpose, while maintaining clear separation between business design ownership and IDT-led engineering build, infrastructure, cyber and operational run. Industrialise onboarding of sources such as ETRM/Endur, Trayport, market data vendors, SAP and operational data feeds through clear product requirements, SLAs, observability needs, runbook expectations and adoption measures. Translate business context into product outcomes and engineered delivery Bring deep commodities data knowledge across trading lifecycles, market data, reference data, ETRM workflows and risk/finance dependencies to shape practical, commercially relevant solutions. Translate trading desk, risk, operations and finance needs into a prioritised product backlog, clear epics/stories, acceptance criteria and value measures that IDT and engineering teams can deliver against. Contribute to and challenge designs constructively, shaping best practice and partnering with IDT accountabilities for engineering delivery, platform operations or solution architecture ownership. Partner with Product Owners, Business Interface, Solution/Data Architects and IDT delivery leads to align business requirements, data models, master data standards, prioritisation, adoption and delivery plans. Go to Data Manager responsibilities for the domain Steward business data definitions, ownership, lineage, metadata, quality KPIs, access requirements and product adoption metrics; chair data change forums and ensure decisions are grounded in commodities trading context. Apply Shell's technical information & data lifecycle: register, receive, set up/load, update/maintain, publish/archive or dispose; uphold audit trail and records management. Maintain clear decision rights between business SME data ownership and IDT technical delivery, ensuring requirements, controls and acceptance criteria are agreed before build and evidenced at handover. Shape product capacity plans, skills roadmap and vendor contributions; foster a culture of safety, compliance, customer focus and continuous improvement. Operate reliably & safely Oversee resilience, recoverability and cyber hygiene; meet controls for data privacy, confidentiality and regulatory obligations in trading (e.g., REMIT/EMIR, privacy). Drive incident, change & problem management; measure and report service health and user satisfaction. What you bring Deep commodities data knowledge, ideally within energy trading, including ETRM/Endur workflows, market data, reference data, trade lifecycle, risk, finance and operations data dependencies. Proven ability to translate business needs into data product designs, requirements, data contracts, controls, prioritised backlogs and adoption outcomes that engineering teams can execute. Strong product and technical judgement across modern data platforms, ingestion patterns, APIs, streaming/batch, schema management, CDC, metadata, lineage and data quality, with the ability to assess what good looks like. Experience leading cross-functional product delivery through Product Owners, architects, engineers and business SMEs; comfortable shaping acceptance criteria, priorities, value measures and handover into production. Practical exposure to Azure data services, Databricks, SQL, Python/Spark, event-based integration and DevOps practices; hands-on engineering experience is beneficial. Degree in a relevant discipline or equivalent experience; Azure Data Engineer, Databricks or data governance certifications are a plus. What we offer You bring your skills and experience to Shell and in return you work with talented, committed people on one of the most important challenges facing our planet. You'll have the opportunity to develop the skills you need to grow in an environment where we value honesty, integrity, and respect for one another. You'll be able to balance your priorities as you become the best version of yourself. Progress as a person as we work on the energy transition together. Continuously grow the transferable skills you need to get ahead. Work at the forefront of technology, trends, and practices. Collaborate with experienced colleagues with unique expertise. Achieve your balance in a values-led culture that encourages you to be the best version of yourself. Benefit from a range of flexible working options. Perform at your best with a competitive starting salary and annual performance related salary increase - our pay and benefits packages are considered to be among the best in the world. Take advantage of paid parental leave, including for non-birthing parents. Join an organisation working to become one of the most diverse and inclusive in the world. We strongly encourage applicants of all genders, ages, ethnicities, cultures, abilities, sexual orientation, and life experiences to apply. Grow as you progress through diverse career opportunities in national and international teams. Gain access to a wide range of training and development programmes.We are committed to attracting a broader and more diverse pool of candidates. If this position doesn't feel like the perfect fit for your qualifications right now, we'd still love to hear from you.Shell is working to advance an inclusive, psychologically safe and accessible environment where people with disabilities can excel. If you require any accommodations or accessibility adjustments (e.g. assistive technology, communication support, or other) during the application or interview process, please let us know when prompted in your application. We strive to ensure that our process and workplace is accessible to everyone and are dedicated to making reasonable adjustments to support your needs. Shell in The United Kingdom Shell UK remains one of the North Sea's biggest producers, supplying around 10% of the UK's total oil and gas needs. But perhaps the most recognisable face of Shell in the UK is our network of over 1,000 Shell-branded service stations.In the years ahead, as the UK looks to strengthen energy security and deliver its 2050 net-zero goal, Shell UK aims to play a crucial role. We aim to be a major investor in the UK energy system by helping our customers decarbonise with a focus on transport and industry.- DISCLAIMER: Please note: We occasionally amend or withdraw Shell jobs and reserve the right to do so at any time, including prior to the advertised closing date. Before applying, you are advised to read our data protection policy. This policy describes the processing that may be associated with your personal data and informs you that your personal data may be transferred to Shell/Shell Group companies around the world. The Shell Group and its approved recruitment consultants will never ask you for a fee to process or consider your application for a career with Shell. Anyone who demands such a fee is not an authorised Shell representative and you are strongly advised to refuse any such demand. Shell is an Equal Opportunity Employer.
Select how often (in days) to receive an alert: Date: 16 Apr 2026 Company: Alstom Appointment Basis: Permanent Apply by: 30/04/2026 At Alstom, we understand transport networks and what moves people. From high-speed trains, metros, monorails, and trams, to turnkey systems, services, infrastructure, signalling and digital mobility, we offer our diverse customers the broadest portfolio in the industry. Every day, 80,000 colleagues lead the way to greener and smarter mobility worldwide, connecting cities as we reduce carbon and replace cars. Your future role The Chief Engineer - Performance ensures that train performance meets customer and regulatory requirements while complying with project QCD objectives (Quality, Cost, Delivery). Acting as the main technical focal point for the customer, the Chief Engineer manages train-level performance requirements and specifications, allocates them to sub-systems, and supports design convergence throughout the project lifecycle. We'll look to you for: Acts as main technical focal point for the customer for system and train level performance topics for Life on Board Leads the system development and validation at train level (system definition, architecture, performances, function on the sub system) Ensures conversion of customer and regulatory requirements into train level requirements & specifications Collects and analyses customer needs and requirements Leads development of a consistent set of train level requirements & specifications, complying with Alstom standards Leads functional analysis, specification, and architecture up to the system interface and collaborated with Sub-Systems Groups, supplier and Central teams Leads requirements specification and allocation to sub-system level, including electrical & functional interfaces definition Supports System Engineers and Sub-Systems Engineers and ensures that Sub-Systems design is converging toward specified targets along project life cycle and standardisation targets Lead verification and validation activities at system level for Life on Board During train revenue service leads technical open issues resolution in line with project strategy, from investigation to modification implementation and problem closure Is responsible for ensuring cyber security requirements are met for all Life on Board systems All about you We value passion and attitude over experience. That's why we don't expect you to have every single skill. Instead, we've listed some that we think will help you succeed and grow in this role: Extensive knowledge of products, projects, systems, Metier process and railway engineering Experience of team/technical management including Cross Functional Collaboration Ability to switch between problem perspective to solution perspective Ability to lead a system within a project team Ability to challenge and to be challenged Ability to foster communications between multiple stakeholders / metiers Ability for analysis, problem-solving and efficient decision-making in complex environment Readiness to travel when required Experience on major railway project(s), on different product types (metros, commuters etc.) is highly desirable Knowledge of railway operability aspects as an input to system design Experience in requirements management using DOORS Knowledge in the application of Model-Based Systems Engineering (MBSE) and Systems Modelling Language (SysML) Things you'll enjoy Join us on a life-long transformative journey - the rail industry is here to stay, so you can grow and develop new skills and experiences throughout your career. You'll also: Enjoy stability, challenges and a long-term career free from boring daily routines Collaborate with transverse teams and helpful colleagues Contribute to innovative projects Utilise our dynamic, inclusive, and safety-focused working environment Steer your career in whatever direction you choose across functions and countries Benefit from our investment in your development, through award-winning learning Benefit from a fair and dynamic reward package that recognises your performance and potential, plus comprehensive and competitive social coverage (life, medical, pension) Up to 52 weeks full maternity and adoption pay 25 days annual leave plus bank holidays, with the opportunity to buy or sell holiday A wide range of flexible benefits that you can tailor to suit your lifestyle You don't need to be a train enthusiast to thrive with us. We guarantee that when you step onto one of our trains with your friends or family, you'll be proud. If you're up for the challenge, we'd love to hear from you! Equal opportunity statement Alstom is an equal opportunity employer committed to creating an inclusive working environment where all our employees are encouraged to reach their full potential, and individual differences are valued and respected. All qualified applicants are considered for employment without regard to race, colour, religion, gender, sexual orientation, gender identity, age, national origin, disability status, or any other characteristic protected by local law. As a 'Disability Confident' employer, we will interview all disabled job applicants who match the essential criteria of the job description or specification. We will consider flexible working requests for all roles unless operational requirements prevent otherwise.
24/06/2026
Full time
Select how often (in days) to receive an alert: Date: 16 Apr 2026 Company: Alstom Appointment Basis: Permanent Apply by: 30/04/2026 At Alstom, we understand transport networks and what moves people. From high-speed trains, metros, monorails, and trams, to turnkey systems, services, infrastructure, signalling and digital mobility, we offer our diverse customers the broadest portfolio in the industry. Every day, 80,000 colleagues lead the way to greener and smarter mobility worldwide, connecting cities as we reduce carbon and replace cars. Your future role The Chief Engineer - Performance ensures that train performance meets customer and regulatory requirements while complying with project QCD objectives (Quality, Cost, Delivery). Acting as the main technical focal point for the customer, the Chief Engineer manages train-level performance requirements and specifications, allocates them to sub-systems, and supports design convergence throughout the project lifecycle. We'll look to you for: Acts as main technical focal point for the customer for system and train level performance topics for Life on Board Leads the system development and validation at train level (system definition, architecture, performances, function on the sub system) Ensures conversion of customer and regulatory requirements into train level requirements & specifications Collects and analyses customer needs and requirements Leads development of a consistent set of train level requirements & specifications, complying with Alstom standards Leads functional analysis, specification, and architecture up to the system interface and collaborated with Sub-Systems Groups, supplier and Central teams Leads requirements specification and allocation to sub-system level, including electrical & functional interfaces definition Supports System Engineers and Sub-Systems Engineers and ensures that Sub-Systems design is converging toward specified targets along project life cycle and standardisation targets Lead verification and validation activities at system level for Life on Board During train revenue service leads technical open issues resolution in line with project strategy, from investigation to modification implementation and problem closure Is responsible for ensuring cyber security requirements are met for all Life on Board systems All about you We value passion and attitude over experience. That's why we don't expect you to have every single skill. Instead, we've listed some that we think will help you succeed and grow in this role: Extensive knowledge of products, projects, systems, Metier process and railway engineering Experience of team/technical management including Cross Functional Collaboration Ability to switch between problem perspective to solution perspective Ability to lead a system within a project team Ability to challenge and to be challenged Ability to foster communications between multiple stakeholders / metiers Ability for analysis, problem-solving and efficient decision-making in complex environment Readiness to travel when required Experience on major railway project(s), on different product types (metros, commuters etc.) is highly desirable Knowledge of railway operability aspects as an input to system design Experience in requirements management using DOORS Knowledge in the application of Model-Based Systems Engineering (MBSE) and Systems Modelling Language (SysML) Things you'll enjoy Join us on a life-long transformative journey - the rail industry is here to stay, so you can grow and develop new skills and experiences throughout your career. You'll also: Enjoy stability, challenges and a long-term career free from boring daily routines Collaborate with transverse teams and helpful colleagues Contribute to innovative projects Utilise our dynamic, inclusive, and safety-focused working environment Steer your career in whatever direction you choose across functions and countries Benefit from our investment in your development, through award-winning learning Benefit from a fair and dynamic reward package that recognises your performance and potential, plus comprehensive and competitive social coverage (life, medical, pension) Up to 52 weeks full maternity and adoption pay 25 days annual leave plus bank holidays, with the opportunity to buy or sell holiday A wide range of flexible benefits that you can tailor to suit your lifestyle You don't need to be a train enthusiast to thrive with us. We guarantee that when you step onto one of our trains with your friends or family, you'll be proud. If you're up for the challenge, we'd love to hear from you! Equal opportunity statement Alstom is an equal opportunity employer committed to creating an inclusive working environment where all our employees are encouraged to reach their full potential, and individual differences are valued and respected. All qualified applicants are considered for employment without regard to race, colour, religion, gender, sexual orientation, gender identity, age, national origin, disability status, or any other characteristic protected by local law. As a 'Disability Confident' employer, we will interview all disabled job applicants who match the essential criteria of the job description or specification. We will consider flexible working requests for all roles unless operational requirements prevent otherwise.
Alexander Mann Solutions - Public Sector Resourcing
On behalf of HS2, we are looking for a Lead Security Architect (Inside IR35) for a 6 Month hybrid contract up to 2 days per week based in Birmingham. Job purpose The Lead Security Architect is responsible for leading the development of security architecture and processes to embed the strategic application of security-related change across HS2's systems and solutions. The role owns the security domain architecture and oversees the design of HS2 security systems, setting appropriate design guardrails, standards, and policies to guide the development and implementation of products and platforms across HS2. Role of Directorate and Capability IT sits within the CFO Directorate, playing an essential role in daily operations and success of the programme. The department provides technical leadership, advisory and delivery of IT services across HS2 Ltd, enabling the delivery of HS2's mission. Accountabilities/Responsibilities . Develop and implement enterprise-wide security architecture policies, patterns, processes and guardrails to embed the strategic application of change to ensure resilience of HS2-wide systems and solutions. . Establish and manage the Security Architecture practice and capabilities across HS2, leading knowledge sharing and skills development efforts and driving consistency across HS2 . Oversee the design of HS2 security systems, setting appropriate design guardrails, standards, and policies, balancing functional and non-functional requirements, and managing associated risks. . Set strategies, policies, standards and practices to ensure compliance and alignment between business strategies, technology strategies, and security activities. . Lead definition and continued maturity of Security Architecture frameworks which aligns to wider enterprise-wide architecture. . Capture and prioritise market and environmental trends that impact security, identifying business benefits of alternative security strategies. . Support the development of HS2 IT's information security strategy, ensuring that it aligns with wider Enterprise Architecture standards and HS2 IT objectives. . Build strategic relationships with external stakeholders to understand security requirements and pain-points. . Support the development of wider security roadmaps that provide proactive capabilities which enable business objectives. . Actively promote and embed Equality Diversity and Inclusion (EDI) in all your work, and support and comply with all organisational initiatives, policies and procedures on EDI. Skills: . Security and Enterprise-wide architecture. Ability to develop a security architecture and support the development of a future state architecture aligned to strategy. Ability to support the translation of business drivers, goals and constraints into business objectives . Governance and assurance. Ability to evolve and define governance and take responsibility for working with other stakeholders across HS2's wider governance structure. Assure standards, guardrails and principles to effectively govern delivery . Problem definition and shaping. Ability to define security-related strategies and policies, providing guidance to others on working within a strategic context. . Agile working. Ability to coach and lead teams in Agile and Lean practices . Stakeholder communication. Ability to communicate with stakeholders at all levels and manage stakeholder expectations . Emerging technology monitoring. Ability to identify and assess new and emerging technologies, products, services, methods and techniques Knowledge: . Knowledge of IT Security Frameworks, methodologies, and best practice/guidance such as NCSC standards . Secure by Design Principles . Familiarity with ISO 27001 and Cyber Essentials Plus . Knowledge of agile methods and their implications for Security Architecture . Knowledge of architecture principles, patterns, and their application within an organisation Type of Experience: . Experience across industry frameworks and best practices (eg, NCSC CAF, CIS CSC, etc.) . Experience of supporting design for complex solutions including risks and remedies . Experience of overseeing high-level designs for major solutions, managing design requirements, and maintaining an audit trial for a design control process . Experience of defining complex technical models and communicating technical models clearly to stakeholders at all levels. . Experience of successfully applying Security Architecture methods and approaches to complex scenarios. . Experience working in a multi-vendor environment. . Experience working with system architectures, displaying a strong understanding of the impact of vulnerabilities on varied systems Please be aware that this role can only be worked within the UK and not Overseas. Disability Confident As a member of the Disability Confident Scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. This scheme encourages candidates with a disability and/or neurodivergence to apply. In applying for this role, you acknowledge the following "this role falls in scope of the Off Payroll Working in the Public Sector legislation. Any rates of payment quoted will reflect the gross rate per day for the assignment and will be subject to appropriate taxes and statutory costs. As such the payment to the intermediary and your income resulting from this contract will be different".
24/06/2026
Contractor
On behalf of HS2, we are looking for a Lead Security Architect (Inside IR35) for a 6 Month hybrid contract up to 2 days per week based in Birmingham. Job purpose The Lead Security Architect is responsible for leading the development of security architecture and processes to embed the strategic application of security-related change across HS2's systems and solutions. The role owns the security domain architecture and oversees the design of HS2 security systems, setting appropriate design guardrails, standards, and policies to guide the development and implementation of products and platforms across HS2. Role of Directorate and Capability IT sits within the CFO Directorate, playing an essential role in daily operations and success of the programme. The department provides technical leadership, advisory and delivery of IT services across HS2 Ltd, enabling the delivery of HS2's mission. Accountabilities/Responsibilities . Develop and implement enterprise-wide security architecture policies, patterns, processes and guardrails to embed the strategic application of change to ensure resilience of HS2-wide systems and solutions. . Establish and manage the Security Architecture practice and capabilities across HS2, leading knowledge sharing and skills development efforts and driving consistency across HS2 . Oversee the design of HS2 security systems, setting appropriate design guardrails, standards, and policies, balancing functional and non-functional requirements, and managing associated risks. . Set strategies, policies, standards and practices to ensure compliance and alignment between business strategies, technology strategies, and security activities. . Lead definition and continued maturity of Security Architecture frameworks which aligns to wider enterprise-wide architecture. . Capture and prioritise market and environmental trends that impact security, identifying business benefits of alternative security strategies. . Support the development of HS2 IT's information security strategy, ensuring that it aligns with wider Enterprise Architecture standards and HS2 IT objectives. . Build strategic relationships with external stakeholders to understand security requirements and pain-points. . Support the development of wider security roadmaps that provide proactive capabilities which enable business objectives. . Actively promote and embed Equality Diversity and Inclusion (EDI) in all your work, and support and comply with all organisational initiatives, policies and procedures on EDI. Skills: . Security and Enterprise-wide architecture. Ability to develop a security architecture and support the development of a future state architecture aligned to strategy. Ability to support the translation of business drivers, goals and constraints into business objectives . Governance and assurance. Ability to evolve and define governance and take responsibility for working with other stakeholders across HS2's wider governance structure. Assure standards, guardrails and principles to effectively govern delivery . Problem definition and shaping. Ability to define security-related strategies and policies, providing guidance to others on working within a strategic context. . Agile working. Ability to coach and lead teams in Agile and Lean practices . Stakeholder communication. Ability to communicate with stakeholders at all levels and manage stakeholder expectations . Emerging technology monitoring. Ability to identify and assess new and emerging technologies, products, services, methods and techniques Knowledge: . Knowledge of IT Security Frameworks, methodologies, and best practice/guidance such as NCSC standards . Secure by Design Principles . Familiarity with ISO 27001 and Cyber Essentials Plus . Knowledge of agile methods and their implications for Security Architecture . Knowledge of architecture principles, patterns, and their application within an organisation Type of Experience: . Experience across industry frameworks and best practices (eg, NCSC CAF, CIS CSC, etc.) . Experience of supporting design for complex solutions including risks and remedies . Experience of overseeing high-level designs for major solutions, managing design requirements, and maintaining an audit trial for a design control process . Experience of defining complex technical models and communicating technical models clearly to stakeholders at all levels. . Experience of successfully applying Security Architecture methods and approaches to complex scenarios. . Experience working in a multi-vendor environment. . Experience working with system architectures, displaying a strong understanding of the impact of vulnerabilities on varied systems Please be aware that this role can only be worked within the UK and not Overseas. Disability Confident As a member of the Disability Confident Scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. This scheme encourages candidates with a disability and/or neurodivergence to apply. In applying for this role, you acknowledge the following "this role falls in scope of the Off Payroll Working in the Public Sector legislation. Any rates of payment quoted will reflect the gross rate per day for the assignment and will be subject to appropriate taxes and statutory costs. As such the payment to the intermediary and your income resulting from this contract will be different".
Architect: Infrastructure & Access Management The Opportunity Our client is a leading international law firm, recognised for representing the world's major corporations, funds, and financial institutions in their most complex transactions and disputes. We are looking for a talented and experienced Architect: Infrastructure & Access Management to join the firms IT department in London. This is a high-impact role at the heart of our global security and identity strategy, offering the chance to shape architecture at enterprise scale while collaborating with top-tier colleagues across regions. What You'll Do You will lead the design and evolution of our Identity and Access Management (IAM) architecture across a complex, global environment. Key responsibilities include: Developing and maintaining IAM architecture covering identity life cycle, access governance, and privileged access controls Designing secure authentication and authorisation patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP) and Conditional Access policies aligned with Microsoft best practices Embedding zero trust and least privilege principles across all privileged roles and enterprise applications Owning global Firewall design and architecture Architecting and enhancing Privileged Access Management (PAM) capabilities, including approval workflows and continuous monitoring Championing Identity Threat Detection and Response (ITDR) solutions to proactively mitigate identity-based attacks Guiding the hardening of multi-site Active Directory domains/forests and cloud identity components (Entra/Azure AD) Collaborating with Security to design Azure Policies and guardrails supporting audit readiness (ISO 27001, ISO 22301) Integrating IAM with HR, IT, and engineering systems throughout the user life cycle Staying ahead of emerging technologies including passwordless authentication, decentralised identity frameworks, and adaptive access controls What We're Looking For Qualifications & Experience Proven background in IAM/identity engineering or architecture within large enterprise environments Prior global or large-scale enterprise experience preferred Microsoft Certified: Identity and Access Administrator Associate CISSP or equivalent Azure Cybersecurity Expert or Certified Identity and Access Manager (CIAM) Technical Skills Deep expertise in Microsoft identity and security across SaaS/PaaS, IAM, and Privileged Access domains Advanced knowledge of Entra ID/Azure AD and on-premises Active Directory Strong command of SSO and authentication protocols: OpenID Connect, SAML, OAuth, Kerberos, LDAP Hands-on experience with RBAC design, entitlement management, and automated provisioning pipelines Proficiency with PowerShell and RESTful integrations for identity automation Familiarity with NDR, Micro-Segmentation, and network topology as they relate to IAM Experience with Azure Policy, landing zone guardrails, and Conditional Access at scale
24/06/2026
Full time
Architect: Infrastructure & Access Management The Opportunity Our client is a leading international law firm, recognised for representing the world's major corporations, funds, and financial institutions in their most complex transactions and disputes. We are looking for a talented and experienced Architect: Infrastructure & Access Management to join the firms IT department in London. This is a high-impact role at the heart of our global security and identity strategy, offering the chance to shape architecture at enterprise scale while collaborating with top-tier colleagues across regions. What You'll Do You will lead the design and evolution of our Identity and Access Management (IAM) architecture across a complex, global environment. Key responsibilities include: Developing and maintaining IAM architecture covering identity life cycle, access governance, and privileged access controls Designing secure authentication and authorisation patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP) and Conditional Access policies aligned with Microsoft best practices Embedding zero trust and least privilege principles across all privileged roles and enterprise applications Owning global Firewall design and architecture Architecting and enhancing Privileged Access Management (PAM) capabilities, including approval workflows and continuous monitoring Championing Identity Threat Detection and Response (ITDR) solutions to proactively mitigate identity-based attacks Guiding the hardening of multi-site Active Directory domains/forests and cloud identity components (Entra/Azure AD) Collaborating with Security to design Azure Policies and guardrails supporting audit readiness (ISO 27001, ISO 22301) Integrating IAM with HR, IT, and engineering systems throughout the user life cycle Staying ahead of emerging technologies including passwordless authentication, decentralised identity frameworks, and adaptive access controls What We're Looking For Qualifications & Experience Proven background in IAM/identity engineering or architecture within large enterprise environments Prior global or large-scale enterprise experience preferred Microsoft Certified: Identity and Access Administrator Associate CISSP or equivalent Azure Cybersecurity Expert or Certified Identity and Access Manager (CIAM) Technical Skills Deep expertise in Microsoft identity and security across SaaS/PaaS, IAM, and Privileged Access domains Advanced knowledge of Entra ID/Azure AD and on-premises Active Directory Strong command of SSO and authentication protocols: OpenID Connect, SAML, OAuth, Kerberos, LDAP Hands-on experience with RBAC design, entitlement management, and automated provisioning pipelines Proficiency with PowerShell and RESTful integrations for identity automation Familiarity with NDR, Micro-Segmentation, and network topology as they relate to IAM Experience with Azure Policy, landing zone guardrails, and Conditional Access at scale
We are looking for a Principal Architect to lead our technology strategy in AI (Artificial Intelligence), Generative AI, IA (Intelligent Automation) and agentic solution development. As a vital force driving the strategic and technical evolution of the Global Streaming Platform, this role empowers the organisation to harness ground breaking advancements in AI, including Large Language Models (LLMs), agent workflows, and machine learning infrastructures. By seamlessly integrating these cutting edge technologies into secure, scalable, and high performance enterprise solutions, the Principal Architect will enable transformative growth and ensure the company maintains its position as a world class leader. This role requires deep knowledge in AI and IA technologies, strong architectural skills, and a strategic approach to recommend tailored platform transformations and deliver advanced AI solutions to maintain the business at its world class position. What you'll do: Architectural Leadership Oversee the comprehensive architecture strategy for developing and deploying AI applications and solutions, considering data management, cybersecurity, legal aspects, appropriate platform and infrastructure adaptation and third party vendor selection and integration. Recommend the tailored level of transformation required within the current platform to adapt and exploit at scale the adoption of AI based technologies guaranteeing cost efficiency, reliability, performance and security. Design and maintain an AI extension to the platform as an integrated technology stack, independent of any specific vendors but capable of integrating with major AI models and third party commodities, for porting self serving AI in house developed solutions. Contribute to the AI roadmap and identify AI driven efficiency, innovation or automation opportunities maintaining alignment with business goals, regulatory or compliance requirements and ethical principles. Solution Design Partner with product and engineering teams to translate business requirements into scalable AI solutions. Lead the evaluation, selection, and integration of AI platforms and models, tools, and technologies. Ensure optimized integration of AI solutions with existing systems and data sources. Technical Expertise Collaborate with the product teams to assist in the refinement of AI related product requirements, and to provide early, high level advice on opportunities and possible solutions. Stay current with emerging AI trends, technologies, protocols, research breakthroughs, model development and AI software design pattern and best practices. Provide technical guidance and mentorship to the engineering teams. Collaboration and Communication Foster strong relationships with stakeholders, including business leaders, product managers. Collaborate with senior leadership to align AI initiatives with organizational goals. Communicate complex technical concepts to non technical stakeholders effectively. Promote a collaborative and innovative AI culture within the whole organisation. Work closely with project managers, data scientists, developers and IT teams to define project scope, objectives, deliverables and solutions. Partner with the FinOps team to ensure implementation of adequate monitoring and budgetary guardrails. Work closely with the procurement and legal team in the negotiations with vendors. Governance and Compliance Establish governance and define internal standards, guidelines, and best practices to ensure data privacy, security, and ethical use of AI. Ensure compliance with industry standards and international regulations. What you'll bring: Advanced degree in Computer Science, AI, or a related field. Contributions to open source AI projects or published research in AI/ML. Extensive experience in software or systems architecture, with strong focus in AI/ML domains. Proven experience designing and deploying AI solutions using frameworks such as LangChain, RAG, and vector databases or the MCP protocol. Deep understanding of LLMs, prompt engineering, model evaluation, and fine tuning strategies. Strong proficiency in ML frameworks (e.g., TensorFlow, PyTorch) and cloud platforms (AWS, Azure, GCP). Experience with AI infrastructure components including model gateways, orchestration layers, and observability tools. Familiarity with AI governance, data privacy, international regulation and ethical AI frameworks. Excellent leadership, communication, and interpersonal skills. Strong analytical and problem solving abilities. Ability to work in a fast paced, dynamic environment. The rewards There's one thing people can't stop talking about when it comes to : the perks. Here's a taster: Sky Q, for the TV you love all in one place The magic of Sky Glass at an exclusive rate A generous pension package Private healthcare Discounted mobile and broadband A wide range of Sky VIP rewards and experiences Your office space Osterley Our Osterley Campus is a 10 minute walk from Syon Lane train station. Or you can hop on one of our free shuttle buses that run to and from Osterley, Gunnersbury, Ealing Broadway and South Ealing tube stations. There are also plenty of bike shelters and showers. On campus, you'll find 13 subsidised restaurants, cafes, and a Waitrose. You can keep in shape at our subsidised gym, catch the latest shows and movies at our cinema, get your car washed, and even get pampered at our beauty salon.
23/06/2026
Full time
We are looking for a Principal Architect to lead our technology strategy in AI (Artificial Intelligence), Generative AI, IA (Intelligent Automation) and agentic solution development. As a vital force driving the strategic and technical evolution of the Global Streaming Platform, this role empowers the organisation to harness ground breaking advancements in AI, including Large Language Models (LLMs), agent workflows, and machine learning infrastructures. By seamlessly integrating these cutting edge technologies into secure, scalable, and high performance enterprise solutions, the Principal Architect will enable transformative growth and ensure the company maintains its position as a world class leader. This role requires deep knowledge in AI and IA technologies, strong architectural skills, and a strategic approach to recommend tailored platform transformations and deliver advanced AI solutions to maintain the business at its world class position. What you'll do: Architectural Leadership Oversee the comprehensive architecture strategy for developing and deploying AI applications and solutions, considering data management, cybersecurity, legal aspects, appropriate platform and infrastructure adaptation and third party vendor selection and integration. Recommend the tailored level of transformation required within the current platform to adapt and exploit at scale the adoption of AI based technologies guaranteeing cost efficiency, reliability, performance and security. Design and maintain an AI extension to the platform as an integrated technology stack, independent of any specific vendors but capable of integrating with major AI models and third party commodities, for porting self serving AI in house developed solutions. Contribute to the AI roadmap and identify AI driven efficiency, innovation or automation opportunities maintaining alignment with business goals, regulatory or compliance requirements and ethical principles. Solution Design Partner with product and engineering teams to translate business requirements into scalable AI solutions. Lead the evaluation, selection, and integration of AI platforms and models, tools, and technologies. Ensure optimized integration of AI solutions with existing systems and data sources. Technical Expertise Collaborate with the product teams to assist in the refinement of AI related product requirements, and to provide early, high level advice on opportunities and possible solutions. Stay current with emerging AI trends, technologies, protocols, research breakthroughs, model development and AI software design pattern and best practices. Provide technical guidance and mentorship to the engineering teams. Collaboration and Communication Foster strong relationships with stakeholders, including business leaders, product managers. Collaborate with senior leadership to align AI initiatives with organizational goals. Communicate complex technical concepts to non technical stakeholders effectively. Promote a collaborative and innovative AI culture within the whole organisation. Work closely with project managers, data scientists, developers and IT teams to define project scope, objectives, deliverables and solutions. Partner with the FinOps team to ensure implementation of adequate monitoring and budgetary guardrails. Work closely with the procurement and legal team in the negotiations with vendors. Governance and Compliance Establish governance and define internal standards, guidelines, and best practices to ensure data privacy, security, and ethical use of AI. Ensure compliance with industry standards and international regulations. What you'll bring: Advanced degree in Computer Science, AI, or a related field. Contributions to open source AI projects or published research in AI/ML. Extensive experience in software or systems architecture, with strong focus in AI/ML domains. Proven experience designing and deploying AI solutions using frameworks such as LangChain, RAG, and vector databases or the MCP protocol. Deep understanding of LLMs, prompt engineering, model evaluation, and fine tuning strategies. Strong proficiency in ML frameworks (e.g., TensorFlow, PyTorch) and cloud platforms (AWS, Azure, GCP). Experience with AI infrastructure components including model gateways, orchestration layers, and observability tools. Familiarity with AI governance, data privacy, international regulation and ethical AI frameworks. Excellent leadership, communication, and interpersonal skills. Strong analytical and problem solving abilities. Ability to work in a fast paced, dynamic environment. The rewards There's one thing people can't stop talking about when it comes to : the perks. Here's a taster: Sky Q, for the TV you love all in one place The magic of Sky Glass at an exclusive rate A generous pension package Private healthcare Discounted mobile and broadband A wide range of Sky VIP rewards and experiences Your office space Osterley Our Osterley Campus is a 10 minute walk from Syon Lane train station. Or you can hop on one of our free shuttle buses that run to and from Osterley, Gunnersbury, Ealing Broadway and South Ealing tube stations. There are also plenty of bike shelters and showers. On campus, you'll find 13 subsidised restaurants, cafes, and a Waitrose. You can keep in shape at our subsidised gym, catch the latest shows and movies at our cinema, get your car washed, and even get pampered at our beauty salon.
We are looking for a Principal Architect to lead our technology strategy in AI (Artificial Intelligence), Generative AI, IA (Intelligent Automation) and agentic solution development. As a vital force driving the strategic and technical evolution of the Global Streaming Platform, this role empowers the organisation to harness ground breaking advancements in AI, including Large Language Models (LLMs), agent workflows, and machine learning infrastructures. By seamlessly integrating these cutting edge technologies into secure, scalable, and high performance enterprise solutions, the Principal Architect will enable transformative growth and ensure the company maintains its position as a world class leader. This role requires deep knowledge in AI and IA technologies, strong architectural skills, and a strategic approach to recommend tailored platform transformations and deliver advanced AI solutions to maintain the business at its world class position. What you'll do: Architectural Leadership Oversee the comprehensive architecture strategy for developing and deploying AI applications and solutions, considering data management, cybersecurity, legal aspects, appropriate platform and infrastructure adaptation and third party vendor selection and integration. Recommend the tailored level of transformation required within the current platform to adapt and exploit at scale the adoption of AI based technologies guaranteeing cost efficiency, reliability, performance and security. Design and maintain an AI extension to the platform as an integrated technology stack, independent of any specific vendors but capable of integrating with major AI models and third party commodities, for porting self serving AI in house developed solutions. Contribute to the AI roadmap and identify AI driven efficiency, innovation or automation opportunities maintaining alignment with business goals, regulatory or compliance requirements and ethical principles. Solution Design Partner with product and engineering teams to translate business requirements into scalable AI solutions. Lead the evaluation, selection, and integration of AI platforms and models, tools, and technologies. Ensure optimized integration of AI solutions with existing systems and data sources. Technical Expertise Collaborate with the product teams to assist in the refinement of AI related product requirements, and to provide early, high level advice on opportunities and possible solutions. Stay current with emerging AI trends, technologies, protocols, research breakthroughs, model development and AI software design pattern and best practices. Provide technical guidance and mentorship to the engineering teams. Collaboration and Communication Foster strong relationships with stakeholders, including business leaders, product managers. Collaborate with senior leadership to align AI initiatives with organizational goals. Communicate complex technical concepts to non technical stakeholders effectively. Promote a collaborative and innovative AI culture within the whole organisation. Work closely with project managers, data scientists, developers and IT teams to define project scope, objectives, deliverables and solutions. Partner with the FinOps team to ensure implementation of adequate monitoring and budgetary guardrails. Work closely with the procurement and legal team in the negotiations with vendors. Governance and Compliance Establish governance and define internal standards, guidelines, and best practices to ensure data privacy, security, and ethical use of AI. Ensure compliance with industry standards and international regulations. What you'll bring: Advanced degree in Computer Science, AI, or a related field. Contributions to open source AI projects or published research in AI/ML. Extensive experience in software or systems architecture, with strong focus in AI/ML domains. Proven experience designing and deploying AI solutions using frameworks such as LangChain, RAG, and vector databases or the MCP protocol. Deep understanding of LLMs, prompt engineering, model evaluation, and fine tuning strategies. Strong proficiency in ML frameworks (e.g., TensorFlow, PyTorch) and cloud platforms (AWS, Azure, GCP). Experience with AI infrastructure components including model gateways, orchestration layers, and observability tools. Familiarity with AI governance, data privacy, international regulation and ethical AI frameworks. Excellent leadership, communication, and interpersonal skills. Strong analytical and problem solving abilities. Ability to work in a fast paced, dynamic environment. The rewards There's one thing people can't stop talking about when it comes to : the perks. Here's a taster: Sky Q, for the TV you love all in one place The magic of Sky Glass at an exclusive rate A generous pension package Private healthcare Discounted mobile and broadband A wide range of Sky VIP rewards and experiences Your office space Osterley Our Osterley Campus is a 10 minute walk from Syon Lane train station. Or you can hop on one of our free shuttle buses that run to and from Osterley, Gunnersbury, Ealing Broadway and South Ealing tube stations. There are also plenty of bike shelters and showers. On campus, you'll find 13 subsidised restaurants, cafes, and a Waitrose. You can keep in shape at our subsidised gym, catch the latest shows and movies at our cinema, get your car washed, and even get pampered at our beauty salon.
23/06/2026
Full time
We are looking for a Principal Architect to lead our technology strategy in AI (Artificial Intelligence), Generative AI, IA (Intelligent Automation) and agentic solution development. As a vital force driving the strategic and technical evolution of the Global Streaming Platform, this role empowers the organisation to harness ground breaking advancements in AI, including Large Language Models (LLMs), agent workflows, and machine learning infrastructures. By seamlessly integrating these cutting edge technologies into secure, scalable, and high performance enterprise solutions, the Principal Architect will enable transformative growth and ensure the company maintains its position as a world class leader. This role requires deep knowledge in AI and IA technologies, strong architectural skills, and a strategic approach to recommend tailored platform transformations and deliver advanced AI solutions to maintain the business at its world class position. What you'll do: Architectural Leadership Oversee the comprehensive architecture strategy for developing and deploying AI applications and solutions, considering data management, cybersecurity, legal aspects, appropriate platform and infrastructure adaptation and third party vendor selection and integration. Recommend the tailored level of transformation required within the current platform to adapt and exploit at scale the adoption of AI based technologies guaranteeing cost efficiency, reliability, performance and security. Design and maintain an AI extension to the platform as an integrated technology stack, independent of any specific vendors but capable of integrating with major AI models and third party commodities, for porting self serving AI in house developed solutions. Contribute to the AI roadmap and identify AI driven efficiency, innovation or automation opportunities maintaining alignment with business goals, regulatory or compliance requirements and ethical principles. Solution Design Partner with product and engineering teams to translate business requirements into scalable AI solutions. Lead the evaluation, selection, and integration of AI platforms and models, tools, and technologies. Ensure optimized integration of AI solutions with existing systems and data sources. Technical Expertise Collaborate with the product teams to assist in the refinement of AI related product requirements, and to provide early, high level advice on opportunities and possible solutions. Stay current with emerging AI trends, technologies, protocols, research breakthroughs, model development and AI software design pattern and best practices. Provide technical guidance and mentorship to the engineering teams. Collaboration and Communication Foster strong relationships with stakeholders, including business leaders, product managers. Collaborate with senior leadership to align AI initiatives with organizational goals. Communicate complex technical concepts to non technical stakeholders effectively. Promote a collaborative and innovative AI culture within the whole organisation. Work closely with project managers, data scientists, developers and IT teams to define project scope, objectives, deliverables and solutions. Partner with the FinOps team to ensure implementation of adequate monitoring and budgetary guardrails. Work closely with the procurement and legal team in the negotiations with vendors. Governance and Compliance Establish governance and define internal standards, guidelines, and best practices to ensure data privacy, security, and ethical use of AI. Ensure compliance with industry standards and international regulations. What you'll bring: Advanced degree in Computer Science, AI, or a related field. Contributions to open source AI projects or published research in AI/ML. Extensive experience in software or systems architecture, with strong focus in AI/ML domains. Proven experience designing and deploying AI solutions using frameworks such as LangChain, RAG, and vector databases or the MCP protocol. Deep understanding of LLMs, prompt engineering, model evaluation, and fine tuning strategies. Strong proficiency in ML frameworks (e.g., TensorFlow, PyTorch) and cloud platforms (AWS, Azure, GCP). Experience with AI infrastructure components including model gateways, orchestration layers, and observability tools. Familiarity with AI governance, data privacy, international regulation and ethical AI frameworks. Excellent leadership, communication, and interpersonal skills. Strong analytical and problem solving abilities. Ability to work in a fast paced, dynamic environment. The rewards There's one thing people can't stop talking about when it comes to : the perks. Here's a taster: Sky Q, for the TV you love all in one place The magic of Sky Glass at an exclusive rate A generous pension package Private healthcare Discounted mobile and broadband A wide range of Sky VIP rewards and experiences Your office space Osterley Our Osterley Campus is a 10 minute walk from Syon Lane train station. Or you can hop on one of our free shuttle buses that run to and from Osterley, Gunnersbury, Ealing Broadway and South Ealing tube stations. There are also plenty of bike shelters and showers. On campus, you'll find 13 subsidised restaurants, cafes, and a Waitrose. You can keep in shape at our subsidised gym, catch the latest shows and movies at our cinema, get your car washed, and even get pampered at our beauty salon.
AWS Cloud Security Engineer - Edinburgh (Hybrid)12-Month Contract£550 per day (Outside IR35) We're working with a key public sector client looking for an experienced AWS Cloud Security Engineer to support a major cloud improvement programme. The Role You'll play a key role in securing and optimising AWS environments, working closely with infrastructure and cyber teams to strengthen cloud security, governance, and best practice. What you'll be doing Designing and implementing secure AWS architectures Leading on IAM / access control strategies (least privilege, RBAC) Setting up monitoring, logging & threat detection (CloudTrail, GuardDuty, etc.) Driving security automation across CI/CD pipelines Managing vulnerability & patching processes (SSM, scanning tools) Supporting multi-account AWS environments & governance What we're looking for Strong hands-on AWS security experience (IAM, VPC, S3, etc.) Background in cloud security engineering / architecture Experience with DevSecOps / CI-CD security Knowledge of AWS security tooling & monitoring Experience working in complex cloud environments Guidant, Carbon60, Lorien & SRG - The Impellam Group Portfolio are acting as an Employment Business in relation to this vacancy.
23/06/2026
Contractor
AWS Cloud Security Engineer - Edinburgh (Hybrid)12-Month Contract£550 per day (Outside IR35) We're working with a key public sector client looking for an experienced AWS Cloud Security Engineer to support a major cloud improvement programme. The Role You'll play a key role in securing and optimising AWS environments, working closely with infrastructure and cyber teams to strengthen cloud security, governance, and best practice. What you'll be doing Designing and implementing secure AWS architectures Leading on IAM / access control strategies (least privilege, RBAC) Setting up monitoring, logging & threat detection (CloudTrail, GuardDuty, etc.) Driving security automation across CI/CD pipelines Managing vulnerability & patching processes (SSM, scanning tools) Supporting multi-account AWS environments & governance What we're looking for Strong hands-on AWS security experience (IAM, VPC, S3, etc.) Background in cloud security engineering / architecture Experience with DevSecOps / CI-CD security Knowledge of AWS security tooling & monitoring Experience working in complex cloud environments Guidant, Carbon60, Lorien & SRG - The Impellam Group Portfolio are acting as an Employment Business in relation to this vacancy.
Job Description Your impact Are you looking to be part of a company driving innovation and creating cutting edge technology? At Leonardo you could be part of one of the UK's most exciting and challenging projects. Do you think you are up to the challenge? We are looking for people that are and who relish the buzz of a busy schedule to join our Design Integrity team. In this role you will work as part of a multi disciplined team, learning, developing and enhancing your Product Security management skills. As a Product Cyber Resilience Manager, you will: Undertake the production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals. Review and provide guidance of security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation, such as solution hardening guidance and security operating procedures. Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities. Liaison with Security Accreditors and Security Assurance Coordinators in support of security Accreditation. Participate in internal and external discipline working groups and with academic partners covering Product Cyber Resilience and Product Security for various established and emerging standards. Contribute to continual improvement of the engineering capability You will be responsible for the management of Product Security Risk of all the product families within your sector. You will be accountable to the respective product family System Design Authority (the Risk Owner), providing subject matter advice to the Integrated Product Team, whilst collaborating with your fellow Product Cyber Resilience Managers (PCRMs) across the Electronics Business Unit. The role involves conducting risk assessments, developing and implementing product security strategies and collaborating with cross-functional teams, including Leonardo's Cyber Security Business Unit, to embed product and cyber security best practices throughout the product development lifecycle. You will be responsible for determining product cyber resilience objectives through security risk management techniques in relation to the Integrated Sensing products and then working with the engineering teams to achieve those objectives through the architecture and design of the solution. You'll also support the product assurance activities to verify compliance to those objectives and the transition to operations and ongoing through-life support. What you'll bring In broad terms, you should have as many of the following as possible: Bachelor's degree in Electronics Engineering and/or a related subject e.g. functional safety assessment methods or safety risk management system for complex products based on a recognised framework in a highly regulated industry such as aerospace, nuclear, automotive, rail or oil & gas Practical experience of the System Development Life Cycle, Software Development Life Cycle, V-Models and Agile frameworks. Experience in managing product information security, including risk assessment, threat modelling, vulnerability management, and incident response Strong knowledge of cybersecurity standards and best practices, such as ISO 27001, NIST Cybersecurity Framework, and Knowledge of UK/NATO Information Assurance/Accreditation frameworks; Familiarity with the application of cyber resilience controls to embedded systems. Experience with cybersecurity tools and technologies, such as SIEM, IDS/IPS, DLP, and endpoint protection Proficiency in cybersecurity frameworks, such as MITRE ATT&CK and the Cybersecurity Capability Maturity Model (CMMC) Excellent problem-solving and analytical skills Strong communication and collaboration abilities Certifications such as CISSP, CISM, or CEH are a plus Security Clearance This role is subject to pre-employment screening in line with the UK Government's Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV). For more information and guidance please visit: You must have the ability to obtain UK SC security clearance and work within UKEO and US ITAR TAA restrictions. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work-life balance. Whether you're looking to grow professionally, care for your health, or plan for the future, we're here to help you thrive. Time to Recharge:Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future:Benefit from our award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters:Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity (Enable, Pride, Equalise, Armed Forces, Carers, Wellbeing and Ethnicity). Rewarding Performance: All employees at management level and below are eligible for our bonus scheme. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Refer a friend:Receive a financial reward through our referral programme. Tailored Perks: Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more. Flexible working:Flexible hours with hybrid working options. For part time opportunities, please talk to us about what might be possible for this role. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team-they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! Primary Location GB - Edinburgh Additional Locations GB - Newcastle Contract Type Permanent Hybrid Working Hybrid
23/06/2026
Full time
Job Description Your impact Are you looking to be part of a company driving innovation and creating cutting edge technology? At Leonardo you could be part of one of the UK's most exciting and challenging projects. Do you think you are up to the challenge? We are looking for people that are and who relish the buzz of a busy schedule to join our Design Integrity team. In this role you will work as part of a multi disciplined team, learning, developing and enhancing your Product Security management skills. As a Product Cyber Resilience Manager, you will: Undertake the production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals. Review and provide guidance of security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation, such as solution hardening guidance and security operating procedures. Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities. Liaison with Security Accreditors and Security Assurance Coordinators in support of security Accreditation. Participate in internal and external discipline working groups and with academic partners covering Product Cyber Resilience and Product Security for various established and emerging standards. Contribute to continual improvement of the engineering capability You will be responsible for the management of Product Security Risk of all the product families within your sector. You will be accountable to the respective product family System Design Authority (the Risk Owner), providing subject matter advice to the Integrated Product Team, whilst collaborating with your fellow Product Cyber Resilience Managers (PCRMs) across the Electronics Business Unit. The role involves conducting risk assessments, developing and implementing product security strategies and collaborating with cross-functional teams, including Leonardo's Cyber Security Business Unit, to embed product and cyber security best practices throughout the product development lifecycle. You will be responsible for determining product cyber resilience objectives through security risk management techniques in relation to the Integrated Sensing products and then working with the engineering teams to achieve those objectives through the architecture and design of the solution. You'll also support the product assurance activities to verify compliance to those objectives and the transition to operations and ongoing through-life support. What you'll bring In broad terms, you should have as many of the following as possible: Bachelor's degree in Electronics Engineering and/or a related subject e.g. functional safety assessment methods or safety risk management system for complex products based on a recognised framework in a highly regulated industry such as aerospace, nuclear, automotive, rail or oil & gas Practical experience of the System Development Life Cycle, Software Development Life Cycle, V-Models and Agile frameworks. Experience in managing product information security, including risk assessment, threat modelling, vulnerability management, and incident response Strong knowledge of cybersecurity standards and best practices, such as ISO 27001, NIST Cybersecurity Framework, and Knowledge of UK/NATO Information Assurance/Accreditation frameworks; Familiarity with the application of cyber resilience controls to embedded systems. Experience with cybersecurity tools and technologies, such as SIEM, IDS/IPS, DLP, and endpoint protection Proficiency in cybersecurity frameworks, such as MITRE ATT&CK and the Cybersecurity Capability Maturity Model (CMMC) Excellent problem-solving and analytical skills Strong communication and collaboration abilities Certifications such as CISSP, CISM, or CEH are a plus Security Clearance This role is subject to pre-employment screening in line with the UK Government's Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV). For more information and guidance please visit: You must have the ability to obtain UK SC security clearance and work within UKEO and US ITAR TAA restrictions. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work-life balance. Whether you're looking to grow professionally, care for your health, or plan for the future, we're here to help you thrive. Time to Recharge:Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future:Benefit from our award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters:Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity (Enable, Pride, Equalise, Armed Forces, Carers, Wellbeing and Ethnicity). Rewarding Performance: All employees at management level and below are eligible for our bonus scheme. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Refer a friend:Receive a financial reward through our referral programme. Tailored Perks: Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more. Flexible working:Flexible hours with hybrid working options. For part time opportunities, please talk to us about what might be possible for this role. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team-they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! Primary Location GB - Edinburgh Additional Locations GB - Newcastle Contract Type Permanent Hybrid Working Hybrid
Chesterfield, DBY, GB, S41 7TD Partial Remote (Hybrid) Bilfinger UK is a leading engineering and maintenance provider, supporting customers across the chemical & petrochemical, nuclear, oil & gas, pharmaceuticals & biopharma, power & energy, utilities, renewables and food & beverage markets. We enhance the efficiency of assets, ensuring a high level of availability and reducing maintenance costs. We have extensive experience in offshore and onshore facilities; specialising in asset management services throughout all life cycle phases from consulting, engineering, manufacturing, assembly, operations, maintenance, and decommissioning. This commitment is delivered by an experienced and highly competent workforce of over 4,500 employees operating from 14 offices in strategic industrial hubs, upholding the highest standards of safety, compliance and quality. Role Overview We are seeking a highly capable Senior Systems Engineer to support the delivery of critical systems within a nuclear infrastructure project. This role centres on the design, implementation and support of AVEVA System Platform, MAC Solutions ProcessVUE and MSSQL Reporting Services. This position requires strong expertise in SCADA/HMI development, data management and reporting systems; with the ability to produce and manage extensive engineering documentation in a highly regulated environment. Key Responsiblities Responsible for technical delivery of the SCADA, Management Information and Reporting Systems. Design, Develop and implement solutions using AVEVA System Platform 2023, MAC Solutions ProcessVUE and MSSQL Reporting Services. Configure and manage AVEVA Historian for real time data collection and long term storage. Integrate control systems with third-party equipment using standard industrial protocols. Support system architecture design including redundancy, resilience, and cybersecurity considerations. Produce clear technical documentation, including design specifications, test procedures and operating and maintenance documentation. Taking ownership of exisiting documentation and providing updates as and when required. Deploy and test the SCADA system as part of ongoing system development. Conduct system integration, Factory and Customer Acceptance Testing (FAT, CAT).Support project lifecycle management activities as required. Collaborate effectively with and support the Project Manager, Lead Engineer and Engineering Team with the planning and execution of activities to ensure they meet the time and quality required with clear reporting on progress and blockers. Provide health and safety leadership by example. Minimum of 5+ years experience in industrail automation and control systems, including: AVEVA System Platform (Wonderware) AVEVA OMI (InTouch OMI) AVEVA Historian Microsoft SQL Server SQL Server Reporting Services (SSRS) Proven experience of design, implementation and testing of SCADA solutions within industrial environemnts. Experience developing management information and reporting solutions in an industrial or engineering environment. Strong background in SCADA/HMI system design and implementation. Proven experience producing and managing large scale engineering documentation. Understanding of software/system lifecycle processes (design, development, testing, deployment). Excellent analytical, problem solving and communication skills. Experience with MAC Solutions ProcessVUE (or ability to quickly learn). Prior experience working in nuclear, defence or other highly regulated industries. Scripting or programming experience (e.g., PowerShell, .NET). Experience integrating enterprise data/reporting platforms. Qualifications & Personal Attributes A degree or HND/HNC in Electronic/Electrical Engineering, Computer Science or other relevant engineering experience equivalent to these. Strong attention to detail and commitment to quality. Ability to handle complex systems and large volumes of documentation. Proactive, methodical and solutions orientated mindset. Strong organisational and time management skills. Effective team collaborator with the ability to work independently. If you wish to speak to a member of the recruitment team, please contact .
23/06/2026
Full time
Chesterfield, DBY, GB, S41 7TD Partial Remote (Hybrid) Bilfinger UK is a leading engineering and maintenance provider, supporting customers across the chemical & petrochemical, nuclear, oil & gas, pharmaceuticals & biopharma, power & energy, utilities, renewables and food & beverage markets. We enhance the efficiency of assets, ensuring a high level of availability and reducing maintenance costs. We have extensive experience in offshore and onshore facilities; specialising in asset management services throughout all life cycle phases from consulting, engineering, manufacturing, assembly, operations, maintenance, and decommissioning. This commitment is delivered by an experienced and highly competent workforce of over 4,500 employees operating from 14 offices in strategic industrial hubs, upholding the highest standards of safety, compliance and quality. Role Overview We are seeking a highly capable Senior Systems Engineer to support the delivery of critical systems within a nuclear infrastructure project. This role centres on the design, implementation and support of AVEVA System Platform, MAC Solutions ProcessVUE and MSSQL Reporting Services. This position requires strong expertise in SCADA/HMI development, data management and reporting systems; with the ability to produce and manage extensive engineering documentation in a highly regulated environment. Key Responsiblities Responsible for technical delivery of the SCADA, Management Information and Reporting Systems. Design, Develop and implement solutions using AVEVA System Platform 2023, MAC Solutions ProcessVUE and MSSQL Reporting Services. Configure and manage AVEVA Historian for real time data collection and long term storage. Integrate control systems with third-party equipment using standard industrial protocols. Support system architecture design including redundancy, resilience, and cybersecurity considerations. Produce clear technical documentation, including design specifications, test procedures and operating and maintenance documentation. Taking ownership of exisiting documentation and providing updates as and when required. Deploy and test the SCADA system as part of ongoing system development. Conduct system integration, Factory and Customer Acceptance Testing (FAT, CAT).Support project lifecycle management activities as required. Collaborate effectively with and support the Project Manager, Lead Engineer and Engineering Team with the planning and execution of activities to ensure they meet the time and quality required with clear reporting on progress and blockers. Provide health and safety leadership by example. Minimum of 5+ years experience in industrail automation and control systems, including: AVEVA System Platform (Wonderware) AVEVA OMI (InTouch OMI) AVEVA Historian Microsoft SQL Server SQL Server Reporting Services (SSRS) Proven experience of design, implementation and testing of SCADA solutions within industrial environemnts. Experience developing management information and reporting solutions in an industrial or engineering environment. Strong background in SCADA/HMI system design and implementation. Proven experience producing and managing large scale engineering documentation. Understanding of software/system lifecycle processes (design, development, testing, deployment). Excellent analytical, problem solving and communication skills. Experience with MAC Solutions ProcessVUE (or ability to quickly learn). Prior experience working in nuclear, defence or other highly regulated industries. Scripting or programming experience (e.g., PowerShell, .NET). Experience integrating enterprise data/reporting platforms. Qualifications & Personal Attributes A degree or HND/HNC in Electronic/Electrical Engineering, Computer Science or other relevant engineering experience equivalent to these. Strong attention to detail and commitment to quality. Ability to handle complex systems and large volumes of documentation. Proactive, methodical and solutions orientated mindset. Strong organisational and time management skills. Effective team collaborator with the ability to work independently. If you wish to speak to a member of the recruitment team, please contact .
Senior Director, Senior Director, Cloud Engineering (UK OR US) Travel obsessed? Big tech fan? Hey, you're in good company. If you want to be part of the industry that makes the world go round, then look no further. Travelport is the brains behind lots of your travel bookings plane, car or hotel. Our technology is used to book that magical holiday, infamous bachelorette party or long overdue school reunion. While we can't solve mosquito bites or lost luggage, we can simplify a lot of the technical parts of travel, and we're looking for the best thinkers to help us do it. We're hiring right now for a Senior Director, Cloud Engineering! Search for on LinkedIn and hear from our amazing team. How you'll make an impact We're hiring a Senior Director, Cloud Engineering to lead the cloud engineering capability behind Travelport's next-generation platform. This role needs someone who has built and operated serious AWS environments, understands large-scale systems, and can create the platform conditions for frontier AI products to work in production. You'lllead theteam that defines theengineering approach for AWS, buildsourproductionAWSplatform, and onboards development teams and products to this platform.You'llbe responsible fordriving the move toinfrastructure as code, account management, automated pipelines, observability, resilience, operating coverage and cost control. You'llalso help define how the platform supports AI, data engineering and high-scale product demand, including where AWS Bedrock and other AI services can be used responsibly in production. The role is about making the platform stronger, simpler and ready for what comes next while managing the pipeline of new products that are moving to or being created in AWS. Your role in action Lead the cloud engineering strategy for the Travelport platform, with a focus on AWS, automation, resilience, security and cost. Build stronger engineering standards for infrastructure as code, CI/CD, AWS account management, platform guardrails and developer enablement. Improve the operational model for the platform, including observability, incident response, reliability and 24/7 support coverage. Partner with Product and Commercial teams to get ahead of major demand changes, customer commitments and platform capacity decisions. Work closely with Data Strategy, Architecture, Infrastructure and Cyber teams to support AI, data lakes, data engineering, identity, security and production GenAI use cases. Help define how Travelport scales AI workloads in a cost aware, secure and reliable way. Lead cloud cost management and capacity planning, including the engineering decisions that drive AWS spend. Challenge platform norms and simplify where complexity is slowing delivery, increasing risk or adding cost. Could this be you? You've led cloud engineering, platform engineering or infrastructure engineering teams running high scale production systems on AWS. You have strong practical knowledge of distributed systems, infrastructure as code, automated deployment pipelines, cloud security, observability and operational reliability. You have managed cloud cost, budget and capacity at scale. You understand the engineering choices that drive AWS spend. You have enough exposure to AI/ML platform needs, data engineering and cloud data platforms to guide real architecture decisions. AWS Bedrock or production GenAI experience would be valuable. You can operate at senior leadership level while staying close enough to the technology to challenge decisions properly. You know how to build strong engineering teams, create clear standards and improve delivery without adding unnecessary process. Discover why our teams love working here We offer a package that includes 25 days annual leave per annum, a hybrid working model, pension contribution, private medical, life assurance and personal travel insurance. We are an equal opportunity employer and will consider all qualified applicants purely on their skills and abilities. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation, if needed.
23/06/2026
Full time
Senior Director, Senior Director, Cloud Engineering (UK OR US) Travel obsessed? Big tech fan? Hey, you're in good company. If you want to be part of the industry that makes the world go round, then look no further. Travelport is the brains behind lots of your travel bookings plane, car or hotel. Our technology is used to book that magical holiday, infamous bachelorette party or long overdue school reunion. While we can't solve mosquito bites or lost luggage, we can simplify a lot of the technical parts of travel, and we're looking for the best thinkers to help us do it. We're hiring right now for a Senior Director, Cloud Engineering! Search for on LinkedIn and hear from our amazing team. How you'll make an impact We're hiring a Senior Director, Cloud Engineering to lead the cloud engineering capability behind Travelport's next-generation platform. This role needs someone who has built and operated serious AWS environments, understands large-scale systems, and can create the platform conditions for frontier AI products to work in production. You'lllead theteam that defines theengineering approach for AWS, buildsourproductionAWSplatform, and onboards development teams and products to this platform.You'llbe responsible fordriving the move toinfrastructure as code, account management, automated pipelines, observability, resilience, operating coverage and cost control. You'llalso help define how the platform supports AI, data engineering and high-scale product demand, including where AWS Bedrock and other AI services can be used responsibly in production. The role is about making the platform stronger, simpler and ready for what comes next while managing the pipeline of new products that are moving to or being created in AWS. Your role in action Lead the cloud engineering strategy for the Travelport platform, with a focus on AWS, automation, resilience, security and cost. Build stronger engineering standards for infrastructure as code, CI/CD, AWS account management, platform guardrails and developer enablement. Improve the operational model for the platform, including observability, incident response, reliability and 24/7 support coverage. Partner with Product and Commercial teams to get ahead of major demand changes, customer commitments and platform capacity decisions. Work closely with Data Strategy, Architecture, Infrastructure and Cyber teams to support AI, data lakes, data engineering, identity, security and production GenAI use cases. Help define how Travelport scales AI workloads in a cost aware, secure and reliable way. Lead cloud cost management and capacity planning, including the engineering decisions that drive AWS spend. Challenge platform norms and simplify where complexity is slowing delivery, increasing risk or adding cost. Could this be you? You've led cloud engineering, platform engineering or infrastructure engineering teams running high scale production systems on AWS. You have strong practical knowledge of distributed systems, infrastructure as code, automated deployment pipelines, cloud security, observability and operational reliability. You have managed cloud cost, budget and capacity at scale. You understand the engineering choices that drive AWS spend. You have enough exposure to AI/ML platform needs, data engineering and cloud data platforms to guide real architecture decisions. AWS Bedrock or production GenAI experience would be valuable. You can operate at senior leadership level while staying close enough to the technology to challenge decisions properly. You know how to build strong engineering teams, create clear standards and improve delivery without adding unnecessary process. Discover why our teams love working here We offer a package that includes 25 days annual leave per annum, a hybrid working model, pension contribution, private medical, life assurance and personal travel insurance. We are an equal opportunity employer and will consider all qualified applicants purely on their skills and abilities. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation, if needed.
Select how often (in days) to receive an alert: The Role A Lead Data Architect, you take ownership of our data fabric architecture and be responsible for its evolution, adoption, and deployment into secure customer environments blending both strategy and delivery. Day-to-day, you will set the technical direction, make pragmatic architectural decision, and provide hands-on leadership to a team of Data Fabric Engineers and Data Analysts ensuring the platform remains secure, scalable, resilient, and operable as it grows. You will maintain and refine the target architecture and roadmap, establish standards and governance staying close enough to engineering to ensure designs are buildable, testable, and supportable. Your responsibilities will include Being openly enthusiastic about unlocking AI capability through the strategic delivery of a Data Fabric focusing on data quality, governance, accessibility, and integration Owning the Data Fabric architecture end-to-end: integration, processing, storage, metadata/lineage, governance, and consumption patterns Defining and maintaining the architecture roadmap (near, mid, and long-term) including technology evolution, capability increments, and deployment waves across environments Leading architecture for data integration and interoperability: connector strategy, data sharing patterns, event-driven integration, APIs, interface contracts, and cross-domain data exchange approaches where relevant Translating architectural intent into reference architectures, patterns and guardrails enabling repeatable delivery by the engineering team Establishing and running architecture governance and assurance and leading data modelling across conceptual, logical, and physical levels including analytical models suited to downstream use Essential experience for the Lead Data Architect Extensive experience in data architecture and/or data platform engineering including the ownership of architecture on complex programmes Proven experience taking an established architecture, owning it, and evolving it through clear roadmaps, standards, patterns and governance A good knowledge of on-prem, cloud and hybrid platforms with a strong knowledge of data governance, metadata, lineage, data quality, stewardship, and lifecycle management Previous experience designing and governing architectures for constrained or mission environments, including edge deployments and contested connectivity patterns Proven experience leading engineers with a clear technical direction in place whilst making pragmatic decisions and mentoring in a multidisciplinary environment The ability to explain complex architecture to senior stakeholders with excellent written and verbal communication skills Essential qualifications for the Lead Data Architect We value difference and we don't have a fixed idea when it comes to background or education, provided you can show the required level of experience and willingness to learn then we would like to hear from you. This role is 37 hours per week based at our Farnborough site. Hybrid working patterns are available. Farnborough At our Farnborough site exciting work takes place at our state-of-the-art facility, with high-energy laser technologies, our 5m pressurised wind tunnel which has a simulation capability that is unique in the UK and our large research and development projects is a real hub of creativity, research and innovation. Join our talented teams of Engineers, IT & Cyber Specialists, Project Managers, Group Functions Teams and many more to provide future defences in the UK. Why Join QinetiQ? As we continue to grow into new markets around the world, there's never been a more exciting time to join QinetiQ. The formula for success is our appetite for innovation and having the courage to take on a wide variety of complex challenges. As a QinetiQ employee, you'll experience a unique working environment where teams from different backgrounds, disciplines and experiences enjoy collaborating widely and openly as we undertake this exciting and rewarding journey. Through effective teamwork, and pulling together, you'll get to experience what happens when we all share different perspectives, blend disciplines, and link technologies; constantly discovering new ways of solving complex problems in a diverse and inclusive environment where you can be authentic, feel valued and realise your full potential. Visit our website to read more about our diverse and inclusive workplace culture. Matched contribution pension scheme, with life assurance Generous holiday allowance, with the option to purchase additional days Options to join Health Cash Plan, Private Medical Insurance and Dental Insurance Employee discount portal: Personal Accident Insurance, Travel Insurance, Restaurants, Cinema Tickets and much more We are proud to support the Armed Forces community by honouring the Armed Forces Covenant and maintaining our Gold Award standard in the Defence Employer Recognition Scheme Volunteering Opportunities - helping charities and local community Our Recruitment Process We want to make sure that our recruitment process is as inclusive as possible and we aspire to bring out the best in our candidates by creating an environment where everyone feels value, heard and supported. If you have a disability or health condition that may affect your performance in certain assessment types, please speak to your Recruiter about potential reasonable adjustments. Many roles in QinetiQ are subject to national security vetting being completed, applicants who already hold the appropriate level of vetting may be able to transfer it upon appointment. A number of roles are also subject to additional restrictions, which mean factors such as nationality or previous nationalities may affect the roles that you can be employed in. Please note that all applicants for this role must be willing to go through DV Clearance.
23/06/2026
Full time
Select how often (in days) to receive an alert: The Role A Lead Data Architect, you take ownership of our data fabric architecture and be responsible for its evolution, adoption, and deployment into secure customer environments blending both strategy and delivery. Day-to-day, you will set the technical direction, make pragmatic architectural decision, and provide hands-on leadership to a team of Data Fabric Engineers and Data Analysts ensuring the platform remains secure, scalable, resilient, and operable as it grows. You will maintain and refine the target architecture and roadmap, establish standards and governance staying close enough to engineering to ensure designs are buildable, testable, and supportable. Your responsibilities will include Being openly enthusiastic about unlocking AI capability through the strategic delivery of a Data Fabric focusing on data quality, governance, accessibility, and integration Owning the Data Fabric architecture end-to-end: integration, processing, storage, metadata/lineage, governance, and consumption patterns Defining and maintaining the architecture roadmap (near, mid, and long-term) including technology evolution, capability increments, and deployment waves across environments Leading architecture for data integration and interoperability: connector strategy, data sharing patterns, event-driven integration, APIs, interface contracts, and cross-domain data exchange approaches where relevant Translating architectural intent into reference architectures, patterns and guardrails enabling repeatable delivery by the engineering team Establishing and running architecture governance and assurance and leading data modelling across conceptual, logical, and physical levels including analytical models suited to downstream use Essential experience for the Lead Data Architect Extensive experience in data architecture and/or data platform engineering including the ownership of architecture on complex programmes Proven experience taking an established architecture, owning it, and evolving it through clear roadmaps, standards, patterns and governance A good knowledge of on-prem, cloud and hybrid platforms with a strong knowledge of data governance, metadata, lineage, data quality, stewardship, and lifecycle management Previous experience designing and governing architectures for constrained or mission environments, including edge deployments and contested connectivity patterns Proven experience leading engineers with a clear technical direction in place whilst making pragmatic decisions and mentoring in a multidisciplinary environment The ability to explain complex architecture to senior stakeholders with excellent written and verbal communication skills Essential qualifications for the Lead Data Architect We value difference and we don't have a fixed idea when it comes to background or education, provided you can show the required level of experience and willingness to learn then we would like to hear from you. This role is 37 hours per week based at our Farnborough site. Hybrid working patterns are available. Farnborough At our Farnborough site exciting work takes place at our state-of-the-art facility, with high-energy laser technologies, our 5m pressurised wind tunnel which has a simulation capability that is unique in the UK and our large research and development projects is a real hub of creativity, research and innovation. Join our talented teams of Engineers, IT & Cyber Specialists, Project Managers, Group Functions Teams and many more to provide future defences in the UK. Why Join QinetiQ? As we continue to grow into new markets around the world, there's never been a more exciting time to join QinetiQ. The formula for success is our appetite for innovation and having the courage to take on a wide variety of complex challenges. As a QinetiQ employee, you'll experience a unique working environment where teams from different backgrounds, disciplines and experiences enjoy collaborating widely and openly as we undertake this exciting and rewarding journey. Through effective teamwork, and pulling together, you'll get to experience what happens when we all share different perspectives, blend disciplines, and link technologies; constantly discovering new ways of solving complex problems in a diverse and inclusive environment where you can be authentic, feel valued and realise your full potential. Visit our website to read more about our diverse and inclusive workplace culture. Matched contribution pension scheme, with life assurance Generous holiday allowance, with the option to purchase additional days Options to join Health Cash Plan, Private Medical Insurance and Dental Insurance Employee discount portal: Personal Accident Insurance, Travel Insurance, Restaurants, Cinema Tickets and much more We are proud to support the Armed Forces community by honouring the Armed Forces Covenant and maintaining our Gold Award standard in the Defence Employer Recognition Scheme Volunteering Opportunities - helping charities and local community Our Recruitment Process We want to make sure that our recruitment process is as inclusive as possible and we aspire to bring out the best in our candidates by creating an environment where everyone feels value, heard and supported. If you have a disability or health condition that may affect your performance in certain assessment types, please speak to your Recruiter about potential reasonable adjustments. Many roles in QinetiQ are subject to national security vetting being completed, applicants who already hold the appropriate level of vetting may be able to transfer it upon appointment. A number of roles are also subject to additional restrictions, which mean factors such as nationality or previous nationalities may affect the roles that you can be employed in. Please note that all applicants for this role must be willing to go through DV Clearance.
The Financial Times is one of the world's leading news organisations, globally recognised for its authority, integrity and accuracy, with a mission to deliver quality information and services worldwide.At the FT, curiosity thrives and ambitious thinking is rewarded. Here, you're given the chance to reach millions, create work that matters and deliver impartial journalism in a polarised world.In our warm, collaborative culture, you'll connect with a diverse community of experts who support your growth, career aspirations and wellbeingYour future at the FT will be filled with opportunities that challenge and inspire you. With no fixed path, you'll discover new skills and forge a career that can take you anywhere.Build a newsworthy career at the FT. Our Commitment to Diversity, Equity and Inclusion We believe in the power of unique perspectives and want all voices in our organisation to be heard, respected and valued. A supportive workplace is one where employees feel they can be themselves and operate to their full potential. We are committed to removing barriers for everyone, with a focus on addressing those faced by underrepresented groups. The Role Overview We're looking for a Senior Cyber Security Engineer to help mature application and cloud security across the FT's cloud native, AWS hosted technology estate. This role has an approximate 50/50 focus across application security and cloud security, working closely with product, platform and engineering teams to make secure delivery easier by default. You'll shape and improve developer friendly guardrails across GitHub based CI/CD pipelines, AWS environments and infrastructure as code workflows. This includes improving SAST, software composition analysis, secret scanning, IaC scanning, vulnerability management and AWS misconfiguration management so that findings are actionable, low noise and owned by the right teams. Day to day, you'll run practical threat modelling sessions, review application and cloud designs, improve security playbooks, support vulnerability and misconfiguration remediation, and build automation that reduces toil. We're looking for someone who has demonstrably improved security outcomes in real engineering environments, not just someone with theoretical knowledge of tools or frameworks. Depending on team structure, you may also mentor or line manage one or two security engineers, while remaining hands on and close to the technical work. What you'll bring to the role Application and cloud security experience: practical experience across both application security and cloud security, ideally in AWS hosted, cloud native environments. Developer friendly security mindset: you know how to work with engineers, explain risk clearly and design controls that help teams move securely without unnecessary friction. Vulnerability management at scale: experience improving how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and advisories are identified, prioritised, owned and remediated across engineering teams. Cloud misconfiguration & vulnerability management: experience identifying and reducing infrastructure as code and AWS vulnerabilities & misconfigurations at scale through pragmatic guardrails, tooling and clear remediation paths. Threat modelling: confidence running lightweight, practical threat modelling sessions that lead to useful engineering decisions and risk reduction. CI/CD and code security: hands on experience with security tooling such as SAST, software composition analysis, secret scanning and IaC scanning. Automation mindset: ability to write scripts or small tools, ideally in Python, to reduce toil, improve visibility and surface meaningful risk. Security leadership: ability to mentor other security engineers and influence engineers across the wider organisation. Depending on team structure, this may include line management. AI security awareness: experience of leveraging AI to improve and scale appsec and cloud sec controls would be useful, but is not essential. Key Responsibilities Improve application security guardrails Tune and evolve SAST, software composition analysis, secret scanning and related controls so they are actionable, low noise and useful to engineering teams. Improve cloud and IaC security guardrails Help identify, prioritise and reduce AWS and infrastructure as code misconfigurations and vulnerabilities at scale. Drive vulnerability management Improve how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and third party advisories are triaged, prioritised and remediated. Drive cloud misconfiguration management Help teams understand, own and remediate cloud security issues using pragmatic, developer friendly workflows. Run practical threat modelling Facilitate lightweight threat modelling sessions for new products, features, services and architectural changes. Build automation and tooling Create or improve scripts, integrations, dashboards and workflows that reduce manual effort and make risk easier to understand. Support secure architecture decisions Provide application and cloud security input into design reviews, AWS architecture decisions and larger technical changes. Partner with engineering teams Work closely with product, platform and software engineering teams to embed security into design, delivery and operational practices. Support incidents and lessons learned Provide application and cloud security expertise during incidents and feed lessons learned back into patterns, tooling and guidance. Mentor others Coach security engineers and engineering teams on practical security approaches. Depending on team structure, this may include line management of one or two security engineers. Required Experience, Essential: Strong practical experience in application security and cloud security, ideally with a balanced focus across both. Hands on AWS security experience, including common misconfiguration patterns and practical remediation approaches. Experience improving vulnerability management across engineering teams, including prioritisation, ownership, remediation tracking and noise reduction. Experience improving cloud or IaC misconfiguration management at scale in a developer friendly way. Experience integrating, tuning or improving security tooling in CI/CD workflows, such as SAST, software composition analysis, secret scanning or IaC scanning. Experience running practical threat modelling sessions that influence design, delivery or remediation decisions. Ability to write scripts or small tools, ideally in Python, to automate security workflows or improve visibility. Strong communication and collaboration skills, with the ability to influence engineers and technical leaders without relying on gatekeeping. Evidence of improving application security, cloud security or vulnerability management practices in a real engineering environment. Familiarity with Agile or Scrum ways of working. Experience with leveraging AI for AppSec and CloudSec. AWS Certified Security - Speciality or equivalent practical AWS security experience. Terraform or CloudFormation expertise. Incident management or incident response experience. Experience with Splunk or similar logging/SIEM platforms. Experience with security metrics, dashboards or reporting that helped drive measurable risk reduction. Experience mentoring or line managing security engineers. Accessibility We are a disability confident employer and Valuable 500 signatory. Please let us know if you require any reasonable adjustments/personalisation as part of the application process or to enable you to attend an interview. If you would like to discuss your requirements or have any questions, and a member of our team will be happy to help. Further information At the FT, we embrace innovation and the use of technology and appreciate that individuals may leverage AI tools as part of their job application process. Whilst we are happy for you to use AI to assist with your application, it is essential that all information provided is authentic and accurately represents your skills, experience, and qualifications. Candidates should be aware that the use of AI throughout the application process may be monitored to ensure a fair and transparent hiring process for all.
22/06/2026
Full time
The Financial Times is one of the world's leading news organisations, globally recognised for its authority, integrity and accuracy, with a mission to deliver quality information and services worldwide.At the FT, curiosity thrives and ambitious thinking is rewarded. Here, you're given the chance to reach millions, create work that matters and deliver impartial journalism in a polarised world.In our warm, collaborative culture, you'll connect with a diverse community of experts who support your growth, career aspirations and wellbeingYour future at the FT will be filled with opportunities that challenge and inspire you. With no fixed path, you'll discover new skills and forge a career that can take you anywhere.Build a newsworthy career at the FT. Our Commitment to Diversity, Equity and Inclusion We believe in the power of unique perspectives and want all voices in our organisation to be heard, respected and valued. A supportive workplace is one where employees feel they can be themselves and operate to their full potential. We are committed to removing barriers for everyone, with a focus on addressing those faced by underrepresented groups. The Role Overview We're looking for a Senior Cyber Security Engineer to help mature application and cloud security across the FT's cloud native, AWS hosted technology estate. This role has an approximate 50/50 focus across application security and cloud security, working closely with product, platform and engineering teams to make secure delivery easier by default. You'll shape and improve developer friendly guardrails across GitHub based CI/CD pipelines, AWS environments and infrastructure as code workflows. This includes improving SAST, software composition analysis, secret scanning, IaC scanning, vulnerability management and AWS misconfiguration management so that findings are actionable, low noise and owned by the right teams. Day to day, you'll run practical threat modelling sessions, review application and cloud designs, improve security playbooks, support vulnerability and misconfiguration remediation, and build automation that reduces toil. We're looking for someone who has demonstrably improved security outcomes in real engineering environments, not just someone with theoretical knowledge of tools or frameworks. Depending on team structure, you may also mentor or line manage one or two security engineers, while remaining hands on and close to the technical work. What you'll bring to the role Application and cloud security experience: practical experience across both application security and cloud security, ideally in AWS hosted, cloud native environments. Developer friendly security mindset: you know how to work with engineers, explain risk clearly and design controls that help teams move securely without unnecessary friction. Vulnerability management at scale: experience improving how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and advisories are identified, prioritised, owned and remediated across engineering teams. Cloud misconfiguration & vulnerability management: experience identifying and reducing infrastructure as code and AWS vulnerabilities & misconfigurations at scale through pragmatic guardrails, tooling and clear remediation paths. Threat modelling: confidence running lightweight, practical threat modelling sessions that lead to useful engineering decisions and risk reduction. CI/CD and code security: hands on experience with security tooling such as SAST, software composition analysis, secret scanning and IaC scanning. Automation mindset: ability to write scripts or small tools, ideally in Python, to reduce toil, improve visibility and surface meaningful risk. Security leadership: ability to mentor other security engineers and influence engineers across the wider organisation. Depending on team structure, this may include line management. AI security awareness: experience of leveraging AI to improve and scale appsec and cloud sec controls would be useful, but is not essential. Key Responsibilities Improve application security guardrails Tune and evolve SAST, software composition analysis, secret scanning and related controls so they are actionable, low noise and useful to engineering teams. Improve cloud and IaC security guardrails Help identify, prioritise and reduce AWS and infrastructure as code misconfigurations and vulnerabilities at scale. Drive vulnerability management Improve how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and third party advisories are triaged, prioritised and remediated. Drive cloud misconfiguration management Help teams understand, own and remediate cloud security issues using pragmatic, developer friendly workflows. Run practical threat modelling Facilitate lightweight threat modelling sessions for new products, features, services and architectural changes. Build automation and tooling Create or improve scripts, integrations, dashboards and workflows that reduce manual effort and make risk easier to understand. Support secure architecture decisions Provide application and cloud security input into design reviews, AWS architecture decisions and larger technical changes. Partner with engineering teams Work closely with product, platform and software engineering teams to embed security into design, delivery and operational practices. Support incidents and lessons learned Provide application and cloud security expertise during incidents and feed lessons learned back into patterns, tooling and guidance. Mentor others Coach security engineers and engineering teams on practical security approaches. Depending on team structure, this may include line management of one or two security engineers. Required Experience, Essential: Strong practical experience in application security and cloud security, ideally with a balanced focus across both. Hands on AWS security experience, including common misconfiguration patterns and practical remediation approaches. Experience improving vulnerability management across engineering teams, including prioritisation, ownership, remediation tracking and noise reduction. Experience improving cloud or IaC misconfiguration management at scale in a developer friendly way. Experience integrating, tuning or improving security tooling in CI/CD workflows, such as SAST, software composition analysis, secret scanning or IaC scanning. Experience running practical threat modelling sessions that influence design, delivery or remediation decisions. Ability to write scripts or small tools, ideally in Python, to automate security workflows or improve visibility. Strong communication and collaboration skills, with the ability to influence engineers and technical leaders without relying on gatekeeping. Evidence of improving application security, cloud security or vulnerability management practices in a real engineering environment. Familiarity with Agile or Scrum ways of working. Experience with leveraging AI for AppSec and CloudSec. AWS Certified Security - Speciality or equivalent practical AWS security experience. Terraform or CloudFormation expertise. Incident management or incident response experience. Experience with Splunk or similar logging/SIEM platforms. Experience with security metrics, dashboards or reporting that helped drive measurable risk reduction. Experience mentoring or line managing security engineers. Accessibility We are a disability confident employer and Valuable 500 signatory. Please let us know if you require any reasonable adjustments/personalisation as part of the application process or to enable you to attend an interview. If you would like to discuss your requirements or have any questions, and a member of our team will be happy to help. Further information At the FT, we embrace innovation and the use of technology and appreciate that individuals may leverage AI tools as part of their job application process. Whilst we are happy for you to use AI to assist with your application, it is essential that all information provided is authentic and accurately represents your skills, experience, and qualifications. Candidates should be aware that the use of AI throughout the application process may be monitored to ensure a fair and transparent hiring process for all.
Head of Safety & Assurance Closing date for applications: Friday 03rd July 2026 Purpose of Job To lead and embed a proactive safety, assurance and risk management culture across all operational and infrastructure functions within the railway business. The role provides strategic direction, oversight and continuous improvement for health and safety, operational assurance and compliance with regulatory and industry standards. Principal Accountabilities Professional Head of Occupational Safety. Develop and deliver the organisation's Safety and Assurance Strategy in alignment with corporate goals and industry best practices. Lead enterprise wide risk assessments and ensure effective mitigation planning is embedded at all operational levels. Champion a culture of continuous improvement, driving innovation in safety technology and assurance processes. Ensure full compliance with UK rail safety regulations including ROGS, ORR and relevant ISO standards. Act as the Principal Duty Holder or Competent Person under rail legislation as appropriate. Lead investigations into safety related incidents, ensuring root cause analysis and corrective actions are effectively implemented. Establish assurance frameworks for fleet, infrastructure, control centres and frontline operations. Oversee safety certification and auditing programmes, including SMS implementation and assessment. Collaborate with maintenance, engineering and operations teams to ensure safety is embedded in all activities. Liaise with industry regulators (ORR, RSSB), unions and safety boards, ensuring transparent communication and representation. Prepare and present safety performance reports, including risk trends, leading indicators and audit outcomes, to executive and board level stakeholders. Drive employee engagement in safety initiatives across all levels of the business. Lead and develop a high performing Safety and Assurance team, fostering accountability, capability growth and succession planning. Mentor managers and staff on risk awareness, behavioural safety and compliance culture. Accountable for the cyber security of all fleet and on board digital systems (including TMS, PIS, CCTV, DAS and passenger facing platforms), ensuring robust governance covering system level risk assessment, assurance and compliance with railway, safety and information security standards (including NIS Regulations, CAF, RSSB standards and internal policies). Provide strategic oversight of vulnerability management, penetration testing, secure design and engineering change assurance, and the effective management of third party and OEM cyber risks, working in collaboration with the Corporate IT function to ensure alignment to enterprise cyber policies, governance frameworks and strategic objectives. On call requirement as and when the business needs. Experience, Knowledge, Qualifications & Training Proven leadership experience in rail safety, assurance or risk management. In depth knowledge of rail industry legislation, standards and governance frameworks. Demonstrable experience in strategic planning and operational execution. Strong analytical, communication and stakeholder engagement skills. Chartered membership of IOSH, IRM or similar is desirable. Experience in digital transformation or data led safety innovation. Familiarity with ERTMS, fleet risk planning and infrastructure projects. Skilled in change management and performance improvement in regulated environments. Level6 Diploma in Occupational Safety. Diversity & Inclusion At CrossCountry, we believe our people should reflect the diverse communities we serve. Inclusion isn't just part of our strategy - it's central to our success. We're committed to creating a workplace where everyone feels valued, respected and supported to be their best.
22/06/2026
Full time
Head of Safety & Assurance Closing date for applications: Friday 03rd July 2026 Purpose of Job To lead and embed a proactive safety, assurance and risk management culture across all operational and infrastructure functions within the railway business. The role provides strategic direction, oversight and continuous improvement for health and safety, operational assurance and compliance with regulatory and industry standards. Principal Accountabilities Professional Head of Occupational Safety. Develop and deliver the organisation's Safety and Assurance Strategy in alignment with corporate goals and industry best practices. Lead enterprise wide risk assessments and ensure effective mitigation planning is embedded at all operational levels. Champion a culture of continuous improvement, driving innovation in safety technology and assurance processes. Ensure full compliance with UK rail safety regulations including ROGS, ORR and relevant ISO standards. Act as the Principal Duty Holder or Competent Person under rail legislation as appropriate. Lead investigations into safety related incidents, ensuring root cause analysis and corrective actions are effectively implemented. Establish assurance frameworks for fleet, infrastructure, control centres and frontline operations. Oversee safety certification and auditing programmes, including SMS implementation and assessment. Collaborate with maintenance, engineering and operations teams to ensure safety is embedded in all activities. Liaise with industry regulators (ORR, RSSB), unions and safety boards, ensuring transparent communication and representation. Prepare and present safety performance reports, including risk trends, leading indicators and audit outcomes, to executive and board level stakeholders. Drive employee engagement in safety initiatives across all levels of the business. Lead and develop a high performing Safety and Assurance team, fostering accountability, capability growth and succession planning. Mentor managers and staff on risk awareness, behavioural safety and compliance culture. Accountable for the cyber security of all fleet and on board digital systems (including TMS, PIS, CCTV, DAS and passenger facing platforms), ensuring robust governance covering system level risk assessment, assurance and compliance with railway, safety and information security standards (including NIS Regulations, CAF, RSSB standards and internal policies). Provide strategic oversight of vulnerability management, penetration testing, secure design and engineering change assurance, and the effective management of third party and OEM cyber risks, working in collaboration with the Corporate IT function to ensure alignment to enterprise cyber policies, governance frameworks and strategic objectives. On call requirement as and when the business needs. Experience, Knowledge, Qualifications & Training Proven leadership experience in rail safety, assurance or risk management. In depth knowledge of rail industry legislation, standards and governance frameworks. Demonstrable experience in strategic planning and operational execution. Strong analytical, communication and stakeholder engagement skills. Chartered membership of IOSH, IRM or similar is desirable. Experience in digital transformation or data led safety innovation. Familiarity with ERTMS, fleet risk planning and infrastructure projects. Skilled in change management and performance improvement in regulated environments. Level6 Diploma in Occupational Safety. Diversity & Inclusion At CrossCountry, we believe our people should reflect the diverse communities we serve. Inclusion isn't just part of our strategy - it's central to our success. We're committed to creating a workplace where everyone feels valued, respected and supported to be their best.
Join us to directly influence the future of technology at JPMorganChase. As a Senior DevSecOps Architect, you'll collaborate with top cybersecurity and engineering talent, solving complex challenges and enabling safe, secure innovation. Your passion for security and drive to make a real impact are valued here. Grow your skills in a dynamic environment designed for achievers. Help us build products that prioritize security from the start. Job Summary As a Senior DevSecOps Architect in the Cybersecurity & Technology Controls team for International Consumer, you will proactively partner with technology and business colleagues to identify and address security issues. You will embed security culture, lead threat modeling, and drive architecture reviews to ensure our products are secure by design. Your role will be pivotal in managing emerging risks, influencing product strategy, and serving as the subject matter expert for the DevSecOps strategy as well as embedding automated security controls into CI/CD pipelines. You will collaborate globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities Pipeline Security Architecture - Design, implement, and continuously improve security architecture for CI/CD pipelines and DevOps toolchains, ensuring automated security checks are embedded at every stage from code commit to production deployment. Security-as-Code Leadership - Champion Infrastructure as Code (IaC) and Security-as-Code practices, including policy enforcement, security linting, and automated compliance validation across cloud environments. Threat Modeling & Architecture Reviews - Lead advanced threat modeling (e.g., STRIDE-LM) for pipelines, microservices, and cloud-native applications, and conduct architecture reviews to drive adoption of secure design patterns. Automated Guardrails at Scale - Design and deploy automated preventive and detective guardrails to proactively reduce risk across CICD pipelines, cloud and SaaS environments. Security Culture & Enablement - Cultivate a security-first culture across product, technology, and business teams by providing developer-friendly tooling, training, and reusable secure patterns that accelerate rather than hinder delivery. Risk & Issue Management - Act with urgency to manage emerging security issues, monitor risk indicators, and recommend resolutions. Serve as the escalation point for IT Risk and Cyber domains related to DevSecOps and Change Management. Stakeholder Partnership - Partner with engineering leads, product owners, and vendors to ensure effective technology risk management, translating regulatory and policy requirements into actionable, engineer-friendly controls. Audit & Regulatory Support - Support audit, regulatory, and risk activities by providing evidence of control effectiveness and translating compliance requirements into automated, repeatable processes. Continuous Improvement - Identify and address unfamiliar technology components, share best practices, and influence peers to drive continuous improvement in DevSecOps maturity across the organization. Required Qualifications, Capabilities, and Skills Advanced threat modeling experience (e.g., STRIDE-LM) for DevOps/CICD Pipelines and toolchains. Expert ability to advise and influence secure pipeline architecture using Policy-as-Code and automated gates. Hands on security expertise in AWS and GCP. Practical experience creating reference architectures and patterns for engineering teams. Proven ability to design and deploy automated preventive and detective guardrails at scale. Expertise in leveraging IaC scanning to detect misconfigurations and compliance violations across Terraform and Kubernetes manifests. Hands on experience in integrating a comprehensive DevSecOps tooling stack, including SAST, SCA, RASP, IAST, container and image scanning, secrets detection, and AI powered DAST solutions. Experience implementing and managing SBOMs to track internal, third party risk and supply chain security. Ability to solve design and functionality problems independently. Strong written and verbal communication skills. Demonstrated success in influencing peers and stakeholders. Ability to evaluate and recommend emerging technologies for future state architecture. Preferred Qualifications, Capabilities, and Skills Shift Left/Start Left Evangelism - A proven track record of mentoring developers and fostering a culture where security is a shared responsibility. Relevant certifications: AWS Certified Security - Specialty, GCP Professional Cloud Security Engineer, CISSP, CKS, OSCP. Experience operating in regulated organizations with a 3LoD model. Willingness to challenge existing processes respectfully. Experience translating policy and regulatory requirements into control design for engineers and architects. Proven ability to upskill and learn modern technologies. Experience in financial services consumer businesses or Fintech organizations.
22/06/2026
Full time
Join us to directly influence the future of technology at JPMorganChase. As a Senior DevSecOps Architect, you'll collaborate with top cybersecurity and engineering talent, solving complex challenges and enabling safe, secure innovation. Your passion for security and drive to make a real impact are valued here. Grow your skills in a dynamic environment designed for achievers. Help us build products that prioritize security from the start. Job Summary As a Senior DevSecOps Architect in the Cybersecurity & Technology Controls team for International Consumer, you will proactively partner with technology and business colleagues to identify and address security issues. You will embed security culture, lead threat modeling, and drive architecture reviews to ensure our products are secure by design. Your role will be pivotal in managing emerging risks, influencing product strategy, and serving as the subject matter expert for the DevSecOps strategy as well as embedding automated security controls into CI/CD pipelines. You will collaborate globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities Pipeline Security Architecture - Design, implement, and continuously improve security architecture for CI/CD pipelines and DevOps toolchains, ensuring automated security checks are embedded at every stage from code commit to production deployment. Security-as-Code Leadership - Champion Infrastructure as Code (IaC) and Security-as-Code practices, including policy enforcement, security linting, and automated compliance validation across cloud environments. Threat Modeling & Architecture Reviews - Lead advanced threat modeling (e.g., STRIDE-LM) for pipelines, microservices, and cloud-native applications, and conduct architecture reviews to drive adoption of secure design patterns. Automated Guardrails at Scale - Design and deploy automated preventive and detective guardrails to proactively reduce risk across CICD pipelines, cloud and SaaS environments. Security Culture & Enablement - Cultivate a security-first culture across product, technology, and business teams by providing developer-friendly tooling, training, and reusable secure patterns that accelerate rather than hinder delivery. Risk & Issue Management - Act with urgency to manage emerging security issues, monitor risk indicators, and recommend resolutions. Serve as the escalation point for IT Risk and Cyber domains related to DevSecOps and Change Management. Stakeholder Partnership - Partner with engineering leads, product owners, and vendors to ensure effective technology risk management, translating regulatory and policy requirements into actionable, engineer-friendly controls. Audit & Regulatory Support - Support audit, regulatory, and risk activities by providing evidence of control effectiveness and translating compliance requirements into automated, repeatable processes. Continuous Improvement - Identify and address unfamiliar technology components, share best practices, and influence peers to drive continuous improvement in DevSecOps maturity across the organization. Required Qualifications, Capabilities, and Skills Advanced threat modeling experience (e.g., STRIDE-LM) for DevOps/CICD Pipelines and toolchains. Expert ability to advise and influence secure pipeline architecture using Policy-as-Code and automated gates. Hands on security expertise in AWS and GCP. Practical experience creating reference architectures and patterns for engineering teams. Proven ability to design and deploy automated preventive and detective guardrails at scale. Expertise in leveraging IaC scanning to detect misconfigurations and compliance violations across Terraform and Kubernetes manifests. Hands on experience in integrating a comprehensive DevSecOps tooling stack, including SAST, SCA, RASP, IAST, container and image scanning, secrets detection, and AI powered DAST solutions. Experience implementing and managing SBOMs to track internal, third party risk and supply chain security. Ability to solve design and functionality problems independently. Strong written and verbal communication skills. Demonstrated success in influencing peers and stakeholders. Ability to evaluate and recommend emerging technologies for future state architecture. Preferred Qualifications, Capabilities, and Skills Shift Left/Start Left Evangelism - A proven track record of mentoring developers and fostering a culture where security is a shared responsibility. Relevant certifications: AWS Certified Security - Specialty, GCP Professional Cloud Security Engineer, CISSP, CKS, OSCP. Experience operating in regulated organizations with a 3LoD model. Willingness to challenge existing processes respectfully. Experience translating policy and regulatory requirements into control design for engineers and architects. Proven ability to upskill and learn modern technologies. Experience in financial services consumer businesses or Fintech organizations.
Salary: £37,000 - 52,000 per year Requirements Proven experience leading enterprise cloud and infrastructure teams in complex environments Strong technical depth across Azure, GCP, security, resilience, and governance Commercial acumen across supplier management, contracts, and cost optimisation A passion for building high-performing teams and driving a culture of accountability and continuous improvement Responsibilities Lead a modern cloud infrastructure function, owning services across cloud, SaaS, identity, networking and operational technology Operate at the intersection of technology strategy and operational delivery, ensuring platforms are secure, resilient, and aligned to business priorities Shape cloud governance, architecture standards, and platform guardrails across Azure and GCP Play a key role in cost optimisation, supplier performance, and service maturity, bringing a strong FinOps mindset Technically lead major incidents, drive continuous improvement, and influence senior stakeholders across the organisation Technologies Azure Cloud GCP Security DevOps More We are hiring a Cloud Infrastructure Manager to lead, transform, and shape the future of our enterprise technology. Based at our Glasgow head office with some national travel when required, this is a pivotal leadership role in a fast-paced, forward-thinking business. We offer a very competitive salary, 10% annual bonus, 5+5% pension, BUPA, and 33 days of annual leave. This is a rare opportunity to shape cloud and infrastructure strategy, lead a critical function at the heart of IT operations and cyber resilience, influence enterprise-wide transformation and innovation, and build a team that delivers real business impact. last updated 25 week of 2026
21/06/2026
Full time
Salary: £37,000 - 52,000 per year Requirements Proven experience leading enterprise cloud and infrastructure teams in complex environments Strong technical depth across Azure, GCP, security, resilience, and governance Commercial acumen across supplier management, contracts, and cost optimisation A passion for building high-performing teams and driving a culture of accountability and continuous improvement Responsibilities Lead a modern cloud infrastructure function, owning services across cloud, SaaS, identity, networking and operational technology Operate at the intersection of technology strategy and operational delivery, ensuring platforms are secure, resilient, and aligned to business priorities Shape cloud governance, architecture standards, and platform guardrails across Azure and GCP Play a key role in cost optimisation, supplier performance, and service maturity, bringing a strong FinOps mindset Technically lead major incidents, drive continuous improvement, and influence senior stakeholders across the organisation Technologies Azure Cloud GCP Security DevOps More We are hiring a Cloud Infrastructure Manager to lead, transform, and shape the future of our enterprise technology. Based at our Glasgow head office with some national travel when required, this is a pivotal leadership role in a fast-paced, forward-thinking business. We offer a very competitive salary, 10% annual bonus, 5+5% pension, BUPA, and 33 days of annual leave. This is a rare opportunity to shape cloud and infrastructure strategy, lead a critical function at the heart of IT operations and cyber resilience, influence enterprise-wide transformation and innovation, and build a team that delivers real business impact. last updated 25 week of 2026
Head of Safety and AssuranceApplylocations: XC Birmingham Head Officetime type: Full timeposted on: Posted Todaytime left to apply: End Date: July 3, 2026 (13 days left to apply)job requisition id: JR032586 Head of Safety & Assurance Closing date for applications: Friday 03rd July 2026 Purpose of Job To lead and embed a proactive safety, assurance, and risk management culture across all operational and infrastructure functions within the railway business.The role provides strategic direction, oversight, and continuous improvement for health and safety, operational assurance, and compliance with regulatory and industry standards. Principal Accountabilities Professional Head of Occupational safety. Develop and deliver the organisation's Safety and Assurance Strategy in alignment with corporate goals and industry best practices. Lead enterprise-wide risk assessments and ensure effective mitigation planning is embedded at all operational levels. Champion a culture of continuous improvement, driving innovation in safety technology and assurance processes. Ensure full compliance with UK rail safety regulations including ROGS, ORR, and relevant ISO standards. Act as the Principal Duty Holder or Competent Person under rail legislation as appropriate. Lead investigations into safety-related incidents, ensuring root cause analysis and corrective actions are effectively implemented Establish assurance frameworks for fleet, infrastructure, control centres, and frontline operations. Oversee safety certification and auditing programs, including SMS (Safety Management System) implementation and assessment. Collaborate with maintenance, engineering, and operations teams to ensure safety is embedded in all activities. Liaise with industry regulators (ORR, RSSB), unions, and safety boards, ensuring transparent communication and representation. Prepare and present safety performance reports, including risk trends, leading indicators, and audit outcomes, to executive and board-level stakeholders. Drive employee engagement in safety initiatives across all levels of the business. Lead and develop a high-performing Safety and Assurance team, fostering accountability, capability growth, and succession planning. Mentor managers and staff on risk awareness, behavioural safety, and compliance culture. Accountable for the cyber security of all fleet and on-board digital systems (including TMS, PIS, CCTV, DAS and passenger-facing platforms), ensuring robust governance covering system-level risk assessment, assurance, and compliance with railway, safety and information security standards (including NIS Regulations, CAF, RSSB standards and internal policies). Provide strategic oversight of vulnerability management, penetration testing, secure design and engineering change assurance, and the effective management of third-party and OEM cyber risks, working in collaboration with the Corporate IT function to ensure alignment to enterprise cyber policies, governance frameworks and strategic objectives. On Call requirement as and when the business needs Experience, Knowledge, Qualifications & Training Essential: Proven leadership experience in rail safety, assurance, or risk management. In-depth knowledge of rail industry legislation, standards, and governance frameworks. Demonstrable experience in strategic planning and operational execution. Strong analytical, communication, and stakeholder engagement skills. Chartered membership of IOSH, IRM or similar is desirable. Experience in digital transformation or data-led safety innovation. Familiarity with ERTMS, fleet risk planning, and infrastructure projects. Skilled in change management and performance improvement in regulated environments. Level 6 Diploma in Occupational Safety Diversity & Inclusion At CrossCountry, we believe our people should reflect the diverse communities we serve. Inclusion isn't just part of our strategy - it's central to our success. We're committed to creating a workplace where everyone feels valued, respected, and supported to be their best.Click Apply Now to take the next step in your journey with CrossCountry Trains.
21/06/2026
Full time
Head of Safety and AssuranceApplylocations: XC Birmingham Head Officetime type: Full timeposted on: Posted Todaytime left to apply: End Date: July 3, 2026 (13 days left to apply)job requisition id: JR032586 Head of Safety & Assurance Closing date for applications: Friday 03rd July 2026 Purpose of Job To lead and embed a proactive safety, assurance, and risk management culture across all operational and infrastructure functions within the railway business.The role provides strategic direction, oversight, and continuous improvement for health and safety, operational assurance, and compliance with regulatory and industry standards. Principal Accountabilities Professional Head of Occupational safety. Develop and deliver the organisation's Safety and Assurance Strategy in alignment with corporate goals and industry best practices. Lead enterprise-wide risk assessments and ensure effective mitigation planning is embedded at all operational levels. Champion a culture of continuous improvement, driving innovation in safety technology and assurance processes. Ensure full compliance with UK rail safety regulations including ROGS, ORR, and relevant ISO standards. Act as the Principal Duty Holder or Competent Person under rail legislation as appropriate. Lead investigations into safety-related incidents, ensuring root cause analysis and corrective actions are effectively implemented Establish assurance frameworks for fleet, infrastructure, control centres, and frontline operations. Oversee safety certification and auditing programs, including SMS (Safety Management System) implementation and assessment. Collaborate with maintenance, engineering, and operations teams to ensure safety is embedded in all activities. Liaise with industry regulators (ORR, RSSB), unions, and safety boards, ensuring transparent communication and representation. Prepare and present safety performance reports, including risk trends, leading indicators, and audit outcomes, to executive and board-level stakeholders. Drive employee engagement in safety initiatives across all levels of the business. Lead and develop a high-performing Safety and Assurance team, fostering accountability, capability growth, and succession planning. Mentor managers and staff on risk awareness, behavioural safety, and compliance culture. Accountable for the cyber security of all fleet and on-board digital systems (including TMS, PIS, CCTV, DAS and passenger-facing platforms), ensuring robust governance covering system-level risk assessment, assurance, and compliance with railway, safety and information security standards (including NIS Regulations, CAF, RSSB standards and internal policies). Provide strategic oversight of vulnerability management, penetration testing, secure design and engineering change assurance, and the effective management of third-party and OEM cyber risks, working in collaboration with the Corporate IT function to ensure alignment to enterprise cyber policies, governance frameworks and strategic objectives. On Call requirement as and when the business needs Experience, Knowledge, Qualifications & Training Essential: Proven leadership experience in rail safety, assurance, or risk management. In-depth knowledge of rail industry legislation, standards, and governance frameworks. Demonstrable experience in strategic planning and operational execution. Strong analytical, communication, and stakeholder engagement skills. Chartered membership of IOSH, IRM or similar is desirable. Experience in digital transformation or data-led safety innovation. Familiarity with ERTMS, fleet risk planning, and infrastructure projects. Skilled in change management and performance improvement in regulated environments. Level 6 Diploma in Occupational Safety Diversity & Inclusion At CrossCountry, we believe our people should reflect the diverse communities we serve. Inclusion isn't just part of our strategy - it's central to our success. We're committed to creating a workplace where everyone feels valued, respected, and supported to be their best.Click Apply Now to take the next step in your journey with CrossCountry Trains.
Blue Light Card. Individually great, together unstoppable The Role and the Team We have an exciting opportunity for a Cloud Security Engineer to join our Technology team and play a key role in how we secure and evolve our cloud estate. You'll be reporting directly to the Director of Technology & Security. This is a hands on role where you'll take the technical lead on securing our cloud and edge estate. You'll work closely with our platform and engineering squads, helping us continuously improve how we protect the infrastructure that sits behind our product. If you love solving complex security challenges and want your work to matter, this is a great time to join. What You'll Do Review and triage security findings, prioritise remediation, and work with engineering squads and third parties to continuously improve our cloud security position Own our Cloud Security Posture Management tooling day to day, tuning policies, driving remediation, and keeping our security position visible across the business Keep our AWS estate secure across IAM, network controls, encryption, logging, and workload protection, partnering with platform engineering on guardrails, Service Control Policies, and secure landing zones Manage our Cloudflare edge as a security control, tuning WAF rules, overseeing rate limiting and bot management, and responding quickly as threats evolve Lead detection and response for cloud and edge incidents, develop detections in our SIEM, and produce post incident reviews that help us learn and improve Develop and maintain our technical security standards across cloud, WAF, IAM, and logging, keeping us aligned with best practice and our regulatory obligations Support compliance across UK GDPR, PCI DSS, ISO 27001, NIST CSF, and Cyber Essentials Plus, contributing to risk assessments and implementing technical mitigations Champion security best practice across our engineering teams, helping squads build security in from the start What You'll Bring Extensive experience as a Cloud Security Engineer, with the ability to operate independently and influence how security is done across a technology organisation Hands on experience with AWS, Cloudflare, Tenable, and SIEM, with the depth to use these tools confidently day to day Proven experience working to frameworks including NIST CSF, ISO 27001, and Cyber Essentials Plus, with a practical understanding of what good compliance really looks like Familiarity with Cloud Security Maturity Frameworks and benchmarks such as CIS, and the ability to apply them to raise security standards in practice Experience leading or contributing to incident response, particularly for cloud and edge incidents such as credential stuffing, IAM compromise, and exposed assets Strong working knowledge of Cloudflare Enterprise, including WAF rule authoring, Bot Management, and log pipelines into SIEM A clear communication style and the ability to translate technical risk into plain language for non technical stakeholders A collaborative approach, a strong track record of delivering results, and a genuine interest in how AI and automation can improve security operations We promote hybrid working and value in person collaboration, encouraging time in our offices, where you can make the most of our fully stocked snack drawers - either the HQ in Leicestershire, or London, Holborn office. The frequency and office location will vary depending on the role and team. We aim to be flexible, but we aren't able to offer fully remote working. Blue Light Card is an equal opportunities employer. We believe that employing a diverse workforce is key to our success. We make recruiting decisions based on your experience and skills. In the event of a high number of applications, we'll prioritise candidates who meet both the essential and desirable criteria for the role. What We Offer Hybrid working and flexible hours EV charging and free parking onsite at HQ 25 days annual leave plus an additional day off for your birthday, and a buy and sell holiday scheme of up to 5 days A company bonus scheme Your own Blue Light Card and exclusive access to thousands of discounts Generous funded BUPA medical insurance covering pre existing conditions Auto enrolment pension scheme via salary sacrifice, with employer NI savings reinvested into pensions Enhanced parental leave and absence leave Healthcare cashback plan Employee assistance programme (including mental health support) and mental health first aiders Great social events e.g., festive party, summer party, team socials, sports matches Regular company wide recognition events e.g. monthly Light's Up and annual Shine awards Relaxed dress code and modern office space (games area, chill out areas, bookclub, free drinks/snacks) Onsite gym at HQ (including access to free HIIT & stretch classes) Strong learning and development culture and personal growth fund
20/06/2026
Full time
Blue Light Card. Individually great, together unstoppable The Role and the Team We have an exciting opportunity for a Cloud Security Engineer to join our Technology team and play a key role in how we secure and evolve our cloud estate. You'll be reporting directly to the Director of Technology & Security. This is a hands on role where you'll take the technical lead on securing our cloud and edge estate. You'll work closely with our platform and engineering squads, helping us continuously improve how we protect the infrastructure that sits behind our product. If you love solving complex security challenges and want your work to matter, this is a great time to join. What You'll Do Review and triage security findings, prioritise remediation, and work with engineering squads and third parties to continuously improve our cloud security position Own our Cloud Security Posture Management tooling day to day, tuning policies, driving remediation, and keeping our security position visible across the business Keep our AWS estate secure across IAM, network controls, encryption, logging, and workload protection, partnering with platform engineering on guardrails, Service Control Policies, and secure landing zones Manage our Cloudflare edge as a security control, tuning WAF rules, overseeing rate limiting and bot management, and responding quickly as threats evolve Lead detection and response for cloud and edge incidents, develop detections in our SIEM, and produce post incident reviews that help us learn and improve Develop and maintain our technical security standards across cloud, WAF, IAM, and logging, keeping us aligned with best practice and our regulatory obligations Support compliance across UK GDPR, PCI DSS, ISO 27001, NIST CSF, and Cyber Essentials Plus, contributing to risk assessments and implementing technical mitigations Champion security best practice across our engineering teams, helping squads build security in from the start What You'll Bring Extensive experience as a Cloud Security Engineer, with the ability to operate independently and influence how security is done across a technology organisation Hands on experience with AWS, Cloudflare, Tenable, and SIEM, with the depth to use these tools confidently day to day Proven experience working to frameworks including NIST CSF, ISO 27001, and Cyber Essentials Plus, with a practical understanding of what good compliance really looks like Familiarity with Cloud Security Maturity Frameworks and benchmarks such as CIS, and the ability to apply them to raise security standards in practice Experience leading or contributing to incident response, particularly for cloud and edge incidents such as credential stuffing, IAM compromise, and exposed assets Strong working knowledge of Cloudflare Enterprise, including WAF rule authoring, Bot Management, and log pipelines into SIEM A clear communication style and the ability to translate technical risk into plain language for non technical stakeholders A collaborative approach, a strong track record of delivering results, and a genuine interest in how AI and automation can improve security operations We promote hybrid working and value in person collaboration, encouraging time in our offices, where you can make the most of our fully stocked snack drawers - either the HQ in Leicestershire, or London, Holborn office. The frequency and office location will vary depending on the role and team. We aim to be flexible, but we aren't able to offer fully remote working. Blue Light Card is an equal opportunities employer. We believe that employing a diverse workforce is key to our success. We make recruiting decisions based on your experience and skills. In the event of a high number of applications, we'll prioritise candidates who meet both the essential and desirable criteria for the role. What We Offer Hybrid working and flexible hours EV charging and free parking onsite at HQ 25 days annual leave plus an additional day off for your birthday, and a buy and sell holiday scheme of up to 5 days A company bonus scheme Your own Blue Light Card and exclusive access to thousands of discounts Generous funded BUPA medical insurance covering pre existing conditions Auto enrolment pension scheme via salary sacrifice, with employer NI savings reinvested into pensions Enhanced parental leave and absence leave Healthcare cashback plan Employee assistance programme (including mental health support) and mental health first aiders Great social events e.g., festive party, summer party, team socials, sports matches Regular company wide recognition events e.g. monthly Light's Up and annual Shine awards Relaxed dress code and modern office space (games area, chill out areas, bookclub, free drinks/snacks) Onsite gym at HQ (including access to free HIIT & stretch classes) Strong learning and development culture and personal growth fund
Overview At Centrica, we're building a more secure, resilient and digitally enabled future. As a Business Information Security Officer (BISO) you'll play a pivotal role in modernising platforms, strengthening cyber resilience, and partnering with Technology CIOs to deliver secure outcomes. Location UK based hybrid role - occasional travel to sites. Responsibilities Act as the trusted security partner to Technology CIOs and their leadership teams, providing pragmatic, risk based advice that enables confident business and technology decisions. Lead the execution of Centrica's information security strategy within the business unit, ensuring alignment to organisational priorities, regulatory expectations and industry standards. Own information security risk management for the business unit, overseeing the identification, assessment and mitigation of risks and ensuring effective controls are designed, implemented and maintained. Embed security by design across technology initiatives and change programmes, working closely with delivery teams from ideation through to live operations to strengthen resilience. Serve as the primary escalation point for cyber security governance, incidents and resilience matters, ensuring issues are managed transparently and lessons learned drive continuous improvement. Provide clear, evidence based reporting and security awareness leadership, keeping senior stakeholders informed on security posture, key risks and progress while promoting a strong security culture. Qualifications Extensive experience in cyber and information security leadership, operating in complex, regulated enterprise environments and influencing security outcomes at scale. Proven authority in security governance, risk management and compliance, with strong working knowledge of recognised frameworks and standards such as ISO 27001, NIST, COBIT and GDPR, and experience supporting control and assurance activities. Confident senior level communicator, experienced in briefing CIOs and business leaders, translating technical risk into clear business insight and influencing decisions through credibility, judgement and impact. Strong delivery mindset with the ability to manage multiple complex initiatives simultaneously, demonstrating consistent outcomes across risk management, incident response, assurance and security improvement programmes. Advanced capability in the safe and responsible use of AI and emerging technologies, including enterprise AI co pilots and knowledge assistants, with a clear understanding of accuracy, bias, compliance and escalation within defined governance guardrails. Resilient, adaptable leader with exceptional interpersonal skills, able to operate independently while contributing to wider leadership teams, motivating virtual and matrix managed teams and championing a strong, values led security culture. Benefits Market competitive salary with an additional 15% Employee Energy Allowance. Comprehensive pension plan and fully funded company healthcare plan. Generous holiday allowance: 25 days plus public holidays, with option to purchase up to 5 extra days.
20/06/2026
Full time
Overview At Centrica, we're building a more secure, resilient and digitally enabled future. As a Business Information Security Officer (BISO) you'll play a pivotal role in modernising platforms, strengthening cyber resilience, and partnering with Technology CIOs to deliver secure outcomes. Location UK based hybrid role - occasional travel to sites. Responsibilities Act as the trusted security partner to Technology CIOs and their leadership teams, providing pragmatic, risk based advice that enables confident business and technology decisions. Lead the execution of Centrica's information security strategy within the business unit, ensuring alignment to organisational priorities, regulatory expectations and industry standards. Own information security risk management for the business unit, overseeing the identification, assessment and mitigation of risks and ensuring effective controls are designed, implemented and maintained. Embed security by design across technology initiatives and change programmes, working closely with delivery teams from ideation through to live operations to strengthen resilience. Serve as the primary escalation point for cyber security governance, incidents and resilience matters, ensuring issues are managed transparently and lessons learned drive continuous improvement. Provide clear, evidence based reporting and security awareness leadership, keeping senior stakeholders informed on security posture, key risks and progress while promoting a strong security culture. Qualifications Extensive experience in cyber and information security leadership, operating in complex, regulated enterprise environments and influencing security outcomes at scale. Proven authority in security governance, risk management and compliance, with strong working knowledge of recognised frameworks and standards such as ISO 27001, NIST, COBIT and GDPR, and experience supporting control and assurance activities. Confident senior level communicator, experienced in briefing CIOs and business leaders, translating technical risk into clear business insight and influencing decisions through credibility, judgement and impact. Strong delivery mindset with the ability to manage multiple complex initiatives simultaneously, demonstrating consistent outcomes across risk management, incident response, assurance and security improvement programmes. Advanced capability in the safe and responsible use of AI and emerging technologies, including enterprise AI co pilots and knowledge assistants, with a clear understanding of accuracy, bias, compliance and escalation within defined governance guardrails. Resilient, adaptable leader with exceptional interpersonal skills, able to operate independently while contributing to wider leadership teams, motivating virtual and matrix managed teams and championing a strong, values led security culture. Benefits Market competitive salary with an additional 15% Employee Energy Allowance. Comprehensive pension plan and fully funded company healthcare plan. Generous holiday allowance: 25 days plus public holidays, with option to purchase up to 5 extra days.
A bit about the role As Allwyn transitions most of its technology services from on premises into a multi cloud environment, Cloud Security becomes critically important to ensure our core services and gaming platforms are safe. The DevOps engineer is the dedicated DevOps specialist focused on prioritising and resolving security defects and vulnerabilities across cloud platforms and application pipelines. The role acts as the technical bridge between Cloud Engineering and the Security Operation Centre (SOC), Enterprise Security and Cyber Defence teams. The DevOps Engineer ensures that cloud infrastructure and delivery pipelines in AWS and Azure are Secure by Design, automating remediation where possible and embedding security controls into infrastructure as code (IaC) and CI/CD pipelines. You will champion secure engineering practices ensuring both speed of delivery and robust security posture across all environments. What you'll be doing Monitor, triage and remediate vulnerabilities across applications, cloud workloads, containers, CI/CD pipelines and IaC repositories Work closely with SOC, Enterprise Security and Cyber Defence teams to respond to active and emerging threats ensuring rapid technical remediation Integrate security tooling into CI/CD pipelines including container scanning and secret scanning Maintain and improve IaC security posture using Terraform and ensure compliance with security baselines and guardrails Automate security checks and enforcement using policy as code, security scanners and cloud native services Support threat modelling and secure solution design with engineering teams Own vulnerability management workflows and ensure timely remediation in line with risk and audit expectations Implement and maintain cloud security configurations (IAM, key management, WAF security groups, logging and monitoring) Produce technical documentation, runbooks and remediation guidance for engineering teams Work with product and engineering teams to embed security into development standards Create and enforce governance policies What experience we're looking for 3 5+ years hands on experience in DevOps, platform engineering or DevSecOps role Strong development background with the ability to build automation and tooling for security remediation Strong infrastructure as code experience using Terraform across AWS and Azure Deep understanding of cloud security principles, identity and access controls, network security and container security in AWS and Azure Experience integrating and managing security controls Solid understanding of CI/CD pipelines including GitHub Actions Practical experience with vulnerability management, threat remediation and working with the Security Operating Centre and Cyber teams Strong understanding of modern application architectures Demonstrated ability to keep up with rapidly evolving cloud technologies Key Measures of Success Reduction in critical and high risk vulnerabilities within agreed SLAs, cloud and application environments Improved security posture as measured by cloud security benchmarks, IaC scanning results and automated policy compliance Effective collaboration and faster incident response with SOC, Enterprise Security and Cyber Defence teams Automation coverage increased, reducing manual remediation effort and improving consistency Secure pipelines, evidence by adoption of scanning tools and zero high or critical findings reaching production Positive feedback from engineering teams regarding clarity, support and quality of security guidance Audit and compliance targets met with no major findings related to DevOps or Cloud security practices Benefits Company Bonus Scheme Matched pension contributions up to 8.5% 26 days annual leave + 2 Life Days (and bank holidays) Single Private Health Cover Complimentary Private Medical Income Protection Flexible Benefits - EV Scheme, Money Coach, Will Writing, Mortgage Advice, Dental and Eye Care Schemes Enhanced Family Leave (Maternity, Paternity, Adoption) Wellness Allowance £500 Employee Assistance Programme Discounted Health Assessments Volunteering Days Matched Funding We are a Disability Confident Leader which means we've taken proactive steps to ensure our workplace is accessible and inclusive for disabled and neurodivergent colleagues and candidates. As part of this we offer an interview to disabled applicants who meet the essential requirements of the job. An inclusive reward offering with wellbeing at the centre At Allwyn, inclusion is built into how we care for our people. Our benefits and policies support colleagues-and their families-at every stage of life and career. By prioritising wellbeing and belonging, we create a workplace where everyone feels valued, rewarded, and empowered to succeed.
19/06/2026
Full time
A bit about the role As Allwyn transitions most of its technology services from on premises into a multi cloud environment, Cloud Security becomes critically important to ensure our core services and gaming platforms are safe. The DevOps engineer is the dedicated DevOps specialist focused on prioritising and resolving security defects and vulnerabilities across cloud platforms and application pipelines. The role acts as the technical bridge between Cloud Engineering and the Security Operation Centre (SOC), Enterprise Security and Cyber Defence teams. The DevOps Engineer ensures that cloud infrastructure and delivery pipelines in AWS and Azure are Secure by Design, automating remediation where possible and embedding security controls into infrastructure as code (IaC) and CI/CD pipelines. You will champion secure engineering practices ensuring both speed of delivery and robust security posture across all environments. What you'll be doing Monitor, triage and remediate vulnerabilities across applications, cloud workloads, containers, CI/CD pipelines and IaC repositories Work closely with SOC, Enterprise Security and Cyber Defence teams to respond to active and emerging threats ensuring rapid technical remediation Integrate security tooling into CI/CD pipelines including container scanning and secret scanning Maintain and improve IaC security posture using Terraform and ensure compliance with security baselines and guardrails Automate security checks and enforcement using policy as code, security scanners and cloud native services Support threat modelling and secure solution design with engineering teams Own vulnerability management workflows and ensure timely remediation in line with risk and audit expectations Implement and maintain cloud security configurations (IAM, key management, WAF security groups, logging and monitoring) Produce technical documentation, runbooks and remediation guidance for engineering teams Work with product and engineering teams to embed security into development standards Create and enforce governance policies What experience we're looking for 3 5+ years hands on experience in DevOps, platform engineering or DevSecOps role Strong development background with the ability to build automation and tooling for security remediation Strong infrastructure as code experience using Terraform across AWS and Azure Deep understanding of cloud security principles, identity and access controls, network security and container security in AWS and Azure Experience integrating and managing security controls Solid understanding of CI/CD pipelines including GitHub Actions Practical experience with vulnerability management, threat remediation and working with the Security Operating Centre and Cyber teams Strong understanding of modern application architectures Demonstrated ability to keep up with rapidly evolving cloud technologies Key Measures of Success Reduction in critical and high risk vulnerabilities within agreed SLAs, cloud and application environments Improved security posture as measured by cloud security benchmarks, IaC scanning results and automated policy compliance Effective collaboration and faster incident response with SOC, Enterprise Security and Cyber Defence teams Automation coverage increased, reducing manual remediation effort and improving consistency Secure pipelines, evidence by adoption of scanning tools and zero high or critical findings reaching production Positive feedback from engineering teams regarding clarity, support and quality of security guidance Audit and compliance targets met with no major findings related to DevOps or Cloud security practices Benefits Company Bonus Scheme Matched pension contributions up to 8.5% 26 days annual leave + 2 Life Days (and bank holidays) Single Private Health Cover Complimentary Private Medical Income Protection Flexible Benefits - EV Scheme, Money Coach, Will Writing, Mortgage Advice, Dental and Eye Care Schemes Enhanced Family Leave (Maternity, Paternity, Adoption) Wellness Allowance £500 Employee Assistance Programme Discounted Health Assessments Volunteering Days Matched Funding We are a Disability Confident Leader which means we've taken proactive steps to ensure our workplace is accessible and inclusive for disabled and neurodivergent colleagues and candidates. As part of this we offer an interview to disabled applicants who meet the essential requirements of the job. An inclusive reward offering with wellbeing at the centre At Allwyn, inclusion is built into how we care for our people. Our benefits and policies support colleagues-and their families-at every stage of life and career. By prioritising wellbeing and belonging, we create a workplace where everyone feels valued, rewarded, and empowered to succeed.
Managing Engineer - Cyber Platform Engineering (Hybrid)Applyremote type: Hybridlocations: Belfast 10 Mays Meadow: Der-Derry/Londonderrytime type: Full timeposted on: Posted Todaytime left to apply: End Date: June 24, 2026 (7 days left to apply)job requisition id: R31412At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers' evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Your role in the team We are hiring multiple Managing Engineers to join our Cyber Platform Engineering organization within Allstate Cyber Operations & Platforms. This posting represents an opportunity to be considered for one of several engineering leadership roles aligned to a shared mission: building secure, scalable, and operationally mature platform capabilities that strengthen cyber operations. While these roles share a common leadership profile and core engineering expectations, each opening is centered on a distinct focus area across agentic AI platforms, tooling and platform integration, or security data and observability. Focus Areas Agentic Cyber Platforms (ACP) : Build platform services, orchestration capabilities, and guardrails that enable secure, reliable, and scalable AI adoption across cyber operations. Tooling & Platform (T&P) : Lead engineering for integrated tooling, shared services, and automation capabilities that improve consistency, interoperability, and workflow efficiency. Security Data & Observability (SD&O) : Engineer telemetry pipelines, observability controls, and data services that support analytics, automation, and AI-enabled decision-making. Key Responsibilities Lead the design, delivery, and operation of production-grade engineering capabilities that support cyber operations at scale. Build reliable, secure, and observable services, tools, platforms, or data pipelines aligned to shared engineering standards. Own service and platform lifecycle expectations, including reliability, operational readiness, observability, and continuous improvement. Partner across product, platform, and engineering stakeholders to shape architecture, integration design, and delivery sequencing. Drive platform maturity through automation, reuse, standardization, and strong operational discipline. Coach and develop engineers while building high-performing teams with strong execution and systems thinking. Essential Skills: All applicants must demonstrate they have a legal right to work in the UK for employment at Allstate. Allstate is not providing sponsorship for this vacancy. A minimum of 5 years of experience in software engineering, platform engineering, data engineering, or distributed systems delivery. A minimum of 3 years of experience leading engineering teams or technical delivery in product-based environments. Experience operating production systems, services, tools, or pipelines with strong expectations around reliability, observability, security, and maintainability. Strong understanding of integration patterns, automation, cloud-native engineering practices, and scalable platform design. Experience building reusable services, workflows, platforms, or data capabilities that support multiple teams or operational use cases. Ability to balance technical depth, delivery execution, operational rigor, and people leadership in complex environments. Desirable Skills: Additional depth in AI platforms, security tooling, telemetry engineering, or observability is strongly valued depending on alignment to the specific role. Familiarity with cyber operations, security workflows, or high-sensitivity operating environments is preferred. Supervisory Responsibilities: This role has supervisory responsibilities. Posting date: Wednesday 24th June .59pm Skills Accountability, Collaboration, Continuous Delivery, Continuous Deployment, Planning Ability Shape the Future of Insurance with Cutting-Edge Tech and a People-First Culture Why join us? Allstate NI is proud to be Allstate's European Digital Centre of Excellence, a hub for innovation and engineering excellence. We're recent winners of Best Place to Work in IT (100+ employees) and Best Use of Cloud Services at the Belfast Telegraph IT Awards, and we've been recognised for our community and sustainability impact with Platinum in the Northern Ireland Environmental Benchmarking Survey.We're a product-driven, cloud-first organisation delivering real outcomes through modern technology, a digital product-centric talent model, and a culture rooted in engineering excellence. Our teams work in cross-functional structures, guided by an outcome-based delivery approach that accelerates speed, agility, and value.We also invest in you. At Allstate NI, your career growth matters. You'll have access to our Continuous Learning Hub, designed to support skills development and professional advancement through tailored learning paths, certifications, and mentoring opportunities. Whether you're deepening technical expertise or exploring leadership roles, we provide the tools and support to help you thrive. What do you get in return? As well as receiving a competitive annual salary, our reward package includes: Corporate bonus scheme Pension scheme Annual performance-related pay reviews Life assurance and income protection Flexible working options Hybrid working Private medical and dental insurance Access to an employee assistance programme Discounted gym membership Two paid volunteering days each year Cycle to work schemeBe part of a high-performing, socially responsible organisation where your work has purpose, and your growth is supported every step of the way.
19/06/2026
Full time
Managing Engineer - Cyber Platform Engineering (Hybrid)Applyremote type: Hybridlocations: Belfast 10 Mays Meadow: Der-Derry/Londonderrytime type: Full timeposted on: Posted Todaytime left to apply: End Date: June 24, 2026 (7 days left to apply)job requisition id: R31412At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers' evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Your role in the team We are hiring multiple Managing Engineers to join our Cyber Platform Engineering organization within Allstate Cyber Operations & Platforms. This posting represents an opportunity to be considered for one of several engineering leadership roles aligned to a shared mission: building secure, scalable, and operationally mature platform capabilities that strengthen cyber operations. While these roles share a common leadership profile and core engineering expectations, each opening is centered on a distinct focus area across agentic AI platforms, tooling and platform integration, or security data and observability. Focus Areas Agentic Cyber Platforms (ACP) : Build platform services, orchestration capabilities, and guardrails that enable secure, reliable, and scalable AI adoption across cyber operations. Tooling & Platform (T&P) : Lead engineering for integrated tooling, shared services, and automation capabilities that improve consistency, interoperability, and workflow efficiency. Security Data & Observability (SD&O) : Engineer telemetry pipelines, observability controls, and data services that support analytics, automation, and AI-enabled decision-making. Key Responsibilities Lead the design, delivery, and operation of production-grade engineering capabilities that support cyber operations at scale. Build reliable, secure, and observable services, tools, platforms, or data pipelines aligned to shared engineering standards. Own service and platform lifecycle expectations, including reliability, operational readiness, observability, and continuous improvement. Partner across product, platform, and engineering stakeholders to shape architecture, integration design, and delivery sequencing. Drive platform maturity through automation, reuse, standardization, and strong operational discipline. Coach and develop engineers while building high-performing teams with strong execution and systems thinking. Essential Skills: All applicants must demonstrate they have a legal right to work in the UK for employment at Allstate. Allstate is not providing sponsorship for this vacancy. A minimum of 5 years of experience in software engineering, platform engineering, data engineering, or distributed systems delivery. A minimum of 3 years of experience leading engineering teams or technical delivery in product-based environments. Experience operating production systems, services, tools, or pipelines with strong expectations around reliability, observability, security, and maintainability. Strong understanding of integration patterns, automation, cloud-native engineering practices, and scalable platform design. Experience building reusable services, workflows, platforms, or data capabilities that support multiple teams or operational use cases. Ability to balance technical depth, delivery execution, operational rigor, and people leadership in complex environments. Desirable Skills: Additional depth in AI platforms, security tooling, telemetry engineering, or observability is strongly valued depending on alignment to the specific role. Familiarity with cyber operations, security workflows, or high-sensitivity operating environments is preferred. Supervisory Responsibilities: This role has supervisory responsibilities. Posting date: Wednesday 24th June .59pm Skills Accountability, Collaboration, Continuous Delivery, Continuous Deployment, Planning Ability Shape the Future of Insurance with Cutting-Edge Tech and a People-First Culture Why join us? Allstate NI is proud to be Allstate's European Digital Centre of Excellence, a hub for innovation and engineering excellence. We're recent winners of Best Place to Work in IT (100+ employees) and Best Use of Cloud Services at the Belfast Telegraph IT Awards, and we've been recognised for our community and sustainability impact with Platinum in the Northern Ireland Environmental Benchmarking Survey.We're a product-driven, cloud-first organisation delivering real outcomes through modern technology, a digital product-centric talent model, and a culture rooted in engineering excellence. Our teams work in cross-functional structures, guided by an outcome-based delivery approach that accelerates speed, agility, and value.We also invest in you. At Allstate NI, your career growth matters. You'll have access to our Continuous Learning Hub, designed to support skills development and professional advancement through tailored learning paths, certifications, and mentoring opportunities. Whether you're deepening technical expertise or exploring leadership roles, we provide the tools and support to help you thrive. What do you get in return? As well as receiving a competitive annual salary, our reward package includes: Corporate bonus scheme Pension scheme Annual performance-related pay reviews Life assurance and income protection Flexible working options Hybrid working Private medical and dental insurance Access to an employee assistance programme Discounted gym membership Two paid volunteering days each year Cycle to work schemeBe part of a high-performing, socially responsible organisation where your work has purpose, and your growth is supported every step of the way.