About the RoleAs a Senior Cloud Security Analyst, you'll play a key role in protecting cloud infrastructure and services through proactive monitoring, threat detection and incident response. Working within a collaborative Security Operations function, you'll analyse security events, investigate emerging threats and help strengthen the organisation's overall cyber resilience.This role offers the opportunity to work across modern cloud platforms, partnering with infrastructure, engineering and application teams to improve security controls, enhance detection capabilities and support secure cloud operations.Key ResponsibilitiesMonitor and investigate security events across Azure, AWS and hybrid cloud environments using SIEM, CSPM and native cloud security services.Perform detailed triage of alerts to identify genuine threats, eliminate false positives and determine appropriate remediation actions.Lead or support investigations into cloud-based security incidents, ensuring timely containment, recovery and accurate documentation.Analyse authentication activity, privileged access events, API usage and configuration changes to identify suspicious behaviour and potential compromise.Work alongside Security Operations, Infrastructure and DevOps teams to coordinate effective responses to security incidents.Recommend improvements to detection logic, alert quality and monitoring coverage based on operational findings and emerging threats.Develop and maintain security use cases that improve visibility across cloud workloads and services.Contribute to threat hunting activities by identifying indicators of compromise and analysing attacker techniques.Produce clear technical reports and communicate investigation findings to both technical and non-technical stakeholders.Participate in security improvement initiatives, helping implement new technologies, processes and operational controls.Keep up to date with developments in cloud security, attacker methodologies and industry best practices to strengthen organisational security.Technical SkillsExperience in several of the following areas would be advantageous:Microsoft Azure SecurityAWS Security ServicesGoogle Cloud Platform (desirable)Microsoft SentinelKusto Query Language (KQL)CloudTrail, Azure Activity Logs and cloud audit loggingCloud Security Posture Management (CSPM)CrowdStrike Falcon Cloud SecurityMicrosoft Defender SuiteKubernetes security conceptsIdentity and Access Management (IAM)Privileged Access ManagementMicrosoft Entra ID (Azure AD)MITRE ATT&CK FrameworkThreat IntelligenceIncident ResponseThreat HuntingSIEM TechnologiesSecurity MonitoringSecurity Operations (SOC)Cloud Networking FundamentalsWhat You'll BringExperience working within a Security Operations Centre or Cloud Security environment.Strong analytical and investigative skills with the ability to prioritise and manage multiple security events.Confidence interpreting security telemetry and identifying indicators of malicious activity.Excellent problem-solving skills and the ability to make informed decisions during security incidents.Strong communication skills with the ability to present technical findings clearly.A collaborative approach to working with infrastructure, engineering and operational teams.A proactive mindset focused on continuous improvement and operational excellence.Desirable QualificationsMicrosoft SC-200Microsoft AZ-500AWS Certified Security - SpecialtyCertified Kubernetes Security Specialist (CKS)CompTIA Security+CISSPGIAC certificationsRelevant cloud or cyber security certifications To speak in absolute confidence about this opportunity please send an up-to-date CV via the link provided or contact Senior Recruitment Consultant Stuart Kennedy at MCS Group on or . Even if this position is not right for you, we may have others that are. Please visit MCS Group to view a wide selection of our current jobs.
Aug 26, 2026
Full time
About the RoleAs a Senior Cloud Security Analyst, you'll play a key role in protecting cloud infrastructure and services through proactive monitoring, threat detection and incident response. Working within a collaborative Security Operations function, you'll analyse security events, investigate emerging threats and help strengthen the organisation's overall cyber resilience.This role offers the opportunity to work across modern cloud platforms, partnering with infrastructure, engineering and application teams to improve security controls, enhance detection capabilities and support secure cloud operations.Key ResponsibilitiesMonitor and investigate security events across Azure, AWS and hybrid cloud environments using SIEM, CSPM and native cloud security services.Perform detailed triage of alerts to identify genuine threats, eliminate false positives and determine appropriate remediation actions.Lead or support investigations into cloud-based security incidents, ensuring timely containment, recovery and accurate documentation.Analyse authentication activity, privileged access events, API usage and configuration changes to identify suspicious behaviour and potential compromise.Work alongside Security Operations, Infrastructure and DevOps teams to coordinate effective responses to security incidents.Recommend improvements to detection logic, alert quality and monitoring coverage based on operational findings and emerging threats.Develop and maintain security use cases that improve visibility across cloud workloads and services.Contribute to threat hunting activities by identifying indicators of compromise and analysing attacker techniques.Produce clear technical reports and communicate investigation findings to both technical and non-technical stakeholders.Participate in security improvement initiatives, helping implement new technologies, processes and operational controls.Keep up to date with developments in cloud security, attacker methodologies and industry best practices to strengthen organisational security.Technical SkillsExperience in several of the following areas would be advantageous:Microsoft Azure SecurityAWS Security ServicesGoogle Cloud Platform (desirable)Microsoft SentinelKusto Query Language (KQL)CloudTrail, Azure Activity Logs and cloud audit loggingCloud Security Posture Management (CSPM)CrowdStrike Falcon Cloud SecurityMicrosoft Defender SuiteKubernetes security conceptsIdentity and Access Management (IAM)Privileged Access ManagementMicrosoft Entra ID (Azure AD)MITRE ATT&CK FrameworkThreat IntelligenceIncident ResponseThreat HuntingSIEM TechnologiesSecurity MonitoringSecurity Operations (SOC)Cloud Networking FundamentalsWhat You'll BringExperience working within a Security Operations Centre or Cloud Security environment.Strong analytical and investigative skills with the ability to prioritise and manage multiple security events.Confidence interpreting security telemetry and identifying indicators of malicious activity.Excellent problem-solving skills and the ability to make informed decisions during security incidents.Strong communication skills with the ability to present technical findings clearly.A collaborative approach to working with infrastructure, engineering and operational teams.A proactive mindset focused on continuous improvement and operational excellence.Desirable QualificationsMicrosoft SC-200Microsoft AZ-500AWS Certified Security - SpecialtyCertified Kubernetes Security Specialist (CKS)CompTIA Security+CISSPGIAC certificationsRelevant cloud or cyber security certifications To speak in absolute confidence about this opportunity please send an up-to-date CV via the link provided or contact Senior Recruitment Consultant Stuart Kennedy at MCS Group on or . Even if this position is not right for you, we may have others that are. Please visit MCS Group to view a wide selection of our current jobs.
A cybersecurity firm in the United Kingdom seeks a Principal Consultant, IGA to lead Identity Governance solutions and mentor a team. The role requires extensive experience in IAM and SailPoint, focusing on delivering high-quality outcomes, customer engagement, and strategic project leadership. The ideal candidate will have solid technical skills, excellent communication abilities, and a history of successful project implementations. This position offers an opportunity to contribute to innovative cybersecurity solutions.
Aug 26, 2026
Full time
A cybersecurity firm in the United Kingdom seeks a Principal Consultant, IGA to lead Identity Governance solutions and mentor a team. The role requires extensive experience in IAM and SailPoint, focusing on delivering high-quality outcomes, customer engagement, and strategic project leadership. The ideal candidate will have solid technical skills, excellent communication abilities, and a history of successful project implementations. This position offers an opportunity to contribute to innovative cybersecurity solutions.
We help the world Be Everyday Ready . Today's threatscape is relentless. So are we. At Cyderes, we specialize in building practical IAM, exposure management, and risk programs, and stopping active threats fast with MDR that works with your existing security tools - all augmented by AI and driven by seasoned operators. Our tireless global team is laser-focused on cybersecurity, arming organizations with the people, platforms, and perspectives they need to conquer whatever tomorrow throws their way. About the Role The Principal Consultant, IGA will play a critical leadership role in delivering Identity Governance and Administration (IGA) solutions while guiding and mentoring a team of consultants across multiple client engagements. The successful candidate will serve as a trusted advisor to customers, providing strategic guidance and subject matter expertise across the broader Identity and Access Management (IAM) domain. You will work closely with client stakeholders, security leaders, and technical teams to design, architect, and implement scalable identity governance solutions that align with business objectives and security best practices. The Principal Consultant will also be responsible for mentoring junior consultants, reviewing solution designs, and ensuring project teams follow best practices throughout the delivery lifecycle. Excellent communication skills-both written and verbal-are essential, as the role involves presenting solutions to technical and executive stakeholders, documenting architectures, and facilitating workshops with clients. In addition to technical expertise, the Principal Consultant will contribute to thought leadership, delivery excellence, and continuous improvement within the practice by sharing knowledge, refining methodologies, and helping drive innovation across identity governance services. Responsibilities Serve as a product and domain expert in Identity & Access Management (IAM), with a strong focus on SailPoint solutions. Lead the technical delivery of IAM implementation projects, ensuring successful deployment and high-quality outcomes. Drive strategic IAM assessments and roadmap discussions with customers and internal stakeholders at Cyderes. Ensure technical designs align with customer requirements, use cases, and best practices. Support pre sales activities, including developing client focused proposals and leading technical proofs of concept (PoCs). Collaborate closely with Project Services and/or Engagement Managers to identify, prioritize, and catalog technical requirements, and map them to project use cases and sprint plans. Identify, qualify, and help develop new and existing customer opportunities. Build and maintain strong relationships with both technical and business stakeholders. Mentor and coach junior consultants, supporting their professional growth and project success. Share best practices and knowledge with the team to strengthen and evolve the IAM Center of Excellence. Requirements 10+ years of experience in consulting and Identity & Access Management (IAM). 6+ years of hands on experience designing and deploying SailPoint solutions. Experience with large scale implementations supporting 50K+ users. Strong experience developing complex lifecycle workflows and custom connectors. Experience onboarding applications with automated provisioning. Skilled in configuring custom reports and dashboards. Experience with role mining and implementing RBAC/ABAC models. 4+ years of experience leading large, strategic projects or programs in a technical leadership capacity. Experience with web technologies such as XML, SPML, Web Services (SOAP/REST), and web/application servers. Experience working with databases such as Oracle, Sybase, MSSQL, and MySQL. Bachelor's degree in IT or a related field, or equivalent technical and business experience. Strong customer engagement and technical leadership skills. Excellent problem solving and analytical abilities. Proven team player with strong interpersonal and communication (written and verbal) skills. Ability to motivate and guide teams to achieve high performance. Experience working remotely and leading virtual project teams. Ability to manage multiple projects and workstreams simultaneously. SailPoint Engineer Certification preferred; CISSP or CISM is a plus. Willingness to travel up to 30% annually. Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status. Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
Aug 26, 2026
Full time
We help the world Be Everyday Ready . Today's threatscape is relentless. So are we. At Cyderes, we specialize in building practical IAM, exposure management, and risk programs, and stopping active threats fast with MDR that works with your existing security tools - all augmented by AI and driven by seasoned operators. Our tireless global team is laser-focused on cybersecurity, arming organizations with the people, platforms, and perspectives they need to conquer whatever tomorrow throws their way. About the Role The Principal Consultant, IGA will play a critical leadership role in delivering Identity Governance and Administration (IGA) solutions while guiding and mentoring a team of consultants across multiple client engagements. The successful candidate will serve as a trusted advisor to customers, providing strategic guidance and subject matter expertise across the broader Identity and Access Management (IAM) domain. You will work closely with client stakeholders, security leaders, and technical teams to design, architect, and implement scalable identity governance solutions that align with business objectives and security best practices. The Principal Consultant will also be responsible for mentoring junior consultants, reviewing solution designs, and ensuring project teams follow best practices throughout the delivery lifecycle. Excellent communication skills-both written and verbal-are essential, as the role involves presenting solutions to technical and executive stakeholders, documenting architectures, and facilitating workshops with clients. In addition to technical expertise, the Principal Consultant will contribute to thought leadership, delivery excellence, and continuous improvement within the practice by sharing knowledge, refining methodologies, and helping drive innovation across identity governance services. Responsibilities Serve as a product and domain expert in Identity & Access Management (IAM), with a strong focus on SailPoint solutions. Lead the technical delivery of IAM implementation projects, ensuring successful deployment and high-quality outcomes. Drive strategic IAM assessments and roadmap discussions with customers and internal stakeholders at Cyderes. Ensure technical designs align with customer requirements, use cases, and best practices. Support pre sales activities, including developing client focused proposals and leading technical proofs of concept (PoCs). Collaborate closely with Project Services and/or Engagement Managers to identify, prioritize, and catalog technical requirements, and map them to project use cases and sprint plans. Identify, qualify, and help develop new and existing customer opportunities. Build and maintain strong relationships with both technical and business stakeholders. Mentor and coach junior consultants, supporting their professional growth and project success. Share best practices and knowledge with the team to strengthen and evolve the IAM Center of Excellence. Requirements 10+ years of experience in consulting and Identity & Access Management (IAM). 6+ years of hands on experience designing and deploying SailPoint solutions. Experience with large scale implementations supporting 50K+ users. Strong experience developing complex lifecycle workflows and custom connectors. Experience onboarding applications with automated provisioning. Skilled in configuring custom reports and dashboards. Experience with role mining and implementing RBAC/ABAC models. 4+ years of experience leading large, strategic projects or programs in a technical leadership capacity. Experience with web technologies such as XML, SPML, Web Services (SOAP/REST), and web/application servers. Experience working with databases such as Oracle, Sybase, MSSQL, and MySQL. Bachelor's degree in IT or a related field, or equivalent technical and business experience. Strong customer engagement and technical leadership skills. Excellent problem solving and analytical abilities. Proven team player with strong interpersonal and communication (written and verbal) skills. Ability to motivate and guide teams to achieve high performance. Experience working remotely and leading virtual project teams. Ability to manage multiple projects and workstreams simultaneously. SailPoint Engineer Certification preferred; CISSP or CISM is a plus. Willingness to travel up to 30% annually. Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status. Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Aug 26, 2026
Full time
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
OT Cyber Security Risk Consultant - Outside - SC Cleared Location: Reading, c.3 days a week Charge rate: £550 IR35: Outside Clearance: SC Nationality: Sole British Start date: ASAP Duration: 12 months Role Summary Support the delivery of IEC 62443-3-2 cyber security risk assessments across approximately 33 OT/industrial systems, working closely with engineering, security, and project stakeholders click apply for full job details
Aug 25, 2026
Contractor
OT Cyber Security Risk Consultant - Outside - SC Cleared Location: Reading, c.3 days a week Charge rate: £550 IR35: Outside Clearance: SC Nationality: Sole British Start date: ASAP Duration: 12 months Role Summary Support the delivery of IEC 62443-3-2 cyber security risk assessments across approximately 33 OT/industrial systems, working closely with engineering, security, and project stakeholders click apply for full job details
hackajob is partnering directly with BAE Systems Digital Intelligence to hire for this role. Location(s): UK, Europe & Africa : UK : Frimley UK, Europe & Africa : UK : London UK, Europe & Africa : UK : Manchester Job Title: Security Consultant - Cyber Assurance Focus Location: Hybrid , London, Frimley We offer a range of hybrid and flexible working arrangements - please speak to your recrui click apply for full job details
Aug 25, 2026
Full time
hackajob is partnering directly with BAE Systems Digital Intelligence to hire for this role. Location(s): UK, Europe & Africa : UK : Frimley UK, Europe & Africa : UK : London UK, Europe & Africa : UK : Manchester Job Title: Security Consultant - Cyber Assurance Focus Location: Hybrid , London, Frimley We offer a range of hybrid and flexible working arrangements - please speak to your recrui click apply for full job details
ZeroFox seeks an Intelligence Analyst (Arabic Language) to join the ZeroFox Services and Analysis Team, you will collect information to identify threats, and generate intelligence to assess risk in relevance to client needs. Intelligence activities can include researching current and emerging threats issues covering physical security, cyber security, geopolitical, reputation risk and compliance issues. The Intelligence Analyst will have an investigative or analytical background and demonstrated exceptional analytic prowess in areas such as trend analysis and pattern recognition, using independent critical thinking and judgment to act, lead, initiate and/or recommend next steps. Discretion, teamwork, and creativity are a must. Key Responsibilities include: Learn and employ ZeroFox patented technology to identify and analyze relevant information collected from the Internet, based on client-specific criteria, to assemble relevant findings for daily intelligence and recurring reporting; Assist in customer care and all production aspects covering the range of assigned duties. Support and /or lead recurring deliverables and touchpoints (ad hoc / daily / weekly / monthly / quarterly and / or annual): Security/Incident Alerts Intelligence Reports Trend and summary reports Strategic assessments and reviews Client briefings Support collection enhancement with ongoing and proactive collaboration with Collection Management and 24x7 support. Dedication and willingness to provide support in response to ad hoc threats and periods of increased risk. This may entail on occasion: Ad hoc investigations and assessments Ancillary threat monitoring outside core business hours Proactive professional development through company trainings, industry certifications, and seeking new opportunities to maintain and grow relevant knowledge and skillsets. Identify and communicate enhancement opportunities and improvement ideas for the department's operations. Qualifying Requirements: Written and spoken fluency in Arabic Experience in open source and social media research, or investigations, typically obtained in 2-3 years; ability to connect the dots; Creativity in leveraging internet search techniques and methods; Ability to determine the credibility, value, significance, and relevancy of information from different data sources to produce clear, concise, and timely analytical products; Strong written and oral communication skills; comfortable with providing briefings and presentations. Experience producing short and long form reports, applying BLUF or similar models; Comfort working independently and in teams; Experience with some of the following: Social Media Platforms, blogs, IRC, Deep / Darkweb , and message boards; Ability to collect, authenticate, validate and document online evidence; Proficient with at least one online investigative tool, such as Whois, Ping, Traceroute, etc; Proficient in Google Suite of programs; Preferred Experience: Public or private sector experience as an analyst, researcher, investigator or consultant supporting a security, risk or due diligence function. Experience in conducting studies and making recommendations to identify threat vectors, threat actors, and threat trends Experience in briefing decision-makers and senior leaders; High degree of knowledge of Social Media Platforms, blogs, IRC, message boards, Deep/Darkweb; Knowledge of IPv4, IPv6, DNS records, E-mails Headers, P2P; Possession of excellent project/team leadership, development, and client relationship skills; Knowledge and familiarity with relevant threat landscapes or industry practice areas such as cybercrime, online fraud, physical/corporate security, activism, hacktivism, reputation risk, travel security, geopolitical or policy issues Bachelor's degree with relevant coursework Education / Training Requirements: Bachelor's Degree Benefits Competitive compensation Community-driven culture with employee events Generous time offComprehensive private insurance and EAP Fun, modern workspace Respectful and nourishing work environment, where every opinion is heard and everyone is encouraged to be an active part of the organizational culture Physical and Sensory Requirements: Mobility, walking, climbing, sitting, standing, reaching, bending, lifting (minimum of 10 lbs), fine eye-hand coordination, ability to read, write, listen and speak clearly, the ability to understand and follow written and oral instructions and directions, ability to travel =/
Aug 25, 2026
Full time
ZeroFox seeks an Intelligence Analyst (Arabic Language) to join the ZeroFox Services and Analysis Team, you will collect information to identify threats, and generate intelligence to assess risk in relevance to client needs. Intelligence activities can include researching current and emerging threats issues covering physical security, cyber security, geopolitical, reputation risk and compliance issues. The Intelligence Analyst will have an investigative or analytical background and demonstrated exceptional analytic prowess in areas such as trend analysis and pattern recognition, using independent critical thinking and judgment to act, lead, initiate and/or recommend next steps. Discretion, teamwork, and creativity are a must. Key Responsibilities include: Learn and employ ZeroFox patented technology to identify and analyze relevant information collected from the Internet, based on client-specific criteria, to assemble relevant findings for daily intelligence and recurring reporting; Assist in customer care and all production aspects covering the range of assigned duties. Support and /or lead recurring deliverables and touchpoints (ad hoc / daily / weekly / monthly / quarterly and / or annual): Security/Incident Alerts Intelligence Reports Trend and summary reports Strategic assessments and reviews Client briefings Support collection enhancement with ongoing and proactive collaboration with Collection Management and 24x7 support. Dedication and willingness to provide support in response to ad hoc threats and periods of increased risk. This may entail on occasion: Ad hoc investigations and assessments Ancillary threat monitoring outside core business hours Proactive professional development through company trainings, industry certifications, and seeking new opportunities to maintain and grow relevant knowledge and skillsets. Identify and communicate enhancement opportunities and improvement ideas for the department's operations. Qualifying Requirements: Written and spoken fluency in Arabic Experience in open source and social media research, or investigations, typically obtained in 2-3 years; ability to connect the dots; Creativity in leveraging internet search techniques and methods; Ability to determine the credibility, value, significance, and relevancy of information from different data sources to produce clear, concise, and timely analytical products; Strong written and oral communication skills; comfortable with providing briefings and presentations. Experience producing short and long form reports, applying BLUF or similar models; Comfort working independently and in teams; Experience with some of the following: Social Media Platforms, blogs, IRC, Deep / Darkweb , and message boards; Ability to collect, authenticate, validate and document online evidence; Proficient with at least one online investigative tool, such as Whois, Ping, Traceroute, etc; Proficient in Google Suite of programs; Preferred Experience: Public or private sector experience as an analyst, researcher, investigator or consultant supporting a security, risk or due diligence function. Experience in conducting studies and making recommendations to identify threat vectors, threat actors, and threat trends Experience in briefing decision-makers and senior leaders; High degree of knowledge of Social Media Platforms, blogs, IRC, message boards, Deep/Darkweb; Knowledge of IPv4, IPv6, DNS records, E-mails Headers, P2P; Possession of excellent project/team leadership, development, and client relationship skills; Knowledge and familiarity with relevant threat landscapes or industry practice areas such as cybercrime, online fraud, physical/corporate security, activism, hacktivism, reputation risk, travel security, geopolitical or policy issues Bachelor's degree with relevant coursework Education / Training Requirements: Bachelor's Degree Benefits Competitive compensation Community-driven culture with employee events Generous time offComprehensive private insurance and EAP Fun, modern workspace Respectful and nourishing work environment, where every opinion is heard and everyone is encouraged to be an active part of the organizational culture Physical and Sensory Requirements: Mobility, walking, climbing, sitting, standing, reaching, bending, lifting (minimum of 10 lbs), fine eye-hand coordination, ability to read, write, listen and speak clearly, the ability to understand and follow written and oral instructions and directions, ability to travel =/
My banking client is looking for a DevOps Security Consultant with the following skills and experience. Proven expertise in Cybersecurity within large-scale, regulated financial institutions or similarly complex environments. Deep technical knowledge of engineering platforms, including CI/CD systems, build tools, artifact repositories, runtime environments, and developer tooling click apply for full job details
Aug 25, 2026
Contractor
My banking client is looking for a DevOps Security Consultant with the following skills and experience. Proven expertise in Cybersecurity within large-scale, regulated financial institutions or similarly complex environments. Deep technical knowledge of engineering platforms, including CI/CD systems, build tools, artifact repositories, runtime environments, and developer tooling click apply for full job details
Different Technologies Pty Ltd.
Cheltenham, Gloucestershire
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Aug 24, 2026
Full time
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Palo Alto Networks is seeking a Solutions Consultant to align how we best serve customers, define technical solutions, and ensure value realization in their investment with PANW. You will provide technical leadership in customers' security transformation journeys, evangelizing our on-prem, cloud, and security operations services to establish PANW as a trusted cybersecurity partner. The role involves cross-functional leadership, delivering high-level designs, and driving end-to-end solution value
Aug 24, 2026
Full time
Palo Alto Networks is seeking a Solutions Consultant to align how we best serve customers, define technical solutions, and ensure value realization in their investment with PANW. You will provide technical leadership in customers' security transformation journeys, evangelizing our on-prem, cloud, and security operations services to establish PANW as a trusted cybersecurity partner. The role involves cross-functional leadership, delivering high-level designs, and driving end-to-end solution value
Senior Cyber Security Consultant Location: Manchester Hybrid (minimum 2 days onsite) Salary: £75,000-£90,000 + Bonus + Benefits We are seeking an Operational Technology (OT) Cyber Security Consultant to join a leading technology consultancy delivering cyber security solutions across critical infrastructure and regulated industries click apply for full job details
Aug 24, 2026
Full time
Senior Cyber Security Consultant Location: Manchester Hybrid (minimum 2 days onsite) Salary: £75,000-£90,000 + Bonus + Benefits We are seeking an Operational Technology (OT) Cyber Security Consultant to join a leading technology consultancy delivering cyber security solutions across critical infrastructure and regulated industries click apply for full job details
Senior Cyber Security Risk & Assurance Consultant - Product Risk (PBRA) (CONTRACTOR) - London Duration: 1 year contract Hybrid Working - 8 days onsite per month - the rest is remote working About the Team The Product-Based Risk Assessment (PBRA) service conducts recurring security assessments of applications, services, and technologies to identify emerging threats, evaluate control effectiveness, and drive remediation that strengthens The clients cyber resilience. The team supports business and technology stakeholders by assessing cyber security risks and ensuring alignment with The Banks security standards and risk appetite. Key Accountabilities Product-Based Risk Assessments Lead end-to-end Product-Based Risk Assessments (PBRA) for critical applications, platforms, and technology services. Analyse application architectures, business processes, information flows, and supporting infrastructure. Identify and assess cyber threats, vulnerabilities, control weaknesses, and potential business impacts. Evaluate the design and effectiveness of security controls using clients security frameworks and standards. Assess residual risks and propose actionable remediation plans. Security Risk Analysis Perform security risk assessments using recognised methodologies and industry frameworks. Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets. Contribute to threat modelling and attack surface analysis activities. Support technology-focused assessments such as cloud, AI, and emerging technology evaluations. Stakeholder Engagement Act as the primary security assessment contact for business and IT stakeholders. Facilitate workshops, interviews, and assessment review sessions. Challenge assumptions and provide expert security guidance to delivery and operations teams. Build trusted relationships across CISO, CTO, Architecture, Risk Management, and Engineering teams. Reporting & Governance Produce high-quality assessment reports, risk summaries, and executive-level communications. Present findings and recommendations to senior management and governance bodies. Track remediation plans and risk treatment activities through closure. Support internal and external audit activities as required. Continuous Improvement Contribute to the evolution of the PBRA service, methodologies, tools, and operating model. Help drive the transition toward data-enabled and automated security assessment capabilities. Identify opportunities to improve efficiency, consistency, and risk coverage across assessments. Support knowledge sharing and mentoring of junior analysts. Required Skills & Experience Technical Skills Strong understanding of cybersecurity principles, controls, and risk management practices. Knowledge of application security, cloud security, infrastructure security, and network security. Experience conducting security assessments, threat modelling, or risk analyses. Familiarity with industry frameworks and standards such as: NIST Cyber Security Framework ISO 27001 CIS Controls Secure Controls Framework (SCF) DORA ANSSI EBIOS RM OWASP Professional Experience Minimum 7 years of experience in Information Security, Cyber Risk, Security Assurance, or Security Architecture. Experience leading complex security assessments across large technology environments. Experience working with senior business and technology stakeholders. Strong report-writing and presentation skills. Personal Competencies Strong analytical and critical-thinking capabilities. Excellent communication and stakeholder management skills. Ability to challenge constructively and influence decision-making. Self-driven with strong ownership and accountability. Pragmatic, risk-based mindset. Comfortable operating in a complex, regulated environment. Please do send across to me the most up to date CV to (url removed) Rates depend on experience and client requirements
Aug 23, 2026
Contractor
Senior Cyber Security Risk & Assurance Consultant - Product Risk (PBRA) (CONTRACTOR) - London Duration: 1 year contract Hybrid Working - 8 days onsite per month - the rest is remote working About the Team The Product-Based Risk Assessment (PBRA) service conducts recurring security assessments of applications, services, and technologies to identify emerging threats, evaluate control effectiveness, and drive remediation that strengthens The clients cyber resilience. The team supports business and technology stakeholders by assessing cyber security risks and ensuring alignment with The Banks security standards and risk appetite. Key Accountabilities Product-Based Risk Assessments Lead end-to-end Product-Based Risk Assessments (PBRA) for critical applications, platforms, and technology services. Analyse application architectures, business processes, information flows, and supporting infrastructure. Identify and assess cyber threats, vulnerabilities, control weaknesses, and potential business impacts. Evaluate the design and effectiveness of security controls using clients security frameworks and standards. Assess residual risks and propose actionable remediation plans. Security Risk Analysis Perform security risk assessments using recognised methodologies and industry frameworks. Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets. Contribute to threat modelling and attack surface analysis activities. Support technology-focused assessments such as cloud, AI, and emerging technology evaluations. Stakeholder Engagement Act as the primary security assessment contact for business and IT stakeholders. Facilitate workshops, interviews, and assessment review sessions. Challenge assumptions and provide expert security guidance to delivery and operations teams. Build trusted relationships across CISO, CTO, Architecture, Risk Management, and Engineering teams. Reporting & Governance Produce high-quality assessment reports, risk summaries, and executive-level communications. Present findings and recommendations to senior management and governance bodies. Track remediation plans and risk treatment activities through closure. Support internal and external audit activities as required. Continuous Improvement Contribute to the evolution of the PBRA service, methodologies, tools, and operating model. Help drive the transition toward data-enabled and automated security assessment capabilities. Identify opportunities to improve efficiency, consistency, and risk coverage across assessments. Support knowledge sharing and mentoring of junior analysts. Required Skills & Experience Technical Skills Strong understanding of cybersecurity principles, controls, and risk management practices. Knowledge of application security, cloud security, infrastructure security, and network security. Experience conducting security assessments, threat modelling, or risk analyses. Familiarity with industry frameworks and standards such as: NIST Cyber Security Framework ISO 27001 CIS Controls Secure Controls Framework (SCF) DORA ANSSI EBIOS RM OWASP Professional Experience Minimum 7 years of experience in Information Security, Cyber Risk, Security Assurance, or Security Architecture. Experience leading complex security assessments across large technology environments. Experience working with senior business and technology stakeholders. Strong report-writing and presentation skills. Personal Competencies Strong analytical and critical-thinking capabilities. Excellent communication and stakeholder management skills. Ability to challenge constructively and influence decision-making. Self-driven with strong ownership and accountability. Pragmatic, risk-based mindset. Comfortable operating in a complex, regulated environment. Please do send across to me the most up to date CV to (url removed) Rates depend on experience and client requirements
Role: Cyber and Information Assurance Consultant Mid, Senior & Principal Levels Location: Nottingham / Remote-first Working Arrangement: Remote-first, with travel to Nottingham and customer sites as required Salary: £65,000 £120,000 Are you a cyber security or information assurance professional who enjoys working with customers, getting into complex problems and turning security risks into practical solutions? We re looking for Cyber and Information Assurance Consultants across Mid, Senior and Principal levels to join a growing team working on complex, high-assurance environments across defence, government and critical infrastructure. This is a consultancy-focused role, so you won t be sitting in a purely internal security position. You ll work directly with customers, technical teams and senior stakeholders to assess risk, understand threats and vulnerabilities, and provide clear recommendations on how security can be improved. You ll work across areas including cyber risk assessments, information assurance, security governance and secure-by-design. Depending on your level and experience, you could be reviewing solution designs, developing security cases, supporting accreditation and assurance activity, maintaining risk registers or helping shape security requirements across major programmes. You ll also work closely with architects, engineers, project teams, suppliers and customer security teams. A big part of the role will be taking technical evidence and security requirements and explaining what they actually mean from a risk and business perspective. You ll ideally have professional experience in cyber security, information assurance, risk management, systems engineering or a related discipline, alongside experience contributing to security assessment or assurance work. You ll need to be comfortable producing clear security documentation and communicating with both technical and non-technical audiences. Knowledge of areas such as cyber risk management, security controls, threat and vulnerability assessment, security governance and risk acceptance is important. Experience with frameworks such as ISO 27001, ISO 27005, the NCSC Cyber Assessment Framework, NIST or MOD security standards would be beneficial. Experience within defence, government, critical infrastructure or another high-assurance environment would be particularly relevant. Experience with cloud security assurance, security architecture reviews, accreditation or secure information exchange would also be useful. The level you join at will depend on your experience, with opportunities available from Mid-level through to Principal. There is a clear progression route into senior consultancy, security architecture, cyber risk leadership and information assurance leadership, with support towards professional qualifications such as CISSP, CISM, CRISC and ISO 27001. The role is remote-first, although you ll need to be comfortable travelling to the Nottingham office and customer sites when required. Regular UK travel may form part of the role, with occasional international travel possible. If you re looking for a role where you can work on genuinely complex security challenges, have direct customer exposure and continue developing your career across cyber security and assurance, please apply now or get in touch to find out more. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
Aug 23, 2026
Full time
Role: Cyber and Information Assurance Consultant Mid, Senior & Principal Levels Location: Nottingham / Remote-first Working Arrangement: Remote-first, with travel to Nottingham and customer sites as required Salary: £65,000 £120,000 Are you a cyber security or information assurance professional who enjoys working with customers, getting into complex problems and turning security risks into practical solutions? We re looking for Cyber and Information Assurance Consultants across Mid, Senior and Principal levels to join a growing team working on complex, high-assurance environments across defence, government and critical infrastructure. This is a consultancy-focused role, so you won t be sitting in a purely internal security position. You ll work directly with customers, technical teams and senior stakeholders to assess risk, understand threats and vulnerabilities, and provide clear recommendations on how security can be improved. You ll work across areas including cyber risk assessments, information assurance, security governance and secure-by-design. Depending on your level and experience, you could be reviewing solution designs, developing security cases, supporting accreditation and assurance activity, maintaining risk registers or helping shape security requirements across major programmes. You ll also work closely with architects, engineers, project teams, suppliers and customer security teams. A big part of the role will be taking technical evidence and security requirements and explaining what they actually mean from a risk and business perspective. You ll ideally have professional experience in cyber security, information assurance, risk management, systems engineering or a related discipline, alongside experience contributing to security assessment or assurance work. You ll need to be comfortable producing clear security documentation and communicating with both technical and non-technical audiences. Knowledge of areas such as cyber risk management, security controls, threat and vulnerability assessment, security governance and risk acceptance is important. Experience with frameworks such as ISO 27001, ISO 27005, the NCSC Cyber Assessment Framework, NIST or MOD security standards would be beneficial. Experience within defence, government, critical infrastructure or another high-assurance environment would be particularly relevant. Experience with cloud security assurance, security architecture reviews, accreditation or secure information exchange would also be useful. The level you join at will depend on your experience, with opportunities available from Mid-level through to Principal. There is a clear progression route into senior consultancy, security architecture, cyber risk leadership and information assurance leadership, with support towards professional qualifications such as CISSP, CISM, CRISC and ISO 27001. The role is remote-first, although you ll need to be comfortable travelling to the Nottingham office and customer sites when required. Regular UK travel may form part of the role, with occasional international travel possible. If you re looking for a role where you can work on genuinely complex security challenges, have direct customer exposure and continue developing your career across cyber security and assurance, please apply now or get in touch to find out more. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
hackajob is partnering directly with Actica Consulting to hire for this role. As a Lead Cyber Security Consultant at Actica Consulting, you will have the opportunity to lead multiple, small Actica teams in their support to a wide range of high-profile UK public sector and defence organisations click apply for full job details
Aug 23, 2026
Full time
hackajob is partnering directly with Actica Consulting to hire for this role. As a Lead Cyber Security Consultant at Actica Consulting, you will have the opportunity to lead multiple, small Actica teams in their support to a wide range of high-profile UK public sector and defence organisations click apply for full job details
hackajob is partnering directly with BAE Systems Digital Intelligence to hire for this role. Location(s): UK, Europe & Africa : UK : Guildford UK, Europe & Africa : UK : Frimley BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, click apply for full job details
Aug 22, 2026
Full time
hackajob is partnering directly with BAE Systems Digital Intelligence to hire for this role. Location(s): UK, Europe & Africa : UK : Guildford UK, Europe & Africa : UK : Frimley BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, click apply for full job details
Cyber Governance Consultant x2 SC CLEARED - UK Wide 90-100k Our client is looking for a Cyber Governance Consultant, to help clients design and implement cyber guidelines and guardrails tailored to their needs. You'll contribute to a range of consulting activities, both pre- and post-sales, across areas such as: Gap Analysis and rationalization of controls against regulatory frameworks Threat Modelling, risk identification and assessment, and mitigation planning and management Data and outputs analysis, protection and storage (e.g., Data Loss Prevention, Rights Management) 3rd Party Risk analysis, controls and audit, cyber Resilience and recovery analysis Cloud and network security posture and controls including mobile data and device protection Policy and procedure management, covering policy development, testing and review, compliance audit preparation and participation (internal and external) Skills / Experience Designing or implementing secure solutions based on regulatory frameworks including ISO, NIS, NIST, TISAX, DORA, NCSC CAF, IEC62443 Providing GRC consulting services or supporting business development in cybersecurity governance Balancing security needs with compliance requirements, with a pragmatic approach to usability, agility, and cost considerations Creating business cases or roadmaps to enable clients to meet regulatory requirements and industry best practice
Aug 22, 2026
Full time
Cyber Governance Consultant x2 SC CLEARED - UK Wide 90-100k Our client is looking for a Cyber Governance Consultant, to help clients design and implement cyber guidelines and guardrails tailored to their needs. You'll contribute to a range of consulting activities, both pre- and post-sales, across areas such as: Gap Analysis and rationalization of controls against regulatory frameworks Threat Modelling, risk identification and assessment, and mitigation planning and management Data and outputs analysis, protection and storage (e.g., Data Loss Prevention, Rights Management) 3rd Party Risk analysis, controls and audit, cyber Resilience and recovery analysis Cloud and network security posture and controls including mobile data and device protection Policy and procedure management, covering policy development, testing and review, compliance audit preparation and participation (internal and external) Skills / Experience Designing or implementing secure solutions based on regulatory frameworks including ISO, NIS, NIST, TISAX, DORA, NCSC CAF, IEC62443 Providing GRC consulting services or supporting business development in cybersecurity governance Balancing security needs with compliance requirements, with a pragmatic approach to usability, agility, and cost considerations Creating business cases or roadmaps to enable clients to meet regulatory requirements and industry best practice
Role: Technical Pre-Sales Consultant Location: Office based in the East Midlands Working Arrangement: REMOTE AND ON CLIENT SITES ACOUND THE M4 CORRIDOR. WITH TEAM VISITS TO EAST MIDLANDS OCCASSIONALLY Salary: Up to 110k (wiggle room for the right candidate) We are seeking an experienced Technical Pre-Sales Consultant to bridge the gap between customer requirements, cyber security challenges, and technical solution delivery. This role combines cyber security consultancy, solution architecture, technical leadership, and business development, supporting customers throughout the early stages of complex technology programmes. Working closely with senior customer stakeholders, architects, engineering teams, and business leaders, you will act as a trusted technical advisor, helping organisations define requirements, shape secure architectures, and develop solutions that address operational and business objectives. The position requires a strong blend of technical credibility, customer engagement skills, and commercial awareness. You will lead technical pre-sales engagements across cyber security, networking, cloud, and information assurance domains, engaging confidently with senior responsible owners, programme directors, chief architects, and technical decision-makers. Capture, analyse, and translate customer business and technical requirements into solution architectures, technical proposals, statements of work, and bid responses. Provide technical leadership throughout the sales lifecycle, ensuring proposed solutions are technically robust, commercially viable, and aligned with customer objectives. Develop high-level and detailed solution architectures encompassing secure systems integration, interoperability, cross-domain information sharing, cloud infrastructure, network design, and security controls. Work closely with engineering and product teams to ensure customer requirements are clearly understood and reflected in solution delivery. Provide technical oversight and assurance for bids, proposals, and customer-facing documentation, ensuring accuracy, consistency, and alignment with industry standards and best practices. Support security accreditation and assurance activities, collaborating with security authorities, accrediting bodies, and customer security teams to address technical risks and define compliant architectures. Maintain a detailed understanding of cyber security technologies, market trends, emerging threats, and competitor capabilities, using this knowledge to identify opportunities, influence product direction, and support strategic growth initiatives. Represent the organisation at customer meetings, industry events, workshops, demonstrations, and technical presentations, acting as a recognised subject matter expert across security architecture, secure information exchange, and systems integration. The successful candidate will demonstrate experience in technical pre-sales, solution architecture, cyber security consulting, or systems engineering within complex enterprise, defence, government, or critical national infrastructure environments. You should have a proven ability to engage with both business and technical stakeholders, produce high-quality technical documentation, and communicate complex concepts at multiple levels of technical detail. Strong knowledge of cyber security principles, information assurance frameworks, secure systems design, networking technologies, and cloud infrastructure is essential. Experience designing and integrating secure solutions across heterogeneous environments is highly desirable. The role requires excellent communication and presentation skills, strong stakeholder management capabilities, and the ability to lead technical discussions from initial discovery through to solution definition and customer approval. Desirable Knowledge Experience with security accreditation processes, risk management frameworks, secure-by-design methodologies, and government or defence security environments. Understanding of enterprise networking technologies, including segmentation, VLAN design, routing, fibre-optic infrastructure, and secure communications. Familiarity with Agile delivery methodologies and the challenges associated with integrating complex technology solutions across multi-vendor environments. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
Aug 22, 2026
Full time
Role: Technical Pre-Sales Consultant Location: Office based in the East Midlands Working Arrangement: REMOTE AND ON CLIENT SITES ACOUND THE M4 CORRIDOR. WITH TEAM VISITS TO EAST MIDLANDS OCCASSIONALLY Salary: Up to 110k (wiggle room for the right candidate) We are seeking an experienced Technical Pre-Sales Consultant to bridge the gap between customer requirements, cyber security challenges, and technical solution delivery. This role combines cyber security consultancy, solution architecture, technical leadership, and business development, supporting customers throughout the early stages of complex technology programmes. Working closely with senior customer stakeholders, architects, engineering teams, and business leaders, you will act as a trusted technical advisor, helping organisations define requirements, shape secure architectures, and develop solutions that address operational and business objectives. The position requires a strong blend of technical credibility, customer engagement skills, and commercial awareness. You will lead technical pre-sales engagements across cyber security, networking, cloud, and information assurance domains, engaging confidently with senior responsible owners, programme directors, chief architects, and technical decision-makers. Capture, analyse, and translate customer business and technical requirements into solution architectures, technical proposals, statements of work, and bid responses. Provide technical leadership throughout the sales lifecycle, ensuring proposed solutions are technically robust, commercially viable, and aligned with customer objectives. Develop high-level and detailed solution architectures encompassing secure systems integration, interoperability, cross-domain information sharing, cloud infrastructure, network design, and security controls. Work closely with engineering and product teams to ensure customer requirements are clearly understood and reflected in solution delivery. Provide technical oversight and assurance for bids, proposals, and customer-facing documentation, ensuring accuracy, consistency, and alignment with industry standards and best practices. Support security accreditation and assurance activities, collaborating with security authorities, accrediting bodies, and customer security teams to address technical risks and define compliant architectures. Maintain a detailed understanding of cyber security technologies, market trends, emerging threats, and competitor capabilities, using this knowledge to identify opportunities, influence product direction, and support strategic growth initiatives. Represent the organisation at customer meetings, industry events, workshops, demonstrations, and technical presentations, acting as a recognised subject matter expert across security architecture, secure information exchange, and systems integration. The successful candidate will demonstrate experience in technical pre-sales, solution architecture, cyber security consulting, or systems engineering within complex enterprise, defence, government, or critical national infrastructure environments. You should have a proven ability to engage with both business and technical stakeholders, produce high-quality technical documentation, and communicate complex concepts at multiple levels of technical detail. Strong knowledge of cyber security principles, information assurance frameworks, secure systems design, networking technologies, and cloud infrastructure is essential. Experience designing and integrating secure solutions across heterogeneous environments is highly desirable. The role requires excellent communication and presentation skills, strong stakeholder management capabilities, and the ability to lead technical discussions from initial discovery through to solution definition and customer approval. Desirable Knowledge Experience with security accreditation processes, risk management frameworks, secure-by-design methodologies, and government or defence security environments. Understanding of enterprise networking technologies, including segmentation, VLAN design, routing, fibre-optic infrastructure, and secure communications. Familiarity with Agile delivery methodologies and the challenges associated with integrating complex technology solutions across multi-vendor environments. We welcome diverse applicants and are dedicated to treating all applicants with dignity and respect, regardless of background.
Cloud Security Consultant x 3 UK Wide Up to 100,000 + Benefits We are seeking experienced Cloud Security Consultants to join a growing cybersecurity practice delivering complex cloud security solutions across a range of enterprise and public sector environments You will play a key role in ensuring cloud environments are designed and deployed in line with security best practices, regulatory requirements, and modern security frameworks. You will be involved in designing secure cloud solutions, conducting security reviews, supporting cloud transformation initiatives, and advising stakeholders on how to manage security risks across cloud platforms. Key Responsibilities Support clients in developing enterprise security use cases aligned to their cloud strategy. Design and build security reference architectures across public, private, and hybrid cloud environments. Collaborate with technical teams on the architecture, design, and implementation of secure cloud solutions. Develop secure cloud architectures, governance frameworks, and security operating models. Protect cloud environments across network, application, identity, and data layers. Produce security, configuration, deployment, and DevSecOps models for cloud-based services. Conduct threat modelling exercises and security design reviews as part of secure-by-design initiatives. Required Skills & Experience Minimum 3 years' experience working as a Cloud Security Consultant, Cloud Security Architect, or similar security-focused consulting role. Experience supporting organisations with cloud security strategy and enterprise security use cases. Strong understanding of cloud security architecture principles. Experience designing secure public, private, and hybrid cloud environments. Knowledge of security governance, risk management, and compliance frameworks. Proven experience conducting threat modelling and security design reviews. Experience implementing secure-by-design principles. Familiarity with DevSecOps practices and secure deployment methodologies. Technical Experience Microsoft Azure Security AWS Security Google Cloud Platform (GCP) Security Identity & Access Management (IAM) Zero Trust Architecture Security Architecture & Governance DevSecOps Cloud Security Posture Management (CSPM) Security Automation & Orchestration Threat Modelling Secure Cloud Landing Zones
Aug 22, 2026
Full time
Cloud Security Consultant x 3 UK Wide Up to 100,000 + Benefits We are seeking experienced Cloud Security Consultants to join a growing cybersecurity practice delivering complex cloud security solutions across a range of enterprise and public sector environments You will play a key role in ensuring cloud environments are designed and deployed in line with security best practices, regulatory requirements, and modern security frameworks. You will be involved in designing secure cloud solutions, conducting security reviews, supporting cloud transformation initiatives, and advising stakeholders on how to manage security risks across cloud platforms. Key Responsibilities Support clients in developing enterprise security use cases aligned to their cloud strategy. Design and build security reference architectures across public, private, and hybrid cloud environments. Collaborate with technical teams on the architecture, design, and implementation of secure cloud solutions. Develop secure cloud architectures, governance frameworks, and security operating models. Protect cloud environments across network, application, identity, and data layers. Produce security, configuration, deployment, and DevSecOps models for cloud-based services. Conduct threat modelling exercises and security design reviews as part of secure-by-design initiatives. Required Skills & Experience Minimum 3 years' experience working as a Cloud Security Consultant, Cloud Security Architect, or similar security-focused consulting role. Experience supporting organisations with cloud security strategy and enterprise security use cases. Strong understanding of cloud security architecture principles. Experience designing secure public, private, and hybrid cloud environments. Knowledge of security governance, risk management, and compliance frameworks. Proven experience conducting threat modelling and security design reviews. Experience implementing secure-by-design principles. Familiarity with DevSecOps practices and secure deployment methodologies. Technical Experience Microsoft Azure Security AWS Security Google Cloud Platform (GCP) Security Identity & Access Management (IAM) Zero Trust Architecture Security Architecture & Governance DevSecOps Cloud Security Posture Management (CSPM) Security Automation & Orchestration Threat Modelling Secure Cloud Landing Zones
Coalfire is seeking a Senior Consultant to join their cybersecurity team in the United Kingdom. The role involves performing penetration testing on client applications and supporting infrastructure. You'll collaborate with project teams to assess security risks and deliver high-quality reports. With a flexible work model, you'll be part of a culture that prioritizes personal and professional growth. This position requires strong technical skills, at least 4 years of experience in application security or consulting, and expertise in various penetration testing methodologies.
Aug 22, 2026
Full time
Coalfire is seeking a Senior Consultant to join their cybersecurity team in the United Kingdom. The role involves performing penetration testing on client applications and supporting infrastructure. You'll collaborate with project teams to assess security risks and deliver high-quality reports. With a flexible work model, you'll be part of a culture that prioritizes personal and professional growth. This position requires strong technical skills, at least 4 years of experience in application security or consulting, and expertise in various penetration testing methodologies.
Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
Aug 21, 2026
Full time
Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.