Isr Recruitment Limited
Eaglescliffe, County Durham
The Opportunity Our client is looking to appoint an experienced ICT Cyber & Information Security Manager to take responsibility for a broad range of cyber security, information security, risk and compliance activities across the organisation. This is a key role within the Information Security function, providing the opportunity to take ownership of security activities ranging from the ICT Annual Delivery Plan through to major business growth initiatives, including site transitions and acquisitions across the UK and internationally. You'll work closely with internal teams, senior stakeholders and external partners to strengthen the organisation's cyber and information security posture, manage risk and ensure compliance with relevant security standards and legislation. The successful candidate will combine strong technical security knowledge with excellent governance, risk management and stakeholder-management skills. Skills and Experience: Experience leading cyber security, information security and/or compliance activities within a medium-to-large enterprise environment. Strong experience managing an enterprise information/cyber security risk register. Strong practical knowledge of Information Security Management Systems (ISMS). Experience implementing, maintaining and continually improving an ISMS. Experience preparing for and participating in internal and external security audits. Strong knowledge of ISO 27002 and experience delivering against its requirements. Strong knowledge of Cyber Essentials / Cyber Essentials Plus. Experience working with NIST security frameworks. Knowledge of CAF / Cyber Assessment Framework and its application to organisational security. Understanding of NIS2, GDPR and the Data Protection Act. Strong understanding of cyber security risk, governance, controls and remediation. Qualifications Professional security qualifications such as the following would be highly desirable: CISSP / CISM / CISA ISO 27001/27002-related qualifications Other recognised cyber security, information assurance or risk-management certifications Role and Responsibilities: Act as a key pillar of the organisation's Information Security programme, driving and managing cyber and information security activities. Work collaboratively with internal teams and external partners to deliver security initiatives and improvements. Develop, review and rehearse incident response plans, ensuring the organisation is prepared to detect, investigate and respond effectively to cyber incidents and data breaches. Work with relevant teams to review, test and improve Business Continuity, Recovery Time Objective (RTO) and Recovery Time Strategy (RTS) arrangements. Conduct and support security risk assessments and vulnerability assessments to identify threats, vulnerabilities and areas for improvement. Develop and implement appropriate risk mitigation strategies. Manage and maintain ICT Cyber & Data Security Risk Registers, ensuring risks are appropriately assessed, owned, mitigated and reported. Review, develop, implement and maintain cyber security, information security, data protection and compliance policies. Monitor changes in the regulatory and threat landscape and assess their impact on the organisation. Ensure compliance with relevant legislation, regulations, frameworks and security standards, including GDPR, Data Protection Act, NIS2, NIST, Cyber Essentials and ISO 27002. Lead and coordinate information security metrics, reporting and management information. Support and oversee offensive security activities, vulnerability management and security testing. Maintain and continuously improve the organisation's Information Security Management System (ISMS). Lead or participate in internal and external security audits and assessments, including ISO 27002 and Cyber Essentials Plus. Provide security input into business change, technology projects, acquisitions, site transitions and other strategic initiatives. Work with stakeholders to embed security by design across ICT and wider business activities. Applications: To learn more about our established client and this newly created role working as a IT Security Manager for our client based in the Teesside / County Durham area (with excellent flexible/remote working options available); please call and speak with Edward Laing here at ISR Recruitment to learn more or please send through a copy of your latest CV and/or share your online business profile for a call back in the very strictest of confidence.
Aug 24, 2026
Full time
The Opportunity Our client is looking to appoint an experienced ICT Cyber & Information Security Manager to take responsibility for a broad range of cyber security, information security, risk and compliance activities across the organisation. This is a key role within the Information Security function, providing the opportunity to take ownership of security activities ranging from the ICT Annual Delivery Plan through to major business growth initiatives, including site transitions and acquisitions across the UK and internationally. You'll work closely with internal teams, senior stakeholders and external partners to strengthen the organisation's cyber and information security posture, manage risk and ensure compliance with relevant security standards and legislation. The successful candidate will combine strong technical security knowledge with excellent governance, risk management and stakeholder-management skills. Skills and Experience: Experience leading cyber security, information security and/or compliance activities within a medium-to-large enterprise environment. Strong experience managing an enterprise information/cyber security risk register. Strong practical knowledge of Information Security Management Systems (ISMS). Experience implementing, maintaining and continually improving an ISMS. Experience preparing for and participating in internal and external security audits. Strong knowledge of ISO 27002 and experience delivering against its requirements. Strong knowledge of Cyber Essentials / Cyber Essentials Plus. Experience working with NIST security frameworks. Knowledge of CAF / Cyber Assessment Framework and its application to organisational security. Understanding of NIS2, GDPR and the Data Protection Act. Strong understanding of cyber security risk, governance, controls and remediation. Qualifications Professional security qualifications such as the following would be highly desirable: CISSP / CISM / CISA ISO 27001/27002-related qualifications Other recognised cyber security, information assurance or risk-management certifications Role and Responsibilities: Act as a key pillar of the organisation's Information Security programme, driving and managing cyber and information security activities. Work collaboratively with internal teams and external partners to deliver security initiatives and improvements. Develop, review and rehearse incident response plans, ensuring the organisation is prepared to detect, investigate and respond effectively to cyber incidents and data breaches. Work with relevant teams to review, test and improve Business Continuity, Recovery Time Objective (RTO) and Recovery Time Strategy (RTS) arrangements. Conduct and support security risk assessments and vulnerability assessments to identify threats, vulnerabilities and areas for improvement. Develop and implement appropriate risk mitigation strategies. Manage and maintain ICT Cyber & Data Security Risk Registers, ensuring risks are appropriately assessed, owned, mitigated and reported. Review, develop, implement and maintain cyber security, information security, data protection and compliance policies. Monitor changes in the regulatory and threat landscape and assess their impact on the organisation. Ensure compliance with relevant legislation, regulations, frameworks and security standards, including GDPR, Data Protection Act, NIS2, NIST, Cyber Essentials and ISO 27002. Lead and coordinate information security metrics, reporting and management information. Support and oversee offensive security activities, vulnerability management and security testing. Maintain and continuously improve the organisation's Information Security Management System (ISMS). Lead or participate in internal and external security audits and assessments, including ISO 27002 and Cyber Essentials Plus. Provide security input into business change, technology projects, acquisitions, site transitions and other strategic initiatives. Work with stakeholders to embed security by design across ICT and wider business activities. Applications: To learn more about our established client and this newly created role working as a IT Security Manager for our client based in the Teesside / County Durham area (with excellent flexible/remote working options available); please call and speak with Edward Laing here at ISR Recruitment to learn more or please send through a copy of your latest CV and/or share your online business profile for a call back in the very strictest of confidence.
IT Cyber Security Specialist / Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team, supporting and continually improving cybersecurity across a global IT environment. Reporting to the Infrastructure Engineering Manager, you'll take ownership of cybersecurity controls and security architecture while working closely with Infrastructure Operations and other technology teams to identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across a complex infrastructure environment, identifying and mitigating security risks, supporting major cyber incidents and contributing to strategic security and infrastructure projects. You'll also help develop security awareness, business continuity capabilities and ongoing improvements to the firm's security controls. Key Responsibilities: Continuously review and improve the firm's cybersecurity posture from an infrastructure perspective and external security rating. Identify, assess and remediate vulnerabilities across hardware, software and infrastructure (Windows Server and Azure Cloud). Monitor emerging threats and lead or support Incident Response investigations and mitigation. Evaluate, test and recommend security enhancements, controls and threat prevention technologies. Identify security risks and exposures and develop measures to prevent future incidents. Lead CE+ accreditation and support security, risk and data protection requirements from a technical (Not GRC) perspective. Participate in and lead infrastructure lifecycle, security and technology projects. Provide 3rd Line / Major Incident support as a cybersecurity subject matter expert. Work with third-party suppliers and advise internal technical teams on security measures to resolve security and infrastructure issues. We're looking for experienced Cyber Security engineer with strong technical infrastructure knowledge and proven experience across incident response, threat monitoring and vulnerability management. You will possess: Extensive experience in a similar role blending Cyber Security with core Wintel Infrastructure and Azure cloud engineering. Strong knowledge of modern security architecture, threat prevention techniques and incident response. Strong Windows Server 2016/2019/2022 knowledge including Active Directory, DNS, DHCP, Intune, Group Policy, PKI, Entra and Azure SSO. Demonstrable experience across Cyber Security, Incident Response, Threat Monitoring and Vulnerability Management using tools such as MS Sentinel, MS Defender etc for threat hunting, vulnerability monitoring and security posture improvement. CISSP, CEH, CCNA Security, SC-100, SC200 or equivalent security certification. Experience designing, integrating and managing complex infrastructure and cloud solutions from a cyber security standpoint and advising technical infrastructure teams on security focussed designs and operations Strong communication skills with the ability to explain complex security issues to technical and non-technical audiences. Experience working with third-party providers across on-premise and cloud services. Strong planning skills and knowledge of ITIL processes and best practice. This is an excellent opportunity to join a highly regarded global organisation where you'll play a key role in strengthening cybersecurity across a complex international IT environment, combining hands-on security engineering, incident response and strategic infrastructure projects.
Aug 24, 2026
Full time
IT Cyber Security Specialist / Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team, supporting and continually improving cybersecurity across a global IT environment. Reporting to the Infrastructure Engineering Manager, you'll take ownership of cybersecurity controls and security architecture while working closely with Infrastructure Operations and other technology teams to identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across a complex infrastructure environment, identifying and mitigating security risks, supporting major cyber incidents and contributing to strategic security and infrastructure projects. You'll also help develop security awareness, business continuity capabilities and ongoing improvements to the firm's security controls. Key Responsibilities: Continuously review and improve the firm's cybersecurity posture from an infrastructure perspective and external security rating. Identify, assess and remediate vulnerabilities across hardware, software and infrastructure (Windows Server and Azure Cloud). Monitor emerging threats and lead or support Incident Response investigations and mitigation. Evaluate, test and recommend security enhancements, controls and threat prevention technologies. Identify security risks and exposures and develop measures to prevent future incidents. Lead CE+ accreditation and support security, risk and data protection requirements from a technical (Not GRC) perspective. Participate in and lead infrastructure lifecycle, security and technology projects. Provide 3rd Line / Major Incident support as a cybersecurity subject matter expert. Work with third-party suppliers and advise internal technical teams on security measures to resolve security and infrastructure issues. We're looking for experienced Cyber Security engineer with strong technical infrastructure knowledge and proven experience across incident response, threat monitoring and vulnerability management. You will possess: Extensive experience in a similar role blending Cyber Security with core Wintel Infrastructure and Azure cloud engineering. Strong knowledge of modern security architecture, threat prevention techniques and incident response. Strong Windows Server 2016/2019/2022 knowledge including Active Directory, DNS, DHCP, Intune, Group Policy, PKI, Entra and Azure SSO. Demonstrable experience across Cyber Security, Incident Response, Threat Monitoring and Vulnerability Management using tools such as MS Sentinel, MS Defender etc for threat hunting, vulnerability monitoring and security posture improvement. CISSP, CEH, CCNA Security, SC-100, SC200 or equivalent security certification. Experience designing, integrating and managing complex infrastructure and cloud solutions from a cyber security standpoint and advising technical infrastructure teams on security focussed designs and operations Strong communication skills with the ability to explain complex security issues to technical and non-technical audiences. Experience working with third-party providers across on-premise and cloud services. Strong planning skills and knowledge of ITIL processes and best practice. This is an excellent opportunity to join a highly regarded global organisation where you'll play a key role in strengthening cybersecurity across a complex international IT environment, combining hands-on security engineering, incident response and strategic infrastructure projects.
Introduction Saab UK is part of Scandinavia's largest defence company, bringing together the best of Swedish and British innovation. Saab offers world-leading solutions and services in defence, aviation, space, and civil security to keep people and society safe. Our UK presence has been growing at pace, meaning we can offer a wide range of opportunities for personal fulfilment and career growth. We currently employ over 600 people across eight sites in the UK, and our specialisations include software engineering, underwater robotics, radars, AI, and armed forces training. The Role: This role will be part of our UK Security Team reporting into the Head of Security at Saab UK. The role can be based either in Fareham, Farnborough or Heywood House, however it will require occasional travel oversees and travel to other Saab UK offices. Working collaboratively with the security team and IT, the role will develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise to guide the organisation through compliancy leading on the Cyber security aspects of DefStan 05-138. This role is pivotal in safeguarding against advanced persistent threats, maintaining compliance with defence regulations, and supporting secure operations across all projects. Key Responsibilities: Develop, implement, and oversee cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST. Responsible for the completion of Cyber Security aspects within Supplier Assurance and selection. Maintain cyber threat awareness on a company global scale and bespoke to the organisation. Oversee security within network architecture, encryption protocols, and identity/access management for restricted environments. Direct cyber security audits and penetration testing across defence platforms and supply chains. Provide cyber security training and awareness programs tailored to defence staff and contractors. Collaborate with engineering, IT, and programme teams embedding security into defence projects (DevSecOps). Qualifications and Skills: Required: Extensive experience in cyber security management within defence, aerospace, or government environments. Strong knowledge of classified information handling and secure communication protocols. Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems. Proven track record of leading incident response in high-security environments. Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR). Excellent leadership, stakeholder management, and ability to operate under pressure. Degree in Cyber Security, Computer Science, or related field. Degree or equivalent defence/security qualifications preferred. Security clearance (SC or DV) required or eligibility to obtain. Desirable: Professional certifications: CISSP, CISM, CISA, CEH, or equivalent Experience with secure cloud environments (Azure Government, AWS GovCloud) Knowledge of cyber warfare tactics and countermeasures Experience liaising with national security agencies or defence contractors As a National Security Vetting clearance is required for this role, applicants will be required to hold National Security Vetting clearance to SC level or have the ability to gain it. By submitting an application to Saab UK you consent to undertaking workforce screening activities that may include but are not limited to: Baseline Personnel Security checks, National Security Vetting, reference checks, verification of working rights and in all circumstances preferred candidates will be placed through a security interview.
Aug 11, 2026
Full time
Introduction Saab UK is part of Scandinavia's largest defence company, bringing together the best of Swedish and British innovation. Saab offers world-leading solutions and services in defence, aviation, space, and civil security to keep people and society safe. Our UK presence has been growing at pace, meaning we can offer a wide range of opportunities for personal fulfilment and career growth. We currently employ over 600 people across eight sites in the UK, and our specialisations include software engineering, underwater robotics, radars, AI, and armed forces training. The Role: This role will be part of our UK Security Team reporting into the Head of Security at Saab UK. The role can be based either in Fareham, Farnborough or Heywood House, however it will require occasional travel oversees and travel to other Saab UK offices. Working collaboratively with the security team and IT, the role will develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise to guide the organisation through compliancy leading on the Cyber security aspects of DefStan 05-138. This role is pivotal in safeguarding against advanced persistent threats, maintaining compliance with defence regulations, and supporting secure operations across all projects. Key Responsibilities: Develop, implement, and oversee cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST. Responsible for the completion of Cyber Security aspects within Supplier Assurance and selection. Maintain cyber threat awareness on a company global scale and bespoke to the organisation. Oversee security within network architecture, encryption protocols, and identity/access management for restricted environments. Direct cyber security audits and penetration testing across defence platforms and supply chains. Provide cyber security training and awareness programs tailored to defence staff and contractors. Collaborate with engineering, IT, and programme teams embedding security into defence projects (DevSecOps). Qualifications and Skills: Required: Extensive experience in cyber security management within defence, aerospace, or government environments. Strong knowledge of classified information handling and secure communication protocols. Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems. Proven track record of leading incident response in high-security environments. Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR). Excellent leadership, stakeholder management, and ability to operate under pressure. Degree in Cyber Security, Computer Science, or related field. Degree or equivalent defence/security qualifications preferred. Security clearance (SC or DV) required or eligibility to obtain. Desirable: Professional certifications: CISSP, CISM, CISA, CEH, or equivalent Experience with secure cloud environments (Azure Government, AWS GovCloud) Knowledge of cyber warfare tactics and countermeasures Experience liaising with national security agencies or defence contractors As a National Security Vetting clearance is required for this role, applicants will be required to hold National Security Vetting clearance to SC level or have the ability to gain it. By submitting an application to Saab UK you consent to undertaking workforce screening activities that may include but are not limited to: Baseline Personnel Security checks, National Security Vetting, reference checks, verification of working rights and in all circumstances preferred candidates will be placed through a security interview.
Cyber Security Manager / InfoSec Manager Location Bedord / Hybrid 1-2 days a Week in the office Salary > 75k We're looking for an experienced Information Security Manager (Network / Infrastucture) with a strong technical background in network security, infrastructure security and cyber security. This role would suit someone who has progressed from a technical infrastructure or security engineering position into Information Security, Governance, Risk & Compliance (GRC) or Security Assurance. Working closely with Infrastructure, IT Operations and Engineering teams, you'll help ensure security is embedded across networks, servers, cloud environments and business systems. You'll provide technical guidance on security architecture, vulnerability management, secure configuration, patching, identity and access management, firewalls, endpoint security and infrastructure hardening, while also leading information security governance, risk management and compliance activities. You'll play a key role in maintaining and improving the Information Security Management System (ISMS), supporting ISO 27001 certification, managing security audits, supplier assurance, security incidents and business continuity planning. You'll also work with technical teams to assess vulnerabilities, review penetration testing results, oversee remediation activities and ensure security controls are implemented effectively across on-premise and cloud infrastructure. To be successful, you'll have previous experience in Network Security, Infrastructure Security, Cyber Security Engineering, Systems Engineering or Infrastructure Engineering before moving into an Information Security or Cyber Security Management role. You'll have a strong understanding of firewalls, switches, routing, Windows Server, Active Directory, Microsoft 365, Azure, endpoint security, vulnerability management, security monitoring, networking principles and infrastructure hardening, alongside experience with ISO 27001, Cyber Essentials, Governance, Risk & Compliance (GRC), security audits and information security frameworks. Key skills: Information Security Manager, Cyber Security Manager, Network Security, Infrastructure Security, Security Engineering, Infrastructure Engineering, Cyber Security, ISO 27001, ISMS, Azure Security, Microsoft 365 Security, Active Directory, Firewalls, Network Infrastructure, Vulnerability Management, Patch Management, Endpoint Security, Security Operations, Governance, Risk & Compliance, GRC, Security Assurance, Security Audits, Business Continuity, Disaster Recovery, Incident Response, Cyber Essentials.
Jul 30, 2026
Full time
Cyber Security Manager / InfoSec Manager Location Bedord / Hybrid 1-2 days a Week in the office Salary > 75k We're looking for an experienced Information Security Manager (Network / Infrastucture) with a strong technical background in network security, infrastructure security and cyber security. This role would suit someone who has progressed from a technical infrastructure or security engineering position into Information Security, Governance, Risk & Compliance (GRC) or Security Assurance. Working closely with Infrastructure, IT Operations and Engineering teams, you'll help ensure security is embedded across networks, servers, cloud environments and business systems. You'll provide technical guidance on security architecture, vulnerability management, secure configuration, patching, identity and access management, firewalls, endpoint security and infrastructure hardening, while also leading information security governance, risk management and compliance activities. You'll play a key role in maintaining and improving the Information Security Management System (ISMS), supporting ISO 27001 certification, managing security audits, supplier assurance, security incidents and business continuity planning. You'll also work with technical teams to assess vulnerabilities, review penetration testing results, oversee remediation activities and ensure security controls are implemented effectively across on-premise and cloud infrastructure. To be successful, you'll have previous experience in Network Security, Infrastructure Security, Cyber Security Engineering, Systems Engineering or Infrastructure Engineering before moving into an Information Security or Cyber Security Management role. You'll have a strong understanding of firewalls, switches, routing, Windows Server, Active Directory, Microsoft 365, Azure, endpoint security, vulnerability management, security monitoring, networking principles and infrastructure hardening, alongside experience with ISO 27001, Cyber Essentials, Governance, Risk & Compliance (GRC), security audits and information security frameworks. Key skills: Information Security Manager, Cyber Security Manager, Network Security, Infrastructure Security, Security Engineering, Infrastructure Engineering, Cyber Security, ISO 27001, ISMS, Azure Security, Microsoft 365 Security, Active Directory, Firewalls, Network Infrastructure, Vulnerability Management, Patch Management, Endpoint Security, Security Operations, Governance, Risk & Compliance, GRC, Security Assurance, Security Audits, Business Continuity, Disaster Recovery, Incident Response, Cyber Essentials.
650 - 750 per day (Inside IR35) Hybrid - 2-3 days on-site6-month initial contract (likely extension)Location: Birmingham (You must be able to travel to Birmingham for on-site work 2-3 days) We're working with a government client seeking an experienced Cybersecurity Manager to lead and mature their operational security capability across a modern hybrid estate.This is a hands-on leadership role where you'll combine technical depth with stakeholder engagement, driving security operations, incident response, and continuous improvement across infrastructure, cloud, and workplace environments. The Role You'll take ownership of cybersecurity operations, leading a small engineering team and working closely with an outsourced SOC/MSSP to ensure robust monitoring, response, and continuous improvement. Responsibilities Leading technical incident response (containment, eradication, recovery) and post-incident analysis Owning and improving security controls across endpoints, identity, networks, and cloud platforms Driving vulnerability management, patching, and remediation to agreed SLAs Managing SOC performance, alert triage, escalation, and threat intelligence integration Enforcing Identity & Access Management (IAM) policies, including conditional access and privileged access controls Leading disaster recovery planning and cyber incident readiness exercises Overseeing penetration testing and ensuring timely remediation of findings Providing audit and compliance evidence (e.g., ISO 27001, PCI DSS, CE+) Essential experience: Strong background in cybersecurity operations within complex environments Proven experience leading incident response and remediation activity Expertise in Microsoft 365 / Azure security and hybrid cloud environments Experience operating security tooling (EDR, SIEM, firewalls, identity platforms) at scale Solid understanding of frameworks such as ISO 27001, NCSC guidance, NIST CSF, MITRE ATT&CK Experience managing suppliers, SOC providers, and technical teams Desirable: Relevant certifications (e.g. CISSP, CISM, AZ-500, SC-200) Cyber Secu ty Manager PDF Experience working in Agile / DevOps environments Previous exposure to regulated or public sector environments What you need to do now If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now. If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
May 29, 2026
Contractor
650 - 750 per day (Inside IR35) Hybrid - 2-3 days on-site6-month initial contract (likely extension)Location: Birmingham (You must be able to travel to Birmingham for on-site work 2-3 days) We're working with a government client seeking an experienced Cybersecurity Manager to lead and mature their operational security capability across a modern hybrid estate.This is a hands-on leadership role where you'll combine technical depth with stakeholder engagement, driving security operations, incident response, and continuous improvement across infrastructure, cloud, and workplace environments. The Role You'll take ownership of cybersecurity operations, leading a small engineering team and working closely with an outsourced SOC/MSSP to ensure robust monitoring, response, and continuous improvement. Responsibilities Leading technical incident response (containment, eradication, recovery) and post-incident analysis Owning and improving security controls across endpoints, identity, networks, and cloud platforms Driving vulnerability management, patching, and remediation to agreed SLAs Managing SOC performance, alert triage, escalation, and threat intelligence integration Enforcing Identity & Access Management (IAM) policies, including conditional access and privileged access controls Leading disaster recovery planning and cyber incident readiness exercises Overseeing penetration testing and ensuring timely remediation of findings Providing audit and compliance evidence (e.g., ISO 27001, PCI DSS, CE+) Essential experience: Strong background in cybersecurity operations within complex environments Proven experience leading incident response and remediation activity Expertise in Microsoft 365 / Azure security and hybrid cloud environments Experience operating security tooling (EDR, SIEM, firewalls, identity platforms) at scale Solid understanding of frameworks such as ISO 27001, NCSC guidance, NIST CSF, MITRE ATT&CK Experience managing suppliers, SOC providers, and technical teams Desirable: Relevant certifications (e.g. CISSP, CISM, AZ-500, SC-200) Cyber Secu ty Manager PDF Experience working in Agile / DevOps environments Previous exposure to regulated or public sector environments What you need to do now If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now. If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Salary up to £ annual leave days plus 11 bank holidays and discretionary days, hybrid working policy, competitive pension scheme and other employee benefits Hays Technology are working in partnership with a Higher Education establishment in Stoke-on-Trent to recruit a Cyber Security Manager on a permanent basis. The successful candidate will lead and manage the overall approach to cyber security and governance of all environments. Key Responsibilities: Develop, implement, and continuously update the cyber security strategy, aligning it with business objectives and regulatory requirements, establishing and enforcing cyber security policies, standards, and guidelines to protect assets and data. Conduct regular risk assessments and vulnerability analyses to identify potential threats and weaknesses in the organisation's infrastructure, implementing and overseeing risk management processes, ensuring that appropriate controls and countermeasures are in place to mitigate all identified risks. Lead the incident response efforts, including preparing for, detecting, and responding to cyber security incidents, ensure that an effective incident response plan is in place and regularly tested and managing post incident analysis and reporting to prevent future occurrences. Manage and mentor the cyber security team, fostering a culture of continuous learning and development, ensuring that the team has the necessary skills and tools to protect the organisation effectively, and oversee recruitment, training, and performance management. Ensure that the organisation complies with all relevant cyber security laws, regulations, and industry standards, with responsibility for internal and external cyber security audits, ensuring that any identified gaps are addressed promptly and certifications are maintained. Primary point of contact for cyber security matters, collaborating with other departments, stakeholders, and external partners to ensure a coordinated approach to cyber security, communicating cyber security risks, incidents, and strategies to senior management and other stakeholders, providing insights and recommendations to support informed decision-making. In order to apply, you must have the following skills and experience: Educated to degree level in Cybersecurity or computing-based subjects, or in possession of an equivalent professional qualification or relevant experience. Certified Information Systems Security Professional (CISSP), Chartered IT Professional (CITP) (BCS) or equivalent qualification or experience. Extensive experience of leadership at an appropriately senior level within higher education or similarly complex organisation, including management of staff and resources. Experience of gathering operational evidence on the performance of cyber security using vulnerability assessment tools. An awareness and understanding of networking and communication related concepts and cloud virtualisation techniques. If you have the relevant experience and would like to apply, please submit your CV. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
May 24, 2026
Full time
Salary up to £ annual leave days plus 11 bank holidays and discretionary days, hybrid working policy, competitive pension scheme and other employee benefits Hays Technology are working in partnership with a Higher Education establishment in Stoke-on-Trent to recruit a Cyber Security Manager on a permanent basis. The successful candidate will lead and manage the overall approach to cyber security and governance of all environments. Key Responsibilities: Develop, implement, and continuously update the cyber security strategy, aligning it with business objectives and regulatory requirements, establishing and enforcing cyber security policies, standards, and guidelines to protect assets and data. Conduct regular risk assessments and vulnerability analyses to identify potential threats and weaknesses in the organisation's infrastructure, implementing and overseeing risk management processes, ensuring that appropriate controls and countermeasures are in place to mitigate all identified risks. Lead the incident response efforts, including preparing for, detecting, and responding to cyber security incidents, ensure that an effective incident response plan is in place and regularly tested and managing post incident analysis and reporting to prevent future occurrences. Manage and mentor the cyber security team, fostering a culture of continuous learning and development, ensuring that the team has the necessary skills and tools to protect the organisation effectively, and oversee recruitment, training, and performance management. Ensure that the organisation complies with all relevant cyber security laws, regulations, and industry standards, with responsibility for internal and external cyber security audits, ensuring that any identified gaps are addressed promptly and certifications are maintained. Primary point of contact for cyber security matters, collaborating with other departments, stakeholders, and external partners to ensure a coordinated approach to cyber security, communicating cyber security risks, incidents, and strategies to senior management and other stakeholders, providing insights and recommendations to support informed decision-making. In order to apply, you must have the following skills and experience: Educated to degree level in Cybersecurity or computing-based subjects, or in possession of an equivalent professional qualification or relevant experience. Certified Information Systems Security Professional (CISSP), Chartered IT Professional (CITP) (BCS) or equivalent qualification or experience. Extensive experience of leadership at an appropriately senior level within higher education or similarly complex organisation, including management of staff and resources. Experience of gathering operational evidence on the performance of cyber security using vulnerability assessment tools. An awareness and understanding of networking and communication related concepts and cloud virtualisation techniques. If you have the relevant experience and would like to apply, please submit your CV. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
Cyber Security Manager - Up to £70,000 + Car/Car Allowance + Healthcare and Strong Pension Purpose of the Role Our client is seeking an experienced and driven Cyber Security Manager to lead and mature their cyber security capability across the business. This is a hands-on leadership role responsible for defining, owning, and delivering a robust Cyber Security Strategy that protects our enterprise and industrial operations.This is a fantastic opportunity for someone to truly own the cyber security strategy and build a team within a complex and critical environment. Key Duties and Responsibilities Cyber Security Strategy & Leadership Develop, own, and continuously evolve the Cyber Security Strategy covering both IT and OT environments. To lead the current team and drive the growth of the team and headcount. Translate business and operational risk into a clear, pragmatic cyber security roadmap, influencing senior stakeholders and operational teams.IT & OT Security OwnershipTake end-to-end responsibility for cyber security across: Corporate IT systems, networks, cloud services, and endpoints. OT/ICS environments, including manufacturing, industrial control systems, and site-based operational technology. Define and enforce appropriate security architectures, controls, and standards across both estates. Work closely with IT/ OT stakeholders to ensure security controls are practical, proportionate, and safe. Ensure cyber security policies, standards, and procedures are effectively enforced and adhered to across the organisation. Hands-On DeliveryRemain hands-on in the day-to-day operation of cyber security, including: Incident response and investigation. Security tooling, monitoring, and vulnerability management. Supplier and third-party risk assessment. Lead and participate in cyber incident response exercises and real incidents, ensuring lessons learnt are embedded. Governance, Risk & Compliance Own cyber risk management and contribute to the enterprise risk register. Ensure compliance with relevant standards and frameworks (e.g. ISO 27001, NIST, Cyber Essentials, ICS security guidance). Define and maintain cyber security policies, standards, and procedures across IT and OT. Support audits, assessments, and regulatory or customer assurance activities. Qualification and Experience Requirements Proven ability to define and deliver a cyber security strategy. Proven ability to manage a complex environment. Desirable Skills and Experience Experience upgrading OT legacy systems. Demonstrable experience of security in complex or manufacturing environments. Appropriate certifications such as CISSP & CISM. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
May 24, 2026
Full time
Cyber Security Manager - Up to £70,000 + Car/Car Allowance + Healthcare and Strong Pension Purpose of the Role Our client is seeking an experienced and driven Cyber Security Manager to lead and mature their cyber security capability across the business. This is a hands-on leadership role responsible for defining, owning, and delivering a robust Cyber Security Strategy that protects our enterprise and industrial operations.This is a fantastic opportunity for someone to truly own the cyber security strategy and build a team within a complex and critical environment. Key Duties and Responsibilities Cyber Security Strategy & Leadership Develop, own, and continuously evolve the Cyber Security Strategy covering both IT and OT environments. To lead the current team and drive the growth of the team and headcount. Translate business and operational risk into a clear, pragmatic cyber security roadmap, influencing senior stakeholders and operational teams.IT & OT Security OwnershipTake end-to-end responsibility for cyber security across: Corporate IT systems, networks, cloud services, and endpoints. OT/ICS environments, including manufacturing, industrial control systems, and site-based operational technology. Define and enforce appropriate security architectures, controls, and standards across both estates. Work closely with IT/ OT stakeholders to ensure security controls are practical, proportionate, and safe. Ensure cyber security policies, standards, and procedures are effectively enforced and adhered to across the organisation. Hands-On DeliveryRemain hands-on in the day-to-day operation of cyber security, including: Incident response and investigation. Security tooling, monitoring, and vulnerability management. Supplier and third-party risk assessment. Lead and participate in cyber incident response exercises and real incidents, ensuring lessons learnt are embedded. Governance, Risk & Compliance Own cyber risk management and contribute to the enterprise risk register. Ensure compliance with relevant standards and frameworks (e.g. ISO 27001, NIST, Cyber Essentials, ICS security guidance). Define and maintain cyber security policies, standards, and procedures across IT and OT. Support audits, assessments, and regulatory or customer assurance activities. Qualification and Experience Requirements Proven ability to define and deliver a cyber security strategy. Proven ability to manage a complex environment. Desirable Skills and Experience Experience upgrading OT legacy systems. Demonstrable experience of security in complex or manufacturing environments. Appropriate certifications such as CISSP & CISM. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
Are you looking for a Security role within a dynamic, innovative financial technology organisation? If so, we are recruiting for a Cyber Security Engineer to join our Cyber Security team! The Role Working alongside the team you will help to design, develop, and mature the companys cyber security capability, including the selection, implementation, and management of security tools/technologies, focused on detection, prevention, and analysis of security threats. This role offers a great opportunity to help define and shape the security function within a collaborative IT department, ensuring the protection of customer assets. Responsibilities include Work with technology and business teams to deliver security processes, technologies and controls, acting as the authority on security related queries. Define, design, implement, and maintain security solutions appropriate to the business needs. Support the definition, execution and continuous improvement of key cyber security processes including vulnerability & patch management, security incident response, security monitoring, endpoint security, identity and access management, network security, and cryptography. Assist with developing and maintaining security policies, processes and incident response management plans and playbooks. Prepare and document standard operating procedures and protocols. Provide expertise on security requirements into core technology processes like asset management, change management, third-party management, technology development & acquisition, configuration management, etc. Contribute as a team member in projects and change initiatives aimed at increasing enterprise security capabilities e.g., identity and access management, log aggregation, etc. Required experience: Minimum of 2 years experience in a Security Engineer/Analyst, role focusing on designing and implementing security solutions and managing security infrastructure. Previous experience working within a financial services environment and a working understanding of relevant regulations. Experience and in-depth technical knowledge of deploying, maintaining, and configuring a wide range of security technologies within a large and complex environment (anti-malware/EDR, SIEM solutions, vulnerability scanners, patch management, CASB, DLP, penetration testing tools, etc.) Knowledge of TCP/IP and related network protocols: knowledge of standard network protocols like TCP, ARP, ICMP, DHCP, DNS, HTTP, SNMP, VPN etc., and accompanying protocol/packet analysis/manipulation tools. Understanding of key operating systems and network appliances and the ability to assess their security posture based on their configuration/deployment. Experience of working effectively with a variety of stakeholders from different technology and business teams. Strong verbal and written communication skills. Desirable experience: Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or Certified Information Security Manager (CISM). Strong knowledge of Operating System security and system hardening concepts such as CIS Benchmarks. Experience in working with information security frameworks and regulatory requirements including ISO27001, NIST, PCI DSS, GDPR, Cyber Essentials. Experience of general IT Audit processes and conducting risk assessments. You will be a proactive self starter with strong communication skills and comfortable interacting with stakeholders at all levels. You will have a strong technical background with previous experience of implementing security solutions. You will have the ability to tailor your approach and translate requirements to non-technical members of staff. We offer a competitive remuneration package, including company discretionary bonus, excellent pension contributions, an attractive staff share scheme, BUPA health insurance, buying and selling of annual leave and sponsorship of relevant professional qualifications. The role is based in our central London office, working a minimum of two days a week in the office and three days a week from home. About Us Transact is a leading UK investment wrap platform for financial advisers and their clients. Our culture is collaborative, inclusive and open-minded. We work hard to continually challenge the way we do things to maintain our market leading status. As a customer-centric and client focused business, we put our clients, like Mrs Miggins, at the heart of everything we do. Our platform enables clients and their advisers to manage their financial portfolio in one single online place, and is supported by unrivalled personal service. Our goal is to make all aspects of portfolio management as easy and efficient as possible for everyone involved, through the features we develop, our integrations with other systems, and the support we provide. Our purpose: We enable the Miggins family and their adviser to hold their investments on a single platform across wrappers. We provide custody, tax wrapping, trading and reporting.
May 24, 2026
Full time
Are you looking for a Security role within a dynamic, innovative financial technology organisation? If so, we are recruiting for a Cyber Security Engineer to join our Cyber Security team! The Role Working alongside the team you will help to design, develop, and mature the companys cyber security capability, including the selection, implementation, and management of security tools/technologies, focused on detection, prevention, and analysis of security threats. This role offers a great opportunity to help define and shape the security function within a collaborative IT department, ensuring the protection of customer assets. Responsibilities include Work with technology and business teams to deliver security processes, technologies and controls, acting as the authority on security related queries. Define, design, implement, and maintain security solutions appropriate to the business needs. Support the definition, execution and continuous improvement of key cyber security processes including vulnerability & patch management, security incident response, security monitoring, endpoint security, identity and access management, network security, and cryptography. Assist with developing and maintaining security policies, processes and incident response management plans and playbooks. Prepare and document standard operating procedures and protocols. Provide expertise on security requirements into core technology processes like asset management, change management, third-party management, technology development & acquisition, configuration management, etc. Contribute as a team member in projects and change initiatives aimed at increasing enterprise security capabilities e.g., identity and access management, log aggregation, etc. Required experience: Minimum of 2 years experience in a Security Engineer/Analyst, role focusing on designing and implementing security solutions and managing security infrastructure. Previous experience working within a financial services environment and a working understanding of relevant regulations. Experience and in-depth technical knowledge of deploying, maintaining, and configuring a wide range of security technologies within a large and complex environment (anti-malware/EDR, SIEM solutions, vulnerability scanners, patch management, CASB, DLP, penetration testing tools, etc.) Knowledge of TCP/IP and related network protocols: knowledge of standard network protocols like TCP, ARP, ICMP, DHCP, DNS, HTTP, SNMP, VPN etc., and accompanying protocol/packet analysis/manipulation tools. Understanding of key operating systems and network appliances and the ability to assess their security posture based on their configuration/deployment. Experience of working effectively with a variety of stakeholders from different technology and business teams. Strong verbal and written communication skills. Desirable experience: Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or Certified Information Security Manager (CISM). Strong knowledge of Operating System security and system hardening concepts such as CIS Benchmarks. Experience in working with information security frameworks and regulatory requirements including ISO27001, NIST, PCI DSS, GDPR, Cyber Essentials. Experience of general IT Audit processes and conducting risk assessments. You will be a proactive self starter with strong communication skills and comfortable interacting with stakeholders at all levels. You will have a strong technical background with previous experience of implementing security solutions. You will have the ability to tailor your approach and translate requirements to non-technical members of staff. We offer a competitive remuneration package, including company discretionary bonus, excellent pension contributions, an attractive staff share scheme, BUPA health insurance, buying and selling of annual leave and sponsorship of relevant professional qualifications. The role is based in our central London office, working a minimum of two days a week in the office and three days a week from home. About Us Transact is a leading UK investment wrap platform for financial advisers and their clients. Our culture is collaborative, inclusive and open-minded. We work hard to continually challenge the way we do things to maintain our market leading status. As a customer-centric and client focused business, we put our clients, like Mrs Miggins, at the heart of everything we do. Our platform enables clients and their advisers to manage their financial portfolio in one single online place, and is supported by unrivalled personal service. Our goal is to make all aspects of portfolio management as easy and efficient as possible for everyone involved, through the features we develop, our integrations with other systems, and the support we provide. Our purpose: We enable the Miggins family and their adviser to hold their investments on a single platform across wrappers. We provide custody, tax wrapping, trading and reporting.
Service Manager up to £70k 1 day per week in Huddersfield or Manchester We're working with a long-standing UK organisation undergoing continued investment in its technology operations and service maturity. They're now appointing a senior IT Service Manager to strengthen operational governance and drive service excellence across the business. You'll own key operational processes including incident management, service controls and risk mitigation, working alongside senior technical and delivery stakeholders to ensure systems remain stable, secure and scalable. Key responsibilities Own and lead technical incident management (including P1/P2 incidents and out-of-hours escalation) Act as incident commander during major incidents, managing communications and mitigation strategies Define, maintain and report on SLAs, SLOs and service health metrics Oversee service desk triage processes, priorities and ceremonies Lead cyber incident response and vulnerability remediation across the tech estate Support audit readiness and compliance (ISO 27001 and related frameworks) Partner with engineering and product teams on service improvement and capacity planning What we're looking for 5+ years' experience in IT / Technology Service Management, Incident Management or similar Strong knowledge of ITIL practices (incident, problem, change, service level management) Proven experience running major incidents and out-of-hours support models Hands-on experience with vulnerability management and cyber security processes Familiarity with ISO 27001 / SOC 2 environments and working with audits Experience with ITSM tools (e.g. Jira Service Management, ServiceNow) Comfortable producing dashboards and service reporting (Power BI, Jira, Confluence, etc.) If interested, apply directly through LinkedIn or drop me a message!
May 22, 2026
Full time
Service Manager up to £70k 1 day per week in Huddersfield or Manchester We're working with a long-standing UK organisation undergoing continued investment in its technology operations and service maturity. They're now appointing a senior IT Service Manager to strengthen operational governance and drive service excellence across the business. You'll own key operational processes including incident management, service controls and risk mitigation, working alongside senior technical and delivery stakeholders to ensure systems remain stable, secure and scalable. Key responsibilities Own and lead technical incident management (including P1/P2 incidents and out-of-hours escalation) Act as incident commander during major incidents, managing communications and mitigation strategies Define, maintain and report on SLAs, SLOs and service health metrics Oversee service desk triage processes, priorities and ceremonies Lead cyber incident response and vulnerability remediation across the tech estate Support audit readiness and compliance (ISO 27001 and related frameworks) Partner with engineering and product teams on service improvement and capacity planning What we're looking for 5+ years' experience in IT / Technology Service Management, Incident Management or similar Strong knowledge of ITIL practices (incident, problem, change, service level management) Proven experience running major incidents and out-of-hours support models Hands-on experience with vulnerability management and cyber security processes Familiarity with ISO 27001 / SOC 2 environments and working with audits Experience with ITSM tools (e.g. Jira Service Management, ServiceNow) Comfortable producing dashboards and service reporting (Power BI, Jira, Confluence, etc.) If interested, apply directly through LinkedIn or drop me a message!
SOC Manager Exeter (Hybrid - 2 days onsite) Day Rate: £850 (Umbrella) / £616.61 (PAYE)SC Cleared An enterprise government backed organisation is seeking a SOC manager to provide day to day leadership of incidents and mangment of the SOC Analysts. This is a critical leadership role, responsible for protecting the organisation against real-time cyber threats, driving incident response, and ensuring resilience across a complex technology estate. Our client is offering a 6 month rolling contract, paying up to £850 PD Inside IR 35 to start ASAP to be based in Exeter 2 days per week.This is a high-impact opportunity to shape cyber strategy at an enterprise level, working closely with senior stakeholders and external agencies to strengthen security posture and response capability. You will play a key role in building and evolving the CSOC capability, operating within a highly visible and business-critical function, with regular engagement across senior leadership and external partners.To be successful, you will hold active SC clearance and bring proven experience working within Central Government, the Public Sector, or highly regulated scientific environments.Key Responsibilities Define and lead the Cyber Security Operations Centre (CSOC), ensuring effective detection, response, and remediation of cyber incidents Own and continuously improve the cyber incident response plan, ensuring readiness across the organisation Provide strategic cyber security advice to senior leadership on monitoring, logging, and threat response Establish a use-case driven monitoring and alerting capability to improve threat detection and response times Oversee threat intelligence, vulnerability management, and proactive risk mitigation across the estate Lead the analysis of network traffic and behaviours, identifying threats and communicating insights to the wider business Define and manage cyber security operations strategy, aligned to organisational risk appetite and government guidance Manage stakeholders and external agencies, including regulatory bodies where required Identify and plan cyber investment requirements across tooling, governance, and team capability Core Experience Required Proven experience leading a Security Operations Centre (SOC/CSOC) or cyber security operations function Strong background in incident response, threat detection, and cyber resilience Hands-on experience with SIEM, IDS/IPS, endpoint security, and monitoring tools Solid understanding of threat intelligence, vulnerability management, and remediation practices Knowledge of cyber frameworks and regulations including GDPR, NIS, and National Cyber Security Centre guidance Familiarity with frameworks such as MITRE ATT&CK and ITIL processes Experience operating within complex, regulated environments (e.g. public sector, financial services) Strong stakeholder management skills, with the ability to influence at senior level
May 20, 2026
Full time
SOC Manager Exeter (Hybrid - 2 days onsite) Day Rate: £850 (Umbrella) / £616.61 (PAYE)SC Cleared An enterprise government backed organisation is seeking a SOC manager to provide day to day leadership of incidents and mangment of the SOC Analysts. This is a critical leadership role, responsible for protecting the organisation against real-time cyber threats, driving incident response, and ensuring resilience across a complex technology estate. Our client is offering a 6 month rolling contract, paying up to £850 PD Inside IR 35 to start ASAP to be based in Exeter 2 days per week.This is a high-impact opportunity to shape cyber strategy at an enterprise level, working closely with senior stakeholders and external agencies to strengthen security posture and response capability. You will play a key role in building and evolving the CSOC capability, operating within a highly visible and business-critical function, with regular engagement across senior leadership and external partners.To be successful, you will hold active SC clearance and bring proven experience working within Central Government, the Public Sector, or highly regulated scientific environments.Key Responsibilities Define and lead the Cyber Security Operations Centre (CSOC), ensuring effective detection, response, and remediation of cyber incidents Own and continuously improve the cyber incident response plan, ensuring readiness across the organisation Provide strategic cyber security advice to senior leadership on monitoring, logging, and threat response Establish a use-case driven monitoring and alerting capability to improve threat detection and response times Oversee threat intelligence, vulnerability management, and proactive risk mitigation across the estate Lead the analysis of network traffic and behaviours, identifying threats and communicating insights to the wider business Define and manage cyber security operations strategy, aligned to organisational risk appetite and government guidance Manage stakeholders and external agencies, including regulatory bodies where required Identify and plan cyber investment requirements across tooling, governance, and team capability Core Experience Required Proven experience leading a Security Operations Centre (SOC/CSOC) or cyber security operations function Strong background in incident response, threat detection, and cyber resilience Hands-on experience with SIEM, IDS/IPS, endpoint security, and monitoring tools Solid understanding of threat intelligence, vulnerability management, and remediation practices Knowledge of cyber frameworks and regulations including GDPR, NIS, and National Cyber Security Centre guidance Familiarity with frameworks such as MITRE ATT&CK and ITIL processes Experience operating within complex, regulated environments (e.g. public sector, financial services) Strong stakeholder management skills, with the ability to influence at senior level
Cyber Security Operations Manager Liverpool (Hybrid) - £70 000 - £75,000 We're working with a growing UK business looking to hire a Cyber Security Operations Manager to take full ownership of its security operations function, ensuring the organisation is protected, resilient, and continuously improving against an increasingly complex threat landscape. This is a high-impact position where you'll lead the security operations function end-to-end, driving improvements across threat detection, incident response, and overall security posture within a complex, evolving environment. The Role You'll take ownership of security operations, ensuring the business is protected against evolving threats while continuously improving processes, tooling, and team capability. Key responsibilities include: Leading the day-to-day operations of the Security Operations function, including oversight of any outsourced SOC Managing the full incident response lifecycle (detection through to recovery and post-incident review) Overseeing threat detection, vulnerability management, and cyber defence capabilities Driving improvements across SIEM, SOAR, EDR/XDR, and security tooling Ensuring robust monitoring, alerting, and response across cloud, network, and endpoint environments Partnering with Infrastructure, Cloud, and Risk teams to strengthen security across the business Leading and developing a team of cyber engineers and analysts Driving automation initiatives to improve response times and operational efficiency Supporting governance, compliance, and audit requirements Reporting on security performance, risks, and KPIs to senior stakeholders What We're Looking For Proven experience leading a Security Operations or SOC function Strong understanding of SIEM, SOAR, EDR/XDR, IDS/IPS, and security tooling Experience managing incident response and threat management in complex environments Strong knowledge of frameworks such as NIST, ISO 27001, or CIS Controls Experience working in cloud environments (Azure, AWS, or GCP) Strong leadership and stakeholder management skills Ability to balance hands-on technical understanding with strategic oversight Why Join? Opportunity to lead and shape the security operations function High visibility role across technology and leadership teams Business actively investing in cyber security and resilience If you're looking for a role where you can lead, influence, and strengthen cyber security at scale, we'd love to hear from you. Apply today with your most up to date CV. BH36094
May 19, 2026
Full time
Cyber Security Operations Manager Liverpool (Hybrid) - £70 000 - £75,000 We're working with a growing UK business looking to hire a Cyber Security Operations Manager to take full ownership of its security operations function, ensuring the organisation is protected, resilient, and continuously improving against an increasingly complex threat landscape. This is a high-impact position where you'll lead the security operations function end-to-end, driving improvements across threat detection, incident response, and overall security posture within a complex, evolving environment. The Role You'll take ownership of security operations, ensuring the business is protected against evolving threats while continuously improving processes, tooling, and team capability. Key responsibilities include: Leading the day-to-day operations of the Security Operations function, including oversight of any outsourced SOC Managing the full incident response lifecycle (detection through to recovery and post-incident review) Overseeing threat detection, vulnerability management, and cyber defence capabilities Driving improvements across SIEM, SOAR, EDR/XDR, and security tooling Ensuring robust monitoring, alerting, and response across cloud, network, and endpoint environments Partnering with Infrastructure, Cloud, and Risk teams to strengthen security across the business Leading and developing a team of cyber engineers and analysts Driving automation initiatives to improve response times and operational efficiency Supporting governance, compliance, and audit requirements Reporting on security performance, risks, and KPIs to senior stakeholders What We're Looking For Proven experience leading a Security Operations or SOC function Strong understanding of SIEM, SOAR, EDR/XDR, IDS/IPS, and security tooling Experience managing incident response and threat management in complex environments Strong knowledge of frameworks such as NIST, ISO 27001, or CIS Controls Experience working in cloud environments (Azure, AWS, or GCP) Strong leadership and stakeholder management skills Ability to balance hands-on technical understanding with strategic oversight Why Join? Opportunity to lead and shape the security operations function High visibility role across technology and leadership teams Business actively investing in cyber security and resilience If you're looking for a role where you can lead, influence, and strengthen cyber security at scale, we'd love to hear from you. Apply today with your most up to date CV. BH36094
Cyber Security Operations Manager London based with regular travel to Bournemouth Hybrid working (2 days in office / 3 from home) We are supporting a global insurance business with the appointment of a Cyber Security Operations Manager into a highly visible leadership role. The focus is on operational leadership, stakeholder management and acting as the face of the Cyber Security Operations function internally. You'll lead a team covering vulnerability management, EDR, incident response, phishing, monitoring and wider security operations activity, while partnering closely with senior stakeholders across the business and global technology teams. The environment is fast paced and high pressure, so they are looking for someone already operating at this level who can bring structure, maturity and strong people leadership across a mixed-experience team. A key part of the role is the consultative element, being able to translate technical security activity into clear business risk, operational metrics and meaningful updates for senior leadership. There is also a broader transformation programme underway, including a move from AWS and on-prem into GCP, alongside exposure to global security operations across more than 40 countries. Key experience required: Proven Cyber Security Operations leadership experience Strong people management capability Experience operating within complex enterprise environments Ability to manage senior stakeholders and communicate effectively across technical and non-technical audiences Strong operational risk and incident management understanding Experience driving operational maturity and continuous improvement 3-stage process: Initial screening call Formal interview Psychometric and final stakeholder conversation Please apply for further information or contact Hannah at Maru Search & Consultancy for a confidential discussion.
May 19, 2026
Full time
Cyber Security Operations Manager London based with regular travel to Bournemouth Hybrid working (2 days in office / 3 from home) We are supporting a global insurance business with the appointment of a Cyber Security Operations Manager into a highly visible leadership role. The focus is on operational leadership, stakeholder management and acting as the face of the Cyber Security Operations function internally. You'll lead a team covering vulnerability management, EDR, incident response, phishing, monitoring and wider security operations activity, while partnering closely with senior stakeholders across the business and global technology teams. The environment is fast paced and high pressure, so they are looking for someone already operating at this level who can bring structure, maturity and strong people leadership across a mixed-experience team. A key part of the role is the consultative element, being able to translate technical security activity into clear business risk, operational metrics and meaningful updates for senior leadership. There is also a broader transformation programme underway, including a move from AWS and on-prem into GCP, alongside exposure to global security operations across more than 40 countries. Key experience required: Proven Cyber Security Operations leadership experience Strong people management capability Experience operating within complex enterprise environments Ability to manage senior stakeholders and communicate effectively across technical and non-technical audiences Strong operational risk and incident management understanding Experience driving operational maturity and continuous improvement 3-stage process: Initial screening call Formal interview Psychometric and final stakeholder conversation Please apply for further information or contact Hannah at Maru Search & Consultancy for a confidential discussion.
To see more Chinese jobs please follow us on WeChat: teamchinapf AND pfteamchina Ref: 23406 Job Title: Mandarin speaking Information Security Manager (Banking) The Skills You'll Need: Fluent in Mandarin and English, with working experience in Information Security / Cyber Security / IT Risk Management Your New Salary: Competitive depending on experience Location: Central London Job Status: Permanent, office based Summary: The Information Security Manager is responsible for establishing, maintaining and improving the bank's information security framework to protect the confidentiality, integrity, and availability of information assets, particularly for the London Branch. The role develops and oversees security policies, strategies, and controls in line with internal governance, UK regulatory requirements, and industry best practices. Operating as a "1.5 Line of Defence" within the IT function, the role provides independent security risk oversight, challenges the effectiveness of IT security controls, and supports regulatory compliance and operational resilience. Information Security Manager - What You'll be Doing Each Day: Information Security Governance Upgrade and maintain the Branch's information security policies, standards and procedures in line with Head Office policies and regulatory requirements. Upgrade and maintain an effective information security governance framework within the Branch. Ensure information security policies and procedures are properly implemented and periodically reviewed. Information Security Risk Management Identify, assess and monitor information security risks affecting the Branch. Maintain the information security risk register and ensure appropriate mitigation measures are implemented. Provide information security risk reporting to senior management. Security Oversight and Control Effectiveness Provide oversight and challenge to the implementation of information security controls performed by the IT team. Monitor the effectiveness of technical and procedural security controls across systems, infrastructure and applications. Coordinate periodic security reviews and internal control assessments. Cyber Security and Security Monitoring Oversee cyber security measures including vulnerability management, access control, security monitoring and incident detection. Ensure regular vulnerability assessments, security reviews and penetration testing are conducted. Incident Management Establish and maintain procedures for managing information security incidents. Coordinate investigation, response and reporting of cyber security incidents. Operational Resilience Support the Branch's operational resilience framework from an information security perspective. Participate in disaster recovery planning, cyber security exercises and resilience testing. Third-Party and Outsourcing Risk Assess information security risks associated with third-party service providers and outsourcing arrangements. Ensure information security requirements are incorporated into vendor management and outsourcing governance processes. Regulatory Compliance Ensure compliance with applicable UK regulatory expectations relating to information security, cyber risk and operational resilience. Support regulatory reviews, internal audit and external audit activities. Security Awareness Promote information security awareness across the Branch. Organise information security training and awareness programmes for staff. Others Perform any other duties as required by the line manager or Senior Management. Information Security Manager - The Skills You'll Need to Succeed: Excellent verbal and written communication and presentation skills in Mandarin and English. Master's degree or above in Information Security, Computer Science, Information Technology or a related discipline. Professional certifications such as CCIE, HCIE, CISSP, CISM, CISA or ISO27001 Lead Implementer are highly desirable. Relevant experience in network, information security, cyber security or IT risk management , preferably within the financial services industry. Experience in developing and implementing information security governance frameworks. Strong understanding of information security standards and frameworks such as ISO 27001, NIST Cybersecurity Framework or CIS Controls . Good knowledge of UK regulatory expectations related to cyber security, operational resilience and outsourcing risk. Understanding of banking IT environments including networks, applications and infrastructure security. Strong analytical and risk assessment skills. Ability to communicate effectively with both technical teams and senior management. Ability to coordinate incident response and cross-departmental collaboration. High level of integrity and professionalism. Strong risk awareness and sense of responsibility. Ability to work effectively in a regulated banking environment. Please follow us on Linkedin: people-first-team-china We would be grateful if you could send your CV as a Word document. If your application is successful, you will be contacted within 7 days. We regret that due to the high volume of applications we receive we cannot provide feedback on individual CVs. Please note that we can only consider candidates who are eligible to work in the UK and are able to provide relevant supporting documentation. People First is committed to increasing diversity, and maintaining an inclusive workplace culture. We welcome applications from all qualified candidates regardless of their ethnicity, race, gender, religious beliefs, sexual orientation, age, marital status or whether or not they have a disability. People First (Recruitment) Limited acts as an employment agency for permanent and fixed term contract recruitment and as an employment business for the supply of temporary workers. Please note that by applying for this job you accept our Terms of Use and Privacy Policy which can be found on our website.
May 15, 2026
Full time
To see more Chinese jobs please follow us on WeChat: teamchinapf AND pfteamchina Ref: 23406 Job Title: Mandarin speaking Information Security Manager (Banking) The Skills You'll Need: Fluent in Mandarin and English, with working experience in Information Security / Cyber Security / IT Risk Management Your New Salary: Competitive depending on experience Location: Central London Job Status: Permanent, office based Summary: The Information Security Manager is responsible for establishing, maintaining and improving the bank's information security framework to protect the confidentiality, integrity, and availability of information assets, particularly for the London Branch. The role develops and oversees security policies, strategies, and controls in line with internal governance, UK regulatory requirements, and industry best practices. Operating as a "1.5 Line of Defence" within the IT function, the role provides independent security risk oversight, challenges the effectiveness of IT security controls, and supports regulatory compliance and operational resilience. Information Security Manager - What You'll be Doing Each Day: Information Security Governance Upgrade and maintain the Branch's information security policies, standards and procedures in line with Head Office policies and regulatory requirements. Upgrade and maintain an effective information security governance framework within the Branch. Ensure information security policies and procedures are properly implemented and periodically reviewed. Information Security Risk Management Identify, assess and monitor information security risks affecting the Branch. Maintain the information security risk register and ensure appropriate mitigation measures are implemented. Provide information security risk reporting to senior management. Security Oversight and Control Effectiveness Provide oversight and challenge to the implementation of information security controls performed by the IT team. Monitor the effectiveness of technical and procedural security controls across systems, infrastructure and applications. Coordinate periodic security reviews and internal control assessments. Cyber Security and Security Monitoring Oversee cyber security measures including vulnerability management, access control, security monitoring and incident detection. Ensure regular vulnerability assessments, security reviews and penetration testing are conducted. Incident Management Establish and maintain procedures for managing information security incidents. Coordinate investigation, response and reporting of cyber security incidents. Operational Resilience Support the Branch's operational resilience framework from an information security perspective. Participate in disaster recovery planning, cyber security exercises and resilience testing. Third-Party and Outsourcing Risk Assess information security risks associated with third-party service providers and outsourcing arrangements. Ensure information security requirements are incorporated into vendor management and outsourcing governance processes. Regulatory Compliance Ensure compliance with applicable UK regulatory expectations relating to information security, cyber risk and operational resilience. Support regulatory reviews, internal audit and external audit activities. Security Awareness Promote information security awareness across the Branch. Organise information security training and awareness programmes for staff. Others Perform any other duties as required by the line manager or Senior Management. Information Security Manager - The Skills You'll Need to Succeed: Excellent verbal and written communication and presentation skills in Mandarin and English. Master's degree or above in Information Security, Computer Science, Information Technology or a related discipline. Professional certifications such as CCIE, HCIE, CISSP, CISM, CISA or ISO27001 Lead Implementer are highly desirable. Relevant experience in network, information security, cyber security or IT risk management , preferably within the financial services industry. Experience in developing and implementing information security governance frameworks. Strong understanding of information security standards and frameworks such as ISO 27001, NIST Cybersecurity Framework or CIS Controls . Good knowledge of UK regulatory expectations related to cyber security, operational resilience and outsourcing risk. Understanding of banking IT environments including networks, applications and infrastructure security. Strong analytical and risk assessment skills. Ability to communicate effectively with both technical teams and senior management. Ability to coordinate incident response and cross-departmental collaboration. High level of integrity and professionalism. Strong risk awareness and sense of responsibility. Ability to work effectively in a regulated banking environment. Please follow us on Linkedin: people-first-team-china We would be grateful if you could send your CV as a Word document. If your application is successful, you will be contacted within 7 days. We regret that due to the high volume of applications we receive we cannot provide feedback on individual CVs. Please note that we can only consider candidates who are eligible to work in the UK and are able to provide relevant supporting documentation. People First is committed to increasing diversity, and maintaining an inclusive workplace culture. We welcome applications from all qualified candidates regardless of their ethnicity, race, gender, religious beliefs, sexual orientation, age, marital status or whether or not they have a disability. People First (Recruitment) Limited acts as an employment agency for permanent and fixed term contract recruitment and as an employment business for the supply of temporary workers. Please note that by applying for this job you accept our Terms of Use and Privacy Policy which can be found on our website.
IT Manager Vacancy with high-calibre Real Estate SME Paying up to £55,000 (potentially with some flex for the right candidate) Significant bonus (10%-25%) Occasional travel to US - once per year Primarily office based (at extremely high calibre offices in a particularly Central London location) London-based, highly profitable and extremely high-calibre SME working in the Real Estate sector are seeking an IT Manager to oversee their IT infrastructure, cyber security and data protection. This is a high-impact role where alongside orchestrating external IT Service Providers, you'll keep systems secure, resilient and running at peak performance while driving continuous improvement across the business. You'll be fully responsible for a small IT budget ( What you'll do: Lead and optimise IT infrastructure, cloud platforms (Microsoft 365 & SharePoint), networks, and core systems alongside our external IT provider. Own cyber security - from vulnerability management and patching to incident response (in and out of hours). Act as Data Protection Lead, ensuring full GDPR compliance and robust data security. Manage hardware lifecycle, asset registers, and supplier performance. Provide expert technical support, user guidance, and escalation handling. Support audits, maintain documentation, and contribute to IT budgets and strategy. You'll work closely with the Corporate Services team, Office Manager and Ops Director in a collaborative, flat-hierarchy environment. What you'll need: Strong technical background in IT infrastructure, cloud environments, networking and cyber security. Experience with Microsoft 365, endpoint security, and identity/access management. Proven track record in information security, vulnerability management, and third-party supplier coordination. Good understanding of GDPR and data protection (Data Protection Lead qualification desirable although full training will be provided). Excellent problem-solving skills with the ability to explain technical issues clearly to non-technical users. Experience working with implementation or management / maintenance of SharePoint would be beneficial. Cyber Essentials / ISO 27001 knowledge is a big plus.
May 13, 2026
Full time
IT Manager Vacancy with high-calibre Real Estate SME Paying up to £55,000 (potentially with some flex for the right candidate) Significant bonus (10%-25%) Occasional travel to US - once per year Primarily office based (at extremely high calibre offices in a particularly Central London location) London-based, highly profitable and extremely high-calibre SME working in the Real Estate sector are seeking an IT Manager to oversee their IT infrastructure, cyber security and data protection. This is a high-impact role where alongside orchestrating external IT Service Providers, you'll keep systems secure, resilient and running at peak performance while driving continuous improvement across the business. You'll be fully responsible for a small IT budget ( What you'll do: Lead and optimise IT infrastructure, cloud platforms (Microsoft 365 & SharePoint), networks, and core systems alongside our external IT provider. Own cyber security - from vulnerability management and patching to incident response (in and out of hours). Act as Data Protection Lead, ensuring full GDPR compliance and robust data security. Manage hardware lifecycle, asset registers, and supplier performance. Provide expert technical support, user guidance, and escalation handling. Support audits, maintain documentation, and contribute to IT budgets and strategy. You'll work closely with the Corporate Services team, Office Manager and Ops Director in a collaborative, flat-hierarchy environment. What you'll need: Strong technical background in IT infrastructure, cloud environments, networking and cyber security. Experience with Microsoft 365, endpoint security, and identity/access management. Proven track record in information security, vulnerability management, and third-party supplier coordination. Good understanding of GDPR and data protection (Data Protection Lead qualification desirable although full training will be provided). Excellent problem-solving skills with the ability to explain technical issues clearly to non-technical users. Experience working with implementation or management / maintenance of SharePoint would be beneficial. Cyber Essentials / ISO 27001 knowledge is a big plus.
Senior Cyber Security Splunk SME Full Time Permanent Fully onsite - Moorgate, London EC2Y £80-92K basic + benefits (5% pension, 25 days hols, life insurance, medical cover) Are you an experienced Splunk SME looking for a new challenge? Do you have a strong background in Splunk, IAM and SOAR with a high-level understanding of wider Splunk ecosystem, along with Incident Management, Python and Powershell skills? Here at ARM, we are recruiting for a full time permanent Splunk SME for a global IT services and consultancy client of ours. Our client: They're a leading business with a global reach that empowers local teams, and they undertake hugely exciting work that is genuinely changing the world. Their advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects. They're a rapidly growing, people-first technology organisation and part of a $1B global service provider delivering end-to-end IT Outsourcing (ITO) and Cyber Defence services to clients across the UK and beyond. Within their Security Practice, they provide a range of services including Managed Detection and Response (MDR), Vulnerability Management, Penetration Testing, Incident Response, and consultancy led Security Advisory services. You'll be joining a team that values learning, celebrates innovation, and supports your career journey every step of the way. The Opportunity: We are looking for a skilled Splunk Specialist to deliver end-to-end Splunk engagements, helping clients build and enhance their security monitoring capabilities. You will lead the full project lifecycle, from requirements gathering and stakeholder engagement through to data onboarding, alert development, and dashboard creation, ensuring solutions are aligned to both business and security objectives. You will bring strong hands-on experience with Splunk Enterprise Security and a proven track record in delivering cybersecurity projects. This includes designing and implementing detection use cases, tuning alerts, and developing dashboards that provide clear, actionable insights for security operations teams. Experience with SOAR and UEBA technologies is advantageous but not essential. This role suits someone who enjoys working in a client-facing environment, solving complex challenges, and contributing to the ongoing evolution of modern Security Operations Centres. What You'll Be Doing: Design, build, and continuously enhance detection capabilities within Splunk across Linux and Windows environments, including log onboarding, normalisation, and enrichment Develop and maintain high-quality detection content such as correlation searches and risk-based alerting within Splunk Enterprise Security Write and optimise complex queries to support threat detection, proactive threat hunting, and anomaly identification Map detection logic to adversary behaviours using the MITRE ATT&CK Framework, ensuring effective coverage of tactics, techniques, and procedures Work with the wider Splunk ecosystem, including tools like TrackMe, and contribute to automation and orchestration initiatives (including exposure to SOAR where applicable) Leverage scripting languages such as Python and PowerShell to automate detection logic, enrich data, and integrate with security workflows Provide mentorship and technical guidance to junior engineers, particularly on Splunk backend activities such as data ingestion, parsing, indexing, and troubleshooting Collaborate closely with SOC analysts, incident responders, and global engineering teams to improve detection and response capabilities Apply strong analytical and problem-solving skills to translate threat intelligence into actionable detection use cases and continuously improve security operations What We're Looking For: Essential: Experience working on multiple projects with broad scope, ambiguity, and a high degree of difficulty Demonstrable proficiency across a wide range of IT and cybersecurity technologies Strong knowledge of key cybersecurity domains, including Identity and Access Management and Incident Management High-level analytical ability to solve unusual and complex problems Ability to maintain up-to-date working knowledge of cybersecurity principles and best practices Experience in senior stakeholder management and providing clear, relevant management reporting, professional communication - written and verbal. Eligibility to work in the UK. Desirable: Experience in technology projects such as cyber infrastructure implementation or replacement initiatives Understanding of global program structures, launch plans, timing, and ownership Ability to coach and mentor team members through knowledge transfer and constructive feedback Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission.
May 04, 2026
Full time
Senior Cyber Security Splunk SME Full Time Permanent Fully onsite - Moorgate, London EC2Y £80-92K basic + benefits (5% pension, 25 days hols, life insurance, medical cover) Are you an experienced Splunk SME looking for a new challenge? Do you have a strong background in Splunk, IAM and SOAR with a high-level understanding of wider Splunk ecosystem, along with Incident Management, Python and Powershell skills? Here at ARM, we are recruiting for a full time permanent Splunk SME for a global IT services and consultancy client of ours. Our client: They're a leading business with a global reach that empowers local teams, and they undertake hugely exciting work that is genuinely changing the world. Their advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects. They're a rapidly growing, people-first technology organisation and part of a $1B global service provider delivering end-to-end IT Outsourcing (ITO) and Cyber Defence services to clients across the UK and beyond. Within their Security Practice, they provide a range of services including Managed Detection and Response (MDR), Vulnerability Management, Penetration Testing, Incident Response, and consultancy led Security Advisory services. You'll be joining a team that values learning, celebrates innovation, and supports your career journey every step of the way. The Opportunity: We are looking for a skilled Splunk Specialist to deliver end-to-end Splunk engagements, helping clients build and enhance their security monitoring capabilities. You will lead the full project lifecycle, from requirements gathering and stakeholder engagement through to data onboarding, alert development, and dashboard creation, ensuring solutions are aligned to both business and security objectives. You will bring strong hands-on experience with Splunk Enterprise Security and a proven track record in delivering cybersecurity projects. This includes designing and implementing detection use cases, tuning alerts, and developing dashboards that provide clear, actionable insights for security operations teams. Experience with SOAR and UEBA technologies is advantageous but not essential. This role suits someone who enjoys working in a client-facing environment, solving complex challenges, and contributing to the ongoing evolution of modern Security Operations Centres. What You'll Be Doing: Design, build, and continuously enhance detection capabilities within Splunk across Linux and Windows environments, including log onboarding, normalisation, and enrichment Develop and maintain high-quality detection content such as correlation searches and risk-based alerting within Splunk Enterprise Security Write and optimise complex queries to support threat detection, proactive threat hunting, and anomaly identification Map detection logic to adversary behaviours using the MITRE ATT&CK Framework, ensuring effective coverage of tactics, techniques, and procedures Work with the wider Splunk ecosystem, including tools like TrackMe, and contribute to automation and orchestration initiatives (including exposure to SOAR where applicable) Leverage scripting languages such as Python and PowerShell to automate detection logic, enrich data, and integrate with security workflows Provide mentorship and technical guidance to junior engineers, particularly on Splunk backend activities such as data ingestion, parsing, indexing, and troubleshooting Collaborate closely with SOC analysts, incident responders, and global engineering teams to improve detection and response capabilities Apply strong analytical and problem-solving skills to translate threat intelligence into actionable detection use cases and continuously improve security operations What We're Looking For: Essential: Experience working on multiple projects with broad scope, ambiguity, and a high degree of difficulty Demonstrable proficiency across a wide range of IT and cybersecurity technologies Strong knowledge of key cybersecurity domains, including Identity and Access Management and Incident Management High-level analytical ability to solve unusual and complex problems Ability to maintain up-to-date working knowledge of cybersecurity principles and best practices Experience in senior stakeholder management and providing clear, relevant management reporting, professional communication - written and verbal. Eligibility to work in the UK. Desirable: Experience in technology projects such as cyber infrastructure implementation or replacement initiatives Understanding of global program structures, launch plans, timing, and ownership Ability to coach and mentor team members through knowledge transfer and constructive feedback Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission.
Who we are GlobalData is a specialist information services business helping clients decode the future, make better decisions and reach more customers. Through our data, expert analysis and innovative solutions, we provide intelligence across the world s largest industries to companies, governments and industry professionals. Formed in 2016 through the combination of multiple specialist firms, we are now a fully integrated global platform with 3,500+ colleagues across 20+ industries, supporting over 5,000 customers worldwide. Why join GlobalData? We are at a pivotal stage of growth, supported by recent investment and ambitious plans. It s a fast-paced, entrepreneurial environment where collaboration drives success, and where curious, ambitious individuals can make a real impact as we work towards becoming the world s most trusted source of strategic industry intelligence. The role As Information Security Manager, you will lead the strategy and delivery of initiatives that strengthen GlobalData s cybersecurity posture across global operations. You ll ensure our people, systems and infrastructure remain secure, resilient and able to support continued growth. Reporting to the Chief Information Security Officer, you will lead a team of security professionals, drive key security programmes, and work closely with stakeholders across technology and business teams to improve cyber governance, data security and operational resilience. This role requires strong expertise in information security, AI and data governance, alongside experience in vendor management and third-party risk. What you ll be doing Lead and deliver the information security strategy aligned to business goals Develop and maintain security frameworks, policies and standards Oversee risk management, threat assessment and vulnerability programmes Ensure compliance with ISO 27001, ISO 42001, GDPR and other relevant frameworks Manage security operations including incident response, monitoring and investigations Partner with IT, engineering, legal and business teams to embed security best practice Lead internal/external audits, assessments and remediation plans Manage third-party and vendor security risk programmes Build, mentor and lead a high-performing security team Provide executive reporting on security risks, metrics and improvement plans Monitor emerging threats, technologies and regulations What we re looking for 8+ years experience in senior cybersecurity or information security roles Leadership experience within a complex, multinational business Experience managing global teams across multiple regions Strong knowledge of ISO 27001, NIST, CIS Controls or similar frameworks Proven experience in security operations, risk management and compliance Experience handling security incidents and crisis management Strong commercial awareness and budget management experience Excellent communication and stakeholder management skills, including senior leadership exposure Strong understanding of IT infrastructure, cloud technologies and enterprise systems Experience managing third-party vendors and technology partners Preferred Certifications CISM or similar ISO 27001 Lead Implementer / Lead Auditor ISO 42001 (desirable) Technical Skills Security architecture and cloud security (AWS) SIEM, EDR and SOC tools ISO 27001 / ISO 42001 implementation Vulnerability management and penetration testing oversight Data protection, encryption and privacy controls Third-party risk management tools and processes Leadership & Competencies Inspiring leader who develops teams and delegates effectively Strategic thinker with strong decision-making skills Able to influence senior stakeholders and collaborate cross-functionally Hands-on and comfortable operating at all levels Calm under pressure with strong prioritisation skills Able to translate technical risk into clear business impact Highly organised with strong attention to detail In addition to a rewarding career, we support our GlobalData colleagues with a range of benefits across health, finances, fitness, travel, tech and more. To find out more about the roles and benefits on offer in your region, visit (url removed) GlobalData believes strongly in the value of diversity and creating supportive, inclusive environments where our colleagues can succeed. As such, we are proud to be an Equal Opportunity Employer. GlobalData is determined to ensure that no applicant or employee receives less favourable treatment on the grounds of gender, age, disability, religion, belief, sexual orientation, marital status, race, or is disadvantaged by conditions or requirements which cannot be shown to be justifiable.
Apr 30, 2026
Full time
Who we are GlobalData is a specialist information services business helping clients decode the future, make better decisions and reach more customers. Through our data, expert analysis and innovative solutions, we provide intelligence across the world s largest industries to companies, governments and industry professionals. Formed in 2016 through the combination of multiple specialist firms, we are now a fully integrated global platform with 3,500+ colleagues across 20+ industries, supporting over 5,000 customers worldwide. Why join GlobalData? We are at a pivotal stage of growth, supported by recent investment and ambitious plans. It s a fast-paced, entrepreneurial environment where collaboration drives success, and where curious, ambitious individuals can make a real impact as we work towards becoming the world s most trusted source of strategic industry intelligence. The role As Information Security Manager, you will lead the strategy and delivery of initiatives that strengthen GlobalData s cybersecurity posture across global operations. You ll ensure our people, systems and infrastructure remain secure, resilient and able to support continued growth. Reporting to the Chief Information Security Officer, you will lead a team of security professionals, drive key security programmes, and work closely with stakeholders across technology and business teams to improve cyber governance, data security and operational resilience. This role requires strong expertise in information security, AI and data governance, alongside experience in vendor management and third-party risk. What you ll be doing Lead and deliver the information security strategy aligned to business goals Develop and maintain security frameworks, policies and standards Oversee risk management, threat assessment and vulnerability programmes Ensure compliance with ISO 27001, ISO 42001, GDPR and other relevant frameworks Manage security operations including incident response, monitoring and investigations Partner with IT, engineering, legal and business teams to embed security best practice Lead internal/external audits, assessments and remediation plans Manage third-party and vendor security risk programmes Build, mentor and lead a high-performing security team Provide executive reporting on security risks, metrics and improvement plans Monitor emerging threats, technologies and regulations What we re looking for 8+ years experience in senior cybersecurity or information security roles Leadership experience within a complex, multinational business Experience managing global teams across multiple regions Strong knowledge of ISO 27001, NIST, CIS Controls or similar frameworks Proven experience in security operations, risk management and compliance Experience handling security incidents and crisis management Strong commercial awareness and budget management experience Excellent communication and stakeholder management skills, including senior leadership exposure Strong understanding of IT infrastructure, cloud technologies and enterprise systems Experience managing third-party vendors and technology partners Preferred Certifications CISM or similar ISO 27001 Lead Implementer / Lead Auditor ISO 42001 (desirable) Technical Skills Security architecture and cloud security (AWS) SIEM, EDR and SOC tools ISO 27001 / ISO 42001 implementation Vulnerability management and penetration testing oversight Data protection, encryption and privacy controls Third-party risk management tools and processes Leadership & Competencies Inspiring leader who develops teams and delegates effectively Strategic thinker with strong decision-making skills Able to influence senior stakeholders and collaborate cross-functionally Hands-on and comfortable operating at all levels Calm under pressure with strong prioritisation skills Able to translate technical risk into clear business impact Highly organised with strong attention to detail In addition to a rewarding career, we support our GlobalData colleagues with a range of benefits across health, finances, fitness, travel, tech and more. To find out more about the roles and benefits on offer in your region, visit (url removed) GlobalData believes strongly in the value of diversity and creating supportive, inclusive environments where our colleagues can succeed. As such, we are proud to be an Equal Opportunity Employer. GlobalData is determined to ensure that no applicant or employee receives less favourable treatment on the grounds of gender, age, disability, religion, belief, sexual orientation, marital status, race, or is disadvantaged by conditions or requirements which cannot be shown to be justifiable.
Cyber Security Operations Manager Liverpool (Hybrid) 75,000 We're working with a growing UK business looking to hire a Cyber Security Operations Manager to take full ownership of its security operations function, ensuring the organisation is protected, resilient, and continuously improving against an increasingly complex threat landscape. This is a high-impact position where you'll lead the security operations function end-to-end, driving improvements across threat detection, incident response, and overall security posture within a complex, evolving environment. The Role You'll take ownership of security operations, ensuring the business is protected against evolving threats while continuously improving processes, tooling, and team capability. Key responsibilities include: Leading the day-to-day operations of the Security Operations function, including oversight of any outsourced SOC Managing the full incident response lifecycle (detection through to recovery and post-incident review) Overseeing threat detection, vulnerability management, and cyber defence capabilities Driving improvements across SIEM, SOAR, EDR/XDR, and security tooling Ensuring robust monitoring, alerting, and response across cloud, network, and endpoint environments Partnering with Infrastructure, Cloud, and Risk teams to strengthen security across the business Leading and developing a team of cyber engineers and analysts Driving automation initiatives to improve response times and operational efficiency Supporting governance, compliance, and audit requirements Reporting on security performance, risks, and KPIs to senior stakeholders What We're Looking For Proven experience leading a Security Operations or SOC function Strong understanding of SIEM, SOAR, EDR/XDR, IDS/IPS, and security tooling Experience managing incident response and threat management in complex environments Strong knowledge of frameworks such as NIST, ISO 27001, or CIS Controls Experience working in cloud environments (Azure, AWS, or GCP) Strong leadership and stakeholder management skills Ability to balance hands-on technical understanding with strategic oversight Why Join? Opportunity to lead and shape the security operations function High visibility role across technology and leadership teams Business actively investing in cyber security and resilience If you're looking for a role where you can lead, influence, and strengthen cyber security at scale, we'd love to hear from you. Apply today with your most up to date CV. BH36094
Apr 30, 2026
Full time
Cyber Security Operations Manager Liverpool (Hybrid) 75,000 We're working with a growing UK business looking to hire a Cyber Security Operations Manager to take full ownership of its security operations function, ensuring the organisation is protected, resilient, and continuously improving against an increasingly complex threat landscape. This is a high-impact position where you'll lead the security operations function end-to-end, driving improvements across threat detection, incident response, and overall security posture within a complex, evolving environment. The Role You'll take ownership of security operations, ensuring the business is protected against evolving threats while continuously improving processes, tooling, and team capability. Key responsibilities include: Leading the day-to-day operations of the Security Operations function, including oversight of any outsourced SOC Managing the full incident response lifecycle (detection through to recovery and post-incident review) Overseeing threat detection, vulnerability management, and cyber defence capabilities Driving improvements across SIEM, SOAR, EDR/XDR, and security tooling Ensuring robust monitoring, alerting, and response across cloud, network, and endpoint environments Partnering with Infrastructure, Cloud, and Risk teams to strengthen security across the business Leading and developing a team of cyber engineers and analysts Driving automation initiatives to improve response times and operational efficiency Supporting governance, compliance, and audit requirements Reporting on security performance, risks, and KPIs to senior stakeholders What We're Looking For Proven experience leading a Security Operations or SOC function Strong understanding of SIEM, SOAR, EDR/XDR, IDS/IPS, and security tooling Experience managing incident response and threat management in complex environments Strong knowledge of frameworks such as NIST, ISO 27001, or CIS Controls Experience working in cloud environments (Azure, AWS, or GCP) Strong leadership and stakeholder management skills Ability to balance hands-on technical understanding with strategic oversight Why Join? Opportunity to lead and shape the security operations function High visibility role across technology and leadership teams Business actively investing in cyber security and resilience If you're looking for a role where you can lead, influence, and strengthen cyber security at scale, we'd love to hear from you. Apply today with your most up to date CV. BH36094