• Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
  • Sign in
  • Sign up
  • Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

193 jobs found

Email me jobs like this
Refine Search
Current Search
threat analyst
HMRC
Digital Investigator - National Digital Investigation Unit
HMRC Birmingham, Staffordshire
About the job Job summary Discover what it's like to work in a compliance role that makes an impact. Could you help us shape a stronger, fairer future? Your next career move starts here. HMRC's Fraud Investigation Service (FIS) is responsible for the department's civil and criminal investigations. Covert Operations, Digital Exploitation (CODE) sits within FIS. Working across Law Enforcement and government, CODE provides investigative tools and covert techniques to front-line investigations and works with key partners to develop and provide access to new technology and systems to enable investigators to respond to serious and complex tax evasion and crime. HMRC is faced with increasingly complex frauds committed by well-resourced and, often, digitally informed and aware criminal groups. This post sits within the CODE Digital Operations command that includes the Communications Data Unit (CDU) and the National Digital Investigation Unit (NDIU). This command recognises the importance and synergy between these two technical areas. This is an opportunity to join CODE Digital Operations during a crucial period of expansion, development of capability and impact. The National Digital Investigation Unit (NDIU) specialise in digital problem solving, drawing upon operational experience and pragmatic application of datasets, such as but not limited to Communications Data, Open Source Intelligence, vehicle telematics, ANPR data and digital forensics (handset downloads). Job description The NDIU is a team of Digital Investigators, which provide ongoing and dynamic operational advice and support to Risk Intelligence Service (RIS) and FIS case teams and wider internal 'customers' such as, the Priority Criminals Unit, Internal Investigations, Protected Persons Unit and the Operational Security network to name a few. Developing effective digital strategies is fundamental to NDIU assisting investigation teams to achieve meaningful operational outcomes. The NDIU is a national team, the role involves regular travel with overnight stays to attend training courses or work alongside colleagues, particularly within the first two years on the team. This is a fantastic opportunity to be part of a command that enhances HMRC's response to sophisticated organised crime and serious fraud. Our work is varied, rewarding and impactful, investigating the most harmful tax frauds and criminal groups. Using innovative digital approaches and techniques, you will be making decisions that will help tackle fraudsters who present the highest threat to the UK Exchequer. You will be working with like-minded people, who constantly look for opportunities to add value and share knowledge to drive investigations forward. Person specification As a Digital Investigator you will: Become proficient in the application of Digital Investigation techniques, exploiting social media, closed sources and emerging communication systems, using several bespoke third-party solutions. Consider and create bespoke digital strategies to assist and support high priority, complex and sensitive HMRC investigations. Provide advice to support proactive and reactive operations, including live deployments, to identify data acquisition and exploitation opportunities. Advice ranges from sustained dedicated support over many months to short term assistance. Provide guidance to Senior Investigation Officers/Investigators on the use of technology in investigations, using experience and knowledge to develop and progress digital strategies, in difficult or complex investigations. Gather intelligence and evidence on individuals, corporates, and organised crime groups to progress and enhance criminal investigations into attacks on our tax systems. Utilise digital investigation skills and bespoke tools to interrogate, evaluate and interpret relevant digital data sets. Identify, collate and exploit data from external and internal data sources to develop the most holistic picture of an individual. Conduct research, including internet and social networking analysis, to an evidential standard. Flexibility to travel within the role. There will be a bespoke training package depending on the previous experience of the successful candidate, which will require travel. Be part of 1 week in 4 on-call cadre. This is in line with Flexibility Payment 2. Essential Criteria A sound knowledge of Communications Data. An understanding of Digital Investigation opportunities and capabilities. An interest in current and emerging communications technologies. This role requires experience of conducting criminal investigations and a thorough working knowledge of Criminal Justice procedures. Including the following legislation and corresponding Codes of Practice: Investigatory Powers Act 2016 (IPA) Regulation of Investigatory Powers Act 2000 (RIPA) Police Act 1997 (PA) Proceeds of Crime Act 2002 (POCA) Criminal Procedures and Investigations Act 1996 (CPIA) Police and Criminal Evidence Act 1984 (PACE) Further Location Information Please ensure that you only apply for a location that you are willing and able to work from, as we will only make one offer of employment. Any additional notes included in a 'Further Location Preferences (optional)' field within the application form, will not be considered. Please be aware that you cannot change your location preference after submitting your application. Office Closures If your location preference is for the following site, it's important to note that this is not long-term site for HMRC and we will require you to move to a new building in the future, subject to our location strategy and the applicable employee policies at that time. For more information on where you might be working, review this information on our locations (opens in a new window) This site is: Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle You will be given more information about what this means at the job offer stage. Flexibility Payment This post attracts a Level 2 Flexibility Payment (FP) that is paid monthly with salary. This FP allows HMRC flexibility to change your work pattern, at short notice, to meet business needs. You will be expected to undertake periods of On Call. You will also be expected to work additional hours, at weekends and outside your normal working hours/days (including bank holidays). In applying for a position and accepting the FP you agree that you can and will meet those attendance requirements. Note: Payment of FP is dependent on successful completion of role specific training and you will move to Level 2 FP eligibility in stages (see the attached document for details). FP levels are reviewed annually - on a business need and personal basis - and may be subject to change. Details of the Flexibility Payment can be found in the attached document. Qualifications Please advise on your CV that you are an accredited criminal justice professional or intelligence analyst, that you can commit to any required training, and that you hold at least one of the following: - HMRC BTEC Level 3 Advanced Diploma in Enforcement (Criminal Investigation) - HMRC Accredited Counter Fraud Qualification Level 4 Diploma - University of Portsmouth Counter Fraud Professional Accreditation Board (CFPAB) Accredited Counter Fraud Specialist. - University of Northumbria CFPAB Accredited Counter Fraud Specialist. - University of Portsmouth CFPAB Accredited Counter Fraud (Intelligence) Specialist. - University of Northumbria CFPAB Accredited Counter Fraud (Intelligence) Specialist. - Accredited Counter Fraud Intelligence Specialist (ACFIS) from the Counter Fraud Professional Accreditation Board (CFPAB) in conjunction with the University of Portsmouth. Current PIP2 Status - You must hold a current and active PIP2 (Investigator) accreditation issued by a recognised UK law enforcement body (e.g. the College of Policing or NCA). If your PIP2 accreditation is inactive, it must not have lapsed more than 24 months prior to your application, and you must be able to demonstrate relevant operational experience in managing or conducting serious and complex investigations within the last two years. Successful candidates with PIP2 status, will still be required to attend and pass HMRC's core learning programme and achieve Authorised Officer status through further classroom and practical training which will involve regular travel. Behaviours We'll assess you against these behaviours during the selection process: Making Effective Decisions Leadership Communicating and Influencing We only ask for evidence of these behaviours on your application form: Making Effective Decisions Leadership Technical skills We'll assess you against these technical skills during the selection process: You will be asked to prepare and deliver a 10-15 minute presentation on a recent example/case study of a digitally focussed investigation you carried out. This should highlight some of the challenges and techniques you used to reach the objectives. Benefits Alongside your salary of £37,682, HM Revenue and Customs contributes £10,916 towards you being a member of the Civil Service Defined Benefit Pension scheme . click apply for full job details
Aug 24, 2026
Full time
About the job Job summary Discover what it's like to work in a compliance role that makes an impact. Could you help us shape a stronger, fairer future? Your next career move starts here. HMRC's Fraud Investigation Service (FIS) is responsible for the department's civil and criminal investigations. Covert Operations, Digital Exploitation (CODE) sits within FIS. Working across Law Enforcement and government, CODE provides investigative tools and covert techniques to front-line investigations and works with key partners to develop and provide access to new technology and systems to enable investigators to respond to serious and complex tax evasion and crime. HMRC is faced with increasingly complex frauds committed by well-resourced and, often, digitally informed and aware criminal groups. This post sits within the CODE Digital Operations command that includes the Communications Data Unit (CDU) and the National Digital Investigation Unit (NDIU). This command recognises the importance and synergy between these two technical areas. This is an opportunity to join CODE Digital Operations during a crucial period of expansion, development of capability and impact. The National Digital Investigation Unit (NDIU) specialise in digital problem solving, drawing upon operational experience and pragmatic application of datasets, such as but not limited to Communications Data, Open Source Intelligence, vehicle telematics, ANPR data and digital forensics (handset downloads). Job description The NDIU is a team of Digital Investigators, which provide ongoing and dynamic operational advice and support to Risk Intelligence Service (RIS) and FIS case teams and wider internal 'customers' such as, the Priority Criminals Unit, Internal Investigations, Protected Persons Unit and the Operational Security network to name a few. Developing effective digital strategies is fundamental to NDIU assisting investigation teams to achieve meaningful operational outcomes. The NDIU is a national team, the role involves regular travel with overnight stays to attend training courses or work alongside colleagues, particularly within the first two years on the team. This is a fantastic opportunity to be part of a command that enhances HMRC's response to sophisticated organised crime and serious fraud. Our work is varied, rewarding and impactful, investigating the most harmful tax frauds and criminal groups. Using innovative digital approaches and techniques, you will be making decisions that will help tackle fraudsters who present the highest threat to the UK Exchequer. You will be working with like-minded people, who constantly look for opportunities to add value and share knowledge to drive investigations forward. Person specification As a Digital Investigator you will: Become proficient in the application of Digital Investigation techniques, exploiting social media, closed sources and emerging communication systems, using several bespoke third-party solutions. Consider and create bespoke digital strategies to assist and support high priority, complex and sensitive HMRC investigations. Provide advice to support proactive and reactive operations, including live deployments, to identify data acquisition and exploitation opportunities. Advice ranges from sustained dedicated support over many months to short term assistance. Provide guidance to Senior Investigation Officers/Investigators on the use of technology in investigations, using experience and knowledge to develop and progress digital strategies, in difficult or complex investigations. Gather intelligence and evidence on individuals, corporates, and organised crime groups to progress and enhance criminal investigations into attacks on our tax systems. Utilise digital investigation skills and bespoke tools to interrogate, evaluate and interpret relevant digital data sets. Identify, collate and exploit data from external and internal data sources to develop the most holistic picture of an individual. Conduct research, including internet and social networking analysis, to an evidential standard. Flexibility to travel within the role. There will be a bespoke training package depending on the previous experience of the successful candidate, which will require travel. Be part of 1 week in 4 on-call cadre. This is in line with Flexibility Payment 2. Essential Criteria A sound knowledge of Communications Data. An understanding of Digital Investigation opportunities and capabilities. An interest in current and emerging communications technologies. This role requires experience of conducting criminal investigations and a thorough working knowledge of Criminal Justice procedures. Including the following legislation and corresponding Codes of Practice: Investigatory Powers Act 2016 (IPA) Regulation of Investigatory Powers Act 2000 (RIPA) Police Act 1997 (PA) Proceeds of Crime Act 2002 (POCA) Criminal Procedures and Investigations Act 1996 (CPIA) Police and Criminal Evidence Act 1984 (PACE) Further Location Information Please ensure that you only apply for a location that you are willing and able to work from, as we will only make one offer of employment. Any additional notes included in a 'Further Location Preferences (optional)' field within the application form, will not be considered. Please be aware that you cannot change your location preference after submitting your application. Office Closures If your location preference is for the following site, it's important to note that this is not long-term site for HMRC and we will require you to move to a new building in the future, subject to our location strategy and the applicable employee policies at that time. For more information on where you might be working, review this information on our locations (opens in a new window) This site is: Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle You will be given more information about what this means at the job offer stage. Flexibility Payment This post attracts a Level 2 Flexibility Payment (FP) that is paid monthly with salary. This FP allows HMRC flexibility to change your work pattern, at short notice, to meet business needs. You will be expected to undertake periods of On Call. You will also be expected to work additional hours, at weekends and outside your normal working hours/days (including bank holidays). In applying for a position and accepting the FP you agree that you can and will meet those attendance requirements. Note: Payment of FP is dependent on successful completion of role specific training and you will move to Level 2 FP eligibility in stages (see the attached document for details). FP levels are reviewed annually - on a business need and personal basis - and may be subject to change. Details of the Flexibility Payment can be found in the attached document. Qualifications Please advise on your CV that you are an accredited criminal justice professional or intelligence analyst, that you can commit to any required training, and that you hold at least one of the following: - HMRC BTEC Level 3 Advanced Diploma in Enforcement (Criminal Investigation) - HMRC Accredited Counter Fraud Qualification Level 4 Diploma - University of Portsmouth Counter Fraud Professional Accreditation Board (CFPAB) Accredited Counter Fraud Specialist. - University of Northumbria CFPAB Accredited Counter Fraud Specialist. - University of Portsmouth CFPAB Accredited Counter Fraud (Intelligence) Specialist. - University of Northumbria CFPAB Accredited Counter Fraud (Intelligence) Specialist. - Accredited Counter Fraud Intelligence Specialist (ACFIS) from the Counter Fraud Professional Accreditation Board (CFPAB) in conjunction with the University of Portsmouth. Current PIP2 Status - You must hold a current and active PIP2 (Investigator) accreditation issued by a recognised UK law enforcement body (e.g. the College of Policing or NCA). If your PIP2 accreditation is inactive, it must not have lapsed more than 24 months prior to your application, and you must be able to demonstrate relevant operational experience in managing or conducting serious and complex investigations within the last two years. Successful candidates with PIP2 status, will still be required to attend and pass HMRC's core learning programme and achieve Authorised Officer status through further classroom and practical training which will involve regular travel. Behaviours We'll assess you against these behaviours during the selection process: Making Effective Decisions Leadership Communicating and Influencing We only ask for evidence of these behaviours on your application form: Making Effective Decisions Leadership Technical skills We'll assess you against these technical skills during the selection process: You will be asked to prepare and deliver a 10-15 minute presentation on a recent example/case study of a digitally focussed investigation you carried out. This should highlight some of the challenges and techniques you used to reach the objectives. Benefits Alongside your salary of £37,682, HM Revenue and Customs contributes £10,916 towards you being a member of the Civil Service Defined Benefit Pension scheme . click apply for full job details
Claranet Limited
SOC Shift Lead
Claranet Limited Leeds, Yorkshire
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Aug 24, 2026
Full time
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
NonStop Consulting Ltd
SOC Manager
NonStop Consulting Ltd Exeter, Devon
We're looking for an experienced SOC Manager to lead and develop a Security Operations capability within a high-profile public sector environment. This is a strategic leadership role, ideal for someone with a strong background in cyber security operations, incident response, and SOC service delivery. Key Responsibilities Lead and manage an established Security Operations Centre (SOC) Develop and deliver the SOC strategy and operational roadmap Oversee incident management and security monitoring capabilities Drive threat intelligence and cyber threat assessment activities Manage cyber security tools and operational technologies Build and maintain relationships with MSSPs, vendors, and technology partners Effectively plan and deploy resources to meet business objectives Essential Skills & Experience Proven experience as a SOC Manager (applications from SOC Analysts will not be considered) Strong leadership and people management experience In-depth knowledge of incident management processes Experience delivering effective security monitoring and threat intelligence capabilities Hands-on experience managing cyber security tools and technologies Experience working with external vendors and Managed Security Service Providers (MSSPs) Desirable CISSP, CISM or equivalent cyber security certification Cloud security experience (AWS and/or Azure) ITIL Foundation or equivalent Details Remote (occasional travel may be required) Up to £850/day (Umbrella) Active SC Clearance is essential - applicants must already hold valid SC clearance to be considered. If you're an experienced SC Cleared SOC Manager looking for your next contract opportunity, we'd love to hear from you.
Aug 24, 2026
Full time
We're looking for an experienced SOC Manager to lead and develop a Security Operations capability within a high-profile public sector environment. This is a strategic leadership role, ideal for someone with a strong background in cyber security operations, incident response, and SOC service delivery. Key Responsibilities Lead and manage an established Security Operations Centre (SOC) Develop and deliver the SOC strategy and operational roadmap Oversee incident management and security monitoring capabilities Drive threat intelligence and cyber threat assessment activities Manage cyber security tools and operational technologies Build and maintain relationships with MSSPs, vendors, and technology partners Effectively plan and deploy resources to meet business objectives Essential Skills & Experience Proven experience as a SOC Manager (applications from SOC Analysts will not be considered) Strong leadership and people management experience In-depth knowledge of incident management processes Experience delivering effective security monitoring and threat intelligence capabilities Hands-on experience managing cyber security tools and technologies Experience working with external vendors and Managed Security Service Providers (MSSPs) Desirable CISSP, CISM or equivalent cyber security certification Cloud security experience (AWS and/or Azure) ITIL Foundation or equivalent Details Remote (occasional travel may be required) Up to £850/day (Umbrella) Active SC Clearance is essential - applicants must already hold valid SC clearance to be considered. If you're an experienced SC Cleared SOC Manager looking for your next contract opportunity, we'd love to hear from you.
NonStop Consulting Ltd
Associate Security Analyst
NonStop Consulting Ltd
This is a long-term engagement until 31/03/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract to March 2027, offering rare long-term security in the contracting market. Day rate: Up to £650-700 (umbrella) inside IR35. Mission-critical work: Protects key government digital services and internal infrastructure. Career development: Mentor and line manage apprentice analysts, strengthening your leadership profile. The role - Associate Security Analyst As part of the Cyber Defence team, you will be central to detecting, investigating and responding to cyber threats and incidents affecting high-profile services. Triage and investigate security alerts and user reports. Analyse systems, files, network traffic and cloud environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions and contribute to playbooks, plans and knowledge base articles . Act as an escalation point and provide coaching and line management for apprentice security analysts. Participate in an out-of-hours on-call rota , as incidents can arise 24/7. Key requirements Active SC (Security Check) clearance - STRONGLY PREFERED. 2-3+ years experience as a Cyber Security / Security Analyst. Hands-on experience with SIEM (Splunk preferred; Microsoft Sentinel or equivalent also considered). Experience with M365 security tooling (e.g. Microsoft Defender, Sentinel, KQL). Good understanding of threat actors' tools, techniques and procedures . Strong analytical, problem-solving and communication skills. Nice to have Further experience with Splunk . Background working in an Agile environment. Exposure to cloud platforms such as AWS. About our client Our client's cyber and information security function safeguards crucial digital and information assets and enables the secure delivery of major citizen-facing services as well as internal government systems. You would be joining a team with a strong mandate, modern tooling, and a clear mission to improve the cyber resilience of core public services.
Aug 24, 2026
Full time
This is a long-term engagement until 31/03/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract to March 2027, offering rare long-term security in the contracting market. Day rate: Up to £650-700 (umbrella) inside IR35. Mission-critical work: Protects key government digital services and internal infrastructure. Career development: Mentor and line manage apprentice analysts, strengthening your leadership profile. The role - Associate Security Analyst As part of the Cyber Defence team, you will be central to detecting, investigating and responding to cyber threats and incidents affecting high-profile services. Triage and investigate security alerts and user reports. Analyse systems, files, network traffic and cloud environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions and contribute to playbooks, plans and knowledge base articles . Act as an escalation point and provide coaching and line management for apprentice security analysts. Participate in an out-of-hours on-call rota , as incidents can arise 24/7. Key requirements Active SC (Security Check) clearance - STRONGLY PREFERED. 2-3+ years experience as a Cyber Security / Security Analyst. Hands-on experience with SIEM (Splunk preferred; Microsoft Sentinel or equivalent also considered). Experience with M365 security tooling (e.g. Microsoft Defender, Sentinel, KQL). Good understanding of threat actors' tools, techniques and procedures . Strong analytical, problem-solving and communication skills. Nice to have Further experience with Splunk . Background working in an Agile environment. Exposure to cloud platforms such as AWS. About our client Our client's cyber and information security function safeguards crucial digital and information assets and enables the secure delivery of major citizen-facing services as well as internal government systems. You would be joining a team with a strong mandate, modern tooling, and a clear mission to improve the cyber resilience of core public services.
HMRC
Cyber Fraud Analyst
HMRC Edinburgh, Midlothian
About the job Job summary Discover a career in your hands at HMRC. Whether you're seeking purpose, growth, or a workplace that gives you a true sense of belonging, hear from some of our employees as they share their story about what it's really like to work at HMRC. Visit our YouTube channel to watch the full series and come and discover your potential. Our team is rapidly growing as we invest in new technologies and capabilities, and we are in search of enthusiastic individuals who can help us in achieving our mission. We are continually improving the service we give to our customers and, in line with this, we are creating a new response and management team within the HMRC Fraud Prevention Centre. The Fraud Prevention Centre (FPC) is a strategic capability within HMRC Security, designed to safeguard customers and the organisation against identity-related fraud and emerging threats. Its mission is built on three interconnected pillars: Protection, Detection, and Response, all underpinned by advanced threat intelligence and customer support. The Centre operates across multiple functional areas, including Proactive Protection, Customer Support & Response, and Strategy & Advisory, to deliver a holistic approach to fraud prevention. Job description We're looking for a proactive and analytical professional to support HMRC's fight against identity fraud. You'll help lead data-driven investigations into suspicious activity related to identity verification and authentication services, while working with the team and partners, acting as a key contributor in a team that supports customers and provides insight into identity fraud activity and proactive searching for threats. This is an exciting opportunity to make a real difference, working in a dynamic and evolving environment. Person specification Manipulate and analyse large data sets and investigate suspicious activity. Learn, develop, and apply methods using data analytics techniques such as data mining, data matching, clustering analysis and outlier detection. Use basic scripting languages to develop visualisations and automate effective searches to build a growing analytical suite of capabilities that you can operate efficiently. Have strong communication skills and be able to demonstrate working across business and technical domains. You will have excellent interpersonal skills. Apply your knowledge of security and fraud risks to digital services. Support and deputise for the senior analysts, producing clear, insightful reports and presentations for senior stakeholders. You will be confident working in an environment that may flex its focus in response to emerging issues and have a delivery focus. You will be eager to learn and widen your experience in different areas of identity work. You will use your experience of scripting, for example SPL, Python, SQL, KQL to proactively search and discover anomalies. Be flexible and enthusiastic whilst working with some ambiguity as the team forms, grows and matures. Support senior managers in the reporting of metrics and support the wider aims of the HMRC Security Identity Team. Identify process improvement areas. Essential Criteria Knowledge of fraud detection techniques, including behavioural analysis and anomaly detection and investigation and OSINT (Open Source Intelligence) methods. Data analysis skills and experience with large data sets, with proficiency scripting complex queries in analysis environments. Solid technical understanding of web and API services (e.g. cookies, IP addresses, authentication processes) and threats to those services from cybercrime actors and tools. Experience using Security Information and Event Management (SIEM) platforms, preferably in a security operations setting. A sound understanding of Identity, Verification and Authentication principles. Desirable Criteria A degree in Data Analysis, Data Science, Information Security, Cyber Security, or other Cyber qualifications eg SANS, or at least previous experience in a relevant cyber role. Proven experience in fraud detection, cyber security, or threat intelligence within a large organisation. Active use of at least one of the following: Python, SQL, KQL, SPL. Important Additional Information The successful candidate may be required to apply for Developed Vetting (DV) clearance level once in post but must already hold or be willing to obtain Security Check (SC) clearance level before starting the role. Further Location Information Please ensure that you only apply for a location that you are willing and able to work from, as we will only make one offer of employment. Any additional notes included in a 'Further Location Preferences (optional)' field within the application form, will not be considered. Please be aware that you cannot change your location preference after submitting your application. Office closures For more information on where you might be working, review this information on our locations. If your location preference is for one of the following sites, it's important to note that these are not long-term sites for HMRC and we will require you to move to a new building in the future, subject to our location strategy and the applicable employee policies at that time. These sites are: Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle Telford Plaza, Telford - moving to Parkside Court, Telford Trinity Bridge House, Salford - moving to an alternative office in Manchester/ Salford You will be given more information about what this means at the job offer stage. Leeds Locations Moves Adjustment Payment will be available for this role, provided the successful applicant is a current HMRC colleague in Bradford and meets the eligibility requirements outlined in the HMRC's Moves Adjustment Payment guidance. Benefits Alongside your salary of £37,682, HM Revenue and Customs contributes £10,916 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). HMRC operates both Flexible and Hybrid Working policies, allowing you to balance your work and personal commitments. We welcome applications from those who need to work a more flexible arrangement and will agree to requests where possible, considering our operational and customer service needs. We offer a generous leave allowance, starting at 25 days and increasing by a day for every year of qualifying service up to a maximum of 30 days. Pension - We make contributions to our colleagues' Alpha pension equal to at least 28.97% of their salary. Family friendly policies. Personal support. Coaching and development. To find out more about HMRC benefits and find out what it's really like to work for HMRC hear from our insiders or visit Thinking of joining the Civil Service Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details This vacancy is using Success Profiles (opens in a new window), and will assess your Strengths and Experience. How to Apply As part of the application process, you will be asked to provide the following: A name-blind CV including your job history, previous experiences and qualifications. Qualifications are not mandatory for this role. A 750-word Personal Statement. Your Personal Statement should be used to describe how your skills and experience would be suitable for the advertised role, making reference to the Essential Criteria and Person Specification outlined in the advert. Please complete a separate statement (Max 250 words) for the Desirable Criteria where applicable. This is not essential for the role but may be considered by the vacancy-holder where candidates have the same scores at interview. Further details around what this will entail are listed on the application form. Prior to applications being sifted candidates will be asked to complete an additional IKM assessment. Candidates will be sent details of the assessment once the advert has closed. This assessment is a pass or fail and only those who pass will be considered at the sift stage. Sift In the event of a large number of applications being received, an initial sift may be held on your CV. At full sift your CV and your Personal Statement will be assessed, with the successful candidates being invited to interview. We may also raise the score required at any stage of the process if we receive a high number of applications. Interview During the panel interview, your experience will be assessed, and you will be asked strength-based questions to also explore what you enjoy and your motivations relevant to the job role. This is an example of a strengths-based question: . click apply for full job details
Aug 24, 2026
Full time
About the job Job summary Discover a career in your hands at HMRC. Whether you're seeking purpose, growth, or a workplace that gives you a true sense of belonging, hear from some of our employees as they share their story about what it's really like to work at HMRC. Visit our YouTube channel to watch the full series and come and discover your potential. Our team is rapidly growing as we invest in new technologies and capabilities, and we are in search of enthusiastic individuals who can help us in achieving our mission. We are continually improving the service we give to our customers and, in line with this, we are creating a new response and management team within the HMRC Fraud Prevention Centre. The Fraud Prevention Centre (FPC) is a strategic capability within HMRC Security, designed to safeguard customers and the organisation against identity-related fraud and emerging threats. Its mission is built on three interconnected pillars: Protection, Detection, and Response, all underpinned by advanced threat intelligence and customer support. The Centre operates across multiple functional areas, including Proactive Protection, Customer Support & Response, and Strategy & Advisory, to deliver a holistic approach to fraud prevention. Job description We're looking for a proactive and analytical professional to support HMRC's fight against identity fraud. You'll help lead data-driven investigations into suspicious activity related to identity verification and authentication services, while working with the team and partners, acting as a key contributor in a team that supports customers and provides insight into identity fraud activity and proactive searching for threats. This is an exciting opportunity to make a real difference, working in a dynamic and evolving environment. Person specification Manipulate and analyse large data sets and investigate suspicious activity. Learn, develop, and apply methods using data analytics techniques such as data mining, data matching, clustering analysis and outlier detection. Use basic scripting languages to develop visualisations and automate effective searches to build a growing analytical suite of capabilities that you can operate efficiently. Have strong communication skills and be able to demonstrate working across business and technical domains. You will have excellent interpersonal skills. Apply your knowledge of security and fraud risks to digital services. Support and deputise for the senior analysts, producing clear, insightful reports and presentations for senior stakeholders. You will be confident working in an environment that may flex its focus in response to emerging issues and have a delivery focus. You will be eager to learn and widen your experience in different areas of identity work. You will use your experience of scripting, for example SPL, Python, SQL, KQL to proactively search and discover anomalies. Be flexible and enthusiastic whilst working with some ambiguity as the team forms, grows and matures. Support senior managers in the reporting of metrics and support the wider aims of the HMRC Security Identity Team. Identify process improvement areas. Essential Criteria Knowledge of fraud detection techniques, including behavioural analysis and anomaly detection and investigation and OSINT (Open Source Intelligence) methods. Data analysis skills and experience with large data sets, with proficiency scripting complex queries in analysis environments. Solid technical understanding of web and API services (e.g. cookies, IP addresses, authentication processes) and threats to those services from cybercrime actors and tools. Experience using Security Information and Event Management (SIEM) platforms, preferably in a security operations setting. A sound understanding of Identity, Verification and Authentication principles. Desirable Criteria A degree in Data Analysis, Data Science, Information Security, Cyber Security, or other Cyber qualifications eg SANS, or at least previous experience in a relevant cyber role. Proven experience in fraud detection, cyber security, or threat intelligence within a large organisation. Active use of at least one of the following: Python, SQL, KQL, SPL. Important Additional Information The successful candidate may be required to apply for Developed Vetting (DV) clearance level once in post but must already hold or be willing to obtain Security Check (SC) clearance level before starting the role. Further Location Information Please ensure that you only apply for a location that you are willing and able to work from, as we will only make one offer of employment. Any additional notes included in a 'Further Location Preferences (optional)' field within the application form, will not be considered. Please be aware that you cannot change your location preference after submitting your application. Office closures For more information on where you might be working, review this information on our locations. If your location preference is for one of the following sites, it's important to note that these are not long-term sites for HMRC and we will require you to move to a new building in the future, subject to our location strategy and the applicable employee policies at that time. These sites are: Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle Telford Plaza, Telford - moving to Parkside Court, Telford Trinity Bridge House, Salford - moving to an alternative office in Manchester/ Salford You will be given more information about what this means at the job offer stage. Leeds Locations Moves Adjustment Payment will be available for this role, provided the successful applicant is a current HMRC colleague in Bradford and meets the eligibility requirements outlined in the HMRC's Moves Adjustment Payment guidance. Benefits Alongside your salary of £37,682, HM Revenue and Customs contributes £10,916 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). HMRC operates both Flexible and Hybrid Working policies, allowing you to balance your work and personal commitments. We welcome applications from those who need to work a more flexible arrangement and will agree to requests where possible, considering our operational and customer service needs. We offer a generous leave allowance, starting at 25 days and increasing by a day for every year of qualifying service up to a maximum of 30 days. Pension - We make contributions to our colleagues' Alpha pension equal to at least 28.97% of their salary. Family friendly policies. Personal support. Coaching and development. To find out more about HMRC benefits and find out what it's really like to work for HMRC hear from our insiders or visit Thinking of joining the Civil Service Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details This vacancy is using Success Profiles (opens in a new window), and will assess your Strengths and Experience. How to Apply As part of the application process, you will be asked to provide the following: A name-blind CV including your job history, previous experiences and qualifications. Qualifications are not mandatory for this role. A 750-word Personal Statement. Your Personal Statement should be used to describe how your skills and experience would be suitable for the advertised role, making reference to the Essential Criteria and Person Specification outlined in the advert. Please complete a separate statement (Max 250 words) for the Desirable Criteria where applicable. This is not essential for the role but may be considered by the vacancy-holder where candidates have the same scores at interview. Further details around what this will entail are listed on the application form. Prior to applications being sifted candidates will be asked to complete an additional IKM assessment. Candidates will be sent details of the assessment once the advert has closed. This assessment is a pass or fail and only those who pass will be considered at the sift stage. Sift In the event of a large number of applications being received, an initial sift may be held on your CV. At full sift your CV and your Personal Statement will be assessed, with the successful candidates being invited to interview. We may also raise the score required at any stage of the process if we receive a high number of applications. Interview During the panel interview, your experience will be assessed, and you will be asked strength-based questions to also explore what you enjoy and your motivations relevant to the job role. This is an example of a strengths-based question: . click apply for full job details
Claranet Limited
SOC Automation Engineer
Claranet Limited Leeds, Yorkshire
SOC Automation Engineer As a SOC Automation Engineer, you will apply hands-on engineering expertise to design, build, and optimise automation workflows that improve the scalability and efficiency of SOC services. Working across SIEM, endpoint, and orchestration platforms (primarily Palo Alto XSOAR), you will reduce analyst workload, accelerate incident response, and enhance decision-making across customer environments. Key Responsibilities Automation Development - Design, build, and maintain scalable automation workflows across detection and response platforms. Integration & Orchestration - Deliver cross-platform automation enabling fast, reliable response actions. Lifecycle Management - Develop, deploy, and continuously optimise automation for performance, resilience, and coverage. Collaboration & Requirements Gathering - Work with SOC and engineering teams to identify automation opportunities. Documentation - Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning - Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support - Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development Build and maintain workflows across SIEM, EDR, and SOAR platforms Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through to optimisation Troubleshoot failures and refine logic Use post-incident insights to improve workflows Documentation & Standards Maintain clear documentation of workflows, dependencies, and error handling Ensure consistency and usability for wider teams Strategic Contribution Support use cases aligned to threat modelling and MITRE ATT&CK Contribute to automation playbooks and response strategies Stay current with tools, frameworks, and emerging threats Collaboration Embed automation into SOC workflows Share best practices and support team development Pre-Sales Support workshops, onboarding, and solution design where needed Stakeholder Collaboration SOC Analysts - Automate repeatable triage and response activities Platform & Detection Engineers - Integrate automation into tooling and detections Sales & Pre-Sales - Provide technical input for customer solutions Requirements 2+ years' experience in SOC, automation, or cloud security engineering Experience in managed services or multi-tenant environments Strong experience building automations across SIEM, SOAR, or EDR platforms Proficiency in scripting (e.g., Python, PowerShell) Experience working with APIs, webhooks, and authentication methods Knowledge of threat frameworks (e.g., MITRE ATT&CK) Understanding of cloud security, identity, and event-driven automation Strong communication and analytical skills Security clearance (NPPV and/or SC) may be required. Technical Knowledge Security orchestration and automation principles Scripting and integration patterns (APIs, webhooks) SOC detection and response workflows Threat intelligence integration and use case design Cloud and identity security concepts Multi-tenant automation design Certifications Essential: Hands-on experience with Palo Alto XSOAR Desirable: Palo Alto Networks Certified XSOAR Engineer Palo Alto Networks Certified Security Automation Engineer (PCSAE) Palo Alto Networks Security Operations Professional
Aug 24, 2026
Full time
SOC Automation Engineer As a SOC Automation Engineer, you will apply hands-on engineering expertise to design, build, and optimise automation workflows that improve the scalability and efficiency of SOC services. Working across SIEM, endpoint, and orchestration platforms (primarily Palo Alto XSOAR), you will reduce analyst workload, accelerate incident response, and enhance decision-making across customer environments. Key Responsibilities Automation Development - Design, build, and maintain scalable automation workflows across detection and response platforms. Integration & Orchestration - Deliver cross-platform automation enabling fast, reliable response actions. Lifecycle Management - Develop, deploy, and continuously optimise automation for performance, resilience, and coverage. Collaboration & Requirements Gathering - Work with SOC and engineering teams to identify automation opportunities. Documentation - Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning - Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support - Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development Build and maintain workflows across SIEM, EDR, and SOAR platforms Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through to optimisation Troubleshoot failures and refine logic Use post-incident insights to improve workflows Documentation & Standards Maintain clear documentation of workflows, dependencies, and error handling Ensure consistency and usability for wider teams Strategic Contribution Support use cases aligned to threat modelling and MITRE ATT&CK Contribute to automation playbooks and response strategies Stay current with tools, frameworks, and emerging threats Collaboration Embed automation into SOC workflows Share best practices and support team development Pre-Sales Support workshops, onboarding, and solution design where needed Stakeholder Collaboration SOC Analysts - Automate repeatable triage and response activities Platform & Detection Engineers - Integrate automation into tooling and detections Sales & Pre-Sales - Provide technical input for customer solutions Requirements 2+ years' experience in SOC, automation, or cloud security engineering Experience in managed services or multi-tenant environments Strong experience building automations across SIEM, SOAR, or EDR platforms Proficiency in scripting (e.g., Python, PowerShell) Experience working with APIs, webhooks, and authentication methods Knowledge of threat frameworks (e.g., MITRE ATT&CK) Understanding of cloud security, identity, and event-driven automation Strong communication and analytical skills Security clearance (NPPV and/or SC) may be required. Technical Knowledge Security orchestration and automation principles Scripting and integration patterns (APIs, webhooks) SOC detection and response workflows Threat intelligence integration and use case design Cloud and identity security concepts Multi-tenant automation design Certifications Essential: Hands-on experience with Palo Alto XSOAR Desirable: Palo Alto Networks Certified XSOAR Engineer Palo Alto Networks Certified Security Automation Engineer (PCSAE) Palo Alto Networks Security Operations Professional
Trainee SOC Analyst Programme No Experience Required
NEWTO TRAINING LIMITED
Trainee SOC Analyst Programme No Experience Required This is a self-funded career programme with a guaranteed job on completion or 100% of your course fees back Train. Certify. Get Hired. Are you looking to start a career in Cyber Security but don't know where to begin? With cyber threats continuing to rise, organisations across the UK are actively investing in cyber security talent. . click apply for full job details
Aug 24, 2026
Full time
Trainee SOC Analyst Programme No Experience Required This is a self-funded career programme with a guaranteed job on completion or 100% of your course fees back Train. Certify. Get Hired. Are you looking to start a career in Cyber Security but don't know where to begin? With cyber threats continuing to rise, organisations across the UK are actively investing in cyber security talent. . click apply for full job details
Salt
Senior Security Analyst - Product-Based Risk Assessment (PBRA)
Salt
Senior Cyber Security Risk & Assurance Consultant - Product Risk (PBRA) (CONTRACTOR) - London Duration: 1 year contract Hybrid Working - 8 days onsite per month - the rest is remote working About the Team The Product-Based Risk Assessment (PBRA) service conducts recurring security assessments of applications, services, and technologies to identify emerging threats, evaluate control effectiveness, and drive remediation that strengthens The clients cyber resilience. The team supports business and technology stakeholders by assessing cyber security risks and ensuring alignment with The Banks security standards and risk appetite. Key Accountabilities Product-Based Risk Assessments Lead end-to-end Product-Based Risk Assessments (PBRA) for critical applications, platforms, and technology services. Analyse application architectures, business processes, information flows, and supporting infrastructure. Identify and assess cyber threats, vulnerabilities, control weaknesses, and potential business impacts. Evaluate the design and effectiveness of security controls using clients security frameworks and standards. Assess residual risks and propose actionable remediation plans. Security Risk Analysis Perform security risk assessments using recognised methodologies and industry frameworks. Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets. Contribute to threat modelling and attack surface analysis activities. Support technology-focused assessments such as cloud, AI, and emerging technology evaluations. Stakeholder Engagement Act as the primary security assessment contact for business and IT stakeholders. Facilitate workshops, interviews, and assessment review sessions. Challenge assumptions and provide expert security guidance to delivery and operations teams. Build trusted relationships across CISO, CTO, Architecture, Risk Management, and Engineering teams. Reporting & Governance Produce high-quality assessment reports, risk summaries, and executive-level communications. Present findings and recommendations to senior management and governance bodies. Track remediation plans and risk treatment activities through closure. Support internal and external audit activities as required. Continuous Improvement Contribute to the evolution of the PBRA service, methodologies, tools, and operating model. Help drive the transition toward data-enabled and automated security assessment capabilities. Identify opportunities to improve efficiency, consistency, and risk coverage across assessments. Support knowledge sharing and mentoring of junior analysts. Required Skills & Experience Technical Skills Strong understanding of cybersecurity principles, controls, and risk management practices. Knowledge of application security, cloud security, infrastructure security, and network security. Experience conducting security assessments, threat modelling, or risk analyses. Familiarity with industry frameworks and standards such as: NIST Cyber Security Framework ISO 27001 CIS Controls Secure Controls Framework (SCF) DORA ANSSI EBIOS RM OWASP Professional Experience Minimum 7 years of experience in Information Security, Cyber Risk, Security Assurance, or Security Architecture. Experience leading complex security assessments across large technology environments. Experience working with senior business and technology stakeholders. Strong report-writing and presentation skills. Personal Competencies Strong analytical and critical-thinking capabilities. Excellent communication and stakeholder management skills. Ability to challenge constructively and influence decision-making. Self-driven with strong ownership and accountability. Pragmatic, risk-based mindset. Comfortable operating in a complex, regulated environment. Please do send across to me the most up to date CV to (url removed) Rates depend on experience and client requirements
Aug 23, 2026
Contractor
Senior Cyber Security Risk & Assurance Consultant - Product Risk (PBRA) (CONTRACTOR) - London Duration: 1 year contract Hybrid Working - 8 days onsite per month - the rest is remote working About the Team The Product-Based Risk Assessment (PBRA) service conducts recurring security assessments of applications, services, and technologies to identify emerging threats, evaluate control effectiveness, and drive remediation that strengthens The clients cyber resilience. The team supports business and technology stakeholders by assessing cyber security risks and ensuring alignment with The Banks security standards and risk appetite. Key Accountabilities Product-Based Risk Assessments Lead end-to-end Product-Based Risk Assessments (PBRA) for critical applications, platforms, and technology services. Analyse application architectures, business processes, information flows, and supporting infrastructure. Identify and assess cyber threats, vulnerabilities, control weaknesses, and potential business impacts. Evaluate the design and effectiveness of security controls using clients security frameworks and standards. Assess residual risks and propose actionable remediation plans. Security Risk Analysis Perform security risk assessments using recognised methodologies and industry frameworks. Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets. Contribute to threat modelling and attack surface analysis activities. Support technology-focused assessments such as cloud, AI, and emerging technology evaluations. Stakeholder Engagement Act as the primary security assessment contact for business and IT stakeholders. Facilitate workshops, interviews, and assessment review sessions. Challenge assumptions and provide expert security guidance to delivery and operations teams. Build trusted relationships across CISO, CTO, Architecture, Risk Management, and Engineering teams. Reporting & Governance Produce high-quality assessment reports, risk summaries, and executive-level communications. Present findings and recommendations to senior management and governance bodies. Track remediation plans and risk treatment activities through closure. Support internal and external audit activities as required. Continuous Improvement Contribute to the evolution of the PBRA service, methodologies, tools, and operating model. Help drive the transition toward data-enabled and automated security assessment capabilities. Identify opportunities to improve efficiency, consistency, and risk coverage across assessments. Support knowledge sharing and mentoring of junior analysts. Required Skills & Experience Technical Skills Strong understanding of cybersecurity principles, controls, and risk management practices. Knowledge of application security, cloud security, infrastructure security, and network security. Experience conducting security assessments, threat modelling, or risk analyses. Familiarity with industry frameworks and standards such as: NIST Cyber Security Framework ISO 27001 CIS Controls Secure Controls Framework (SCF) DORA ANSSI EBIOS RM OWASP Professional Experience Minimum 7 years of experience in Information Security, Cyber Risk, Security Assurance, or Security Architecture. Experience leading complex security assessments across large technology environments. Experience working with senior business and technology stakeholders. Strong report-writing and presentation skills. Personal Competencies Strong analytical and critical-thinking capabilities. Excellent communication and stakeholder management skills. Ability to challenge constructively and influence decision-making. Self-driven with strong ownership and accountability. Pragmatic, risk-based mindset. Comfortable operating in a complex, regulated environment. Please do send across to me the most up to date CV to (url removed) Rates depend on experience and client requirements
Yolk Recruitment
Cyber Security Analyst
Yolk Recruitment
Security Analyst Cardiff, London, Leeds, Manchester or Oxford Hybrid Working Excellent Benefits Are you looking for a role where you'll play a key part in protecting a leading professional services organisation from evolving cyber threats? We're looking for a proactive Security Analyst to join a growing Technology team, working with modern security technologies in a collaborative environment where you'll have the opportunity to influence security operations, improve processes and develop your technical expertise. This is an excellent opportunity for someone with experience in Security Operations or Cyber Security who enjoys investigating incidents, strengthening security controls and working with the latest Microsoft security technologies. What you'll be doing As part of a dedicated Security team, you'll help safeguard the organisation's technology estate by monitoring threats, responding to incidents and continuously improving the firm's overall security posture. Your responsibilities will include: Monitoring and investigating security alerts across the organisation Responding to cyber security incidents and supporting remediation activities Managing and optimising security tools including Microsoft Defender and other enterprise security platforms Supporting vulnerability assessments, penetration testing and security audits Assisting with the implementation of new security technologies and improvements Developing and maintaining security policies, standards and best practice Providing technical guidance to colleagues on security processes and technologies Keeping up to date with emerging cyber threats and recommending improvements About you You'll already have experience working within a Security Operations, Cyber Security or Information Security environment and be passionate about protecting organisations from modern cyber threats. You'll ideally have experience with: Microsoft Defender or similar endpoint protection solutions Security Operations and Incident Response SIEM monitoring and security investigations Email security platforms such as Mimecast or Proofpoint Secure Web Gateway technologies such as Zscaler Vulnerability Management Cyber Essentials and ISO27001 Microsoft security technologies including Defender, Sentinel or Entra Professional certifications such as CompTIA CySA+, Security+ or Microsoft Security Operations are advantageous but by no means essential. Why apply? This is more than just another Security Analyst role. You'll be joining an organisation that genuinely invests in its people, embraces modern technology and encourages continuous learning and professional development. You'll work alongside experienced cyber security professionals, gain exposure to enterprise-scale technologies and have the opportunity to broaden your technical skills while making a real impact on the firm's security strategy. If you're looking for a role where your expertise is valued, your development is supported and no two days are the same, we'd love to hear from you. Apply today or get in touch for a confidential discussion.
Aug 23, 2026
Full time
Security Analyst Cardiff, London, Leeds, Manchester or Oxford Hybrid Working Excellent Benefits Are you looking for a role where you'll play a key part in protecting a leading professional services organisation from evolving cyber threats? We're looking for a proactive Security Analyst to join a growing Technology team, working with modern security technologies in a collaborative environment where you'll have the opportunity to influence security operations, improve processes and develop your technical expertise. This is an excellent opportunity for someone with experience in Security Operations or Cyber Security who enjoys investigating incidents, strengthening security controls and working with the latest Microsoft security technologies. What you'll be doing As part of a dedicated Security team, you'll help safeguard the organisation's technology estate by monitoring threats, responding to incidents and continuously improving the firm's overall security posture. Your responsibilities will include: Monitoring and investigating security alerts across the organisation Responding to cyber security incidents and supporting remediation activities Managing and optimising security tools including Microsoft Defender and other enterprise security platforms Supporting vulnerability assessments, penetration testing and security audits Assisting with the implementation of new security technologies and improvements Developing and maintaining security policies, standards and best practice Providing technical guidance to colleagues on security processes and technologies Keeping up to date with emerging cyber threats and recommending improvements About you You'll already have experience working within a Security Operations, Cyber Security or Information Security environment and be passionate about protecting organisations from modern cyber threats. You'll ideally have experience with: Microsoft Defender or similar endpoint protection solutions Security Operations and Incident Response SIEM monitoring and security investigations Email security platforms such as Mimecast or Proofpoint Secure Web Gateway technologies such as Zscaler Vulnerability Management Cyber Essentials and ISO27001 Microsoft security technologies including Defender, Sentinel or Entra Professional certifications such as CompTIA CySA+, Security+ or Microsoft Security Operations are advantageous but by no means essential. Why apply? This is more than just another Security Analyst role. You'll be joining an organisation that genuinely invests in its people, embraces modern technology and encourages continuous learning and professional development. You'll work alongside experienced cyber security professionals, gain exposure to enterprise-scale technologies and have the opportunity to broaden your technical skills while making a real impact on the firm's security strategy. If you're looking for a role where your expertise is valued, your development is supported and no two days are the same, we'd love to hear from you. Apply today or get in touch for a confidential discussion.
IMPERIAL WAR MUSEUMS
Cyber Assurance & Risk Analyst
IMPERIAL WAR MUSEUMS Lambeth, London
Cyber Assurance & Risk Analyst Location: IWM London Salary : £42,500 to £45,000 per annum Vacancy Type: Permanent, Full Time (36hours per week) Closing Date: 8th of September 2026 At Imperial War Museums, we're driven by a shared purpose: helping people understand conflict and its impact on people's lives, from the First World War through to the present day. Our collections contain millions of items, stories and digital assets that preserve some of the most important moments in modern history. You'll join a collaborative team who work together to protect and make these collections accessible for future generations. It's a unique opportunity to combine cyber security expertise with meaningful work that supports one of the world's leading museums of conflict. Why This Role Matters Cyber security plays a vital role in protecting IWM's systems, services and information assets from an evolving threat landscape. As Cyber Assurance & Risk Analyst, you'll help strengthen the organisation's cyber resilience by ensuring compliance with government and industry security standards, embedding secure-by-design principles into projects and managing cyber risks across our supplier landscape. By delivering key assurance activities, you'll help improve organisational cyber capability and ensure IWM continues to safeguard the services relied upon by colleagues, visitors, researchers and stakeholders. What You'll Be Doing Coordinate and manage IWM's Cyber Essentials certification, including evidence gathering, submission management and remediation tracking. Lead GovAssure submissions through control mapping, evidence collation and stakeholder engagement. Manage compliance against Civil Aviation Authority (CAA) cyber security requirements and other relevant standards. Maintain assurance documentation and support continuous compliance against recognised cyber security frameworks. Embed secure-by-design principles into technology and digital projects from initiation through to delivery. Review proposed solutions and provide assurance that appropriate security controls are implemented before go-live. Own and operate IWM's third-party cyber risk management platform, supporting supplier onboarding, assessments and ongoing monitoring. Identify, assess, manage and escalate cyber risks across the supply chain, tracking remediation activities where required. Produce assurance, compliance and cyber risk reports for governance boards and senior stakeholders. Support cyber governance activities, risk management processes and the maintenance of accurate cyber risk records. Contribute to the development of cyber security policies, standards, controls and continuous improvement initiatives. Provide guidance on cyber compliance matters and work collaboratively with colleagues, suppliers and external partners to support assurance objectives. Support financial administration activities, including purchase orders, invoice processing and departmental administration where required. What We're Looking For We'd love to hear from you if you have: Experience of cyber security governance, assurance, compliance or risk management activities. Knowledge of recognised cyber security frameworks and standards such as Cyber Essentials, NCSC guidance, ISO 27001 or equivalent. Experience managing compliance evidence, audit activities or regulatory submissions. Experience of supplier or third-party cyber risk assessment and management processes. Strong analytical skills with the ability to identify risks and communicate findings clearly to a range of stakeholders. Experience producing reports, dashboards or management information for governance forums and senior audiences. Benefits The benefits listed below are discretionary and IWM reserves the right, with due notice, to vary or withdraw them at any time. Annual Leave: You'll have 25 days of annual leave, with public holidays on top. After 3 years, this increases to 27 days and after 5 years, you ll get 30 days Company Group Pension Plan: Includes competitive employer contributions to your pension starting at 7% to a maximum of 12%. Enhanced Maternity and Paternity Benefits: Celebrate life s milestones with confidence, knowing that our policies support growing families. IWM4me: Tailor your benefits to your unique needs through IWM4me. Access health, protection, and lifestyle benefits at corporate rates, ensuring your holistic well-being. Free Sanitary Products: We prioritise your comfort by providing free sanitary products across all our sites. Retail Discounts: 25% off IWM Cafes, 20% discount in on-site shops, Benefits hub offering retail discounts to several high street shops and MyActive discounts for health and wellbeing based retail discounts Free Entry to IWM Air Shows: Witness the thrill of vintage aircraft at our air shows. To Apply If you feel you are a suitable candidate and would like to work for Imperial War Museum, please click apply to be redirected to our website to complete your application.
Aug 22, 2026
Full time
Cyber Assurance & Risk Analyst Location: IWM London Salary : £42,500 to £45,000 per annum Vacancy Type: Permanent, Full Time (36hours per week) Closing Date: 8th of September 2026 At Imperial War Museums, we're driven by a shared purpose: helping people understand conflict and its impact on people's lives, from the First World War through to the present day. Our collections contain millions of items, stories and digital assets that preserve some of the most important moments in modern history. You'll join a collaborative team who work together to protect and make these collections accessible for future generations. It's a unique opportunity to combine cyber security expertise with meaningful work that supports one of the world's leading museums of conflict. Why This Role Matters Cyber security plays a vital role in protecting IWM's systems, services and information assets from an evolving threat landscape. As Cyber Assurance & Risk Analyst, you'll help strengthen the organisation's cyber resilience by ensuring compliance with government and industry security standards, embedding secure-by-design principles into projects and managing cyber risks across our supplier landscape. By delivering key assurance activities, you'll help improve organisational cyber capability and ensure IWM continues to safeguard the services relied upon by colleagues, visitors, researchers and stakeholders. What You'll Be Doing Coordinate and manage IWM's Cyber Essentials certification, including evidence gathering, submission management and remediation tracking. Lead GovAssure submissions through control mapping, evidence collation and stakeholder engagement. Manage compliance against Civil Aviation Authority (CAA) cyber security requirements and other relevant standards. Maintain assurance documentation and support continuous compliance against recognised cyber security frameworks. Embed secure-by-design principles into technology and digital projects from initiation through to delivery. Review proposed solutions and provide assurance that appropriate security controls are implemented before go-live. Own and operate IWM's third-party cyber risk management platform, supporting supplier onboarding, assessments and ongoing monitoring. Identify, assess, manage and escalate cyber risks across the supply chain, tracking remediation activities where required. Produce assurance, compliance and cyber risk reports for governance boards and senior stakeholders. Support cyber governance activities, risk management processes and the maintenance of accurate cyber risk records. Contribute to the development of cyber security policies, standards, controls and continuous improvement initiatives. Provide guidance on cyber compliance matters and work collaboratively with colleagues, suppliers and external partners to support assurance objectives. Support financial administration activities, including purchase orders, invoice processing and departmental administration where required. What We're Looking For We'd love to hear from you if you have: Experience of cyber security governance, assurance, compliance or risk management activities. Knowledge of recognised cyber security frameworks and standards such as Cyber Essentials, NCSC guidance, ISO 27001 or equivalent. Experience managing compliance evidence, audit activities or regulatory submissions. Experience of supplier or third-party cyber risk assessment and management processes. Strong analytical skills with the ability to identify risks and communicate findings clearly to a range of stakeholders. Experience producing reports, dashboards or management information for governance forums and senior audiences. Benefits The benefits listed below are discretionary and IWM reserves the right, with due notice, to vary or withdraw them at any time. Annual Leave: You'll have 25 days of annual leave, with public holidays on top. After 3 years, this increases to 27 days and after 5 years, you ll get 30 days Company Group Pension Plan: Includes competitive employer contributions to your pension starting at 7% to a maximum of 12%. Enhanced Maternity and Paternity Benefits: Celebrate life s milestones with confidence, knowing that our policies support growing families. IWM4me: Tailor your benefits to your unique needs through IWM4me. Access health, protection, and lifestyle benefits at corporate rates, ensuring your holistic well-being. Free Sanitary Products: We prioritise your comfort by providing free sanitary products across all our sites. Retail Discounts: 25% off IWM Cafes, 20% discount in on-site shops, Benefits hub offering retail discounts to several high street shops and MyActive discounts for health and wellbeing based retail discounts Free Entry to IWM Air Shows: Witness the thrill of vintage aircraft at our air shows. To Apply If you feel you are a suitable candidate and would like to work for Imperial War Museum, please click apply to be redirected to our website to complete your application.
NonStop Consulting
Associate Security Analyst
NonStop Consulting
This is a long-term engagement until 31/03/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract to March 2027, offering rare long-term security in the contracting market. Day rate: Up to (Apply online only) (umbrella) inside IR35. Mission-critical work: Protects key government digital services and internal infrastructure. Career development: Mentor and line manage apprentice analysts, strengthening your leadership profile. The role - Associate Security Analyst As part of the Cyber Defence team, you will be central to detecting, investigating and responding to cyber threats and incidents affecting high-profile services. Triage and investigate security alerts and user reports. Analyse systems, files, network traffic and cloud environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions and contribute to playbooks, plans and knowledge base articles . Act as an escalation point and provide coaching and line management for apprentice security analysts. Participate in an out-of-hours on-call rota , as incidents can arise 24/7. Key requirements Active SC (Security Check) clearance - STRONGLY PREFERED. 2-3+ years experience as a Cyber Security / Security Analyst. Hands-on experience with SIEM (Splunk preferred; Microsoft Sentinel or equivalent also considered). Experience with M365 security tooling (e.g. Microsoft Defender, Sentinel, KQL). Good understanding of threat actors' tools, techniques and procedures . Strong analytical, problem-solving and communication skills. Nice to have Further experience with Splunk . Background working in an Agile environment. Exposure to cloud platforms such as AWS. About our client Our client's cyber and information security function safeguards crucial digital and information assets and enables the secure delivery of major citizen-facing services as well as internal government systems. You would be joining a team with a strong mandate, modern tooling, and a clear mission to improve the cyber resilience of core public services.
Aug 21, 2026
Contractor
This is a long-term engagement until 31/03/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract to March 2027, offering rare long-term security in the contracting market. Day rate: Up to (Apply online only) (umbrella) inside IR35. Mission-critical work: Protects key government digital services and internal infrastructure. Career development: Mentor and line manage apprentice analysts, strengthening your leadership profile. The role - Associate Security Analyst As part of the Cyber Defence team, you will be central to detecting, investigating and responding to cyber threats and incidents affecting high-profile services. Triage and investigate security alerts and user reports. Analyse systems, files, network traffic and cloud environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions and contribute to playbooks, plans and knowledge base articles . Act as an escalation point and provide coaching and line management for apprentice security analysts. Participate in an out-of-hours on-call rota , as incidents can arise 24/7. Key requirements Active SC (Security Check) clearance - STRONGLY PREFERED. 2-3+ years experience as a Cyber Security / Security Analyst. Hands-on experience with SIEM (Splunk preferred; Microsoft Sentinel or equivalent also considered). Experience with M365 security tooling (e.g. Microsoft Defender, Sentinel, KQL). Good understanding of threat actors' tools, techniques and procedures . Strong analytical, problem-solving and communication skills. Nice to have Further experience with Splunk . Background working in an Agile environment. Exposure to cloud platforms such as AWS. About our client Our client's cyber and information security function safeguards crucial digital and information assets and enables the secure delivery of major citizen-facing services as well as internal government systems. You would be joining a team with a strong mandate, modern tooling, and a clear mission to improve the cyber resilience of core public services.
Sopra Steria
Senior SOC Analyst
Sopra Steria Farnborough, Hampshire
Defend Critical Infrastructure. Hunt Threats. Make a Real Impact. Cyber threats never stand stilland neither do we. We're looking for a Senior Security Operations Centre (SOC) Analyst to join our growing Cyber Security team and play a key role in protecting some of the UK's most critical organisations. This is your opportunity to work at the frontline of cyber defence, investigating real-world threa click apply for full job details
Aug 21, 2026
Full time
Defend Critical Infrastructure. Hunt Threats. Make a Real Impact. Cyber threats never stand stilland neither do we. We're looking for a Senior Security Operations Centre (SOC) Analyst to join our growing Cyber Security team and play a key role in protecting some of the UK's most critical organisations. This is your opportunity to work at the frontline of cyber defence, investigating real-world threa click apply for full job details
Senior Ransomware Blockchain Intelligence Analyst
TRM Labs Inc.
TRM Labs Inc. is seeking a Blockchain Intelligence Analyst to conduct high-judgment investigations using on-chain data, OSINT, and threat intelligence to trace ransomware proceeds and identify threat actor infrastructure. You'll generate actionable intelligence for investigations and partner with law enforcement and private sector teams. The role requires deep blockchain tracing expertise, strong analytical skills, and the ability to operate autonomously in a fast-paced environment across global
Aug 21, 2026
Full time
TRM Labs Inc. is seeking a Blockchain Intelligence Analyst to conduct high-judgment investigations using on-chain data, OSINT, and threat intelligence to trace ransomware proceeds and identify threat actor infrastructure. You'll generate actionable intelligence for investigations and partner with law enforcement and private sector teams. The role requires deep blockchain tracing expertise, strong analytical skills, and the ability to operate autonomously in a fast-paced environment across global
Matchtech
Cyber Security Contractors - SC Cleared
Matchtech
Cyber Security Contractors (Multiple Opportunities) SC Cleared 594/day Remote UK Location: UK Remote (occasional client-site visits required) Contract: Inside IR35 Rate: 594 per day (Umbrella) Duration: Until March 2027 Security Clearance: Active SC Clearance Required We are supporting a major, long-term Cyber Security Programme and are seeking experienced SC-cleared professionals across several specialist disciplines. These are excellent opportunities to join a high-profile programme delivering critical security services within a complex environment. Opportunities Available Security Architect (Cloud Security) Key responsibilities include: Cloud security architecture and design assurance Security assessments and risk reviews Development and implementation of security standards, patterns, and best practices Collaboration with technical and business stakeholders to ensure secure-by-design solutions Experience required: Strong cloud security architecture background Experience with enterprise cloud platforms (AWS, Azure, or GCP) Security design and assurance expertise Knowledge of security frameworks and standards Security Operations Analyst Key responsibilities include: Security operations monitoring and analysis Cyber threat intelligence assessment Threat modelling and risk identification Incident investigation and security event analysis Experience required: Security Operations Centre (SOC) or cyber defence experience Hands-on threat intelligence and analysis capability Threat modelling expertise Strong understanding of cyber security technologies and processes Threat Intelligence Analyst Key responsibilities include: Production of threat intelligence reports and assessments Analysis of Indicators of Compromise (IOCs) and Tactics, Techniques & Procedures (TTPs) Tracking emerging cyber threats and threat actors Supporting security architecture and operational security decision-making Experience required: Proven cyber threat intelligence background Experience analysing threat actor activity and attack methodologies Strong reporting and stakeholder engagement skills Knowledge of intelligence frameworks such as MITRE ATT&CK Information Assurance Consultant Key responsibilities include: Information Assurance (IA) and Governance, Risk & Compliance (GRC) activities Quality assurance and quality management support Business Continuity and Disaster Recovery (BCDR) planning and assessment Policy, controls, and compliance reviews Experience required: Strong IA/GRC experience Knowledge of security governance frameworks Experience in quality management and assurance activities BCDR planning and implementation expertise Essential Requirements Active SC Clearance (mandatory) Proven experience within the relevant cyber security discipline Ability to work effectively in complex stakeholder environments Strong communication and reporting skills
Aug 20, 2026
Contractor
Cyber Security Contractors (Multiple Opportunities) SC Cleared 594/day Remote UK Location: UK Remote (occasional client-site visits required) Contract: Inside IR35 Rate: 594 per day (Umbrella) Duration: Until March 2027 Security Clearance: Active SC Clearance Required We are supporting a major, long-term Cyber Security Programme and are seeking experienced SC-cleared professionals across several specialist disciplines. These are excellent opportunities to join a high-profile programme delivering critical security services within a complex environment. Opportunities Available Security Architect (Cloud Security) Key responsibilities include: Cloud security architecture and design assurance Security assessments and risk reviews Development and implementation of security standards, patterns, and best practices Collaboration with technical and business stakeholders to ensure secure-by-design solutions Experience required: Strong cloud security architecture background Experience with enterprise cloud platforms (AWS, Azure, or GCP) Security design and assurance expertise Knowledge of security frameworks and standards Security Operations Analyst Key responsibilities include: Security operations monitoring and analysis Cyber threat intelligence assessment Threat modelling and risk identification Incident investigation and security event analysis Experience required: Security Operations Centre (SOC) or cyber defence experience Hands-on threat intelligence and analysis capability Threat modelling expertise Strong understanding of cyber security technologies and processes Threat Intelligence Analyst Key responsibilities include: Production of threat intelligence reports and assessments Analysis of Indicators of Compromise (IOCs) and Tactics, Techniques & Procedures (TTPs) Tracking emerging cyber threats and threat actors Supporting security architecture and operational security decision-making Experience required: Proven cyber threat intelligence background Experience analysing threat actor activity and attack methodologies Strong reporting and stakeholder engagement skills Knowledge of intelligence frameworks such as MITRE ATT&CK Information Assurance Consultant Key responsibilities include: Information Assurance (IA) and Governance, Risk & Compliance (GRC) activities Quality assurance and quality management support Business Continuity and Disaster Recovery (BCDR) planning and assessment Policy, controls, and compliance reviews Experience required: Strong IA/GRC experience Knowledge of security governance frameworks Experience in quality management and assurance activities BCDR planning and implementation expertise Essential Requirements Active SC Clearance (mandatory) Proven experience within the relevant cyber security discipline Ability to work effectively in complex stakeholder environments Strong communication and reporting skills
Information Security Director
Smart Communications group City Of Westminster, London
Information Security Director We are seeking a highly skilled and experienced Director of Information Security to join our dynamic and growing team. As the Director of Information Security you will play a crucial role in ensuring safety, integrity and privacy, securing our company and data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship and direction. Partner with Product, Engineering, Operations, HR, Legal and Finance functions to embed security into all business operations and change programmes. Collaborate with the CIO to provide a future vision of technology and systems with security in mind. Provide strategic planning, development and delivery of the information security strategy across the business. Lead and direct security operations team in monitoring, detecting, and responding to security incidents and breaches. Champion the adoption of security by design and privacy by design principles, fostering a culture of security. Required Skills and Experience A minimum of 10+ years hands on, proven industry experience in a similar role. Bachelor's or master's degree in computer science, Information Security, or a related field. Industry certifications such as CISSP, CISM, CEH, ECSA, LPT, OSCP, AWS certified security or equivalent are highly desirable. Strong budget planning and financial management capabilities related to security operations, combined with a proactive problem solving attitude and service oriented approach. Experience managing and growing high performing teams. Excellent communication and interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. Benefits Competitive salary commensurate with experience. Extensive health insurance, income protection, life assurance. Subsidised gym membership, leisure travel insurance. Pension contribution and 25 days holiday allowance plus an additional day off for your birthday. Fully remote role with flexible working environment. Equal Opportunity We are an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of colour, religion, sex, national origin, sexual orientation, age, disability, marital status or gender identity. Location UK - Remote
Aug 20, 2026
Full time
Information Security Director We are seeking a highly skilled and experienced Director of Information Security to join our dynamic and growing team. As the Director of Information Security you will play a crucial role in ensuring safety, integrity and privacy, securing our company and data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship and direction. Partner with Product, Engineering, Operations, HR, Legal and Finance functions to embed security into all business operations and change programmes. Collaborate with the CIO to provide a future vision of technology and systems with security in mind. Provide strategic planning, development and delivery of the information security strategy across the business. Lead and direct security operations team in monitoring, detecting, and responding to security incidents and breaches. Champion the adoption of security by design and privacy by design principles, fostering a culture of security. Required Skills and Experience A minimum of 10+ years hands on, proven industry experience in a similar role. Bachelor's or master's degree in computer science, Information Security, or a related field. Industry certifications such as CISSP, CISM, CEH, ECSA, LPT, OSCP, AWS certified security or equivalent are highly desirable. Strong budget planning and financial management capabilities related to security operations, combined with a proactive problem solving attitude and service oriented approach. Experience managing and growing high performing teams. Excellent communication and interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. Benefits Competitive salary commensurate with experience. Extensive health insurance, income protection, life assurance. Subsidised gym membership, leisure travel insurance. Pension contribution and 25 days holiday allowance plus an additional day off for your birthday. Fully remote role with flexible working environment. Equal Opportunity We are an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of colour, religion, sex, national origin, sexual orientation, age, disability, marital status or gender identity. Location UK - Remote
DFIR Lead Cyber Operations Analyst
慨正橡扯 Knutsford, Cheshire
Join Barclays as a DFIR Lead Cyber Operations Analyst, a VP-level role at the centre of the bank's cyber defence, delivering advanced digital forensics and incident response. You will analyse malware, malicious samples and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This is a highly technical, hands on position suited to an experienced cyber or digital forensics professional, with passion for deep investigation, and the ability to produce clear, high quality reporting in a fast paced, high pressure environment. Please note that this role includes an on call support rotation. Occasional additional support may be required, including extended hours and weekend work. To be successful in this role, you will need the following: Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with the ability to clearly articulate complex technical findings to senior stakeholders and non technical business teams. Proven leadership under pressure, including coordinating investigations, managing cross functional stakeholders, and operating effectively within a regulated banking environment. Some other highly valued skills may include: Cloud investigation experience across platforms such as AWS, Azure, or Google Cloud. Scripting and automation capabilities, using languages such as Python, PowerShell, Bash, or JavaScript. Relevant industry certifications, such as GCFA, GNFA, GCFE, or GREM. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job specific technical skills. The successful candidate will be based in Knutsford (Radbroke Hall). Purpose of the role To monitor the performance of operational controls, implement and manage security controls and consider lessons learned in order to protect the bank from potential cyber attacks and respond to threats. Accountabilities Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage. Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise. Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats. Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network. Management of cyber security incidents including remediation & driving to closure. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/processes; deliver continuous improvements and escalate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions. Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
Aug 19, 2026
Full time
Join Barclays as a DFIR Lead Cyber Operations Analyst, a VP-level role at the centre of the bank's cyber defence, delivering advanced digital forensics and incident response. You will analyse malware, malicious samples and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This is a highly technical, hands on position suited to an experienced cyber or digital forensics professional, with passion for deep investigation, and the ability to produce clear, high quality reporting in a fast paced, high pressure environment. Please note that this role includes an on call support rotation. Occasional additional support may be required, including extended hours and weekend work. To be successful in this role, you will need the following: Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with the ability to clearly articulate complex technical findings to senior stakeholders and non technical business teams. Proven leadership under pressure, including coordinating investigations, managing cross functional stakeholders, and operating effectively within a regulated banking environment. Some other highly valued skills may include: Cloud investigation experience across platforms such as AWS, Azure, or Google Cloud. Scripting and automation capabilities, using languages such as Python, PowerShell, Bash, or JavaScript. Relevant industry certifications, such as GCFA, GNFA, GCFE, or GREM. You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job specific technical skills. The successful candidate will be based in Knutsford (Radbroke Hall). Purpose of the role To monitor the performance of operational controls, implement and manage security controls and consider lessons learned in order to protect the bank from potential cyber attacks and respond to threats. Accountabilities Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage. Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise. Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats. Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network. Management of cyber security incidents including remediation & driving to closure. Vice President Expectations To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/processes; deliver continuous improvements and escalate breaches of policies/procedures. If managing a team, they define jobs and responsibilities, planning for the department's future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions. Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
Senior DFIR Lead - Cyber Operations & Incident Response
慨正橡扯 Knutsford, Cheshire
慨正橡扯 is seeking a DFIR Lead Cyber Operations Analyst to lead in cyber defence efforts. This VP-level role involves analyzing malware and network activities, producing quality reports, and working closely with various stakeholders. The ideal candidate will excel in digital forensics, have strong communication skills, and provide leadership during high-pressure situations. Responsibilities include managing security threats and implementing effective controls to protect against cyber attacks.
Aug 19, 2026
Full time
慨正橡扯 is seeking a DFIR Lead Cyber Operations Analyst to lead in cyber defence efforts. This VP-level role involves analyzing malware and network activities, producing quality reports, and working closely with various stakeholders. The ideal candidate will excel in digital forensics, have strong communication skills, and provide leadership during high-pressure situations. Responsibilities include managing security threats and implementing effective controls to protect against cyber attacks.
Senior Crypto Financial Crime Analyst - Hybrid & Flexible
Bvnk Ltd
BVNK is seeking a Senior Financial Crime Intelligence Analyst to lead screening and transaction monitoring across BVNK's digital assets offerings. You will perform in-depth investigations, own cases from the monitoring systems, and mitigate financial crime risks in a fast-paced, evolving environment. You will work with modern tools to detect threats, collaborate with stakeholders, and contribute to a robust control framework while supporting both crypto and fiat investigations.
Aug 19, 2026
Full time
BVNK is seeking a Senior Financial Crime Intelligence Analyst to lead screening and transaction monitoring across BVNK's digital assets offerings. You will perform in-depth investigations, own cases from the monitoring systems, and mitigate financial crime risks in a fast-paced, evolving environment. You will work with modern tools to detect threats, collaborate with stakeholders, and contribute to a robust control framework while supporting both crypto and fiat investigations.
Senior Financial Crime Intelligence Analyst - Crypto UK
Bvnk Ltd
Senior Financial Crime Intelligence Analyst - Crypto UK About us: BVNK is the stablecoin-powered financial stack for enterprises. We're now part of Mastercard, and together we're building a network for every form of money - one that delivers more reach, more capability and more choice. We enable businesses to build financial products, unlock new markets, and move money in seconds across 130+ countries, with 40+ licenses for fiat and digital assets globally. Processing billions annually, we empower enterprises worldwide to send, receive, convert, and settle stablecoins and fiat seamlessly through a single integration. Our mission is to accelerate global money movement, and we're assembling a world-class team to make it happen. Trusted by industry leaders like Corpay, Worldpay, Deel, and Flywire, we deliver the infrastructure that makes new forms of money usable within the financial systems customers already rely on today. By combining Mastercard's global payment reach and trusted networks with BVNK's stablecoin infrastructure, we're building the trusted operating layer for the evolution of money movement, helping customers participate in emerging digital networks without having to rebuild their businesses around every new innovation. We're a diverse team spread across EMEA, North America, and APAC, with a shared belief that stablecoins are the new infrastructure layer for financial services, and that BVNK is at the forefront of this shift. We're incredibly honored to have been recognized by: CNBC World's Top Fintech Companies (2026) FXC Intelligence Top 100 Cross-border Payment Companies (2026) Newsweek's The Top 100 Global Most Loved Workplaces (three years running, most recently 2025) LinkedIn as one of the Top 20 Startups in the UK (2025) About this role in the team: We are currently looking for a Senior Crypto Analyst to join our fast growing FCI team As a Senior Financial Crime Intelligence Analyst, you'll play a key role in handling screening and transaction monitoring alerts to prevent bad actors from processing transactions through BVNK. You'll also conduct in-depth analysis and thorough investigations to address complex and varied financial crime threats. You'll be taking ownership of cases triggered by BVNK's financial crime systems and controls, focussing primarily on BVNK's digital assets offering, and mitigating financial crime risks for BVNK. While this role focuses on BVNK's digital assets offering, your cases will inevitably crossover with the world of fiat currency and you'll have the opportunity to support cutting-edge investigations in fiat and digital assets. We are seeking a candidate who can commit to a full time schedule working from 9 a.m. to 6 p.m. (CEST). We are looking for a team player; someone who is adaptable and enjoys solving complex problems in a constantly changing environment. You must be adept at managing competing priorities, and work well in a highly demanding environment. You will be comfortable delivering high quality investigations at pace, and presenting your findings and recommendations to senior stakeholders. As a Senior Financial Crime Intelligence Analyst, your day-to-day role will be varied, but will include tasks such as: Reviewing of sanctions and watchlist screening alerts on entities and individuals on relevant lists; Management of end-to-end financial crime investigations stemming from BVNK's transaction monitoring system, Trade Surveillance, payment screening tools, blockchain analytics provider, and other triggers; Identify opportunities to improve workflows and business processes through the effective use of AI tools and automation; Receiving escalations from, and providing coaching to, more junior team members; Drafting of Suspicious Activity Reports (SARs) for submission to the relevant authorities; Working closely with colleagues responsible for BVNK's transaction monitoring systems; identifying and testing changes to the rules in our transaction monitoring system; Seeking out and escalating opportunities to enhance BVNK's control environment. We'd love to hear from you if: You have at least 3 years' experience in crypto transaction monitoring within a regulated institution or digital assets setting. Experience in a B2B context is essential, as we are primarily a B2B business. Familiarity with B2C environments is a plus, and experience across both crypto and fiat transaction monitoring environments would be advantageous; You have experience reviewing sanctions and watchlist screening alerts, within a regulated institution or digital asset setting; You have experience using tools such as Chainalysis, Elliptic, or TRM (or equivalent). Any blockchain related investigative certifications are desirable but not required; Experience leveraging AI tools and technologies to streamline processes, automate routine tasks, and drive operational improvements; Strong knowledge of AML/CTF regulations, financial crime typologies, and risk-based compliance frameworks is required; Knowledge of Trade Surveillance would be an asset; You've drafted and submitted Suspicious Activity Reports (SARs); You're a motivated and proactive individual contributor, who takes pride in the quality of your work; You're comfortable working in a fast paced, evolving and demanding environment, often with competing priorities; You're happy working with a high degree of autonomy and managing evolving priorities to deliver against the team's strategy; You have an interest in digital assets, and are looking for an opportunity to expand your knowledge in this space; You have exceptional written and verbal English; What you can expect from us: Fair and competitive salary at every stage of your growth Flexible working hours, with hybrid working at its heart A culture built on passionate growth-minded people A flexible approach to holiday Opportunities to travel to our offices around the world An open and creative environment where you can help us define the future of BVNK, its culture, and its opportunity sets At BVNK, we are focused on building a diverse and inclusive team. While you may not meet all of our requirements, we'd encourage you to apply if you meet the majority of our expectations. You may be a great fit for this role or another role in our team.
Aug 19, 2026
Full time
Senior Financial Crime Intelligence Analyst - Crypto UK About us: BVNK is the stablecoin-powered financial stack for enterprises. We're now part of Mastercard, and together we're building a network for every form of money - one that delivers more reach, more capability and more choice. We enable businesses to build financial products, unlock new markets, and move money in seconds across 130+ countries, with 40+ licenses for fiat and digital assets globally. Processing billions annually, we empower enterprises worldwide to send, receive, convert, and settle stablecoins and fiat seamlessly through a single integration. Our mission is to accelerate global money movement, and we're assembling a world-class team to make it happen. Trusted by industry leaders like Corpay, Worldpay, Deel, and Flywire, we deliver the infrastructure that makes new forms of money usable within the financial systems customers already rely on today. By combining Mastercard's global payment reach and trusted networks with BVNK's stablecoin infrastructure, we're building the trusted operating layer for the evolution of money movement, helping customers participate in emerging digital networks without having to rebuild their businesses around every new innovation. We're a diverse team spread across EMEA, North America, and APAC, with a shared belief that stablecoins are the new infrastructure layer for financial services, and that BVNK is at the forefront of this shift. We're incredibly honored to have been recognized by: CNBC World's Top Fintech Companies (2026) FXC Intelligence Top 100 Cross-border Payment Companies (2026) Newsweek's The Top 100 Global Most Loved Workplaces (three years running, most recently 2025) LinkedIn as one of the Top 20 Startups in the UK (2025) About this role in the team: We are currently looking for a Senior Crypto Analyst to join our fast growing FCI team As a Senior Financial Crime Intelligence Analyst, you'll play a key role in handling screening and transaction monitoring alerts to prevent bad actors from processing transactions through BVNK. You'll also conduct in-depth analysis and thorough investigations to address complex and varied financial crime threats. You'll be taking ownership of cases triggered by BVNK's financial crime systems and controls, focussing primarily on BVNK's digital assets offering, and mitigating financial crime risks for BVNK. While this role focuses on BVNK's digital assets offering, your cases will inevitably crossover with the world of fiat currency and you'll have the opportunity to support cutting-edge investigations in fiat and digital assets. We are seeking a candidate who can commit to a full time schedule working from 9 a.m. to 6 p.m. (CEST). We are looking for a team player; someone who is adaptable and enjoys solving complex problems in a constantly changing environment. You must be adept at managing competing priorities, and work well in a highly demanding environment. You will be comfortable delivering high quality investigations at pace, and presenting your findings and recommendations to senior stakeholders. As a Senior Financial Crime Intelligence Analyst, your day-to-day role will be varied, but will include tasks such as: Reviewing of sanctions and watchlist screening alerts on entities and individuals on relevant lists; Management of end-to-end financial crime investigations stemming from BVNK's transaction monitoring system, Trade Surveillance, payment screening tools, blockchain analytics provider, and other triggers; Identify opportunities to improve workflows and business processes through the effective use of AI tools and automation; Receiving escalations from, and providing coaching to, more junior team members; Drafting of Suspicious Activity Reports (SARs) for submission to the relevant authorities; Working closely with colleagues responsible for BVNK's transaction monitoring systems; identifying and testing changes to the rules in our transaction monitoring system; Seeking out and escalating opportunities to enhance BVNK's control environment. We'd love to hear from you if: You have at least 3 years' experience in crypto transaction monitoring within a regulated institution or digital assets setting. Experience in a B2B context is essential, as we are primarily a B2B business. Familiarity with B2C environments is a plus, and experience across both crypto and fiat transaction monitoring environments would be advantageous; You have experience reviewing sanctions and watchlist screening alerts, within a regulated institution or digital asset setting; You have experience using tools such as Chainalysis, Elliptic, or TRM (or equivalent). Any blockchain related investigative certifications are desirable but not required; Experience leveraging AI tools and technologies to streamline processes, automate routine tasks, and drive operational improvements; Strong knowledge of AML/CTF regulations, financial crime typologies, and risk-based compliance frameworks is required; Knowledge of Trade Surveillance would be an asset; You've drafted and submitted Suspicious Activity Reports (SARs); You're a motivated and proactive individual contributor, who takes pride in the quality of your work; You're comfortable working in a fast paced, evolving and demanding environment, often with competing priorities; You're happy working with a high degree of autonomy and managing evolving priorities to deliver against the team's strategy; You have an interest in digital assets, and are looking for an opportunity to expand your knowledge in this space; You have exceptional written and verbal English; What you can expect from us: Fair and competitive salary at every stage of your growth Flexible working hours, with hybrid working at its heart A culture built on passionate growth-minded people A flexible approach to holiday Opportunities to travel to our offices around the world An open and creative environment where you can help us define the future of BVNK, its culture, and its opportunity sets At BVNK, we are focused on building a diverse and inclusive team. While you may not meet all of our requirements, we'd encourage you to apply if you meet the majority of our expectations. You may be a great fit for this role or another role in our team.
SOC Analyst Programme
Newto Training Wolverhampton, Staffordshire
SOC Analyst Programme - No Experience Required This is a self-funded career programme with a guaranteed job on completion or 100% of your course fees back Train. Certify. Get Hired. Are you looking to start a career in Cyber Security but don't know where to begin? With cyber threats continuing to rise, organisations across the UK are actively investing in cyber security talent. Newto Training's Cyber Security Career Programme is designed to help aspiring professionals gain the qualifications, practical experience and support needed to secure their first role in the industry. Whether you're looking for a complete career change, returning to work, leaving the Armed Forces, or seeking a future-proof career, we'll help you build the skills employers need. Please note: this is a self-funded programme costing around £190 per month How Our Career Programme Works: Over 100 hours of live instructor-led online training delivered by experienced industry professionals Four industry-recognised certifications (exam voucher and exam resit support included): Microsoft Azure Fundamentals (AZ-900) CompTIA Security+ CompTIA CySA+ Forescout Certified Security Associate (FSCA) Practical, real-world project work designed to help you develop hands-on skills Dedicated 1-to-1 tutor support throughout your learning journey CV support, interview preparation, and career coaching Access to our employer network and recruitment partners Starting Salaries Upon successful completion of the programme, we guarantee a starting salary of up to £45,000. Who Is This Programme For? This programme is designed for individuals with little or no previous experience. You may be: Looking for a career change A recent school, college or university leaver Currently working in another industry Leaving the Armed Forces Interested in technology and problem-solving The most important qualities are a willingness to learn, good communication skills and a genuine interest in changing your career. Please note: this is a self-funded programme costing around £190 per month Our Job Guarantee Successfully complete the programme and meet the agreed career support requirements, and we guarantee you'll receive a job offer within 6 months. If not, we'll refund 100% of your course fees. Full T&Cs available. Ready to Start Your New Career? Click 'Apply Now' to speak with an Advisor and take the first step towards a rewarding career in one of the UK's fastest-growing sectors.
Aug 18, 2026
Full time
SOC Analyst Programme - No Experience Required This is a self-funded career programme with a guaranteed job on completion or 100% of your course fees back Train. Certify. Get Hired. Are you looking to start a career in Cyber Security but don't know where to begin? With cyber threats continuing to rise, organisations across the UK are actively investing in cyber security talent. Newto Training's Cyber Security Career Programme is designed to help aspiring professionals gain the qualifications, practical experience and support needed to secure their first role in the industry. Whether you're looking for a complete career change, returning to work, leaving the Armed Forces, or seeking a future-proof career, we'll help you build the skills employers need. Please note: this is a self-funded programme costing around £190 per month How Our Career Programme Works: Over 100 hours of live instructor-led online training delivered by experienced industry professionals Four industry-recognised certifications (exam voucher and exam resit support included): Microsoft Azure Fundamentals (AZ-900) CompTIA Security+ CompTIA CySA+ Forescout Certified Security Associate (FSCA) Practical, real-world project work designed to help you develop hands-on skills Dedicated 1-to-1 tutor support throughout your learning journey CV support, interview preparation, and career coaching Access to our employer network and recruitment partners Starting Salaries Upon successful completion of the programme, we guarantee a starting salary of up to £45,000. Who Is This Programme For? This programme is designed for individuals with little or no previous experience. You may be: Looking for a career change A recent school, college or university leaver Currently working in another industry Leaving the Armed Forces Interested in technology and problem-solving The most important qualities are a willingness to learn, good communication skills and a genuine interest in changing your career. Please note: this is a self-funded programme costing around £190 per month Our Job Guarantee Successfully complete the programme and meet the agreed career support requirements, and we guarantee you'll receive a job offer within 6 months. If not, we'll refund 100% of your course fees. Full T&Cs available. Ready to Start Your New Career? Click 'Apply Now' to speak with an Advisor and take the first step towards a rewarding career in one of the UK's fastest-growing sectors.

Modal Window

  • Home
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Google Plus
  • LinkedIn
Parent and Partner sites: IT Job Board | Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | Construction Job Board | Property jobs | myJobsnearme.com | Jobs near me
© 2008-2026 Jobsite Jobs | Designed by Web Design Agency