Your Role: As a Cyber Security Specialist, you will work within a multi-disciplinary security team delivering a broad range of services, including threat detection and response, vulnerability scanning, dark web monitoring, social engineering assessments, and security reporting. You will act as a technical escalation point for complex security incidents, leading containment and remediation activitie click apply for full job details
Aug 25, 2026
Full time
Your Role: As a Cyber Security Specialist, you will work within a multi-disciplinary security team delivering a broad range of services, including threat detection and response, vulnerability scanning, dark web monitoring, social engineering assessments, and security reporting. You will act as a technical escalation point for complex security incidents, leading containment and remediation activitie click apply for full job details
Threat Hunting & Detection Engineering Analyst Location: UK (Hybrid) Salary: Competitive + Excellent Benefits Threat Hunting & Detection Engineering Analyst A leading global technology consultancy is looking to hire a Threat Hunting & Detection Engineering Analyst to join its growing Cyber Security practice click apply for full job details
Aug 25, 2026
Full time
Threat Hunting & Detection Engineering Analyst Location: UK (Hybrid) Salary: Competitive + Excellent Benefits Threat Hunting & Detection Engineering Analyst A leading global technology consultancy is looking to hire a Threat Hunting & Detection Engineering Analyst to join its growing Cyber Security practice click apply for full job details
Locations: Guildford, Surrey, United Kingdom Role ID 215727 Worker Type Regular Employee Studio/Department CT - Security Work Model Hybrid Description & Requirements Electronic Arts creates next-level entertainment experiences that inspire players and fans around the world. Here, everyone is part of the story. Part of a community that connects across the globe. A place where creativity thrives, new perspectives are invited, and ideas matter. A team where everyone makes play happen. We are seeking a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor reporting to the Director of Threat Intelligence and Detections, you will play a central role in the technical leadership of the Detection Engineering team. You'll mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions, including those applying AI and cloud-native technologies. Responsibilities Technical Leadership Design and operationalize advanced detections across cloud, container, and on-prem environments. You will build integrations for diverse data sources (e.g., Wiz, host telemetry, network sensors) into EA's detection infrastructure. You will define detection lifecycle processes governance, and performance metrics. Lead development of AI-driven detection proof-of-concepts Guide peers in building scalable, maintainable detection infrastructure and tuning detection content. Support priorities like product detection assessments, threat-led risk prioritization, and production telemetry uplift. Minimum Qualifications Experience in detection engineering, security engineering, or software development with a focus on cybersecurity. Experience developing detections and integrations within SIEM platforms (e.g., Splunk, Elastic, QRadar), use of Risk-based alerting Familiarity with cybersecurity frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST CSF). Experience with cloud security platforms (e.g., Wiz) and integrating their outputs into detection pipelines. Background in AI/ML or data science applied to cybersecurity detections. Understanding of cloud-native architectures, container security, and host-based detection. Experience leading PoCs or greenfield development plans in a complex security ecosystem. About Electronic Arts We're proud to have an extensive portfolio of games and experiences, locations around the world, and opportunities across EA. We value adaptability, resilience, creativity, and curiosity. From leadership that brings out your potential, to creating space for learning and experimenting, we empower you to do great work and pursue opportunities for growth. We adopt a holistic approach to our benefits programs, emphasizing physical, emotional, financial, career, and community wellness to support a balanced life. Our packages are tailored to meet local needs and may include healthcare coverage, mental well-being support, retirement savings, paid time off, family leaves, complimentary games, and more. We nurture environments where our teams can always bring their best to what they do. Electronic Arts is an equal opportunity employer. All employment decisions are made without regard to race, color, national origin, ancestry, sex, gender, gender identity or expression, sexual orientation, age, genetic information, religion, disability, medical condition, pregnancy, marital status, family status, veteran status, or any other characteristic protected by law. We will also consider employment qualified applicants with criminal records in accordance with applicable law. EA also makes workplace accommodations for qualified individuals with disabilities as required by applicable law.
Aug 25, 2026
Full time
Locations: Guildford, Surrey, United Kingdom Role ID 215727 Worker Type Regular Employee Studio/Department CT - Security Work Model Hybrid Description & Requirements Electronic Arts creates next-level entertainment experiences that inspire players and fans around the world. Here, everyone is part of the story. Part of a community that connects across the globe. A place where creativity thrives, new perspectives are invited, and ideas matter. A team where everyone makes play happen. We are seeking a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor reporting to the Director of Threat Intelligence and Detections, you will play a central role in the technical leadership of the Detection Engineering team. You'll mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions, including those applying AI and cloud-native technologies. Responsibilities Technical Leadership Design and operationalize advanced detections across cloud, container, and on-prem environments. You will build integrations for diverse data sources (e.g., Wiz, host telemetry, network sensors) into EA's detection infrastructure. You will define detection lifecycle processes governance, and performance metrics. Lead development of AI-driven detection proof-of-concepts Guide peers in building scalable, maintainable detection infrastructure and tuning detection content. Support priorities like product detection assessments, threat-led risk prioritization, and production telemetry uplift. Minimum Qualifications Experience in detection engineering, security engineering, or software development with a focus on cybersecurity. Experience developing detections and integrations within SIEM platforms (e.g., Splunk, Elastic, QRadar), use of Risk-based alerting Familiarity with cybersecurity frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST CSF). Experience with cloud security platforms (e.g., Wiz) and integrating their outputs into detection pipelines. Background in AI/ML or data science applied to cybersecurity detections. Understanding of cloud-native architectures, container security, and host-based detection. Experience leading PoCs or greenfield development plans in a complex security ecosystem. About Electronic Arts We're proud to have an extensive portfolio of games and experiences, locations around the world, and opportunities across EA. We value adaptability, resilience, creativity, and curiosity. From leadership that brings out your potential, to creating space for learning and experimenting, we empower you to do great work and pursue opportunities for growth. We adopt a holistic approach to our benefits programs, emphasizing physical, emotional, financial, career, and community wellness to support a balanced life. Our packages are tailored to meet local needs and may include healthcare coverage, mental well-being support, retirement savings, paid time off, family leaves, complimentary games, and more. We nurture environments where our teams can always bring their best to what they do. Electronic Arts is an equal opportunity employer. All employment decisions are made without regard to race, color, national origin, ancestry, sex, gender, gender identity or expression, sexual orientation, age, genetic information, religion, disability, medical condition, pregnancy, marital status, family status, veteran status, or any other characteristic protected by law. We will also consider employment qualified applicants with criminal records in accordance with applicable law. EA also makes workplace accommodations for qualified individuals with disabilities as required by applicable law.
Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google's Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation. Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We're honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you'll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun! Role Description Wiz is looking for a Security Engineer for Product & Production Infrastructure who has experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. You'll get to collaborate with our software development and DevOps teams to secure Wiz's products, CI/CD infrastructure, and production infrastructure. You'll also have the opportunity to influence our product roadmap by utilizing Wiz-for-Wiz to assess, monitor, and harden our environments. Responsibilities Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies. Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows. Design and implement secure baselines for cloud resources and Kubernetes based infrastructure. Drive vulnerability management and remediation efforts - prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production. Extend our detection and response capabilities - building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents. Build deep functional partnerships with Wiz's engineering and operations teams - helping them deliver secure-by-design solutions. Minimum qualifications 7+ years of experience in security engineering or security operations work in cloud environments. Experience with AWS cloud security (or equivalent experience in Azure and GCP with some level of AWS experience). Experience with cloud native Kubernetes services (EKS/GKE/AKS) and container security principles. Experience securing IAM and cloud identities at scale. Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls. Practical understanding of web application security concepts (such as OWASP Top-10 and similar). Hands-on experience with IaC and related tools (Terraform, CloudFormation, Helm, Pulumi). Experience with automation and tooling development in one or more of the following: Python, Go, Shell, HCL, Rego. Preferred qualifications Bachelor's degree in computer science or a related field, and/or equivalent job experience in lieu of a degree. Experience working with remote, globally distributed teams. Experience working in organizations that develop software and/or operate managed infrastructure and technology services for their own customers. Experience with CNAPP, CSPM, or CIEM solutions. Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship. Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.
Aug 25, 2026
Full time
Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google's Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation. Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We're honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you'll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun! Role Description Wiz is looking for a Security Engineer for Product & Production Infrastructure who has experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. You'll get to collaborate with our software development and DevOps teams to secure Wiz's products, CI/CD infrastructure, and production infrastructure. You'll also have the opportunity to influence our product roadmap by utilizing Wiz-for-Wiz to assess, monitor, and harden our environments. Responsibilities Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies. Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows. Design and implement secure baselines for cloud resources and Kubernetes based infrastructure. Drive vulnerability management and remediation efforts - prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production. Extend our detection and response capabilities - building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents. Build deep functional partnerships with Wiz's engineering and operations teams - helping them deliver secure-by-design solutions. Minimum qualifications 7+ years of experience in security engineering or security operations work in cloud environments. Experience with AWS cloud security (or equivalent experience in Azure and GCP with some level of AWS experience). Experience with cloud native Kubernetes services (EKS/GKE/AKS) and container security principles. Experience securing IAM and cloud identities at scale. Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls. Practical understanding of web application security concepts (such as OWASP Top-10 and similar). Hands-on experience with IaC and related tools (Terraform, CloudFormation, Helm, Pulumi). Experience with automation and tooling development in one or more of the following: Python, Go, Shell, HCL, Rego. Preferred qualifications Bachelor's degree in computer science or a related field, and/or equivalent job experience in lieu of a degree. Experience working with remote, globally distributed teams. Experience working in organizations that develop software and/or operate managed infrastructure and technology services for their own customers. Experience with CNAPP, CSPM, or CIEM solutions. Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship. Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.
Electronic Arts in Guildford, UK seeks a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments and will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor, you will mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions,
Aug 24, 2026
Full time
Electronic Arts in Guildford, UK seeks a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments and will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor, you will mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions,
Cyber Security Engineer Hybrid / Cardiff £62,000 - £72,000 We're looking for an experienced Security Engineer to join an established Cyber Resilience function, taking a hands-on role in strengthening security operations across a complex technology environment. You'll work across Microsoft security technologies, cloud security, identity, vulnerability management and threat detection, while helping improve the organisation's overall cyber resilience. What you'll be doing: Managing and improving Microsoft Defender and Sentinel capabilities Securing Azure environments and implementing effective security controls Managing Entra ID security, including Conditional Access, Identity Protection and privileged access Supporting vulnerability management and remediation Implementing data protection controls using Microsoft Purview Supporting threat monitoring, detection and incident response Providing security input into technology projects and architecture decisions Supporting security frameworks including NCSC CAF, ISO 27001, NIST CSF and CIS Controls Acting as a security SME to technical and non-technical stakeholders What we're looking for: Proven Security Engineer experience Strong Microsoft Defender and Sentinel knowledge Good Azure and Entra ID security experience Hands-on vulnerability management experience Understanding of security frameworks and technical controls Strong communication and stakeholder management skills Benefits: Flexible working opportunities Discretionary bonus of up to 10% 25 days annual leave plus bank holidays Retirement Savings Plan (pension) with Aviva: 5% employee contribution, doubling your contribution at 10% - totalling 15% 14 x salary Life Insurance linked to membership of the Retirement Savings Plan "Choices" flexible benefit scheme options including corporate gym memberships, dental insurance, and health cash-plans Access to our Financial Wellbeing Programme - allowing you to manage your benefits flexibly to suit your financial needs Enhanced pay for parental leave Retail discounts and cashback scheme Annual salary review Company Sick Pay Ready to Apply? Contact Daniel Newton to find out more. Please apply with a CV and a cover letter outlining why you're perfect for the role. Know someone great for the job? We offer a referral scheme-just get in touch!
Aug 24, 2026
Full time
Cyber Security Engineer Hybrid / Cardiff £62,000 - £72,000 We're looking for an experienced Security Engineer to join an established Cyber Resilience function, taking a hands-on role in strengthening security operations across a complex technology environment. You'll work across Microsoft security technologies, cloud security, identity, vulnerability management and threat detection, while helping improve the organisation's overall cyber resilience. What you'll be doing: Managing and improving Microsoft Defender and Sentinel capabilities Securing Azure environments and implementing effective security controls Managing Entra ID security, including Conditional Access, Identity Protection and privileged access Supporting vulnerability management and remediation Implementing data protection controls using Microsoft Purview Supporting threat monitoring, detection and incident response Providing security input into technology projects and architecture decisions Supporting security frameworks including NCSC CAF, ISO 27001, NIST CSF and CIS Controls Acting as a security SME to technical and non-technical stakeholders What we're looking for: Proven Security Engineer experience Strong Microsoft Defender and Sentinel knowledge Good Azure and Entra ID security experience Hands-on vulnerability management experience Understanding of security frameworks and technical controls Strong communication and stakeholder management skills Benefits: Flexible working opportunities Discretionary bonus of up to 10% 25 days annual leave plus bank holidays Retirement Savings Plan (pension) with Aviva: 5% employee contribution, doubling your contribution at 10% - totalling 15% 14 x salary Life Insurance linked to membership of the Retirement Savings Plan "Choices" flexible benefit scheme options including corporate gym memberships, dental insurance, and health cash-plans Access to our Financial Wellbeing Programme - allowing you to manage your benefits flexibly to suit your financial needs Enhanced pay for parental leave Retail discounts and cashback scheme Annual salary review Company Sick Pay Ready to Apply? Contact Daniel Newton to find out more. Please apply with a CV and a cover letter outlining why you're perfect for the role. Know someone great for the job? We offer a referral scheme-just get in touch!
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Aug 24, 2026
Full time
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
Aug 24, 2026
Full time
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
About the company - the company's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role the company's Safeguards organization builds the systems that keep Claude safe to use at scale. The Account Compromise team owns one specific slice of that work: protecting the people and organizations who use Claude from losing control of their accounts, and preventing compromised accounts and credentials from being used to abuse our platform. Account takeover, credential stuffing, phishing-driven session theft, leaked API keys, and resold access all cause real harm - to the customers whose accounts are hijacked, and to the wider ecosystem when stolen access is used to route abusive traffic through legitimate accounts. We are looking for a staff+ engineer to set the technical direction for this work. You will own the architecture of how we detect, contain, and remediate account compromise across Claude and the Claude Developer Platform, making the design decisions that other engineers and teams build on top of. You will move between deep technical work and adversarial problem-solving: threat modelling how attackers will adapt, scoping multi-month projects from ambiguous starting points, and leading complex live investigations when they escalate. This is a hard problem space. Attackers iterate quickly, the signals separating a compromised account from an unusual but legitimate one are subtle, and every defence carries a cost to real users if it fires incorrectly. You will be building the playbook, and the judgement calls about where to draw those lines will largely be yours to make and defend. You will operate with high autonomy - owning detection coverage and incident leadership, driving alignment with Security, Product, and Policy teams, and shaping how the company approaches this problem globally rather than executing against someone else's roadmap. Key responsibilities Set the technical direction and own the architecture for account compromise detection, response, and remediation across Claude and the Claude Developer Platform Independently scope and lead complex, multi-month engineering projects from an ambiguous starting point through to production systems that operate reliably under adversarial pressure Build and evolve detection systems that identify account takeover, credential abuse, and compromised API keys in near real time Design automated response flows that cut off attacker access while minimising disruption to legitimate users Lead investigations into significant compromise incidents end to end, then convert what you learn into durable, automated defences Threat model how attackers are likely to adapt, and prioritise the team's work against that view rather than only against incidents already observed Drive cross-organisational alignment on account security direction with Security, Product, Support, Policy and other partners. Define how the team measures success and hold the work to those measures Set technical standards for the domain and raise the bar for other engineers through code review, design review, and mentorship Surface patterns from compromise cases to research and product teams so that protections improve upstream Minimum qualifications 10 + years experience designing, building, and operating detection, anti-fraud, anti-abuse, or security systems in production A track record of independently scoping and delivering complex, ambiguous, multi-month technical projects Experience making architectural decisions in an adversarial domain that other engineers and teams then build on Proficiency in Python and SQL, with strong software engineering fundamentals and hands-on coding ability Experience leading investigations into account-based abuse or security incidents, and translating findings into automated detection Ability to reason rigorously about large behavioural or telemetry datasets, and to distinguish attacker behaviour from unusual but legitimate use Strong written communication and a track record of driving alignment across multiple teams and stakeholders Sound judgement about the tradeoff between stopping bad actors and disrupting legitimate users, and the ability to explain and defend where you have drawn that line Preferred qualifications Significant engineering experience in trust and safety, platform integrity, fraud, or detection and response, including time as a technical lead or mentor Deep familiarity with account attack techniques Experience with authentication and identity systems, including OAuth, single sign-on, multi-factor authentication, device binding, and risk-based authentication Experience applying machine learning to fraud or abuse detection, alongside a clear sense of when simpler rules-based approaches are the better choice Experience with cloud data tooling such as BigQuery, Spark, dbt, Airflow or similar Experience building tooling for operational or investigative teams, and partnering closely with the people who use it Interest in AI safety, and in the specific ways account compromise intersects with model misuse Representative projects - Design the architecture for real-time login risk scoring, and get agreement across Security, Product, and Safeguards on where step-up authentication should and should not fire Design detection for compromised API keys, together with security controls to limit exposure Rebuild product features to regain access quickly when customers get compromised Write the threat model that sets the team's roadmap for the next year, and bring the rest of the organisation along with it Instrument a false positive review loop that measures how often the team's defences affect legitimate users, and drive that number down The annual compensation range for this role is listed below. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role. Annual Salary: £325,000 - £390,000 GBP Logistics Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices. Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this. We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team. Your safety matters to us. To protect yourself from potential scams, remember that the company recruiters only contact you email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of the company. Be cautious of emails from other domains. Legitimate the company recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links-visit the directly for confirmed position openings. How we're different - We're different We believe that the highest-impact AI research will be big science. At the company we work as a single cohesive team on just a few large-scale research efforts. And we value impact - advancing our long-term goals of steerable, trustworthy AI - rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills. The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to the company, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute . click apply for full job details
Aug 24, 2026
Full time
About the company - the company's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role the company's Safeguards organization builds the systems that keep Claude safe to use at scale. The Account Compromise team owns one specific slice of that work: protecting the people and organizations who use Claude from losing control of their accounts, and preventing compromised accounts and credentials from being used to abuse our platform. Account takeover, credential stuffing, phishing-driven session theft, leaked API keys, and resold access all cause real harm - to the customers whose accounts are hijacked, and to the wider ecosystem when stolen access is used to route abusive traffic through legitimate accounts. We are looking for a staff+ engineer to set the technical direction for this work. You will own the architecture of how we detect, contain, and remediate account compromise across Claude and the Claude Developer Platform, making the design decisions that other engineers and teams build on top of. You will move between deep technical work and adversarial problem-solving: threat modelling how attackers will adapt, scoping multi-month projects from ambiguous starting points, and leading complex live investigations when they escalate. This is a hard problem space. Attackers iterate quickly, the signals separating a compromised account from an unusual but legitimate one are subtle, and every defence carries a cost to real users if it fires incorrectly. You will be building the playbook, and the judgement calls about where to draw those lines will largely be yours to make and defend. You will operate with high autonomy - owning detection coverage and incident leadership, driving alignment with Security, Product, and Policy teams, and shaping how the company approaches this problem globally rather than executing against someone else's roadmap. Key responsibilities Set the technical direction and own the architecture for account compromise detection, response, and remediation across Claude and the Claude Developer Platform Independently scope and lead complex, multi-month engineering projects from an ambiguous starting point through to production systems that operate reliably under adversarial pressure Build and evolve detection systems that identify account takeover, credential abuse, and compromised API keys in near real time Design automated response flows that cut off attacker access while minimising disruption to legitimate users Lead investigations into significant compromise incidents end to end, then convert what you learn into durable, automated defences Threat model how attackers are likely to adapt, and prioritise the team's work against that view rather than only against incidents already observed Drive cross-organisational alignment on account security direction with Security, Product, Support, Policy and other partners. Define how the team measures success and hold the work to those measures Set technical standards for the domain and raise the bar for other engineers through code review, design review, and mentorship Surface patterns from compromise cases to research and product teams so that protections improve upstream Minimum qualifications 10 + years experience designing, building, and operating detection, anti-fraud, anti-abuse, or security systems in production A track record of independently scoping and delivering complex, ambiguous, multi-month technical projects Experience making architectural decisions in an adversarial domain that other engineers and teams then build on Proficiency in Python and SQL, with strong software engineering fundamentals and hands-on coding ability Experience leading investigations into account-based abuse or security incidents, and translating findings into automated detection Ability to reason rigorously about large behavioural or telemetry datasets, and to distinguish attacker behaviour from unusual but legitimate use Strong written communication and a track record of driving alignment across multiple teams and stakeholders Sound judgement about the tradeoff between stopping bad actors and disrupting legitimate users, and the ability to explain and defend where you have drawn that line Preferred qualifications Significant engineering experience in trust and safety, platform integrity, fraud, or detection and response, including time as a technical lead or mentor Deep familiarity with account attack techniques Experience with authentication and identity systems, including OAuth, single sign-on, multi-factor authentication, device binding, and risk-based authentication Experience applying machine learning to fraud or abuse detection, alongside a clear sense of when simpler rules-based approaches are the better choice Experience with cloud data tooling such as BigQuery, Spark, dbt, Airflow or similar Experience building tooling for operational or investigative teams, and partnering closely with the people who use it Interest in AI safety, and in the specific ways account compromise intersects with model misuse Representative projects - Design the architecture for real-time login risk scoring, and get agreement across Security, Product, and Safeguards on where step-up authentication should and should not fire Design detection for compromised API keys, together with security controls to limit exposure Rebuild product features to regain access quickly when customers get compromised Write the threat model that sets the team's roadmap for the next year, and bring the rest of the organisation along with it Instrument a false positive review loop that measures how often the team's defences affect legitimate users, and drive that number down The annual compensation range for this role is listed below. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role. Annual Salary: £325,000 - £390,000 GBP Logistics Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices. Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this. We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team. Your safety matters to us. To protect yourself from potential scams, remember that the company recruiters only contact you email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of the company. Be cautious of emails from other domains. Legitimate the company recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links-visit the directly for confirmed position openings. How we're different - We're different We believe that the highest-impact AI research will be big science. At the company we work as a single cohesive team on just a few large-scale research efforts. And we value impact - advancing our long-term goals of steerable, trustworthy AI - rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills. The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to the company, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute . click apply for full job details
United States Digital Space LLC is hiring a Staff+ Engineer to set the technical direction for safeguarding Claude at scale. You will own the architecture for detection, containment, and remediation of account compromise across Claude and the Claude Developer Platform, while guiding multi-month projects in adversarial environments. You will lead investigations, build durable automated defenses, and drive alignment with Security, Product, and Policy teams to protect users globally.
Aug 24, 2026
Full time
United States Digital Space LLC is hiring a Staff+ Engineer to set the technical direction for safeguarding Claude at scale. You will own the architecture for detection, containment, and remediation of account compromise across Claude and the Claude Developer Platform, while guiding multi-month projects in adversarial environments. You will lead investigations, build durable automated defenses, and drive alignment with Security, Product, and Policy teams to protect users globally.
Incydr Sales SpecialistApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6506At Mimecast, we're redefining cybersecurity and leading the charge in human risk management. We protect businesses from evolving threats, and you'll be at the forefront. Every customer you bring on board builds something bigger - for them, for us, for our communities, and for your career. Simply put - when we grow, you grow.We set you up to win. Top-tier enablement, smart coaching, and real insights mean you'll smash quotas, not just hit them. You get the tools and knowledge to sell with confidence, turning complex sales cycles into closed deals.Your career path? It's yours to shape. Compelling commission, clear progression, and chances to lead, specialize, or pivot - you decide what's next. Here, success isn't just about the deals you close. It's about your progress, your influence, your impact.Mimecast is hiring an Incydr Sales Specialist to lead the charge in driving sales of the Incydr product Incydr Overview sales via new and expansion revenue while teaming with the core Mimecast sales teams within the local country. This is a unique opportunity to join an innovative, fast-growing team and make a significant impact on a key strategic growth area for the company.As an Incydr Sales Specialist, you'll focus on driving new and expansion revenue while working closely with Mimecast's core sales teams. You'll thrive in this role if you enjoy building relationships with key decision-makers and working collaboratively with cross-functional teams to deliver results.Ready to push boundaries and accelerate your career? Let's make it happen. About Mimecast Incydr The Incydr solution is a key strategic revenue growth lever for Mimecast, coming via the acquisition of Code42 in mid 2024. The solution is led and sold by an overlay sales team, teaming with the core Mimecast sales leaders and account executives. Incydr speeds the time to detect and respond to Insider Risks by delivering a fast, simple path to data loss detection, investigation and response. With our product, IncydrTM, security teams easily protect corporate data and reduce insider risk while fostering a collaborative and productive culture for employees. We're here to support organizations made up of people that move fast and think big. The ones who work together to solve hard problems and relentlessly pursue better. What You'll Do Develop and Grow Accounts: Build and manage accounts and key relationships, leveraging Mimecast's resources to drive sales execution. Introduce Incydr to Security Buyers: Use your expertise and connections to position Incydr with key stakeholders, including CISOs, IT Leaders, and Risk/Compliance professionals. Build and Maintain Strategic Partnerships: Establish relationships with business development and program teams within FSIs while understanding their business models and sales cycles. CRM Mastery: Maintain accurate and effective CRM hygiene in Salesforce and design impactful client campaigns. Product Demonstrations: Showcase the value of Incydr to clients, demonstrating how it helps address insider risks. Collaborate Across Teams: Partner with Account Executives, Sales Engineers, BDRs, Field Marketing, and Channel Account Managers to exceed sales targets. Drive Privacy and Security Compliance: Ensure all activities align with Mimecast's strict privacy and security policies, protecting sensitive information. What You'll Bring Enterprise SaaS Sales Experience: Proven track record of selling SaaS solutions to mid-market and enterprise customers. Cybersecurity Knowledge: Familiarity with the cybersecurity landscape and experience selling security solutions. Proven Sales Success: A history of exceeding booking and revenue targets, with experience engaging senior-level decision-makers (e.g., CIOs, CISOs). Communication Skills: Exceptional oral and written communication skills, with the ability to negotiate complex deals and overcome objections. Adaptability: Success in a fast-paced, high-growth environment with a collaborative and problem-solving mindset. Salesforce Proficiency: Strong working knowledge of Salesforce and other sales tools. The on-target earnings (OTE) range for this position is £128,000-£192,000 (OTE) plus benefits. This range represents the minimum and maximum new hire compensation for this role. The position may also be eligible for incentive plans and additional benefits, in accordance with company policy and local regulations. Our salary ranges are determined by role, level, and location with individual compensation also dependent on factors such as qualifications, experience, and skills. Final offers will reflect these considerations and may vary accordingly. Belonging at Mimecast Cybersecurity is a community effort. That's why we're committed to building an inclusive, diverse community that celebrates and welcomes everyone - unless they're a cybercriminal, of course.We're proud to be an Equal Opportunity and Affirmative Action Employer, and we'd encourage you to join us whatever your background. We particularly welcome applicants from traditionally underrepresented groups.We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law.
Aug 23, 2026
Full time
Incydr Sales SpecialistApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6506At Mimecast, we're redefining cybersecurity and leading the charge in human risk management. We protect businesses from evolving threats, and you'll be at the forefront. Every customer you bring on board builds something bigger - for them, for us, for our communities, and for your career. Simply put - when we grow, you grow.We set you up to win. Top-tier enablement, smart coaching, and real insights mean you'll smash quotas, not just hit them. You get the tools and knowledge to sell with confidence, turning complex sales cycles into closed deals.Your career path? It's yours to shape. Compelling commission, clear progression, and chances to lead, specialize, or pivot - you decide what's next. Here, success isn't just about the deals you close. It's about your progress, your influence, your impact.Mimecast is hiring an Incydr Sales Specialist to lead the charge in driving sales of the Incydr product Incydr Overview sales via new and expansion revenue while teaming with the core Mimecast sales teams within the local country. This is a unique opportunity to join an innovative, fast-growing team and make a significant impact on a key strategic growth area for the company.As an Incydr Sales Specialist, you'll focus on driving new and expansion revenue while working closely with Mimecast's core sales teams. You'll thrive in this role if you enjoy building relationships with key decision-makers and working collaboratively with cross-functional teams to deliver results.Ready to push boundaries and accelerate your career? Let's make it happen. About Mimecast Incydr The Incydr solution is a key strategic revenue growth lever for Mimecast, coming via the acquisition of Code42 in mid 2024. The solution is led and sold by an overlay sales team, teaming with the core Mimecast sales leaders and account executives. Incydr speeds the time to detect and respond to Insider Risks by delivering a fast, simple path to data loss detection, investigation and response. With our product, IncydrTM, security teams easily protect corporate data and reduce insider risk while fostering a collaborative and productive culture for employees. We're here to support organizations made up of people that move fast and think big. The ones who work together to solve hard problems and relentlessly pursue better. What You'll Do Develop and Grow Accounts: Build and manage accounts and key relationships, leveraging Mimecast's resources to drive sales execution. Introduce Incydr to Security Buyers: Use your expertise and connections to position Incydr with key stakeholders, including CISOs, IT Leaders, and Risk/Compliance professionals. Build and Maintain Strategic Partnerships: Establish relationships with business development and program teams within FSIs while understanding their business models and sales cycles. CRM Mastery: Maintain accurate and effective CRM hygiene in Salesforce and design impactful client campaigns. Product Demonstrations: Showcase the value of Incydr to clients, demonstrating how it helps address insider risks. Collaborate Across Teams: Partner with Account Executives, Sales Engineers, BDRs, Field Marketing, and Channel Account Managers to exceed sales targets. Drive Privacy and Security Compliance: Ensure all activities align with Mimecast's strict privacy and security policies, protecting sensitive information. What You'll Bring Enterprise SaaS Sales Experience: Proven track record of selling SaaS solutions to mid-market and enterprise customers. Cybersecurity Knowledge: Familiarity with the cybersecurity landscape and experience selling security solutions. Proven Sales Success: A history of exceeding booking and revenue targets, with experience engaging senior-level decision-makers (e.g., CIOs, CISOs). Communication Skills: Exceptional oral and written communication skills, with the ability to negotiate complex deals and overcome objections. Adaptability: Success in a fast-paced, high-growth environment with a collaborative and problem-solving mindset. Salesforce Proficiency: Strong working knowledge of Salesforce and other sales tools. The on-target earnings (OTE) range for this position is £128,000-£192,000 (OTE) plus benefits. This range represents the minimum and maximum new hire compensation for this role. The position may also be eligible for incentive plans and additional benefits, in accordance with company policy and local regulations. Our salary ranges are determined by role, level, and location with individual compensation also dependent on factors such as qualifications, experience, and skills. Final offers will reflect these considerations and may vary accordingly. Belonging at Mimecast Cybersecurity is a community effort. That's why we're committed to building an inclusive, diverse community that celebrates and welcomes everyone - unless they're a cybercriminal, of course.We're proud to be an Equal Opportunity and Affirmative Action Employer, and we'd encourage you to join us whatever your background. We particularly welcome applicants from traditionally underrepresented groups.We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law.
Senior Architect - Email & Collaboration SecurityApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6496 Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait.This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job.The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis.This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features.Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring Breadth Over Depth - and Knowing the Difference 10+ years building and operating production SaaS systems, with at least 3 years in a Solutions Architect, Principal Engineer, or equivalent role carrying product-shaping responsibility A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room Product Understanding - Not Just Technical Understanding Prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet Genuine customer orientation: asking what problem the customer has before asking how to build the feature Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions Bonus Points Background in email security, threat detection, DLP, identity, or data platforms Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS What We Offer Impact : architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars Voice : a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane Senior peers : a small, high-trust Architecture Leadership Team where everyone operates at a high level Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role A track record of product-shaping responsibility, not just technical delivery Active, daily use of AI development tools in a professional setting - not experimentation, practice Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. The base salary range for this position is £124,000 - £186,000 base + benefits. This reflects the minimum and maximum target for new hire salaries for this position. This position may also be eligible for incentive plans and other related benefits. Our salary ranges are determined by role, level, and location. These factors and individual capabilities will also determine the individual pay offered.
Aug 22, 2026
Full time
Senior Architect - Email & Collaboration SecurityApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6496 Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait.This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job.The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis.This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features.Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring Breadth Over Depth - and Knowing the Difference 10+ years building and operating production SaaS systems, with at least 3 years in a Solutions Architect, Principal Engineer, or equivalent role carrying product-shaping responsibility A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room Product Understanding - Not Just Technical Understanding Prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet Genuine customer orientation: asking what problem the customer has before asking how to build the feature Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions Bonus Points Background in email security, threat detection, DLP, identity, or data platforms Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS What We Offer Impact : architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars Voice : a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane Senior peers : a small, high-trust Architecture Leadership Team where everyone operates at a high level Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role A track record of product-shaping responsibility, not just technical delivery Active, daily use of AI development tools in a professional setting - not experimentation, practice Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. The base salary range for this position is £124,000 - £186,000 base + benefits. This reflects the minimum and maximum target for new hire salaries for this position. This position may also be eligible for incentive plans and other related benefits. Our salary ranges are determined by role, level, and location. These factors and individual capabilities will also determine the individual pay offered.
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Aug 22, 2026
Contractor
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Founding Security Engineer (Application & Infrastructure) Build the shield that makes Enterprise Superintelligence trustworthy London / Remote • Full-time • Pavo Labs About Pavo Pavo is building Enterprise Superintelligence: compounding systems that take ownership of business outcomes and work with humans to deliver them. We believe that while foundation models are necessary, they are not sufficient. The hard problem is systems intelligence: end-to-end architectures that understand a company's code, data, and decisions, and improve themselves through experience. We are assembling a small, senior team of researchers and engineers obsessed with systems-first intelligence. Our current team consists of PhDs and ML engineers from top applied ML and coding agent companies, with a heritage of shipping systems at Spotify, ShareChat, and Sourcegraph scale. Our team has built impressive momentum with a small group of highly capable engineers and researchers. The Opportunity As a Founding Security Engineer, you will help establish the security foundations for Pavo's agentic and knowledge systems. You help secure autonomous systems that write code, execute tools, and interact with sensitive enterprise data. This role sits at the bleeding edge of AI Security, wherein you harden the infrastructure that allows our knowledge and agentic systems to work safely inside Fortune 500 environments. You will build the shield that makes Enterprise Superintelligence trustworthy. What You'll Build You will own the holistic security posture of the Pavo platform, spanning Application, AI, and Infrastructure security: AI & Application Security: Lead the defense against LLM-specific vulnerabilities (Prompt Injection, Insecure Output Handling) and standard web threats (OWASP Top 10). Implement "Guardrails" that sanitize agent inputs/outputs and conduct continuous red-teaming of our agent behaviors. Secure SDLC & DevSecOps: Embed security into our CI/CD pipelines without slowing down our high-velocity engineering team. Integrate automated SAST/DAST scanning, dependency management (SCA), and secret detection into our daily workflow. Cloud & Infrastructure Hardening: Work closely with Systems Engineers to secure our Kubernetes clusters and compute environments. Design strict IAM policies (least privilege for agents) and ensure network isolation so that agent execution environments are impenetrable. Vulnerability Management: Own the lifecycle of vulnerability detection and remediation. Manage bug bounty programs, coordinate third-party pentests, and ensure our open-source dependencies (and the code our agents generate) are secure. Enterprise Trust: Help design features that give our customers confidence, such as audit logging, data residency controls, and rigorous access governance. What We Are Looking For We are looking for a security practitioner who is a builder at heart-someone who would rather ship a secure fix than write a policy document. Core Qualifications Experience: 5+ years of experience in Security Engineering, with a strong focus on Application Security and Cloud Security. AppSec Proficiency: Deep understanding of modern web vulnerabilities (CSRF, SSRF, XSS) and experience utilizing tools like Burp Suite, Semgrep, or CodeQL. Review code in Python or Go and spot logic flaws that scanners miss. AI Security Curiosity: Understand the unique risks of LLMs. Familiar with the OWASP Top 10 for LLMs and have explored defenses against prompt injection and data exfiltration in agentic systems. Cloud Native Security: Hands-on experience securing AWS/GCP environments and Kubernetes clusters. Knowledge of container security (capabilities, seccomp, namespaces) and how to secure microservices architectures. Offensive Mindset: Experience with Red Teaming or CTFs. Think like an attacker to uncover weaknesses in business logic and agent reasoning. Nice to Have Experience securing execution sandboxes (gVisor, Firecracker, or similar). Background in "Purple Teaming"-collaborating with developers to fix what you break. Contributions to the open-source security community or research on AI safety. Knowledge of compliance frameworks (SOC 2, ISO 27001) in an early-stage startup context. Why Join Us Founding Equity: Significant ownership in a company tackling the next layer of the AI stack. Frontier Security: Define the security standards for a new category of software-autonomous enterprise agents. World-Class Team: Collaborate with a dense talent cluster of researchers and engineers who have shipped products serving hundreds of millions of users. Pavo is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Aug 22, 2026
Full time
Founding Security Engineer (Application & Infrastructure) Build the shield that makes Enterprise Superintelligence trustworthy London / Remote • Full-time • Pavo Labs About Pavo Pavo is building Enterprise Superintelligence: compounding systems that take ownership of business outcomes and work with humans to deliver them. We believe that while foundation models are necessary, they are not sufficient. The hard problem is systems intelligence: end-to-end architectures that understand a company's code, data, and decisions, and improve themselves through experience. We are assembling a small, senior team of researchers and engineers obsessed with systems-first intelligence. Our current team consists of PhDs and ML engineers from top applied ML and coding agent companies, with a heritage of shipping systems at Spotify, ShareChat, and Sourcegraph scale. Our team has built impressive momentum with a small group of highly capable engineers and researchers. The Opportunity As a Founding Security Engineer, you will help establish the security foundations for Pavo's agentic and knowledge systems. You help secure autonomous systems that write code, execute tools, and interact with sensitive enterprise data. This role sits at the bleeding edge of AI Security, wherein you harden the infrastructure that allows our knowledge and agentic systems to work safely inside Fortune 500 environments. You will build the shield that makes Enterprise Superintelligence trustworthy. What You'll Build You will own the holistic security posture of the Pavo platform, spanning Application, AI, and Infrastructure security: AI & Application Security: Lead the defense against LLM-specific vulnerabilities (Prompt Injection, Insecure Output Handling) and standard web threats (OWASP Top 10). Implement "Guardrails" that sanitize agent inputs/outputs and conduct continuous red-teaming of our agent behaviors. Secure SDLC & DevSecOps: Embed security into our CI/CD pipelines without slowing down our high-velocity engineering team. Integrate automated SAST/DAST scanning, dependency management (SCA), and secret detection into our daily workflow. Cloud & Infrastructure Hardening: Work closely with Systems Engineers to secure our Kubernetes clusters and compute environments. Design strict IAM policies (least privilege for agents) and ensure network isolation so that agent execution environments are impenetrable. Vulnerability Management: Own the lifecycle of vulnerability detection and remediation. Manage bug bounty programs, coordinate third-party pentests, and ensure our open-source dependencies (and the code our agents generate) are secure. Enterprise Trust: Help design features that give our customers confidence, such as audit logging, data residency controls, and rigorous access governance. What We Are Looking For We are looking for a security practitioner who is a builder at heart-someone who would rather ship a secure fix than write a policy document. Core Qualifications Experience: 5+ years of experience in Security Engineering, with a strong focus on Application Security and Cloud Security. AppSec Proficiency: Deep understanding of modern web vulnerabilities (CSRF, SSRF, XSS) and experience utilizing tools like Burp Suite, Semgrep, or CodeQL. Review code in Python or Go and spot logic flaws that scanners miss. AI Security Curiosity: Understand the unique risks of LLMs. Familiar with the OWASP Top 10 for LLMs and have explored defenses against prompt injection and data exfiltration in agentic systems. Cloud Native Security: Hands-on experience securing AWS/GCP environments and Kubernetes clusters. Knowledge of container security (capabilities, seccomp, namespaces) and how to secure microservices architectures. Offensive Mindset: Experience with Red Teaming or CTFs. Think like an attacker to uncover weaknesses in business logic and agent reasoning. Nice to Have Experience securing execution sandboxes (gVisor, Firecracker, or similar). Background in "Purple Teaming"-collaborating with developers to fix what you break. Contributions to the open-source security community or research on AI safety. Knowledge of compliance frameworks (SOC 2, ISO 27001) in an early-stage startup context. Why Join Us Founding Equity: Significant ownership in a company tackling the next layer of the AI stack. Frontier Security: Define the security standards for a new category of software-autonomous enterprise agents. World-Class Team: Collaborate with a dense talent cluster of researchers and engineers who have shipped products serving hundreds of millions of users. Pavo is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
About Mimecast Mimecast is a leading cybersecurity company protecting people, data, and communications from today's most sophisticated threats. With over 42,000 customers worldwide and 18 billion security events analysed daily, we pioneer Human Risk Management - combining threat detection, awareness training, and insider risk management into a platform built around the human element of cybersecurity. About the role The Director, Program and Delivery Management leads the team responsible for how Mimecast's Product and R&D organisation plans, executes, and delivers - from the first articulation of a program's goals through to customer impact. You will own the discipline of programme and delivery management across the organisation: setting the standards, systems, and operating model that enable teams to commit with confidence and deliver with consistency. What you'll do Team Leadership & Capability Development Lead, develop and retain a team of Programme and Delivery Managers, each embedded as a senior partner to Product and R&D leadership across the portfolio. Set the standard for planning ownership, delivery partnership, systemic problem solving, coach your team to perform consistently at that level, and monitor team health - pace, process overhead, retention risk - addressing emerging issues before they affect delivery or people. Planning System & Portfolio Oversight Partner with senior leadership to shape and evolve the planning system - the frameworks, cadences and standards that govern how work is prioritised, resourced, sequenced and committed to across the portfolio. Maintain a portfolio level view of commitments, capacity and delivery confidence, act as the escalation point for cross portfolio dependencies, trade offs and resourcing conflicts - bringing recommended solutions, not just problem statements. Delivery Rhythm & Execution Governance Work with leadership to define and maintain the delivery operating rhythm - the cadences, forums and reporting structures that keep execution visible without adding unnecessary overhead. Ensure your team runs consistent programme reviews, proactively manages risk and dependencies, and drives blockers to resolution before they affect commitments. AI Integration & Program Management Innovation Define the AI strategy for programme and delivery management - identifying where AI tools can meaningfully improve how programmes are planned, tracked and delivered - and translate that into an actionable roadmap. Keep the team current with evolving AI tools, foster shared learning and experimentation, and proactively identify opportunities to leverage AI within the teams and programmes you support to reduce manual overhead and increase velocity. Metrics, Velocity & Reporting Own the metrics strategy - defining what gets measured, how, and how delivery flow data drives decisions at every level. Build and maintain executive facing reporting that gives leadership a clear, honest view of portfolio health: what is on track, what is at risk, and what requires a decision. Pattern Recognition & Systemic Improvement Look across the portfolio to identify patterns of friction, misalignment and inefficiency - and drive improvement programmes that address root causes, not symptoms. Lead the evolution of shared delivery practices - planning standards, estimation norms, definitions of done - making what works repeatable and retiring what does not. What you'll bring 7+ years in Technical Programme Management, Delivery Management or Engineering Programme Management, including 4+ years leading a team of programme managers within a multi team Product and R&D organisation. Track record of designing and owning planning and delivery systems at scale - accountable for the quality and reliability of the output. Executive presence and communication skills - able to influence without authority across functions and levels. Proven ability to drive change in complex, matrixed organisations - building alignment around new ways of working. Strategic clarity combined with operational depth - knowing when to see across a portfolio and when to dive into detail. Analytical capability to build a metrics framework, interpret delivery flow data and construct a clear narrative that drives leadership decisions. Fluency in agile delivery practices and hands on experience with delivery tooling (e.g. Jira, Confluence) and leading programmes across multiple geographies and time zones. Genuine interest in how AI tools are reshaping programme and delivery management, and a drive to lead adoption where it creates measurable value for the team. High ownership and a team first mindset - bringing problems with proposed solutions, developing others to do the same and measuring success by what the team achieves. Why Mimecast The programme and delivery management function at Mimecast has a strong foundation built by a team with deep experience and genuine commitment to how this organisation delivers. This role is an opportunity to build on that foundation, raise the bar on what's already working, bring new thinking to what can be better and shape what the function becomes as Mimecast scales. You will be visible at every level of the company and have the chance to lead meaningful work, operate with real influence and leave a mark on how a world class cybersecurity company runs. Base salary range: £104,000 - £156,000 base + benefits. The position may also be eligible for incentive plans and other related benefits. Mimecast is an equal opportunity and affirmative action employer. We are committed to building an inclusive, diverse community that reflects the world we serve.
Aug 21, 2026
Full time
About Mimecast Mimecast is a leading cybersecurity company protecting people, data, and communications from today's most sophisticated threats. With over 42,000 customers worldwide and 18 billion security events analysed daily, we pioneer Human Risk Management - combining threat detection, awareness training, and insider risk management into a platform built around the human element of cybersecurity. About the role The Director, Program and Delivery Management leads the team responsible for how Mimecast's Product and R&D organisation plans, executes, and delivers - from the first articulation of a program's goals through to customer impact. You will own the discipline of programme and delivery management across the organisation: setting the standards, systems, and operating model that enable teams to commit with confidence and deliver with consistency. What you'll do Team Leadership & Capability Development Lead, develop and retain a team of Programme and Delivery Managers, each embedded as a senior partner to Product and R&D leadership across the portfolio. Set the standard for planning ownership, delivery partnership, systemic problem solving, coach your team to perform consistently at that level, and monitor team health - pace, process overhead, retention risk - addressing emerging issues before they affect delivery or people. Planning System & Portfolio Oversight Partner with senior leadership to shape and evolve the planning system - the frameworks, cadences and standards that govern how work is prioritised, resourced, sequenced and committed to across the portfolio. Maintain a portfolio level view of commitments, capacity and delivery confidence, act as the escalation point for cross portfolio dependencies, trade offs and resourcing conflicts - bringing recommended solutions, not just problem statements. Delivery Rhythm & Execution Governance Work with leadership to define and maintain the delivery operating rhythm - the cadences, forums and reporting structures that keep execution visible without adding unnecessary overhead. Ensure your team runs consistent programme reviews, proactively manages risk and dependencies, and drives blockers to resolution before they affect commitments. AI Integration & Program Management Innovation Define the AI strategy for programme and delivery management - identifying where AI tools can meaningfully improve how programmes are planned, tracked and delivered - and translate that into an actionable roadmap. Keep the team current with evolving AI tools, foster shared learning and experimentation, and proactively identify opportunities to leverage AI within the teams and programmes you support to reduce manual overhead and increase velocity. Metrics, Velocity & Reporting Own the metrics strategy - defining what gets measured, how, and how delivery flow data drives decisions at every level. Build and maintain executive facing reporting that gives leadership a clear, honest view of portfolio health: what is on track, what is at risk, and what requires a decision. Pattern Recognition & Systemic Improvement Look across the portfolio to identify patterns of friction, misalignment and inefficiency - and drive improvement programmes that address root causes, not symptoms. Lead the evolution of shared delivery practices - planning standards, estimation norms, definitions of done - making what works repeatable and retiring what does not. What you'll bring 7+ years in Technical Programme Management, Delivery Management or Engineering Programme Management, including 4+ years leading a team of programme managers within a multi team Product and R&D organisation. Track record of designing and owning planning and delivery systems at scale - accountable for the quality and reliability of the output. Executive presence and communication skills - able to influence without authority across functions and levels. Proven ability to drive change in complex, matrixed organisations - building alignment around new ways of working. Strategic clarity combined with operational depth - knowing when to see across a portfolio and when to dive into detail. Analytical capability to build a metrics framework, interpret delivery flow data and construct a clear narrative that drives leadership decisions. Fluency in agile delivery practices and hands on experience with delivery tooling (e.g. Jira, Confluence) and leading programmes across multiple geographies and time zones. Genuine interest in how AI tools are reshaping programme and delivery management, and a drive to lead adoption where it creates measurable value for the team. High ownership and a team first mindset - bringing problems with proposed solutions, developing others to do the same and measuring success by what the team achieves. Why Mimecast The programme and delivery management function at Mimecast has a strong foundation built by a team with deep experience and genuine commitment to how this organisation delivers. This role is an opportunity to build on that foundation, raise the bar on what's already working, bring new thinking to what can be better and shape what the function becomes as Mimecast scales. You will be visible at every level of the company and have the chance to lead meaningful work, operate with real influence and leave a mark on how a world class cybersecurity company runs. Base salary range: £104,000 - £156,000 base + benefits. The position may also be eligible for incentive plans and other related benefits. Mimecast is an equal opportunity and affirmative action employer. We are committed to building an inclusive, diverse community that reflects the world we serve.
Smart Communications group
City Of Westminster, London
Information Security Director We are seeking a highly skilled and experienced Director of Information Security to join our dynamic and growing team. As the Director of Information Security you will play a crucial role in ensuring safety, integrity and privacy, securing our company and data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship and direction. Partner with Product, Engineering, Operations, HR, Legal and Finance functions to embed security into all business operations and change programmes. Collaborate with the CIO to provide a future vision of technology and systems with security in mind. Provide strategic planning, development and delivery of the information security strategy across the business. Lead and direct security operations team in monitoring, detecting, and responding to security incidents and breaches. Champion the adoption of security by design and privacy by design principles, fostering a culture of security. Required Skills and Experience A minimum of 10+ years hands on, proven industry experience in a similar role. Bachelor's or master's degree in computer science, Information Security, or a related field. Industry certifications such as CISSP, CISM, CEH, ECSA, LPT, OSCP, AWS certified security or equivalent are highly desirable. Strong budget planning and financial management capabilities related to security operations, combined with a proactive problem solving attitude and service oriented approach. Experience managing and growing high performing teams. Excellent communication and interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. Benefits Competitive salary commensurate with experience. Extensive health insurance, income protection, life assurance. Subsidised gym membership, leisure travel insurance. Pension contribution and 25 days holiday allowance plus an additional day off for your birthday. Fully remote role with flexible working environment. Equal Opportunity We are an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of colour, religion, sex, national origin, sexual orientation, age, disability, marital status or gender identity. Location UK - Remote
Aug 20, 2026
Full time
Information Security Director We are seeking a highly skilled and experienced Director of Information Security to join our dynamic and growing team. As the Director of Information Security you will play a crucial role in ensuring safety, integrity and privacy, securing our company and data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship and direction. Partner with Product, Engineering, Operations, HR, Legal and Finance functions to embed security into all business operations and change programmes. Collaborate with the CIO to provide a future vision of technology and systems with security in mind. Provide strategic planning, development and delivery of the information security strategy across the business. Lead and direct security operations team in monitoring, detecting, and responding to security incidents and breaches. Champion the adoption of security by design and privacy by design principles, fostering a culture of security. Required Skills and Experience A minimum of 10+ years hands on, proven industry experience in a similar role. Bachelor's or master's degree in computer science, Information Security, or a related field. Industry certifications such as CISSP, CISM, CEH, ECSA, LPT, OSCP, AWS certified security or equivalent are highly desirable. Strong budget planning and financial management capabilities related to security operations, combined with a proactive problem solving attitude and service oriented approach. Experience managing and growing high performing teams. Excellent communication and interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. Benefits Competitive salary commensurate with experience. Extensive health insurance, income protection, life assurance. Subsidised gym membership, leisure travel insurance. Pension contribution and 25 days holiday allowance plus an additional day off for your birthday. Fully remote role with flexible working environment. Equal Opportunity We are an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of colour, religion, sex, national origin, sexual orientation, age, disability, marital status or gender identity. Location UK - Remote
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role CrowdStrike's Data Science team mis seeking a Sr. Manager to lead a team of data scientists at the intersection of Machine Learning, Large Language Models, and Cybersecurity/reverse engineering. This is a leadership role where you will help the team manager business demand/needs, translate them to technical objectives, gain stakeholder buy in, and help drive the technical approaches and provide technical feedback and guidance to junior and experienced team members. As a technical leader you will support you team in identifying high-value problems in the short, mid, and long term, obtain stakeholder buy in, and translate problems in the business into actionable research objectives. You'll collaborate and work with all aspects of ML and cybersecurity, across a large enterprise and complex data problems in size (trillions of events a day), asperity, and the dynamic nature of an active adversary that adapts to our advances in the field. This role is a chance to work in impactful outcomes that improve people's security and safety, while also growing in depth and breadth. From assemble, lifting, decompilation to optimal control and continuous optimization, every problem in the spectrum of computer science and related disciplines occurs in tackling the problems CrowdStrike deals with. An excellent candidate will have a intrinsic desire to learn and leverage tools across these domains, invent new tools to fill the gaps in what we need, and a desire to increase their leverage by enabling a team to perform these critical research objectives. What You'll Do Lead and mentor a team of data scientists, providing technical guidance, career development, and performance management Work with senior leadership to refine/define priorities, identify risks/gaps, support staff and budget planning, and disseminate key milestones to the business leaders. Plan and prioritize team roadmaps, balancing research innovation with delivery of production ML systems Stay current with emerging trends in ML and cybersecurity, and evaluate new technologies for potential adoption Collaborate with cross-functional teams including security research, engineering, and product to align ML capabilities with business objectives Partner with security domain experts to identify high-impact opportunities where ML can enhance threat detection and response Communicate complex technical concepts and ML insights to stakeholders across the organization Guide the development of advanced models for malware detection, behavioral threat analysis, and AI-driven security automation Drive research initiatives that result in publications, blog posts, patents, and other contributions to the ML and security communities Contribute to hands on technical work when needed, maintaining deep expertise in ML systems and security applications What You'll Need Advanced degree (Master's or PhD) in Computer Science, Data Science, Mathematics, Physics, or related STEM field, OR Bachelor's degree with equivalent experience 5+ years of experience in data science and machine learning 5+ years in a technical leadership or team lead capacity Proven track record of leading ML projects from research to production deployment Demonstrated ability to collaborate with cross functional teams and communicate technical concepts to non technical stakeholders Ability to present and work with senior stakeholders in a business, communicate risks/opportunities, and translate business problems into technical objectives Strong verbal and written communication skills, and ability to keep track of multiple projects, and distill key details for regular program management. Proven experience utilizing AI technologies to enhance decision making, streamline workflows and processes, improve efficiency and drive business outcomes. Bonus Points Deep expertise in cybersecurity, including experience in threat intelligence, malware analysis, or security operations Experience with agentic AI systems, LLMs, or autonomous security automation Track record of working with very large, sparse, high dimensional datasets in production environments Experience with advanced ML techniques including semi supervised learning, online learning, and model optimization for reducing false positives Strong knowledge of ML operations, including model monitoring, A/B testing, and production ML infrastructure Comfortable working in cloud environments (AWS) and Linux systems Proven ability to set technical vision and drive innovation in ML systems Experience hiring, building, and scaling high performing data science teams Strategic mindset with ability to balance research exploration with pragmatic business outcomes Additional Qualifications Published research, patents, or contributions to the ML or security communities Benefits of Working at CrowdStrike Market leader in compensation and equity awards Comprehensive physical and mental wellness programs Competitive vacation and holidays for recharge Paid parental and adoption leaves Professional development opportunities for all employees regardless of level or role Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections Vibrant office culture with world class amenities Great Place to Work Certified across the globe CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions-including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay offs, return from lay off, terminations and social/recreational programs-on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at for further assistance. CrowdStrike was founded in 2011 to fix a fundamental problem: The sophisticated attacks that were forcing the world's leading businesses into the headlines could not be solved with existing malware based defenses. Founder George Kurtz realized that a brand new approach was needed - one that combines the most advanced endpoint protection with expert intelligence to pinpoint the adversaries perpetrating the attacks, not just the malware. There's much more to the story of how Falcon has redefined endpoint protection but there's only one thing to remember about CrowdStrike: We stop breaches.
Aug 19, 2026
Full time
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role CrowdStrike's Data Science team mis seeking a Sr. Manager to lead a team of data scientists at the intersection of Machine Learning, Large Language Models, and Cybersecurity/reverse engineering. This is a leadership role where you will help the team manager business demand/needs, translate them to technical objectives, gain stakeholder buy in, and help drive the technical approaches and provide technical feedback and guidance to junior and experienced team members. As a technical leader you will support you team in identifying high-value problems in the short, mid, and long term, obtain stakeholder buy in, and translate problems in the business into actionable research objectives. You'll collaborate and work with all aspects of ML and cybersecurity, across a large enterprise and complex data problems in size (trillions of events a day), asperity, and the dynamic nature of an active adversary that adapts to our advances in the field. This role is a chance to work in impactful outcomes that improve people's security and safety, while also growing in depth and breadth. From assemble, lifting, decompilation to optimal control and continuous optimization, every problem in the spectrum of computer science and related disciplines occurs in tackling the problems CrowdStrike deals with. An excellent candidate will have a intrinsic desire to learn and leverage tools across these domains, invent new tools to fill the gaps in what we need, and a desire to increase their leverage by enabling a team to perform these critical research objectives. What You'll Do Lead and mentor a team of data scientists, providing technical guidance, career development, and performance management Work with senior leadership to refine/define priorities, identify risks/gaps, support staff and budget planning, and disseminate key milestones to the business leaders. Plan and prioritize team roadmaps, balancing research innovation with delivery of production ML systems Stay current with emerging trends in ML and cybersecurity, and evaluate new technologies for potential adoption Collaborate with cross-functional teams including security research, engineering, and product to align ML capabilities with business objectives Partner with security domain experts to identify high-impact opportunities where ML can enhance threat detection and response Communicate complex technical concepts and ML insights to stakeholders across the organization Guide the development of advanced models for malware detection, behavioral threat analysis, and AI-driven security automation Drive research initiatives that result in publications, blog posts, patents, and other contributions to the ML and security communities Contribute to hands on technical work when needed, maintaining deep expertise in ML systems and security applications What You'll Need Advanced degree (Master's or PhD) in Computer Science, Data Science, Mathematics, Physics, or related STEM field, OR Bachelor's degree with equivalent experience 5+ years of experience in data science and machine learning 5+ years in a technical leadership or team lead capacity Proven track record of leading ML projects from research to production deployment Demonstrated ability to collaborate with cross functional teams and communicate technical concepts to non technical stakeholders Ability to present and work with senior stakeholders in a business, communicate risks/opportunities, and translate business problems into technical objectives Strong verbal and written communication skills, and ability to keep track of multiple projects, and distill key details for regular program management. Proven experience utilizing AI technologies to enhance decision making, streamline workflows and processes, improve efficiency and drive business outcomes. Bonus Points Deep expertise in cybersecurity, including experience in threat intelligence, malware analysis, or security operations Experience with agentic AI systems, LLMs, or autonomous security automation Track record of working with very large, sparse, high dimensional datasets in production environments Experience with advanced ML techniques including semi supervised learning, online learning, and model optimization for reducing false positives Strong knowledge of ML operations, including model monitoring, A/B testing, and production ML infrastructure Comfortable working in cloud environments (AWS) and Linux systems Proven ability to set technical vision and drive innovation in ML systems Experience hiring, building, and scaling high performing data science teams Strategic mindset with ability to balance research exploration with pragmatic business outcomes Additional Qualifications Published research, patents, or contributions to the ML or security communities Benefits of Working at CrowdStrike Market leader in compensation and equity awards Comprehensive physical and mental wellness programs Competitive vacation and holidays for recharge Paid parental and adoption leaves Professional development opportunities for all employees regardless of level or role Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections Vibrant office culture with world class amenities Great Place to Work Certified across the globe CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions-including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay offs, return from lay off, terminations and social/recreational programs-on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at for further assistance. CrowdStrike was founded in 2011 to fix a fundamental problem: The sophisticated attacks that were forcing the world's leading businesses into the headlines could not be solved with existing malware based defenses. Founder George Kurtz realized that a brand new approach was needed - one that combines the most advanced endpoint protection with expert intelligence to pinpoint the adversaries perpetrating the attacks, not just the malware. There's much more to the story of how Falcon has redefined endpoint protection but there's only one thing to remember about CrowdStrike: We stop breaches.
National Gas Transmission Plc
Warwick, Warwickshire
Select how often (in days) to receive an alert: At National Gas, the work we do matters. As Britain's national gas network, we help keep the lights on, businesses running, and homes warm by maintaining the critical infrastructure that transports gas across Great Britain. While providing the energy security Britain relies on today, we're also helping transform the network for a clean energy future. Join us and help secure Britain's energy. About the role We're looking for an experienced Threat Intelligence & Hunting Manager to lead our intelligence fusion capability, helping National Gas anticipate, assess and respond to emerging physical, geopolitical and cyber threats. This role combines strategic intelligence leadership with proactive threat hunting to strengthen the resilience and security of critical national infrastructure. As the UK's energy landscape evolves, so do the threats facing critical national infrastructure. This role is pivotal in ensuring National Gas can identify, understand and mitigate risks before they impact our operations, people or strategic objectives. You'll lead a team responsible for producing intelligence-driven insights, managing key government and industry partnerships, and driving advanced threat hunting activities across our IT, Cloud and OT environments. Your expertise will directly influence security strategy, executive decision-making and organisational resilience. What you'll be doing Lead and develop the Threat Intelligence team, ensuring effective use of the intelligence cycle to identify and assess emerging threats. Build and maintain National Gas' common intelligence picture, delivering actionable intelligence products and executive briefings. Define and manage priority intelligence requirements, collection plans and warning indicators. Lead intelligence-led threat hunting activities to proactively identify sophisticated threats across enterprise environments. Establish and maintain relationships with key industry, government and security partners. Develop strategic threat assessments, horizon-scanning products and all-source intelligence reports to support business decision-making. Collaborate with security teams to enhance detection, monitoring and prevention capabilities across cloud, on-premise and operational technology environments. What you'll bring Significant experience in threat intelligence, intelligence analysis and intelligence operations within cyber security, defence, government or critical infrastructure environments. Strong understanding of geopolitical, physical and cyber threat landscapes and their impact on business operations. Leadership experience within cyber security operations, threat intelligence, threat hunting or incident response functions. Deep knowledge of intelligence collection, analysis methodologies and production of strategic, operational and tactical intelligence assessments. Strong technical understanding of Microsoft security technologies and security operations environments. Experience designing and leading proactive threat hunting programmes. Excellent communication skills with the ability to influence senior leaders and translate complex intelligence into clear business insights. Experience working with Operational Technology (OT) and Industrial Control System (ICS) security. Undergraduate degree or Master's qualification in Intelligence, Security Studies, Cyber Security or related discipline. SANS FOR578 (GCTI), FOR589 or equivalent threat intelligence/hunting qualifications. Experience working with government agencies and intelligence-sharing communities. Recognised leadership or management qualification. What we offer Market-leading double-match pension (up to 12% company contribution) Annual performance bonus up to 15% Access to the Tusker salary sacrifice car scheme 10x salary life assurance and income protection Flexible benefits including healthcare, dental, and technology options Family-friendly policies, wellbeing support, and professional development opportunities More information Security clearance This role is subject to National Security Vetting (NSV). Candidates must be eligible to obtain and maintain Security Clearance (SC) throughout their employment. For further information, visit (UK Security Vetting: Clearance Levels). Inclusive recruitment We're building a workforce that reflects the communities we serve, championing diversity, and creating an inclusive workplace where everyone is valued for their unique contribution. We support reasonable adjustments throughout the recruitment process and beyond. National Gas is a Disability Confident employer and signatory of the Armed Forces Covenant.
Aug 18, 2026
Full time
Select how often (in days) to receive an alert: At National Gas, the work we do matters. As Britain's national gas network, we help keep the lights on, businesses running, and homes warm by maintaining the critical infrastructure that transports gas across Great Britain. While providing the energy security Britain relies on today, we're also helping transform the network for a clean energy future. Join us and help secure Britain's energy. About the role We're looking for an experienced Threat Intelligence & Hunting Manager to lead our intelligence fusion capability, helping National Gas anticipate, assess and respond to emerging physical, geopolitical and cyber threats. This role combines strategic intelligence leadership with proactive threat hunting to strengthen the resilience and security of critical national infrastructure. As the UK's energy landscape evolves, so do the threats facing critical national infrastructure. This role is pivotal in ensuring National Gas can identify, understand and mitigate risks before they impact our operations, people or strategic objectives. You'll lead a team responsible for producing intelligence-driven insights, managing key government and industry partnerships, and driving advanced threat hunting activities across our IT, Cloud and OT environments. Your expertise will directly influence security strategy, executive decision-making and organisational resilience. What you'll be doing Lead and develop the Threat Intelligence team, ensuring effective use of the intelligence cycle to identify and assess emerging threats. Build and maintain National Gas' common intelligence picture, delivering actionable intelligence products and executive briefings. Define and manage priority intelligence requirements, collection plans and warning indicators. Lead intelligence-led threat hunting activities to proactively identify sophisticated threats across enterprise environments. Establish and maintain relationships with key industry, government and security partners. Develop strategic threat assessments, horizon-scanning products and all-source intelligence reports to support business decision-making. Collaborate with security teams to enhance detection, monitoring and prevention capabilities across cloud, on-premise and operational technology environments. What you'll bring Significant experience in threat intelligence, intelligence analysis and intelligence operations within cyber security, defence, government or critical infrastructure environments. Strong understanding of geopolitical, physical and cyber threat landscapes and their impact on business operations. Leadership experience within cyber security operations, threat intelligence, threat hunting or incident response functions. Deep knowledge of intelligence collection, analysis methodologies and production of strategic, operational and tactical intelligence assessments. Strong technical understanding of Microsoft security technologies and security operations environments. Experience designing and leading proactive threat hunting programmes. Excellent communication skills with the ability to influence senior leaders and translate complex intelligence into clear business insights. Experience working with Operational Technology (OT) and Industrial Control System (ICS) security. Undergraduate degree or Master's qualification in Intelligence, Security Studies, Cyber Security or related discipline. SANS FOR578 (GCTI), FOR589 or equivalent threat intelligence/hunting qualifications. Experience working with government agencies and intelligence-sharing communities. Recognised leadership or management qualification. What we offer Market-leading double-match pension (up to 12% company contribution) Annual performance bonus up to 15% Access to the Tusker salary sacrifice car scheme 10x salary life assurance and income protection Flexible benefits including healthcare, dental, and technology options Family-friendly policies, wellbeing support, and professional development opportunities More information Security clearance This role is subject to National Security Vetting (NSV). Candidates must be eligible to obtain and maintain Security Clearance (SC) throughout their employment. For further information, visit (UK Security Vetting: Clearance Levels). Inclusive recruitment We're building a workforce that reflects the communities we serve, championing diversity, and creating an inclusive workplace where everyone is valued for their unique contribution. We support reasonable adjustments throughout the recruitment process and beyond. National Gas is a Disability Confident employer and signatory of the Armed Forces Covenant.
Head of Security (CISO) Location: Hybrid Permanent ClearCourse is seeking an experienced Head of Security (CISO) to lead and evolve our group-wide security strategy across a diverse portfolio of 40+ software and payments businesses. Reporting to the Chief Technology & Transformation Officer, with a dotted line to the Board and Audit Committee, this is a pivotal executive leadership role responsible for security governance, operations, compliance, and risk management across a complex technology estate spanning payments, healthcare, and B2B SaaS. With ongoing M&A activity, active PCI DSS obligations, and a rapidly evolving platform landscape, you'll play a critical role in protecting our customers, supporting business growth, and embedding security across the organisation. What you'll do Define and lead the Group's security strategy, policies, and governance framework Provide Board-level reporting on security posture, risks, and compliance activities Oversee security operations, including threat detection, incident response, and remediation Act as the executive lead during security incidents and manage external stakeholder communications Own PCI DSS compliance across ClearAccept and ClearDebit payment platforms Lead the Group's Governance, Risk and Compliance (GRC) function, including ISO 27001, Cyber Essentials, PCI DSS, and data protection obligations Manage relationships with auditors, regulators, cyber insurers, and certification bodies Lead security assessments and integration activities for acquisitions, driving alignment to Group standards Partner with Platform Engineering teams to embed security practices into development lifecycles without impacting delivery velocity Lead and develop the GRC function to support a proactive and risk aware security culture Qualifications Previous experience operating at CISO level within a multi-product or multi-entity organisation Hands on experience leading PCI DSS compliance programmes and QSA assessments Proven expertise building and managing enterprise wide GRC frameworks and risk registers Experience assessing and integrating security functions following M&A activity Strong understanding of DevSecOps principles and embedding security into engineering practices Experience leading major security incidents, including external communications and stakeholder management Ability to influence at Board and executive leadership level Strong leadership skills with experience building and developing high performing security teams Benefits Competitive salary + benefits 25 days holiday + your birthday off Private medical insurance (Bupa) & health cash plan Life assurance & income protection Enhanced parental leave & family wellbeing support Perkbox discounts & perks Generous pension contributions Hybrid working model This is a rare opportunity to shape and lead the security strategy of a fast growing international software and payments group. You'll work at executive level, influence critical business decisions, and play a key role in safeguarding the future growth of the organisation. If you're passionate about security leadership and thrive in complex, evolving environments, we'd love to hear from you.
Aug 14, 2026
Full time
Head of Security (CISO) Location: Hybrid Permanent ClearCourse is seeking an experienced Head of Security (CISO) to lead and evolve our group-wide security strategy across a diverse portfolio of 40+ software and payments businesses. Reporting to the Chief Technology & Transformation Officer, with a dotted line to the Board and Audit Committee, this is a pivotal executive leadership role responsible for security governance, operations, compliance, and risk management across a complex technology estate spanning payments, healthcare, and B2B SaaS. With ongoing M&A activity, active PCI DSS obligations, and a rapidly evolving platform landscape, you'll play a critical role in protecting our customers, supporting business growth, and embedding security across the organisation. What you'll do Define and lead the Group's security strategy, policies, and governance framework Provide Board-level reporting on security posture, risks, and compliance activities Oversee security operations, including threat detection, incident response, and remediation Act as the executive lead during security incidents and manage external stakeholder communications Own PCI DSS compliance across ClearAccept and ClearDebit payment platforms Lead the Group's Governance, Risk and Compliance (GRC) function, including ISO 27001, Cyber Essentials, PCI DSS, and data protection obligations Manage relationships with auditors, regulators, cyber insurers, and certification bodies Lead security assessments and integration activities for acquisitions, driving alignment to Group standards Partner with Platform Engineering teams to embed security practices into development lifecycles without impacting delivery velocity Lead and develop the GRC function to support a proactive and risk aware security culture Qualifications Previous experience operating at CISO level within a multi-product or multi-entity organisation Hands on experience leading PCI DSS compliance programmes and QSA assessments Proven expertise building and managing enterprise wide GRC frameworks and risk registers Experience assessing and integrating security functions following M&A activity Strong understanding of DevSecOps principles and embedding security into engineering practices Experience leading major security incidents, including external communications and stakeholder management Ability to influence at Board and executive leadership level Strong leadership skills with experience building and developing high performing security teams Benefits Competitive salary + benefits 25 days holiday + your birthday off Private medical insurance (Bupa) & health cash plan Life assurance & income protection Enhanced parental leave & family wellbeing support Perkbox discounts & perks Generous pension contributions Hybrid working model This is a rare opportunity to shape and lead the security strategy of a fast growing international software and payments group. You'll work at executive level, influence critical business decisions, and play a key role in safeguarding the future growth of the organisation. If you're passionate about security leadership and thrive in complex, evolving environments, we'd love to hear from you.
Introduction Saab UK is part of Scandinavia's largest defence company, bringing together the best of Swedish and British innovation. Saab offers world-leading solutions and services in defence, aviation, space, and civil security to keep people and society safe. Our UK presence has been growing at pace, meaning we can offer a wide range of opportunities for personal fulfilment and career growth. We currently employ over 600 people across eight sites in the UK, and our specialisations include software engineering, underwater robotics, radars, AI, and armed forces training. The Role: This role will be part of our UK Security Team reporting into the Head of Security at Saab UK. The role can be based either in Fareham, Farnborough or Heywood House, however it will require occasional travel oversees and travel to other Saab UK offices. Working collaboratively with the security team and IT, the role will develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise to guide the organisation through compliancy leading on the Cyber security aspects of DefStan 05-138. This role is pivotal in safeguarding against advanced persistent threats, maintaining compliance with defence regulations, and supporting secure operations across all projects. Key Responsibilities: Develop, implement, and oversee cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST. Responsible for the completion of Cyber Security aspects within Supplier Assurance and selection. Maintain cyber threat awareness on a company global scale and bespoke to the organisation. Oversee security within network architecture, encryption protocols, and identity/access management for restricted environments. Direct cyber security audits and penetration testing across defence platforms and supply chains. Provide cyber security training and awareness programs tailored to defence staff and contractors. Collaborate with engineering, IT, and programme teams embedding security into defence projects (DevSecOps). Qualifications and Skills: Required: Extensive experience in cyber security management within defence, aerospace, or government environments. Strong knowledge of classified information handling and secure communication protocols. Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems. Proven track record of leading incident response in high-security environments. Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR). Excellent leadership, stakeholder management, and ability to operate under pressure. Degree in Cyber Security, Computer Science, or related field. Degree or equivalent defence/security qualifications preferred. Security clearance (SC or DV) required or eligibility to obtain. Desirable: Professional certifications: CISSP, CISM, CISA, CEH, or equivalent Experience with secure cloud environments (Azure Government, AWS GovCloud) Knowledge of cyber warfare tactics and countermeasures Experience liaising with national security agencies or defence contractors As a National Security Vetting clearance is required for this role, applicants will be required to hold National Security Vetting clearance to SC level or have the ability to gain it. By submitting an application to Saab UK you consent to undertaking workforce screening activities that may include but are not limited to: Baseline Personnel Security checks, National Security Vetting, reference checks, verification of working rights and in all circumstances preferred candidates will be placed through a security interview.
Aug 11, 2026
Full time
Introduction Saab UK is part of Scandinavia's largest defence company, bringing together the best of Swedish and British innovation. Saab offers world-leading solutions and services in defence, aviation, space, and civil security to keep people and society safe. Our UK presence has been growing at pace, meaning we can offer a wide range of opportunities for personal fulfilment and career growth. We currently employ over 600 people across eight sites in the UK, and our specialisations include software engineering, underwater robotics, radars, AI, and armed forces training. The Role: This role will be part of our UK Security Team reporting into the Head of Security at Saab UK. The role can be based either in Fareham, Farnborough or Heywood House, however it will require occasional travel oversees and travel to other Saab UK offices. Working collaboratively with the security team and IT, the role will develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise to guide the organisation through compliancy leading on the Cyber security aspects of DefStan 05-138. This role is pivotal in safeguarding against advanced persistent threats, maintaining compliance with defence regulations, and supporting secure operations across all projects. Key Responsibilities: Develop, implement, and oversee cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST. Responsible for the completion of Cyber Security aspects within Supplier Assurance and selection. Maintain cyber threat awareness on a company global scale and bespoke to the organisation. Oversee security within network architecture, encryption protocols, and identity/access management for restricted environments. Direct cyber security audits and penetration testing across defence platforms and supply chains. Provide cyber security training and awareness programs tailored to defence staff and contractors. Collaborate with engineering, IT, and programme teams embedding security into defence projects (DevSecOps). Qualifications and Skills: Required: Extensive experience in cyber security management within defence, aerospace, or government environments. Strong knowledge of classified information handling and secure communication protocols. Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems. Proven track record of leading incident response in high-security environments. Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR). Excellent leadership, stakeholder management, and ability to operate under pressure. Degree in Cyber Security, Computer Science, or related field. Degree or equivalent defence/security qualifications preferred. Security clearance (SC or DV) required or eligibility to obtain. Desirable: Professional certifications: CISSP, CISM, CISA, CEH, or equivalent Experience with secure cloud environments (Azure Government, AWS GovCloud) Knowledge of cyber warfare tactics and countermeasures Experience liaising with national security agencies or defence contractors As a National Security Vetting clearance is required for this role, applicants will be required to hold National Security Vetting clearance to SC level or have the ability to gain it. By submitting an application to Saab UK you consent to undertaking workforce screening activities that may include but are not limited to: Baseline Personnel Security checks, National Security Vetting, reference checks, verification of working rights and in all circumstances preferred candidates will be placed through a security interview.