This position is being advertised by Alfa AI on behalf of Five Guys. Five Guys is hiring a senior cybersecurity leader to own cybersecurity across its European operations, reporting to the IT Director. This is a greenfield, hands-on role: you will define the cybersecurity strategy and roadmap, establish governance and risk reporting, create core policies and standards, and personally get involved in tooling, configuration, incident response and problem-solving where required. You will be responsible for improving security across Microsoft 365, Azure, endpoints and identity; building incident response, business continuity and disaster recovery capability; managing GDPR, PCI-DSS and ISO 27001 initiatives; strengthening supplier security; and providing clear cyber risk reporting to senior leadership. You will work closely with IT, infrastructure, project teams, operational stakeholders and external suppliers in a lean environment without a large internal security team. We are looking for someone who has built or significantly matured a cybersecurity function in a scaling or greenfield environment and can combine strategy with hands-on technical execution. You should be comfortable influencing senior stakeholders, prioritising risk, creating practical governance from scratch and operating independently. Location: London, with occasional UK and European travel.
Aug 24, 2026
Full time
This position is being advertised by Alfa AI on behalf of Five Guys. Five Guys is hiring a senior cybersecurity leader to own cybersecurity across its European operations, reporting to the IT Director. This is a greenfield, hands-on role: you will define the cybersecurity strategy and roadmap, establish governance and risk reporting, create core policies and standards, and personally get involved in tooling, configuration, incident response and problem-solving where required. You will be responsible for improving security across Microsoft 365, Azure, endpoints and identity; building incident response, business continuity and disaster recovery capability; managing GDPR, PCI-DSS and ISO 27001 initiatives; strengthening supplier security; and providing clear cyber risk reporting to senior leadership. You will work closely with IT, infrastructure, project teams, operational stakeholders and external suppliers in a lean environment without a large internal security team. We are looking for someone who has built or significantly matured a cybersecurity function in a scaling or greenfield environment and can combine strategy with hands-on technical execution. You should be comfortable influencing senior stakeholders, prioritising risk, creating practical governance from scratch and operating independently. Location: London, with occasional UK and European travel.
Howden Group Holdings in London is seeking a senior cyber claims leader to drive international strategy across non-UK/US markets, ensuring consistent incident response and client support. You will lead major incidents, develop best practices, build local capability, mentor teams, and partner with underwriting and wordings specialists to deliver coordinated global solutions. The role offers exposure to global projects, tender work, industry events, and ongoing education to advance Howden's cyber
Aug 24, 2026
Full time
Howden Group Holdings in London is seeking a senior cyber claims leader to drive international strategy across non-UK/US markets, ensuring consistent incident response and client support. You will lead major incidents, develop best practices, build local capability, mentor teams, and partner with underwriting and wordings specialists to deliver coordinated global solutions. The role offers exposure to global projects, tender work, industry events, and ongoing education to advance Howden's cyber
Who are we? Howden is a global insurance group with employee ownership at its heart. Together, we have pushed the boundaries of insurance. We are united by a shared passion and no-limits mindset, and our strength lies in our ability to collaborate as a powerful international team comprised of 24,000 employees spanning over 56 countries. People join Howden for many different reasons, but they stay for the same one: our culture. It's what sets us apart, and the reason our employees have been turning down headhunters for years. Whatever your priorities - work / life balance, career progression, sustainability, volunteering - you'll find like-minded people driving change at Howden. The Role This role leads the cyber claims function across Howden's international offices (outside the UK and US), supporting Howden's global cyber team. It is accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you'll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside the UK and US Act as the claims lead on major cyber incidents and cyber / technology insurance claims where required, acting as a referral point to support and supplement local expertise Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards, including supporting recruitment and development Provide technical guidance and act as a referral point to support and enhance local expertise, including delivering education and training to clients and colleagues Support colleagues on business tenders and represent the cyber claims function at industry events, presenting on technical and market topics internationally Respond to technical and claims-related queries from clients, markets and internal stakeholders Lead cyber claims data initiatives, working closely with data and analytics teams to improve insight and outcomes Contribute as a senior member of the global cyber team, supporting wider strategic and operating plans Collaborate with wordings specialists and UK and US cyber claims leads to ensure a coordinated global approach Who we're looking for Significant experience in cyber insurance claims, financial lines insurance claims, or cyber incident response within an international environment Proven experience developing and implementing claims strategy or best practice frameworks Experience supporting or overseeing cyber insurance claims, incident response or crisis management activity Demonstrated experience advising clients and internal stakeholders on complex insurance coverage and claims issues Experience working with global teams and navigating differing regulatory or market environments Track record of contributing to business development activity, including tenders and client presentations Experience working with data initiatives or using claims data to drive decision-making and improvement Experience collaborating with underwriting, wordings or specialist teams to deliver joined-up solutions What do we offer in return? A career that you define. At Howden, we value diversity - there is no one Howden type. Instead, we're looking for individuals who share the same values as us: Our successes have all come from someone brave enough to try something new We support each other in the small everyday moments and the bigger challenges We are determined to make a positive difference at work and beyond Reasonable adjustments We're committed to providing reasonable accommodations at Howden to ensure that our positions align well with your needs. Besides the usual adjustments such as software, IT, and office setups, we can also accommodate other changes such as flexible hours or hybrid working . Not all positions can accommodate changes to working hours or locations. Permanent Howden began in 1994, as just three people and a dog. Now there are 23,000 of us, and we're a leading global insurance group, managing $37bn of premiums for our clients. Our largest shareholder group is us - the people who work in the business - supported by three long-term, minority growth-equity partners who share our vision to build a business to last, one that will never be sold. The owner's mindset is something that's embedded in our culture; our people readily take ownership of their decisions, their actions, and their outputs. They're invested in every sense. And we all know that by working together to drive the business forward, everyone will benefit from the extraordinary results we can achieve.
Aug 24, 2026
Full time
Who are we? Howden is a global insurance group with employee ownership at its heart. Together, we have pushed the boundaries of insurance. We are united by a shared passion and no-limits mindset, and our strength lies in our ability to collaborate as a powerful international team comprised of 24,000 employees spanning over 56 countries. People join Howden for many different reasons, but they stay for the same one: our culture. It's what sets us apart, and the reason our employees have been turning down headhunters for years. Whatever your priorities - work / life balance, career progression, sustainability, volunteering - you'll find like-minded people driving change at Howden. The Role This role leads the cyber claims function across Howden's international offices (outside the UK and US), supporting Howden's global cyber team. It is accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you'll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside the UK and US Act as the claims lead on major cyber incidents and cyber / technology insurance claims where required, acting as a referral point to support and supplement local expertise Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards, including supporting recruitment and development Provide technical guidance and act as a referral point to support and enhance local expertise, including delivering education and training to clients and colleagues Support colleagues on business tenders and represent the cyber claims function at industry events, presenting on technical and market topics internationally Respond to technical and claims-related queries from clients, markets and internal stakeholders Lead cyber claims data initiatives, working closely with data and analytics teams to improve insight and outcomes Contribute as a senior member of the global cyber team, supporting wider strategic and operating plans Collaborate with wordings specialists and UK and US cyber claims leads to ensure a coordinated global approach Who we're looking for Significant experience in cyber insurance claims, financial lines insurance claims, or cyber incident response within an international environment Proven experience developing and implementing claims strategy or best practice frameworks Experience supporting or overseeing cyber insurance claims, incident response or crisis management activity Demonstrated experience advising clients and internal stakeholders on complex insurance coverage and claims issues Experience working with global teams and navigating differing regulatory or market environments Track record of contributing to business development activity, including tenders and client presentations Experience working with data initiatives or using claims data to drive decision-making and improvement Experience collaborating with underwriting, wordings or specialist teams to deliver joined-up solutions What do we offer in return? A career that you define. At Howden, we value diversity - there is no one Howden type. Instead, we're looking for individuals who share the same values as us: Our successes have all come from someone brave enough to try something new We support each other in the small everyday moments and the bigger challenges We are determined to make a positive difference at work and beyond Reasonable adjustments We're committed to providing reasonable accommodations at Howden to ensure that our positions align well with your needs. Besides the usual adjustments such as software, IT, and office setups, we can also accommodate other changes such as flexible hours or hybrid working . Not all positions can accommodate changes to working hours or locations. Permanent Howden began in 1994, as just three people and a dog. Now there are 23,000 of us, and we're a leading global insurance group, managing $37bn of premiums for our clients. Our largest shareholder group is us - the people who work in the business - supported by three long-term, minority growth-equity partners who share our vision to build a business to last, one that will never be sold. The owner's mindset is something that's embedded in our culture; our people readily take ownership of their decisions, their actions, and their outputs. They're invested in every sense. And we all know that by working together to drive the business forward, everyone will benefit from the extraordinary results we can achieve.
Description Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Requirements Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with either Go or Java programming languages Strong engineering and automation background with a keen interest in Vulnerability Management Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross-functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g. CIS Benchmarks, AWS/GCP best practices) Riskbased prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be desirable but not essential: Endpoint vulnerability scanning Vulnerability intelligence, AppSec vulnerability management Vulnerability management of cloud native workloads External attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard format Interview process Interviewing is a two way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: First stage with our Information Security Lead Second stage - Take home task Third stage with additional members of the Vulnerability Management and Security Engineering team Final stage with Security Engineering Lead and Information Security Director Benefits We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that Starling Bank will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.
Aug 24, 2026
Full time
Description Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Requirements Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with either Go or Java programming languages Strong engineering and automation background with a keen interest in Vulnerability Management Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross-functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g. CIS Benchmarks, AWS/GCP best practices) Riskbased prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be desirable but not essential: Endpoint vulnerability scanning Vulnerability intelligence, AppSec vulnerability management Vulnerability management of cloud native workloads External attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard format Interview process Interviewing is a two way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: First stage with our Information Security Lead Second stage - Take home task Third stage with additional members of the Vulnerability Management and Security Engineering team Final stage with Security Engineering Lead and Information Security Director Benefits We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that Starling Bank will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
Aug 24, 2026
Full time
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
Ready to Own More Than the Ticket Queue? You've built solid 3rd Line infrastructure experience. You know how to get to the bottom of complex technical problems, understand the importance of security and you're ready for more ownership. This could be that step. Join Bulk , one of Europe's leading active nutrition brands, and take ownership across the infrastructure and cyber security environment supporting our fast-moving digital business. You'll work across cloud, networks, endpoints and security, strengthen our email security, help lead our upcoming Cyber Essentials project and tackle the security challenges that come with our rapidly evolving use of AI. We're ahead of the curve when it comes to building with AI, so you'll get extensive exposure to new tools, integrations and systems - with the freedom to get involved in other technical projects as the business evolves. If you're a strong 3rd Line Engineer with cyber security credentials who's ready to broaden your remit and take genuine ownership, we'd love to hear from you. The Role at a Glance IT Infrastructure & Cyber Security Engineer Colchester, Essex Hybrid - 3 Days Office / 2 Days Home Occasional out-of-hours working and travel to London will be required. Competitive Salary + Excellent Benefits Full Time Permanent Focus: Infrastructure Cyber Security Cloud AI Enablement Your Background / Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling Who We Are Bulk is on an incredible journey, with a mission to evolve from a manufacturing-led retailer into a destination brand for active nutrition. We're shaking up the sports nutrition industry through innovative products, disruptive marketing and bold digital thinking that encourages people to see our brand differently. We want passionate risk-takers. People who challenge our thinking, live and breathe digital and aren't afraid to find a better way of doing things. And as our technology continues to evolve - particularly through AI - we need the infrastructure and security behind it to evolve just as quickly. The Opportunity As our IT Infrastructure & Cyber Security Engineer, you'll take ownership of Bulk's infrastructure and cyber security environment, supported by our IT Service Desk Team Lead and wider team. This is a broad, hands-on technical role with some clear priorities. You'll help upgrade our email security, manage the security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. And we're not expecting you to walk through the door knowing every technology on our list. We're looking for someone with strong infrastructure foundations and genuine cyber security capability who can demonstrate experience across roughly 80% of our technical environment, with the curiosity and ability to pick up the rest. What You'll Be Doing Infrastructure • Manage and maintain Bulk s on-premise and cloud infrastructure, including Azure, Google Workspace, networks, firewalls and VPNs. • Ensure systems are secure, reliable, resilient and up to date. • Lead infrastructure projects from planning through to deployment, including budgets and contracts. • Provide Tier 3 support for complex issues and maintain clear technical documentation and handovers. • Support wider technical projects as business requirements evolve. Cyber Security • Develop and improve Bulk s security environment, with particular focus on email security. • Monitor, investigate and respond to security threats, incidents and data breaches. • Manage and optimise security technologies including SIEM, SOAR, EDR/MDR/XDR, CASB, ZTNA and SASE. • Lead Cyber Essentials activity and support wider compliance, including ISO 27001. • Assess vendor security and work with stakeholders to implement secure technology solutions. AI Tooling & Security • Support the secure adoption and scaling of AI tools across Bulk. • Manage AI platforms including Claude Code, GitHub Copilot, Codex-style tools, MCP servers, integrations and connectors. • Own user access, permissions and governance, applying least-privilege principles. • Support teams onboarding new AI technologies, balancing innovation and productivity with security and compliance. • Develop appropriate controls as agentic AI, MCP and connector-based technologies evolve. About You You're probably already operating at strong 3rd Line Engineer level and looking for the opportunity to take broader ownership across infrastructure and cyber security. You enjoy getting hands-on with technology, but you're also interested in the bigger picture - resilience, security, risk, projects and how technology can enable the business to move faster. You don't need to tick every technology box. Breadth, strong foundations and the ability to learn matter here. You'll likely bring: • Around 2-3 years' experience in a similar role, operating at 3rd Line Engineer level or equivalent. • At least one cyber security certification. • Hands-on experience across approximately 80% of the technologies and environments outlined within this advert. • Strong infrastructure experience spanning cloud and on-premise environments. • Good working knowledge of Azure, Google Workspace, networking, endpoint management and security. • Experience across technologies such as CrowdStrike, Cisco, VMware vSphere, Windows Server, Mac/Windows, Jamf, Intune, Automox and VPNs. • Strong security monitoring, incident response and threat-analysis knowledge, including IOC investigation and remediation. • Experience or knowledge of security frameworks and compliance, ideally including Cyber Essentials and ISO 27001. • The confidence and technical capability to handle complex Tier 3 escalations. • Strong problem-solving skills and a proactive approach to improving infrastructure and security. • Excellent communication skills and the confidence to work with colleagues, suppliers and senior leadership. • Willingness to undertake occasional out-of-hours work and travel to London. Even Better If You Bring • Hands-on experience administering AI coding or agent tools, including Claude Code, GitHub Copilot or Codex. • Experience configuring MCP servers, connectors, permissions and access controls. • Familiarity with emerging agentic AI infrastructure and its associated security considerations. • Experience working with Netskope. • Hands-on Netskope CASB/SSE experience covering areas such as SSL/TLS inspection, DLP, Zero Trust architecture, CASB policy design and SCIM-based provisioning. • ITIL or project management certification such as PRINCE2. • Additional cyber security certifications such as CISSP, CISM or CompTIA. Why Join Bulk ? This is a great opportunity if you're ready to move beyond traditional 3rd Line support and build broader experience across infrastructure, cyber security and AI. You'll have genuine ownership, support from the wider IT team and exposure to a broad technology landscape within a business that's actively embracing new ways of working. Because Bulk is already pushing ahead with AI, you'll also be solving security and infrastructure challenges that many businesses haven't encountered yet. You'll also enjoy: • Monthly Bulk Bank Benefits Allowance, including subsidised gym membership. • 60% discount on Bulk products. • Birthday day off. • PerkBox subscription. • Flexi Start. • Optional additional annual leave. • Teammate pension scheme. • Life Assurance. • Medicash. • Volunteering day. • Cycle to Work Scheme. • Enhanced maternity and paternity leave. • Workplace nursery scheme. • Fully stocked Bulk Pantry. • Happy Hour drinks fridge on Thursdays and Fridays. • Summer working hours. • Hybrid working - 3 days in the Colchester office / 2 days from home. Your Experience / Background / Previous Roles May Include 3rd Line Engineer, Senior 3rd Line Engineer, Infrastructure Engineer, IT Infrastructure Engineer, Infrastructure & Security Engineer, IT Security Engineer, Systems & Security Engineer, Senior IT Engineer, Cloud Infrastructure Engineer, Cyber Security Engineer or Infrastructure Support Engineer. Apply Now If you've built strong 3rd Line foundations and you're ready for a role where you can take genuine ownership across infrastructure, cyber security and emerging AI technology, we'd love to hear from you. Bring your technical breadth, security mindset and curiosity about what's coming next - and help build the resilient, secure technology foundation behind Bulk's continued growth. Bulk is an equal opportunities employer and is committed to building a diverse and inclusive team. We welcome applications regardless of age, disability, race, gender, religion, sexual orientation, education, neurodiversity or any other protected characteristic. Application notice We take your privacy seriously . click apply for full job details
Aug 24, 2026
Full time
Ready to Own More Than the Ticket Queue? You've built solid 3rd Line infrastructure experience. You know how to get to the bottom of complex technical problems, understand the importance of security and you're ready for more ownership. This could be that step. Join Bulk , one of Europe's leading active nutrition brands, and take ownership across the infrastructure and cyber security environment supporting our fast-moving digital business. You'll work across cloud, networks, endpoints and security, strengthen our email security, help lead our upcoming Cyber Essentials project and tackle the security challenges that come with our rapidly evolving use of AI. We're ahead of the curve when it comes to building with AI, so you'll get extensive exposure to new tools, integrations and systems - with the freedom to get involved in other technical projects as the business evolves. If you're a strong 3rd Line Engineer with cyber security credentials who's ready to broaden your remit and take genuine ownership, we'd love to hear from you. The Role at a Glance IT Infrastructure & Cyber Security Engineer Colchester, Essex Hybrid - 3 Days Office / 2 Days Home Occasional out-of-hours working and travel to London will be required. Competitive Salary + Excellent Benefits Full Time Permanent Focus: Infrastructure Cyber Security Cloud AI Enablement Your Background / Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling Who We Are Bulk is on an incredible journey, with a mission to evolve from a manufacturing-led retailer into a destination brand for active nutrition. We're shaking up the sports nutrition industry through innovative products, disruptive marketing and bold digital thinking that encourages people to see our brand differently. We want passionate risk-takers. People who challenge our thinking, live and breathe digital and aren't afraid to find a better way of doing things. And as our technology continues to evolve - particularly through AI - we need the infrastructure and security behind it to evolve just as quickly. The Opportunity As our IT Infrastructure & Cyber Security Engineer, you'll take ownership of Bulk's infrastructure and cyber security environment, supported by our IT Service Desk Team Lead and wider team. This is a broad, hands-on technical role with some clear priorities. You'll help upgrade our email security, manage the security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. And we're not expecting you to walk through the door knowing every technology on our list. We're looking for someone with strong infrastructure foundations and genuine cyber security capability who can demonstrate experience across roughly 80% of our technical environment, with the curiosity and ability to pick up the rest. What You'll Be Doing Infrastructure • Manage and maintain Bulk s on-premise and cloud infrastructure, including Azure, Google Workspace, networks, firewalls and VPNs. • Ensure systems are secure, reliable, resilient and up to date. • Lead infrastructure projects from planning through to deployment, including budgets and contracts. • Provide Tier 3 support for complex issues and maintain clear technical documentation and handovers. • Support wider technical projects as business requirements evolve. Cyber Security • Develop and improve Bulk s security environment, with particular focus on email security. • Monitor, investigate and respond to security threats, incidents and data breaches. • Manage and optimise security technologies including SIEM, SOAR, EDR/MDR/XDR, CASB, ZTNA and SASE. • Lead Cyber Essentials activity and support wider compliance, including ISO 27001. • Assess vendor security and work with stakeholders to implement secure technology solutions. AI Tooling & Security • Support the secure adoption and scaling of AI tools across Bulk. • Manage AI platforms including Claude Code, GitHub Copilot, Codex-style tools, MCP servers, integrations and connectors. • Own user access, permissions and governance, applying least-privilege principles. • Support teams onboarding new AI technologies, balancing innovation and productivity with security and compliance. • Develop appropriate controls as agentic AI, MCP and connector-based technologies evolve. About You You're probably already operating at strong 3rd Line Engineer level and looking for the opportunity to take broader ownership across infrastructure and cyber security. You enjoy getting hands-on with technology, but you're also interested in the bigger picture - resilience, security, risk, projects and how technology can enable the business to move faster. You don't need to tick every technology box. Breadth, strong foundations and the ability to learn matter here. You'll likely bring: • Around 2-3 years' experience in a similar role, operating at 3rd Line Engineer level or equivalent. • At least one cyber security certification. • Hands-on experience across approximately 80% of the technologies and environments outlined within this advert. • Strong infrastructure experience spanning cloud and on-premise environments. • Good working knowledge of Azure, Google Workspace, networking, endpoint management and security. • Experience across technologies such as CrowdStrike, Cisco, VMware vSphere, Windows Server, Mac/Windows, Jamf, Intune, Automox and VPNs. • Strong security monitoring, incident response and threat-analysis knowledge, including IOC investigation and remediation. • Experience or knowledge of security frameworks and compliance, ideally including Cyber Essentials and ISO 27001. • The confidence and technical capability to handle complex Tier 3 escalations. • Strong problem-solving skills and a proactive approach to improving infrastructure and security. • Excellent communication skills and the confidence to work with colleagues, suppliers and senior leadership. • Willingness to undertake occasional out-of-hours work and travel to London. Even Better If You Bring • Hands-on experience administering AI coding or agent tools, including Claude Code, GitHub Copilot or Codex. • Experience configuring MCP servers, connectors, permissions and access controls. • Familiarity with emerging agentic AI infrastructure and its associated security considerations. • Experience working with Netskope. • Hands-on Netskope CASB/SSE experience covering areas such as SSL/TLS inspection, DLP, Zero Trust architecture, CASB policy design and SCIM-based provisioning. • ITIL or project management certification such as PRINCE2. • Additional cyber security certifications such as CISSP, CISM or CompTIA. Why Join Bulk ? This is a great opportunity if you're ready to move beyond traditional 3rd Line support and build broader experience across infrastructure, cyber security and AI. You'll have genuine ownership, support from the wider IT team and exposure to a broad technology landscape within a business that's actively embracing new ways of working. Because Bulk is already pushing ahead with AI, you'll also be solving security and infrastructure challenges that many businesses haven't encountered yet. You'll also enjoy: • Monthly Bulk Bank Benefits Allowance, including subsidised gym membership. • 60% discount on Bulk products. • Birthday day off. • PerkBox subscription. • Flexi Start. • Optional additional annual leave. • Teammate pension scheme. • Life Assurance. • Medicash. • Volunteering day. • Cycle to Work Scheme. • Enhanced maternity and paternity leave. • Workplace nursery scheme. • Fully stocked Bulk Pantry. • Happy Hour drinks fridge on Thursdays and Fridays. • Summer working hours. • Hybrid working - 3 days in the Colchester office / 2 days from home. Your Experience / Background / Previous Roles May Include 3rd Line Engineer, Senior 3rd Line Engineer, Infrastructure Engineer, IT Infrastructure Engineer, Infrastructure & Security Engineer, IT Security Engineer, Systems & Security Engineer, Senior IT Engineer, Cloud Infrastructure Engineer, Cyber Security Engineer or Infrastructure Support Engineer. Apply Now If you've built strong 3rd Line foundations and you're ready for a role where you can take genuine ownership across infrastructure, cyber security and emerging AI technology, we'd love to hear from you. Bring your technical breadth, security mindset and curiosity about what's coming next - and help build the resilient, secure technology foundation behind Bulk's continued growth. Bulk is an equal opportunities employer and is committed to building a diverse and inclusive team. We welcome applications regardless of age, disability, race, gender, religion, sexual orientation, education, neurodiversity or any other protected characteristic. Application notice We take your privacy seriously . click apply for full job details
Security Analyst Cardiff, London, Leeds, Manchester or Oxford Hybrid Working Excellent Benefits Are you looking for a role where you'll play a key part in protecting a leading professional services organisation from evolving cyber threats? We're looking for a proactive Security Analyst to join a growing Technology team, working with modern security technologies in a collaborative environment where you'll have the opportunity to influence security operations, improve processes and develop your technical expertise. This is an excellent opportunity for someone with experience in Security Operations or Cyber Security who enjoys investigating incidents, strengthening security controls and working with the latest Microsoft security technologies. What you'll be doing As part of a dedicated Security team, you'll help safeguard the organisation's technology estate by monitoring threats, responding to incidents and continuously improving the firm's overall security posture. Your responsibilities will include: Monitoring and investigating security alerts across the organisation Responding to cyber security incidents and supporting remediation activities Managing and optimising security tools including Microsoft Defender and other enterprise security platforms Supporting vulnerability assessments, penetration testing and security audits Assisting with the implementation of new security technologies and improvements Developing and maintaining security policies, standards and best practice Providing technical guidance to colleagues on security processes and technologies Keeping up to date with emerging cyber threats and recommending improvements About you You'll already have experience working within a Security Operations, Cyber Security or Information Security environment and be passionate about protecting organisations from modern cyber threats. You'll ideally have experience with: Microsoft Defender or similar endpoint protection solutions Security Operations and Incident Response SIEM monitoring and security investigations Email security platforms such as Mimecast or Proofpoint Secure Web Gateway technologies such as Zscaler Vulnerability Management Cyber Essentials and ISO27001 Microsoft security technologies including Defender, Sentinel or Entra Professional certifications such as CompTIA CySA+, Security+ or Microsoft Security Operations are advantageous but by no means essential. Why apply? This is more than just another Security Analyst role. You'll be joining an organisation that genuinely invests in its people, embraces modern technology and encourages continuous learning and professional development. You'll work alongside experienced cyber security professionals, gain exposure to enterprise-scale technologies and have the opportunity to broaden your technical skills while making a real impact on the firm's security strategy. If you're looking for a role where your expertise is valued, your development is supported and no two days are the same, we'd love to hear from you. Apply today or get in touch for a confidential discussion.
Aug 23, 2026
Full time
Security Analyst Cardiff, London, Leeds, Manchester or Oxford Hybrid Working Excellent Benefits Are you looking for a role where you'll play a key part in protecting a leading professional services organisation from evolving cyber threats? We're looking for a proactive Security Analyst to join a growing Technology team, working with modern security technologies in a collaborative environment where you'll have the opportunity to influence security operations, improve processes and develop your technical expertise. This is an excellent opportunity for someone with experience in Security Operations or Cyber Security who enjoys investigating incidents, strengthening security controls and working with the latest Microsoft security technologies. What you'll be doing As part of a dedicated Security team, you'll help safeguard the organisation's technology estate by monitoring threats, responding to incidents and continuously improving the firm's overall security posture. Your responsibilities will include: Monitoring and investigating security alerts across the organisation Responding to cyber security incidents and supporting remediation activities Managing and optimising security tools including Microsoft Defender and other enterprise security platforms Supporting vulnerability assessments, penetration testing and security audits Assisting with the implementation of new security technologies and improvements Developing and maintaining security policies, standards and best practice Providing technical guidance to colleagues on security processes and technologies Keeping up to date with emerging cyber threats and recommending improvements About you You'll already have experience working within a Security Operations, Cyber Security or Information Security environment and be passionate about protecting organisations from modern cyber threats. You'll ideally have experience with: Microsoft Defender or similar endpoint protection solutions Security Operations and Incident Response SIEM monitoring and security investigations Email security platforms such as Mimecast or Proofpoint Secure Web Gateway technologies such as Zscaler Vulnerability Management Cyber Essentials and ISO27001 Microsoft security technologies including Defender, Sentinel or Entra Professional certifications such as CompTIA CySA+, Security+ or Microsoft Security Operations are advantageous but by no means essential. Why apply? This is more than just another Security Analyst role. You'll be joining an organisation that genuinely invests in its people, embraces modern technology and encourages continuous learning and professional development. You'll work alongside experienced cyber security professionals, gain exposure to enterprise-scale technologies and have the opportunity to broaden your technical skills while making a real impact on the firm's security strategy. If you're looking for a role where your expertise is valued, your development is supported and no two days are the same, we'd love to hear from you. Apply today or get in touch for a confidential discussion.
Lead Software Security Engineer Salary: Up to £150,000 + Benefits Location: London (Hybrid - 3 days per week in the office) We are currently looking for a Lead Software Security Engineer to join a fast-growing, innovative technology business operating at the forefront of AI and data-driven products. This is an exciting opportunity to join a highly collaborative, engineering-led environment where security is viewed as a key enabler of innovation. Reporting to the Head of Engineering, the Lead Security Engineer will play a pivotal role in shaping the organisation's security posture, working closely with software engineers, platform teams and technical leadership to embed security throughout the software development lifecycle. This is not a traditional SOC or operational security position. Instead, the Security Engineer will focus on securing applications, cloud infrastructure and development practices, helping the business build secure products at scale whilst influencing security strategy across the wider organisation. The Opportunity As the Lead Security Engineer, you'll work at the intersection of software engineering, cloud infrastructure and cyber security, helping to build and maintain a secure by design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers to promote secure coding practices Reviewing cloud infrastructure and architecture from a security perspective Supporting incident response and remediation activities when required Defining and promoting security standards, policies and best practices Influencing technical decision-making across engineering and leadership teams This role offers the opportunity to make a genuine impact within a growing technology organisation where security is a strategic priority rather than an afterthought. What's in it for you? Salary up to £150,000 Hybrid working model Opportunity to work on cutting edge AI and technology products High level of autonomy and influence Collaborative engineering culture Career progression opportunities as the business continues to scale Ongoing learning and professional development Pension scheme Generous holiday allowance Skills and Experience Commercial experience as a Security Engineer, Application Security Engineer, Product Security Engineer or DevSecOps Engineer Strong understanding of application security principles and secure software development practices Experience working closely with software engineering teams Hands on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note that candidates must have full, unrestricted right to work in the UK. Unfortunately, sponsorship is not available for this position.
Aug 23, 2026
Full time
Lead Software Security Engineer Salary: Up to £150,000 + Benefits Location: London (Hybrid - 3 days per week in the office) We are currently looking for a Lead Software Security Engineer to join a fast-growing, innovative technology business operating at the forefront of AI and data-driven products. This is an exciting opportunity to join a highly collaborative, engineering-led environment where security is viewed as a key enabler of innovation. Reporting to the Head of Engineering, the Lead Security Engineer will play a pivotal role in shaping the organisation's security posture, working closely with software engineers, platform teams and technical leadership to embed security throughout the software development lifecycle. This is not a traditional SOC or operational security position. Instead, the Security Engineer will focus on securing applications, cloud infrastructure and development practices, helping the business build secure products at scale whilst influencing security strategy across the wider organisation. The Opportunity As the Lead Security Engineer, you'll work at the intersection of software engineering, cloud infrastructure and cyber security, helping to build and maintain a secure by design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers to promote secure coding practices Reviewing cloud infrastructure and architecture from a security perspective Supporting incident response and remediation activities when required Defining and promoting security standards, policies and best practices Influencing technical decision-making across engineering and leadership teams This role offers the opportunity to make a genuine impact within a growing technology organisation where security is a strategic priority rather than an afterthought. What's in it for you? Salary up to £150,000 Hybrid working model Opportunity to work on cutting edge AI and technology products High level of autonomy and influence Collaborative engineering culture Career progression opportunities as the business continues to scale Ongoing learning and professional development Pension scheme Generous holiday allowance Skills and Experience Commercial experience as a Security Engineer, Application Security Engineer, Product Security Engineer or DevSecOps Engineer Strong understanding of application security principles and secure software development practices Experience working closely with software engineering teams Hands on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note that candidates must have full, unrestricted right to work in the UK. Unfortunately, sponsorship is not available for this position.
Senior SecOps Engineer - Microsoft Security UK Predominantly Remote Occasional presence in London Permanent We are partnering with a specialist Microsoft Security organisation looking to appoint two highly experienced Senior SecOps Engineers to its growing Microsoft Cyber Engineering team. This is not a traditional SOC Analyst position. We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments. The organisation works extensively across the Microsoft Security portfolio and is looking for individuals who can bring significant technical depth while remaining hands-on with complex customer environments. The Role Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender / Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and scripting Improving security event detection and response capabilities Conducting Microsoft tenant health checks, security audits and architecture reviews Analysing cloud security risks and recommending appropriate security controls Supporting complex incident triage and resolution Designing and documenting security engineering standards and processes Researching and implementing new Microsoft security capabilities Producing high-quality technical and customer-facing documentation Working directly with customers and technical stakeholders Supporting and mentoring more junior members of the engineering team Essential Experience To be considered, you should have strong commercial experience across the following: Microsoft Sentinel / Azure Sentinel Microsoft Defender / Defender XDR Strong KQL / Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, scripting, SOAR or Sentinel playbooks Cloud security assessments, controls and risk analysis Designing and documenting security processes Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: Microsoft Purview Microsoft Defender for Endpoint Defender for Cloud Defender for Identity Defender for Office 365 Microsoft Entra ID Intune Azure security architecture Logic Apps / Sentinel playbooks PowerShell or Python MITRE ATT&CK Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft , or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. Microsoft Certifications Relevant Microsoft certifications are strongly preferred, particularly: SC-200 - Microsoft Security Operations Analyst AZ-500 - Azure Security Engineer Associate AZ-104 - Azure Administrator Associate AZ-305 - Azure Solutions Architect Expert Equivalent or additional Microsoft Security certifications will also be considered. The Opportunity This is an opportunity to join a highly specialised Microsoft Security environment rather than a broad IT or generalist cybersecurity function. You'll work alongside experienced security professionals on complex customer engagements, with significant exposure to the wider Microsoft Security ecosystem and continued investment in technical training and development. The position would particularly suit an established Microsoft Security Engineer who wants to remain technically hands-on while taking greater ownership of solution design, engineering standards, customer environments and the development of security operations capabilities. If your core expertise sits across Microsoft Sentinel, Defender and Security Operations Engineering , email your CV If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Aug 23, 2026
Full time
Senior SecOps Engineer - Microsoft Security UK Predominantly Remote Occasional presence in London Permanent We are partnering with a specialist Microsoft Security organisation looking to appoint two highly experienced Senior SecOps Engineers to its growing Microsoft Cyber Engineering team. This is not a traditional SOC Analyst position. We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments. The organisation works extensively across the Microsoft Security portfolio and is looking for individuals who can bring significant technical depth while remaining hands-on with complex customer environments. The Role Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender / Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and scripting Improving security event detection and response capabilities Conducting Microsoft tenant health checks, security audits and architecture reviews Analysing cloud security risks and recommending appropriate security controls Supporting complex incident triage and resolution Designing and documenting security engineering standards and processes Researching and implementing new Microsoft security capabilities Producing high-quality technical and customer-facing documentation Working directly with customers and technical stakeholders Supporting and mentoring more junior members of the engineering team Essential Experience To be considered, you should have strong commercial experience across the following: Microsoft Sentinel / Azure Sentinel Microsoft Defender / Defender XDR Strong KQL / Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, scripting, SOAR or Sentinel playbooks Cloud security assessments, controls and risk analysis Designing and documenting security processes Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: Microsoft Purview Microsoft Defender for Endpoint Defender for Cloud Defender for Identity Defender for Office 365 Microsoft Entra ID Intune Azure security architecture Logic Apps / Sentinel playbooks PowerShell or Python MITRE ATT&CK Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft , or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. Microsoft Certifications Relevant Microsoft certifications are strongly preferred, particularly: SC-200 - Microsoft Security Operations Analyst AZ-500 - Azure Security Engineer Associate AZ-104 - Azure Administrator Associate AZ-305 - Azure Solutions Architect Expert Equivalent or additional Microsoft Security certifications will also be considered. The Opportunity This is an opportunity to join a highly specialised Microsoft Security environment rather than a broad IT or generalist cybersecurity function. You'll work alongside experienced security professionals on complex customer engagements, with significant exposure to the wider Microsoft Security ecosystem and continued investment in technical training and development. The position would particularly suit an established Microsoft Security Engineer who wants to remain technically hands-on while taking greater ownership of solution design, engineering standards, customer environments and the development of security operations capabilities. If your core expertise sits across Microsoft Sentinel, Defender and Security Operations Engineering , email your CV If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Job Description Job Title: Data, AI & Security Lawyer Req ID: 61792 Job Function: Legal and Governance Posting Start Date: 12/08/2026 Posting End Date: 28/08/2026 Division: Legal, CoSec & Regulatory Affairs Job Location: GBR-London-BTHQ One Braham Advertised Salary: competitive Closing Date: 28th August Location: London, at least 3 days a week onsite. About the role This role sits within Corporate Functions (Data, AI and Security Legal) and flexes across a number of BT's Customer-Facing Units (CFUs)/Corporate Units (CUs), assisting the Principal Lawyer and Legal Director, Data, AI and Security on complex and interesting data issues - security, cyber, AI, ethics, human rights and commercial matters. You will provide clear, responsive and strategically savvy advice that helps BT process data lawfully and ethically, protects the trust of our customers and colleagues, safeguards BT's corporate reputation and enables BT to achieve its commercial goals. By horizon scanning for emerging legal issues and embedding Security and Privacy by Design, you help BT use data in smarter ways - supporting innovation, transformation and the delivery of brilliant products and services for our customers. Because of the nature of the role, either existing UK Government Developed Vetting clearance or eligibility and a willingness to apply for such clearance is required. What you'll be doing Advising on legal issues in relation to data protection, cybersecurity and investigatory powers, and related issues impacting BT. Providing accurate and timely legal advice, analysis and support based on a combined understanding of BT's commercial strategy and the legal environment, acting as a single point of contact for an assigned topic or area of the business where relevant. Providing strategic input on BT's new products and services to ensure data protection, security and strategy objectives are met and implemented across the Group. Advising on the implications of upcoming legislative changes and statutory codes of practice. Using data and AI to drive internal business change and innovation. Ensuring in-life policy changes and updates to precedents brought about by changes to cybersecurity and data protection legislation are incorporated and understood across CFUs in BT. Instructing and managing external Counsel in line with agreed scope and budget, where appropriate. Drafting and negotiating complex security and data protection provisions in supplier, customer and partner agreements. Working on pan-BT projects aimed at transformation or remediation of cybersecurity and data systems and processes. Advising and partnering directly with business stakeholders. Conducting complex escalated Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs). Essential Skills / Experience An excellent technical lawyer with post-qualification experience in data privacy and/or cybersecurity - whether in-house (ideally in a highly regulated, consumer-focused sector such as banking or telecoms) or at a top-tier firm (NQ+ considered for the right candidate) - with in-depth understanding of the DPA 2018, GDPR and PECR, and national and European data protection laws and practices. Able to give clear, concise and practical legal advice with a high degree of professionalism, combined with strong stakeholder management and influencing skills to communicate effectively at the most senior levels of the organisation. Strong commercial awareness of the business's value drivers, creative problem-solving, and the ability to plan, organise and prioritise tasks while remaining calm and controlled in a fast-paced, pressurised environment. Eligible and willing to obtain UK government Developed Vetting clearance, and a strong, supportive team player - we have a lovely, supportive team vibe and are delighted to be able to welcome new talent; bring yourself, just as you are. Desirable Skills / Experience Experience advising on national and European security legislation, for example the Telecommunications (Security) Act 2021, Network and Information Systems Regulations 2018, NIS 2 and the EU Digital Operational Resilience Act (DORA). Awareness of the requirements of investigatory powers legislation such as the Investigatory Powers Act 2016 Experience advising on the legal aspects of data and security incident response. CIPP/E, CIPM, AIGP certification or equivalent. Existing UK government Developed Vetting clearance. Our Package Tailored benefits make a real difference. That's why we offer a comprehensive range to support your growth, wellbeing, and everyday life. You can design the package to suit you and your lifestyle. Your core benefits include: 10% on target annual bonus Access to an online private GP 24/7 for you and your immediate family Market-leading paid carers leave with up to 2 weeks off Equalised maternity, paternity, and adoption leave - 18 weeks' full pay and 8 weeks' half pay Discounted EE and BT products, including mobile and broadband Market leading Pension scheme - 5% from you and 10% from us Holiday purchase scheme You can select additional benefits, including healthcare, dental, gym memberships and more when you're ready. BT Group BT Group is the UK's leading communications group and the holding company behind some of the country's most recognised brands - including BT, EE, Openreach and Plusnet. Our purpose is as simple as it is ambitious: we connect for good. Our customers include consumers, small, medium and large businesses, public sector organisations and other communications providers. BT Group's role is about setting direction, unlocking value and creating the conditions for our brands and businesses to thrive. Having come through the most capital-intensive phase of our fibre investment, our focus now is on what comes next - simplifying how we operate, using technology and AI to work smarter, and organising ourselves to serve customers better and grow sustainably. Group teams shape strategy, policy, brand, capital allocation and transformation, helping the whole organisation perform at its best. We have a singular culture that unites all our people: we are customer-first challengers, who are committed, clear and connected. These behaviours unite us as one team to deliver for our colleagues, our customers, our stakeholders and the country. Joining BT Group means working at the heart of a business that matters to the UK, with the opportunity to shape decisions, influence outcomes and help set the future course of one of the country's most important companies.
Aug 23, 2026
Full time
Job Description Job Title: Data, AI & Security Lawyer Req ID: 61792 Job Function: Legal and Governance Posting Start Date: 12/08/2026 Posting End Date: 28/08/2026 Division: Legal, CoSec & Regulatory Affairs Job Location: GBR-London-BTHQ One Braham Advertised Salary: competitive Closing Date: 28th August Location: London, at least 3 days a week onsite. About the role This role sits within Corporate Functions (Data, AI and Security Legal) and flexes across a number of BT's Customer-Facing Units (CFUs)/Corporate Units (CUs), assisting the Principal Lawyer and Legal Director, Data, AI and Security on complex and interesting data issues - security, cyber, AI, ethics, human rights and commercial matters. You will provide clear, responsive and strategically savvy advice that helps BT process data lawfully and ethically, protects the trust of our customers and colleagues, safeguards BT's corporate reputation and enables BT to achieve its commercial goals. By horizon scanning for emerging legal issues and embedding Security and Privacy by Design, you help BT use data in smarter ways - supporting innovation, transformation and the delivery of brilliant products and services for our customers. Because of the nature of the role, either existing UK Government Developed Vetting clearance or eligibility and a willingness to apply for such clearance is required. What you'll be doing Advising on legal issues in relation to data protection, cybersecurity and investigatory powers, and related issues impacting BT. Providing accurate and timely legal advice, analysis and support based on a combined understanding of BT's commercial strategy and the legal environment, acting as a single point of contact for an assigned topic or area of the business where relevant. Providing strategic input on BT's new products and services to ensure data protection, security and strategy objectives are met and implemented across the Group. Advising on the implications of upcoming legislative changes and statutory codes of practice. Using data and AI to drive internal business change and innovation. Ensuring in-life policy changes and updates to precedents brought about by changes to cybersecurity and data protection legislation are incorporated and understood across CFUs in BT. Instructing and managing external Counsel in line with agreed scope and budget, where appropriate. Drafting and negotiating complex security and data protection provisions in supplier, customer and partner agreements. Working on pan-BT projects aimed at transformation or remediation of cybersecurity and data systems and processes. Advising and partnering directly with business stakeholders. Conducting complex escalated Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs). Essential Skills / Experience An excellent technical lawyer with post-qualification experience in data privacy and/or cybersecurity - whether in-house (ideally in a highly regulated, consumer-focused sector such as banking or telecoms) or at a top-tier firm (NQ+ considered for the right candidate) - with in-depth understanding of the DPA 2018, GDPR and PECR, and national and European data protection laws and practices. Able to give clear, concise and practical legal advice with a high degree of professionalism, combined with strong stakeholder management and influencing skills to communicate effectively at the most senior levels of the organisation. Strong commercial awareness of the business's value drivers, creative problem-solving, and the ability to plan, organise and prioritise tasks while remaining calm and controlled in a fast-paced, pressurised environment. Eligible and willing to obtain UK government Developed Vetting clearance, and a strong, supportive team player - we have a lovely, supportive team vibe and are delighted to be able to welcome new talent; bring yourself, just as you are. Desirable Skills / Experience Experience advising on national and European security legislation, for example the Telecommunications (Security) Act 2021, Network and Information Systems Regulations 2018, NIS 2 and the EU Digital Operational Resilience Act (DORA). Awareness of the requirements of investigatory powers legislation such as the Investigatory Powers Act 2016 Experience advising on the legal aspects of data and security incident response. CIPP/E, CIPM, AIGP certification or equivalent. Existing UK government Developed Vetting clearance. Our Package Tailored benefits make a real difference. That's why we offer a comprehensive range to support your growth, wellbeing, and everyday life. You can design the package to suit you and your lifestyle. Your core benefits include: 10% on target annual bonus Access to an online private GP 24/7 for you and your immediate family Market-leading paid carers leave with up to 2 weeks off Equalised maternity, paternity, and adoption leave - 18 weeks' full pay and 8 weeks' half pay Discounted EE and BT products, including mobile and broadband Market leading Pension scheme - 5% from you and 10% from us Holiday purchase scheme You can select additional benefits, including healthcare, dental, gym memberships and more when you're ready. BT Group BT Group is the UK's leading communications group and the holding company behind some of the country's most recognised brands - including BT, EE, Openreach and Plusnet. Our purpose is as simple as it is ambitious: we connect for good. Our customers include consumers, small, medium and large businesses, public sector organisations and other communications providers. BT Group's role is about setting direction, unlocking value and creating the conditions for our brands and businesses to thrive. Having come through the most capital-intensive phase of our fibre investment, our focus now is on what comes next - simplifying how we operate, using technology and AI to work smarter, and organising ourselves to serve customers better and grow sustainably. Group teams shape strategy, policy, brand, capital allocation and transformation, helping the whole organisation perform at its best. We have a singular culture that unites all our people: we are customer-first challengers, who are committed, clear and connected. These behaviours unite us as one team to deliver for our colleagues, our customers, our stakeholders and the country. Joining BT Group means working at the heart of a business that matters to the UK, with the opportunity to shape decisions, influence outcomes and help set the future course of one of the country's most important companies.
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Aug 22, 2026
Contractor
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Senior DFIR Investigator Department: Global Security Services Employment Type: Permanent - Full Time Location: UK - London Reporting To: John Woolcott Description At CFC, cyber sits at the core of our business. Through our in-house cyber expertise and market-leading insurance solutions, we help organisations respond to, recover from and build resilience against cyber threats. We're seeking a Senior DFIR Investigator to join our Global Security Services team. Working at the forefront of incident response, you'll lead complex investigations for organisations around the world, helping clients understand what happened, contain threats and recover with confidence. This role offers the opportunity to work on sophisticated cyber incidents, collaborate with a broad range of stakeholders, and play a key role in shaping outcomes for clients during critical moments. Key Responsibilities Lead forensic investigations across host, network and cloud environments to identify root cause, scope and impact of cyber incidents. Analyse threat actor activity, attack techniques, malware and potential data exposure. Produce high-quality forensic reports, attack timelines and actionable recommendations for clients. Deploy and utilise incident response tooling to collect, preserve and analyse forensic evidence. Provide trusted technical guidance to clients throughout the incident response lifecycle. Work closely with internal teams including Cyber Claims, Underwriting and Security Services, as well as external legal, technology and client stakeholders. Lead smaller investigation teams and support the successful delivery of incident response engagements. Mentor and develop junior investigators, contributing to the continued growth of the team. Deliver proactive cyber services, including tabletop exercises, workshops and client-facing training. Maintain expertise across emerging threats, attack techniques and industry best practice. Skills, Knowledge and Expertise You'll be an experienced DFIR professional with a strong technical background and a track record of leading investigations in complex environments. You are comfortable operating in high-pressure situations, communicating clearly with a range of stakeholders, and translating technical findings into meaningful business outcomes. You'll ideally bring: Significant experience in digital forensics and incident response within enterprise environments. Expertise across host, network and application forensics. Experience investigating complex cyber incidents from initial response through to reporting and remediation. Strong understanding of threat actor tactics, techniques and procedures (TTPs). Hands-on experience with forensic and incident response tooling. Familiarity with malware investigation and compromised system analysis. Knowledge of enterprise infrastructure, including networks, endpoints and cloud environments. Experience producing client-facing reports and presenting findings to both technical and non-technical audiences. Strong stakeholder management and communication skills. Experience mentoring, coaching or leading other investigators. Knowledge of industry frameworks and standards, including NIST and ISO, alongside an understanding of legal and regulatory considerations associated with cyber incidents, would be advantageous. At CFC, you'll join a team of cyber specialists focused on delivering market-leading expertise, supporting clients through some of their most challenging moments, and helping organisations build greater cyber resilience. Core Values Love what you do: We show up each day ready to take on the world. Our passion and intensity set us apart and makes the difference to our colleagues, customers, brokers and carriers. Challenge everything: We're never afraid to question the way that things are done and we constantly challenge ourselves and others to makes things better. Have fun, be good: Insurance is a serious business, but we don't take ourselves too seriously. We make it fun to work at CFC, we welcome all viewpoints, and we treat everyone how we would expect to be treated.
Aug 22, 2026
Full time
Senior DFIR Investigator Department: Global Security Services Employment Type: Permanent - Full Time Location: UK - London Reporting To: John Woolcott Description At CFC, cyber sits at the core of our business. Through our in-house cyber expertise and market-leading insurance solutions, we help organisations respond to, recover from and build resilience against cyber threats. We're seeking a Senior DFIR Investigator to join our Global Security Services team. Working at the forefront of incident response, you'll lead complex investigations for organisations around the world, helping clients understand what happened, contain threats and recover with confidence. This role offers the opportunity to work on sophisticated cyber incidents, collaborate with a broad range of stakeholders, and play a key role in shaping outcomes for clients during critical moments. Key Responsibilities Lead forensic investigations across host, network and cloud environments to identify root cause, scope and impact of cyber incidents. Analyse threat actor activity, attack techniques, malware and potential data exposure. Produce high-quality forensic reports, attack timelines and actionable recommendations for clients. Deploy and utilise incident response tooling to collect, preserve and analyse forensic evidence. Provide trusted technical guidance to clients throughout the incident response lifecycle. Work closely with internal teams including Cyber Claims, Underwriting and Security Services, as well as external legal, technology and client stakeholders. Lead smaller investigation teams and support the successful delivery of incident response engagements. Mentor and develop junior investigators, contributing to the continued growth of the team. Deliver proactive cyber services, including tabletop exercises, workshops and client-facing training. Maintain expertise across emerging threats, attack techniques and industry best practice. Skills, Knowledge and Expertise You'll be an experienced DFIR professional with a strong technical background and a track record of leading investigations in complex environments. You are comfortable operating in high-pressure situations, communicating clearly with a range of stakeholders, and translating technical findings into meaningful business outcomes. You'll ideally bring: Significant experience in digital forensics and incident response within enterprise environments. Expertise across host, network and application forensics. Experience investigating complex cyber incidents from initial response through to reporting and remediation. Strong understanding of threat actor tactics, techniques and procedures (TTPs). Hands-on experience with forensic and incident response tooling. Familiarity with malware investigation and compromised system analysis. Knowledge of enterprise infrastructure, including networks, endpoints and cloud environments. Experience producing client-facing reports and presenting findings to both technical and non-technical audiences. Strong stakeholder management and communication skills. Experience mentoring, coaching or leading other investigators. Knowledge of industry frameworks and standards, including NIST and ISO, alongside an understanding of legal and regulatory considerations associated with cyber incidents, would be advantageous. At CFC, you'll join a team of cyber specialists focused on delivering market-leading expertise, supporting clients through some of their most challenging moments, and helping organisations build greater cyber resilience. Core Values Love what you do: We show up each day ready to take on the world. Our passion and intensity set us apart and makes the difference to our colleagues, customers, brokers and carriers. Challenge everything: We're never afraid to question the way that things are done and we constantly challenge ourselves and others to makes things better. Have fun, be good: Insurance is a serious business, but we don't take ourselves too seriously. We make it fun to work at CFC, we welcome all viewpoints, and we treat everyone how we would expect to be treated.
CFC's Global Security Services team in London seeks a Senior DFIR Investigator to lead complex investigations for clients worldwide, guiding containment, root cause analysis and recovery. You'll work across host, network and cloud environments, mentor junior investigators, and deliver client-facing reports and actionable recommendations. Knowledge of NIST/ISO frameworks and strong stakeholder communication are essential; reporting to John Woolcott.
Aug 22, 2026
Full time
CFC's Global Security Services team in London seeks a Senior DFIR Investigator to lead complex investigations for clients worldwide, guiding containment, root cause analysis and recovery. You'll work across host, network and cloud environments, mentor junior investigators, and deliver client-facing reports and actionable recommendations. Knowledge of NIST/ISO frameworks and strong stakeholder communication are essential; reporting to John Woolcott.
This is a long-term engagement until 31/03/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract to March 2027, offering rare long-term security in the contracting market. Day rate: Up to (Apply online only) (umbrella) inside IR35. Mission-critical work: Protects key government digital services and internal infrastructure. Career development: Mentor and line manage apprentice analysts, strengthening your leadership profile. The role - Associate Security Analyst As part of the Cyber Defence team, you will be central to detecting, investigating and responding to cyber threats and incidents affecting high-profile services. Triage and investigate security alerts and user reports. Analyse systems, files, network traffic and cloud environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions and contribute to playbooks, plans and knowledge base articles . Act as an escalation point and provide coaching and line management for apprentice security analysts. Participate in an out-of-hours on-call rota , as incidents can arise 24/7. Key requirements Active SC (Security Check) clearance - STRONGLY PREFERED. 2-3+ years experience as a Cyber Security / Security Analyst. Hands-on experience with SIEM (Splunk preferred; Microsoft Sentinel or equivalent also considered). Experience with M365 security tooling (e.g. Microsoft Defender, Sentinel, KQL). Good understanding of threat actors' tools, techniques and procedures . Strong analytical, problem-solving and communication skills. Nice to have Further experience with Splunk . Background working in an Agile environment. Exposure to cloud platforms such as AWS. About our client Our client's cyber and information security function safeguards crucial digital and information assets and enables the secure delivery of major citizen-facing services as well as internal government systems. You would be joining a team with a strong mandate, modern tooling, and a clear mission to improve the cyber resilience of core public services.
Aug 21, 2026
Contractor
This is a long-term engagement until 31/03/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract to March 2027, offering rare long-term security in the contracting market. Day rate: Up to (Apply online only) (umbrella) inside IR35. Mission-critical work: Protects key government digital services and internal infrastructure. Career development: Mentor and line manage apprentice analysts, strengthening your leadership profile. The role - Associate Security Analyst As part of the Cyber Defence team, you will be central to detecting, investigating and responding to cyber threats and incidents affecting high-profile services. Triage and investigate security alerts and user reports. Analyse systems, files, network traffic and cloud environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions and contribute to playbooks, plans and knowledge base articles . Act as an escalation point and provide coaching and line management for apprentice security analysts. Participate in an out-of-hours on-call rota , as incidents can arise 24/7. Key requirements Active SC (Security Check) clearance - STRONGLY PREFERED. 2-3+ years experience as a Cyber Security / Security Analyst. Hands-on experience with SIEM (Splunk preferred; Microsoft Sentinel or equivalent also considered). Experience with M365 security tooling (e.g. Microsoft Defender, Sentinel, KQL). Good understanding of threat actors' tools, techniques and procedures . Strong analytical, problem-solving and communication skills. Nice to have Further experience with Splunk . Background working in an Agile environment. Exposure to cloud platforms such as AWS. About our client Our client's cyber and information security function safeguards crucial digital and information assets and enables the secure delivery of major citizen-facing services as well as internal government systems. You would be joining a team with a strong mandate, modern tooling, and a clear mission to improve the cyber resilience of core public services.
Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
Aug 21, 2026
Full time
Information Security & Assurance Officer Salary: up to 50,000 + 15% Project Uplift + Company Car/Car Allowance Location: Suffolk (onsite) REED Technology are recruiting for an Information Security & Assurance Officer to join a major UK infrastructure programme. This is a fantastic opportunity for an information security professional who enjoys balancing security governance, compliance and assurance with oversight of operational cyber security activities. You'll play a key role in maintaining the organisation's Information Security Management System (ISMS), ensuring compliance with recognised security frameworks, managing risk and assurance activities, and acting as a trusted adviser to both technical and non-technical stakeholders. This role would suit someone with experience in Information Security, GRC, Information Assurance or Cyber Security who is looking to develop their career within a highly regulated and complex environment. Key Responsibilities Own and maintain the Information Security Management System (ISMS) Ensure compliance with ISO 27001, GDPR and wider security governance requirements Develop and maintain security policies, standards and procedures Conduct security risk assessments and support internal and external audits Manage supplier and third-party security assurance activities Provide oversight of Microsoft 365 security controls, including identity and access management, MFA, endpoint protection and monitoring Work closely with SOC and security service providers to support incident management and response activities Produce security reports, dashboards and assurance documentation for senior stakeholders Deliver security awareness initiatives across the organisation Support continuous improvement of security controls, processes and governance frameworks About You We're interested in speaking with candidates who can demonstrate experience in: Information Security Governance, Risk and Compliance (GRC) Information Security Assurance and risk management ISO 27001 and Information Security Management Systems (ISMS) GDPR and data protection requirements Security audits, compliance reviews and assurance activities Supplier or third-party security assessments Security incident management and response processes Microsoft security technologies such as Defender, Sentinel, Entra ID or similar platforms Building strong relationships with stakeholders at all levels Desirable Experience Cyber Essentials or Cyber Essentials Plus NIST Cyber Security Framework Experience within infrastructure, utilities, energy, defence, engineering, financial services or other regulated sectors Professional certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer, Security+ or equivalent What's on Offer? 15% project uplift paid monthly Company car or car allowance Annual bonus Private medical insurance Life assurance Enhanced pension contributions 25 days annual leave plus bank holidays Additional holiday purchase scheme Professional memberships paid Ongoing training and development opportunities This is an excellent opportunity to join a high-profile programme where you'll have real ownership of information security governance and assurance, while contributing to the success of a nationally significant project. If you are interested, apply using the link provided.
慨正橡扯 is seeking a DFIR Lead Cyber Operations Analyst at VP level in Knutsford. In this key role, you will deliver advanced digital forensics and incident response while leading complex investigations. You will collaborate with internal teams and law enforcement, and produce clear reports under pressure. Ideal candidates will have expertise in digital forensics, excellent communication skills, and experience in cloud investigation and automation.
Aug 21, 2026
Full time
慨正橡扯 is seeking a DFIR Lead Cyber Operations Analyst at VP level in Knutsford. In this key role, you will deliver advanced digital forensics and incident response while leading complex investigations. You will collaborate with internal teams and law enforcement, and produce clear reports under pressure. Ideal candidates will have expertise in digital forensics, excellent communication skills, and experience in cloud investigation and automation.
Managing Director, International Chief Information Security Officer Position Summary The International Chief Information Security Officer (International CISO) reporting to the SVP, Global Head of Business Information Security, serves as the senior cybersecurity executive responsible for cybersecurity strategy, governance, regulatory engagement, and cyber risk oversight across multiple international jurisdictions. The role provides leadership and accountability for regional cybersecurity programs while ensuring alignment with enterprise security strategies, local regulatory requirements, business objectives, and operational resilience expectations. The International CISO acts as the primary cybersecurity advisor to regional executives, regulators, legal entities, risk committees, and business leaders, while coordinating closely with global cybersecurity functions to drive consistent security outcomes and regulatory compliance across international markets. The International CISO balances global cybersecurity standards with regional business and regulatory requirements while driving execution across complex multinational environments. The International CISO is expected to operate as a trusted advisor to executive leadership and the regional boards, while being able to translate complex cybersecurity issues into business-oriented risk decisions. Key Responsibilities International Cybersecurity Leadership Lead cybersecurity strategies and execution across assigned international regions, including oversight of country and regional cybersecurity programs. Establish and maintain a consistent cybersecurity operating model across jurisdictions while accounting for local regulatory and business requirements. Serve as the senior cybersecurity executive for international legal entities and country governance structures. Drive regional cybersecurity transformation initiatives supporting emerging technologies, cloud adoption, AI, resilience, and digital modernization efforts. Regulatory Engagement Serve as the accountable cybersecurity representative for regulatory examinations, audits, supervisory engagements, and regulatory reporting requirements. Maintain strong relationships with regional regulators, industry associations, and cybersecurity authorities. Monitor changes in cyber, technology risk, privacy, resilience, and operational risk regulations across assigned jurisdictions. Ensure cybersecurity programs meet local regulatory expectations and support enterprise compliance objectives. Business Information Security Function as the primary cybersecurity advisor to regional business executives, country heads, legal entity boards, and management committees. Partner with business leaders to embed security into strategic initiatives, acquisitions, client solutions, and technology modernization programs. Support client cybersecurity due diligence activities and strategic customer engagements. Promote cybersecurity awareness and accountability throughout the regional businesses. Incident Management and Resilience Provide leadership during significant cybersecurity incidents affecting international operations. Coordinate with cyber defense center, cyber threat intelligence, technical and business teams during regional cyber events. Ensure regional readiness for cyber incidents and operational disruptions through resilience testing exercises. Maintain oversight of regulatory reporting and regional stakeholder communications during cybersecurity events. International Team Leadership Lead and develop regional cybersecurity staff in support of technical and business aligned teams. Establish succession planning, workforce development, and talent strategies. Build a high-performing, globally connected cybersecurity team capable of supporting regional growth and regulatory demands. Foster collaboration between international teams and enterprise security functions. Required Qualifications Education Bachelor's degree in information security, Computer Science, Technology, Risk Management, Business, or related field. Experience 15+ years of progressive cybersecurity, technology risk, or information security experience. Considerable experience leading cybersecurity programs across multiple countries and regulatory jurisdictions. Proven experience engaging directly with regulators and executive leadership. Experience within global financial services or other highly regulated industries. Demonstrated success leading large-scale cybersecurity transformation programs. Technical and Regulatory Expertise Cybersecurity frameworks and controls. Operational resilience and business continuity. Cloud security and emerging technologies. AI security and governance. Data protection and privacy requirements. Identity and access management. Cyber threat intelligence and incident response. Third-party and supply chain risk management. Success Measures Regulatory outcomes Reduction of material cybersecurity risk across the regional teams. Cyber resilience maturity improvements. Timely remediation of owned audit and regulatory findings. Business satisfaction and executive stakeholder engagement. Cybersecurity program maturity across regions. Talent development and organizational effectiveness. Successful execution of strategic cybersecurity initiatives. About State Street Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success. We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you'll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future. As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law. Discover more information on jobs at Read our CEO Statement
Aug 21, 2026
Full time
Managing Director, International Chief Information Security Officer Position Summary The International Chief Information Security Officer (International CISO) reporting to the SVP, Global Head of Business Information Security, serves as the senior cybersecurity executive responsible for cybersecurity strategy, governance, regulatory engagement, and cyber risk oversight across multiple international jurisdictions. The role provides leadership and accountability for regional cybersecurity programs while ensuring alignment with enterprise security strategies, local regulatory requirements, business objectives, and operational resilience expectations. The International CISO acts as the primary cybersecurity advisor to regional executives, regulators, legal entities, risk committees, and business leaders, while coordinating closely with global cybersecurity functions to drive consistent security outcomes and regulatory compliance across international markets. The International CISO balances global cybersecurity standards with regional business and regulatory requirements while driving execution across complex multinational environments. The International CISO is expected to operate as a trusted advisor to executive leadership and the regional boards, while being able to translate complex cybersecurity issues into business-oriented risk decisions. Key Responsibilities International Cybersecurity Leadership Lead cybersecurity strategies and execution across assigned international regions, including oversight of country and regional cybersecurity programs. Establish and maintain a consistent cybersecurity operating model across jurisdictions while accounting for local regulatory and business requirements. Serve as the senior cybersecurity executive for international legal entities and country governance structures. Drive regional cybersecurity transformation initiatives supporting emerging technologies, cloud adoption, AI, resilience, and digital modernization efforts. Regulatory Engagement Serve as the accountable cybersecurity representative for regulatory examinations, audits, supervisory engagements, and regulatory reporting requirements. Maintain strong relationships with regional regulators, industry associations, and cybersecurity authorities. Monitor changes in cyber, technology risk, privacy, resilience, and operational risk regulations across assigned jurisdictions. Ensure cybersecurity programs meet local regulatory expectations and support enterprise compliance objectives. Business Information Security Function as the primary cybersecurity advisor to regional business executives, country heads, legal entity boards, and management committees. Partner with business leaders to embed security into strategic initiatives, acquisitions, client solutions, and technology modernization programs. Support client cybersecurity due diligence activities and strategic customer engagements. Promote cybersecurity awareness and accountability throughout the regional businesses. Incident Management and Resilience Provide leadership during significant cybersecurity incidents affecting international operations. Coordinate with cyber defense center, cyber threat intelligence, technical and business teams during regional cyber events. Ensure regional readiness for cyber incidents and operational disruptions through resilience testing exercises. Maintain oversight of regulatory reporting and regional stakeholder communications during cybersecurity events. International Team Leadership Lead and develop regional cybersecurity staff in support of technical and business aligned teams. Establish succession planning, workforce development, and talent strategies. Build a high-performing, globally connected cybersecurity team capable of supporting regional growth and regulatory demands. Foster collaboration between international teams and enterprise security functions. Required Qualifications Education Bachelor's degree in information security, Computer Science, Technology, Risk Management, Business, or related field. Experience 15+ years of progressive cybersecurity, technology risk, or information security experience. Considerable experience leading cybersecurity programs across multiple countries and regulatory jurisdictions. Proven experience engaging directly with regulators and executive leadership. Experience within global financial services or other highly regulated industries. Demonstrated success leading large-scale cybersecurity transformation programs. Technical and Regulatory Expertise Cybersecurity frameworks and controls. Operational resilience and business continuity. Cloud security and emerging technologies. AI security and governance. Data protection and privacy requirements. Identity and access management. Cyber threat intelligence and incident response. Third-party and supply chain risk management. Success Measures Regulatory outcomes Reduction of material cybersecurity risk across the regional teams. Cyber resilience maturity improvements. Timely remediation of owned audit and regulatory findings. Business satisfaction and executive stakeholder engagement. Cybersecurity program maturity across regions. Talent development and organizational effectiveness. Successful execution of strategic cybersecurity initiatives. About State Street Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success. We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you'll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future. As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law. Discover more information on jobs at Read our CEO Statement
Fidelity International, based in Kingswood Surrey, is seeking a Global Cyber Operations Lead to steer the Global Cyber Defence Operations team, delivering 24x7 monitoring, incident response, and governance across regions. You will drive performance metrics, manage senior managers, and ensure high-quality cyber defence services globally. The role requires a proven track record in cyber operations leadership, incident management, and managing third-party security services, with the ability to
Aug 21, 2026
Full time
Fidelity International, based in Kingswood Surrey, is seeking a Global Cyber Operations Lead to steer the Global Cyber Defence Operations team, delivering 24x7 monitoring, incident response, and governance across regions. You will drive performance metrics, manage senior managers, and ensure high-quality cyber defence services globally. The role requires a proven track record in cyber operations leadership, incident management, and managing third-party security services, with the ability to
Staff Software Security Engineer Salary: Up to £135,000 + Benefits Location: London (Hybrid - 3 days per week in the office) We are currently looking for a Staff Software Security Engineer to join a fast-growing, innovative technology business operating at the forefront of AI and data-driven products. This is an exciting opportunity to join a highly collaborative, engineering-led environment where security is viewed as a key enabler of innovation. Reporting to the Head of Engineering, the Staff Software Security Engineer will play a pivotal role in shaping the organisation's security posture, working closely with software engineers, platform teams and technical leadership to embed security throughout the software development lifecycle. This is not a traditional SOC or operational security position. Instead, the Software Security Engineer will focus on securing applications, cloud infrastructure and development practices, helping the business build secure products at scale whilst influencing security strategy across the wider organisation. The Opportunity As the Staff Software Security Engineer, you'll work at the intersection of software engineering, cloud infrastructure and cyber security, helping to build and maintain a secure by design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers to promote secure coding practices Reviewing cloud infrastructure and architecture from a security perspective Supporting incident response and remediation activities when required Defining and promoting security standards, policies and best practices Influencing technical decision making across engineering and leadership teams This role offers the opportunity to make a genuine impact within a growing technology organisation where security is a strategic priority rather than an afterthought. What's in it for you? Salary up to £135,000 Hybrid working model Opportunity to work on cutting edge AI and technology products High level of autonomy and influence Collaborative engineering culture Career progression opportunities as the business continues to scale Ongoing learning and professional development Pension scheme Generous holiday allowance Skills and Experience Commercial experience as a Security Engineer, Application Security Engineer, Product Security Engineer or DevSecOps Engineer Strong understanding of application security principles and secure software development practices Experience working closely with software engineering teams Hands on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note that candidates must have full, unrestricted right to work in the UK. Unfortunately, sponsorship is not available for this position.
Aug 20, 2026
Full time
Staff Software Security Engineer Salary: Up to £135,000 + Benefits Location: London (Hybrid - 3 days per week in the office) We are currently looking for a Staff Software Security Engineer to join a fast-growing, innovative technology business operating at the forefront of AI and data-driven products. This is an exciting opportunity to join a highly collaborative, engineering-led environment where security is viewed as a key enabler of innovation. Reporting to the Head of Engineering, the Staff Software Security Engineer will play a pivotal role in shaping the organisation's security posture, working closely with software engineers, platform teams and technical leadership to embed security throughout the software development lifecycle. This is not a traditional SOC or operational security position. Instead, the Software Security Engineer will focus on securing applications, cloud infrastructure and development practices, helping the business build secure products at scale whilst influencing security strategy across the wider organisation. The Opportunity As the Staff Software Security Engineer, you'll work at the intersection of software engineering, cloud infrastructure and cyber security, helping to build and maintain a secure by design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers to promote secure coding practices Reviewing cloud infrastructure and architecture from a security perspective Supporting incident response and remediation activities when required Defining and promoting security standards, policies and best practices Influencing technical decision making across engineering and leadership teams This role offers the opportunity to make a genuine impact within a growing technology organisation where security is a strategic priority rather than an afterthought. What's in it for you? Salary up to £135,000 Hybrid working model Opportunity to work on cutting edge AI and technology products High level of autonomy and influence Collaborative engineering culture Career progression opportunities as the business continues to scale Ongoing learning and professional development Pension scheme Generous holiday allowance Skills and Experience Commercial experience as a Security Engineer, Application Security Engineer, Product Security Engineer or DevSecOps Engineer Strong understanding of application security principles and secure software development practices Experience working closely with software engineering teams Hands on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note that candidates must have full, unrestricted right to work in the UK. Unfortunately, sponsorship is not available for this position.
Information about the business and team One of the world's leading payments companies. The fintech serves over 430 million account holders and operates in more than 200 markets across 100+ currencies. We have a long-standing relationship with this organisation, and contractors play key roles across its global legal teams. This role sits within the UK/EMEA Legal function and will support the business on financial services regulatory, competition, and payments law matters. It is a highly collaborative role, working closely with compliance, government relations, product, communications, and international legal colleagues on multi-jurisdictional matters. What does the client need help with? Our client is seeking an experienced regulatory and competition lawyer to support the UK/EMEA Legal team on a broad range of financial services regulatory, payments, competition, enforcement, and policy matters. What will the role involve? This is an exciting opportunity for a senior LOD with the right regulatory and competition law expertise to hit the ground running and make a measurable impact over a 12-month engagement. Key responsibilities will include: Advising on obligations arising under UK and EU financial services and payments regulation, including FCA-regulated activities, PSD2/Strong Customer Authentication requirements, and consumer protection obligations. Leading and coordinating responses to regulatory investigations, enforcement proceedings, statutory notices, and regulatory information requests. Managing internal fact-finding exercises, document preservation activities, and defence strategy workstreams in partnership with compliance, government relations, and business stakeholders. Assessing competition law risks in commercial and strategic partnership arrangements, including exclusivity, scheme, and merchant agreements, and advising on risk mitigation strategies. Supporting responses to competition authority inquiries and information requests. Developing policy positions and supporting engagement with regulators, government bodies, and industry associations. Drafting and reviewing regulator-facing submissions, position papers, and briefing materials. Managing external law firms on complex regulatory, competition, and litigation matters, including oversight of scope, budget, and quality of advice. Providing legal analysis and guidance in relation to cybersecurity incidents, data breaches, and significant fraud events, including consideration of regulatory notification requirements. What skills do they need? 8+ PQE in financial services and/or competition law. England & Wales qualified (or equivalent). Financial services regulatory and/or competition law experience. Experience managing or supporting regulatory investigations, enforcement processes, and contentious regulatory engagements. Strong knowledge of UK and EU financial services and payments regulation. Experience instructing and managing external counsel on complex, multi-workstream matters. Work Pattern Full-time Location Remote or Hybrid Start Date Immediate Duration 12 months IR35 Status Employed
Aug 20, 2026
Full time
Information about the business and team One of the world's leading payments companies. The fintech serves over 430 million account holders and operates in more than 200 markets across 100+ currencies. We have a long-standing relationship with this organisation, and contractors play key roles across its global legal teams. This role sits within the UK/EMEA Legal function and will support the business on financial services regulatory, competition, and payments law matters. It is a highly collaborative role, working closely with compliance, government relations, product, communications, and international legal colleagues on multi-jurisdictional matters. What does the client need help with? Our client is seeking an experienced regulatory and competition lawyer to support the UK/EMEA Legal team on a broad range of financial services regulatory, payments, competition, enforcement, and policy matters. What will the role involve? This is an exciting opportunity for a senior LOD with the right regulatory and competition law expertise to hit the ground running and make a measurable impact over a 12-month engagement. Key responsibilities will include: Advising on obligations arising under UK and EU financial services and payments regulation, including FCA-regulated activities, PSD2/Strong Customer Authentication requirements, and consumer protection obligations. Leading and coordinating responses to regulatory investigations, enforcement proceedings, statutory notices, and regulatory information requests. Managing internal fact-finding exercises, document preservation activities, and defence strategy workstreams in partnership with compliance, government relations, and business stakeholders. Assessing competition law risks in commercial and strategic partnership arrangements, including exclusivity, scheme, and merchant agreements, and advising on risk mitigation strategies. Supporting responses to competition authority inquiries and information requests. Developing policy positions and supporting engagement with regulators, government bodies, and industry associations. Drafting and reviewing regulator-facing submissions, position papers, and briefing materials. Managing external law firms on complex regulatory, competition, and litigation matters, including oversight of scope, budget, and quality of advice. Providing legal analysis and guidance in relation to cybersecurity incidents, data breaches, and significant fraud events, including consideration of regulatory notification requirements. What skills do they need? 8+ PQE in financial services and/or competition law. England & Wales qualified (or equivalent). Financial services regulatory and/or competition law experience. Experience managing or supporting regulatory investigations, enforcement processes, and contentious regulatory engagements. Strong knowledge of UK and EU financial services and payments regulation. Experience instructing and managing external counsel on complex, multi-workstream matters. Work Pattern Full-time Location Remote or Hybrid Start Date Immediate Duration 12 months IR35 Status Employed