fortice

10 job(s) at fortice

fortice Warwick, Warwickshire
Sep 24, 2026
Contractor
GRC Controls & Oversight Lead Location:Warwick Hybrid 50/50 Duration: 21/03/2027 MUST BE PAYE THROUGH UMBRELLA Description: We are seeking an experienced GRC Controls & Oversight Lead to support the governance, assurance, and control environment across IT and Operational Technology (OT) domains. This role will play a key part in ensuring security and operational controls are effectively Embedded, monitored, and evidenced across the organisation. The successful candidate will be a hands-on practitioner with strong organisational and analytical skills, capable of navigating complex processes, coordinating stakeholders, and driving assurance activities to completion. Rather than acting as a technical security specialist, the role focuses on the practical application of governance, risk, and control management principles, ensuring that control frameworks are operating effectively and that identified gaps are tracked through to resolution. The role requires an individual who can work independently, manage competing priorities, and bring structure to large volumes of assurance, compliance, and remediation activities. Key Responsibilities Lead and coordinate controls assurance and testing activities across IT and OT environments. Review, assess, and validate control effectiveness against defined policies, standards, and regulatory requirements. Identify control deficiencies, gaps, and areas for improvement, ensuring timely remediation and follow-up. Manage assurance backlogs, driving prioritisation and resolution of outstanding actions and findings. Maintain oversight of risks, audit observations, control exceptions, and remediation plans. Work closely with security, operational, engineering, and business teams to gather evidence and validate compliance. Support internal and external audits by coordinating responses, evidence collection, and stakeholder engagement. Produce governance reporting, assurance metrics, and management updates for senior stakeholders. Ensure control activities remain aligned to organisational risk appetites, regulatory obligations, and industry good practice. Facilitate governance forums, risk reviews, and oversight meetings as required. Support continuous improvement initiatives to strengthen governance processes and control effectiveness. Skills & Experience Essential Experience working within Governance, Risk & Compliance (GRC), assurance, audit, controls, or oversight functions. Strong understanding of security and technology control environments across IT and/or OT domains. Experience conducting or supporting control testing, assurance reviews, compliance assessments, or audit activities. Ability to analyse complex processes and identify control weaknesses or improvement opportunities. Experience managing large volumes of actions, findings, risks, and remediation activities. Strong stakeholder management and communication skills. Ability to interpret policies, standards, procedures, and control requirements. Proven ability to work independently and drive activities through to completion. Strong organisational skills with excellent attention to detail. Desirable Experience working within critical national infrastructure, utilities, energy, manufacturing, or regulated environments. Understanding of OT security concepts and industrial control system environments. Familiarity with regulatory and control frameworks such as ISO 27001, NIST CSF, IEC 62443, NIS Regulations, or similar. Experience using GRC, audit, risk, or compliance management tools. Personal Attributes Proactive and delivery-focused. Comfortable dealing with ambiguity and navigating complex organisational processes. Highly organised with the ability to prioritise effectively. Collaborative and able to influence stakeholders at all levels. Pragmatic, solutions-oriented, and able to balance governance requirements with operational realities. Strong sense of ownership and accountability. Qualifications Degree or equivalent professional experience in Information Security, Risk Management, Business Management, Technology, or a related discipline. Industry certifications such as CRISC, CISA, ISO 27001 Lead Auditor, CISSP, or equivalent are advantageous but not essential.
fortice
Sep 23, 2026
Contractor
DBA (AWS, Aurora and RDS) Clearance required: BPSS + SC (It needs to be an active SC with a government agency used within the last 6 months or a HO SC) Nationality requirement: N/A Sector: Public End user: Client Job Description: Senior Database Administrator (DBA) - SIFA G7 Equivalent (Contingent Worker) Role Overview We are seeking a highly experienced Senior DBA with deep expertise in AWS Aurora, Amazon RDS and PostgreSQL to lead the design, operation, optimisation, resilience, and recovery of critical database platforms. The successful candidate will be a hands-on technical expert, actively involved in architecture decisions, database design, performance tuning, data reconciliation, and operational support. Key Responsibilities Lead the architecture, design, and implementation of enterprise database solutions on AWS. Design and maintain database schemas, data models, indexing strategies, and database standards. Drive database resilience, high availability, disaster recovery, and business continuity capabilities. Define, implement, and test backup, recovery, failover, and disaster recovery processes. Actively participate in architecture reviews, technical governance, and design authority decisions. Optimise database performance through query tuning, execution plan analysis, indexing, and configuration improvements. Provide hands-on troubleshooting and resolution of complex production issues. Perform data reconciliation, integrity validation, and root cause analysis of data discrepancies. Manage database upgrades, patching, security, monitoring, and capacity management. Work closely with architects, developers, cloud engineers, and operational teams to deliver scalable and resilient solutions. Produce and maintain technical documentation, standards, and operational procedures. Essential Skills & Experience Expert knowledge of: o AWS Aurora o Amazon RDS o PostgreSQL Strong database architecture and solution design experience. Proven experience designing highly available and resilient database platforms. Extensive SQL development, query optimisation, and performance tuning expertise. Strong knowledge of database schema design, indexing, and data modelling. Experience with database backup, recovery, replication, failover, and disaster recovery. Hands-on experience troubleshooting large-scale production database environments. Experience leading data reconciliation and data quality activities. Strong understanding of AWS services including IAM, CloudWatch, KMS, VPC, and Secrets Manager. Experience with Infrastructure as Code (Terraform/CloudFormation) and CI/CD practices. Strong stakeholder management, communication, and leadership skills. Desirable AWS Database Specialty or AWS Solutions Architect certification. Experience with MySQL, SQL Server, MongoDB, or Redis. Experience working in highly regulated or public sector environments.
fortice Manchester, Lancashire
Sep 23, 2026
Contractor
Application Packager Location: Manchester, 5 days onsite Duration: 23/04/2027 MUST BE PAYE THROUGH UMBRELLA Role Description: About the role you're considering An exciting opportunity to work as part of a growing End User Services UK department supporting multiple high-profile clients as part of the Capgemini portfolio. The role of Application Packager will be a forward-thinking position, which supports the client by providing software in a controlled and monitored method. Also allows you to drive a path for change, improvement, and efficiency as standard. This is an opportunity to drive your own improvements and change the landscape for end user experience If you are successfully offered this position, you will go through a series of pre-employment checks, including identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Your role The role requires a hands-on engineer who can implement, support and continuously improve workplace solutions while ensuring a secure, stable and seamless end user experience. Provide expert-level 3 rd line support and technical leadership across Microsodt Intune, Azure Virtual Desktop, Windows OS, Apple Business Manager, ios device management, policy deployment and PowerShell automation Build relationships with the client, 3 rd parties and vendors Identifying of Automation and efficiency opportunities Problem solving and solutioning Your skills and experience Strong hands-on 3 rd line experience skills in packaging for multiple platforms Expertise in a variety of packaging tools Strong knowledge of different packaging formats Experience on troubleshooting issues Experience working within enterprise and highly regulated enviroments The contractor will join our Workplace Technology team. The successful candidate will provide expert-level 3rd Line support and technical leadership across Microsoft's modern workplace technologies, including Microsoft Intune, Azure Virtual Desktop (AVD), Windows OS, Apple Business Manager, iOS device management, policy deployment, and PowerShell automation. This role requires a hands-on engineer who can implement, support, and continuously improve workplace solutions while ensuring a secure, stable, and seamless end-user experience. Experience in End User Computing, Workplace Engineering, or Desktop Infrastructure. Strong hands-on 3rd Line support experience. Extensive experience with: o Microsoft Intune o Microsoft Endpoint Manager o Azure Virtual Desktop (AVD) o Apple Business Manager (ABM) o iOS/iPadOS device management o Windows 10 and Windows 11 o Entra ID (Azure AD) o Microsoft 365 Administration o PowerShell Scripting and automation Experience deploying and managing: o Configuration Profiles o Compliance Policies o Security Policies o Application Packaging and Deployment o Conditional Access Policies Strong troubleshooting and root cause analysis skills. Experience working within enterprise and highly regulated environments.
fortice Preston, Lancashire
Sep 23, 2026
Contractor
Vulnerability Management Consultant (x2 seats) Location: Inverness or Preston, 5 days onsite Duration: 23/04/2027 MUST BE PAYE THROUGH UMBRELLA Role Description: The Vulnerability Management Consultant operates within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, supporting the governance and coordination of vulnerability management activities across suppliers. The role assists in ensuring vulnerabilities are identified, tracked, prioritised, and reported in accordance with client policies and agreed remediation timelines. Working with suppliers, service teams and security stakeholders, the consultant provides visibility of vulnerability status and supports the maintenance of accurate reporting and audit evidence. This is a governance and coordination role and does not perform vulnerability scanning, security testing, patch deployment, or technical remediation activities. If you are successfully offered this position, you will go through a series of pre-employment checks, including identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Key Responsibilities: Vulnerability Tracking & Coordination Support the monitoring of vulnerabilities from identification through to closure Ensure vulnerability records are maintained and updated by suppliers Assist in tracking remediation progress against agreed service levels Escalate overdue or high-risk vulnerabilities through agreed governance channels Supplier Engagement (SIAM Model) Coordinate with suppliers to obtain vulnerability status updates Support the collection and validation of supplier vulnerability reports Ensure reporting formats and data standards are applied consistently Identify gaps in vulnerability information, ownership, or reporting Vulnerability Reporting & Visibility Produce routine vulnerability management reports Support development of dashboards and metrics Assist in identifying: Aging vulnerabilities Recurring issues SLA breaches Emerging vulnerability trends Governance & Process Compliance Support adherence to agreed vulnerability management processes Ensure supplier activities align with client policies and standards Assist with documenting risk acceptance and exception processes Maintain evidence required for audits and assurance activities Assurance & Evidence Support Collect and organise vulnerability management evidence Support compliance and assurance reviews Maintain audit-ready documentation and reporting records Assist in demonstrating process effectiveness to stakeholders Your skills and experience Essential Experience in cyber security, information security, service management, or governance roles Understanding of vulnerability management principles Knowledge of basic vulnerability risk concepts including: CVSS, KEV etc Risk ratings Remediation tracking Strong analytical and reporting skills Experience working with multiple stakeholders Desirable Exposure to SIAM or multi-supplier environments Familiarity with vulnerability management tooling and reporting outputs Understanding of cyber security governance and assurance Experience in regulated or defence environments Key Deliverables Vulnerability reporting packs Vulnerability status and remediation tracking Supplier vulnerability performance metrics Audit-ready evidence and reporting records Governance inputs to security forums Role Definition The role supports the governance and visibility of vulnerability management activities across suppliers, ensuring risks are tracked, reported, and evidenced consistently without performing technical vulnerability remediation. What This Role Does/Does Not Do Does Track and coordinate vulnerabilities Support reporting and governance activities Validate supplier information Maintain visibility of remediation progress Does Not Perform vulnerability scanning Deploy patches or fixes Conduct penetration testing Own technical remediation activities
fortice
Sep 22, 2026
Contractor
Senior Scala Engineer Clearance Required:SC required Duration:6 months Location: Location: Stratford, London (hybrid remote working) IR35 Status: Capgemini Mandated PAYE only Job Description: Location: Stratford, London (hybrid remote working) Context: CIP Attribute Reputation Team (Att Rep) CIP is driven by the principal need to detect and prevent fraudulent access to taxpayer data and prevent organised repayment fraud. Attribute Reputation is the process through which large amounts of data are collated from tax transactions to glean insights into common attributes. In particular, we assert their validity and derive risk scores to transactions based on whether the attributes in question, or other attributes used in combination with that attribute, have been used in historic transactions associated with past suspicious or fraudulent activity. Collaboration with other data product and Front End product teams will form the core of creating a frictionless customer experience to exploit the digital audit data that CIP holds. Insights from Attribute Reputation are crucial for HMRC services, and the team is pioneering data sharing with other government departments and local authorities. Role description As a Senior Scala Engineer in the AttRep Team you will define and shape the way we deliver the Front End Attribute Reputation services (APIs) to Digital services to provide attribute insights for fraud detection and prevention across HMRC. This work involves: Help design a future vision for our Att Rep services, including consolidation, to allow us to provide a consistent and easy to use experience for users. Consideration for delivering high-volume, high-availability and low-latency services Improvement of our existing services Reducing our maintenance efforts through incremental re-architecting - eg reducing the number of technologies that are required to support the pipeline & using managed services where appropriate. Design and develop clean functioning, testable code on the Back End, write effective APIs, develop and manage well-functioning databases and applications with security and data protection settings Collaborate with the AttRep product owner, business analyst, data engineers and the wider CIP teams to ideate software solutions Desired behaviours ? Be proactive ? Responsible and motivated self-starter ? User centric attitude ? Prioritise people over processes ? Drive lean results; understand the value of iterative delivery ? Be evidence driven ? Advocate for doing the right thing' ? Help others understand your work through co-participatory design, pairing, demos and documentation ? Make complex look and sound simple ? Be kind, creative and convincing How we work: We favour: Breaking down a high-level problem as a team upfront and delivering the core value first Delivering individual business benefits to production, rather than bundling tasks together Collaboration, communication, regular pairing and thoughtful course-correction Taking the time to write simple and easy to maintain code Willingness to make and participate in improvements for the greater good of CIP Working cross-discipline rather than adhering to tightly defined roles. Knowledge & experience Security clearance (SC-level) API design Data analysis Databases AWS suite experience Awareness of Site Reliability Engineering and support Skilled at returning services to good states in outage situations Understands the importance of testing and automation Working in a lean, agile environment Working in a you build it you run it team Experience coding in continuous integration context Skills & technologies Essential: Scala Play or other MVC/Rest API frameworks SQL AWS Suite Continuous Integration Agile methodologies Desirable: Containerisation principles/Docker Jenkins Kibana Grafana Airflow
fortice Telford, Shropshire
Sep 22, 2026
Contractor
Role description CIP user researchers plan, design and carry out research activities with over 2000 internal users that help us gain a deep understanding of the people that use CIP's data services. This research informs how the proposition, service, content and interaction design is shaped so that services work well for users and achieve the policy's intent. The services that we build are designed to last and to be reusable across multiple policies/user groups. Add a note on working with existing user research and take it forward. Desired behaviours Be proactive Prioritise people over processes Drive lean results (bring change gradually and continuously); understand the value Be evidence driven Advocate for doing the right thing Help others understand your work through co-participatory design, pairing, demos and documentation Make complex look and sound simple Proactive listening Be kind and convincing Knowledge & experience Experience working as a User Researcher in a fast paced commercial environment. Essential Planning research sessions and defining research roadmaps Research Operations: facilitating recruitment and incentives and advising on software and tooling when required Analysing data and communicating actionable insights to the team and stakeholders Demonstrating the value of user research: engaging sceptical clients and team members and helping immature teams to embed user research practices into their agile workflow Collaborating with multidisciplinary teams and stakeholders to set objectives and hypotheses for research Comfortable working with remote teams. Desirable Prior experience working in projects related to data-driven decision making. Skills Analysis and synthesis . You understand how to apply basic techniques for the analysis of research data and synthesis of findings. You know how to involve your team in analysis and synthesis. You can present clear findings that colleagues can understand and use. (Relevant skill level: working) Inclusive research . You understand the diversity of internal users of government services and the need to make services usable and accessible for everyone. You can work with colleagues to include many kinds of users in appropriate research activities. (Relevant skill level: working) Research skills . You understand and have experience of basic user research methods including qualitative and quantitative methods. You know when to use those methods and how to apply them correctly. You know how to involve your team in research activities. (Relevant skill level: working) Usability testing. You can define test scripts and facilitate usability tests, gather data and analyse it to create recommendations to improve user experience. Society and technology . You understand the social and technological context for government services. You can align user research activities to help your team understand changing user behaviour. (Relevant skill level: working) Strategic insight . You understand what problem the team is trying to solve. You can align user research activities to inform decision making and action. (Relevant skill level: working) Technical understanding . You have some knowledge of the technologies used to build and operate digital services. You understand the different technical roles in a digital team. (Relevant skill level: working) Agile practices . You know how to work with colleagues to plan and do continuous user research in a multidisciplinary team working on agile delivery teams. (Relevant skill level: working) User-centred: You understand and have experience of a range of user-centred practices. You are able to bring the insight from those practices to delivery teams and work with them to continuously improve the user's experience of our products and services. You understand the difference between user-centric and user-led. (Relevant skill level: working)
fortice
Oct 08, 2025
Contractor
SC Cleared AI Developers - Contract (Outside IR35) Location: Largely Remote (occasional travel to UK Defence sites - expenses covered) Rate: £500 - £600 per day Start Date: TBC Openings: 1-2 positions We are seeking experienced AI Developers with active SC Clearance to join an exciting project within the UK Defence sector. This is a contract role outside IR35, offering the opportunity to work on impactful, cutting-edge AI solutions. About the Role You will be part of a collaborative team designing, developing and deploying advanced AI systems across both on-premise and cloud-based environments. The work will involve building applications, integrating APIs, and leveraging the latest in large language models (LLMs) to deliver powerful, production-ready solutions for defence and government stakeholders. Key Skills and Experience Active SC Clearance (essential) Proven experience working with the Ministry of Defence (MOD) or similar secure environments Strong development experience in Python and JavaScript Hands-on experience with AI systems, LLMs, and tools such as OpenAI, Claude, and LangChain Experience working across on-premise and cloud-based deployments Familiarity with notebooks, APIs, and building AI-driven applications Additional Information The role is largely remote with occasional travel to defence sites (expenses covered) Interview process: Single-stage interview HM Contract status: Outside IR35 If you are an SC-cleared AI Developer seeking an opportunity to work on innovative defence projects using the latest AI technologies, we would like to hear from you. Please get in touch to discuss this opportunity in more detail.
fortice Corsham, Wiltshire
Oct 06, 2025
Contractor
Security Analyst/Detection Engineer Location: Corsham, 60% on site Duration: 20/02/2026 MUST BE PAYE THROUGH UMBRELLA We are heading up a recruitment drive for a global consultancy that require an SC or DV cleared Security Analyst/Detection Engineer to join them on a major defence project that's based in Corsham. Role description: Good Security analyst skills, knowledge of working in a MOD SOC environment beneficial, knowledge of MOD environment and culture. Ability to operate standard SOC tools (SIEM), incident investigation, detection engineering Embedded with an existing Customer SOC, Capgemini supply a level of cyber expertise and corporate experience, assisting the customer in regular SOC activities, as well as proposing new processes and bringing 'best practice' to the workplace. Must be a sole British National. Hybrid working: The position is office based, with a local agreement with the customer that allows for a limited amount of Working from Home, based around your role, your needs, and those of the business. The current agreement requires 60% attendance in the office. If you are successfully offered this position, you will go through a series of pre-employment checks, including: identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Your role Conduct reactive monitoring of MOD networks to deliver a layered, agile cyber defence capability across all security domains. Manage and triage alerts; conduct impact assessments and develop mitigating strategies to be briefed up the chain of command. Improve and comply all extant cyber security policies, procedures and orders, review and amend when required. Maintain and share knowledge of current cyber issues, vulnerabilities and exploits through research, technical reports and briefs You can bring your whole self to work. At Capgemini, striving for equity, diversity and inclusion is part of everyday life, and will be part of your working reality. We have built an inclusive and welcoming environment, for everyone. Your skills and experience Experienced Tier 2 SOC analyst Knowledge of Data networks Knowledge & experience with SIEM tool sets and security management tools. Desirable Security Qualifications (CompTIA S+/N+/CySA+, AWS, MS, SANS, CISSP etc.) Ideally have some experience with UK MOD Your security clearance
fortice
Oct 06, 2025
Contractor
P2P Lead Clearance required: SC-eligible Nationality requirement: UK (dual national OK) Location: Hybrid (over the duration of the project 30% on client site in Frimley, Surrey, otherwise WFH) We are heading up a recruitment drive for a global consultancy that require a SAP P2P Lead to join them on a major government project that's based in Surrey. - Has had a consulting role across multiple full cycle projects in SAP S4/HANA or ECC working in MM/PtP of 8+ years - Experience in managing a team in client facing projects. - Responsible for the deliverables within client facing projects and delivering results. - Advocate of best practice design principles along with an advisory focus and demonstrate being able to provide solutions for business requirements. - Be proficient and have vast hands-on config experience in MM capabilities to lead your area and provide solutions for clients dealing with the likes of: - Purchase requisition creation and the integration with planning functionality. - Purchase Order processing. - Goods receipt processing. - Subcontracting. - Returns processing. - Experience in using SAP Fiori and flexible workflow is advantageous. - Have experience in multiple end-to-end design and implementation programmes within S4/HANA or ECC working across MM/PtP. - Strong understanding of Procure to Pay processes, inventory functions and Supplier Relationship Management. - Solid understanding of modules that integrate with MM (eg Planning, EWM). - Understand the key capabilities of MM and how they integrate with other SAP modules and applications. - Industry and business process knowledge in one or more of the following sectors is an advantage: Aerospace and Defence, Consumer Products, Pharma or Discrete Manufacturing - Can demonstrate knowledge of the strategic direction of SAP and related products. - Have experience in designing and defining the MM org structure within PtP to offer a FI
fortice
Oct 03, 2025
Contractor
SuccessFactors Product Owner Max Supplier Charge Rate: £575 Clearance required: BPSS Interview process: Tech Interview Location: Remote from any UK Location Sector: TMTS End User: Client IR35 Status: PAYE via Umbrella company only We are heading up a recruitment drive for a global consultancy that require a SuccessFactors Product Owner to join them on a major project that's based remotely. Managing the SF application for the client to handle the implementation as part of the transformation while also working with the RUN team on already deployed modules. In this context, your main assignments and key responsibilities are: Stakeholder Collaboration: Partner with HR, IT, and vendors to optimize the SuccessFactors platform and support business objectives, liaise with SAP SuccessFactors and third-party providers to manage service delivery and issue resolution; Ensuring the product aligns with business goals and customer needs. Analyse all demands and initiatives from regions and countries related to HR systems, related to Harmonie program or not. Accurately and efficiently manage the prioritization of various projects and constantly monitor the subsequent turn of events; Communicating the product vision to others, and overseeing all stages of the product development process. Co-define and prioritize product features and requirements with Business stakeholders; Creating and maintaining the product backlog; Take responsibility for all stages of the product realization process and monitor consumer reaction. Act as the primary point of contact for the development team and stakeholders regarding product-related issues. Release Management: Plan and implement SuccessFactors quarterly releases and updates, conduct system testing to validate new features and enhancements, communicate changes and provide training for impacted users while minimizing disruptions. Profile: Fluent in English. Excellent communication (written and oral) and interpersonal skills 5+ years of experience managing SAP SuccessFactors and HRIS Strong understanding of HR processes and HR technology landscape. Knowledge of data privacy and security standards related to HR systems. Strong analytical and problem-solving skills. Excellent communication and stakeholder management abilities. SAP SuccessFactors certification is a plus.