• Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
  • Sign in
  • Sign up
  • Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

316 jobs found

Email me jobs like this
Refine Search
Current Search
cyber security specialist
Head of IT
Amco Redditch, Worcestershire
Head of IT Location: Redditch Salary: £60,000 per annum Vacancy Type: Permanent, Full Time(40 hours per week) An exciting opportunity has arisen for a Head of IT to drive technological advancement for our customers and our team. Amco is a £60m turnover, Redditch based, global logistics specialist across 4 sites, providing supply chain solutions that support the critical movement of goods worldwide by road, sea, air, and rail. We serve a wide range of industries, including electronics, food, and industrial, and are also specialists in automotive parts logistics, working closely with luxury vehicle manufacturers. Technology is a core enabler of our business, and we invest consistently to build on our capabilities, serve our customers and team, and remain at the leading edge of innovation in a competitive market. Leading a small team of specialists, the Head of IT will oversee our day-to-day internal systems, collaborate with the Senior Management team and Directors to ensure smooth operations, and develop strategic road maps for technology development. The role will also involve overseeing key projects and driving innovation across the business. Key focus areas are Service Delivery, Digitalisation, AI & Information Security IT Operations & Service Delivery Oversee the daily operations of the IT department, ensuring high availability and performance of systems and services Manage IT support, infrastructure, and service delivery across the organisation Ensure SLAs and KPIs are met, driving continuous improvement in service quality Act as an escalation point for service issues Provide technical guidance across infrastructure, cloud services, and security Ensure robust cyber security and compliance practices are in place Strategy & Road mapping Own and deliver an IT road map that supports the businesses objectives Lead IT projects, including development, infrastructure upgrades, and integrations Identify opportunities for innovation, automation, efficiency and AI initiatives Manage budgets, vendors, and third-party relationships Leadership & Operations Proven experience managing IT operations in a fast-paced organisation Experience running a busy IT service function managing multiple priorities Strong stakeholder management and communication skills Demonstrable experience delivering IT strategies and road maps About You You are driven by using technology to create positive business outcomes and you understand how important technology and systems are to successful business operations 5 years+ of experience leading an IT department and team management You'll have worked in a logistics, manufacturing or similar fast paced environment where you've been subject to challenging deadlines and delivering technology that's robust Deployed a service driven management approach using frameworks such as ITIL A strong understanding of support infrastructure and experience of business systems deployment and change Have a technical understanding that allows you to guide, challenge and arbitrate on technical & architectural decisions. Experience with the management of Microsoft 365 and cloud services A good understanding of cyber security best practice as well as IT governance Excellent stakeholder management and communication up to Board level Why Us? We believe in taking great care of our team. When you join us at our AMCO Park head office in Redditch, you will enjoy: Time to Unwind: 25 days holiday (plus bank holidays), with an option to purchase up to 5 additional days. Financial Perks: A Competitive Salary of £60-65k per annum, depending on experience, with Pension scheme Health & Wellbeing: Comprehensive healthcare cash plans (covering dental, optical, and physio), digital access to GP appointments, and life insurance The Culture: A flat management structure where your voice is heard quickly, plus a packed social calendar of events! NO AGENCIES PLEASE Please note, we are unable to provide employment sponsorship to candidates. To Apply If you feel you are a suitable candidate and would like to work for AMCO, please click apply to be redirected to our website to complete your application.
Aug 25, 2026
Full time
Head of IT Location: Redditch Salary: £60,000 per annum Vacancy Type: Permanent, Full Time(40 hours per week) An exciting opportunity has arisen for a Head of IT to drive technological advancement for our customers and our team. Amco is a £60m turnover, Redditch based, global logistics specialist across 4 sites, providing supply chain solutions that support the critical movement of goods worldwide by road, sea, air, and rail. We serve a wide range of industries, including electronics, food, and industrial, and are also specialists in automotive parts logistics, working closely with luxury vehicle manufacturers. Technology is a core enabler of our business, and we invest consistently to build on our capabilities, serve our customers and team, and remain at the leading edge of innovation in a competitive market. Leading a small team of specialists, the Head of IT will oversee our day-to-day internal systems, collaborate with the Senior Management team and Directors to ensure smooth operations, and develop strategic road maps for technology development. The role will also involve overseeing key projects and driving innovation across the business. Key focus areas are Service Delivery, Digitalisation, AI & Information Security IT Operations & Service Delivery Oversee the daily operations of the IT department, ensuring high availability and performance of systems and services Manage IT support, infrastructure, and service delivery across the organisation Ensure SLAs and KPIs are met, driving continuous improvement in service quality Act as an escalation point for service issues Provide technical guidance across infrastructure, cloud services, and security Ensure robust cyber security and compliance practices are in place Strategy & Road mapping Own and deliver an IT road map that supports the businesses objectives Lead IT projects, including development, infrastructure upgrades, and integrations Identify opportunities for innovation, automation, efficiency and AI initiatives Manage budgets, vendors, and third-party relationships Leadership & Operations Proven experience managing IT operations in a fast-paced organisation Experience running a busy IT service function managing multiple priorities Strong stakeholder management and communication skills Demonstrable experience delivering IT strategies and road maps About You You are driven by using technology to create positive business outcomes and you understand how important technology and systems are to successful business operations 5 years+ of experience leading an IT department and team management You'll have worked in a logistics, manufacturing or similar fast paced environment where you've been subject to challenging deadlines and delivering technology that's robust Deployed a service driven management approach using frameworks such as ITIL A strong understanding of support infrastructure and experience of business systems deployment and change Have a technical understanding that allows you to guide, challenge and arbitrate on technical & architectural decisions. Experience with the management of Microsoft 365 and cloud services A good understanding of cyber security best practice as well as IT governance Excellent stakeholder management and communication up to Board level Why Us? We believe in taking great care of our team. When you join us at our AMCO Park head office in Redditch, you will enjoy: Time to Unwind: 25 days holiday (plus bank holidays), with an option to purchase up to 5 additional days. Financial Perks: A Competitive Salary of £60-65k per annum, depending on experience, with Pension scheme Health & Wellbeing: Comprehensive healthcare cash plans (covering dental, optical, and physio), digital access to GP appointments, and life insurance The Culture: A flat management structure where your voice is heard quickly, plus a packed social calendar of events! NO AGENCIES PLEASE Please note, we are unable to provide employment sponsorship to candidates. To Apply If you feel you are a suitable candidate and would like to work for AMCO, please click apply to be redirected to our website to complete your application.
QA
IT Helpdesk Support Apprentice
QA Hereford, Herefordshire
Here at John Finch Computers, we have been providing professional computer support to home users for more than 20 years. About the role: We're looking for a motivated Cloud Support Specialist Apprentice to join our team and complete a Level 3 apprenticeship. This is a great opportunity to start or develop a career in cloud computing, IT support, and digital technologies. As a first point of contact for customers, you'll support Microsoft 365, Azure, and cloud-based applications while gaining hands-on experience in a professional environment. You'll learn how to troubleshoot technical issues, manage user accounts and permissions, maintain documentation, and deliver excellent customer support. Ideal for someone with a passion for technology, a willingness to learn, and an ambition to build a long-term career in cloud and IT services. Responsibilities: Provide first-line technical support via phone, email, and ticketing systems, escalating complex issues when needed Support Microsoft 365 services, including Outlook, Teams, SharePoint, OneDrive, and user account management Create and manage user accounts, permissions, password resets, and Microsoft Entra ID administration Troubleshoot issues across Microsoft 365, Windows, cloud services, hardware, peripherals, and basic networking Maintain accurate service desk records and contribute to internal documentation and knowledge bases Deliver friendly, professional customer support and build strong customer relationships Desirable skills and experience: It would be beneficial if candidates have some knowledge or experience of: Microsoft 365 Windows operating systems Cloud technologies Computer hardware Basic networking concepts Cyber security fundamentals IT administration Full UK driving licence ( essential ) The ideal candidate will: Have a genuine passion for technology and cloud services Be enthusiastic and eager to learn Communicate clearly and confidently with customers and colleagues Have excellent organisational skills and attention to detail Demonstrate initiative, motivation, and a positive attitude Be able to work both independently and as part of a team Show a willingness to continuously develop technical knowledge and professional skills Entry requirements: 3 GCSEs (or equivalent) at grades 4+ (A-C) in any subject GCSE Maths and English (or equivalents) at grades 3+ (D or above) Prospective apprentices must not hold an existing qualification at the same or higher level as this apprenticeship in a similar subject Non-standard entry with work experience: Relevant qualifications and/or work experience will be considered for applicants with potential to benefit from the programme. You may also have a combination of qualifications and experience which demonstrate the minimum foundation needed for the programme. In this instance you could still be considered for the programme. If you hold international equivalents of the above qualifications, at the time of your application you must be able to provide an official document that states how your international qualifications compare to the UK qualifications. For more information please visit the UK ENIC website. Working hours: 40 hours per week, Monday to Friday 9am - 17:30pm Benefits: Salary: £17,000 - £19,000 per annum, depending on experience Ongoing training and career development opportunities Supportive and experienced team environment Future prospects: We invest in our people and are committed to promoting from within. You will gain practical experience and a nationally recognised Level 3 apprenticeship qualification. On successful completion you will be well placed to progress into more senior IT roles or further technical qualifications. About QA: Our apprenticeships are the perfect way to gain new skills, earn while you learn, and launch yourself into an exciting future. With over 50,000 successful apprenticeship graduates, we're a top 50 training provider, dedicated to helping you succeed. Interested? Apply now!
Aug 24, 2026
Full time
Here at John Finch Computers, we have been providing professional computer support to home users for more than 20 years. About the role: We're looking for a motivated Cloud Support Specialist Apprentice to join our team and complete a Level 3 apprenticeship. This is a great opportunity to start or develop a career in cloud computing, IT support, and digital technologies. As a first point of contact for customers, you'll support Microsoft 365, Azure, and cloud-based applications while gaining hands-on experience in a professional environment. You'll learn how to troubleshoot technical issues, manage user accounts and permissions, maintain documentation, and deliver excellent customer support. Ideal for someone with a passion for technology, a willingness to learn, and an ambition to build a long-term career in cloud and IT services. Responsibilities: Provide first-line technical support via phone, email, and ticketing systems, escalating complex issues when needed Support Microsoft 365 services, including Outlook, Teams, SharePoint, OneDrive, and user account management Create and manage user accounts, permissions, password resets, and Microsoft Entra ID administration Troubleshoot issues across Microsoft 365, Windows, cloud services, hardware, peripherals, and basic networking Maintain accurate service desk records and contribute to internal documentation and knowledge bases Deliver friendly, professional customer support and build strong customer relationships Desirable skills and experience: It would be beneficial if candidates have some knowledge or experience of: Microsoft 365 Windows operating systems Cloud technologies Computer hardware Basic networking concepts Cyber security fundamentals IT administration Full UK driving licence ( essential ) The ideal candidate will: Have a genuine passion for technology and cloud services Be enthusiastic and eager to learn Communicate clearly and confidently with customers and colleagues Have excellent organisational skills and attention to detail Demonstrate initiative, motivation, and a positive attitude Be able to work both independently and as part of a team Show a willingness to continuously develop technical knowledge and professional skills Entry requirements: 3 GCSEs (or equivalent) at grades 4+ (A-C) in any subject GCSE Maths and English (or equivalents) at grades 3+ (D or above) Prospective apprentices must not hold an existing qualification at the same or higher level as this apprenticeship in a similar subject Non-standard entry with work experience: Relevant qualifications and/or work experience will be considered for applicants with potential to benefit from the programme. You may also have a combination of qualifications and experience which demonstrate the minimum foundation needed for the programme. In this instance you could still be considered for the programme. If you hold international equivalents of the above qualifications, at the time of your application you must be able to provide an official document that states how your international qualifications compare to the UK qualifications. For more information please visit the UK ENIC website. Working hours: 40 hours per week, Monday to Friday 9am - 17:30pm Benefits: Salary: £17,000 - £19,000 per annum, depending on experience Ongoing training and career development opportunities Supportive and experienced team environment Future prospects: We invest in our people and are committed to promoting from within. You will gain practical experience and a nationally recognised Level 3 apprenticeship qualification. On successful completion you will be well placed to progress into more senior IT roles or further technical qualifications. About QA: Our apprenticeships are the perfect way to gain new skills, earn while you learn, and launch yourself into an exciting future. With over 50,000 successful apprenticeship graduates, we're a top 50 training provider, dedicated to helping you succeed. Interested? Apply now!
Circle Recruitment
Programme Manager
Circle Recruitment
Programme Manager - Cyber Security and Operations 6 Months £90k FTC or £550/Day Inside IR35 London or Southampton Our client is looking for an experienced Programme Manager with a strong background in Cyber Security and Security Operations to lead complex programmes and drive the successful delivery of security capabilities into live operational environments. The Programme Manager role will be an initial 6 month contract, and can be offered as either a FTC with a salary of between £80k - £90k, or day rate contract between £500 - £550/Day Inside IR35 on an umbrella solution. The role can be based in either London or Southamptom, and will be a mix of office and remote based working - ideally 1-2 days per week in the office. The Role As a Programme Manager, our client expects you to take ownership of complex Cyber Security and Security Operations programmes, bringing together cyber specialists, technology teams, operational stakeholders and suppliers to deliver measurable security outcomes. You will provide the structure, governance and leadership required to take security initiatives from strategy and design through implementation, transition and into business-as-usual operations. This is a senior, client-facing role requiring strong programme leadership combined with a practical understanding of how modern Security Operations capabilities are designed, implemented and operated. What You'll Do Lead complex Security Operations and Cyber Security transformation programmes from mobilisation through to operational delivery. Establish programme plans, governance frameworks, milestones, dependencies and success measures. Coordinate delivery across Cyber Security, SOC, Infrastructure, Cloud, IAM, Network and Service Management teams. Drive the implementation and enhancement of Security Operations capabilities, including SOC, SIEM, detection and response, vulnerability management and incident response. Manage the transition of new security capabilities into live operational services. Work closely with security architects and technical teams to ensure delivery aligns with security strategy and architecture. Manage dependencies across internal teams, clients, technology vendors and third-party suppliers. Own programme risks, issues, assumptions and dependencies, ensuring appropriate escalation and resolution. Manage programme budgets, resources, forecasts and commercial commitments. What Our Client Is Looking For Programme & Security Operations Experience Significant experience leading complex Cyber Security programmes within enterprise environments. Strong understanding of Security Operations and the delivery of operational cyber capabilities. Experience delivering programmes involving areas such as SOC, SIEM, incident response, threat detection, vulnerability management, security tooling or security service transformation. Proven experience transitioning security capabilities from project delivery into BAU operations. Strong programme governance, planning, financial management and risk management capability. Experience managing multiple workstreams, technical dependencies and third-party suppliers. Good understanding of cloud, infrastructure, networking, identity and security technologies. Experience working with managed security service providers and technology vendors would be advantageous. Our client is looking for someone who can combine strategic programme leadership with a practical understanding of Cyber Security and Security Operations, ensuring complex security initiatives translate into effective, sustainable operational capabilities. If you are interested in the above, hit the Apply now button! Programme Manager, Programme Management, Security Operations, Programme Manager, Cyber, Programme Manager, Security, Programme Manager, Programme Manager Circle Recruitment is acting as an Employment Agency in relation to this vacancy. Earn yourself a referral bonus if you refer somebody else who fills the role! We also offer an iPad if you refer a new client to us and we recruit for them. Follow us on Facebook - Circle Recruitment , Twitter and LinkedIn - Circle Recruitment.
Aug 24, 2026
Full time
Programme Manager - Cyber Security and Operations 6 Months £90k FTC or £550/Day Inside IR35 London or Southampton Our client is looking for an experienced Programme Manager with a strong background in Cyber Security and Security Operations to lead complex programmes and drive the successful delivery of security capabilities into live operational environments. The Programme Manager role will be an initial 6 month contract, and can be offered as either a FTC with a salary of between £80k - £90k, or day rate contract between £500 - £550/Day Inside IR35 on an umbrella solution. The role can be based in either London or Southamptom, and will be a mix of office and remote based working - ideally 1-2 days per week in the office. The Role As a Programme Manager, our client expects you to take ownership of complex Cyber Security and Security Operations programmes, bringing together cyber specialists, technology teams, operational stakeholders and suppliers to deliver measurable security outcomes. You will provide the structure, governance and leadership required to take security initiatives from strategy and design through implementation, transition and into business-as-usual operations. This is a senior, client-facing role requiring strong programme leadership combined with a practical understanding of how modern Security Operations capabilities are designed, implemented and operated. What You'll Do Lead complex Security Operations and Cyber Security transformation programmes from mobilisation through to operational delivery. Establish programme plans, governance frameworks, milestones, dependencies and success measures. Coordinate delivery across Cyber Security, SOC, Infrastructure, Cloud, IAM, Network and Service Management teams. Drive the implementation and enhancement of Security Operations capabilities, including SOC, SIEM, detection and response, vulnerability management and incident response. Manage the transition of new security capabilities into live operational services. Work closely with security architects and technical teams to ensure delivery aligns with security strategy and architecture. Manage dependencies across internal teams, clients, technology vendors and third-party suppliers. Own programme risks, issues, assumptions and dependencies, ensuring appropriate escalation and resolution. Manage programme budgets, resources, forecasts and commercial commitments. What Our Client Is Looking For Programme & Security Operations Experience Significant experience leading complex Cyber Security programmes within enterprise environments. Strong understanding of Security Operations and the delivery of operational cyber capabilities. Experience delivering programmes involving areas such as SOC, SIEM, incident response, threat detection, vulnerability management, security tooling or security service transformation. Proven experience transitioning security capabilities from project delivery into BAU operations. Strong programme governance, planning, financial management and risk management capability. Experience managing multiple workstreams, technical dependencies and third-party suppliers. Good understanding of cloud, infrastructure, networking, identity and security technologies. Experience working with managed security service providers and technology vendors would be advantageous. Our client is looking for someone who can combine strategic programme leadership with a practical understanding of Cyber Security and Security Operations, ensuring complex security initiatives translate into effective, sustainable operational capabilities. If you are interested in the above, hit the Apply now button! Programme Manager, Programme Management, Security Operations, Programme Manager, Cyber, Programme Manager, Security, Programme Manager, Programme Manager Circle Recruitment is acting as an Employment Agency in relation to this vacancy. Earn yourself a referral bonus if you refer somebody else who fills the role! We also offer an iPad if you refer a new client to us and we recruit for them. Follow us on Facebook - Circle Recruitment , Twitter and LinkedIn - Circle Recruitment.
Anson McCade
Operational Cyber Software Engineer
Anson McCade City, London
Operational Cyber Software Engineer Locations: Gloucester, Manchester or London (Onsite) Employment Type: Full-time or Part-time About the Role We're looking for experienced Software Engineers to join a specialist cyber team delivering high-assurance software for complex security challenges click apply for full job details
Aug 24, 2026
Full time
Operational Cyber Software Engineer Locations: Gloucester, Manchester or London (Onsite) Employment Type: Full-time or Part-time About the Role We're looking for experienced Software Engineers to join a specialist cyber team delivering high-assurance software for complex security challenges click apply for full job details
Morson Edge
Cyber Security Engineer
Morson Edge
Your Role: As a Cyber Security Specialist, you will work within a multi-disciplinary security team delivering a broad range of services, including threat detection and response, vulnerability scanning, dark web monitoring, social engineering assessments, and security reporting. You will act as a technical escalation point for complex security incidents, leading containment and remediation activitie click apply for full job details
Aug 24, 2026
Full time
Your Role: As a Cyber Security Specialist, you will work within a multi-disciplinary security team delivering a broad range of services, including threat detection and response, vulnerability scanning, dark web monitoring, social engineering assessments, and security reporting. You will act as a technical escalation point for complex security incidents, leading containment and remediation activitie click apply for full job details
Comtecs Ltd
Cyber Security Engineer - MS Sentinel, Defender, SSO, PKI, SC-100/200, CISSP
Comtecs Ltd
IT Cyber Security Specialist / Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team, supporting and continually improving cybersecurity across a global IT environment. Reporting to the Infrastructure Engineering Manager, you'll take ownership of cybersecurity controls and security architecture while working closely with Infrastructure Operations and other technology teams to identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across a complex infrastructure environment, identifying and mitigating security risks, supporting major cyber incidents and contributing to strategic security and infrastructure projects. You'll also help develop security awareness, business continuity capabilities and ongoing improvements to the firm's security controls. Key Responsibilities: Continuously review and improve the firm's cybersecurity posture from an infrastructure perspective and external security rating. Identify, assess and remediate vulnerabilities across hardware, software and infrastructure (Windows Server and Azure Cloud). Monitor emerging threats and lead or support Incident Response investigations and mitigation. Evaluate, test and recommend security enhancements, controls and threat prevention technologies. Identify security risks and exposures and develop measures to prevent future incidents. Lead CE+ accreditation and support security, risk and data protection requirements from a technical (Not GRC) perspective. Participate in and lead infrastructure lifecycle, security and technology projects. Provide 3rd Line / Major Incident support as a cybersecurity subject matter expert. Work with third-party suppliers and advise internal technical teams on security measures to resolve security and infrastructure issues. We're looking for experienced Cyber Security engineer with strong technical infrastructure knowledge and proven experience across incident response, threat monitoring and vulnerability management. You will possess: Extensive experience in a similar role blending Cyber Security with core Wintel Infrastructure and Azure cloud engineering. Strong knowledge of modern security architecture, threat prevention techniques and incident response. Strong Windows Server 2016/2019/2022 knowledge including Active Directory, DNS, DHCP, Intune, Group Policy, PKI, Entra and Azure SSO. Demonstrable experience across Cyber Security, Incident Response, Threat Monitoring and Vulnerability Management using tools such as MS Sentinel, MS Defender etc for threat hunting, vulnerability monitoring and security posture improvement. CISSP, CEH, CCNA Security, SC-100, SC200 or equivalent security certification. Experience designing, integrating and managing complex infrastructure and cloud solutions from a cyber security standpoint and advising technical infrastructure teams on security focussed designs and operations Strong communication skills with the ability to explain complex security issues to technical and non-technical audiences. Experience working with third-party providers across on-premise and cloud services. Strong planning skills and knowledge of ITIL processes and best practice. This is an excellent opportunity to join a highly regarded global organisation where you'll play a key role in strengthening cybersecurity across a complex international IT environment, combining hands-on security engineering, incident response and strategic infrastructure projects.
Aug 24, 2026
Full time
IT Cyber Security Specialist / Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team, supporting and continually improving cybersecurity across a global IT environment. Reporting to the Infrastructure Engineering Manager, you'll take ownership of cybersecurity controls and security architecture while working closely with Infrastructure Operations and other technology teams to identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across a complex infrastructure environment, identifying and mitigating security risks, supporting major cyber incidents and contributing to strategic security and infrastructure projects. You'll also help develop security awareness, business continuity capabilities and ongoing improvements to the firm's security controls. Key Responsibilities: Continuously review and improve the firm's cybersecurity posture from an infrastructure perspective and external security rating. Identify, assess and remediate vulnerabilities across hardware, software and infrastructure (Windows Server and Azure Cloud). Monitor emerging threats and lead or support Incident Response investigations and mitigation. Evaluate, test and recommend security enhancements, controls and threat prevention technologies. Identify security risks and exposures and develop measures to prevent future incidents. Lead CE+ accreditation and support security, risk and data protection requirements from a technical (Not GRC) perspective. Participate in and lead infrastructure lifecycle, security and technology projects. Provide 3rd Line / Major Incident support as a cybersecurity subject matter expert. Work with third-party suppliers and advise internal technical teams on security measures to resolve security and infrastructure issues. We're looking for experienced Cyber Security engineer with strong technical infrastructure knowledge and proven experience across incident response, threat monitoring and vulnerability management. You will possess: Extensive experience in a similar role blending Cyber Security with core Wintel Infrastructure and Azure cloud engineering. Strong knowledge of modern security architecture, threat prevention techniques and incident response. Strong Windows Server 2016/2019/2022 knowledge including Active Directory, DNS, DHCP, Intune, Group Policy, PKI, Entra and Azure SSO. Demonstrable experience across Cyber Security, Incident Response, Threat Monitoring and Vulnerability Management using tools such as MS Sentinel, MS Defender etc for threat hunting, vulnerability monitoring and security posture improvement. CISSP, CEH, CCNA Security, SC-100, SC200 or equivalent security certification. Experience designing, integrating and managing complex infrastructure and cloud solutions from a cyber security standpoint and advising technical infrastructure teams on security focussed designs and operations Strong communication skills with the ability to explain complex security issues to technical and non-technical audiences. Experience working with third-party providers across on-premise and cloud services. Strong planning skills and knowledge of ITIL processes and best practice. This is an excellent opportunity to join a highly regarded global organisation where you'll play a key role in strengthening cybersecurity across a complex international IT environment, combining hands-on security engineering, incident response and strategic infrastructure projects.
Security Cyber Risk and Compliance Specialist
Hackajob Ltd Farnborough, Hampshire
hackajob is partnering directly with DXC Technology to hire for this role. Job Description: DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates click apply for full job details
Aug 24, 2026
Full time
hackajob is partnering directly with DXC Technology to hire for this role. Job Description: DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates click apply for full job details
Big Red Recruitment
Penetration Tester
Big Red Recruitment
We are seeking a Penetration Tester to join a growing Offensive Security team within a specialist cyber security consultancy. This is an exciting opportunity to join at a time of significant investment and growth, helping to strengthen existing testing services while contributing to the development of new capabilities across areas such as Red Teaming, Operational Technology (OT), Threat-Led Security Testing and emerging technologies. The successful candidate will play a key role in delivering penetration testing engagements, supporting process improvement initiatives, and helping to build a scalable and mature testing function. This position offers excellent opportunities for professional development, certification support and future progression into senior or leadership positions. JOB ROLE - PENETRATION TESTER LOCATION - LONDON (OCCASIONAL ON-SITE WORK) SALARY - £40,000-£45,000 + BENEFITS Key Responsibilities Conduct vulnerability assessments and penetration testing engagements across: Internal infrastructure External infrastructure Web applications Networks and systems Perform configuration and build reviews using recognised security frameworks and benchmarks. Produce clear, concise and actionable technical reports detailing findings, risk ratings and remediation recommendations. Utilise industry-standard security testing tools including Burp Suite, Nessus, Metasploit, Nmap, Wireshark and related technologies. Work directly with clients and stakeholders, presenting findings and providing remediation guidance where required. Support the continuous improvement of testing methodologies, processes and documentation. Assist in creating and maintaining standard operating procedures, testing guides and knowledge-sharing materials. Collaborate with wider cyber security teams to support service development and research initiatives. Contribute to research and development activities across new security testing disciplines and technologies. Participate in occasional out-of-hours and on-site engagements where client requirements dictate. Required Skills & Experience Minimum 2 years' experience in penetration testing, vulnerability assessment or offensive security. Experience conducting: Internal and external infrastructure testing Web application security testing Security assessments and audits Vulnerability identification and validation Strong understanding of networking concepts, protocols, routing and firewall technologies. Experience working with Windows, Linux and macOS environments. Familiarity with security assessment tools such as: Burp Suite Nessus Metasploit Nmap Wireshark Experience producing high-quality technical reports and client-facing documentation. Excellent communication and stakeholder management skills. Strong organisational skills and ability to manage workload independently. Comfortable working in a consultancy or client-facing environment. Eligible to obtain UK Security Clearance. Desirable Skills & Certifications CREST CRT, CPSA, CCT or equivalent certification. OSCP or similar offensive security qualification. Cyber Scheme accreditation. CHECK Team Member status.
Aug 24, 2026
Full time
We are seeking a Penetration Tester to join a growing Offensive Security team within a specialist cyber security consultancy. This is an exciting opportunity to join at a time of significant investment and growth, helping to strengthen existing testing services while contributing to the development of new capabilities across areas such as Red Teaming, Operational Technology (OT), Threat-Led Security Testing and emerging technologies. The successful candidate will play a key role in delivering penetration testing engagements, supporting process improvement initiatives, and helping to build a scalable and mature testing function. This position offers excellent opportunities for professional development, certification support and future progression into senior or leadership positions. JOB ROLE - PENETRATION TESTER LOCATION - LONDON (OCCASIONAL ON-SITE WORK) SALARY - £40,000-£45,000 + BENEFITS Key Responsibilities Conduct vulnerability assessments and penetration testing engagements across: Internal infrastructure External infrastructure Web applications Networks and systems Perform configuration and build reviews using recognised security frameworks and benchmarks. Produce clear, concise and actionable technical reports detailing findings, risk ratings and remediation recommendations. Utilise industry-standard security testing tools including Burp Suite, Nessus, Metasploit, Nmap, Wireshark and related technologies. Work directly with clients and stakeholders, presenting findings and providing remediation guidance where required. Support the continuous improvement of testing methodologies, processes and documentation. Assist in creating and maintaining standard operating procedures, testing guides and knowledge-sharing materials. Collaborate with wider cyber security teams to support service development and research initiatives. Contribute to research and development activities across new security testing disciplines and technologies. Participate in occasional out-of-hours and on-site engagements where client requirements dictate. Required Skills & Experience Minimum 2 years' experience in penetration testing, vulnerability assessment or offensive security. Experience conducting: Internal and external infrastructure testing Web application security testing Security assessments and audits Vulnerability identification and validation Strong understanding of networking concepts, protocols, routing and firewall technologies. Experience working with Windows, Linux and macOS environments. Familiarity with security assessment tools such as: Burp Suite Nessus Metasploit Nmap Wireshark Experience producing high-quality technical reports and client-facing documentation. Excellent communication and stakeholder management skills. Strong organisational skills and ability to manage workload independently. Comfortable working in a consultancy or client-facing environment. Eligible to obtain UK Security Clearance. Desirable Skills & Certifications CREST CRT, CPSA, CCT or equivalent certification. OSCP or similar offensive security qualification. Cyber Scheme accreditation. CHECK Team Member status.
Cyber Security Technical Consultant
Different Technologies Pty Ltd. Cheltenham, Gloucestershire
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Aug 24, 2026
Full time
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Yolk Recruitment Ltd
IT Project Manager - Cyber Security
Yolk Recruitment Ltd Cardiff, South Glamorgan
IT Project Manager - Cyber Security Cardiff Up to £71,500 + excellent benefits Want to take ownership of high-profile technology and cyber security projects where the work you deliver genuinely matters? We're looking for an experienced IT Project Manager to join a major, multi-year cyber security and technology transformation programme within a highly regulated environment. You'll be trusted to lead complex projects from initial concept through to delivery, working with senior stakeholders, technical teams and specialist third-party suppliers. This is an opportunity to get involved in business-critical change with plenty of visibility, ownership and variety. What you'll be doing You'll take responsibility for projects across the full lifecycle, including: Leading complex IT and cyber security projects from definition through to successful delivery Building project plans, milestones and deliverables and keeping delivery firmly on track Managing budgets, risks, issues, dependencies and governance Working closely with senior sponsors and stakeholders across the organisation Managing third-party suppliers and outsourced delivery partners Running multiple projects and workstreams simultaneously Driving change adoption, training and transition into BAU Providing clear, concise reporting on project progress and performance What we're looking for You'll already have a strong track record of delivering complex IT projects and be comfortable operating in an environment where stakeholder management and successful delivery are equally important. You'll ideally bring: Extensive end-to-end IT project management experience Experience working within a complex, regulated environment Excellent stakeholder management and influencing skills Strong supplier, vendor and commercial management experience Experience owning project budgets and financial performance A PRINCE2 or PMP practitioner-level qualification Degree-level education or equivalent Experience within cyber security, cyber resilience, utilities or Critical National Infrastructure would make you particularly well suited to the role, while ITIL experience would also be beneficial. Why consider it? This isn't a role where you'll simply maintain project plans and produce status reports. You'll be joining a significant programme of technology and cyber security change, taking ownership of projects that have real operational importance and working across a complex organisation with senior-level exposure. If you're an experienced IT Project Manager looking for greater exposure to cyber security, critical infrastructure and large-scale transformation , we'd be keen to hear from you.
Aug 24, 2026
Full time
IT Project Manager - Cyber Security Cardiff Up to £71,500 + excellent benefits Want to take ownership of high-profile technology and cyber security projects where the work you deliver genuinely matters? We're looking for an experienced IT Project Manager to join a major, multi-year cyber security and technology transformation programme within a highly regulated environment. You'll be trusted to lead complex projects from initial concept through to delivery, working with senior stakeholders, technical teams and specialist third-party suppliers. This is an opportunity to get involved in business-critical change with plenty of visibility, ownership and variety. What you'll be doing You'll take responsibility for projects across the full lifecycle, including: Leading complex IT and cyber security projects from definition through to successful delivery Building project plans, milestones and deliverables and keeping delivery firmly on track Managing budgets, risks, issues, dependencies and governance Working closely with senior sponsors and stakeholders across the organisation Managing third-party suppliers and outsourced delivery partners Running multiple projects and workstreams simultaneously Driving change adoption, training and transition into BAU Providing clear, concise reporting on project progress and performance What we're looking for You'll already have a strong track record of delivering complex IT projects and be comfortable operating in an environment where stakeholder management and successful delivery are equally important. You'll ideally bring: Extensive end-to-end IT project management experience Experience working within a complex, regulated environment Excellent stakeholder management and influencing skills Strong supplier, vendor and commercial management experience Experience owning project budgets and financial performance A PRINCE2 or PMP practitioner-level qualification Degree-level education or equivalent Experience within cyber security, cyber resilience, utilities or Critical National Infrastructure would make you particularly well suited to the role, while ITIL experience would also be beneficial. Why consider it? This isn't a role where you'll simply maintain project plans and produce status reports. You'll be joining a significant programme of technology and cyber security change, taking ownership of projects that have real operational importance and working across a complex organisation with senior-level exposure. If you're an experienced IT Project Manager looking for greater exposure to cyber security, critical infrastructure and large-scale transformation , we'd be keen to hear from you.
ARM
Infrastructure, Cloud & Cyber Lead
ARM City, London
Infrastructure, Cloud & Cyber Lead - Principal / Director level 3 Months London/Hybrid - 1-2 Days per week on site (Apply online only) per day (Inside IR35) Proven infrastructure separation, consolidation or M&A integration experience. Infrastructure and hosting strategy. Azure/AWS/GCP architecture and migration. Microsoft 365, identity, workplace and network integration. Day 1 readiness and managed-service transition. Strong cybersecurity experience would be highly advantageous For the role, M&A experience is particularly important. We need senior individuals who can operate credibly with executives, advisors and PE stakeholders, facilitate architecture decisions, and move quickly from incomplete diligence information to pragmatic designs and executable plans. Facilities management, building services or field-services experience would be beneficial, but seniority, M&A integration experience and architecture leadership are more important than sector-specific experience. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Aug 24, 2026
Contractor
Infrastructure, Cloud & Cyber Lead - Principal / Director level 3 Months London/Hybrid - 1-2 Days per week on site (Apply online only) per day (Inside IR35) Proven infrastructure separation, consolidation or M&A integration experience. Infrastructure and hosting strategy. Azure/AWS/GCP architecture and migration. Microsoft 365, identity, workplace and network integration. Day 1 readiness and managed-service transition. Strong cybersecurity experience would be highly advantageous For the role, M&A experience is particularly important. We need senior individuals who can operate credibly with executives, advisors and PE stakeholders, facilitate architecture decisions, and move quickly from incomplete diligence information to pragmatic designs and executable plans. Facilities management, building services or field-services experience would be beneficial, but seniority, M&A integration experience and architecture leadership are more important than sector-specific experience. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Senior Solution Architect - Email & Collaboration Security
Mimecast
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
Aug 24, 2026
Full time
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
UKCSC Principal or Chartered Professional - Governance and Risk
Jackalope Digital LLC
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement. Please provide: Your CV and LinkedIn profile. Your UK Cyber Security Council registration: specialism, level (Principal or Chartered) and your registration number or public UKCSC profile link. Your location, availability and expected day rate. One example of a difficult enterprise cyber-risk decision you personally led. Details of any relevant Cyber Essentials, IASME, ISO 27001 or risk qualifications.
Aug 24, 2026
Full time
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement. Please provide: Your CV and LinkedIn profile. Your UK Cyber Security Council registration: specialism, level (Principal or Chartered) and your registration number or public UKCSC profile link. Your location, availability and expected day rate. One example of a difficult enterprise cyber-risk decision you personally led. Details of any relevant Cyber Essentials, IASME, ISO 27001 or risk qualifications.
UKCSC Principal or Chartered Professional - Governance and Risk
Cybermindspace
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement.
Aug 24, 2026
Full time
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement.
Mobilus Ltd
Infrastructure & Security Engineer
Mobilus Ltd
We are delighted to be working in partnership with one of the UK's leading retail businesses, home to well-known high-street brands and employing over 6,000 people, across a growing estate of over 275 locations. They have a lean, high-trust technology team internally, supporting a modern infrastructure (Microsoft 365, Intune, Meraki, Arctic Wolf SOC, Abnormal Security) and are now looking to onboard an Infrastructure and Security Engineer. In this unique and broad role, you will play a part in a team responsible for infrastructure and endpoints, security operations, identity and email security and automation & patch management. The role involves a degree of mentorship of first-line engineers and engagement with security specialists to evaluate and introduce new platforms. As well as more complex areas of Infrastructure, key areas of responsibility in your first 12 months will include: Security Posture: Mature the CIS Framework alignment and be a key technical driver in the cyber security roadmap SOC Relationship: Design playbooks and tune detection with Arctic Wolf's Concierge Team Compliance: PCI-DSS audit cycle running smoothly; IR and DR plans tested and current The ideal candidate will have strong experience of Infrastructure and Network connectivity, along with experience in a Microsoft environment including 365, Entra ID and SharePoint. They will understand IT compliance audit processes such as PCI-DSS, as well as some hands-on cyber security experience. The role will offer plenty of autonomy and ownership over the cyber security roadmap and so would appeal to a candidate in a combined role, who wishes to expand their cyber security knowledge and progress their career in this area. If you're at a point in your career where you want to move beyond being one voice in a large team and shape the security posture of a whole organisation, please apply and we would love to hear from you!
Aug 24, 2026
Full time
We are delighted to be working in partnership with one of the UK's leading retail businesses, home to well-known high-street brands and employing over 6,000 people, across a growing estate of over 275 locations. They have a lean, high-trust technology team internally, supporting a modern infrastructure (Microsoft 365, Intune, Meraki, Arctic Wolf SOC, Abnormal Security) and are now looking to onboard an Infrastructure and Security Engineer. In this unique and broad role, you will play a part in a team responsible for infrastructure and endpoints, security operations, identity and email security and automation & patch management. The role involves a degree of mentorship of first-line engineers and engagement with security specialists to evaluate and introduce new platforms. As well as more complex areas of Infrastructure, key areas of responsibility in your first 12 months will include: Security Posture: Mature the CIS Framework alignment and be a key technical driver in the cyber security roadmap SOC Relationship: Design playbooks and tune detection with Arctic Wolf's Concierge Team Compliance: PCI-DSS audit cycle running smoothly; IR and DR plans tested and current The ideal candidate will have strong experience of Infrastructure and Network connectivity, along with experience in a Microsoft environment including 365, Entra ID and SharePoint. They will understand IT compliance audit processes such as PCI-DSS, as well as some hands-on cyber security experience. The role will offer plenty of autonomy and ownership over the cyber security roadmap and so would appeal to a candidate in a combined role, who wishes to expand their cyber security knowledge and progress their career in this area. If you're at a point in your career where you want to move beyond being one voice in a large team and shape the security posture of a whole organisation, please apply and we would love to hear from you!
Armstrong Lloyd
Social Media Manager
Armstrong Lloyd
SOCIAL MEDIA MANAGER - CYBERSECURITY / B2B SAAS Our client is a category-defining cybersecurity education platform with a rapidly growing global community of over 7 million members. They're looking for a Social Media Manager to own how the brand shows up across social, from LinkedIn to Instagram, X, Facebook, YouTube and TikTok. This is an end-to-end ownership role covering channels, content, community and results. You'll set the direction for the social presence, create platform-native content that resonates with a technical audience, and lead the social side of major product launches and campaigns. Location: 100% Remote Salary: £40,000 - £60,000 depending on experience AS SOCIAL MEDIA MANAGER YOUR RESPONSIBILITIES WILL INCLUDE: Develop and execute the end-to-end social media strategy across LinkedIn, Instagram, X, TikTok, Facebook and YouTube, setting channel-level KPIs and growth targets Own the YouTube strategy, briefing creators and managing production from concept to publish Create engaging, platform-native content and uphold brand voice, tone and visual consistency across every post Own social support for GTM launches and campaigns, partnering closely with Content and Product teams Run analytics and social listening to measure performance and shape strategy, presenting insights and recommendations THE IDEAL SOCIAL MEDIA MANAGER WILL HAVE: Proven experience owning social media strategy and execution across multiple channels, ideally in tech, SaaS, gaming or cybersecurity Strong data fluency, setting targets and letting performance shape strategy Creative flair with the ability to spot trends early and turn them into content that lands Self-directed approach with high ownership and a fast-moving mindset Understanding of the cyber/tech space, able to communicate technical topics to technical and non-technical audiences alike Experience running YouTube channels, supporting GTM launches, or managing co-marketing partnerships is a bonus WHY JOIN THIS BUSINESS AS THEIR SOCIAL MEDIA MANAGER? Own the social presence of a category-defining cybersecurity brand with a fast-growing global community Lead GTM launches and creative campaigns with real visibility and impact 100% remote working with flexible hours Comprehensive benefits including health insurance, enhanced parental leave, pension contributions and self learning budget Our client is an equal opportunities employer and welcomes applications from all backgrounds. Every application is reviewed by a real person, not a filter. Armstrong Lloyd is a marketing specialist recruitment services provider. We specialise in the B2B SaaS space and have a variety of similar jobs available. We offer a personal service that will give you the best possible outcome in the recruitment process.
Aug 24, 2026
Full time
SOCIAL MEDIA MANAGER - CYBERSECURITY / B2B SAAS Our client is a category-defining cybersecurity education platform with a rapidly growing global community of over 7 million members. They're looking for a Social Media Manager to own how the brand shows up across social, from LinkedIn to Instagram, X, Facebook, YouTube and TikTok. This is an end-to-end ownership role covering channels, content, community and results. You'll set the direction for the social presence, create platform-native content that resonates with a technical audience, and lead the social side of major product launches and campaigns. Location: 100% Remote Salary: £40,000 - £60,000 depending on experience AS SOCIAL MEDIA MANAGER YOUR RESPONSIBILITIES WILL INCLUDE: Develop and execute the end-to-end social media strategy across LinkedIn, Instagram, X, TikTok, Facebook and YouTube, setting channel-level KPIs and growth targets Own the YouTube strategy, briefing creators and managing production from concept to publish Create engaging, platform-native content and uphold brand voice, tone and visual consistency across every post Own social support for GTM launches and campaigns, partnering closely with Content and Product teams Run analytics and social listening to measure performance and shape strategy, presenting insights and recommendations THE IDEAL SOCIAL MEDIA MANAGER WILL HAVE: Proven experience owning social media strategy and execution across multiple channels, ideally in tech, SaaS, gaming or cybersecurity Strong data fluency, setting targets and letting performance shape strategy Creative flair with the ability to spot trends early and turn them into content that lands Self-directed approach with high ownership and a fast-moving mindset Understanding of the cyber/tech space, able to communicate technical topics to technical and non-technical audiences alike Experience running YouTube channels, supporting GTM launches, or managing co-marketing partnerships is a bonus WHY JOIN THIS BUSINESS AS THEIR SOCIAL MEDIA MANAGER? Own the social presence of a category-defining cybersecurity brand with a fast-growing global community Lead GTM launches and creative campaigns with real visibility and impact 100% remote working with flexible hours Comprehensive benefits including health insurance, enhanced parental leave, pension contributions and self learning budget Our client is an equal opportunities employer and welcomes applications from all backgrounds. Every application is reviewed by a real person, not a filter. Armstrong Lloyd is a marketing specialist recruitment services provider. We specialise in the B2B SaaS space and have a variety of similar jobs available. We offer a personal service that will give you the best possible outcome in the recruitment process.
Security Cyber Risk & Compliance Specialist (DV Cleared) - Farnborough
DXC Farnborough, Hampshire
Job Description DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone click apply for full job details
Aug 24, 2026
Full time
Job Description DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone click apply for full job details
HMRC
Case Manager (Targeted Interception)
HMRC Manchester, Lancashire
About the job Job summary Discover what it's like to work in a compliance role that makes an impact. Could you help us shape a stronger, fairer future? Your next career move starts here. HMRC's Fraud Investigation Service (FIS) is responsible for the department's civil and criminal investigations. Covert Operations, Digital Exploitation (CODE) sits within FIS. Working across Law Enforcement and government, CODE provides investigative tools and covert techniques to front-line investigations and works with key partners to develop and provide access to new technology and systems to enable investigators to respond to serious and complex tax evasion and crime. This is a business-critical role supporting FIS and Risk Intelligence Services (RIS) Operations. HMRC's Sensitive Collection capability provides both FIS and RIS operational investigation and intelligence officers with interdiction and evidential gathering opportunities gained through the lawful interception of criminals' communications. It also provides an unparalleled insight into criminal intent and behaviour, which is used to drive tactical operational activity and inform HMRC's Serious Fraud and Tactical Priorities. HMRC's Sensitive Collection mission sits within CODE and is responsible for the Targeted Interception (TI) of communications relating to HMRC's most serious and organised crime operations, working closely with other Law Enforcement Agencies (LEAs) and other key internal and external partners to tackle emerging threats and develop new capabilities and methodologies to investigate the most serious and organised crime. HMRC Sensitive Collection operates at the very front end of covert and sensitive collection of criminal communications, working within the Investigatory Powers Act 2016 legislation. Job description Would you enjoy working in an innovative, exciting and interesting, covert and sensitive area of work where individual contributions have real time outcomes? Are you a self-motivated team player, excellent at problem solving, capable of making timely decisions and reacting quickly to changing priorities? Does working within covert operations using the most intrusive tactics and technically advanced capabilities interest you? If so, this might be the role for you! Sensitive Collection is an extremely dynamic, demanding and highly sensitive work area and you will be expected to react quickly to changing priorities and work flexibly. The role of the Case Manager involves operational delivery to tackle serious organised crime and mitigate risk in a challenging environment. Case Managers play an integral and leading role in the fight against serious organised crime. You will work to exploit all relevant information from the interception of communications to produce actionable and timely intelligence so that HMRC can continue to disrupt organised criminals who pose the greatest risk to the United Kingdom. Whether it is identifying and disseminating timely intelligence around smuggled cigarettes, alcohol, cash or identifying the activities of an Organised Crime Group, Professional Money Launderer, or an opportunity to identify a person of significant interest; the input of Case Managers ensures that when HMRC operational or intelligence teams deploy, they achieve the greatest impact and value in support of HMRC Serious Organised Criminal investigations. You can expect a varied and fulfilling career within this business area, with no two days ever being quite the same. Your work will frequently be crucial in obtaining impressive results that often make the headlines and your role will be integral in the disruption of serious and organised crime in the United Kingdom and beyond. Person specification The responsibilities of Case Managers will include but are not restricted to: Defining, leading, and developing the Sensitive Collection strategy in response to operational and tactical requirements. Proactively leading the development of the Targeted Intercept operation. Assessing, analysing, managing, progressing, and disseminating live and critical TI product while directing operational teams where appropriate. Ongoing management of threat and risks related to collected intelligence. Leading, delegating, and working closely with other teams in Sensitive Collection within an analysis cell. Liaising and engaging with a range of internal and external stakeholders including Covert Operations Management Unit, Digital Forensics, Cyber and Law Enforcement Partners including the UK Intelligence Community where necessary to support the progression of the case strategy. Drafting warrants and other documentation to a professional standard. Providing support to colleagues and new entrants in support of their training and professional development. Additionally, it would be desirable if applicants have: Sound management skills; Possess high levels of self-motivation; Good interpersonal skills to work effectively with cross government colleagues; Good verbal and written communication skills; A demonstrable knowledge and practical application in the use of material relating to, or associated to, communications data across a breadth of communications methods. Essential Criteria: BTEC Level 3 Advanced Diploma in Enforcement (Criminal Investigation/Investigation) BTEC level 3 Advanced Diploma in Enforcement (Intelligence) BTEC level 4 in Counter Fraud Intelligence Specialist Level 4 Diploma - Accredited Counter-Fraud Manager Level 4 Diploma - Accredited Counter-Fraud Specialist/Officer University of Portsmouth CFPAB Accredited Counter Fraud Specialist University of Northumbria CFPAB Accredited Counter Fraud Specialist University of Portsmouth CFPAB Accredited Counter Fraud (Intelligence) Specialist (RIS) University of Northumbria CFPAB Accredited Counter Fraud (Intelligence) Specialist (RIS) PIP2 qualification, where candidates have completed the HMRC FIS/RIS associated Foundation training programme (see OSAN 375), and passed the relevant training assessment period. Current PIP2 Status - You must hold a current and active PIP2 (Investigator) accreditation issued by a recognised UK law enforcement body (e.g. the College of Policing or NCA). If your accreditation is inactive, it must not have lapsed more than 24 months prior to your application, and you must be able to demonstrate relevant operational experience in managing or conducting serious and complex investigations. Successful candidates with PIP2 status, will still be required to complete HMRC's core learning programme and achieve Authorised Officer status through further classroom and practical training which will involve regular travel. Additionally, applicants must have: Experience and knowledge of progressing an investigation by analysing multiple sources of data to come to an informed decision. Additional Information - PIP2 PIP2 Applicants applying from other Government departments must be willing to attend and pass the Accelerated Pathway Training course to obtain the Accredited Counter Fraud Specialist qualification. The Accelerated Pathway is an intensive 4-week residential training course. Prior to the course, you will be given a workbook and guided learning. The course involves a day-one test and an assessed final exercise (FINEX). The Accelerated Pathway is a pass/fail programme. Where an individual does not successfully complete the pathway, HMRC will explore appropriate alternative options, which may include alternative duties or consideration under probation arrangements, depending on individual circumstances. Additional Security Information This role requires the successful candidates to hold or be willing to hold Developed vetting (DV) Clearance and enhanced checks. CODE have a support network that can offer assistance to colleagues throughout the DV process. CODE understands the experience of obtaining DV clearance affects individuals differently with the process being in depth and intrusive. The network consists of CODE DV cleared volunteers who will be able to guide you through the process and systems and look to alleviate any concerns. Psychological Resilience Assessment Successful applicants must be prepared to undertake a Psychological Resilience Assessment, consisting of an online personality and cognitive ability psychometric test and a face-to-face psychological interview with a qualified psychological practitioner. These are an integral aspect of the assessment process and are designed to ascertain suitability and assess psychological resilience to meet the requirements of this demanding role. If successful in being appointed, you will be required to attend and engage fully in annual psychological well-being and resilience support. Training Authorised Officer Course is required. All appointments will be subject to the successful completion of a pass or fail six-month training assessment period (TAP). FIS CODE (Sensitive Collection) will invest in you by providing a bespoke Fundamentals training course consisting of a mixture of online and classroom-based training that will take place in London, Manchester and Kent with the remaining time spent training in post with an allocated mentor. This training is unique to SC and will be supported by experienced managers . click apply for full job details
Aug 24, 2026
Full time
About the job Job summary Discover what it's like to work in a compliance role that makes an impact. Could you help us shape a stronger, fairer future? Your next career move starts here. HMRC's Fraud Investigation Service (FIS) is responsible for the department's civil and criminal investigations. Covert Operations, Digital Exploitation (CODE) sits within FIS. Working across Law Enforcement and government, CODE provides investigative tools and covert techniques to front-line investigations and works with key partners to develop and provide access to new technology and systems to enable investigators to respond to serious and complex tax evasion and crime. This is a business-critical role supporting FIS and Risk Intelligence Services (RIS) Operations. HMRC's Sensitive Collection capability provides both FIS and RIS operational investigation and intelligence officers with interdiction and evidential gathering opportunities gained through the lawful interception of criminals' communications. It also provides an unparalleled insight into criminal intent and behaviour, which is used to drive tactical operational activity and inform HMRC's Serious Fraud and Tactical Priorities. HMRC's Sensitive Collection mission sits within CODE and is responsible for the Targeted Interception (TI) of communications relating to HMRC's most serious and organised crime operations, working closely with other Law Enforcement Agencies (LEAs) and other key internal and external partners to tackle emerging threats and develop new capabilities and methodologies to investigate the most serious and organised crime. HMRC Sensitive Collection operates at the very front end of covert and sensitive collection of criminal communications, working within the Investigatory Powers Act 2016 legislation. Job description Would you enjoy working in an innovative, exciting and interesting, covert and sensitive area of work where individual contributions have real time outcomes? Are you a self-motivated team player, excellent at problem solving, capable of making timely decisions and reacting quickly to changing priorities? Does working within covert operations using the most intrusive tactics and technically advanced capabilities interest you? If so, this might be the role for you! Sensitive Collection is an extremely dynamic, demanding and highly sensitive work area and you will be expected to react quickly to changing priorities and work flexibly. The role of the Case Manager involves operational delivery to tackle serious organised crime and mitigate risk in a challenging environment. Case Managers play an integral and leading role in the fight against serious organised crime. You will work to exploit all relevant information from the interception of communications to produce actionable and timely intelligence so that HMRC can continue to disrupt organised criminals who pose the greatest risk to the United Kingdom. Whether it is identifying and disseminating timely intelligence around smuggled cigarettes, alcohol, cash or identifying the activities of an Organised Crime Group, Professional Money Launderer, or an opportunity to identify a person of significant interest; the input of Case Managers ensures that when HMRC operational or intelligence teams deploy, they achieve the greatest impact and value in support of HMRC Serious Organised Criminal investigations. You can expect a varied and fulfilling career within this business area, with no two days ever being quite the same. Your work will frequently be crucial in obtaining impressive results that often make the headlines and your role will be integral in the disruption of serious and organised crime in the United Kingdom and beyond. Person specification The responsibilities of Case Managers will include but are not restricted to: Defining, leading, and developing the Sensitive Collection strategy in response to operational and tactical requirements. Proactively leading the development of the Targeted Intercept operation. Assessing, analysing, managing, progressing, and disseminating live and critical TI product while directing operational teams where appropriate. Ongoing management of threat and risks related to collected intelligence. Leading, delegating, and working closely with other teams in Sensitive Collection within an analysis cell. Liaising and engaging with a range of internal and external stakeholders including Covert Operations Management Unit, Digital Forensics, Cyber and Law Enforcement Partners including the UK Intelligence Community where necessary to support the progression of the case strategy. Drafting warrants and other documentation to a professional standard. Providing support to colleagues and new entrants in support of their training and professional development. Additionally, it would be desirable if applicants have: Sound management skills; Possess high levels of self-motivation; Good interpersonal skills to work effectively with cross government colleagues; Good verbal and written communication skills; A demonstrable knowledge and practical application in the use of material relating to, or associated to, communications data across a breadth of communications methods. Essential Criteria: BTEC Level 3 Advanced Diploma in Enforcement (Criminal Investigation/Investigation) BTEC level 3 Advanced Diploma in Enforcement (Intelligence) BTEC level 4 in Counter Fraud Intelligence Specialist Level 4 Diploma - Accredited Counter-Fraud Manager Level 4 Diploma - Accredited Counter-Fraud Specialist/Officer University of Portsmouth CFPAB Accredited Counter Fraud Specialist University of Northumbria CFPAB Accredited Counter Fraud Specialist University of Portsmouth CFPAB Accredited Counter Fraud (Intelligence) Specialist (RIS) University of Northumbria CFPAB Accredited Counter Fraud (Intelligence) Specialist (RIS) PIP2 qualification, where candidates have completed the HMRC FIS/RIS associated Foundation training programme (see OSAN 375), and passed the relevant training assessment period. Current PIP2 Status - You must hold a current and active PIP2 (Investigator) accreditation issued by a recognised UK law enforcement body (e.g. the College of Policing or NCA). If your accreditation is inactive, it must not have lapsed more than 24 months prior to your application, and you must be able to demonstrate relevant operational experience in managing or conducting serious and complex investigations. Successful candidates with PIP2 status, will still be required to complete HMRC's core learning programme and achieve Authorised Officer status through further classroom and practical training which will involve regular travel. Additionally, applicants must have: Experience and knowledge of progressing an investigation by analysing multiple sources of data to come to an informed decision. Additional Information - PIP2 PIP2 Applicants applying from other Government departments must be willing to attend and pass the Accelerated Pathway Training course to obtain the Accredited Counter Fraud Specialist qualification. The Accelerated Pathway is an intensive 4-week residential training course. Prior to the course, you will be given a workbook and guided learning. The course involves a day-one test and an assessed final exercise (FINEX). The Accelerated Pathway is a pass/fail programme. Where an individual does not successfully complete the pathway, HMRC will explore appropriate alternative options, which may include alternative duties or consideration under probation arrangements, depending on individual circumstances. Additional Security Information This role requires the successful candidates to hold or be willing to hold Developed vetting (DV) Clearance and enhanced checks. CODE have a support network that can offer assistance to colleagues throughout the DV process. CODE understands the experience of obtaining DV clearance affects individuals differently with the process being in depth and intrusive. The network consists of CODE DV cleared volunteers who will be able to guide you through the process and systems and look to alleviate any concerns. Psychological Resilience Assessment Successful applicants must be prepared to undertake a Psychological Resilience Assessment, consisting of an online personality and cognitive ability psychometric test and a face-to-face psychological interview with a qualified psychological practitioner. These are an integral aspect of the assessment process and are designed to ascertain suitability and assess psychological resilience to meet the requirements of this demanding role. If successful in being appointed, you will be required to attend and engage fully in annual psychological well-being and resilience support. Training Authorised Officer Course is required. All appointments will be subject to the successful completion of a pass or fail six-month training assessment period (TAP). FIS CODE (Sensitive Collection) will invest in you by providing a bespoke Fundamentals training course consisting of a mixture of online and classroom-based training that will take place in London, Manchester and Kent with the remaining time spent training in post with an allocated mentor. This training is unique to SC and will be supported by experienced managers . click apply for full job details
Government Digital & Data
Head of Cyber Security Risk Management (Digital Identity) - Government Digital Service - G6
Government Digital & Data
Location Bristol, London, Manchester About the job Job summary This role will require the post holder to have SC clearance to start and may be required to undergo Developed Vetting (DV) once in post, therefore successful candidates will be expected to either hold this or be willing to undertake the DV clearance process once in post. More information on DV clearance is linked here The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern digital government. Our priorities are to drive a modern digital government, by: joining up public sector services harnessing the power of AI for the public good strengthening and extending our digital and data public infrastructure elevating leadership and investing in talent funding for outcomes andprocuringfor growth and innovation committing to transparency and driving accountability We are home to the Incubator for Artificial Intelligence (I.AI), the world-leading GOV.UK and at the forefront of coordinating the UK's geospatial strategy and activity. We lead the Government Digital and Data function and champion the work of digital teams across government. We're part of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol. The Government Digital Service is where talent translates into impact. From your first day, you'll be working with some of the world's most highly-skilled digital professionals, all contributing their knowledge to make change on a national scale. Join us for rewarding work that makes a difference across the UK. You'll solve some of the nation's highest-priority digital challenges, helping millions of people access services they need Job description As Head of Cyber Security Risk Management for One Login and Digital Identity you will play a central role in protecting the UK's current and future digital identity ecosystem. At scale, One Login will be the front door for millions of users to access digital public services. Security, reliability and resilience are absolutely critical to delivering our mission. This is a high profile role, suited to an experienced security leader with a track record of setting direction and running security risk, governance and assurance for a complex area. As Head of Cyber Security Risk Management you will have oversight for the Digital Identity Cyber Information Assurance team, taking responsibility for the governance, risk management, compliance and 3rd party assurance. In addition, you will be responsible for: governance, risk and assurance leadership: building civil servant capability to run a mature, responsive cyber assurance team, working in collaboration with One Logins dedicated Security Operations, Security Design & Architecture, Pods (developer teams) and wider GDS and DSIT cyber teams. Work in partnership with GDS (Privacy, Information Assurance, Security Architecture, Cyber), GSG, CDIO Cyber, NCSC and other government departments governance, risk and assurance: lead design, implementation and operating of information security governance frameworks aligned to DSIT and regulatory context. Ensure the team provides independent information assurance across the One Login Programme but work closely with the GDS Infosec team for second line assurance. Build and lead the third party and supply chain assurance strategy. Maintain and innovate the current risk management board ensuring present risk positions are clearly communicated to the senior leadership team (SLT). multi tier assurance: work closely with the GDS Infosec Team to support 2nd line assurance. Build and manage an integrated governance process which has a unified risk perspective enabling both first and second line assurance to work on a common understanding of the risk posture. Drive proactive engagement across both teams to stop any siloed forming and make sure the risk development lifecycle is balanced. policy & standards: develop and maintain security policies, standards frameworks, and governance processes aligned to government and industry best practice for complex cloud-native environments assurance & remediation: drive security assurance activities across One Login programmes, suppliers, and operational services, including audits, assessments, and ensuring timely remediation within required SLOs stakeholder collaboration: build strong relationships with key stakeholders-including GDS (Privacy, Information Assurance, Security Architecture), GSG, CDIO Cyber, and NCSC-to embed security into delivery, architecture, procurement, and operational decision making compliance & frameworks: ensure all operations meet stringent UK Government security requirements by supporting regulatory and contractual compliance activities, including alignment to standards such as NIST, CAF, and GovAssure governance & reporting: establish and maintain operational metrics to produce clear, meaningful reporting and dashboards that measure the programme's threat posture and support executive decision making security culture leadership : working in close collaboration with the Head of Product Security and Head of Security Operations for One Login and the GDS CISO, take responsibility for embedding a robust security culture across the programme. Person specification We're interested in people who have experience and knowledge of most of the following: a strong track record of experience leading security governance, assurance, risk, or compliance functions, ideally for a Critical National Infrastructure (CNI) or comparable risk/profile/impact level product in-depth knowledge of government security standards, frameworks, and assurance approaches, with demonstrable success applying frameworks such as CAF, NIST 800-53, GovAssure, and Secure by Design Principles experience developing and implementing security policies and control frameworks in complex cloud-native environments and serverless architectures ability to communicate complex security concepts clearly and establish effective working relationships with key security stakeholders, including technical and non-technical specialists across organisational boundaries strong analytical, reporting, and risk management capabilities, including building governance dashboards and executive-level assurance reporting understanding of supplier assurance, vulnerability management, and experience integrating governance with security operational integration. hold recognised cyber security certifications such as CISSP, CISM, or CRISC
Aug 24, 2026
Full time
Location Bristol, London, Manchester About the job Job summary This role will require the post holder to have SC clearance to start and may be required to undergo Developed Vetting (DV) once in post, therefore successful candidates will be expected to either hold this or be willing to undertake the DV clearance process once in post. More information on DV clearance is linked here The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern digital government. Our priorities are to drive a modern digital government, by: joining up public sector services harnessing the power of AI for the public good strengthening and extending our digital and data public infrastructure elevating leadership and investing in talent funding for outcomes andprocuringfor growth and innovation committing to transparency and driving accountability We are home to the Incubator for Artificial Intelligence (I.AI), the world-leading GOV.UK and at the forefront of coordinating the UK's geospatial strategy and activity. We lead the Government Digital and Data function and champion the work of digital teams across government. We're part of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol. The Government Digital Service is where talent translates into impact. From your first day, you'll be working with some of the world's most highly-skilled digital professionals, all contributing their knowledge to make change on a national scale. Join us for rewarding work that makes a difference across the UK. You'll solve some of the nation's highest-priority digital challenges, helping millions of people access services they need Job description As Head of Cyber Security Risk Management for One Login and Digital Identity you will play a central role in protecting the UK's current and future digital identity ecosystem. At scale, One Login will be the front door for millions of users to access digital public services. Security, reliability and resilience are absolutely critical to delivering our mission. This is a high profile role, suited to an experienced security leader with a track record of setting direction and running security risk, governance and assurance for a complex area. As Head of Cyber Security Risk Management you will have oversight for the Digital Identity Cyber Information Assurance team, taking responsibility for the governance, risk management, compliance and 3rd party assurance. In addition, you will be responsible for: governance, risk and assurance leadership: building civil servant capability to run a mature, responsive cyber assurance team, working in collaboration with One Logins dedicated Security Operations, Security Design & Architecture, Pods (developer teams) and wider GDS and DSIT cyber teams. Work in partnership with GDS (Privacy, Information Assurance, Security Architecture, Cyber), GSG, CDIO Cyber, NCSC and other government departments governance, risk and assurance: lead design, implementation and operating of information security governance frameworks aligned to DSIT and regulatory context. Ensure the team provides independent information assurance across the One Login Programme but work closely with the GDS Infosec team for second line assurance. Build and lead the third party and supply chain assurance strategy. Maintain and innovate the current risk management board ensuring present risk positions are clearly communicated to the senior leadership team (SLT). multi tier assurance: work closely with the GDS Infosec Team to support 2nd line assurance. Build and manage an integrated governance process which has a unified risk perspective enabling both first and second line assurance to work on a common understanding of the risk posture. Drive proactive engagement across both teams to stop any siloed forming and make sure the risk development lifecycle is balanced. policy & standards: develop and maintain security policies, standards frameworks, and governance processes aligned to government and industry best practice for complex cloud-native environments assurance & remediation: drive security assurance activities across One Login programmes, suppliers, and operational services, including audits, assessments, and ensuring timely remediation within required SLOs stakeholder collaboration: build strong relationships with key stakeholders-including GDS (Privacy, Information Assurance, Security Architecture), GSG, CDIO Cyber, and NCSC-to embed security into delivery, architecture, procurement, and operational decision making compliance & frameworks: ensure all operations meet stringent UK Government security requirements by supporting regulatory and contractual compliance activities, including alignment to standards such as NIST, CAF, and GovAssure governance & reporting: establish and maintain operational metrics to produce clear, meaningful reporting and dashboards that measure the programme's threat posture and support executive decision making security culture leadership : working in close collaboration with the Head of Product Security and Head of Security Operations for One Login and the GDS CISO, take responsibility for embedding a robust security culture across the programme. Person specification We're interested in people who have experience and knowledge of most of the following: a strong track record of experience leading security governance, assurance, risk, or compliance functions, ideally for a Critical National Infrastructure (CNI) or comparable risk/profile/impact level product in-depth knowledge of government security standards, frameworks, and assurance approaches, with demonstrable success applying frameworks such as CAF, NIST 800-53, GovAssure, and Secure by Design Principles experience developing and implementing security policies and control frameworks in complex cloud-native environments and serverless architectures ability to communicate complex security concepts clearly and establish effective working relationships with key security stakeholders, including technical and non-technical specialists across organisational boundaries strong analytical, reporting, and risk management capabilities, including building governance dashboards and executive-level assurance reporting understanding of supplier assurance, vulnerability management, and experience integrating governance with security operational integration. hold recognised cyber security certifications such as CISSP, CISM, or CRISC
HMRC
Deputy Director, Head of AI Assurance
HMRC Manchester, Lancashire
About the job Job summary The Deputy Director, Head of AI Assurance will lead HMRC's approach to assuring the responsible, safe and effective deployment of AI across the organisation. The role will provide strategic leadership for the AI assurance function within the Chief AI Office (CAIO), ensuring that AI activity across HMRC is aligned to organisational priorities, meets clear governance and assurance expectations, and can progress at pace within appropriate guardrails. The post holder will not replace existing specialist functions such as data protection, cyber security, legal, commercial, architecture, risk or ethics. Instead, they will act as the senior alignment point for AI assurance, bringing together the right expertise at the right point in the lifecycle and ensuring that teams receive clear, proportionate and practical assurance advice. Job description Lead the development and operation of HMRC's AI assurance approach, ensuring that central, local and federated AI activity meets a consistent assurance bar. Establish clear assurance routes for AI use cases, from early idea through experimentation, deployment, scaling and live service. Provide senior oversight of AI assurance decisions, ensuring that risks, mitigations, dependencies and decisions are recorded, evidenced and traceable. Contribute to development of AI Agents to support delivery of effective assurance across the enterprise. Work with senior colleagues across HMRC to embed proportionate assurance into existing governance, delivery, security, data, commercial and change processes. Lead the AI assurance team, setting priorities, allocating work and ensuring a coherent service to delivery teams and business areas. Ensure assurance activity supports responsible acceleration rather than unnecessary delay, helping teams understand what is required to progress safely. Maintain a single view of material AI assurance issues, risks, themes and decisions, escalating where appropriate to the Chief AI Officer and relevant governance forums. Oversee the development of reusable assurance products, including checklists, evidence packs, decision templates, guidance and playbooks. Build strong working relationships with existing HMRC specialists in security, data protection, data governance, legal, ethics, commercial, architecture, risk and internal audit. Support external confidence in HMRC's use of AI by ensuring transparency, audit readiness and clear evidence of responsible redeployment. Represent HMRC in cross-government AI assurance, governance and professional communities, helping shape emerging standards, frameworks and best practice for responsible AI adoption. Person specification Experience of leading governance, assurance, risk, compliance or delivery functions in a complex organisation, with accountability for delivering effective outcomes in high-profile or sensitive environments. Experience of AI, data science, digital transformation, automation or emerging technology governance, including applying proportionate assurance approaches to innovative and fast-moving technology delivery. Strong ability to interpret complex policy, technical, ethical and risk issues, and translate them into clear, practical guidance that supports safe and effective delivery. Demonstrable ability to build effective relationships across organisational boundaries, influence senior stakeholders, and align diverse interests to achieve pragmatic decisions and outcomes. Excellent judgement and decision-making skills, including the ability to balance pace, innovation, risk, proportionality, regulatory requirements and public trust. Proven leadership and communication skills, including the ability to build and lead high-performing expert teams and to communicate complex issues clearly and succinctly to senior leaders and non-technical audiences. Benefits Alongside your salary of £86,000, HM Revenue and Customs contributes £24,914 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity A Civil Service pension with an employer contribution of 28.97% Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details For full selection process details please see attached Candidate Pack Feedback will only be provided if you attend an interview or assessment. This role has a minimum assignment duration of 3 years. An assignment duration is the period of time a Senior Civil Servant is expected to remain in the same post to enable them to deliver on the agreed key business outcomes. The assignment duration also supports your career through building your depth of expertise. As part of accepting this role you will be agreeing to the expected assignment duration set out above. This will not result in a contractual change to your terms and conditions. Please note this is an expectation only, it is not something which is written into your terms and conditions or indeed which the employing organisation or you are bound by. It will depend on your personal circumstances at a particular time and business needs, for example, would not preclude any absence like family friendly leave. It is nonetheless an important expectation, which is why we ask you to confirm you agree to the assignment duration set out above. Security Successful candidates must undergo a standard (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is counter-terrorist check (opens in a new window). See our vetting charter (opens in a new window). People working with government assets must complete baseline personnel security standard (opens in new window) checks. Nationality requirements This job is broadly open to the following groups: UK nationals nationals of the Republic of Ireland nationals of Commonwealth countries who have the right to work in the UK nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window) nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS) individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020 Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service Further information on nationality requirements (opens in a new window) Working for the Civil Service The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants. We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window). The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria. The Civil Service also offers a Redeployment Interview Scheme to civil servants who are at risk of redundancy, and who meet the minimum requirements for the advertised vacancy. Diversity and Inclusion The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see theCivil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy (opens in a new window). Apply and further information This vacancy is part of the Great Place to Work for Veterans (opens in a new window) initiative. Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records. Contact point for applicants Job contact : Name : Daniel White Email : Recruitment team Email : Further information Appointment to the Civil Service is governed by the Civil Service Commission's Recruitment Principles. You have the right to complain if you feel a department has breached the requirement of the Recruitment Principles. In the first instance, you should raise the matter directly with the department concerned. If you are not satisfied with the response, you may bring your complaint to the Commission . click apply for full job details
Aug 24, 2026
Full time
About the job Job summary The Deputy Director, Head of AI Assurance will lead HMRC's approach to assuring the responsible, safe and effective deployment of AI across the organisation. The role will provide strategic leadership for the AI assurance function within the Chief AI Office (CAIO), ensuring that AI activity across HMRC is aligned to organisational priorities, meets clear governance and assurance expectations, and can progress at pace within appropriate guardrails. The post holder will not replace existing specialist functions such as data protection, cyber security, legal, commercial, architecture, risk or ethics. Instead, they will act as the senior alignment point for AI assurance, bringing together the right expertise at the right point in the lifecycle and ensuring that teams receive clear, proportionate and practical assurance advice. Job description Lead the development and operation of HMRC's AI assurance approach, ensuring that central, local and federated AI activity meets a consistent assurance bar. Establish clear assurance routes for AI use cases, from early idea through experimentation, deployment, scaling and live service. Provide senior oversight of AI assurance decisions, ensuring that risks, mitigations, dependencies and decisions are recorded, evidenced and traceable. Contribute to development of AI Agents to support delivery of effective assurance across the enterprise. Work with senior colleagues across HMRC to embed proportionate assurance into existing governance, delivery, security, data, commercial and change processes. Lead the AI assurance team, setting priorities, allocating work and ensuring a coherent service to delivery teams and business areas. Ensure assurance activity supports responsible acceleration rather than unnecessary delay, helping teams understand what is required to progress safely. Maintain a single view of material AI assurance issues, risks, themes and decisions, escalating where appropriate to the Chief AI Officer and relevant governance forums. Oversee the development of reusable assurance products, including checklists, evidence packs, decision templates, guidance and playbooks. Build strong working relationships with existing HMRC specialists in security, data protection, data governance, legal, ethics, commercial, architecture, risk and internal audit. Support external confidence in HMRC's use of AI by ensuring transparency, audit readiness and clear evidence of responsible redeployment. Represent HMRC in cross-government AI assurance, governance and professional communities, helping shape emerging standards, frameworks and best practice for responsible AI adoption. Person specification Experience of leading governance, assurance, risk, compliance or delivery functions in a complex organisation, with accountability for delivering effective outcomes in high-profile or sensitive environments. Experience of AI, data science, digital transformation, automation or emerging technology governance, including applying proportionate assurance approaches to innovative and fast-moving technology delivery. Strong ability to interpret complex policy, technical, ethical and risk issues, and translate them into clear, practical guidance that supports safe and effective delivery. Demonstrable ability to build effective relationships across organisational boundaries, influence senior stakeholders, and align diverse interests to achieve pragmatic decisions and outcomes. Excellent judgement and decision-making skills, including the ability to balance pace, innovation, risk, proportionality, regulatory requirements and public trust. Proven leadership and communication skills, including the ability to build and lead high-performing expert teams and to communicate complex issues clearly and succinctly to senior leaders and non-technical audiences. Benefits Alongside your salary of £86,000, HM Revenue and Customs contributes £24,914 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity A Civil Service pension with an employer contribution of 28.97% Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details For full selection process details please see attached Candidate Pack Feedback will only be provided if you attend an interview or assessment. This role has a minimum assignment duration of 3 years. An assignment duration is the period of time a Senior Civil Servant is expected to remain in the same post to enable them to deliver on the agreed key business outcomes. The assignment duration also supports your career through building your depth of expertise. As part of accepting this role you will be agreeing to the expected assignment duration set out above. This will not result in a contractual change to your terms and conditions. Please note this is an expectation only, it is not something which is written into your terms and conditions or indeed which the employing organisation or you are bound by. It will depend on your personal circumstances at a particular time and business needs, for example, would not preclude any absence like family friendly leave. It is nonetheless an important expectation, which is why we ask you to confirm you agree to the assignment duration set out above. Security Successful candidates must undergo a standard (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is counter-terrorist check (opens in a new window). See our vetting charter (opens in a new window). People working with government assets must complete baseline personnel security standard (opens in new window) checks. Nationality requirements This job is broadly open to the following groups: UK nationals nationals of the Republic of Ireland nationals of Commonwealth countries who have the right to work in the UK nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window) nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS) individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020 Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service Further information on nationality requirements (opens in a new window) Working for the Civil Service The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants. We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window). The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria. The Civil Service also offers a Redeployment Interview Scheme to civil servants who are at risk of redundancy, and who meet the minimum requirements for the advertised vacancy. Diversity and Inclusion The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see theCivil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy (opens in a new window). Apply and further information This vacancy is part of the Great Place to Work for Veterans (opens in a new window) initiative. Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records. Contact point for applicants Job contact : Name : Daniel White Email : Recruitment team Email : Further information Appointment to the Civil Service is governed by the Civil Service Commission's Recruitment Principles. You have the right to complain if you feel a department has breached the requirement of the Recruitment Principles. In the first instance, you should raise the matter directly with the department concerned. If you are not satisfied with the response, you may bring your complaint to the Commission . click apply for full job details

Modal Window

  • Home
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Google Plus
  • LinkedIn
Parent and Partner sites: IT Job Board | Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | Construction Job Board | Property jobs | myJobsnearme.com | Jobs near me
© 2008-2026 Jobsite Jobs | Designed by Web Design Agency