Cyber Capability Centre Delivery Lead Location: Remote with occasional onsite visits and quarterly team sessions (Preston or local site) Term: 6 months initially Rate: £45.46 per hour umbrella, circa £336.40 per day, inside IR35 Please note successful candidate must go through a BPSS check and be able to obtain government security clearance About the Role The Cyber Capability Centre Delivery Lead plays a key role in delivering new cyber capabilities, system upgrades, and improvements across enterprise-managed systems and services. Reporting to the Cyber Capability Centre Delivery Manager, you will oversee the full delivery lifecycle planning, governance, execution, and closure ensuring that cyber initiatives are delivered effectively, efficiently, and in alignment with business and security objectives. You ll coordinate multidisciplinary delivery teams, manage third-party partners, and work closely with senior stakeholders to ensure that new cyber capabilities strengthen enterprise resilience and align with strategic priorities. Key Responsibilities Lead and manage the delivery of small to medium-sized cyber security change projects with high business impact. Translate business and cyber security requirements into actionable delivery plans, milestones, and resource schedules. Coordinate multi-disciplinary teams across Cyber, IT, and Business functions, ensuring collaboration and accountability. Apply governance, assurance, and delivery frameworks to manage cost, schedule, quality, and risk. Manage and forecast delivery budgets, taking corrective action on overspends or variances. Identify and communicate project risks, issues, dependencies, and opportunities. Engage with suppliers, vendors, and partners to ensure efficient and compliant delivery. Capture lessons learned and drive continuous improvement in delivery practices. Support the Capability Centre Manager in developing team capability, mentoring staff, and fostering a culture of improvement. Ensure that all delivery activities align with cyber strategy, governance, and compliance standards. Technical Knowledge & Experience Proven experience delivering IT or cyber security projects or capability enhancements in complex environments. Strong understanding of cyber security principles, controls, and frameworks (e.g. NIST, ISO 27001, CIS). Experience working with DevOps tools and practices (e.g. JIRA, Confluence, Azure DevOps). Familiarity with enterprise security domains such as identity management, cloud security, network defence, vulnerability management, or security operations. Demonstrated ability to work within structured governance and change control frameworks . Experience managing third-party suppliers and delivery partners. Strong knowledge of project delivery methodologies : PRINCE2 , APM PMQ , Agile/Scrum , or Hybrid delivery models. Understanding of ITIL and service management principles. Experience applying Change Management and Lean Six Sigma techniques is beneficial. Skills & Attributes Excellent leadership, stakeholder management, and communication skills. Strong analytical, problem-solving, and decision-making capabilities. Highly organized, adaptable, and able to manage multiple concurrent deliverables. Skilled at influencing stakeholders across technical and non-technical domains. Demonstrated ability to drive outcomes in complex, cross-functional environments. Committed to continuous improvement and professional development. Can-do attitude with strong ownership and accountability. Qualifications Degree in Information Technology, Cyber Security, Engineering, or a related field. Formal project management training: PRINCE2 Practitioner , APM PMQ , or Agile Project Management . Additional certifications desirable: ITIL , Lean Six Sigma , Change Management , CISSP , CISM , or CompTIA Security+ . Please note applications are likely to close soon so please act quickly if you would like to be considered.
10/10/2025
Contractor
Cyber Capability Centre Delivery Lead Location: Remote with occasional onsite visits and quarterly team sessions (Preston or local site) Term: 6 months initially Rate: £45.46 per hour umbrella, circa £336.40 per day, inside IR35 Please note successful candidate must go through a BPSS check and be able to obtain government security clearance About the Role The Cyber Capability Centre Delivery Lead plays a key role in delivering new cyber capabilities, system upgrades, and improvements across enterprise-managed systems and services. Reporting to the Cyber Capability Centre Delivery Manager, you will oversee the full delivery lifecycle planning, governance, execution, and closure ensuring that cyber initiatives are delivered effectively, efficiently, and in alignment with business and security objectives. You ll coordinate multidisciplinary delivery teams, manage third-party partners, and work closely with senior stakeholders to ensure that new cyber capabilities strengthen enterprise resilience and align with strategic priorities. Key Responsibilities Lead and manage the delivery of small to medium-sized cyber security change projects with high business impact. Translate business and cyber security requirements into actionable delivery plans, milestones, and resource schedules. Coordinate multi-disciplinary teams across Cyber, IT, and Business functions, ensuring collaboration and accountability. Apply governance, assurance, and delivery frameworks to manage cost, schedule, quality, and risk. Manage and forecast delivery budgets, taking corrective action on overspends or variances. Identify and communicate project risks, issues, dependencies, and opportunities. Engage with suppliers, vendors, and partners to ensure efficient and compliant delivery. Capture lessons learned and drive continuous improvement in delivery practices. Support the Capability Centre Manager in developing team capability, mentoring staff, and fostering a culture of improvement. Ensure that all delivery activities align with cyber strategy, governance, and compliance standards. Technical Knowledge & Experience Proven experience delivering IT or cyber security projects or capability enhancements in complex environments. Strong understanding of cyber security principles, controls, and frameworks (e.g. NIST, ISO 27001, CIS). Experience working with DevOps tools and practices (e.g. JIRA, Confluence, Azure DevOps). Familiarity with enterprise security domains such as identity management, cloud security, network defence, vulnerability management, or security operations. Demonstrated ability to work within structured governance and change control frameworks . Experience managing third-party suppliers and delivery partners. Strong knowledge of project delivery methodologies : PRINCE2 , APM PMQ , Agile/Scrum , or Hybrid delivery models. Understanding of ITIL and service management principles. Experience applying Change Management and Lean Six Sigma techniques is beneficial. Skills & Attributes Excellent leadership, stakeholder management, and communication skills. Strong analytical, problem-solving, and decision-making capabilities. Highly organized, adaptable, and able to manage multiple concurrent deliverables. Skilled at influencing stakeholders across technical and non-technical domains. Demonstrated ability to drive outcomes in complex, cross-functional environments. Committed to continuous improvement and professional development. Can-do attitude with strong ownership and accountability. Qualifications Degree in Information Technology, Cyber Security, Engineering, or a related field. Formal project management training: PRINCE2 Practitioner , APM PMQ , or Agile Project Management . Additional certifications desirable: ITIL , Lean Six Sigma , Change Management , CISSP , CISM , or CompTIA Security+ . Please note applications are likely to close soon so please act quickly if you would like to be considered.
ICT Infrastructure and Systems Manager My client is looking for an experienced and technically skilled ICT Infrastructure and Systems Manager to take ownership of their core IT infrastructure and business systems. This is a fantastic opportunity to lead the strategic development, maintenance, and security of a wide-ranging and complex ICT environment across over 60 sites and supporting more than 1,500 users. This role suits a confident IT infrastructure leader who thrives in a dynamic, multi-site setting and enjoys managing both people and technology to deliver robust, secure and high-performing IT systems. Key responsibilities include: Leading the management and development of IT infrastructure, cloud services, and business-critical systems Ensuring system availability, performance, and security across all platforms and networks Administering Microsoft 365 tenants, Entra ID, Azure, and Defender XDR Managing vendor and third-party relationships for IT and SaaS solutions Overseeing IT security, incident response, and compliance with GDPR, ISO27001, and other standards Providing 3rd line support for infrastructure and systems-related issues Leading and developing a skilled team of systems and infrastructure professionals What we're looking for: Proven experience in an infrastructure or systems management role Strong knowledge of Microsoft 365, Azure, Active Directory, DNS, and networking Experience implementing and supporting wide area networks and cloud infrastructure Familiarity with industry security standards and compliance frameworks Strong documentation, communication, and leadership skills Desirable qualifications and experience: Industry certifications or working toward one Experience with Microsoft Defender, vulnerability scanning, and disaster recovery planning Understanding of ITIL and service management methodologies Why consider this role? Join a forward-thinking, values-led organisation with a strong public service mission Lead meaningful technology initiatives that support learning, culture and community services Work across a broad range of sites and platforms, offering variety and challenge Be part of a collaborative and supportive ICT leadership team Interested? Please Click Apply Now. ICT Infrastructure and Systems Manager
09/10/2025
Full time
ICT Infrastructure and Systems Manager My client is looking for an experienced and technically skilled ICT Infrastructure and Systems Manager to take ownership of their core IT infrastructure and business systems. This is a fantastic opportunity to lead the strategic development, maintenance, and security of a wide-ranging and complex ICT environment across over 60 sites and supporting more than 1,500 users. This role suits a confident IT infrastructure leader who thrives in a dynamic, multi-site setting and enjoys managing both people and technology to deliver robust, secure and high-performing IT systems. Key responsibilities include: Leading the management and development of IT infrastructure, cloud services, and business-critical systems Ensuring system availability, performance, and security across all platforms and networks Administering Microsoft 365 tenants, Entra ID, Azure, and Defender XDR Managing vendor and third-party relationships for IT and SaaS solutions Overseeing IT security, incident response, and compliance with GDPR, ISO27001, and other standards Providing 3rd line support for infrastructure and systems-related issues Leading and developing a skilled team of systems and infrastructure professionals What we're looking for: Proven experience in an infrastructure or systems management role Strong knowledge of Microsoft 365, Azure, Active Directory, DNS, and networking Experience implementing and supporting wide area networks and cloud infrastructure Familiarity with industry security standards and compliance frameworks Strong documentation, communication, and leadership skills Desirable qualifications and experience: Industry certifications or working toward one Experience with Microsoft Defender, vulnerability scanning, and disaster recovery planning Understanding of ITIL and service management methodologies Why consider this role? Join a forward-thinking, values-led organisation with a strong public service mission Lead meaningful technology initiatives that support learning, culture and community services Work across a broad range of sites and platforms, offering variety and challenge Be part of a collaborative and supportive ICT leadership team Interested? Please Click Apply Now. ICT Infrastructure and Systems Manager
Tools, Automation, Middleware & Patching Ops Manager Hybrid working £550-£850 per day (umbrella engagement) Our client, an industry leading national business, is looking to hire a contractor to Team lead/manage a team specialising in Automation, Middleware & Patching. Firstly, as the operations Leader, you will be responsible for managing enterprise IT operations tooling, middleware platforms, automation solutions and patching compliance. Secondly, from a future development perspective, you will also have the technical foresight to design reliable and robust systems ensuring future stability. You will lead a team of specialists to ensure operational tools and automation frameworks are effectively deployed, maintained and optimised, while driving efficiencies and ensuring secure, compliant infrastructure. This role requires a background and strong expertise in enterprise toolsets, automation technologies and patch management processes. Engagement via Umbrella Company Only; all taxes & NI deducted at source. General responsibilities Lead operations of enterprise tooling platforms including SCCM, Scorch, BMC, Ansible and MuleSoft. Define and deliver patching strategies ensuring maximum infrastructure security and compliance with regulatory requirements. Oversee middleware operations. Drive automation initiatives thus reducing manual effort to improve service delivery efficiency. Collaborate with database and storage teams to integrate tools and automation into core operations. Develop and maintain standard operating procedures for tooling, middleware and patching. Ensure consistent monitoring, reporting and compliance dashboards are in up to date and in-place for patching and tooling. Work with security and governance teams to align patching schedules with vulnerability management requirements. Provide operational reporting for Stakeholders, including compliance metrics. Manage vendor relationships and licensing agreements for tooling and middleware platforms. Required Skills & Experience Proven experience managing enterprise operations tooling, middleware and patch management. Strong expertise with SCCM, Scorch, BMC, Ansible and MuleSoft platforms. Demonstrated experience in patch management, vulnerability remediation and compliance reporting. Hands-on knowledge of automation frameworks and orchestration platforms. ITIL Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
09/10/2025
Full time
Tools, Automation, Middleware & Patching Ops Manager Hybrid working £550-£850 per day (umbrella engagement) Our client, an industry leading national business, is looking to hire a contractor to Team lead/manage a team specialising in Automation, Middleware & Patching. Firstly, as the operations Leader, you will be responsible for managing enterprise IT operations tooling, middleware platforms, automation solutions and patching compliance. Secondly, from a future development perspective, you will also have the technical foresight to design reliable and robust systems ensuring future stability. You will lead a team of specialists to ensure operational tools and automation frameworks are effectively deployed, maintained and optimised, while driving efficiencies and ensuring secure, compliant infrastructure. This role requires a background and strong expertise in enterprise toolsets, automation technologies and patch management processes. Engagement via Umbrella Company Only; all taxes & NI deducted at source. General responsibilities Lead operations of enterprise tooling platforms including SCCM, Scorch, BMC, Ansible and MuleSoft. Define and deliver patching strategies ensuring maximum infrastructure security and compliance with regulatory requirements. Oversee middleware operations. Drive automation initiatives thus reducing manual effort to improve service delivery efficiency. Collaborate with database and storage teams to integrate tools and automation into core operations. Develop and maintain standard operating procedures for tooling, middleware and patching. Ensure consistent monitoring, reporting and compliance dashboards are in up to date and in-place for patching and tooling. Work with security and governance teams to align patching schedules with vulnerability management requirements. Provide operational reporting for Stakeholders, including compliance metrics. Manage vendor relationships and licensing agreements for tooling and middleware platforms. Required Skills & Experience Proven experience managing enterprise operations tooling, middleware and patch management. Strong expertise with SCCM, Scorch, BMC, Ansible and MuleSoft platforms. Demonstrated experience in patch management, vulnerability remediation and compliance reporting. Hands-on knowledge of automation frameworks and orchestration platforms. ITIL Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
ICT Infrastructure and Systems Manager My client is looking for an experienced and technically skilled ICT Infrastructure and Systems Manager to take ownership of their core IT infrastructure and business systems. This is a fantastic opportunity to lead the strategic development, maintenance, and security of a wide-ranging and complex ICT environment across over 60 sites and supporting more than 1,500 users. This role suits a confident IT infrastructure leader who thrives in a dynamic, multi-site setting and enjoys managing both people and technology to deliver robust, secure and high-performing IT systems. Key responsibilities include: Leading the management and development of IT infrastructure, cloud services, and business-critical systems Ensuring system availability, performance, and security across all platforms and networks Administering Microsoft 365 tenants, Entra ID, Azure, and Defender XDR Managing vendor and third-party relationships for IT and SaaS solutions Overseeing IT security, incident response, and compliance with GDPR, ISO27001, and other standards Providing 3rd line support for infrastructure and systems-related issues Leading and developing a skilled team of systems and infrastructure professionals What we re looking for: Proven experience in an infrastructure or systems management role Strong knowledge of Microsoft 365, Azure, Active Directory, DNS, and networking Experience implementing and supporting wide area networks and cloud infrastructure Familiarity with industry security standards and compliance frameworks Strong documentation, communication, and leadership skills Desirable qualifications and experience: Industry certifications or working toward one Experience with Microsoft Defender, vulnerability scanning, and disaster recovery planning Understanding of ITIL and service management methodologies Why consider this role? Join a forward-thinking, values-led organisation with a strong public service mission Lead meaningful technology initiatives that support learning, culture and community services Work across a broad range of sites and platforms, offering variety and challenge Be part of a collaborative and supportive ICT leadership team Interested? Please Click Apply Now. ICT Infrastructure and Systems Manager
09/10/2025
Full time
ICT Infrastructure and Systems Manager My client is looking for an experienced and technically skilled ICT Infrastructure and Systems Manager to take ownership of their core IT infrastructure and business systems. This is a fantastic opportunity to lead the strategic development, maintenance, and security of a wide-ranging and complex ICT environment across over 60 sites and supporting more than 1,500 users. This role suits a confident IT infrastructure leader who thrives in a dynamic, multi-site setting and enjoys managing both people and technology to deliver robust, secure and high-performing IT systems. Key responsibilities include: Leading the management and development of IT infrastructure, cloud services, and business-critical systems Ensuring system availability, performance, and security across all platforms and networks Administering Microsoft 365 tenants, Entra ID, Azure, and Defender XDR Managing vendor and third-party relationships for IT and SaaS solutions Overseeing IT security, incident response, and compliance with GDPR, ISO27001, and other standards Providing 3rd line support for infrastructure and systems-related issues Leading and developing a skilled team of systems and infrastructure professionals What we re looking for: Proven experience in an infrastructure or systems management role Strong knowledge of Microsoft 365, Azure, Active Directory, DNS, and networking Experience implementing and supporting wide area networks and cloud infrastructure Familiarity with industry security standards and compliance frameworks Strong documentation, communication, and leadership skills Desirable qualifications and experience: Industry certifications or working toward one Experience with Microsoft Defender, vulnerability scanning, and disaster recovery planning Understanding of ITIL and service management methodologies Why consider this role? Join a forward-thinking, values-led organisation with a strong public service mission Lead meaningful technology initiatives that support learning, culture and community services Work across a broad range of sites and platforms, offering variety and challenge Be part of a collaborative and supportive ICT leadership team Interested? Please Click Apply Now. ICT Infrastructure and Systems Manager
Network Security Engineer - SC Cleared (or Eligible) - £550 per day - Inside IR35 - Remote - 12 Months initial contract We are currently working with a leading client in the zero carbon energy sector who are looking to bring on board an experienced Security Engineer to join their security implementation and engineering delivery team. This is a fantastic opportunity to work on large-scale, business-critical projects in a highly regulated environment. The Role - As part of the security engineering team, you'll be: Delivering on the security portfolio, with a focus on SASE and firewall estates. Working within a SAFe Agile framework, participating in sprints and stand-ups. Managing and tracking workloads via Jira. Triaging customer requirements into actionable deliverables. Acting as an escalation engineer for the Security Support Team. Supporting and mentoring junior engineers. Producing documentation and knowledge base material, as well as delivering knowledge transfer sessions. Occasionally supporting out-of-hours work. Technical Skills We're Looking For - My client is looking for demonstrable experience in as many of the following as possible: Enterprise firewalls: Palo Alto (PAN) & Fortinet. Management platforms: Panorama, SCM, FortiManager, FortiAnalyzer. SASE products/services. Load balancers & application delivery - primarily F5. Vulnerability & exposure management (e.g. Tenable). Email security gateways and hygiene solutions (Mimecast). Network routing, switching, access policy administration. AWS and Azure security knowledge. Documentation: HLDs, LLDs, Security Designs, Risk Assessments, Network Diagrams. Soft Skills & Background Strong stakeholder management and customer-facing skills. Ability to work independently and as part of a collaborative team. Agile/SAFe delivery experience. Background in security operations, compliance, risk, or governance. Experience working with an MSSP - desirable. Exposure to highly regulated industries - Financial Services experience a strong plus. Clearance SC Clearance (or eligibility to obtain) is required for this role. Candidates with current active SC will be prioritised. Why Apply? This is an excellent chance to join a forward-thinking organisation investing heavily in their security landscape. You'll be working on enterprise-grade solutions, contributing to critical infrastructure, and expanding your skillset across cloud, network, and security domains.
09/10/2025
Contractor
Network Security Engineer - SC Cleared (or Eligible) - £550 per day - Inside IR35 - Remote - 12 Months initial contract We are currently working with a leading client in the zero carbon energy sector who are looking to bring on board an experienced Security Engineer to join their security implementation and engineering delivery team. This is a fantastic opportunity to work on large-scale, business-critical projects in a highly regulated environment. The Role - As part of the security engineering team, you'll be: Delivering on the security portfolio, with a focus on SASE and firewall estates. Working within a SAFe Agile framework, participating in sprints and stand-ups. Managing and tracking workloads via Jira. Triaging customer requirements into actionable deliverables. Acting as an escalation engineer for the Security Support Team. Supporting and mentoring junior engineers. Producing documentation and knowledge base material, as well as delivering knowledge transfer sessions. Occasionally supporting out-of-hours work. Technical Skills We're Looking For - My client is looking for demonstrable experience in as many of the following as possible: Enterprise firewalls: Palo Alto (PAN) & Fortinet. Management platforms: Panorama, SCM, FortiManager, FortiAnalyzer. SASE products/services. Load balancers & application delivery - primarily F5. Vulnerability & exposure management (e.g. Tenable). Email security gateways and hygiene solutions (Mimecast). Network routing, switching, access policy administration. AWS and Azure security knowledge. Documentation: HLDs, LLDs, Security Designs, Risk Assessments, Network Diagrams. Soft Skills & Background Strong stakeholder management and customer-facing skills. Ability to work independently and as part of a collaborative team. Agile/SAFe delivery experience. Background in security operations, compliance, risk, or governance. Experience working with an MSSP - desirable. Exposure to highly regulated industries - Financial Services experience a strong plus. Clearance SC Clearance (or eligibility to obtain) is required for this role. Candidates with current active SC will be prioritised. Why Apply? This is an excellent chance to join a forward-thinking organisation investing heavily in their security landscape. You'll be working on enterprise-grade solutions, contributing to critical infrastructure, and expanding your skillset across cloud, network, and security domains.
Job Title: Technical Programme Manager Location: Welwyn Garden City / Hybrid, 3 days per week onsite (Opportunity for more flex working) Remuneration: Up to £750/day Contract Details: 6 Month Contract + scope for extensions Are you ready to take on a pivotal role in the heart of retail innovation? Our client is seeking a dynamic Technical Programme Manager to join their team! You'll play a crucial part in delivering key projects within Application Security and Vulnerability Management. If you thrive in fast-paced environments and have a passion for cyber security, this is the opportunity for you! Responsibilities: Own Delivery: Drive execution of specific workstreams aligned with FY25/26 commitments. Coordinate Teams: Lead cross-functional teams for timely project execution and issue resolution. Report Progress: Communicate risks and progress to the lead TPM, ensuring alignment with programme goals. Support Tech Excellence: Contribute to initiatives through structured planning and agile-inspired practices. Forward Planning: Provide insights and scoping support for FY26/27 planning. Technical & Domain Expertise: Solid grasp of Cyber Security fundamentals, especially in Application Security and Vulnerability Management. Familiarity with secure SDLC and DevSecOps practices. Experience with security tooling, including SAST, DAST, and vulnerability scanners. Ability to interpret technical risks into actionable tasks. Project Delivery Management: Proven track record in delivering projects within complex programmes. Skilled in project scoping, milestone planning, and dependency tracking. Strong risk and issue management capabilities, with proactive mitigation. Manage in-flight delivery while preparing for future planning. Stakeholder Engagement & Coordination: Effective communicator across Cyber, Engineering, and Product teams. Drive alignment on project goals, timelines, and deliverables. Engage with technical leads to unblock progress. Tooling & Reporting: Proficient in Jira and Confluence Cloud for task tracking and reporting. Define and monitor project-level KPIs and delivery metrics. Produce clear updates for programme-level roll-ups. Ways of Working & Delivery Enablement: Delivery-focused mindset with a pragmatic approach to agile methodologies. Experience applying lightweight governance for consistent delivery. Committed to continuous improvement and embedding best practices. Join us in shaping the future of retail technology! If you're excited about leading technical programmes and making a real impact, apply now! Our client values innovation, collaboration, and enthusiasm, and they can't wait to meet you!
09/10/2025
Full time
Job Title: Technical Programme Manager Location: Welwyn Garden City / Hybrid, 3 days per week onsite (Opportunity for more flex working) Remuneration: Up to £750/day Contract Details: 6 Month Contract + scope for extensions Are you ready to take on a pivotal role in the heart of retail innovation? Our client is seeking a dynamic Technical Programme Manager to join their team! You'll play a crucial part in delivering key projects within Application Security and Vulnerability Management. If you thrive in fast-paced environments and have a passion for cyber security, this is the opportunity for you! Responsibilities: Own Delivery: Drive execution of specific workstreams aligned with FY25/26 commitments. Coordinate Teams: Lead cross-functional teams for timely project execution and issue resolution. Report Progress: Communicate risks and progress to the lead TPM, ensuring alignment with programme goals. Support Tech Excellence: Contribute to initiatives through structured planning and agile-inspired practices. Forward Planning: Provide insights and scoping support for FY26/27 planning. Technical & Domain Expertise: Solid grasp of Cyber Security fundamentals, especially in Application Security and Vulnerability Management. Familiarity with secure SDLC and DevSecOps practices. Experience with security tooling, including SAST, DAST, and vulnerability scanners. Ability to interpret technical risks into actionable tasks. Project Delivery Management: Proven track record in delivering projects within complex programmes. Skilled in project scoping, milestone planning, and dependency tracking. Strong risk and issue management capabilities, with proactive mitigation. Manage in-flight delivery while preparing for future planning. Stakeholder Engagement & Coordination: Effective communicator across Cyber, Engineering, and Product teams. Drive alignment on project goals, timelines, and deliverables. Engage with technical leads to unblock progress. Tooling & Reporting: Proficient in Jira and Confluence Cloud for task tracking and reporting. Define and monitor project-level KPIs and delivery metrics. Produce clear updates for programme-level roll-ups. Ways of Working & Delivery Enablement: Delivery-focused mindset with a pragmatic approach to agile methodologies. Experience applying lightweight governance for consistent delivery. Committed to continuous improvement and embedding best practices. Join us in shaping the future of retail technology! If you're excited about leading technical programmes and making a real impact, apply now! Our client values innovation, collaboration, and enthusiasm, and they can't wait to meet you!
Senior Global IT Manager Location : Marlow, Buckinghamshire, SL7 1TB Salary : £70K - £80K per annum, DOE + Bonus Plan & Benefits! Contract : Full time, Permanent, Office Based Benefits : Private medical insurance, Life insurance, Company pension, Additional leave, Flexitime, Free on-site parking, Referral programme and Wellness programme! BAP Pharma is the fastest-growing, independently owned pharmaceutical clinical trials supply organisation, with specialist divisions in Comparator Sourcing, Secondary Packaging & Labelling and Global Storage & Distribution. Our story is one of incredible growth and success, which has culminated in receiving many prestigious awards, such as recognition in Diversity & Inclusion and Social & Environmental, and the continued expansion of our core business operations in UK, Germany and the USA. We are now recruiting for a Senior Global IT Manager to lead and manage the IT requirements company wide. You will build a suitable IT Department that meets the needs of our office and facilities in the UK, US and Germany. This role involved working closely with and managing our third party suppliers to oversee all IT-related activities, including budgeting. Key Responsibilities of the Senior Global IT Manager: IT Strategy & Leadership Shape and deliver a global IT roadmap aligned with BAP Pharma s growth, advising senior leadership on efficiencies, scalability, and resilience. Global Infrastructure Oversee IT operations and infrastructure across the UK, US, and Germany, ensuring secure and reliable networks, cloud, and systems. Compliance & Validation Ensure GxP (pharmaceutical industry) compliance and maintain audit readiness through robust validation frameworks, policies, and collaboration with QA and regulatory bodies. Cybersecurity & Risk Lead cybersecurity strategy, including access controls, incident response, and vulnerability management. Team & Vendor Management Build and mentor a global IT team while managing external providers and ensuring performance against SLAs. Budgets & Performance Manage IT budgets, forecasting, and KPIs to drive value and accountability. Digital Transformation Champion innovation, automation, and emerging technologies to improve compliance, efficiency, and business performance. Skills & Experience: Degree in Information Technology/Computer sciences or equivalent. Minimum 7-10 years experience of relevant work and level. Experience working in pharmaceutical organisations is advantageous. Experience in leading and developing a team Knowledge of office 365 and Azure Entra is essential Excellent knowledge of technical management, information analysis and of computer hardware/software systems and troubleshooting practices. Expertise in data management, data governance and general IT security practices. Understanding of computerised systems used in pharmaceutical operations. BAP Pharma is committed to enabling a supportive work environment, which is diverse and inclusive and based on mutual respect. We offer comprehensive training and development programmes to employees to enable them to excel in their roles. We provide our team with a platform in which to continually progress and excel and deliver on our promises to our clients. BAP Pharma Promise delivered. Our people are results driven, tenacious and customer focused. If you think you have what it takes to be part of a successful team with an exciting future, please apply today! No agencies please.
07/10/2025
Full time
Senior Global IT Manager Location : Marlow, Buckinghamshire, SL7 1TB Salary : £70K - £80K per annum, DOE + Bonus Plan & Benefits! Contract : Full time, Permanent, Office Based Benefits : Private medical insurance, Life insurance, Company pension, Additional leave, Flexitime, Free on-site parking, Referral programme and Wellness programme! BAP Pharma is the fastest-growing, independently owned pharmaceutical clinical trials supply organisation, with specialist divisions in Comparator Sourcing, Secondary Packaging & Labelling and Global Storage & Distribution. Our story is one of incredible growth and success, which has culminated in receiving many prestigious awards, such as recognition in Diversity & Inclusion and Social & Environmental, and the continued expansion of our core business operations in UK, Germany and the USA. We are now recruiting for a Senior Global IT Manager to lead and manage the IT requirements company wide. You will build a suitable IT Department that meets the needs of our office and facilities in the UK, US and Germany. This role involved working closely with and managing our third party suppliers to oversee all IT-related activities, including budgeting. Key Responsibilities of the Senior Global IT Manager: IT Strategy & Leadership Shape and deliver a global IT roadmap aligned with BAP Pharma s growth, advising senior leadership on efficiencies, scalability, and resilience. Global Infrastructure Oversee IT operations and infrastructure across the UK, US, and Germany, ensuring secure and reliable networks, cloud, and systems. Compliance & Validation Ensure GxP (pharmaceutical industry) compliance and maintain audit readiness through robust validation frameworks, policies, and collaboration with QA and regulatory bodies. Cybersecurity & Risk Lead cybersecurity strategy, including access controls, incident response, and vulnerability management. Team & Vendor Management Build and mentor a global IT team while managing external providers and ensuring performance against SLAs. Budgets & Performance Manage IT budgets, forecasting, and KPIs to drive value and accountability. Digital Transformation Champion innovation, automation, and emerging technologies to improve compliance, efficiency, and business performance. Skills & Experience: Degree in Information Technology/Computer sciences or equivalent. Minimum 7-10 years experience of relevant work and level. Experience working in pharmaceutical organisations is advantageous. Experience in leading and developing a team Knowledge of office 365 and Azure Entra is essential Excellent knowledge of technical management, information analysis and of computer hardware/software systems and troubleshooting practices. Expertise in data management, data governance and general IT security practices. Understanding of computerised systems used in pharmaceutical operations. BAP Pharma is committed to enabling a supportive work environment, which is diverse and inclusive and based on mutual respect. We offer comprehensive training and development programmes to employees to enable them to excel in their roles. We provide our team with a platform in which to continually progress and excel and deliver on our promises to our clients. BAP Pharma Promise delivered. Our people are results driven, tenacious and customer focused. If you think you have what it takes to be part of a successful team with an exciting future, please apply today! No agencies please.
Job Role: Senior Security Engineer - CIAMLocation: Hybrid - City of LondonSalary: £100,000 - £120,000 + Bonus Are you an experienced Security Engineer with a passion for safeguarding systems and driving innovation in identity and access management? Do you thrive in complex environments where you can solve critical security challenges and influence long-term strategy? If you're driven by excellence, collaboration, and the opportunity to make an impact on a global financial institution, this could be the perfect role for you. Join us as a Senior Security Engineer, where you'll help shape a market-leading digital platform and deliver secure, cutting-edge customer experiences. Ideal Candidate: Strong hands-on expertise with Hardware Security Modules (HSM), AWS Secrets Manager, and certificate lifecycle management (rotation, revocation, automation) Experienced with GitLab CI/CD pipelines, AWS CLI, and automation tooling (Chef or similar) Proven background in Cloud Security, with deep knowledge of:- AWS security controls, policies, and automation- Role-based and attribute-based access controls- Cryptographic protocols and secure key lifecycle management- Securing microservices, APIs, and DevSecOps best practices Skilled in penetration testing and hands-on coding with JavaScript, Java, or Python Strong understanding of vulnerability scanning, remediation, and vendor management Collaborative mindset with the ability to partner across engineering, security, and product teams Desirable Skills: Hands-on configuration, deployment, and operation of ForgeRock IAM solutions (PingGateway, PingAM, PingIDM, PingDS) Knowledge of PKI-based identity, HTTP header signing, and advanced authentication protocols Exposure to both AWS and Azure environments Experience embedding security into the Software Development Lifecycle (SDLC) This is a hybrid role, with 2-3 days a week in the City of London. If you're ready to take on a high-impact role in one of the world's leading banks and help shape the future of secure digital identity, get in touch today to arrange a chat! Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
06/10/2025
Full time
Job Role: Senior Security Engineer - CIAMLocation: Hybrid - City of LondonSalary: £100,000 - £120,000 + Bonus Are you an experienced Security Engineer with a passion for safeguarding systems and driving innovation in identity and access management? Do you thrive in complex environments where you can solve critical security challenges and influence long-term strategy? If you're driven by excellence, collaboration, and the opportunity to make an impact on a global financial institution, this could be the perfect role for you. Join us as a Senior Security Engineer, where you'll help shape a market-leading digital platform and deliver secure, cutting-edge customer experiences. Ideal Candidate: Strong hands-on expertise with Hardware Security Modules (HSM), AWS Secrets Manager, and certificate lifecycle management (rotation, revocation, automation) Experienced with GitLab CI/CD pipelines, AWS CLI, and automation tooling (Chef or similar) Proven background in Cloud Security, with deep knowledge of:- AWS security controls, policies, and automation- Role-based and attribute-based access controls- Cryptographic protocols and secure key lifecycle management- Securing microservices, APIs, and DevSecOps best practices Skilled in penetration testing and hands-on coding with JavaScript, Java, or Python Strong understanding of vulnerability scanning, remediation, and vendor management Collaborative mindset with the ability to partner across engineering, security, and product teams Desirable Skills: Hands-on configuration, deployment, and operation of ForgeRock IAM solutions (PingGateway, PingAM, PingIDM, PingDS) Knowledge of PKI-based identity, HTTP header signing, and advanced authentication protocols Exposure to both AWS and Azure environments Experience embedding security into the Software Development Lifecycle (SDLC) This is a hybrid role, with 2-3 days a week in the City of London. If you're ready to take on a high-impact role in one of the world's leading banks and help shape the future of secure digital identity, get in touch today to arrange a chat! Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
Reed Technology is partnering with a prestigious organisation, leader in expanding financial access, currently looking to expand their Dundee based team with the addition of a skilled ATM Security Engineer Reporting to the Senior Engineering Manager, the successful candidate will join an energising team, determined to improve security solutions across a range of products and solutions. Key Responsibilities : Develop and implement physical security solutions to protect cash and other critical assets within ATM infrastructure. Stay current with emerging security trends and integrate advanced technologies and strategies to prevent card fraud, system vulnerabilities and operational liabilities. Conduct comprehensive risk and vulnerability assessments of ATM systems and deliver data-driven solutions to senior management. Effectively prioritise the level of risk / vulnerabilities, define strategies and roadmaps to implement reactive and preventive solutions. Work closely with other essential teams to fully implement and integrate security solutions into products. Required Skills & Qualifications: Previous experience in security engineering environments, ideally within ATM Security systems. Strong knowledge of physical security, encryption technologies, and fraud prevention. A natural problem solver with a strong ability to prioritise and implement effective solutions to emerging challenges. Knowledge of PCI standards and EMV Specifications is highly desirable. Ability to effectively communicate with technical and non-technical stakeholders. Benefits: Permanent contract Hybrid work model Salary between £60.000 to £80.000 / annum, based on experience and qualifications. Excellent range of additional benefits (pension plan, health insurances, etc.).
06/10/2025
Full time
Reed Technology is partnering with a prestigious organisation, leader in expanding financial access, currently looking to expand their Dundee based team with the addition of a skilled ATM Security Engineer Reporting to the Senior Engineering Manager, the successful candidate will join an energising team, determined to improve security solutions across a range of products and solutions. Key Responsibilities : Develop and implement physical security solutions to protect cash and other critical assets within ATM infrastructure. Stay current with emerging security trends and integrate advanced technologies and strategies to prevent card fraud, system vulnerabilities and operational liabilities. Conduct comprehensive risk and vulnerability assessments of ATM systems and deliver data-driven solutions to senior management. Effectively prioritise the level of risk / vulnerabilities, define strategies and roadmaps to implement reactive and preventive solutions. Work closely with other essential teams to fully implement and integrate security solutions into products. Required Skills & Qualifications: Previous experience in security engineering environments, ideally within ATM Security systems. Strong knowledge of physical security, encryption technologies, and fraud prevention. A natural problem solver with a strong ability to prioritise and implement effective solutions to emerging challenges. Knowledge of PCI standards and EMV Specifications is highly desirable. Ability to effectively communicate with technical and non-technical stakeholders. Benefits: Permanent contract Hybrid work model Salary between £60.000 to £80.000 / annum, based on experience and qualifications. Excellent range of additional benefits (pension plan, health insurances, etc.).
Business Unit: COO, Technology Operations & Cyber Security Salary range: £40,800 - £51,000 per annum + Benefits Location: UK Remote Contract type : Permanent Our Team The Platform Engineering Team sits within Technology Operations & Cyber Security (TOCS) and is responsible for supporting, maintaining, and innovating the Bank's underpinning platforms and technologies. The core aspect of your role will be to support the management of the Operational Platform, with a focus on the Linux Server Estate. This will involve collaboration with internal customers, partners and external customers to deliver excellent service and ensure our systems are efficient, performant, resilient where emerging technology threats & risks are managed and change to our systems are managed effectively. What you'll be doing Innovate, build & maintain the Virgin Money Linux server estate for Operational Platform. Engineer, validate, implement and quality assure technical solutions. Lead on initiatives to improve Platform performance and stability. Support projects implementing new infrastructure into the datacentres. Support root cause analysis and remediation of complex technical issues. Work closely with others to estimate work, manage domain scope, risks and issues. Collaborate with internal and external parties to provide excellent customer service. Ensure that change within the environment is managed and controlled effectively. We need you to have Strong engineering experience with Red Hat Enterprise Linux (RHEL) Strong Redhat Satellite experience (install, Configure, manage) Strong experience of server implementation, upgrades, maintenance, monitoring and automation (Infrastructure as Code) with Ansible, AAP Strong experience of VMware (upgrade, manage) Solid understanding of Networking, security and system performance Strong problem-solving skills with the ability to own, diagnose and resolve platforms issues. Good understanding of cybersecurity principles & vulnerability management Python, Bash, API's and data structures in JSON/YAML or other Engineering mindset: able to challenge the status quo and automate manual processes to deliver additional value. Exceptional communication & teamwork skills Flexibility. The role may require occasional evening or weekend work It's a bonus if you have but not essential Experience of Arctera Infoscale, VCS Experience of Solaris Experience of Server Hardware Management and maintenance Experience of Containerisation, Red Hat OpenShift, ARO or AKS Experience of Continuous Integration and Continuous Delivery tooling Experience of working within an ITIL framework Working in Multi-disciplinary Agile teams Red Hot Rewards Generous holidays - 38.5 days annual leave (including bank holidays and prorated if part-time) plus the option to buy more. Up to five extra paid well-being days per year . 20 weeks paid, gender-neutral family leave (52 weeks in total) for expectant parents and those looking to adopt. Market-leading pension. Free private medical cover, income protection and life assurance. Flexible benefits include Cycle to Work, wellness and health assessments, and critical illness. And there's no waiting around, you'll enjoy these benefits from day one. If we're lucky to receive a lot of interest, we may close the advert early. Please ensure to submit your applications as soon as possible. Say hello to Virgin Money Virgin Money is so much more than just a bank. As part of the Nationwide group, together we're the UK's first full-service mutual bank serving millions of retail and business customers and all driven by our purpose ; Banking but fairer, more rewarding and for the good of society. With us, you'll be part of an organisation uniquely positioned to make a difference to the lives of customers, communities and broader society and embark on a collaborative, customer obsessed, and fun-filled career journey. Embrace the weekdays, enjoy fantastic perks, and make a meaningful positive difference. Time to discover what it means to be part of the first mutual full-service banking provider. Be yourself at Virgin Money At Virgin Money, we celebrate everyone. We have fun, think big, and relentlessly include each other, all in pursuit of our purpose: Banking - but fairer, more rewarding, and for the good of society. We're committed to creating an inclusive culture where colleagues feel safe and inspired to contribute, speak up and be heard. As a Disability Confident Leader, we're committed to removing any obstacles to inclusion. If you need any reasonable adjustments or support making your application, contact our Talent Acquisition team Please note: If we receive a high volume of eligible applications, we may need to prioritise candidates whose skills and experience most closely align with the role, while still ensuring fair and equitable consideration for all applicants. Now the legal bit Although some of our roles allow you to be based anywhere in the UK, we'll need you to confirm you have the right to work in the UK. If you're successful in securing a role with us, there are some checks you need to complete before starting. These include credit and criminal record checks and three years' worth of satisfactory references. If the role is part of the Senior Manager Regime and Certification Regime, it requires enhanced pre-employment checks - we'll ask for six years of regulatory references, and once in the role, you'll be subject to periodic employment checks.
06/10/2025
Full time
Business Unit: COO, Technology Operations & Cyber Security Salary range: £40,800 - £51,000 per annum + Benefits Location: UK Remote Contract type : Permanent Our Team The Platform Engineering Team sits within Technology Operations & Cyber Security (TOCS) and is responsible for supporting, maintaining, and innovating the Bank's underpinning platforms and technologies. The core aspect of your role will be to support the management of the Operational Platform, with a focus on the Linux Server Estate. This will involve collaboration with internal customers, partners and external customers to deliver excellent service and ensure our systems are efficient, performant, resilient where emerging technology threats & risks are managed and change to our systems are managed effectively. What you'll be doing Innovate, build & maintain the Virgin Money Linux server estate for Operational Platform. Engineer, validate, implement and quality assure technical solutions. Lead on initiatives to improve Platform performance and stability. Support projects implementing new infrastructure into the datacentres. Support root cause analysis and remediation of complex technical issues. Work closely with others to estimate work, manage domain scope, risks and issues. Collaborate with internal and external parties to provide excellent customer service. Ensure that change within the environment is managed and controlled effectively. We need you to have Strong engineering experience with Red Hat Enterprise Linux (RHEL) Strong Redhat Satellite experience (install, Configure, manage) Strong experience of server implementation, upgrades, maintenance, monitoring and automation (Infrastructure as Code) with Ansible, AAP Strong experience of VMware (upgrade, manage) Solid understanding of Networking, security and system performance Strong problem-solving skills with the ability to own, diagnose and resolve platforms issues. Good understanding of cybersecurity principles & vulnerability management Python, Bash, API's and data structures in JSON/YAML or other Engineering mindset: able to challenge the status quo and automate manual processes to deliver additional value. Exceptional communication & teamwork skills Flexibility. The role may require occasional evening or weekend work It's a bonus if you have but not essential Experience of Arctera Infoscale, VCS Experience of Solaris Experience of Server Hardware Management and maintenance Experience of Containerisation, Red Hat OpenShift, ARO or AKS Experience of Continuous Integration and Continuous Delivery tooling Experience of working within an ITIL framework Working in Multi-disciplinary Agile teams Red Hot Rewards Generous holidays - 38.5 days annual leave (including bank holidays and prorated if part-time) plus the option to buy more. Up to five extra paid well-being days per year . 20 weeks paid, gender-neutral family leave (52 weeks in total) for expectant parents and those looking to adopt. Market-leading pension. Free private medical cover, income protection and life assurance. Flexible benefits include Cycle to Work, wellness and health assessments, and critical illness. And there's no waiting around, you'll enjoy these benefits from day one. If we're lucky to receive a lot of interest, we may close the advert early. Please ensure to submit your applications as soon as possible. Say hello to Virgin Money Virgin Money is so much more than just a bank. As part of the Nationwide group, together we're the UK's first full-service mutual bank serving millions of retail and business customers and all driven by our purpose ; Banking but fairer, more rewarding and for the good of society. With us, you'll be part of an organisation uniquely positioned to make a difference to the lives of customers, communities and broader society and embark on a collaborative, customer obsessed, and fun-filled career journey. Embrace the weekdays, enjoy fantastic perks, and make a meaningful positive difference. Time to discover what it means to be part of the first mutual full-service banking provider. Be yourself at Virgin Money At Virgin Money, we celebrate everyone. We have fun, think big, and relentlessly include each other, all in pursuit of our purpose: Banking - but fairer, more rewarding, and for the good of society. We're committed to creating an inclusive culture where colleagues feel safe and inspired to contribute, speak up and be heard. As a Disability Confident Leader, we're committed to removing any obstacles to inclusion. If you need any reasonable adjustments or support making your application, contact our Talent Acquisition team Please note: If we receive a high volume of eligible applications, we may need to prioritise candidates whose skills and experience most closely align with the role, while still ensuring fair and equitable consideration for all applicants. Now the legal bit Although some of our roles allow you to be based anywhere in the UK, we'll need you to confirm you have the right to work in the UK. If you're successful in securing a role with us, there are some checks you need to complete before starting. These include credit and criminal record checks and three years' worth of satisfactory references. If the role is part of the Senior Manager Regime and Certification Regime, it requires enhanced pre-employment checks - we'll ask for six years of regulatory references, and once in the role, you'll be subject to periodic employment checks.
Ideas People Trust We're BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today's changing world. We work with the companies that are Britain's economic engine - ambitious, entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons To ensure our services and applications are fit for the modern market, our IT team collaborates with every department. They develop, they explore and they implement the new ideas helping us to change the future of accounting, tax and business consulting. But, just as importantly, they maintain the tech that keeps us advancing. By testing and adopting the future of financial technical solutions, they find new and exciting ways to drive us forward. And you could too. In an IT role at BDO, you'll become part of a team that act as the backbone for our business. No matter who you are or what your skillset is, we'll give you the training and support you need to achieve whatever you put your mind to. We'll help you succeed Leading organisations trust us because of the quality of our advice. That quality grows from a thorough understanding of their business, and that understanding comes from working closely with them and building long-lasting relationships. You'll be someone who is both comfortable working proactively and managing your own tasks, as well as confident collaborating with others and communicating regularly with senior managers, directors, and BDO's partners to help businesses effectively. You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. We are seeking a highly motivated and experienced Lead Software Security Engineer to join our team. You will have a strong background in software development, security, and operations. This role is required to support the Digital Product Management team in embedding security requirements and best practices into new Digital Products and Services. You will work closely with the Digital Product Management and IT Security teams to establish and build the right security controls and quality state gates across the product lifecycle. This includes security tooling to manage these controls. In this busy and rewarding role, you'll also: Collaborate with software development teams to integrate security into the development lifecycle Own the cultural shift to a Security DevSecOps mindset Manage & implement security controls, tools, and processes to secure applications and infrastructure Monitor and respond to security incidents and threats in a timely manner Stay up-to-date with security trends and best practices to continuously improve security posture Automate security testing and deployment processes to ensure rapid and secure delivery of software Develop and maintain security documentation and training materials Develop and implement the product security strategy in alignment with organisational goals Integrate Application Security Tools within existing Development Processes Assist with the Planning & Execution of Application Penetration Tests Serve as a Subject Matter Expert (SME) in the field of Application Security Define security NFR's and ensure these are met Report on compliance with security standards You'll be someone with: Strong experience in software development and security Proficient in scripting languages such as Powershell, YAML, JASON, etc. Collaborate with development teams to integrate security best practices into the secure software development lifecycle (SDLC) and ensure products are built securely Oversee vulnerability management and remediation efforts, including leading responses to pen test findings and security assessments Experience conducting risk assessments and threat modelling for software development and advise where necessary Experience in software security design review Strong knowledge of Agile, DevSecOps, System Engineer and or equivalent Knowledge of security standards and secure development principles such as NCSC Secure Development & Deployment Guidance, OWASP, NIST Secure Software Development Framework (SSDF - 800-218), Microsoft Azure Secure Development best practices, ISO27001 Experience with Azure cloud infrastructure, particularly Azure PaaS service Experience with Azure DevOps, particularly CI/CD and backlog management Prepare and present regular security reports to senior management, ensuring compliance with security standards and regulations Expertise with security tools and familiarity with DevSecOps processes Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field (preferable) You'll be able to be yourself; we'll recognise and value you for who you are and celebrate and reward your contributions to the business. We're committed to agile working, and we offer every colleague the opportunity to work in ways that suit you, your teams, and the task at hand. At BDO, we'll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development. We're in it together Mutual support and respect is one of BDO's core values and we're proud of our distinctive, people-centred culture. From informal success conversations to formal mentoring and coaching, we'll support you at every stage in your career, whatever your personal and professional needs. Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another. At BDO, you'll always have access to the people and resources you need to do your best work. We know that collaboration is the key to creating value for the companies we work with and satisfying experiences for our colleagues, so we've invested in state-of-the-art collaboration spaces in our offices. BDO's people represent a wealth of knowledge and expertise, and we'll encourage you to build your network, work alongside others, and share your skills and experiences. With a range of multidisciplinary events and dedicated resources, you'll never stop learning at BDO. We're looking forward to the future At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy. Our success is powered by our people, which is why we're always finding new ways to invest in you. Across the UK thousands of unique minds continue to come together to help companies we work with to achieve their ambitions We've got a clear purpose, and we're confident in our future, because we're adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.
06/10/2025
Full time
Ideas People Trust We're BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today's changing world. We work with the companies that are Britain's economic engine - ambitious, entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons To ensure our services and applications are fit for the modern market, our IT team collaborates with every department. They develop, they explore and they implement the new ideas helping us to change the future of accounting, tax and business consulting. But, just as importantly, they maintain the tech that keeps us advancing. By testing and adopting the future of financial technical solutions, they find new and exciting ways to drive us forward. And you could too. In an IT role at BDO, you'll become part of a team that act as the backbone for our business. No matter who you are or what your skillset is, we'll give you the training and support you need to achieve whatever you put your mind to. We'll help you succeed Leading organisations trust us because of the quality of our advice. That quality grows from a thorough understanding of their business, and that understanding comes from working closely with them and building long-lasting relationships. You'll be someone who is both comfortable working proactively and managing your own tasks, as well as confident collaborating with others and communicating regularly with senior managers, directors, and BDO's partners to help businesses effectively. You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. We are seeking a highly motivated and experienced Lead Software Security Engineer to join our team. You will have a strong background in software development, security, and operations. This role is required to support the Digital Product Management team in embedding security requirements and best practices into new Digital Products and Services. You will work closely with the Digital Product Management and IT Security teams to establish and build the right security controls and quality state gates across the product lifecycle. This includes security tooling to manage these controls. In this busy and rewarding role, you'll also: Collaborate with software development teams to integrate security into the development lifecycle Own the cultural shift to a Security DevSecOps mindset Manage & implement security controls, tools, and processes to secure applications and infrastructure Monitor and respond to security incidents and threats in a timely manner Stay up-to-date with security trends and best practices to continuously improve security posture Automate security testing and deployment processes to ensure rapid and secure delivery of software Develop and maintain security documentation and training materials Develop and implement the product security strategy in alignment with organisational goals Integrate Application Security Tools within existing Development Processes Assist with the Planning & Execution of Application Penetration Tests Serve as a Subject Matter Expert (SME) in the field of Application Security Define security NFR's and ensure these are met Report on compliance with security standards You'll be someone with: Strong experience in software development and security Proficient in scripting languages such as Powershell, YAML, JASON, etc. Collaborate with development teams to integrate security best practices into the secure software development lifecycle (SDLC) and ensure products are built securely Oversee vulnerability management and remediation efforts, including leading responses to pen test findings and security assessments Experience conducting risk assessments and threat modelling for software development and advise where necessary Experience in software security design review Strong knowledge of Agile, DevSecOps, System Engineer and or equivalent Knowledge of security standards and secure development principles such as NCSC Secure Development & Deployment Guidance, OWASP, NIST Secure Software Development Framework (SSDF - 800-218), Microsoft Azure Secure Development best practices, ISO27001 Experience with Azure cloud infrastructure, particularly Azure PaaS service Experience with Azure DevOps, particularly CI/CD and backlog management Prepare and present regular security reports to senior management, ensuring compliance with security standards and regulations Expertise with security tools and familiarity with DevSecOps processes Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field (preferable) You'll be able to be yourself; we'll recognise and value you for who you are and celebrate and reward your contributions to the business. We're committed to agile working, and we offer every colleague the opportunity to work in ways that suit you, your teams, and the task at hand. At BDO, we'll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development. We're in it together Mutual support and respect is one of BDO's core values and we're proud of our distinctive, people-centred culture. From informal success conversations to formal mentoring and coaching, we'll support you at every stage in your career, whatever your personal and professional needs. Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another. At BDO, you'll always have access to the people and resources you need to do your best work. We know that collaboration is the key to creating value for the companies we work with and satisfying experiences for our colleagues, so we've invested in state-of-the-art collaboration spaces in our offices. BDO's people represent a wealth of knowledge and expertise, and we'll encourage you to build your network, work alongside others, and share your skills and experiences. With a range of multidisciplinary events and dedicated resources, you'll never stop learning at BDO. We're looking forward to the future At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy. Our success is powered by our people, which is why we're always finding new ways to invest in you. Across the UK thousands of unique minds continue to come together to help companies we work with to achieve their ambitions We've got a clear purpose, and we're confident in our future, because we're adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.
Ideas People Trust We're BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today's changing world. We work with the companies that are Britain's economic engine - ambitious, entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons To ensure our services and applications are fit for the modern market, our IT team collaborates with every department. They develop, they explore and they implement the new ideas helping us to change the future of accounting, tax and business consulting. But, just as importantly, they maintain the tech that keeps us advancing. By testing and adopting the future of financial technical solutions, they find new and exciting ways to drive us forward. And you could too. In an IT role at BDO, you'll become part of a team that act as the backbone for our business. No matter who you are or what your skillset is, we'll give you the training and support you need to achieve whatever you put your mind to. We'll help you succeed Leading organisations trust us because of the quality of our advice. That quality grows from a thorough understanding of their business, and that understanding comes from working closely with them and building long-lasting relationships. You'll be someone who is both comfortable working proactively and managing your own tasks, as well as confident collaborating with others and communicating regularly with senior managers, directors, and BDO's partners to help businesses effectively. You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. We are seeking a highly motivated and experienced Lead Software Security Engineer to join our team. You will have a strong background in software development, security, and operations. This role is required to support the Digital Product Management team in embedding security requirements and best practices into new Digital Products and Services. You will work closely with the Digital Product Management and IT Security teams to establish and build the right security controls and quality state gates across the product lifecycle. This includes security tooling to manage these controls. In this busy and rewarding role, you'll also: Collaborate with software development teams to integrate security into the development lifecycle Own the cultural shift to a Security DevSecOps mindset Manage & implement security controls, tools, and processes to secure applications and infrastructure Monitor and respond to security incidents and threats in a timely manner Stay up-to-date with security trends and best practices to continuously improve security posture Automate security testing and deployment processes to ensure rapid and secure delivery of software Develop and maintain security documentation and training materials Develop and implement the product security strategy in alignment with organisational goals Integrate Application Security Tools within existing Development Processes Assist with the Planning & Execution of Application Penetration Tests Serve as a Subject Matter Expert (SME) in the field of Application Security Define security NFR's and ensure these are met Report on compliance with security standards You'll be someone with: Strong experience in software development and security Proficient in scripting languages such as Powershell, YAML, JASON, etc. Collaborate with development teams to integrate security best practices into the secure software development lifecycle (SDLC) and ensure products are built securely Oversee vulnerability management and remediation efforts, including leading responses to pen test findings and security assessments Experience conducting risk assessments and threat modelling for software development and advise where necessary Experience in software security design review Strong knowledge of Agile, DevSecOps, System Engineer and or equivalent Knowledge of security standards and secure development principles such as NCSC Secure Development & Deployment Guidance, OWASP, NIST Secure Software Development Framework (SSDF - 800-218), Microsoft Azure Secure Development best practices, ISO27001 Experience with Azure cloud infrastructure, particularly Azure PaaS service Experience with Azure DevOps, particularly CI/CD and backlog management Prepare and present regular security reports to senior management, ensuring compliance with security standards and regulations Expertise with security tools and familiarity with DevSecOps processes Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field (preferable) You'll be able to be yourself; we'll recognise and value you for who you are and celebrate and reward your contributions to the business. We're committed to agile working, and we offer every colleague the opportunity to work in ways that suit you, your teams, and the task at hand. At BDO, we'll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development. We're in it together Mutual support and respect is one of BDO's core values and we're proud of our distinctive, people-centred culture. From informal success conversations to formal mentoring and coaching, we'll support you at every stage in your career, whatever your personal and professional needs. Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another. At BDO, you'll always have access to the people and resources you need to do your best work. We know that collaboration is the key to creating value for the companies we work with and satisfying experiences for our colleagues, so we've invested in state-of-the-art collaboration spaces in our offices. BDO's people represent a wealth of knowledge and expertise, and we'll encourage you to build your network, work alongside others, and share your skills and experiences. With a range of multidisciplinary events and dedicated resources, you'll never stop learning at BDO. We're looking forward to the future At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy. Our success is powered by our people, which is why we're always finding new ways to invest in you. Across the UK thousands of unique minds continue to come together to help companies we work with to achieve their ambitions We've got a clear purpose, and we're confident in our future, because we're adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.
06/10/2025
Full time
Ideas People Trust We're BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today's changing world. We work with the companies that are Britain's economic engine - ambitious, entrepreneurially-spirited and high growth businesses that fuel the economy - and directly advise the owners and management teams that lead them. We'll broaden your horizons To ensure our services and applications are fit for the modern market, our IT team collaborates with every department. They develop, they explore and they implement the new ideas helping us to change the future of accounting, tax and business consulting. But, just as importantly, they maintain the tech that keeps us advancing. By testing and adopting the future of financial technical solutions, they find new and exciting ways to drive us forward. And you could too. In an IT role at BDO, you'll become part of a team that act as the backbone for our business. No matter who you are or what your skillset is, we'll give you the training and support you need to achieve whatever you put your mind to. We'll help you succeed Leading organisations trust us because of the quality of our advice. That quality grows from a thorough understanding of their business, and that understanding comes from working closely with them and building long-lasting relationships. You'll be someone who is both comfortable working proactively and managing your own tasks, as well as confident collaborating with others and communicating regularly with senior managers, directors, and BDO's partners to help businesses effectively. You'll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with. We are seeking a highly motivated and experienced Lead Software Security Engineer to join our team. You will have a strong background in software development, security, and operations. This role is required to support the Digital Product Management team in embedding security requirements and best practices into new Digital Products and Services. You will work closely with the Digital Product Management and IT Security teams to establish and build the right security controls and quality state gates across the product lifecycle. This includes security tooling to manage these controls. In this busy and rewarding role, you'll also: Collaborate with software development teams to integrate security into the development lifecycle Own the cultural shift to a Security DevSecOps mindset Manage & implement security controls, tools, and processes to secure applications and infrastructure Monitor and respond to security incidents and threats in a timely manner Stay up-to-date with security trends and best practices to continuously improve security posture Automate security testing and deployment processes to ensure rapid and secure delivery of software Develop and maintain security documentation and training materials Develop and implement the product security strategy in alignment with organisational goals Integrate Application Security Tools within existing Development Processes Assist with the Planning & Execution of Application Penetration Tests Serve as a Subject Matter Expert (SME) in the field of Application Security Define security NFR's and ensure these are met Report on compliance with security standards You'll be someone with: Strong experience in software development and security Proficient in scripting languages such as Powershell, YAML, JASON, etc. Collaborate with development teams to integrate security best practices into the secure software development lifecycle (SDLC) and ensure products are built securely Oversee vulnerability management and remediation efforts, including leading responses to pen test findings and security assessments Experience conducting risk assessments and threat modelling for software development and advise where necessary Experience in software security design review Strong knowledge of Agile, DevSecOps, System Engineer and or equivalent Knowledge of security standards and secure development principles such as NCSC Secure Development & Deployment Guidance, OWASP, NIST Secure Software Development Framework (SSDF - 800-218), Microsoft Azure Secure Development best practices, ISO27001 Experience with Azure cloud infrastructure, particularly Azure PaaS service Experience with Azure DevOps, particularly CI/CD and backlog management Prepare and present regular security reports to senior management, ensuring compliance with security standards and regulations Expertise with security tools and familiarity with DevSecOps processes Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field (preferable) You'll be able to be yourself; we'll recognise and value you for who you are and celebrate and reward your contributions to the business. We're committed to agile working, and we offer every colleague the opportunity to work in ways that suit you, your teams, and the task at hand. At BDO, we'll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development. We're in it together Mutual support and respect is one of BDO's core values and we're proud of our distinctive, people-centred culture. From informal success conversations to formal mentoring and coaching, we'll support you at every stage in your career, whatever your personal and professional needs. Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another. At BDO, you'll always have access to the people and resources you need to do your best work. We know that collaboration is the key to creating value for the companies we work with and satisfying experiences for our colleagues, so we've invested in state-of-the-art collaboration spaces in our offices. BDO's people represent a wealth of knowledge and expertise, and we'll encourage you to build your network, work alongside others, and share your skills and experiences. With a range of multidisciplinary events and dedicated resources, you'll never stop learning at BDO. We're looking forward to the future At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy. Our success is powered by our people, which is why we're always finding new ways to invest in you. Across the UK thousands of unique minds continue to come together to help companies we work with to achieve their ambitions We've got a clear purpose, and we're confident in our future, because we're adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.
Cloud Architect - MOD DV - Perm Location: Corsham, 4 days on-site Clearance: Active MOD DV - Must have DV in place, no scope for sponsorship Salary : £80,000 - £95,000 + Benefits An exciting opportunity has opened up to join one of Google Cloud's primary technical partners, as they push on with a new programme of work in the UK Defence sector, utilising cutting edge Cloud technologies. The role suits a Cloud Architect with a defence background that has an interest in utilising their AWS/Azure experience and up-skilling with GCP certifications and a training programme. As well as applying any existing GCP experience. About the role As a Cloud Architect you will be responsible for designing and advising on secure cloud architectures within Google Cloud Platform (GCP), ensuring compliance with UK and international standards. You will work with clients across sectors to assess risks, implement robust security controls, and guide secure cloud adoption strategies. This role requires a strong understanding of cloud-native security, regulatory frameworks, and the ability to translate technical risks into business impact. Part of this role, you will be required to obtain GCP certification. What You'll Do: Design and implement secure architectures, incorporating identity, access management, encryption, and network security. Conduct cloud security assessments and gap analyses for UK-based organisations. Advise on compliance with UK regulations (e.g. GDPR, NCSC Cloud Security Principles, ISO 27001). Develop and enforce cloud security policies, procedures, and governance models. Lead threat modelling, risk assessments, and vulnerability management initiatives. Configure and manage security tools such as Google SecOps tooling, Security Command Center, Cloud Armour, and VPC Service Controls. Collaborate with engineering and DevOps teams to embed security into CI/CD pipelines. Support incident response planning and cloud-specific disaster recovery strategies. Stay up to date with GCP security features, UK regulatory changes, and emerging threats. Requirements What You'll Bring Essential Skills & Experience: Experience in cloud security. Strong knowledge of: Security services (IAM, Cloud KMS, VPC Service Controls, etc.) UK data protection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as Code (Terraform, Deployment Manager). Desirable: Google Cloud Professional Cloud Security Engineer certification. Experience with UK public sector or regulated industries (e.g. finance, healthcare). Familiarity with container security (GKE, Kubernetes RBAC, image scanning). Proficiency in scripting (Python, Bash) for automation and tooling. Experience with incident response in cloud-native environments. Previous consultancy experience within UK public sector organisations. If you're interested in the above, reach out to or apply Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
03/10/2025
Full time
Cloud Architect - MOD DV - Perm Location: Corsham, 4 days on-site Clearance: Active MOD DV - Must have DV in place, no scope for sponsorship Salary : £80,000 - £95,000 + Benefits An exciting opportunity has opened up to join one of Google Cloud's primary technical partners, as they push on with a new programme of work in the UK Defence sector, utilising cutting edge Cloud technologies. The role suits a Cloud Architect with a defence background that has an interest in utilising their AWS/Azure experience and up-skilling with GCP certifications and a training programme. As well as applying any existing GCP experience. About the role As a Cloud Architect you will be responsible for designing and advising on secure cloud architectures within Google Cloud Platform (GCP), ensuring compliance with UK and international standards. You will work with clients across sectors to assess risks, implement robust security controls, and guide secure cloud adoption strategies. This role requires a strong understanding of cloud-native security, regulatory frameworks, and the ability to translate technical risks into business impact. Part of this role, you will be required to obtain GCP certification. What You'll Do: Design and implement secure architectures, incorporating identity, access management, encryption, and network security. Conduct cloud security assessments and gap analyses for UK-based organisations. Advise on compliance with UK regulations (e.g. GDPR, NCSC Cloud Security Principles, ISO 27001). Develop and enforce cloud security policies, procedures, and governance models. Lead threat modelling, risk assessments, and vulnerability management initiatives. Configure and manage security tools such as Google SecOps tooling, Security Command Center, Cloud Armour, and VPC Service Controls. Collaborate with engineering and DevOps teams to embed security into CI/CD pipelines. Support incident response planning and cloud-specific disaster recovery strategies. Stay up to date with GCP security features, UK regulatory changes, and emerging threats. Requirements What You'll Bring Essential Skills & Experience: Experience in cloud security. Strong knowledge of: Security services (IAM, Cloud KMS, VPC Service Controls, etc.) UK data protection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as Code (Terraform, Deployment Manager). Desirable: Google Cloud Professional Cloud Security Engineer certification. Experience with UK public sector or regulated industries (e.g. finance, healthcare). Familiarity with container security (GKE, Kubernetes RBAC, image scanning). Proficiency in scripting (Python, Bash) for automation and tooling. Experience with incident response in cloud-native environments. Previous consultancy experience within UK public sector organisations. If you're interested in the above, reach out to or apply Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
Security Engineer - SC Cleared (or Eligible) - £550 per day - Inside IR35 - Remote - 12 Months initial contract We are currently working with a leading client in the zero carbon energy sector who are looking to bring on board an experienced Security Engineer to join their security implementation and engineering delivery team. This is a fantastic opportunity to work on large-scale, business-critical projects in a highly regulated environment. The Role - As part of the security engineering team, you'll be: Delivering on the security portfolio, with a focus on SASE and firewall estates. Working within a SAFe Agile framework, participating in sprints and stand-ups. Managing and tracking workloads via Jira. Triaging customer requirements into actionable deliverables. Acting as an escalation engineer for the Security Support Team. Supporting and mentoring junior engineers. Producing documentation and knowledge base material, as well as delivering knowledge transfer sessions. Occasionally supporting out-of-hours work. Technical Skills We're Looking For My client is looking for demonstrable experience in as many of the following as possible: Enterprise firewalls: Palo Alto (PAN) & Fortinet. Management platforms: Panorama, SCM, FortiManager, FortiAnalyzer. SASE products/services. Load balancers & application delivery - primarily F5. Vulnerability & exposure management (e.g. Tenable). Email security gateways and hygiene solutions (Mimecast). Network routing, switching, access policy administration. AWS and Azure security knowledge. Documentation: HLDs, LLDs, Security Designs, Risk Assessments, Network Diagrams. Soft Skills & Background Strong stakeholder management and customer-facing skills. Ability to work independently and as part of a collaborative team. Agile/SAFe delivery experience. Background in security operations, compliance, risk, or governance. Experience working with an MSSP - desirable. Exposure to highly regulated industries - Financial Services experience a strong plus. Clearance SC Clearance (or eligibility to obtain) is required for this role. Candidates with current active SC will be prioritised. Why Apply? This is an excellent chance to join a forward-thinking organisation investing heavily in their security landscape. You'll be working on enterprise-grade solutions, contributing to critical infrastructure, and expanding your skillset across cloud, network, and security domains.
03/10/2025
Contractor
Security Engineer - SC Cleared (or Eligible) - £550 per day - Inside IR35 - Remote - 12 Months initial contract We are currently working with a leading client in the zero carbon energy sector who are looking to bring on board an experienced Security Engineer to join their security implementation and engineering delivery team. This is a fantastic opportunity to work on large-scale, business-critical projects in a highly regulated environment. The Role - As part of the security engineering team, you'll be: Delivering on the security portfolio, with a focus on SASE and firewall estates. Working within a SAFe Agile framework, participating in sprints and stand-ups. Managing and tracking workloads via Jira. Triaging customer requirements into actionable deliverables. Acting as an escalation engineer for the Security Support Team. Supporting and mentoring junior engineers. Producing documentation and knowledge base material, as well as delivering knowledge transfer sessions. Occasionally supporting out-of-hours work. Technical Skills We're Looking For My client is looking for demonstrable experience in as many of the following as possible: Enterprise firewalls: Palo Alto (PAN) & Fortinet. Management platforms: Panorama, SCM, FortiManager, FortiAnalyzer. SASE products/services. Load balancers & application delivery - primarily F5. Vulnerability & exposure management (e.g. Tenable). Email security gateways and hygiene solutions (Mimecast). Network routing, switching, access policy administration. AWS and Azure security knowledge. Documentation: HLDs, LLDs, Security Designs, Risk Assessments, Network Diagrams. Soft Skills & Background Strong stakeholder management and customer-facing skills. Ability to work independently and as part of a collaborative team. Agile/SAFe delivery experience. Background in security operations, compliance, risk, or governance. Experience working with an MSSP - desirable. Exposure to highly regulated industries - Financial Services experience a strong plus. Clearance SC Clearance (or eligibility to obtain) is required for this role. Candidates with current active SC will be prioritised. Why Apply? This is an excellent chance to join a forward-thinking organisation investing heavily in their security landscape. You'll be working on enterprise-grade solutions, contributing to critical infrastructure, and expanding your skillset across cloud, network, and security domains.
Job Title: Head of Cyber Security Salary: £82,000 - £95,000 Location: London Key Skills: Cyber Security Strategy & Governance, Incident Response & Risk Management, Stakeholder & Board-Level Communication, Leadership & Team Development We are seeking a highly experienced Head of Cyber Security to lead the delivery of a best-in-class security posture within a large, complex public sector organisation. This is a senior, business-critical position with responsibility for all aspects of information security. The successful candidate will ensure the organisation achieves and maintains compliance with public sector and healthcare-specific standards, while also driving operational excellence across the enterprise. You will work closely with internal teams to safeguard staff, service users, and wider stakeholders from cyber risk. Protecting critical health services from evolving threats is a top priority, and this role plays a central part in ensuring robust security measures are in place. Reporting directly to the Director of Digital Services, the Head of Cyber Security will be a core member of the senior digital leadership team. You will oversee the development, implementation and governance of information security across the organisation, spanning infrastructure, applications, medical devices, communications, and policy frameworks. Key Duties & Responsibilities Lead the development and delivery of a comprehensive cyber security strategy across both corporate and clinical areas. Oversee the organisation's information security portfolio, including compliance frameworks, risk assessments, and threat intelligence. Provide active leadership for all aspects of cyber security covering infrastructure, applications, and clinical technology. Ensure business operations remain secure and resilient, embedding security at the heart of service delivery. Maintain an up-to-date understanding of the sector's cyber threat environment and adapt strategies accordingly. Establish, enhance and enforce operational procedures aligned with recognised standards and best practices. Contribute security expertise to major transformation projects, ensuring risks are identified and mitigated. Promote a culture of security awareness across the organisation, communicating risks and best practices effectively to staff at all levels. Brief the Board, Executive Team, and senior stakeholders on cyber security status, risks, and performance. Partner with the Director of Digital Services to shape long-term strategy and ensure the organisation meets the expectations of a critical public sector healthcare provider. Person Specification Essential Qualifications & Experience Strong background in cyber security, with extensive experience in managing security operations, policies, and risk management. Demonstrable knowledge of security standards, frameworks and compliance (e.g. ISO 27001, NIST, Cyber Essentials Plus). Proven experience in developing and delivering cyber security strategies within complex organisations. Hands-on expertise across infrastructure, applications, and cloud environments. Track record of leading incident response, threat detection and vulnerability management activities. Strong leadership and stakeholder management skills, with the ability to engage senior executives, boards, and technical teams alike. Experience influencing and embedding a culture of cyber awareness across diverse teams. Clear communication and presentation skills, with the ability to explain technical concepts to non-technical audiences. Desirable Qualifications & Experience Professional certifications such as CISSP, CISM, CISA, or equivalent. Prior experience working in the public sector or other highly regulated environments. Experience working with third-party vendors, suppliers and managed security services. Knowledge of security requirements for operational or clinical technologies (e.g. IoT, medical devices, OT security). Experience contributing to organisational strategy beyond purely technical delivery. Personal Attributes Strategic thinker with the ability to also operate hands-on when required. Collaborative leadership style with excellent influencing and negotiation skills. Highly motivated and resilient, with a proactive and pragmatic approach to problem solving. Ability to remain calm and decisive under pressure. A strong leader who is also approachable, credible, and trusted. Ambitious and forward-looking - this role could suit an established cyber security leader, or an experienced senior manager ready to step up into a "Head of" role. Job Title: Head of Cyber Security Salary: £82,000 - £95,000 Location: London Key Skills: Cyber Security Strategy & Governance, Incident Response & Risk Management, Stakeholder & Board-Level Communication, Leadership & Team Development Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
03/10/2025
Full time
Job Title: Head of Cyber Security Salary: £82,000 - £95,000 Location: London Key Skills: Cyber Security Strategy & Governance, Incident Response & Risk Management, Stakeholder & Board-Level Communication, Leadership & Team Development We are seeking a highly experienced Head of Cyber Security to lead the delivery of a best-in-class security posture within a large, complex public sector organisation. This is a senior, business-critical position with responsibility for all aspects of information security. The successful candidate will ensure the organisation achieves and maintains compliance with public sector and healthcare-specific standards, while also driving operational excellence across the enterprise. You will work closely with internal teams to safeguard staff, service users, and wider stakeholders from cyber risk. Protecting critical health services from evolving threats is a top priority, and this role plays a central part in ensuring robust security measures are in place. Reporting directly to the Director of Digital Services, the Head of Cyber Security will be a core member of the senior digital leadership team. You will oversee the development, implementation and governance of information security across the organisation, spanning infrastructure, applications, medical devices, communications, and policy frameworks. Key Duties & Responsibilities Lead the development and delivery of a comprehensive cyber security strategy across both corporate and clinical areas. Oversee the organisation's information security portfolio, including compliance frameworks, risk assessments, and threat intelligence. Provide active leadership for all aspects of cyber security covering infrastructure, applications, and clinical technology. Ensure business operations remain secure and resilient, embedding security at the heart of service delivery. Maintain an up-to-date understanding of the sector's cyber threat environment and adapt strategies accordingly. Establish, enhance and enforce operational procedures aligned with recognised standards and best practices. Contribute security expertise to major transformation projects, ensuring risks are identified and mitigated. Promote a culture of security awareness across the organisation, communicating risks and best practices effectively to staff at all levels. Brief the Board, Executive Team, and senior stakeholders on cyber security status, risks, and performance. Partner with the Director of Digital Services to shape long-term strategy and ensure the organisation meets the expectations of a critical public sector healthcare provider. Person Specification Essential Qualifications & Experience Strong background in cyber security, with extensive experience in managing security operations, policies, and risk management. Demonstrable knowledge of security standards, frameworks and compliance (e.g. ISO 27001, NIST, Cyber Essentials Plus). Proven experience in developing and delivering cyber security strategies within complex organisations. Hands-on expertise across infrastructure, applications, and cloud environments. Track record of leading incident response, threat detection and vulnerability management activities. Strong leadership and stakeholder management skills, with the ability to engage senior executives, boards, and technical teams alike. Experience influencing and embedding a culture of cyber awareness across diverse teams. Clear communication and presentation skills, with the ability to explain technical concepts to non-technical audiences. Desirable Qualifications & Experience Professional certifications such as CISSP, CISM, CISA, or equivalent. Prior experience working in the public sector or other highly regulated environments. Experience working with third-party vendors, suppliers and managed security services. Knowledge of security requirements for operational or clinical technologies (e.g. IoT, medical devices, OT security). Experience contributing to organisational strategy beyond purely technical delivery. Personal Attributes Strategic thinker with the ability to also operate hands-on when required. Collaborative leadership style with excellent influencing and negotiation skills. Highly motivated and resilient, with a proactive and pragmatic approach to problem solving. Ability to remain calm and decisive under pressure. A strong leader who is also approachable, credible, and trusted. Ambitious and forward-looking - this role could suit an established cyber security leader, or an experienced senior manager ready to step up into a "Head of" role. Job Title: Head of Cyber Security Salary: £82,000 - £95,000 Location: London Key Skills: Cyber Security Strategy & Governance, Incident Response & Risk Management, Stakeholder & Board-Level Communication, Leadership & Team Development Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Morson International (IT)
Gloucester, Gloucestershire
Security Engineer - SC Cleared (or Eligible) - £550 per day - Inside IR35 - Remote - 12 Months initial contract We are currently working with a leading client in the zero carbon energy sector who are looking to bring on board an experienced Security Engineer to join their security implementation and engineering delivery team. This is a fantastic opportunity to work on large-scale, business-critical projects in a highly regulated environment. The Role - As part of the security engineering team, you'll be: Delivering on the security portfolio, with a focus on SASE and Firewall estates. Working within a SAFe Agile framework, participating in sprints and stand-ups. Managing and tracking workloads via Jira. Triaging customer requirements into actionable deliverables. Acting as an escalation engineer for the Security Support Team. Supporting and mentoring junior engineers. Producing documentation and knowledge base material, as well as delivering knowledge transfer sessions. Occasionally supporting out-of-hours work. Technical Skills We're Looking For My client is looking for demonstrable experience in as many of the following as possible: Enterprise Firewalls: Palo Alto (PAN) & Fortinet. Management platforms: Panorama, SCM, FortiManager, FortiAnalyzer. SASE products/services. Load balancers & application delivery - primarily F5. Vulnerability & exposure management (eg Tenable). Email security gateways and hygiene solutions (Mimecast). Network routing, switching, access policy administration. AWS and Azure security knowledge. Documentation: HLDs, LLDs, Security Designs, Risk Assessments, Network Diagrams. Soft Skills & Background Strong stakeholder management and customer-facing skills. Ability to work independently and as part of a collaborative team. Agile/SAFe delivery experience. Background in security operations, compliance, risk, or governance. Experience working with an MSSP - desirable. Exposure to highly regulated industries - Financial Services experience a strong plus. Clearance SC Clearance (or eligibility to obtain) is required for this role. Candidates with current active SC will be prioritised. Why Apply? This is an excellent chance to join a forward-thinking organisation investing heavily in their security landscape. You'll be working on enterprise-grade solutions, contributing to critical infrastructure, and expanding your skill set across cloud, network, and security domains.
03/10/2025
Contractor
Security Engineer - SC Cleared (or Eligible) - £550 per day - Inside IR35 - Remote - 12 Months initial contract We are currently working with a leading client in the zero carbon energy sector who are looking to bring on board an experienced Security Engineer to join their security implementation and engineering delivery team. This is a fantastic opportunity to work on large-scale, business-critical projects in a highly regulated environment. The Role - As part of the security engineering team, you'll be: Delivering on the security portfolio, with a focus on SASE and Firewall estates. Working within a SAFe Agile framework, participating in sprints and stand-ups. Managing and tracking workloads via Jira. Triaging customer requirements into actionable deliverables. Acting as an escalation engineer for the Security Support Team. Supporting and mentoring junior engineers. Producing documentation and knowledge base material, as well as delivering knowledge transfer sessions. Occasionally supporting out-of-hours work. Technical Skills We're Looking For My client is looking for demonstrable experience in as many of the following as possible: Enterprise Firewalls: Palo Alto (PAN) & Fortinet. Management platforms: Panorama, SCM, FortiManager, FortiAnalyzer. SASE products/services. Load balancers & application delivery - primarily F5. Vulnerability & exposure management (eg Tenable). Email security gateways and hygiene solutions (Mimecast). Network routing, switching, access policy administration. AWS and Azure security knowledge. Documentation: HLDs, LLDs, Security Designs, Risk Assessments, Network Diagrams. Soft Skills & Background Strong stakeholder management and customer-facing skills. Ability to work independently and as part of a collaborative team. Agile/SAFe delivery experience. Background in security operations, compliance, risk, or governance. Experience working with an MSSP - desirable. Exposure to highly regulated industries - Financial Services experience a strong plus. Clearance SC Clearance (or eligibility to obtain) is required for this role. Candidates with current active SC will be prioritised. Why Apply? This is an excellent chance to join a forward-thinking organisation investing heavily in their security landscape. You'll be working on enterprise-grade solutions, contributing to critical infrastructure, and expanding your skill set across cloud, network, and security domains.
Join us as a Senior Security Engineer for CIAM at Barclays, where you will bring to life a new digital platform capability, transforming and modernising our digital estate to build a market-leading digital offering with customer experience at its heart. This is an exciting and key role, partnering with business aligned engineering and product teams, to ensure a collaborative team culture is at the heart of what we do. To be successful in this role you should have: Experience across configuration and integration with Hardware Security Module (HSM) and AWS Secrets Manager (ASM) tooling, certificate lifecycle management, e.g. rotation, revocation, and in automating security workflows Experience using GitLab CI/CD pipelines, AWS CLI or Chef. Strong experience with Cloud Security expertise across the following areas: AWS security controls, policies and automation, CLI tools, role based and attribute-based access controls, cryptographic protocols and secure key lifecycle management, advanced threat modelling, SOC operations, securing microservices and APIs, DevSecOps best practices, vulnerability scanning, tools, approaches, vulnerability patching and vendor management for security Strong experience in penetration testing and hands-on coding in at least one of the following: JavaScript, Java, Python. Some other highly desirable skills include: Experience in hands-on configuration, deployment and operation of ForgeRock COTS based IAM solutions (PingGateway, PingAM, PingIDM, PingDS) with embedded security gates, HTTP header signing, access token and data at rest encryption, PKI based self-sovereign identity, or open source You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills. This role will be based out of our London office. Purpose of the role To develop, implement and maintain solutions that support the safeguarding of the banks systems and sensitive information. Accountabilities Provision of subject matter expertise on security systems and engineering patterns. Development and implementation of protocols, algorithms, and software applications to protect sensitive data and systems. Management and protection of secrets, ensuring that they are securely generated, stored, and used. Execution of audits to monitor, identify and assess vulnerabilities in the banks infrastructure/software and support the response to potential security breaches. Identification of advancements in to support the innovation and adoption of new cryptographic technologies and techniques. Collaboration across the bank, including developers and security teams, to ensure that cryptographic solutions align with business objectives, security policies and regulatory requirements. Development/ Implementation and maintenance of Identity and Access Management solutions and systems. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
03/10/2025
Full time
Join us as a Senior Security Engineer for CIAM at Barclays, where you will bring to life a new digital platform capability, transforming and modernising our digital estate to build a market-leading digital offering with customer experience at its heart. This is an exciting and key role, partnering with business aligned engineering and product teams, to ensure a collaborative team culture is at the heart of what we do. To be successful in this role you should have: Experience across configuration and integration with Hardware Security Module (HSM) and AWS Secrets Manager (ASM) tooling, certificate lifecycle management, e.g. rotation, revocation, and in automating security workflows Experience using GitLab CI/CD pipelines, AWS CLI or Chef. Strong experience with Cloud Security expertise across the following areas: AWS security controls, policies and automation, CLI tools, role based and attribute-based access controls, cryptographic protocols and secure key lifecycle management, advanced threat modelling, SOC operations, securing microservices and APIs, DevSecOps best practices, vulnerability scanning, tools, approaches, vulnerability patching and vendor management for security Strong experience in penetration testing and hands-on coding in at least one of the following: JavaScript, Java, Python. Some other highly desirable skills include: Experience in hands-on configuration, deployment and operation of ForgeRock COTS based IAM solutions (PingGateway, PingAM, PingIDM, PingDS) with embedded security gates, HTTP header signing, access token and data at rest encryption, PKI based self-sovereign identity, or open source You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills. This role will be based out of our London office. Purpose of the role To develop, implement and maintain solutions that support the safeguarding of the banks systems and sensitive information. Accountabilities Provision of subject matter expertise on security systems and engineering patterns. Development and implementation of protocols, algorithms, and software applications to protect sensitive data and systems. Management and protection of secrets, ensuring that they are securely generated, stored, and used. Execution of audits to monitor, identify and assess vulnerabilities in the banks infrastructure/software and support the response to potential security breaches. Identification of advancements in to support the innovation and adoption of new cryptographic technologies and techniques. Collaboration across the bank, including developers and security teams, to ensure that cryptographic solutions align with business objectives, security policies and regulatory requirements. Development/ Implementation and maintenance of Identity and Access Management solutions and systems. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
Cyber Security Analyst - Manchester - £50,000 The Company: Lorien are working in partnership with a leading name in Manchester. With a strong focus on protecting their digital estate, they're now looking to hire a Cyber Security Analyst to help strengthen their InfoSec capabilities and ensure resilience against cyber threats. The Role: This is a hands-on role focused on protecting the organisation's network and systems from cyber-attacks. You'll be responsible for managing and remediating security incidents, tuning SIEM alerts, supporting endpoint detection and response tooling, and contributing to post-incident investigations.You'll also play a key role in vulnerability management, security reporting, and supporting the deployment and maintenance of security tooling across the estate. Working closely with the IT Security & Compliance Manager, you'll help shape the business's cyber defence strategy and educate stakeholders on best practices. The Skill Requirements:Successful candidates will have a blend of the following: Experience in Infrastructure support or working within a SOC/Security team Strong understanding of Microsoft O365/Azure Security, endpoint and email security tooling Familiarity with SIEM tools and IT Service Management platforms Knowledge of current and emerging cyber threats and security technologies Experience with vulnerability identification and remediation The Benefits: Salary up to £50,000 + bonus Hybrid working model (2 days onsite in Manchester) 25 days annual leave plus bank holidays Flexible working hours Opportunity to work in a fast-paced, high-impact environment If this sounds like something you'd be interested in, submit your application to be considered. Interviews will be scheduled over the coming weeks. Carbon60, Lorien & SRG - The Impellam Group STEM Portfolio are acting as an Employment Business in relation to this vacancy.
03/10/2025
Full time
Cyber Security Analyst - Manchester - £50,000 The Company: Lorien are working in partnership with a leading name in Manchester. With a strong focus on protecting their digital estate, they're now looking to hire a Cyber Security Analyst to help strengthen their InfoSec capabilities and ensure resilience against cyber threats. The Role: This is a hands-on role focused on protecting the organisation's network and systems from cyber-attacks. You'll be responsible for managing and remediating security incidents, tuning SIEM alerts, supporting endpoint detection and response tooling, and contributing to post-incident investigations.You'll also play a key role in vulnerability management, security reporting, and supporting the deployment and maintenance of security tooling across the estate. Working closely with the IT Security & Compliance Manager, you'll help shape the business's cyber defence strategy and educate stakeholders on best practices. The Skill Requirements:Successful candidates will have a blend of the following: Experience in Infrastructure support or working within a SOC/Security team Strong understanding of Microsoft O365/Azure Security, endpoint and email security tooling Familiarity with SIEM tools and IT Service Management platforms Knowledge of current and emerging cyber threats and security technologies Experience with vulnerability identification and remediation The Benefits: Salary up to £50,000 + bonus Hybrid working model (2 days onsite in Manchester) 25 days annual leave plus bank holidays Flexible working hours Opportunity to work in a fast-paced, high-impact environment If this sounds like something you'd be interested in, submit your application to be considered. Interviews will be scheduled over the coming weeks. Carbon60, Lorien & SRG - The Impellam Group STEM Portfolio are acting as an Employment Business in relation to this vacancy.
Why work for us? We aim to provide you with peace of mind in addition to an attractive salary and eligibility to participate in the discretionary annual bonus opportunities. You will also receive an excellent benefit package including: Company funded industry qualifications Workplace Pension Close to town centre / bus station / train station Free Car Parking Attendance Bonus Scheme Sick pay Scheme 22 days holiday Bank Holidays, increasing with length of service to a max of 30 days after a qualifying period. As a Cyber Security Engineer, you will join our growing team with its increased focus and business growth in Cyber Security, working closely with our Senior Cyber Security Manager ensuring the smooth and successful delivery of all security-based client requests, services, audits and certifications in a continually evolving role. You will be responsible for providing advice, assistance and take action on security matters to our clients and internal colleagues as well as working on Cyber Essentials, Cyber Essentials Plus assessments and all other services within our Security portfolio. Customer service is a priority, as such you will enjoy the interaction and building rapport with our existing, varied customer base. What you'll be doing: Liaising with customer to understand client requests and how best resolve issues Supporting project implementations from initial customer training through to ongoing support Working on Cyber Essentials & IASME Assured Level 1 assessments Working on Cyber Essentials Plus & IASME Assured Level 2 (Audited) audits Carrying out Internal Vulnerability Scanning (including customising reporting) Carrying out External Penetration Testing (including customising reporting) Using enterprise level tools to analyse and assess vulnerabilities Assist with the evolving product and services portfolio available to clients Assisting the sales and support teams with relevant information and advice, taking ownership where required Carrying out client consultations and security audits to best advise clients on security measures appropriate for their organisation Undertaking industry standard training and certifications About You: Qualifications: 5 GCSEs grades A -C/9-4 or equivalent (including English Language, Maths & IT) Minimum of 3 years' experience relevant to Cyber Security and/or IT Support At least 2 industry recognised certifications (Microsoft, CompTIA, Cyber Scheme etc) Essential Skills and Experience: Previous Technical Support or Cyber Security Engineer experience (or roles of similar nature) Good knowledge of networks and basic infrastructure (routing, IP's, topology etc) Good planning, time management, administrational and organisational skills Always maintaining client confidentiality and security Ability to follow strict process and procedures Desirable - knowledge of the Cyber Essentials scheme Personal qualities: Organised, Reliable and trustworthy Customer Service Driven Good problem-solving skills Good timekeeping Attention to detail Ability to work individually and as part of a team Strong interpersonal and communication skills key An interest in technology and troubleshooting Capable of thinking outside the box Desirable - driving licence Prospects: The role offers long term security and the opportunity to progress along within the team along with continued development through to becoming an IASME accredited assessor and further industry accreditations such as Cyber Scheme Team Member (CSTM).
03/10/2025
Full time
Why work for us? We aim to provide you with peace of mind in addition to an attractive salary and eligibility to participate in the discretionary annual bonus opportunities. You will also receive an excellent benefit package including: Company funded industry qualifications Workplace Pension Close to town centre / bus station / train station Free Car Parking Attendance Bonus Scheme Sick pay Scheme 22 days holiday Bank Holidays, increasing with length of service to a max of 30 days after a qualifying period. As a Cyber Security Engineer, you will join our growing team with its increased focus and business growth in Cyber Security, working closely with our Senior Cyber Security Manager ensuring the smooth and successful delivery of all security-based client requests, services, audits and certifications in a continually evolving role. You will be responsible for providing advice, assistance and take action on security matters to our clients and internal colleagues as well as working on Cyber Essentials, Cyber Essentials Plus assessments and all other services within our Security portfolio. Customer service is a priority, as such you will enjoy the interaction and building rapport with our existing, varied customer base. What you'll be doing: Liaising with customer to understand client requests and how best resolve issues Supporting project implementations from initial customer training through to ongoing support Working on Cyber Essentials & IASME Assured Level 1 assessments Working on Cyber Essentials Plus & IASME Assured Level 2 (Audited) audits Carrying out Internal Vulnerability Scanning (including customising reporting) Carrying out External Penetration Testing (including customising reporting) Using enterprise level tools to analyse and assess vulnerabilities Assist with the evolving product and services portfolio available to clients Assisting the sales and support teams with relevant information and advice, taking ownership where required Carrying out client consultations and security audits to best advise clients on security measures appropriate for their organisation Undertaking industry standard training and certifications About You: Qualifications: 5 GCSEs grades A -C/9-4 or equivalent (including English Language, Maths & IT) Minimum of 3 years' experience relevant to Cyber Security and/or IT Support At least 2 industry recognised certifications (Microsoft, CompTIA, Cyber Scheme etc) Essential Skills and Experience: Previous Technical Support or Cyber Security Engineer experience (or roles of similar nature) Good knowledge of networks and basic infrastructure (routing, IP's, topology etc) Good planning, time management, administrational and organisational skills Always maintaining client confidentiality and security Ability to follow strict process and procedures Desirable - knowledge of the Cyber Essentials scheme Personal qualities: Organised, Reliable and trustworthy Customer Service Driven Good problem-solving skills Good timekeeping Attention to detail Ability to work individually and as part of a team Strong interpersonal and communication skills key An interest in technology and troubleshooting Capable of thinking outside the box Desirable - driving licence Prospects: The role offers long term security and the opportunity to progress along within the team along with continued development through to becoming an IASME accredited assessor and further industry accreditations such as Cyber Scheme Team Member (CSTM).
Hays Specialist Recruitment Limited
West Drayton, Middlesex
Contract duration - 6 months Location - Waterside - UB7 0GB Hybrid - 1 day per week from office and rest days from homeOur client has a varied and complex digital landscape. The DevSecOps specialist will report to DevSecOps manager in the Cyber Architecture team. Working closely with the Cyber team as well as the digital team to ensure cybersecurity is embedded across all digital platforms. Key skills & Responsibility Lead the integration of security into the software development lifecycle (SDLC) using DevSecOps principles. Define and implement release strategies with a strong emphasis on application security. Identify and remediate security vulnerabilities through detailed code reviews and automated tooling. Collaborate with cross-functional teams to establish secure coding standards and quality benchmarks. Provide expert consultancy and guidance to engineering teams, enabling them to meet strategic security goals. Drive adoption of security best practices across CI/CD pipelines and cloud-native environments. Accountabilities Provide technical cyber leadership across all development teams, focusing on application security for our various digital platforms (web and mobile). Secure our CI/CD pipelines and provide improvement plans and requirements to those that use them, while overseeing the consistent adoption of secure practices across teams. Support the vulnerability management process, raising awareness and embedding secure development principles with development teams. Evaluate, implement, support and communicate new tools and features to improve our security posture whilst supporting, consulting, and measuring the progression of adoption across our platform and development teams. Establish security testing approaches and tools to support iterative agile delivery, ensuring alignment with organisational objectives and secure development practices. Lead cyber digital reviews to promote consistency, quality, and alignment to cyber principles and patterns. Effectively communicate, reason, and influence stakeholders across business tech to promote the understanding of cyber digital security and embed it throughout design and delivery. Actively participate in and contribute to the client's cybersecurity guilds, driving innovation and alignment in digital security approaches. Support the client's Cyber Delivery Assurance Team and the wider business Cyber Team by acting as a subject-matter expert on all things digital security. Support the client's Cyber Change Team by assisting in change reviews. Required Skills & Experience: Proven experience in application security within a DevSecOps framework. Strong background in software engineering, with the ability to bridge development and security. Experience identifying security issues through code review. Recognised cybersecurity certifications or qualifications desirable. Deep technical expertise in security tools and methodologies, including: Static Application Security Testing (SAST) Dynamic Application Security Testing (DAST) Software Composition Analysis (SCA) Threat Modelling Demonstrated success in leading or advising teams on secure development practices. Senior-level experience with a solid understanding of cloud migration challenges and solutions. What you need to do now If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career. Hays Talent Solutions is a trading division of Hays Specialist Recruitment Limited and acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
03/10/2025
Full time
Contract duration - 6 months Location - Waterside - UB7 0GB Hybrid - 1 day per week from office and rest days from homeOur client has a varied and complex digital landscape. The DevSecOps specialist will report to DevSecOps manager in the Cyber Architecture team. Working closely with the Cyber team as well as the digital team to ensure cybersecurity is embedded across all digital platforms. Key skills & Responsibility Lead the integration of security into the software development lifecycle (SDLC) using DevSecOps principles. Define and implement release strategies with a strong emphasis on application security. Identify and remediate security vulnerabilities through detailed code reviews and automated tooling. Collaborate with cross-functional teams to establish secure coding standards and quality benchmarks. Provide expert consultancy and guidance to engineering teams, enabling them to meet strategic security goals. Drive adoption of security best practices across CI/CD pipelines and cloud-native environments. Accountabilities Provide technical cyber leadership across all development teams, focusing on application security for our various digital platforms (web and mobile). Secure our CI/CD pipelines and provide improvement plans and requirements to those that use them, while overseeing the consistent adoption of secure practices across teams. Support the vulnerability management process, raising awareness and embedding secure development principles with development teams. Evaluate, implement, support and communicate new tools and features to improve our security posture whilst supporting, consulting, and measuring the progression of adoption across our platform and development teams. Establish security testing approaches and tools to support iterative agile delivery, ensuring alignment with organisational objectives and secure development practices. Lead cyber digital reviews to promote consistency, quality, and alignment to cyber principles and patterns. Effectively communicate, reason, and influence stakeholders across business tech to promote the understanding of cyber digital security and embed it throughout design and delivery. Actively participate in and contribute to the client's cybersecurity guilds, driving innovation and alignment in digital security approaches. Support the client's Cyber Delivery Assurance Team and the wider business Cyber Team by acting as a subject-matter expert on all things digital security. Support the client's Cyber Change Team by assisting in change reviews. Required Skills & Experience: Proven experience in application security within a DevSecOps framework. Strong background in software engineering, with the ability to bridge development and security. Experience identifying security issues through code review. Recognised cybersecurity certifications or qualifications desirable. Deep technical expertise in security tools and methodologies, including: Static Application Security Testing (SAST) Dynamic Application Security Testing (DAST) Software Composition Analysis (SCA) Threat Modelling Demonstrated success in leading or advising teams on secure development practices. Senior-level experience with a solid understanding of cloud migration challenges and solutions. What you need to do now If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career. Hays Talent Solutions is a trading division of Hays Specialist Recruitment Limited and acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
Jobs - Frequently Asked Questions
Use the location filter to find IT jobs in cities like London, Manchester, Birmingham, and across the UK.
Entry-level roles include IT support technician, junior developer, QA tester, and helpdesk analyst.
New jobs are posted daily. Set up alerts to be notified as soon as new roles match your preferences.
Key skills include problem-solving, coding, cloud computing, networking, and familiarity with tools like AWS or SQL.
Yes, many employers offer training or junior roles. Focus on building a strong CV with relevant coursework or personal projects.