• Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
  • Sign in
  • Sign up
  • Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

19 jobs found

Email me jobs like this
Refine Search
Current Search
cloud security vulnerability analyst
TRIA
Cyber Security Analyst
TRIA
Cyber Security Analyst Wembley - Hybrid with 2 days per week on site 43,000 - 60,000 DOE + Holiday + Pension Excellent opportunity for an experienced Cyber Security Analyst or Security Engineer to join a large, enterprise environment where you'll play a key role in protecting critical infrastructure while continuing to develop your technical expertise across Microsoft Security, cloud technologies and next-generation security platforms. This organisation is investing heavily in its cyber security capability, offering the opportunity to work with modern security technologies within a collaborative, values-led environment. With genuine commitment to professional development, you'll have the opportunity to benefit from funded industry certifications, including Palo Alto, alongside clear technical progression and exposure to a broad enterprise technology estate. In this role you'll investigate and respond to cyber security incidents, working closely with an external Security Operations Centre (SOC) to monitor threats, manage vulnerability remediation and strengthen the organisation's security posture. You'll work across Microsoft Security, cloud and network technologies within a complex enterprise environment, making this an excellent opportunity for an experienced Cyber Security Analyst or Security Engineer looking to broaden their technical expertise and continue progressing their career through exposure to modern technologies and funded certifications. This is a fantastic opportunity to join an organisation that genuinely invests in both its technology and its people, offering exposure to modern Microsoft security technologies, funded certifications and long-term technical progression within a supportive team. The Role: Investigate, triage and respond to cyber security incidents across a complex Microsoft environment Monitor and manage security events using Microsoft Sentinel and Microsoft Defender XDR Drive vulnerability management and remediation across cloud, network and infrastructure environments Work closely with an external SOC and internal infrastructure teams to continuously improve the organisation's security posture Contribute to the ongoing development of security processes, controls and incident response capabilities The Person: Experience in a Cyber Security Analyst, Security Engineer or Security Operations role Strong hands-on experience with Microsoft Security technologies, including Microsoft Sentinel and Defender XDR Experience investigating and responding to cyber security incidents in an enterprise environment Good understanding of cloud and network security principles Able to work collaboratively across infrastructure, networking and cloud teams whilst taking ownership of security issues Keen to continue developing technically through exposure to enterprise technologies and funded certifications, including Palo Alto
Aug 13, 2026
Full time
Cyber Security Analyst Wembley - Hybrid with 2 days per week on site 43,000 - 60,000 DOE + Holiday + Pension Excellent opportunity for an experienced Cyber Security Analyst or Security Engineer to join a large, enterprise environment where you'll play a key role in protecting critical infrastructure while continuing to develop your technical expertise across Microsoft Security, cloud technologies and next-generation security platforms. This organisation is investing heavily in its cyber security capability, offering the opportunity to work with modern security technologies within a collaborative, values-led environment. With genuine commitment to professional development, you'll have the opportunity to benefit from funded industry certifications, including Palo Alto, alongside clear technical progression and exposure to a broad enterprise technology estate. In this role you'll investigate and respond to cyber security incidents, working closely with an external Security Operations Centre (SOC) to monitor threats, manage vulnerability remediation and strengthen the organisation's security posture. You'll work across Microsoft Security, cloud and network technologies within a complex enterprise environment, making this an excellent opportunity for an experienced Cyber Security Analyst or Security Engineer looking to broaden their technical expertise and continue progressing their career through exposure to modern technologies and funded certifications. This is a fantastic opportunity to join an organisation that genuinely invests in both its technology and its people, offering exposure to modern Microsoft security technologies, funded certifications and long-term technical progression within a supportive team. The Role: Investigate, triage and respond to cyber security incidents across a complex Microsoft environment Monitor and manage security events using Microsoft Sentinel and Microsoft Defender XDR Drive vulnerability management and remediation across cloud, network and infrastructure environments Work closely with an external SOC and internal infrastructure teams to continuously improve the organisation's security posture Contribute to the ongoing development of security processes, controls and incident response capabilities The Person: Experience in a Cyber Security Analyst, Security Engineer or Security Operations role Strong hands-on experience with Microsoft Security technologies, including Microsoft Sentinel and Defender XDR Experience investigating and responding to cyber security incidents in an enterprise environment Good understanding of cloud and network security principles Able to work collaboratively across infrastructure, networking and cloud teams whilst taking ownership of security issues Keen to continue developing technically through exposure to enterprise technologies and funded certifications, including Palo Alto
Avencia Consulting
Senior IT Cyber GR&C Analyst
Avencia Consulting
Our client is a leading global specialty (re)insurance business, recognised for its innovative approach to underwriting and strong reputation across international markets. With operations spanning multiple locations, the business focuses on delivering bespoke insurance and reinsurance solutions across a diverse portfolio of specialty risks. Combining underwriting expertise, entrepreneurial thinking, and a collaborative culture, they continue to drive growth while investing in technology, talent, and operational excellence PURPOSE OF THIS ROLE The Senior IT Cyber Governance, Risk & Compliance Analyst will support the development, implementation and oversight of the organisation's IT governance, cyber risk and compliance activities. This role involves supporting IT and cyber risk assessments, compliance with relevant regulatory and control frameworks, audit activity, and the identification and tracking of vulnerabilities, control gaps and remediation actions across IT systems and processes. The Senior IT Cyber Governance, Risk & Compliance Analyst will work closely with internal stakeholders to help ensure that IT and cyber activities are aligned with regulatory expectations, internal policies and good practice. KEY RESPONSIBILITIES Compliance and Risk Management: Support compliance with applicable regulatory, IT, cyber and control frameworks, which may include DORA, ISO 27001, NIST CSF, SOX and Cyber Essentials. Support the evaluation and management of IT, cyber, compliance and security risks across systems, processes and operations. Monitor emerging technology, cyber and operational resilience risks to support proactive risk management and timely escalation. Assist in preparing for and supporting regulatory inspections and internal, external and third-party audits. Support the tracking of cyber risk remediation actions, including actions arising from risk assessments, assurance reviews, incidents, audits, control reviews and control improvement initiatives. Support the maintenance of the cyber risk register, including the capture of risks, issues and remediation actions, and the preparation of updates for governance forums. Support third-party and supplier security assurance activities, including security due diligence, assessment of supplier responses and tracking of supplier remediation actions. Coordinate and evidence user access reviews and privileged access reviews with system owners and the business, supporting the move to tool-based access certification. Perform first-line compliance monitoring and control checks against information security policies and standards, including the tracking of policy exceptions. Policy & Procedure Development: Support the development, implementation and updating of IT risk, cyber security and compliance policies, standards and procedures to ensure alignment with legal, regulatory, control and sound practice requirements. Maintain an up-to-date understanding of applicable regulatory requirements and help implement changes to comply with new or evolving regulations. Assist in developing and delivering internal training and awareness on IT governance, cyber risk and compliance topics. Reporting & Communication: Support the preparation of cyber risk, control and remediation reporting for management and governance forums. Support the development and tracking of key performance indicators (KPIs) related to IT risk and compliance. Support internal breach notification and escalation processes where required, in coordination with Legal, Data Protection and relevant stakeholders, including supporting regulatory reporting where appropriate. SKILLS, QUALIFICATIONS AND EXPERIENCE Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent experience. Relevant certifications such as CRISC, CISA, CISM, ISO 27001 or CISSP, or a willingness to undertake similar, are desirable. Minimum of 5 years' experience in IT governance, risk management, cyber or information security, or a related role, with a strong knowledge of related control and compliance requirements. Working knowledge of key technology areas, including infrastructure, applications, networking, cloud services, vulnerability management, incident management and access controls. Experience supporting audit, regulatory or compliance activities, including evidence coordination, issue tracking and remediation follow-up. Experience with SOX compliance and ITGCs is desirable. Experience in insurance or wider financial services, or another regulated environment, is desirable. Excellent communication skills, with the ability to convey technical information to non-technical stakeholders.
Aug 11, 2026
Contractor
Our client is a leading global specialty (re)insurance business, recognised for its innovative approach to underwriting and strong reputation across international markets. With operations spanning multiple locations, the business focuses on delivering bespoke insurance and reinsurance solutions across a diverse portfolio of specialty risks. Combining underwriting expertise, entrepreneurial thinking, and a collaborative culture, they continue to drive growth while investing in technology, talent, and operational excellence PURPOSE OF THIS ROLE The Senior IT Cyber Governance, Risk & Compliance Analyst will support the development, implementation and oversight of the organisation's IT governance, cyber risk and compliance activities. This role involves supporting IT and cyber risk assessments, compliance with relevant regulatory and control frameworks, audit activity, and the identification and tracking of vulnerabilities, control gaps and remediation actions across IT systems and processes. The Senior IT Cyber Governance, Risk & Compliance Analyst will work closely with internal stakeholders to help ensure that IT and cyber activities are aligned with regulatory expectations, internal policies and good practice. KEY RESPONSIBILITIES Compliance and Risk Management: Support compliance with applicable regulatory, IT, cyber and control frameworks, which may include DORA, ISO 27001, NIST CSF, SOX and Cyber Essentials. Support the evaluation and management of IT, cyber, compliance and security risks across systems, processes and operations. Monitor emerging technology, cyber and operational resilience risks to support proactive risk management and timely escalation. Assist in preparing for and supporting regulatory inspections and internal, external and third-party audits. Support the tracking of cyber risk remediation actions, including actions arising from risk assessments, assurance reviews, incidents, audits, control reviews and control improvement initiatives. Support the maintenance of the cyber risk register, including the capture of risks, issues and remediation actions, and the preparation of updates for governance forums. Support third-party and supplier security assurance activities, including security due diligence, assessment of supplier responses and tracking of supplier remediation actions. Coordinate and evidence user access reviews and privileged access reviews with system owners and the business, supporting the move to tool-based access certification. Perform first-line compliance monitoring and control checks against information security policies and standards, including the tracking of policy exceptions. Policy & Procedure Development: Support the development, implementation and updating of IT risk, cyber security and compliance policies, standards and procedures to ensure alignment with legal, regulatory, control and sound practice requirements. Maintain an up-to-date understanding of applicable regulatory requirements and help implement changes to comply with new or evolving regulations. Assist in developing and delivering internal training and awareness on IT governance, cyber risk and compliance topics. Reporting & Communication: Support the preparation of cyber risk, control and remediation reporting for management and governance forums. Support the development and tracking of key performance indicators (KPIs) related to IT risk and compliance. Support internal breach notification and escalation processes where required, in coordination with Legal, Data Protection and relevant stakeholders, including supporting regulatory reporting where appropriate. SKILLS, QUALIFICATIONS AND EXPERIENCE Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent experience. Relevant certifications such as CRISC, CISA, CISM, ISO 27001 or CISSP, or a willingness to undertake similar, are desirable. Minimum of 5 years' experience in IT governance, risk management, cyber or information security, or a related role, with a strong knowledge of related control and compliance requirements. Working knowledge of key technology areas, including infrastructure, applications, networking, cloud services, vulnerability management, incident management and access controls. Experience supporting audit, regulatory or compliance activities, including evidence coordination, issue tracking and remediation follow-up. Experience with SOX compliance and ITGCs is desirable. Experience in insurance or wider financial services, or another regulated environment, is desirable. Excellent communication skills, with the ability to convey technical information to non-technical stakeholders.
Castle Employment
Cyber Security Engineer
Castle Employment Cranswick, North Humberside
IT Security Analyst Location: East Yorkshire area Salary: Competitive, depending on experience Working pattern: Full-time, on-site with collaborative team environment Protect systems. Strengthen resilience. Shape cyber security strategy. An established organisation is investing in its cyber capability and is looking for an IT Security Analyst to play a key role in protecting its systems, data and operations. This is an opportunity to join a collaborative IT environment where security is a business priority, not an afterthought. You will work closely with infrastructure and technical teams to strengthen cyber resilience, respond to threats and continuously improve security practices across the organisation. If you enjoy hands-on security work, problem solving and influencing best practice, this role offers real scope to make an impact. What you will be doing Monitor, develop and optimise SIEM and threat detection systems Investigate security incidents, coordinating response, containment and escalation Conduct vulnerability scanning and support remediation across the IT estate Work closely with infrastructure and technical teams to implement secure configurations Support and maintain security policies, procedures and controls Ensure alignment with recognised frameworks including ISO 27001 and NIST Deliver user awareness initiatives such as phishing simulations and training Stay up to date with emerging threats and recommend improvements to strengthen security posture Support disaster recovery, backup and data protection strategies aligned to business needs What we are looking for Proven experience in a cyber security or infrastructure security role Strong understanding of security principles, threat detection and risk-based thinking Experience with SIEM platforms, vulnerability management tools and detection response technologies such as EDR, XDR or MDR Knowledge of cyber security frameworks such as ISO 27001 or NIST Understanding of data protection legislation including GDPR Ability to investigate incidents, analyse findings and communicate clearly with stakeholders Strong analytical and problem-solving skills Ability to manage priorities and work effectively in a fast-paced environment Full UK driving licence Desirable experience Exposure to cloud platforms such as Azure Security certifications such as CompTIA Security+, CISSP or Microsoft accreditations Experience with ERP systems Scripting or automation knowledge Why apply? Opportunity to influence and improve cyber security across a growing organisation Collaborative environment working alongside infrastructure and technical specialists Exposure to modern security tools, frameworks and evolving technologies A role where your recommendations and expertise will directly shape security strategy Apply now If you are looking for a role where you can take ownership of security improvements and work in a business that values cyber resilience, we would like to hear from you.
Aug 11, 2026
Full time
IT Security Analyst Location: East Yorkshire area Salary: Competitive, depending on experience Working pattern: Full-time, on-site with collaborative team environment Protect systems. Strengthen resilience. Shape cyber security strategy. An established organisation is investing in its cyber capability and is looking for an IT Security Analyst to play a key role in protecting its systems, data and operations. This is an opportunity to join a collaborative IT environment where security is a business priority, not an afterthought. You will work closely with infrastructure and technical teams to strengthen cyber resilience, respond to threats and continuously improve security practices across the organisation. If you enjoy hands-on security work, problem solving and influencing best practice, this role offers real scope to make an impact. What you will be doing Monitor, develop and optimise SIEM and threat detection systems Investigate security incidents, coordinating response, containment and escalation Conduct vulnerability scanning and support remediation across the IT estate Work closely with infrastructure and technical teams to implement secure configurations Support and maintain security policies, procedures and controls Ensure alignment with recognised frameworks including ISO 27001 and NIST Deliver user awareness initiatives such as phishing simulations and training Stay up to date with emerging threats and recommend improvements to strengthen security posture Support disaster recovery, backup and data protection strategies aligned to business needs What we are looking for Proven experience in a cyber security or infrastructure security role Strong understanding of security principles, threat detection and risk-based thinking Experience with SIEM platforms, vulnerability management tools and detection response technologies such as EDR, XDR or MDR Knowledge of cyber security frameworks such as ISO 27001 or NIST Understanding of data protection legislation including GDPR Ability to investigate incidents, analyse findings and communicate clearly with stakeholders Strong analytical and problem-solving skills Ability to manage priorities and work effectively in a fast-paced environment Full UK driving licence Desirable experience Exposure to cloud platforms such as Azure Security certifications such as CompTIA Security+, CISSP or Microsoft accreditations Experience with ERP systems Scripting or automation knowledge Why apply? Opportunity to influence and improve cyber security across a growing organisation Collaborative environment working alongside infrastructure and technical specialists Exposure to modern security tools, frameworks and evolving technologies A role where your recommendations and expertise will directly shape security strategy Apply now If you are looking for a role where you can take ownership of security improvements and work in a business that values cyber resilience, we would like to hear from you.
Surrey County Council
Senior Security Analyst
Surrey County Council Reigate, Surrey
This role has a starting salary of 55,486 per annum, for working 36 hours per week. We are excited to be recruiting a Senior Security Analyst to join our fantastic team based at Woodhatch Place in Reigate. We offer a hybrid working model with a minimum of two office days per week. Our Offer to You 26 days' holiday, rising to 28 days after 2 years' service and 31 days after 5 years' service (prorated for part time staff) Option to buy up to 10 days of additional annual leave A generous local government salary related pension Up to 5 days of carer's leave and 2 paid volunteering days per year Paternity, adoption and dependents leave An Employee Assistance Programme (EAP) to support health and wellbeing Learning and development hub where you can access a wealth of resources Wellbeing and lifestyle discounts including gym, travel, and shopping A chance to make a real difference to the lives of our residents. About The Role As a Senior Security Analyst, you will play a central role in strengthening Surrey County Council's cyber resilience. Your day-to-day work will include proactive security monitoring across our hybrid cloud and on premises environment, triaging and investigating alerts, and supporting coordinated incident response activities. You will operate our vulnerability management processes, translate threat intelligence into actionable defences, and contribute to the improvement of detection content and security controls. You will also work closely with IT colleagues and suppliers to address risks, gather evidence for audits, and prepare clear reporting on security posture and emerging trends. This role does not include direct line management responsibilities, but you will regularly provide specialist guidance, coaching, and support to colleagues across IT&D and partner teams. Over the next 12 to 18 months, you will contribute to several high impact initiatives including: Establishing a more mature, risk based vulnerability management lifecycle and reducing exposure windows across critical systems Enhancing incident response readiness through improved playbooks, scenario testing, and lessons learned processes Uplifting monitoring coverage and the effectiveness of SIEM/EDR/NDR tooling, including tuning and detection improvements Strengthening supplier assurance processes, especially for cloud and SaaS services Supporting the development of updated cyber security policies, standards and operating procedures This is a pivotal role for a motivated cyber professional who wants to make a measurable difference. You will directly influence Surrey County Council's operational security posture and help reduce risk across services that support residents, communities, and frontline operations. Your insights and expertise will shape decision making, improve control maturity, and contribute to a safer, more resilient public service environment. Your Application In order to be considered for shortlisting, your application will clearly evidence the following skills and align with our behaviours: Strong experience in cyber security operations, including alert triage, investigation, and incident response Demonstrable capability in vulnerability management and translating technical risk into meaningful actions Ability to analyse complex information and present clear, concise reports and recommendations Proven ability to work collaboratively with technical and non technical stakeholders Commitment to continuous professional development and staying current with emerging threats High-level proficiency with security tooling (SIEM, EDR, cloud security tools) and modern IT environments Alignment with our values of accountability, teamwork, and inclusive service delivery To apply, we request that you submit a CV and you will be asked the following 4 questions: Give an example of how you have helped build a positive security culture across teams. Describe a time when you led or contributed to triage, investigation, or response during a cyber security incident. What actions did you take, and what was the outcome? Give an example of when you identified a significant technical vulnerability or risk. How did you communicate it to stakeholders, and what actions were taken as a result? Tell us about a situation where you analysed complex security information or data and produced a report or recommendation. How did you ensure your findings were clear, concise, and actionable? Before submitting your application, we recommend you read the job description and our Life at Surrey handbook to get an insight into working at Surrey. An enhanced DBS 'Disclosure and Barring Service' check for regulated activity (formerly known as CRB) and the Children's and Adults' Barred List checks will be required for this role. The job advert closes at 23:59 on 14/08/2026, with interviews planned to follow shortly thereafter. We look forward to receiving your application, please click on the apply online button below to submit. Contact Us Please contact us for any questions relating to the role. This could be to discuss flexible working requests, transferable skills or any barriers to employment. For an informal discussion please contact Kamil Erkadoo via email at . Local Government Reorganisation (LGR) Surrey County Council is undergoing Local Government Reorganisation, moving from a two-tier system to two new unitary councils in April 2027. If you are employed by Surrey on 1st April 2027, your role will transfer with current terms and conditions to one of the new organisations, supporting local devolution and greater powers for our communities. Join our dynamic team and shape the future of local government. Make a lasting impact with innovative solutions and improved services for our community. Help us build a brighter future for our residents! Please see more information here: Information for applicants on Local Government Reorganisation - Surrey County Council Our Commitment We are a disability confident employer which means if you have shared a disability on your application form and have evidenced you meet the minimum shortlisting criteria, as displayed on the advert, we guarantee you an interview. Your skills and experience truly matter to us. From application to your first day, we're committed to supporting you with any adjustments you need, we value inclusion and warmly welcome you to join and help build a workplace where everyone belongs.
Aug 08, 2026
Full time
This role has a starting salary of 55,486 per annum, for working 36 hours per week. We are excited to be recruiting a Senior Security Analyst to join our fantastic team based at Woodhatch Place in Reigate. We offer a hybrid working model with a minimum of two office days per week. Our Offer to You 26 days' holiday, rising to 28 days after 2 years' service and 31 days after 5 years' service (prorated for part time staff) Option to buy up to 10 days of additional annual leave A generous local government salary related pension Up to 5 days of carer's leave and 2 paid volunteering days per year Paternity, adoption and dependents leave An Employee Assistance Programme (EAP) to support health and wellbeing Learning and development hub where you can access a wealth of resources Wellbeing and lifestyle discounts including gym, travel, and shopping A chance to make a real difference to the lives of our residents. About The Role As a Senior Security Analyst, you will play a central role in strengthening Surrey County Council's cyber resilience. Your day-to-day work will include proactive security monitoring across our hybrid cloud and on premises environment, triaging and investigating alerts, and supporting coordinated incident response activities. You will operate our vulnerability management processes, translate threat intelligence into actionable defences, and contribute to the improvement of detection content and security controls. You will also work closely with IT colleagues and suppliers to address risks, gather evidence for audits, and prepare clear reporting on security posture and emerging trends. This role does not include direct line management responsibilities, but you will regularly provide specialist guidance, coaching, and support to colleagues across IT&D and partner teams. Over the next 12 to 18 months, you will contribute to several high impact initiatives including: Establishing a more mature, risk based vulnerability management lifecycle and reducing exposure windows across critical systems Enhancing incident response readiness through improved playbooks, scenario testing, and lessons learned processes Uplifting monitoring coverage and the effectiveness of SIEM/EDR/NDR tooling, including tuning and detection improvements Strengthening supplier assurance processes, especially for cloud and SaaS services Supporting the development of updated cyber security policies, standards and operating procedures This is a pivotal role for a motivated cyber professional who wants to make a measurable difference. You will directly influence Surrey County Council's operational security posture and help reduce risk across services that support residents, communities, and frontline operations. Your insights and expertise will shape decision making, improve control maturity, and contribute to a safer, more resilient public service environment. Your Application In order to be considered for shortlisting, your application will clearly evidence the following skills and align with our behaviours: Strong experience in cyber security operations, including alert triage, investigation, and incident response Demonstrable capability in vulnerability management and translating technical risk into meaningful actions Ability to analyse complex information and present clear, concise reports and recommendations Proven ability to work collaboratively with technical and non technical stakeholders Commitment to continuous professional development and staying current with emerging threats High-level proficiency with security tooling (SIEM, EDR, cloud security tools) and modern IT environments Alignment with our values of accountability, teamwork, and inclusive service delivery To apply, we request that you submit a CV and you will be asked the following 4 questions: Give an example of how you have helped build a positive security culture across teams. Describe a time when you led or contributed to triage, investigation, or response during a cyber security incident. What actions did you take, and what was the outcome? Give an example of when you identified a significant technical vulnerability or risk. How did you communicate it to stakeholders, and what actions were taken as a result? Tell us about a situation where you analysed complex security information or data and produced a report or recommendation. How did you ensure your findings were clear, concise, and actionable? Before submitting your application, we recommend you read the job description and our Life at Surrey handbook to get an insight into working at Surrey. An enhanced DBS 'Disclosure and Barring Service' check for regulated activity (formerly known as CRB) and the Children's and Adults' Barred List checks will be required for this role. The job advert closes at 23:59 on 14/08/2026, with interviews planned to follow shortly thereafter. We look forward to receiving your application, please click on the apply online button below to submit. Contact Us Please contact us for any questions relating to the role. This could be to discuss flexible working requests, transferable skills or any barriers to employment. For an informal discussion please contact Kamil Erkadoo via email at . Local Government Reorganisation (LGR) Surrey County Council is undergoing Local Government Reorganisation, moving from a two-tier system to two new unitary councils in April 2027. If you are employed by Surrey on 1st April 2027, your role will transfer with current terms and conditions to one of the new organisations, supporting local devolution and greater powers for our communities. Join our dynamic team and shape the future of local government. Make a lasting impact with innovative solutions and improved services for our community. Help us build a brighter future for our residents! Please see more information here: Information for applicants on Local Government Reorganisation - Surrey County Council Our Commitment We are a disability confident employer which means if you have shared a disability on your application form and have evidenced you meet the minimum shortlisting criteria, as displayed on the advert, we guarantee you an interview. Your skills and experience truly matter to us. From application to your first day, we're committed to supporting you with any adjustments you need, we value inclusion and warmly welcome you to join and help build a workplace where everyone belongs.
Hays Technology
Senior Security Analyst
Hays Technology
Senior Security Analyst Permanent - Up to 61k + strong benefits Location: Hybrid - Surrey Your new organisation I am recruiting for a Senior Security Analyst to join a well-established organisation undergoing continued investment in its cyber security capabilities and digital services. This role reports directly to the CISO and sits within a growing security function responsible for protecting a complex hybrid environment spanning on-premises infrastructure, cloud platforms and supplier-managed services. This is an excellent opportunity for an experienced cyber security professional who enjoys a blend of security operations, incident response, vulnerability management, security assurance and stakeholder engagement. You will play a key role in improving security controls, reducing organisational risk and enhancing cyber resilience across the business. The role responsibilities As a Senior Security Analyst, you will provide a proactive and consistent cyber security operations and assurance capability across the organisation. You will provide day-to-day security monitoring activities, support incident response processes, manage vulnerability remediation, and contribute to the ongoing development of security controls, policies and procedures. You will need Strong experience in cyber security operations, security monitoring and incident response. Good understanding of SIEM, EDR and network monitoring technologies. Experience investigating security incidents across cloud, endpoint and network environments. Knowledge of vulnerability management processes and remediation tracking. Understanding of modern cyber threats, attack techniques and security controls. Ability to analyse security data and present findings to both technical and non-technical audiences. Strong documentation, reporting and stakeholder management skills. Excellent written and verbal communication skills. Ability to collaborate effectively with internal teams, suppliers and senior stakeholders. 1 or more of SC-200, CySA+, Security+, GCIH or GMON, CISSP What you'll get in return Strong salary of between 55k and 61k. Flexible hybrid working arrangements. More remote than not, initially once a week on site, which will likely reduce in time. Strong pension and benefits package. Ongoing professional development and certification support. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Aug 08, 2026
Full time
Senior Security Analyst Permanent - Up to 61k + strong benefits Location: Hybrid - Surrey Your new organisation I am recruiting for a Senior Security Analyst to join a well-established organisation undergoing continued investment in its cyber security capabilities and digital services. This role reports directly to the CISO and sits within a growing security function responsible for protecting a complex hybrid environment spanning on-premises infrastructure, cloud platforms and supplier-managed services. This is an excellent opportunity for an experienced cyber security professional who enjoys a blend of security operations, incident response, vulnerability management, security assurance and stakeholder engagement. You will play a key role in improving security controls, reducing organisational risk and enhancing cyber resilience across the business. The role responsibilities As a Senior Security Analyst, you will provide a proactive and consistent cyber security operations and assurance capability across the organisation. You will provide day-to-day security monitoring activities, support incident response processes, manage vulnerability remediation, and contribute to the ongoing development of security controls, policies and procedures. You will need Strong experience in cyber security operations, security monitoring and incident response. Good understanding of SIEM, EDR and network monitoring technologies. Experience investigating security incidents across cloud, endpoint and network environments. Knowledge of vulnerability management processes and remediation tracking. Understanding of modern cyber threats, attack techniques and security controls. Ability to analyse security data and present findings to both technical and non-technical audiences. Strong documentation, reporting and stakeholder management skills. Excellent written and verbal communication skills. Ability to collaborate effectively with internal teams, suppliers and senior stakeholders. 1 or more of SC-200, CySA+, Security+, GCIH or GMON, CISSP What you'll get in return Strong salary of between 55k and 61k. Flexible hybrid working arrangements. More remote than not, initially once a week on site, which will likely reduce in time. Strong pension and benefits package. Ongoing professional development and certification support. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
SSA Digital Recruitment
Cyber Security Lead
SSA Digital Recruitment Bedford, Bedfordshire
Information Security Lead / Cyber Security Lead Hybrid 60,000 - 70,000 + Excellent Benefits Immediate Start Avvailable Infrastructure Security Network Security Cyber Security ISO 27001 Are you an experienced Infrastructure, Network or Cyber Security professional looking to take the next step in your career? We're looking for a technically strong Information Security Lead to join a growing technology business, taking ownership of information security, governance and compliance while remaining closely involved with infrastructure and cyber security. This is an ideal opportunity for someone who has progressed through Infrastructure Engineering, Network Security, Cyber Security Engineering or Technical Security and is ready to move into a broader Information Security leadership role. Working closely with Infrastructure, IT Operations, Engineering and senior stakeholders, you'll help shape the organisation's security posture, ensuring security is embedded across networks, cloud platforms, servers and business systems. You'll combine hands-on technical knowledge with information security governance, helping drive continual improvement across the Information Security Management System (ISMS), security controls and compliance activities. You'll lead security risk assessments, coordinate vulnerability management and remediation programmes, support penetration testing, oversee supplier security assurance, manage information security incidents and contribute to Business Continuity and Disaster Recovery planning. You'll also play a key role in maintaining ISO 27001 certification, supporting customer audits and promoting a strong security culture throughout the organisation. We're looking for someone with a solid technical background who understands how infrastructure is designed, secured and supported. Experience working with technologies such as network security, firewalls, Windows Server, Active Directory, Microsoft 365, Azure, endpoint security, identity and access management (IAM), vulnerability management, patch management and infrastructure hardening will be highly beneficial. Alongside your technical expertise, you'll have exposure to ISO 27001, information security frameworks, security audits, governance, risk management and compliance. Experience working with Cyber Essentials, supplier assurance, security policies and incident response would also be advantageous. Whether you're currently a Senior Information Security Analyst, Senior Cyber Security Analyst, Security Engineer, Infrastructure Security Engineer, Network Security Engineer, Technical Security Lead or Information Security Lead, we'd love to hear from you. This is an opportunity to step into a highly visible role where you'll influence security strategy, work with modern technologies and help shape the future direction of information security within the organisation, while continuing to build on your technical expertise. Key Skills: Information Security Lead, Senior Information Security Analyst, Senior Cyber Security Analyst, Security Engineer, Infrastructure Security Engineer, Network Security Engineer, Technical Security Lead, Infrastructure Security, Network Security, Cyber Security, Information Security, ISO 27001, ISMS, Azure Security, Microsoft 365 Security, Active Directory, Firewalls, Vulnerability Management, Patch Management, Endpoint Security, IAM, Security Assurance, Governance, Risk & Compliance, Security Audits, Business Continuity, Disaster Recovery, Incident Response, Cyber Essentials.
Aug 07, 2026
Full time
Information Security Lead / Cyber Security Lead Hybrid 60,000 - 70,000 + Excellent Benefits Immediate Start Avvailable Infrastructure Security Network Security Cyber Security ISO 27001 Are you an experienced Infrastructure, Network or Cyber Security professional looking to take the next step in your career? We're looking for a technically strong Information Security Lead to join a growing technology business, taking ownership of information security, governance and compliance while remaining closely involved with infrastructure and cyber security. This is an ideal opportunity for someone who has progressed through Infrastructure Engineering, Network Security, Cyber Security Engineering or Technical Security and is ready to move into a broader Information Security leadership role. Working closely with Infrastructure, IT Operations, Engineering and senior stakeholders, you'll help shape the organisation's security posture, ensuring security is embedded across networks, cloud platforms, servers and business systems. You'll combine hands-on technical knowledge with information security governance, helping drive continual improvement across the Information Security Management System (ISMS), security controls and compliance activities. You'll lead security risk assessments, coordinate vulnerability management and remediation programmes, support penetration testing, oversee supplier security assurance, manage information security incidents and contribute to Business Continuity and Disaster Recovery planning. You'll also play a key role in maintaining ISO 27001 certification, supporting customer audits and promoting a strong security culture throughout the organisation. We're looking for someone with a solid technical background who understands how infrastructure is designed, secured and supported. Experience working with technologies such as network security, firewalls, Windows Server, Active Directory, Microsoft 365, Azure, endpoint security, identity and access management (IAM), vulnerability management, patch management and infrastructure hardening will be highly beneficial. Alongside your technical expertise, you'll have exposure to ISO 27001, information security frameworks, security audits, governance, risk management and compliance. Experience working with Cyber Essentials, supplier assurance, security policies and incident response would also be advantageous. Whether you're currently a Senior Information Security Analyst, Senior Cyber Security Analyst, Security Engineer, Infrastructure Security Engineer, Network Security Engineer, Technical Security Lead or Information Security Lead, we'd love to hear from you. This is an opportunity to step into a highly visible role where you'll influence security strategy, work with modern technologies and help shape the future direction of information security within the organisation, while continuing to build on your technical expertise. Key Skills: Information Security Lead, Senior Information Security Analyst, Senior Cyber Security Analyst, Security Engineer, Infrastructure Security Engineer, Network Security Engineer, Technical Security Lead, Infrastructure Security, Network Security, Cyber Security, Information Security, ISO 27001, ISMS, Azure Security, Microsoft 365 Security, Active Directory, Firewalls, Vulnerability Management, Patch Management, Endpoint Security, IAM, Security Assurance, Governance, Risk & Compliance, Security Audits, Business Continuity, Disaster Recovery, Incident Response, Cyber Essentials.
Randstad Technologies Recruitment
SOC Manager
Randstad Technologies Recruitment City, London
Job Title: SOC Manager Location: Remote (with occasional business travel) Duration: 6 Months The Role We are seeking an experienced SOC Manager for a 6-month contract. This is a strategic leadership position-not a hands-on technical analyst role. You will take full ownership of the Cyber Security Operations Centre (CSOC), driving strategy, managing incident response, and directing internal teams and external vendors. Key Responsibilities Define and lead the CSOC strategy, operations, and governance. Take command of major incident response, managing remediation and stakeholder communication. Oversee threat intelligence, vulnerability management, and security monitoring capabilities. Manage relationships with external agencies, Managed Security Service Providers (MSSPs), and technology partners. What We Need From You Proven experience as a SOC Manager (previous leadership experience is essential; this is not an entry-level management role). Deep expertise in incident management processes and live crisis response. Strong background in managing third-party vendors (MSSPs). Strategic mindset to plan security investments, tooling, and resourcing. Desirable: CISSP/CISM, Cloud Security (AWS/Azure), ITIL. How to Apply: Please submit your most up-to-date CV to (url removed) to be considered for this critical leadership role. Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Aug 07, 2026
Contractor
Job Title: SOC Manager Location: Remote (with occasional business travel) Duration: 6 Months The Role We are seeking an experienced SOC Manager for a 6-month contract. This is a strategic leadership position-not a hands-on technical analyst role. You will take full ownership of the Cyber Security Operations Centre (CSOC), driving strategy, managing incident response, and directing internal teams and external vendors. Key Responsibilities Define and lead the CSOC strategy, operations, and governance. Take command of major incident response, managing remediation and stakeholder communication. Oversee threat intelligence, vulnerability management, and security monitoring capabilities. Manage relationships with external agencies, Managed Security Service Providers (MSSPs), and technology partners. What We Need From You Proven experience as a SOC Manager (previous leadership experience is essential; this is not an entry-level management role). Deep expertise in incident management processes and live crisis response. Strong background in managing third-party vendors (MSSPs). Strategic mindset to plan security investments, tooling, and resourcing. Desirable: CISSP/CISM, Cloud Security (AWS/Azure), ITIL. How to Apply: Please submit your most up-to-date CV to (url removed) to be considered for this critical leadership role. Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Gem Partnership
Cyber Security Analyst
Gem Partnership City, London
The Role: Salary: Market Leading Base + Bonus + Excellent Benefits Location: London (hybrid working) My client is a rapidly growing international main market listed organisation offering a range of solutions to the global Financial & Professional Services sector. As part of their exciting growth plans a new opportunity now exists for an experienced Cyber Security specialist to join their well established and growing technology team based in the London HQ. You will join the team as a Cyber Security Analyst, providing day-to-day operational security coverage across their extensive toolset. Working closely with their Senior Cyber Security Engineer, you will maintain and administer key security platforms, support client-facing security assurance activities, and help strengthen the company's security posture ahead of ISO 27001 certification. Responsibilities: Implement, manage and actively monitor security controls across email, web, endpoint and cloud environments. Monitor and respond to security incidents using advanced threat detection tools. Day-to-day administration of Netskope web filtering platform including website unblocks and policy updates. Day-to-day administration of Mimecast email filtering system including email review and release. Day-to-day administration of CyberArk identity and privileged access management tooling. Microsoft Purview administration including DLP policy monitoring, sensitivity labels, Discovery Searches and compliance alerts. Maintain and respond to security-related DDQs, keeping the security evidence library current. Assist with compliance activities and audits for ISO 27001, Cyber Essentials & Cyber Essentials Plus certification. Provide technical expertise on security best practices and risk mitigation. Collaborate with IT and business teams to ensure secure configuration and data protection. Participating in the out-of-hours support rota to provide cover for critical cyber incidents. The Person: Previous hands-on experience with Mimecast (or similar email security platform), Crowdstrike (or similar EDR platform) and Microsoft Purview - data governance, DLP and compliance tooling are essential for success in the role. Hands-on experience with Netskope - web filtering, CASB and cloud security and/or CyberArk - identity and privileged access management would be highly desirable skills. Experience with Rapid7, InsightVM or InsightIDR for vulnerability management and SIEM would also be highly desirable. Experience of responding to security DDQs and maintaining security evidence. Experience supporting ISO 27001, Cyber Essentials and Cyber Essentials Plus. Strong understanding of UK cyber security regulations and frameworks. Experience working in an FCA-regulated or similarly governed environment. Experience with Microsoft Entra ID and identity governance, alongside familiarity with Microsoft Azure and M365 E5 security features. This is a fantastic opportunity to join a prominent organisation at an exciting time with genuine opportunities for career development and progression. Alongside their compelling salary and bonus, they also offer a very generous pension contribution, private medical and the ability to 'buy and sell' holidays. The role is based from their London office, offering hybrid working with 3 days in the office, with travel to their other UK locations as and when required. If you feel you have the qualities our client is seeking, please forward your CV and covering letter indicating your current package to Lee Rankin at GEM Partnership or for a discreet conversation call our Peterlee office. GEM Partnership is acting as an employment agency on this vacancy.
Aug 07, 2026
Full time
The Role: Salary: Market Leading Base + Bonus + Excellent Benefits Location: London (hybrid working) My client is a rapidly growing international main market listed organisation offering a range of solutions to the global Financial & Professional Services sector. As part of their exciting growth plans a new opportunity now exists for an experienced Cyber Security specialist to join their well established and growing technology team based in the London HQ. You will join the team as a Cyber Security Analyst, providing day-to-day operational security coverage across their extensive toolset. Working closely with their Senior Cyber Security Engineer, you will maintain and administer key security platforms, support client-facing security assurance activities, and help strengthen the company's security posture ahead of ISO 27001 certification. Responsibilities: Implement, manage and actively monitor security controls across email, web, endpoint and cloud environments. Monitor and respond to security incidents using advanced threat detection tools. Day-to-day administration of Netskope web filtering platform including website unblocks and policy updates. Day-to-day administration of Mimecast email filtering system including email review and release. Day-to-day administration of CyberArk identity and privileged access management tooling. Microsoft Purview administration including DLP policy monitoring, sensitivity labels, Discovery Searches and compliance alerts. Maintain and respond to security-related DDQs, keeping the security evidence library current. Assist with compliance activities and audits for ISO 27001, Cyber Essentials & Cyber Essentials Plus certification. Provide technical expertise on security best practices and risk mitigation. Collaborate with IT and business teams to ensure secure configuration and data protection. Participating in the out-of-hours support rota to provide cover for critical cyber incidents. The Person: Previous hands-on experience with Mimecast (or similar email security platform), Crowdstrike (or similar EDR platform) and Microsoft Purview - data governance, DLP and compliance tooling are essential for success in the role. Hands-on experience with Netskope - web filtering, CASB and cloud security and/or CyberArk - identity and privileged access management would be highly desirable skills. Experience with Rapid7, InsightVM or InsightIDR for vulnerability management and SIEM would also be highly desirable. Experience of responding to security DDQs and maintaining security evidence. Experience supporting ISO 27001, Cyber Essentials and Cyber Essentials Plus. Strong understanding of UK cyber security regulations and frameworks. Experience working in an FCA-regulated or similarly governed environment. Experience with Microsoft Entra ID and identity governance, alongside familiarity with Microsoft Azure and M365 E5 security features. This is a fantastic opportunity to join a prominent organisation at an exciting time with genuine opportunities for career development and progression. Alongside their compelling salary and bonus, they also offer a very generous pension contribution, private medical and the ability to 'buy and sell' holidays. The role is based from their London office, offering hybrid working with 3 days in the office, with travel to their other UK locations as and when required. If you feel you have the qualities our client is seeking, please forward your CV and covering letter indicating your current package to Lee Rankin at GEM Partnership or for a discreet conversation call our Peterlee office. GEM Partnership is acting as an employment agency on this vacancy.
Opus People Solutions Ltd
ICT Security Analyst
Opus People Solutions Ltd Bletchley, Buckinghamshire
ICT Security Analyst Daily rate: 19.32 per hour PAYE inside IR35 Location: Milton Keynes Civic Offices Contract: 3 months Working hours: 37 per week, office based Purpose of the Role: Opus People Solutions are recruiting on behalf of Milton Keynes Council for an ICT Security Analyst to join our ICT service at Milton Keynes City Council. The ICT Security team protects the council's systems, data and digital services so the council can continue to operate securely and reliably for the people of Milton Keynes. The team sets and maintains security policies, standards and guidance, manages cyber risk, and works across council services to make sure security is built into day-to-day operations, projects and technology change. The team monitors for threats and weaknesses, investigates incidents, leads response and recovery when issues arise, and helps strengthen resilience through planning, training, awareness and continual improvement. It also supports compliance with recognised frameworks, works with partners and suppliers to improve secure delivery, and helps the council adopt modern technologies in a safe, controlled and responsible way. By protecting information and reducing disruption, the Security team helps Milton Keynes City Council remain resilient, trusted and able to deliver essential services across more than 200 council services. You'll help us protect vital systems, reduce cyber risk, respond to incidents and give practical advice that supports colleagues right across the organisation. Key deliverables will include: Proactively monitor and protect ICT services against cyber threats and vulnerabilities ensuring adherence to appropriate Cyber Security frameworks. Maintain awareness of emerging threats, threat intelligence, standards and frameworks to inform defence actions and improvements. Monitor, triage and investigate security alerts/reports. Analyse security event data, including end-user reports, to identify incidents and support effective response and remediation. Identify, assess and prioritise security risks (current and emerging), evaluating impact and likelihood. Investigate, monitor, and audit system practices to ensure services and configuration items meet cyber security policies and baseline standards. Identify and document vulnerabilities, analyse trends, and present findings with recommendations. Develop, implement and track mitigation plans in collaboration with stakeholders. Lead the response to ICT security incidents, ensuring containment, eradication and recovery activities are carried out in accordance with established incident response plans. To deliver and assist in the delivery of projects in accordance with user specifications and timetables. Work closely with council services on project work, providing expertise on security impact, including risk, cost and deterrent. Understand security features of bespoke systems within MKCC. Collaborate effectively with colleagues, suppliers, and partners to strengthen security controls, enhance security posture, and support organisational objectives. Acting as a subject matter expert for ICT security across the council, including the installation, maintenance, upgrading and optimisation of MKCC systems. Develop and deliver cyber security awareness and guidance to colleagues, promoting secure behaviours and reducing organisational risk. Collaborate with and act as cover for the Identity and Access administrator. Produce regular reporting on security incidents, risks, and trends, providing insights and recommendations to strengthen organisational security posture. Stay informed on Microsoft security product updates, emerging threats, and best practices. Drive initiatives to enhance security posture and ensure adherence to regulatory and organisational compliance standards. Essential skills required: Related professional qualifications and experience, including degree level qualification. Demonstratable experience of Microsoft Security Stack: Experience with Microsoft Defender suite, Sentinel, Entra ID, and Copilot for Security. Ability to monitor, analyse, and respond to alerts in Sentinel and Defender; familiarity with automation playbooks. Demonstrable excellent written and verbal communication skills, with the ability to translate security risks, technical findings and recommended actions for technical and non-technical audiences. Experience using PowerShell or Kusto Query Language (KQL) to support analysis, monitoring, and automation. Exposure to coding (e.g. Python) combined with a demonstrable ability to work with accuracy and attention to detail. Cyber Security certifications, such as: CCSP, CySA+, GCIA, CSA, SC-200, or similar. Demonstrable experience of working in an Enterprise information security function within a large organisation. Ability to work closely with ICT Security Lead, Identity & Access Administrator, and other stakeholders including colleagues across MKCC. Practical experience with asset management systems and experience securing Microsoft 365 services (e.g. SharePoint, Teams, Copilot). Evidenced knowledge and understanding of security frameworks, standards and best practices (CAF, Cyber Essentials, NIST, ISO27001). Proven familiarity with modern network, cloud and identity security concepts such as authentication, firewalls, endpoint protection, email security, vulnerability management, logging, monitoring and security controls. Continuous Learning and Adaptability: Commitment to staying updated on Microsoft security technologies, threat trends, and best practices. For more information or to process your application, please apply now!
Aug 07, 2026
Contractor
ICT Security Analyst Daily rate: 19.32 per hour PAYE inside IR35 Location: Milton Keynes Civic Offices Contract: 3 months Working hours: 37 per week, office based Purpose of the Role: Opus People Solutions are recruiting on behalf of Milton Keynes Council for an ICT Security Analyst to join our ICT service at Milton Keynes City Council. The ICT Security team protects the council's systems, data and digital services so the council can continue to operate securely and reliably for the people of Milton Keynes. The team sets and maintains security policies, standards and guidance, manages cyber risk, and works across council services to make sure security is built into day-to-day operations, projects and technology change. The team monitors for threats and weaknesses, investigates incidents, leads response and recovery when issues arise, and helps strengthen resilience through planning, training, awareness and continual improvement. It also supports compliance with recognised frameworks, works with partners and suppliers to improve secure delivery, and helps the council adopt modern technologies in a safe, controlled and responsible way. By protecting information and reducing disruption, the Security team helps Milton Keynes City Council remain resilient, trusted and able to deliver essential services across more than 200 council services. You'll help us protect vital systems, reduce cyber risk, respond to incidents and give practical advice that supports colleagues right across the organisation. Key deliverables will include: Proactively monitor and protect ICT services against cyber threats and vulnerabilities ensuring adherence to appropriate Cyber Security frameworks. Maintain awareness of emerging threats, threat intelligence, standards and frameworks to inform defence actions and improvements. Monitor, triage and investigate security alerts/reports. Analyse security event data, including end-user reports, to identify incidents and support effective response and remediation. Identify, assess and prioritise security risks (current and emerging), evaluating impact and likelihood. Investigate, monitor, and audit system practices to ensure services and configuration items meet cyber security policies and baseline standards. Identify and document vulnerabilities, analyse trends, and present findings with recommendations. Develop, implement and track mitigation plans in collaboration with stakeholders. Lead the response to ICT security incidents, ensuring containment, eradication and recovery activities are carried out in accordance with established incident response plans. To deliver and assist in the delivery of projects in accordance with user specifications and timetables. Work closely with council services on project work, providing expertise on security impact, including risk, cost and deterrent. Understand security features of bespoke systems within MKCC. Collaborate effectively with colleagues, suppliers, and partners to strengthen security controls, enhance security posture, and support organisational objectives. Acting as a subject matter expert for ICT security across the council, including the installation, maintenance, upgrading and optimisation of MKCC systems. Develop and deliver cyber security awareness and guidance to colleagues, promoting secure behaviours and reducing organisational risk. Collaborate with and act as cover for the Identity and Access administrator. Produce regular reporting on security incidents, risks, and trends, providing insights and recommendations to strengthen organisational security posture. Stay informed on Microsoft security product updates, emerging threats, and best practices. Drive initiatives to enhance security posture and ensure adherence to regulatory and organisational compliance standards. Essential skills required: Related professional qualifications and experience, including degree level qualification. Demonstratable experience of Microsoft Security Stack: Experience with Microsoft Defender suite, Sentinel, Entra ID, and Copilot for Security. Ability to monitor, analyse, and respond to alerts in Sentinel and Defender; familiarity with automation playbooks. Demonstrable excellent written and verbal communication skills, with the ability to translate security risks, technical findings and recommended actions for technical and non-technical audiences. Experience using PowerShell or Kusto Query Language (KQL) to support analysis, monitoring, and automation. Exposure to coding (e.g. Python) combined with a demonstrable ability to work with accuracy and attention to detail. Cyber Security certifications, such as: CCSP, CySA+, GCIA, CSA, SC-200, or similar. Demonstrable experience of working in an Enterprise information security function within a large organisation. Ability to work closely with ICT Security Lead, Identity & Access Administrator, and other stakeholders including colleagues across MKCC. Practical experience with asset management systems and experience securing Microsoft 365 services (e.g. SharePoint, Teams, Copilot). Evidenced knowledge and understanding of security frameworks, standards and best practices (CAF, Cyber Essentials, NIST, ISO27001). Proven familiarity with modern network, cloud and identity security concepts such as authentication, firewalls, endpoint protection, email security, vulnerability management, logging, monitoring and security controls. Continuous Learning and Adaptability: Commitment to staying updated on Microsoft security technologies, threat trends, and best practices. For more information or to process your application, please apply now!
Claranet Limited
SOC Automation Engineer
Claranet Limited Leeds, Yorkshire
SOC Automation Engineer As a SOC Automation Engineer, you will apply hands-on engineering expertise to design, build, and optimise automation workflows that improve the scalability and efficiency of SOC services. Working across SIEM, endpoint, and orchestration platforms (primarily Palo Alto XSOAR), you will reduce analyst workload, accelerate incident response, and enhance decision-making across customer environments. Key Responsibilities Automation Development - Design, build, and maintain scalable automation workflows across detection and response platforms. Integration & Orchestration - Deliver cross-platform automation enabling fast, reliable response actions. Lifecycle Management - Develop, deploy, and continuously optimise automation for performance, resilience, and coverage. Collaboration & Requirements Gathering - Work with SOC and engineering teams to identify automation opportunities. Documentation - Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning - Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support - Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development Build and maintain workflows across SIEM, EDR, and SOAR platforms Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through to optimisation Troubleshoot failures and refine logic Use post-incident insights to improve workflows Documentation & Standards Maintain clear documentation of workflows, dependencies, and error handling Ensure consistency and usability for wider teams Strategic Contribution Support use cases aligned to threat modelling and MITRE ATT&CK Contribute to automation playbooks and response strategies Stay current with tools, frameworks, and emerging threats Collaboration Embed automation into SOC workflows Share best practices and support team development Pre-Sales Support workshops, onboarding, and solution design where needed Stakeholder Collaboration SOC Analysts - Automate repeatable triage and response activities Platform & Detection Engineers - Integrate automation into tooling and detections Sales & Pre-Sales - Provide technical input for customer solutions Requirements 2+ years' experience in SOC, automation, or cloud security engineering Experience in managed services or multi-tenant environments Strong experience building automations across SIEM, SOAR, or EDR platforms Proficiency in scripting (e.g., Python, PowerShell) Experience working with APIs, webhooks, and authentication methods Knowledge of threat frameworks (e.g., MITRE ATT&CK) Understanding of cloud security, identity, and event-driven automation Strong communication and analytical skills Security clearance (NPPV and/or SC) may be required. Technical Knowledge Security orchestration and automation principles Scripting and integration patterns (APIs, webhooks) SOC detection and response workflows Threat intelligence integration and use case design Cloud and identity security concepts Multi-tenant automation design Certifications Essential: Hands-on experience with Palo Alto XSOAR Desirable: Palo Alto Networks Certified XSOAR Engineer Palo Alto Networks Certified Security Automation Engineer (PCSAE) Palo Alto Networks Security Operations Professional
Aug 07, 2026
Full time
SOC Automation Engineer As a SOC Automation Engineer, you will apply hands-on engineering expertise to design, build, and optimise automation workflows that improve the scalability and efficiency of SOC services. Working across SIEM, endpoint, and orchestration platforms (primarily Palo Alto XSOAR), you will reduce analyst workload, accelerate incident response, and enhance decision-making across customer environments. Key Responsibilities Automation Development - Design, build, and maintain scalable automation workflows across detection and response platforms. Integration & Orchestration - Deliver cross-platform automation enabling fast, reliable response actions. Lifecycle Management - Develop, deploy, and continuously optimise automation for performance, resilience, and coverage. Collaboration & Requirements Gathering - Work with SOC and engineering teams to identify automation opportunities. Documentation - Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning - Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support - Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development Build and maintain workflows across SIEM, EDR, and SOAR platforms Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through to optimisation Troubleshoot failures and refine logic Use post-incident insights to improve workflows Documentation & Standards Maintain clear documentation of workflows, dependencies, and error handling Ensure consistency and usability for wider teams Strategic Contribution Support use cases aligned to threat modelling and MITRE ATT&CK Contribute to automation playbooks and response strategies Stay current with tools, frameworks, and emerging threats Collaboration Embed automation into SOC workflows Share best practices and support team development Pre-Sales Support workshops, onboarding, and solution design where needed Stakeholder Collaboration SOC Analysts - Automate repeatable triage and response activities Platform & Detection Engineers - Integrate automation into tooling and detections Sales & Pre-Sales - Provide technical input for customer solutions Requirements 2+ years' experience in SOC, automation, or cloud security engineering Experience in managed services or multi-tenant environments Strong experience building automations across SIEM, SOAR, or EDR platforms Proficiency in scripting (e.g., Python, PowerShell) Experience working with APIs, webhooks, and authentication methods Knowledge of threat frameworks (e.g., MITRE ATT&CK) Understanding of cloud security, identity, and event-driven automation Strong communication and analytical skills Security clearance (NPPV and/or SC) may be required. Technical Knowledge Security orchestration and automation principles Scripting and integration patterns (APIs, webhooks) SOC detection and response workflows Threat intelligence integration and use case design Cloud and identity security concepts Multi-tenant automation design Certifications Essential: Hands-on experience with Palo Alto XSOAR Desirable: Palo Alto Networks Certified XSOAR Engineer Palo Alto Networks Certified Security Automation Engineer (PCSAE) Palo Alto Networks Security Operations Professional
Hays Specialist Recruitment
IT SECURITY ANALYST
Hays Specialist Recruitment City, London
Job Purpose: This role is responsible for overseeing and enhancing the security of our IT systems, data, and networks. You will conduct regular security audits, assessments, and tests, and identify and resolve any vulnerabilities or breaches.You will also develop and implement security policies, procedures, and standards, and ensure compliance with the relevant laws and regulations, and train and educate employees on the best practices and awareness of IT security. Operating Environment: The role operates within the IT Services Team, The IT Services Team includes specialist staff delivering core outputs that are both external-facing and internal key enablers. Framework & Boundaries: The role is responsible for improving the quality, wellbeing and efficiency of our IT Security. The role has external-facing responsibilities and is required and authorised to act as a representative for the organisation. Key accountabilities: Monitor and Inspect: Regularly monitor the network for security threats or breaches. Policy Development: Develop and implement security policies and procedures to safeguard data and systems. Vulnerability Testing: Perform regular vulnerability testing and risk assessments to identify and mitigate security risks. Incident Response: Investigate security incidents and provide post-event analysis and recommendations. Security Tools Management: Manage and maintain Firewalls, intrusion detection and prevention systems, antivirus software, and other security tools. Compliance: Ensure compliance with industry regulations and standards. Training: Train technical and non-technical employees on security protocols, procedures, and best practices. Disaster Recovery: Participate in disaster recovery planning and testing to ensure business continuity in the event of a security incident. Job impact: Risk Mitigation: Implementing robust security measures to significantly reduce the risk of data breaches, cyber-attacks, and other security incidents. Proactive Threat Management: Identifying and addressing vulnerabilities before they can be exploited, thereby enhancing the overall security posture of the organisation. Ensuring that the organisation complies with relevant laws, regulations, and industry standards (eg, GDPR, HIPAA, PCI-DSS), thereby avoiding legal penalties and enhancing trust with stakeholders. Maintaining a state of readiness for security audits and assessments, ensuring that all security controls and measures are well-documented and effective. Developing and implementing disaster recovery plans to ensure business continuity in the event of a security incident or data loss. Efficiently managing and mitigating the impact of security incidents to minimise downtime and operational disruption. Knowledge and experience: Technical Proficiency: In-depth knowledge of network security software - Meraki Cloud, Cloudflare, Mimecast, encryption technologies, and other security hardware and software tools. Current Trends: Stay current with the latest trends in cybersecurity threats and defence strategies. Problem-Solving: Strong problem-solving skills and the ability to work well under pressure. Communication: Good communication skills to effectively train employees and coordinate with other departments. Functional/technical skills: Firewall Management: Proficiency in configuring and managing Firewalls to protect network boundaries. Intrusion Detection/Prevention Systems (IDS/IPS): Experience with IDS/IPS to monitor and respond to potential threats. VPNs and Remote Access: Knowledge of setting up and managing Virtual Private Networks (VPNs) and secure remote access solutions. Patch Management: Ability to manage and deploy security patches and updates to systems and applications. Endpoint Security: Experience with endpoint protection solutions, such as antivirus and anti-malware software. Proficiency in implementing and managing encryption technologies to protect data at rest and in transit. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found on our website.
Mar 30, 2026
Full time
Job Purpose: This role is responsible for overseeing and enhancing the security of our IT systems, data, and networks. You will conduct regular security audits, assessments, and tests, and identify and resolve any vulnerabilities or breaches.You will also develop and implement security policies, procedures, and standards, and ensure compliance with the relevant laws and regulations, and train and educate employees on the best practices and awareness of IT security. Operating Environment: The role operates within the IT Services Team, The IT Services Team includes specialist staff delivering core outputs that are both external-facing and internal key enablers. Framework & Boundaries: The role is responsible for improving the quality, wellbeing and efficiency of our IT Security. The role has external-facing responsibilities and is required and authorised to act as a representative for the organisation. Key accountabilities: Monitor and Inspect: Regularly monitor the network for security threats or breaches. Policy Development: Develop and implement security policies and procedures to safeguard data and systems. Vulnerability Testing: Perform regular vulnerability testing and risk assessments to identify and mitigate security risks. Incident Response: Investigate security incidents and provide post-event analysis and recommendations. Security Tools Management: Manage and maintain Firewalls, intrusion detection and prevention systems, antivirus software, and other security tools. Compliance: Ensure compliance with industry regulations and standards. Training: Train technical and non-technical employees on security protocols, procedures, and best practices. Disaster Recovery: Participate in disaster recovery planning and testing to ensure business continuity in the event of a security incident. Job impact: Risk Mitigation: Implementing robust security measures to significantly reduce the risk of data breaches, cyber-attacks, and other security incidents. Proactive Threat Management: Identifying and addressing vulnerabilities before they can be exploited, thereby enhancing the overall security posture of the organisation. Ensuring that the organisation complies with relevant laws, regulations, and industry standards (eg, GDPR, HIPAA, PCI-DSS), thereby avoiding legal penalties and enhancing trust with stakeholders. Maintaining a state of readiness for security audits and assessments, ensuring that all security controls and measures are well-documented and effective. Developing and implementing disaster recovery plans to ensure business continuity in the event of a security incident or data loss. Efficiently managing and mitigating the impact of security incidents to minimise downtime and operational disruption. Knowledge and experience: Technical Proficiency: In-depth knowledge of network security software - Meraki Cloud, Cloudflare, Mimecast, encryption technologies, and other security hardware and software tools. Current Trends: Stay current with the latest trends in cybersecurity threats and defence strategies. Problem-Solving: Strong problem-solving skills and the ability to work well under pressure. Communication: Good communication skills to effectively train employees and coordinate with other departments. Functional/technical skills: Firewall Management: Proficiency in configuring and managing Firewalls to protect network boundaries. Intrusion Detection/Prevention Systems (IDS/IPS): Experience with IDS/IPS to monitor and respond to potential threats. VPNs and Remote Access: Knowledge of setting up and managing Virtual Private Networks (VPNs) and secure remote access solutions. Patch Management: Ability to manage and deploy security patches and updates to systems and applications. Endpoint Security: Experience with endpoint protection solutions, such as antivirus and anti-malware software. Proficiency in implementing and managing encryption technologies to protect data at rest and in transit. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found on our website.
Triumph Consultants Ltd
Senior Cyber Security Analyst
Triumph Consultants Ltd
Senior Cyber Security Analyst Location: London hybrid working IR35: Inside via Triumph Consultants you will be paid PAYE for the length of the 3 month contract It is essential for candidates to have advanced proficiency in using Splunk for security monitoring, log analysis, threat detection, and reporting The role: The Cyber Defence team at the delivers threat intelligence, threat detection, incident response, and vulnerability management to defend both internal IT infrastructure and citizen-facing services. They are looking for a Senior Cyber Security Analyst with proven experience in incident response and Splunk to take a leading role in strengthening the organisation's cyber defence capability. Key Accountabilities: Lead investigations into security alerts and cyber incidents. Perform forensic analysis of systems, files, network traffic, and cloud environments. Drive technical response actions including containment, eradication, and recovery. Coordinate cyber incident responses across teams and stakeholders. Identify lessons learned and embed continual improvement. Develop and update incident response playbooks and knowledge base articles. Act as an escalation point and mentor for security analysts. Provide leadership and line management within the team. Join the out-of-hours on-call rota to support 24/7 incident response. Key Criteria: 5+ years' experience investigating and responding to cyber incidents in large organisations. Strong track record with incident response coordination. Significant hands-on experience with Splunk and security tools (eg, EDR, SIEM). Analytical, problem-solving, and forensic investigation skills. Proven experience coaching or mentoring junior staff. Strong understanding of threat actor tools, techniques, and procedures. Experience of cloud environments such as AWS Excellent written and verbal communication skills. How to Apply Quote the Job Title and Reference Number in your application. Submit your CV in Word format. Applications are reviewed on a rolling basis-early submission is recommended. We will also add your details to our mail out lists. Please note you may receive details of roles outside of your immediate vicinity, as many candidates are able to relocate temporarily for work. Please disregard any such emails that are not of interest and let us know if you would rather not receive such mailouts and/or if you wish us to delete your details and prefer to apply direct to our advertised roles. If you do not hear from us within three working days, unfortunately your application has not been shortlisted on this occasion. Thank you for your interest in working with us.
Oct 07, 2025
Contractor
Senior Cyber Security Analyst Location: London hybrid working IR35: Inside via Triumph Consultants you will be paid PAYE for the length of the 3 month contract It is essential for candidates to have advanced proficiency in using Splunk for security monitoring, log analysis, threat detection, and reporting The role: The Cyber Defence team at the delivers threat intelligence, threat detection, incident response, and vulnerability management to defend both internal IT infrastructure and citizen-facing services. They are looking for a Senior Cyber Security Analyst with proven experience in incident response and Splunk to take a leading role in strengthening the organisation's cyber defence capability. Key Accountabilities: Lead investigations into security alerts and cyber incidents. Perform forensic analysis of systems, files, network traffic, and cloud environments. Drive technical response actions including containment, eradication, and recovery. Coordinate cyber incident responses across teams and stakeholders. Identify lessons learned and embed continual improvement. Develop and update incident response playbooks and knowledge base articles. Act as an escalation point and mentor for security analysts. Provide leadership and line management within the team. Join the out-of-hours on-call rota to support 24/7 incident response. Key Criteria: 5+ years' experience investigating and responding to cyber incidents in large organisations. Strong track record with incident response coordination. Significant hands-on experience with Splunk and security tools (eg, EDR, SIEM). Analytical, problem-solving, and forensic investigation skills. Proven experience coaching or mentoring junior staff. Strong understanding of threat actor tools, techniques, and procedures. Experience of cloud environments such as AWS Excellent written and verbal communication skills. How to Apply Quote the Job Title and Reference Number in your application. Submit your CV in Word format. Applications are reviewed on a rolling basis-early submission is recommended. We will also add your details to our mail out lists. Please note you may receive details of roles outside of your immediate vicinity, as many candidates are able to relocate temporarily for work. Please disregard any such emails that are not of interest and let us know if you would rather not receive such mailouts and/or if you wish us to delete your details and prefer to apply direct to our advertised roles. If you do not hear from us within three working days, unfortunately your application has not been shortlisted on this occasion. Thank you for your interest in working with us.
Lawrence Harvey
Cyber Security Analyst - SC Clearance
Lawrence Harvey
My client are looking for a Cyber Security Analyst for an initial 3 month contract opportunity to start ASAP. IR35 Status: Inside IR35 Rate: Up to £800 per day Location: Hybrid - London Duration: Initial 3 months THIS ROLE REQUIRES AN ACTIVE SC CLEARANCE Essential Requirements: Threat Detection & Incident Response: Proven ability to monitor, detect, and respond to cybersecurity incidents using SIEM tools (eg, Splunk, Sentinel, QRadar). Vulnerability Management: Experience with vulnerability scanning, risk assessment, and remediation processes across network, cloud, and endpoint environments. Security Frameworks & Compliance: Working knowledge of NIST, ISO 27001, CIS Controls, and regulatory requirements (eg, GDPR, HIPAA, or SOC 2). A thorough understanding of HMG policies and guidance, especially regarding requirements and controls around the Government Security Policy Classification, mainly at OFFICIAL. Secured web applications and cloud infrastructure environments (AWS/Azure) against vulnerabilities, and applied common and innovative remediation techniques. Secured AWS components, in particular IAM, S3 and EC2. Knowledge of security monitoring, prevention and control systems including but not limited to Firewalls, IDS/IPS, web proxies, antivirus and log correlation solutions. If you are interested, please apply with your most up to date CV. Lawrence Harvey is acting as an Employment Business in regards to this position.
Oct 03, 2025
Contractor
My client are looking for a Cyber Security Analyst for an initial 3 month contract opportunity to start ASAP. IR35 Status: Inside IR35 Rate: Up to £800 per day Location: Hybrid - London Duration: Initial 3 months THIS ROLE REQUIRES AN ACTIVE SC CLEARANCE Essential Requirements: Threat Detection & Incident Response: Proven ability to monitor, detect, and respond to cybersecurity incidents using SIEM tools (eg, Splunk, Sentinel, QRadar). Vulnerability Management: Experience with vulnerability scanning, risk assessment, and remediation processes across network, cloud, and endpoint environments. Security Frameworks & Compliance: Working knowledge of NIST, ISO 27001, CIS Controls, and regulatory requirements (eg, GDPR, HIPAA, or SOC 2). A thorough understanding of HMG policies and guidance, especially regarding requirements and controls around the Government Security Policy Classification, mainly at OFFICIAL. Secured web applications and cloud infrastructure environments (AWS/Azure) against vulnerabilities, and applied common and innovative remediation techniques. Secured AWS components, in particular IAM, S3 and EC2. Knowledge of security monitoring, prevention and control systems including but not limited to Firewalls, IDS/IPS, web proxies, antivirus and log correlation solutions. If you are interested, please apply with your most up to date CV. Lawrence Harvey is acting as an Employment Business in regards to this position.
Aspect Resources
Senior Cyber Security Analyst - SC
Aspect Resources
Job Title: Senior Cyber Security Analyst - SC Location : Hybrid/London - 3 days a week on site Contract Duration : 3 months initially Daily Rate: £800/day (Umbrella - Maximum) IR35 Status: Inside IR35 Minimum requirement: Experience of investigating and responding to cyber incidents, coordinating incident response in large org 5+ years' experience with SPLUNK EDR (Endpoint Detection and Response) Analytical, problem solving Security Clearance: SC Senior Cyber Security Analyst The Cyber Defence team delivers cyber threat intelligence, threat detection, incident response and Vulnerability management capabilities for the organisation, and is responsible for defending both internal IT infrastructure and citizen-facing services. As a senior security analyst, you'll take a leading role in building and delivering these core capabilities, focusing on incident response. As a senior security analyst with responsibility for incident response, you will l: Lead the investigation of security alerts to understand the nature and extent of possible cyber incidents Lead the forensic analysis of systems, files, network traffic and cloud environments Lead the technical response to cyber incidents by identifying and implementing (or coordinating the implementation of) containment, eradication and recovery actions Support the wider coordination of cyber incidents Review previous incidents to identify lessons and actions Identify and deliver opportunities for continual improvement of the incident response capability Work closely alongside other Cyber Defence functions, supporting the continual improvement of wider capabilities Develop and update internal plans, playbooks and knowledge base articles Act as an escalation point for, and provide coaching and mentoring to, security analysts Be responsible for leadership and line management of security analysts Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota, which you will be expected to join. We're interested in people who have: Significant experience investigating and responding to cyber incidents Significant experience using security tools (eg, EDR, SIEM) to support the investigation and response to cyber incidents Experience managing and coordinating the response to cyber incidents Experience coaching and mentoring junior staff An in-depth understanding of the tools, techniques and procedures used by threat actors Excellent analytical and problem solving skills Excellent verbal and written communication skills Experience with Splunk Experience working in an Agile environment Experience with cloud environments such as AWS Disability Confident As a member of the disability confident scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. Armed Forces Covenant CLIENT is proud to support the Armed Forces Covenant and as such, we guarantee to interview all veterans or spouses/partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates/military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group. If you qualify for the above, please notify us. We will be in touch to discuss your suitability and arrange your Guaranteed Interview. Should you require reasonable adjustments at any point during the recruitment process or if there is a more accessible way for us to communicate, please do let me know. To apply for this role please submit your latest CV or contact Aspect Resources
Oct 03, 2025
Contractor
Job Title: Senior Cyber Security Analyst - SC Location : Hybrid/London - 3 days a week on site Contract Duration : 3 months initially Daily Rate: £800/day (Umbrella - Maximum) IR35 Status: Inside IR35 Minimum requirement: Experience of investigating and responding to cyber incidents, coordinating incident response in large org 5+ years' experience with SPLUNK EDR (Endpoint Detection and Response) Analytical, problem solving Security Clearance: SC Senior Cyber Security Analyst The Cyber Defence team delivers cyber threat intelligence, threat detection, incident response and Vulnerability management capabilities for the organisation, and is responsible for defending both internal IT infrastructure and citizen-facing services. As a senior security analyst, you'll take a leading role in building and delivering these core capabilities, focusing on incident response. As a senior security analyst with responsibility for incident response, you will l: Lead the investigation of security alerts to understand the nature and extent of possible cyber incidents Lead the forensic analysis of systems, files, network traffic and cloud environments Lead the technical response to cyber incidents by identifying and implementing (or coordinating the implementation of) containment, eradication and recovery actions Support the wider coordination of cyber incidents Review previous incidents to identify lessons and actions Identify and deliver opportunities for continual improvement of the incident response capability Work closely alongside other Cyber Defence functions, supporting the continual improvement of wider capabilities Develop and update internal plans, playbooks and knowledge base articles Act as an escalation point for, and provide coaching and mentoring to, security analysts Be responsible for leadership and line management of security analysts Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota, which you will be expected to join. We're interested in people who have: Significant experience investigating and responding to cyber incidents Significant experience using security tools (eg, EDR, SIEM) to support the investigation and response to cyber incidents Experience managing and coordinating the response to cyber incidents Experience coaching and mentoring junior staff An in-depth understanding of the tools, techniques and procedures used by threat actors Excellent analytical and problem solving skills Excellent verbal and written communication skills Experience with Splunk Experience working in an Agile environment Experience with cloud environments such as AWS Disability Confident As a member of the disability confident scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. Armed Forces Covenant CLIENT is proud to support the Armed Forces Covenant and as such, we guarantee to interview all veterans or spouses/partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates/military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group. If you qualify for the above, please notify us. We will be in touch to discuss your suitability and arrange your Guaranteed Interview. Should you require reasonable adjustments at any point during the recruitment process or if there is a more accessible way for us to communicate, please do let me know. To apply for this role please submit your latest CV or contact Aspect Resources
Vallum
Lead Security Solution Architect- PAM
Vallum Sheffield, Yorkshire
Job Title: Lead Security Solution Architect- PAM Location: Hybrid-London, UK (Days/Week Onsite) Duration: 6months+ 550GBP/Day Inside IR35 Project Overview CLIENT is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the bank. One of the pillars of that programe is Privileged Access Management (PAM). CLIENT is working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Lead Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents in line with functional and non-functional business requirements, strategies, principles, standards, and patterns. Alongside the creation of high-level designs, Security Solution Architects will be required to record key decisions, design deviations, and technical risks and issues where appropriate. Security Solution Architects should be comfortable presenting and sharing solutions at design authorities and senior leadership & stakeholders. The Lead Security Solution Architect will provide technical thought leadership and direction to their project team and may represent the project/programme as subject matter expert. This role will require someone experienced in managing a team of on-shore and off-shore resources to deliver High- and Low-level designs to the required quality and standard. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level Experience in both operational and transformation cybersecurity roles or a clear working understanding of both perspectives Experience working in large-scale IT transformation programmes Experience working with PAM solutions such as CyberArk, Centrify, Delinea and OneIdentity Preparing end-to-end configuration of the strategic PAM capability - including on-prem deployments as well as Cloud native toolings Assisting in preparation of demonstrable journeys on the configured PAM tooling Platform & Technology: BizzDesign, Archi, or generic UML visualisation experience for high-level designs High proficiency and expertise in Jira for project & tasks management Working proficiency in Confluence for documentation Principal Accountabilities and Responsibilities Architecture & Design: Produce, manage, and update end-to-end solution designs in line with reference architecture & business requirements (including High and Low Level Designs Articulate and publish key design decision records and options to ensure all solutions follow a logical, transparent decision-making process Articulate, publish, and ensure approval of any design deviations resulting in technical debt Ensure any technical risks or issues arising from a solution design are recorded and mitigated. Produces, manages and translates the requirements into the architecture for that solution, ensuring technology and services meet the customer needs and expected business outcomes Ensures the design of the solutions are efficient, timely and cost effective throughout the project life cycle Clear understanding of both the motivations of the business and technical security Promote strong documentation and clerkship Governance: Ensures all high-level designs, architecture patterns, decision records, deviation requests, and technical risks or issue records undergo architectural and project governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Ability to map design decisions to resultant technical risks & issues to articulate the cause and rationale which leads to any negatively impacting change Leadership & Teamwork Provides technical thought leadership to the Design Team and the Project Ability to manage a project team of technical architects, engineers, and/or analysts Ability to take a deputised role in programme management-related tasks where necessary Qualifications & Certifications: Masters or doctorate degree in cybersecurity, computer science, software engineering, or related field CISSP/CISM certification or other broad cybersecurity industry-recognised certificate SABSA or TOGAF certified preferred Priyanka Sharma Senior Delivery Consultant
Oct 02, 2025
Contractor
Job Title: Lead Security Solution Architect- PAM Location: Hybrid-London, UK (Days/Week Onsite) Duration: 6months+ 550GBP/Day Inside IR35 Project Overview CLIENT is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the bank. One of the pillars of that programe is Privileged Access Management (PAM). CLIENT is working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Lead Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents in line with functional and non-functional business requirements, strategies, principles, standards, and patterns. Alongside the creation of high-level designs, Security Solution Architects will be required to record key decisions, design deviations, and technical risks and issues where appropriate. Security Solution Architects should be comfortable presenting and sharing solutions at design authorities and senior leadership & stakeholders. The Lead Security Solution Architect will provide technical thought leadership and direction to their project team and may represent the project/programme as subject matter expert. This role will require someone experienced in managing a team of on-shore and off-shore resources to deliver High- and Low-level designs to the required quality and standard. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level Experience in both operational and transformation cybersecurity roles or a clear working understanding of both perspectives Experience working in large-scale IT transformation programmes Experience working with PAM solutions such as CyberArk, Centrify, Delinea and OneIdentity Preparing end-to-end configuration of the strategic PAM capability - including on-prem deployments as well as Cloud native toolings Assisting in preparation of demonstrable journeys on the configured PAM tooling Platform & Technology: BizzDesign, Archi, or generic UML visualisation experience for high-level designs High proficiency and expertise in Jira for project & tasks management Working proficiency in Confluence for documentation Principal Accountabilities and Responsibilities Architecture & Design: Produce, manage, and update end-to-end solution designs in line with reference architecture & business requirements (including High and Low Level Designs Articulate and publish key design decision records and options to ensure all solutions follow a logical, transparent decision-making process Articulate, publish, and ensure approval of any design deviations resulting in technical debt Ensure any technical risks or issues arising from a solution design are recorded and mitigated. Produces, manages and translates the requirements into the architecture for that solution, ensuring technology and services meet the customer needs and expected business outcomes Ensures the design of the solutions are efficient, timely and cost effective throughout the project life cycle Clear understanding of both the motivations of the business and technical security Promote strong documentation and clerkship Governance: Ensures all high-level designs, architecture patterns, decision records, deviation requests, and technical risks or issue records undergo architectural and project governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Ability to map design decisions to resultant technical risks & issues to articulate the cause and rationale which leads to any negatively impacting change Leadership & Teamwork Provides technical thought leadership to the Design Team and the Project Ability to manage a project team of technical architects, engineers, and/or analysts Ability to take a deputised role in programme management-related tasks where necessary Qualifications & Certifications: Masters or doctorate degree in cybersecurity, computer science, software engineering, or related field CISSP/CISM certification or other broad cybersecurity industry-recognised certificate SABSA or TOGAF certified preferred Priyanka Sharma Senior Delivery Consultant
WAF SME
Talent Smart Limited Sheffield, Yorkshire
About the Role We are seeking a highly skilled WAF Engineer to join our security engineering team and take responsibility for the configuration, tuning, monitoring, and optimisation of our Web Application Firewall (WAF). The successful candidate will work closely with developers, security analysts, and infrastructure teams to ensure applications remain protected against advanced web threats while minimising false positives and supporting business operations. This role requires deep hands-on expertise in WAF technologies, advanced knowledge of application security threats (OWASP Top 10, XSS, SQLi, XXE, etc.), and the ability to fine-tune WAF rules without compromising overall security posture. Key Responsibilities Configure, manage, and tune WAF rules to balance strong security controls with minimal false positives. Collaborate with development teams to create precise parameter-level exceptions and avoid unnecessary rule suppression. Monitor WAF logs, identify potential threats, and respond to security incidents in Real Time. Analyse traffic patterns and investigate anomalies, such as spikes in error codes or unusual request behaviour. Develop and implement strategies to mitigate attacks, including automated threats, scraping, path traversal, XXE, and SQL injection. Document WAF policies, exceptions, and processes, ensuring knowledge is shared across the team. Partner with security operations, SOC analysts, and developers to ensure WAF is aligned with application updates and new releases. Support threat modelling, security testing, and vulnerability assessments with a WAF focus. Required Skills & Experience Strong expertise with Web Application Firewalls (eg, F5 ASM/Advanced WAF, Imperva, Akamai Kona, Cloudflare, AWS WAF, Azure WAF). Deep understanding of OWASP Top 10 and web attack techniques, including XSS, SQLi, XXE, SSRF, and path traversal. Hands-on experience tuning WAFs to allow business functionality while preventing exploitation. Solid knowledge of HTTP, HTTPS, XML, JSON, REST APIs, and web application behaviours. Experience in analysing logs and traffic anomalies to detect attacks or misconfigurations. Familiarity with secure SDLC processes and working with DevOps teams. Strong communication and stakeholder management skills. Certifications such as GIAC GWAPT, CEH, OSWE, or vendor-specific WAF certifications are desirable
Sep 25, 2025
Contractor
About the Role We are seeking a highly skilled WAF Engineer to join our security engineering team and take responsibility for the configuration, tuning, monitoring, and optimisation of our Web Application Firewall (WAF). The successful candidate will work closely with developers, security analysts, and infrastructure teams to ensure applications remain protected against advanced web threats while minimising false positives and supporting business operations. This role requires deep hands-on expertise in WAF technologies, advanced knowledge of application security threats (OWASP Top 10, XSS, SQLi, XXE, etc.), and the ability to fine-tune WAF rules without compromising overall security posture. Key Responsibilities Configure, manage, and tune WAF rules to balance strong security controls with minimal false positives. Collaborate with development teams to create precise parameter-level exceptions and avoid unnecessary rule suppression. Monitor WAF logs, identify potential threats, and respond to security incidents in Real Time. Analyse traffic patterns and investigate anomalies, such as spikes in error codes or unusual request behaviour. Develop and implement strategies to mitigate attacks, including automated threats, scraping, path traversal, XXE, and SQL injection. Document WAF policies, exceptions, and processes, ensuring knowledge is shared across the team. Partner with security operations, SOC analysts, and developers to ensure WAF is aligned with application updates and new releases. Support threat modelling, security testing, and vulnerability assessments with a WAF focus. Required Skills & Experience Strong expertise with Web Application Firewalls (eg, F5 ASM/Advanced WAF, Imperva, Akamai Kona, Cloudflare, AWS WAF, Azure WAF). Deep understanding of OWASP Top 10 and web attack techniques, including XSS, SQLi, XXE, SSRF, and path traversal. Hands-on experience tuning WAFs to allow business functionality while preventing exploitation. Solid knowledge of HTTP, HTTPS, XML, JSON, REST APIs, and web application behaviours. Experience in analysing logs and traffic anomalies to detect attacks or misconfigurations. Familiarity with secure SDLC processes and working with DevOps teams. Strong communication and stakeholder management skills. Certifications such as GIAC GWAPT, CEH, OSWE, or vendor-specific WAF certifications are desirable
Newto Training
Junior Incident Analyst
Newto Training Ireland, Bedfordshire
Launch Your Cyber Security Career - Job Guaranteed! Cyber attacks are rising, and companies need skilled professionals now more than ever. With Newto Training's Cyber Security Career Programme, you'll gain 4 top certifications (Azure Fundamentals, CompTIA Security+, CompTIA CySA+, Forescout FSCA) plus real-world project work that doubles as hands-on experience. 100+ hours of live training Practical skills in troubleshooting, networking (Cisco), Azure cloud, Splunk SIEM & Tenable vulnerability management Job guarantee with our hiring partners Get certified, get experience, get hired. Apply today and start your journey into cyber security. Course cost - £2795, or, £232.91 per month We guarantee you will be offered a job upon completion, or we will refund you 100% of your course fees.
Sep 23, 2025
Full time
Launch Your Cyber Security Career - Job Guaranteed! Cyber attacks are rising, and companies need skilled professionals now more than ever. With Newto Training's Cyber Security Career Programme, you'll gain 4 top certifications (Azure Fundamentals, CompTIA Security+, CompTIA CySA+, Forescout FSCA) plus real-world project work that doubles as hands-on experience. 100+ hours of live training Practical skills in troubleshooting, networking (Cisco), Azure cloud, Splunk SIEM & Tenable vulnerability management Job guarantee with our hiring partners Get certified, get experience, get hired. Apply today and start your journey into cyber security. Course cost - £2795, or, £232.91 per month We guarantee you will be offered a job upon completion, or we will refund you 100% of your course fees.
Newto Training
Cloud Security Analyst
Newto Training Ireland, Bedfordshire
Launch Your Cyber Security Career - Job Guaranteed! Cyber attacks are rising, and companies need skilled professionals now more than ever. With Newto Training's Cyber Security Career Programme, you'll gain 4 top certifications (Azure Fundamentals, CompTIA Security+, CompTIA CySA+, Forescout FSCA) plus real-world project work that doubles as hands-on experience. 100+ hours of live training Practical skills in troubleshooting, networking (Cisco), Azure cloud, Splunk SIEM & Tenable vulnerability management Job guarantee with our hiring partners Get certified, get experience, get hired. Apply today and start your journey into cyber security. Course cost - £2795, or, £232.91 per month We guarantee you will be offered a job upon completion, or we will refund you 100% of your course fees.
Sep 23, 2025
Full time
Launch Your Cyber Security Career - Job Guaranteed! Cyber attacks are rising, and companies need skilled professionals now more than ever. With Newto Training's Cyber Security Career Programme, you'll gain 4 top certifications (Azure Fundamentals, CompTIA Security+, CompTIA CySA+, Forescout FSCA) plus real-world project work that doubles as hands-on experience. 100+ hours of live training Practical skills in troubleshooting, networking (Cisco), Azure cloud, Splunk SIEM & Tenable vulnerability management Job guarantee with our hiring partners Get certified, get experience, get hired. Apply today and start your journey into cyber security. Course cost - £2795, or, £232.91 per month We guarantee you will be offered a job upon completion, or we will refund you 100% of your course fees.
Security Lead
Tank Recruitment
Security Lead Location: Oxfordshire (hybrid working) Basis: Full-time Salary/Package: Up to £65,000 + excellent benefits My client, a leading IT organisation in their sector, is seeking a Security Lead to join their growing team. This is a strategic, client-facing role that combines ownership of internal security posture with responsibility for guiding client security frameworks and best practice. As Security Lead, you will: Act as a trusted advisor to clients, leading Quarterly Security Reviews and presenting clear business-focused risk assessments. Own security governance processes, ensuring compliance with frameworks such as Cyber Essentials, ISO27001, and NIST . Oversee patching, vulnerability management, and internal infrastructure security. Collaborate across service delivery, project, and account management teams to embed security consistently. Mentor and develop Security Analysts, ensuring certifications and knowledge remain current. Translate complex technical risks into actionable business outcomes for C-level stakeholders. The ideal candidate will have: 5+ years in IT security or MSP environments . Strong knowledge of Cyber Essentials, ISO27001, or NIST frameworks. Experience in vulnerability management, patch governance, and cloud security (M365/Azure). Excellent communication skills with the ability to influence both technical teams and business leaders. (Desirable) Certifications such as CISSP, CISM , or equivalent. Why join? This is an opportunity to take full ownership of a security function within a forward-thinking IT services business. You'll gain exposure to blue-chip clients, work closely with senior stakeholders, and play a pivotal role in shaping security strategy while mentoring a growing team. Package includes: 25+ days holiday (plus bank holidays), flexible working, private healthcare, Bupa cash plan, EV & cycle schemes, discounted gym membership, charity day, and more. If you are looking to step into a role where you can lead strategy, drive governance, and act as a trusted security advisor , then I'd love to hear from you.
Sep 23, 2025
Full time
Security Lead Location: Oxfordshire (hybrid working) Basis: Full-time Salary/Package: Up to £65,000 + excellent benefits My client, a leading IT organisation in their sector, is seeking a Security Lead to join their growing team. This is a strategic, client-facing role that combines ownership of internal security posture with responsibility for guiding client security frameworks and best practice. As Security Lead, you will: Act as a trusted advisor to clients, leading Quarterly Security Reviews and presenting clear business-focused risk assessments. Own security governance processes, ensuring compliance with frameworks such as Cyber Essentials, ISO27001, and NIST . Oversee patching, vulnerability management, and internal infrastructure security. Collaborate across service delivery, project, and account management teams to embed security consistently. Mentor and develop Security Analysts, ensuring certifications and knowledge remain current. Translate complex technical risks into actionable business outcomes for C-level stakeholders. The ideal candidate will have: 5+ years in IT security or MSP environments . Strong knowledge of Cyber Essentials, ISO27001, or NIST frameworks. Experience in vulnerability management, patch governance, and cloud security (M365/Azure). Excellent communication skills with the ability to influence both technical teams and business leaders. (Desirable) Certifications such as CISSP, CISM , or equivalent. Why join? This is an opportunity to take full ownership of a security function within a forward-thinking IT services business. You'll gain exposure to blue-chip clients, work closely with senior stakeholders, and play a pivotal role in shaping security strategy while mentoring a growing team. Package includes: 25+ days holiday (plus bank holidays), flexible working, private healthcare, Bupa cash plan, EV & cycle schemes, discounted gym membership, charity day, and more. If you are looking to step into a role where you can lead strategy, drive governance, and act as a trusted security advisor , then I'd love to hear from you.

Modal Window

  • Blog
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Instagram
  • Pinterest
  • Youtube
Parent and Partner sites: IT Job Board | Search Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | London Jobs | Property jobs
© 2008-2026 Jobs Hiring Near Me