eDiscovery Senior Technical Project Manager London/hybrid (but remote from UK could be considered for an exceptional person) The Firm: Highly reputable international Legal Practice undergoing expansion in the eDiscovery Practice. The Role: Provide the eDiscovery team with technical, strategic and practical know how on eDiscovery services. Successfully deliver and assist others in the delivery of eDiscovery projects. Assist with the management of the eDiscovery team The Individual: Have proven experience of successfully supporting projects with all aspects of eDiscovery processes. Experience of using eDiscovery products such as Relativity, Reveal, Disco, Axcelerate, Nuix, and also know or happy to learn Sharedo or Opus2. You will be very technically adept and if not a Relativity Master be well on your way with an understanding across the tool and other tools (mentioned above). Delivery: Accountable for ensuring quality control process is adhered to in delivery of all services Ensure your Manager is made aware of all tasks, projects and the approach to delivery is discussed and confirmed with them Create recommendations, project plans, cost estimates, procedures and specifications, ensuring quotes are provided and instructions are agreed in writing Data processing of material received in various formats including native and load file mapping and ingestion, as well as exception handling Setup and customisation of Relativity , running searches and culling data, creating review batches, customising coding templates, creating user roles and related permission settings Carry out native and load file productions according to specifications Resolve 1st line support queries and work with our 2nd & 3rd line support to ensure technical issues are resolved Be a reference point for service issues, escalating any complaints from the Practice immediately to the team Manager and working with the Manager to address these Ensure defensible processes and data security procedures are adhered to at all times Administration of software and hardware used by the eDiscovery team Responsible for the successful end-to-end delivery of eDiscovery projects, including processing data, creating productions for disclosure/investigation, leveraging TAR functionality, Early Case Assessment tools. Also GenAI solutions, eBundling and case management solutions Keep up to date with developments by attending seminars and presentations on relevant services and technology, ensuring knowledge is shared and training is provided to all team members About Brimstone Consulting: We specialise in finding highly qualified staff in the following areas: E-Discovery and Digital Forensics; Payments; Fraud - (AML/CTF, Investigation, CFE s etc.); Risk - (Credit, Regulatory, Liquidity, Market, Analysts-SAS, SPSS etc.); Compliance/Corporate Governance ; IT - (full SDLC- BA s PM s , Architects, Developers etc.); Big Data and Data Analytics - (MI/BI/CI); InfoSec and Cyber Crime; Audit; Accountancy and Finance Brimstone Consulting acts as an employment agency (permanent) and as an employment business (temporary) - a free and confidential service to candidates. Brimstone Consulting is an equal opportunities employer. Due to time constraints we can only reply to applicants that match our clients specifications. Our Data Protection number: ZA(phone number removed)
Aug 12, 2026
Full time
eDiscovery Senior Technical Project Manager London/hybrid (but remote from UK could be considered for an exceptional person) The Firm: Highly reputable international Legal Practice undergoing expansion in the eDiscovery Practice. The Role: Provide the eDiscovery team with technical, strategic and practical know how on eDiscovery services. Successfully deliver and assist others in the delivery of eDiscovery projects. Assist with the management of the eDiscovery team The Individual: Have proven experience of successfully supporting projects with all aspects of eDiscovery processes. Experience of using eDiscovery products such as Relativity, Reveal, Disco, Axcelerate, Nuix, and also know or happy to learn Sharedo or Opus2. You will be very technically adept and if not a Relativity Master be well on your way with an understanding across the tool and other tools (mentioned above). Delivery: Accountable for ensuring quality control process is adhered to in delivery of all services Ensure your Manager is made aware of all tasks, projects and the approach to delivery is discussed and confirmed with them Create recommendations, project plans, cost estimates, procedures and specifications, ensuring quotes are provided and instructions are agreed in writing Data processing of material received in various formats including native and load file mapping and ingestion, as well as exception handling Setup and customisation of Relativity , running searches and culling data, creating review batches, customising coding templates, creating user roles and related permission settings Carry out native and load file productions according to specifications Resolve 1st line support queries and work with our 2nd & 3rd line support to ensure technical issues are resolved Be a reference point for service issues, escalating any complaints from the Practice immediately to the team Manager and working with the Manager to address these Ensure defensible processes and data security procedures are adhered to at all times Administration of software and hardware used by the eDiscovery team Responsible for the successful end-to-end delivery of eDiscovery projects, including processing data, creating productions for disclosure/investigation, leveraging TAR functionality, Early Case Assessment tools. Also GenAI solutions, eBundling and case management solutions Keep up to date with developments by attending seminars and presentations on relevant services and technology, ensuring knowledge is shared and training is provided to all team members About Brimstone Consulting: We specialise in finding highly qualified staff in the following areas: E-Discovery and Digital Forensics; Payments; Fraud - (AML/CTF, Investigation, CFE s etc.); Risk - (Credit, Regulatory, Liquidity, Market, Analysts-SAS, SPSS etc.); Compliance/Corporate Governance ; IT - (full SDLC- BA s PM s , Architects, Developers etc.); Big Data and Data Analytics - (MI/BI/CI); InfoSec and Cyber Crime; Audit; Accountancy and Finance Brimstone Consulting acts as an employment agency (permanent) and as an employment business (temporary) - a free and confidential service to candidates. Brimstone Consulting is an equal opportunities employer. Due to time constraints we can only reply to applicants that match our clients specifications. Our Data Protection number: ZA(phone number removed)
Senior Cyber Consultant 65,000 + 15k Bonus Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ATT&CK and threat detection methodologies Azure security and cloud telemetry exposure Previous consultancy or customer-facing experience What's on Offer 65,000 base salary Annual Bonus Predominantly remote working No on-call requirement Exposure to enterprise-scale cyber security projects Strong development and progression opportunities Ideal for: Detection Engineers, SIEM Engineers, Senior SOC Analysts, Security Automation Engineers, SOC Consultants, and Cyber Security Engineers seeking a consultancy-focused role.
Aug 12, 2026
Full time
Senior Cyber Consultant 65,000 + 15k Bonus Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ATT&CK and threat detection methodologies Azure security and cloud telemetry exposure Previous consultancy or customer-facing experience What's on Offer 65,000 base salary Annual Bonus Predominantly remote working No on-call requirement Exposure to enterprise-scale cyber security projects Strong development and progression opportunities Ideal for: Detection Engineers, SIEM Engineers, Senior SOC Analysts, Security Automation Engineers, SOC Consultants, and Cyber Security Engineers seeking a consultancy-focused role.
IAM Consultant Microsoft Identity & Access Management Entra ID Security Salary: £70,000 + Benefits Location: Fully Remote (UK) Type: Permanent, Full-Time Are you an experienced Identity & Access Management professional with a passion for Microsoft technologies? Do you have proven experience designing and delivering Microsoft Identity solutions across Entra ID, Active Directory and Hybrid Identity environments? Are you confident engaging with stakeholders, leading technical workshops and delivering secure, scalable identity solutions that support modern security strategies? If so, this could be an excellent opportunity to join a growing Microsoft-focused consultancy delivering strategic Identity and Security projects across a diverse client portfolio. The Opportunity We are seeking an experienced IAM Consultant to support the design, implementation and optimisation of Identity and Access Management solutions across the Microsoft technology stack. This is a client-facing consultancy role where you will act as a trusted advisor, helping organisations modernise their identity platforms, strengthen security controls and implement best-practice identity governance. Working alongside Architects, Project Managers, Security Consultants and Technical Delivery teams, you will deliver innovative and secure identity solutions while supporting clients throughout their digital transformation journeys. What You Will Be Doing You will be involved in the full project lifecycle, including discovery, design, implementation, migration and handover activities. Key responsibilities include: Delivering Microsoft Identity and Access Management solutions across enterprise environments Leading discovery workshops and technical design sessions Assessing existing identity architectures and security controls Designing and implementing Microsoft Entra ID solutions Supporting Active Directory modernisation and Hybrid Identity deployments Implementing Conditional Access policies and Zero Trust principles Delivering Multi-Factor Authentication (MFA) and Passwordless Authentication solutions Configuring and supporting Single Sign-On (SSO) integrations Designing Joiner, Mover and Leaver (JML) processes Implementing Role-Based Access Control (RBAC) models Supporting Identity Governance and Administration (IGA) initiatives Delivering Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions Developing High-Level and Low-Level Design documentation Supporting migration, testing, cutover and operational handover activities Providing technical guidance and best-practice recommendations to clients Working collaboratively with project teams to deliver successful outcomes What We Are Looking For We are seeking a consultant who can combine strong Microsoft Identity expertise with excellent communication and stakeholder management skills. You should be able to demonstrate: Proven experience delivering Microsoft Identity solutions Strong experience with Microsoft Entra ID (Azure AD) Excellent knowledge of Active Directory and Hybrid Identity Experience implementing Conditional Access and MFA solutions Strong understanding of authentication and access management principles Experience designing and implementing RBAC models Knowledge of Identity Governance and Privileged Access Management Experience producing technical designs and project documentation Strong troubleshooting and problem-solving skills Excellent client-facing and stakeholder engagement experience Ability to work independently within a remote consultancy environment Technical Skills You should have experience across several of the following technologies and disciplines: Microsoft Entra ID Active Directory Hybrid Identity Microsoft Entra Connect / Cloud Sync Conditional Access Multi-Factor Authentication (MFA) Single Sign-On (SSO) Passwordless Authentication Windows Hello for Business Self-Service Password Reset (SSPR) Role-Based Access Control (RBAC) Identity Governance and Administration (IGA) Privileged Identity Management (PIM) Privileged Access Management (PAM) Microsoft 365 Security Zero Trust Security PowerShell Automation Desirable Certifications The following certifications would be advantageous: SC-300 Microsoft Identity and Access Administrator SC-100 Microsoft Cybersecurity Architect SC-200 Security Operations Analyst AZ-104 Azure Administrator AZ-305 Azure Solutions Architect Equivalent practical experience will also be considered. The Person This role is ideal for someone who: Is passionate about Microsoft Identity and Security technologies Enjoys solving complex technical challenges Takes a consultative and customer-focused approach Builds strong relationships with technical and non-technical stakeholders Communicates clearly and confidently Takes ownership and accountability for delivery Is proactive, organised and detail-oriented Thrives in a remote-first working environment Enjoys continuous learning and professional development Why Apply? £70,000 salary plus benefits Fully remote working Exposure to enterprise-scale Microsoft Identity projects Opportunities to work with the latest Microsoft Security and Identity technologies Ongoing certification and training support Clear career progression Collaborative and supportive consultancy culture Opportunity to influence Identity strategy and client outcomes This is an excellent opportunity for an experienced Identity professional looking to play a key role in delivering modern Identity and Access Management solutions within a growing Microsoft-focused consultancy environment. Services offered by Computappoint Limited are those of an Employment Business and/or Employment Agency in relation to this vacancy. Computappoint do not use AI to filter or assess candidates, we use experienced and dedicated recruiters, who want to match the best people to roles.
Aug 12, 2026
Full time
IAM Consultant Microsoft Identity & Access Management Entra ID Security Salary: £70,000 + Benefits Location: Fully Remote (UK) Type: Permanent, Full-Time Are you an experienced Identity & Access Management professional with a passion for Microsoft technologies? Do you have proven experience designing and delivering Microsoft Identity solutions across Entra ID, Active Directory and Hybrid Identity environments? Are you confident engaging with stakeholders, leading technical workshops and delivering secure, scalable identity solutions that support modern security strategies? If so, this could be an excellent opportunity to join a growing Microsoft-focused consultancy delivering strategic Identity and Security projects across a diverse client portfolio. The Opportunity We are seeking an experienced IAM Consultant to support the design, implementation and optimisation of Identity and Access Management solutions across the Microsoft technology stack. This is a client-facing consultancy role where you will act as a trusted advisor, helping organisations modernise their identity platforms, strengthen security controls and implement best-practice identity governance. Working alongside Architects, Project Managers, Security Consultants and Technical Delivery teams, you will deliver innovative and secure identity solutions while supporting clients throughout their digital transformation journeys. What You Will Be Doing You will be involved in the full project lifecycle, including discovery, design, implementation, migration and handover activities. Key responsibilities include: Delivering Microsoft Identity and Access Management solutions across enterprise environments Leading discovery workshops and technical design sessions Assessing existing identity architectures and security controls Designing and implementing Microsoft Entra ID solutions Supporting Active Directory modernisation and Hybrid Identity deployments Implementing Conditional Access policies and Zero Trust principles Delivering Multi-Factor Authentication (MFA) and Passwordless Authentication solutions Configuring and supporting Single Sign-On (SSO) integrations Designing Joiner, Mover and Leaver (JML) processes Implementing Role-Based Access Control (RBAC) models Supporting Identity Governance and Administration (IGA) initiatives Delivering Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions Developing High-Level and Low-Level Design documentation Supporting migration, testing, cutover and operational handover activities Providing technical guidance and best-practice recommendations to clients Working collaboratively with project teams to deliver successful outcomes What We Are Looking For We are seeking a consultant who can combine strong Microsoft Identity expertise with excellent communication and stakeholder management skills. You should be able to demonstrate: Proven experience delivering Microsoft Identity solutions Strong experience with Microsoft Entra ID (Azure AD) Excellent knowledge of Active Directory and Hybrid Identity Experience implementing Conditional Access and MFA solutions Strong understanding of authentication and access management principles Experience designing and implementing RBAC models Knowledge of Identity Governance and Privileged Access Management Experience producing technical designs and project documentation Strong troubleshooting and problem-solving skills Excellent client-facing and stakeholder engagement experience Ability to work independently within a remote consultancy environment Technical Skills You should have experience across several of the following technologies and disciplines: Microsoft Entra ID Active Directory Hybrid Identity Microsoft Entra Connect / Cloud Sync Conditional Access Multi-Factor Authentication (MFA) Single Sign-On (SSO) Passwordless Authentication Windows Hello for Business Self-Service Password Reset (SSPR) Role-Based Access Control (RBAC) Identity Governance and Administration (IGA) Privileged Identity Management (PIM) Privileged Access Management (PAM) Microsoft 365 Security Zero Trust Security PowerShell Automation Desirable Certifications The following certifications would be advantageous: SC-300 Microsoft Identity and Access Administrator SC-100 Microsoft Cybersecurity Architect SC-200 Security Operations Analyst AZ-104 Azure Administrator AZ-305 Azure Solutions Architect Equivalent practical experience will also be considered. The Person This role is ideal for someone who: Is passionate about Microsoft Identity and Security technologies Enjoys solving complex technical challenges Takes a consultative and customer-focused approach Builds strong relationships with technical and non-technical stakeholders Communicates clearly and confidently Takes ownership and accountability for delivery Is proactive, organised and detail-oriented Thrives in a remote-first working environment Enjoys continuous learning and professional development Why Apply? £70,000 salary plus benefits Fully remote working Exposure to enterprise-scale Microsoft Identity projects Opportunities to work with the latest Microsoft Security and Identity technologies Ongoing certification and training support Clear career progression Collaborative and supportive consultancy culture Opportunity to influence Identity strategy and client outcomes This is an excellent opportunity for an experienced Identity professional looking to play a key role in delivering modern Identity and Access Management solutions within a growing Microsoft-focused consultancy environment. Services offered by Computappoint Limited are those of an Employment Business and/or Employment Agency in relation to this vacancy. Computappoint do not use AI to filter or assess candidates, we use experienced and dedicated recruiters, who want to match the best people to roles.
Technology Resilience / Disaster Recovery Analyst 6-Month Contract Inside IR35 London Hybrid (2 Days Onsite) Our client, a leading global financial services organisation is looking for a Technology Resilience Analyst / DR Analyst to support recovery testing, resilience activities, and operational continuity across a large enterprise technology estate. This is a fantastic opportunity to join a supportive team and play a key role in helping ensure critical systems and services can recover effectively during disruption scenarios. Key Responsibilities Coordinate disaster recovery and failover testing activities. Support resilience and recovery exercises across technology teams. Maintain and improve recovery documentation, procedures, and runbooks. Track testing outcomes, risks, issues, and remediation actions. Produce reporting and support governance and audit activities. Work closely with infrastructure, application, cyber security, and business stakeholders. Experience Required Experience in Disaster Recovery, Technology Resilience, Business Continuity, Service Continuity, or IT Operations. Good understanding of IT infrastructure concepts, including servers, networking, databases, and enterprise systems. Strong stakeholder management and coordination skills. Experience working with documentation, recovery plans, or operational procedures. Excellent organisational skills and attention to detail. Desirable Recovery testing or failover experience. Fusion Risk Management, ServiceNow, or Cutover exposure. Financial services or other regulated industry experience. If the role aligns with your experience please apply with your updated CV
Aug 12, 2026
Contractor
Technology Resilience / Disaster Recovery Analyst 6-Month Contract Inside IR35 London Hybrid (2 Days Onsite) Our client, a leading global financial services organisation is looking for a Technology Resilience Analyst / DR Analyst to support recovery testing, resilience activities, and operational continuity across a large enterprise technology estate. This is a fantastic opportunity to join a supportive team and play a key role in helping ensure critical systems and services can recover effectively during disruption scenarios. Key Responsibilities Coordinate disaster recovery and failover testing activities. Support resilience and recovery exercises across technology teams. Maintain and improve recovery documentation, procedures, and runbooks. Track testing outcomes, risks, issues, and remediation actions. Produce reporting and support governance and audit activities. Work closely with infrastructure, application, cyber security, and business stakeholders. Experience Required Experience in Disaster Recovery, Technology Resilience, Business Continuity, Service Continuity, or IT Operations. Good understanding of IT infrastructure concepts, including servers, networking, databases, and enterprise systems. Strong stakeholder management and coordination skills. Experience working with documentation, recovery plans, or operational procedures. Excellent organisational skills and attention to detail. Desirable Recovery testing or failover experience. Fusion Risk Management, ServiceNow, or Cutover exposure. Financial services or other regulated industry experience. If the role aligns with your experience please apply with your updated CV
About the opportunity Complete the free training, gain a qualification and career guidance - no brainer! Are you ready to launch a career in cyber security? Netcom Training s fully-funded Cyber Security course (NCFE Certificate in Principles of Cyber Security, Level 2) equips you with the practical skills employers are actively seeking. From threat intelligence and security testing to incident response and ethical compliance, you ll gain hands-on experience that prepares you for today s fast-growing cyber security and IT roles. Our learners have gone on to roles such as IT support, second line support, junior development, cyber security analysis and business analyst positions, working with companies across tech, logistics, public services and digital sectors. Complete the with, helping you start your career protecting businesses, data and digital systems. What you ll learn Principles: Understand cyber security principles and core frameworks Threat Intelligence: Develop expertise to identify risks Testing: Conduct cyber security testing, identify vulnerabilities and implement controls Incident Response: Prepare for and respond to cyber security incidents Ethics: Understand legislation and ethical conduct within cyber security Professional Skills: Build professional skills and behaviours for the sector Protection: Gain practical knowledge to protect and secure digital environments Potential Roles: Cyber Security Analyst IT Support Technician Junior Penetration Tester SOC Analyst Eligibility To apply, you must: Live in the Sheffield area Be aged 19 or over Earn below the gross annual wage cap of £24,570 Not currently be undertaking other government-funded training Not be in the UK on a student, graduate, postgraduate, or sponsored visa, or as a dependent Cost This is a fully-funded course with no fees complete the training, gain essential cyber security skills.
Aug 12, 2026
Full time
About the opportunity Complete the free training, gain a qualification and career guidance - no brainer! Are you ready to launch a career in cyber security? Netcom Training s fully-funded Cyber Security course (NCFE Certificate in Principles of Cyber Security, Level 2) equips you with the practical skills employers are actively seeking. From threat intelligence and security testing to incident response and ethical compliance, you ll gain hands-on experience that prepares you for today s fast-growing cyber security and IT roles. Our learners have gone on to roles such as IT support, second line support, junior development, cyber security analysis and business analyst positions, working with companies across tech, logistics, public services and digital sectors. Complete the with, helping you start your career protecting businesses, data and digital systems. What you ll learn Principles: Understand cyber security principles and core frameworks Threat Intelligence: Develop expertise to identify risks Testing: Conduct cyber security testing, identify vulnerabilities and implement controls Incident Response: Prepare for and respond to cyber security incidents Ethics: Understand legislation and ethical conduct within cyber security Professional Skills: Build professional skills and behaviours for the sector Protection: Gain practical knowledge to protect and secure digital environments Potential Roles: Cyber Security Analyst IT Support Technician Junior Penetration Tester SOC Analyst Eligibility To apply, you must: Live in the Sheffield area Be aged 19 or over Earn below the gross annual wage cap of £24,570 Not currently be undertaking other government-funded training Not be in the UK on a student, graduate, postgraduate, or sponsored visa, or as a dependent Cost This is a fully-funded course with no fees complete the training, gain essential cyber security skills.
IT Helpdesk Analyst - 26,000/ 32,000 per annum - Hull Principal IT are working with an industry leading and award-winning managed technology provider that are looking for a 1st line helpdesk analyst to join their team. In this role you will play a vital part in supporting their future strategy. They are looking for someone who is passionate about continuous professional development and has an innovative approach to incorporating new technologies into their operations. The successful candidate will become an integral part of the forward-thinking IT team, undertaking certified and on premise training covering numerous systems and software. You will work full time with the Technical Support Team with your priorities being: Support customer with day-to-day IT issues. Implementing 1st time fixes. Dealing with support requests. Taking inbound calls. Making outbound calls. Desired Skills: Experience with Microsoft 365. Experience with Windows Server. Understanding of Networking. Understanding the best practices of Cyber Security. Understanding the features of Windows 10/11. Confidently troubleshoot a variety of infrastructure/setups. Understanding of Telecoms, Mobile, VoIP. Including their connectivity. The Package: If successful our client is offering a salary of 26,000 - 32,000 per annum, 26 paid holidays plus bank holidays, monthly teams building and social events, ongoing development and training plus many more. How to Apply : If you are interested in hearing more about this 1st Line support vacancy or interested in applying for the role please email me at or contact Principal IT Directly on LinkedIn. INDGH
Aug 12, 2026
Full time
IT Helpdesk Analyst - 26,000/ 32,000 per annum - Hull Principal IT are working with an industry leading and award-winning managed technology provider that are looking for a 1st line helpdesk analyst to join their team. In this role you will play a vital part in supporting their future strategy. They are looking for someone who is passionate about continuous professional development and has an innovative approach to incorporating new technologies into their operations. The successful candidate will become an integral part of the forward-thinking IT team, undertaking certified and on premise training covering numerous systems and software. You will work full time with the Technical Support Team with your priorities being: Support customer with day-to-day IT issues. Implementing 1st time fixes. Dealing with support requests. Taking inbound calls. Making outbound calls. Desired Skills: Experience with Microsoft 365. Experience with Windows Server. Understanding of Networking. Understanding the best practices of Cyber Security. Understanding the features of Windows 10/11. Confidently troubleshoot a variety of infrastructure/setups. Understanding of Telecoms, Mobile, VoIP. Including their connectivity. The Package: If successful our client is offering a salary of 26,000 - 32,000 per annum, 26 paid holidays plus bank holidays, monthly teams building and social events, ongoing development and training plus many more. How to Apply : If you are interested in hearing more about this 1st Line support vacancy or interested in applying for the role please email me at or contact Principal IT Directly on LinkedIn. INDGH
Our client is a leading global specialty (re)insurance business, recognised for its innovative approach to underwriting and strong reputation across international markets. With operations spanning multiple locations, the business focuses on delivering bespoke insurance and reinsurance solutions across a diverse portfolio of specialty risks. Combining underwriting expertise, entrepreneurial thinking, and a collaborative culture, they continue to drive growth while investing in technology, talent, and operational excellence PURPOSE OF THIS ROLE The Senior IT Cyber Governance, Risk & Compliance Analyst will support the development, implementation and oversight of the organisation's IT governance, cyber risk and compliance activities. This role involves supporting IT and cyber risk assessments, compliance with relevant regulatory and control frameworks, audit activity, and the identification and tracking of vulnerabilities, control gaps and remediation actions across IT systems and processes. The Senior IT Cyber Governance, Risk & Compliance Analyst will work closely with internal stakeholders to help ensure that IT and cyber activities are aligned with regulatory expectations, internal policies and good practice. KEY RESPONSIBILITIES Compliance and Risk Management: Support compliance with applicable regulatory, IT, cyber and control frameworks, which may include DORA, ISO 27001, NIST CSF, SOX and Cyber Essentials. Support the evaluation and management of IT, cyber, compliance and security risks across systems, processes and operations. Monitor emerging technology, cyber and operational resilience risks to support proactive risk management and timely escalation. Assist in preparing for and supporting regulatory inspections and internal, external and third-party audits. Support the tracking of cyber risk remediation actions, including actions arising from risk assessments, assurance reviews, incidents, audits, control reviews and control improvement initiatives. Support the maintenance of the cyber risk register, including the capture of risks, issues and remediation actions, and the preparation of updates for governance forums. Support third-party and supplier security assurance activities, including security due diligence, assessment of supplier responses and tracking of supplier remediation actions. Coordinate and evidence user access reviews and privileged access reviews with system owners and the business, supporting the move to tool-based access certification. Perform first-line compliance monitoring and control checks against information security policies and standards, including the tracking of policy exceptions. Policy & Procedure Development: Support the development, implementation and updating of IT risk, cyber security and compliance policies, standards and procedures to ensure alignment with legal, regulatory, control and sound practice requirements. Maintain an up-to-date understanding of applicable regulatory requirements and help implement changes to comply with new or evolving regulations. Assist in developing and delivering internal training and awareness on IT governance, cyber risk and compliance topics. Reporting & Communication: Support the preparation of cyber risk, control and remediation reporting for management and governance forums. Support the development and tracking of key performance indicators (KPIs) related to IT risk and compliance. Support internal breach notification and escalation processes where required, in coordination with Legal, Data Protection and relevant stakeholders, including supporting regulatory reporting where appropriate. SKILLS, QUALIFICATIONS AND EXPERIENCE Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent experience. Relevant certifications such as CRISC, CISA, CISM, ISO 27001 or CISSP, or a willingness to undertake similar, are desirable. Minimum of 5 years' experience in IT governance, risk management, cyber or information security, or a related role, with a strong knowledge of related control and compliance requirements. Working knowledge of key technology areas, including infrastructure, applications, networking, cloud services, vulnerability management, incident management and access controls. Experience supporting audit, regulatory or compliance activities, including evidence coordination, issue tracking and remediation follow-up. Experience with SOX compliance and ITGCs is desirable. Experience in insurance or wider financial services, or another regulated environment, is desirable. Excellent communication skills, with the ability to convey technical information to non-technical stakeholders.
Aug 11, 2026
Contractor
Our client is a leading global specialty (re)insurance business, recognised for its innovative approach to underwriting and strong reputation across international markets. With operations spanning multiple locations, the business focuses on delivering bespoke insurance and reinsurance solutions across a diverse portfolio of specialty risks. Combining underwriting expertise, entrepreneurial thinking, and a collaborative culture, they continue to drive growth while investing in technology, talent, and operational excellence PURPOSE OF THIS ROLE The Senior IT Cyber Governance, Risk & Compliance Analyst will support the development, implementation and oversight of the organisation's IT governance, cyber risk and compliance activities. This role involves supporting IT and cyber risk assessments, compliance with relevant regulatory and control frameworks, audit activity, and the identification and tracking of vulnerabilities, control gaps and remediation actions across IT systems and processes. The Senior IT Cyber Governance, Risk & Compliance Analyst will work closely with internal stakeholders to help ensure that IT and cyber activities are aligned with regulatory expectations, internal policies and good practice. KEY RESPONSIBILITIES Compliance and Risk Management: Support compliance with applicable regulatory, IT, cyber and control frameworks, which may include DORA, ISO 27001, NIST CSF, SOX and Cyber Essentials. Support the evaluation and management of IT, cyber, compliance and security risks across systems, processes and operations. Monitor emerging technology, cyber and operational resilience risks to support proactive risk management and timely escalation. Assist in preparing for and supporting regulatory inspections and internal, external and third-party audits. Support the tracking of cyber risk remediation actions, including actions arising from risk assessments, assurance reviews, incidents, audits, control reviews and control improvement initiatives. Support the maintenance of the cyber risk register, including the capture of risks, issues and remediation actions, and the preparation of updates for governance forums. Support third-party and supplier security assurance activities, including security due diligence, assessment of supplier responses and tracking of supplier remediation actions. Coordinate and evidence user access reviews and privileged access reviews with system owners and the business, supporting the move to tool-based access certification. Perform first-line compliance monitoring and control checks against information security policies and standards, including the tracking of policy exceptions. Policy & Procedure Development: Support the development, implementation and updating of IT risk, cyber security and compliance policies, standards and procedures to ensure alignment with legal, regulatory, control and sound practice requirements. Maintain an up-to-date understanding of applicable regulatory requirements and help implement changes to comply with new or evolving regulations. Assist in developing and delivering internal training and awareness on IT governance, cyber risk and compliance topics. Reporting & Communication: Support the preparation of cyber risk, control and remediation reporting for management and governance forums. Support the development and tracking of key performance indicators (KPIs) related to IT risk and compliance. Support internal breach notification and escalation processes where required, in coordination with Legal, Data Protection and relevant stakeholders, including supporting regulatory reporting where appropriate. SKILLS, QUALIFICATIONS AND EXPERIENCE Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent experience. Relevant certifications such as CRISC, CISA, CISM, ISO 27001 or CISSP, or a willingness to undertake similar, are desirable. Minimum of 5 years' experience in IT governance, risk management, cyber or information security, or a related role, with a strong knowledge of related control and compliance requirements. Working knowledge of key technology areas, including infrastructure, applications, networking, cloud services, vulnerability management, incident management and access controls. Experience supporting audit, regulatory or compliance activities, including evidence coordination, issue tracking and remediation follow-up. Experience with SOX compliance and ITGCs is desirable. Experience in insurance or wider financial services, or another regulated environment, is desirable. Excellent communication skills, with the ability to convey technical information to non-technical stakeholders.
Pontoon is an employment consultancy. We put expertise, energy, and enthusiasm into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents, skills, and unique experience in an inclusive environment that helps them thrive. Job Title: PMO Analyst Location: Warwick / Hybrid Contract Type: 6 months with scope to extend Role Overview We are seeking an experienced PMO Analyst to provide PMO, financial governance and commercial management support across a Cyber Security portfolio. The role will take ownership of a key part of the project management and financial activities currently supported by Engineers and Project Managers. This will include managing financial information, maintaining global trackers, supporting forecasting and spend profiling, and ensuring activities progress effectively through the Procure-to-Pay (P2P) process. The successful candidate will work closely with Project Managers, Engineers, Delivery Leads, Finance, Procurement, Contract Managers and key suppliers. The wider team is split across the UK and US, so some flexibility around working hours may occasionally be required. Key Responsibilities PMO & Programme Governance Provide PMO and analytical support across the Cyber Security portfolio. Maintain portfolio reporting, financial trackers and management information. Work with Project Managers and Delivery Leads to ensure project information is accurate and up to date. Support the preparation of Business Cases, investment sanctions, Closure Reports, stage-gate documentation and other governance artefacts. Track actions, risks, issues and key deliverables across projects. Provide clear and accurate reporting to stakeholders at different levels of seniority. Financial Management & Reporting Extract financial information from core systems and maintain the global portfolio tracker. Work with Delivery Leads and partners to understand project spend profiles and future forecasts. Support budget management, forecasting, actuals, commitments and variance analysis. Manage and report OPEX and CAPEX expenditure. Work closely with Finance Business Partners and Contract Managers to ensure financial information is accurate. Identify financial issues, risks and discrepancies and proactively drive resolution. Provide financial insight to support portfolio and investment decisions. Commercial, Procurement & Supplier Management Manage and coordinate Change Orders (CORs), Purchase Orders and receipting activities. Support the end-to-end P2P process, ensuring purchasing and invoicing activities progress within agreed timescales. Work closely with Procurement, Finance and Contract Managers on commercial and contractual matters. Manage supplier invoicing queries and ensure suppliers meet agreed requirements and deadlines. Be confident challenging suppliers where contractual or process requirements are not being met. Support the management of strategic technology suppliers, including complex or non-standard invoicing arrangements. Act as a key interface between Security, Finance, Procurement, Commercial and Supplier Management teams. Key Skills & Experience Essential Strong experience as a PMO Analyst, Project Analyst, Programme Analyst or Financial PMO. Strong financial management and analytical skills. Experience with OPEX/CAPEX, forecasting, budget control and financial reporting. Good understanding of Purchase Orders, invoicing, receipting and P2P processes. Strong Excel skills, with experience managing complex financial trackers. Experience with Coupa and Ariba. Excellent written and verbal communication skills. Strong command of written English, with the ability to produce high-quality documentation for senior stakeholders. Experience producing formal documentation such as Business Cases and Closure Reports. Strong stakeholder management skills and confidence to challenge suppliers and internal stakeholders. Highly organised, detail-oriented and proactive. Comfortable working with UK and US-based teams and flexible when occasional changes to working hours are required. Desirable Cyber Security experience. Experience within a large-scale technology, IT infrastructure or transformation environment. ServiceNow SPM experience. Experience managing strategic technology suppliers or complex contracts. Experience supporting investment governance and project lifecycle activities. Apply now! Please be advised: if you haven't heard from us within 48 hours, then unfortunately your application has not been successful on this occasion. We may, however, keep your details on file for any suitable future vacancies and contact you accordingly. We use generative AI tools to support our candidate screening process. This helps us ensure a fair, consistent, and efficient experience for all applicants. Rest assured, all final decisions are made by our hiring team, and your application will be reviewed with care and attention.
Aug 11, 2026
Contractor
Pontoon is an employment consultancy. We put expertise, energy, and enthusiasm into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents, skills, and unique experience in an inclusive environment that helps them thrive. Job Title: PMO Analyst Location: Warwick / Hybrid Contract Type: 6 months with scope to extend Role Overview We are seeking an experienced PMO Analyst to provide PMO, financial governance and commercial management support across a Cyber Security portfolio. The role will take ownership of a key part of the project management and financial activities currently supported by Engineers and Project Managers. This will include managing financial information, maintaining global trackers, supporting forecasting and spend profiling, and ensuring activities progress effectively through the Procure-to-Pay (P2P) process. The successful candidate will work closely with Project Managers, Engineers, Delivery Leads, Finance, Procurement, Contract Managers and key suppliers. The wider team is split across the UK and US, so some flexibility around working hours may occasionally be required. Key Responsibilities PMO & Programme Governance Provide PMO and analytical support across the Cyber Security portfolio. Maintain portfolio reporting, financial trackers and management information. Work with Project Managers and Delivery Leads to ensure project information is accurate and up to date. Support the preparation of Business Cases, investment sanctions, Closure Reports, stage-gate documentation and other governance artefacts. Track actions, risks, issues and key deliverables across projects. Provide clear and accurate reporting to stakeholders at different levels of seniority. Financial Management & Reporting Extract financial information from core systems and maintain the global portfolio tracker. Work with Delivery Leads and partners to understand project spend profiles and future forecasts. Support budget management, forecasting, actuals, commitments and variance analysis. Manage and report OPEX and CAPEX expenditure. Work closely with Finance Business Partners and Contract Managers to ensure financial information is accurate. Identify financial issues, risks and discrepancies and proactively drive resolution. Provide financial insight to support portfolio and investment decisions. Commercial, Procurement & Supplier Management Manage and coordinate Change Orders (CORs), Purchase Orders and receipting activities. Support the end-to-end P2P process, ensuring purchasing and invoicing activities progress within agreed timescales. Work closely with Procurement, Finance and Contract Managers on commercial and contractual matters. Manage supplier invoicing queries and ensure suppliers meet agreed requirements and deadlines. Be confident challenging suppliers where contractual or process requirements are not being met. Support the management of strategic technology suppliers, including complex or non-standard invoicing arrangements. Act as a key interface between Security, Finance, Procurement, Commercial and Supplier Management teams. Key Skills & Experience Essential Strong experience as a PMO Analyst, Project Analyst, Programme Analyst or Financial PMO. Strong financial management and analytical skills. Experience with OPEX/CAPEX, forecasting, budget control and financial reporting. Good understanding of Purchase Orders, invoicing, receipting and P2P processes. Strong Excel skills, with experience managing complex financial trackers. Experience with Coupa and Ariba. Excellent written and verbal communication skills. Strong command of written English, with the ability to produce high-quality documentation for senior stakeholders. Experience producing formal documentation such as Business Cases and Closure Reports. Strong stakeholder management skills and confidence to challenge suppliers and internal stakeholders. Highly organised, detail-oriented and proactive. Comfortable working with UK and US-based teams and flexible when occasional changes to working hours are required. Desirable Cyber Security experience. Experience within a large-scale technology, IT infrastructure or transformation environment. ServiceNow SPM experience. Experience managing strategic technology suppliers or complex contracts. Experience supporting investment governance and project lifecycle activities. Apply now! Please be advised: if you haven't heard from us within 48 hours, then unfortunately your application has not been successful on this occasion. We may, however, keep your details on file for any suitable future vacancies and contact you accordingly. We use generative AI tools to support our candidate screening process. This helps us ensure a fair, consistent, and efficient experience for all applicants. Rest assured, all final decisions are made by our hiring team, and your application will be reviewed with care and attention.
IT Security Analyst Location: East Yorkshire area Salary: Competitive, depending on experience Working pattern: Full-time, on-site with collaborative team environment Protect systems. Strengthen resilience. Shape cyber security strategy. An established organisation is investing in its cyber capability and is looking for an IT Security Analyst to play a key role in protecting its systems, data and operations. This is an opportunity to join a collaborative IT environment where security is a business priority, not an afterthought. You will work closely with infrastructure and technical teams to strengthen cyber resilience, respond to threats and continuously improve security practices across the organisation. If you enjoy hands-on security work, problem solving and influencing best practice, this role offers real scope to make an impact. What you will be doing Monitor, develop and optimise SIEM and threat detection systems Investigate security incidents, coordinating response, containment and escalation Conduct vulnerability scanning and support remediation across the IT estate Work closely with infrastructure and technical teams to implement secure configurations Support and maintain security policies, procedures and controls Ensure alignment with recognised frameworks including ISO 27001 and NIST Deliver user awareness initiatives such as phishing simulations and training Stay up to date with emerging threats and recommend improvements to strengthen security posture Support disaster recovery, backup and data protection strategies aligned to business needs What we are looking for Proven experience in a cyber security or infrastructure security role Strong understanding of security principles, threat detection and risk-based thinking Experience with SIEM platforms, vulnerability management tools and detection response technologies such as EDR, XDR or MDR Knowledge of cyber security frameworks such as ISO 27001 or NIST Understanding of data protection legislation including GDPR Ability to investigate incidents, analyse findings and communicate clearly with stakeholders Strong analytical and problem-solving skills Ability to manage priorities and work effectively in a fast-paced environment Full UK driving licence Desirable experience Exposure to cloud platforms such as Azure Security certifications such as CompTIA Security+, CISSP or Microsoft accreditations Experience with ERP systems Scripting or automation knowledge Why apply? Opportunity to influence and improve cyber security across a growing organisation Collaborative environment working alongside infrastructure and technical specialists Exposure to modern security tools, frameworks and evolving technologies A role where your recommendations and expertise will directly shape security strategy Apply now If you are looking for a role where you can take ownership of security improvements and work in a business that values cyber resilience, we would like to hear from you.
Aug 11, 2026
Full time
IT Security Analyst Location: East Yorkshire area Salary: Competitive, depending on experience Working pattern: Full-time, on-site with collaborative team environment Protect systems. Strengthen resilience. Shape cyber security strategy. An established organisation is investing in its cyber capability and is looking for an IT Security Analyst to play a key role in protecting its systems, data and operations. This is an opportunity to join a collaborative IT environment where security is a business priority, not an afterthought. You will work closely with infrastructure and technical teams to strengthen cyber resilience, respond to threats and continuously improve security practices across the organisation. If you enjoy hands-on security work, problem solving and influencing best practice, this role offers real scope to make an impact. What you will be doing Monitor, develop and optimise SIEM and threat detection systems Investigate security incidents, coordinating response, containment and escalation Conduct vulnerability scanning and support remediation across the IT estate Work closely with infrastructure and technical teams to implement secure configurations Support and maintain security policies, procedures and controls Ensure alignment with recognised frameworks including ISO 27001 and NIST Deliver user awareness initiatives such as phishing simulations and training Stay up to date with emerging threats and recommend improvements to strengthen security posture Support disaster recovery, backup and data protection strategies aligned to business needs What we are looking for Proven experience in a cyber security or infrastructure security role Strong understanding of security principles, threat detection and risk-based thinking Experience with SIEM platforms, vulnerability management tools and detection response technologies such as EDR, XDR or MDR Knowledge of cyber security frameworks such as ISO 27001 or NIST Understanding of data protection legislation including GDPR Ability to investigate incidents, analyse findings and communicate clearly with stakeholders Strong analytical and problem-solving skills Ability to manage priorities and work effectively in a fast-paced environment Full UK driving licence Desirable experience Exposure to cloud platforms such as Azure Security certifications such as CompTIA Security+, CISSP or Microsoft accreditations Experience with ERP systems Scripting or automation knowledge Why apply? Opportunity to influence and improve cyber security across a growing organisation Collaborative environment working alongside infrastructure and technical specialists Exposure to modern security tools, frameworks and evolving technologies A role where your recommendations and expertise will directly shape security strategy Apply now If you are looking for a role where you can take ownership of security improvements and work in a business that values cyber resilience, we would like to hear from you.
VolkerWessels UK is a market leading contracting group of five closely linked businesses. We provide integrated and ground-breaking solutions for the civil engineering and construction sectors, with specialisms in rail, highways, airports, marine, defence, energy, water, and environmental infrastructure. We're looking for an experienced 2nd Line ICT Support Analyst to join our growing IT team supporting the Southern Renewals Enterprise (SRE) - one of the UK's most significant rail infrastructure programmes. Based in Blackfriars, with regular travel across project sites in Kent, South London and Sussex, you'll play a key role in supporting over 1,400 users across multiple locations, ensuring they have the technology and support needed to keep this major programme moving. Reporting to the ICT Delivery Manager, you'll provide a blend of 2nd Line and occasional 1st Line support, acting as a trusted technology partner to users across the project. You'll be responsible for resolving technical issues, supporting Microsoft 365 and Azure environments, maintaining user accounts, and ensuring excellent service delivery across the business. About our project The Southern Renewals Enterprise (SRE) is responsible for delivering Network Rail's Southern Region renewals programme representing a programme of works valued at over 9 billion. The Southern Integrated Delivery (SID) alliance brings together AtkinsR alis, Network Rail, Octavius, VolkerFitzpatrick and VolkerRail, combining expertise, innovation and collaboration to deliver a safer, more reliable railway for millions of passengers. About our role Providing end-to-end support across hardware, software, networking and user access issues Delivering primarily 2nd Line support with some 1st Line support responsibilities Installing, configuring and troubleshooting laptops, desktops, mobile devices and business applications Managing user accounts, permissions and access through Active Directory, Entra ID (Azure AD) and Microsoft 365 Supporting onboarding, offboarding and user lifecycle management Logging, managing and resolving support tickets within agreed service levels Escalating complex issues where required and working closely with the wider IT team Supporting IT security initiatives, including MFA, Microsoft Defender and secure access controls Creating user guides, knowledge base articles and technical documentation Delivering user training and promoting cyber security best practice across the business Contributing to continuous improvement initiatives and helping to enhance the overall IT service About you You'll be an experienced IT support professional with strong troubleshooting abilities and a passion for delivering exceptional customer service. Comfortable working independently and managing competing priorities, you'll thrive in a fast-paced environment where no two days are the same. Essential Skills & Experience Previous experience in a 2nd Line IT Support role Strong Microsoft 365 administration experience Experience with Entra ID (Azure AD), Active Directory and user account management Knowledge of Microsoft Defender and security best practices Strong networking, desktop support and troubleshooting skills Excellent communication skills with the ability to support non-technical users Experience creating technical documentation and user guides Strong problem-solving, organisational and time management skills Full UK Driving Licence Desirable Skills Experience with automation tools such as PowerShell, Power Automate (Flow) or Power Apps If your past experience doesn't match perfectly with every requirement of the job description, we still encourage you to apply. You may be just the right candidate for us. Why work with us? VolkerWessels UK operate through five separate, but complementary businesses, working in collaboration and using our specialist skills to deliver an integrated service for our clients. At any one time, our people are working on our sites or in our offices, for around 250 projects across the UK. Everyday we overcome challenges, fulfilling our commitments, no matter what. That's what our business is about, that's how our people find satisfaction in their jobs. We offer competitive rewards and benefits, recognising the value we place on our employees. We offer a range of benefits, including: Competitive salary Competitive annual leave and an additional day off on your birthday Option to buy additional annual leave Private medical care Pension Life Assurance Cycle to Work scheme Shopping and restaurants vouchers, rewards, and discounts Training and development opportunities-comprehensive skills-based training Family friendly polices including enhanced maternity benefits Flexible working opportunities Employee Assistance programme Mental health, physical health, and financial support 24/7 Virtual GP service Fairness, inclusion and respect We believe in pushing boundaries in the pursuit of fairness, inclusion and respect. So, our teams can be comfortable that, whatever their background, VolkerWessels UK is a place where they can be themselves and thrive. If you need support with your application, please contact us at Additional information Note for Recruitment Agencies: Our preference is to hire directly, and we will reach out to our Preferred Supplier List (PSL) agencies if this particular role qualifies for release. We kindly request that you refrain from sending speculative CVs. In the event of speculative CV submissions, no fees will be applicable, and we kindly ask that all inquiries to be directed VolkerWessels UK is committed to maintaining healthy, safe and productive working conditions for its entire staff and therefore a drugs & alcohol screening is mandatory for all.
Aug 11, 2026
Full time
VolkerWessels UK is a market leading contracting group of five closely linked businesses. We provide integrated and ground-breaking solutions for the civil engineering and construction sectors, with specialisms in rail, highways, airports, marine, defence, energy, water, and environmental infrastructure. We're looking for an experienced 2nd Line ICT Support Analyst to join our growing IT team supporting the Southern Renewals Enterprise (SRE) - one of the UK's most significant rail infrastructure programmes. Based in Blackfriars, with regular travel across project sites in Kent, South London and Sussex, you'll play a key role in supporting over 1,400 users across multiple locations, ensuring they have the technology and support needed to keep this major programme moving. Reporting to the ICT Delivery Manager, you'll provide a blend of 2nd Line and occasional 1st Line support, acting as a trusted technology partner to users across the project. You'll be responsible for resolving technical issues, supporting Microsoft 365 and Azure environments, maintaining user accounts, and ensuring excellent service delivery across the business. About our project The Southern Renewals Enterprise (SRE) is responsible for delivering Network Rail's Southern Region renewals programme representing a programme of works valued at over 9 billion. The Southern Integrated Delivery (SID) alliance brings together AtkinsR alis, Network Rail, Octavius, VolkerFitzpatrick and VolkerRail, combining expertise, innovation and collaboration to deliver a safer, more reliable railway for millions of passengers. About our role Providing end-to-end support across hardware, software, networking and user access issues Delivering primarily 2nd Line support with some 1st Line support responsibilities Installing, configuring and troubleshooting laptops, desktops, mobile devices and business applications Managing user accounts, permissions and access through Active Directory, Entra ID (Azure AD) and Microsoft 365 Supporting onboarding, offboarding and user lifecycle management Logging, managing and resolving support tickets within agreed service levels Escalating complex issues where required and working closely with the wider IT team Supporting IT security initiatives, including MFA, Microsoft Defender and secure access controls Creating user guides, knowledge base articles and technical documentation Delivering user training and promoting cyber security best practice across the business Contributing to continuous improvement initiatives and helping to enhance the overall IT service About you You'll be an experienced IT support professional with strong troubleshooting abilities and a passion for delivering exceptional customer service. Comfortable working independently and managing competing priorities, you'll thrive in a fast-paced environment where no two days are the same. Essential Skills & Experience Previous experience in a 2nd Line IT Support role Strong Microsoft 365 administration experience Experience with Entra ID (Azure AD), Active Directory and user account management Knowledge of Microsoft Defender and security best practices Strong networking, desktop support and troubleshooting skills Excellent communication skills with the ability to support non-technical users Experience creating technical documentation and user guides Strong problem-solving, organisational and time management skills Full UK Driving Licence Desirable Skills Experience with automation tools such as PowerShell, Power Automate (Flow) or Power Apps If your past experience doesn't match perfectly with every requirement of the job description, we still encourage you to apply. You may be just the right candidate for us. Why work with us? VolkerWessels UK operate through five separate, but complementary businesses, working in collaboration and using our specialist skills to deliver an integrated service for our clients. At any one time, our people are working on our sites or in our offices, for around 250 projects across the UK. Everyday we overcome challenges, fulfilling our commitments, no matter what. That's what our business is about, that's how our people find satisfaction in their jobs. We offer competitive rewards and benefits, recognising the value we place on our employees. We offer a range of benefits, including: Competitive salary Competitive annual leave and an additional day off on your birthday Option to buy additional annual leave Private medical care Pension Life Assurance Cycle to Work scheme Shopping and restaurants vouchers, rewards, and discounts Training and development opportunities-comprehensive skills-based training Family friendly polices including enhanced maternity benefits Flexible working opportunities Employee Assistance programme Mental health, physical health, and financial support 24/7 Virtual GP service Fairness, inclusion and respect We believe in pushing boundaries in the pursuit of fairness, inclusion and respect. So, our teams can be comfortable that, whatever their background, VolkerWessels UK is a place where they can be themselves and thrive. If you need support with your application, please contact us at Additional information Note for Recruitment Agencies: Our preference is to hire directly, and we will reach out to our Preferred Supplier List (PSL) agencies if this particular role qualifies for release. We kindly request that you refrain from sending speculative CVs. In the event of speculative CV submissions, no fees will be applicable, and we kindly ask that all inquiries to be directed VolkerWessels UK is committed to maintaining healthy, safe and productive working conditions for its entire staff and therefore a drugs & alcohol screening is mandatory for all.
hackajob is collaborating with Made Tech to connect them with exceptional professionals for this role. Made Tech helps UK public sector organisations build and run secure, user-centred digital services. Our Cyber practice works directly with government departments, agencies, and other public bodies - embedding alongside client teams to raise their security capability, not just deliver a report and leave. As a Senior Security Analyst, you'll be a core part of that practice, operating in a security operations context where the stakes are real: the systems we protect carry sensitive public data and underpin services that people depend on. This is a hands-on technical role with genuine scope and influence. You'll lead threat hunts and intrusion investigations, author and tune detection content, and help your team respond to incidents in a way that leaves things better than you found them. You'll translate threat intelligence into actionable detections, align your work to frameworks like the NCSC Cyber Assessment Framework and GovAssure, and communicate clearly with client security stakeholders who need to understand what's happening and why it matters. You'll own significant pieces of the SOC's work end-to-end - not just executing tasks, but making considered decisions and being clear about the trade-offs. At Senior level, though, the role is about more than your own output. You'll help junior analysts develop their triage tradecraft, normalise pairing on incident response, contribute to shared detection standards across the practice, and model the kind of blameless, collaborative culture that makes a security team genuinely effective. If you're looking for a role where you can grow technically, build real influence within a team, and do meaningful work for the public sector, this is it. Key responsibilities Lead threat hunts and intrusion investigations - form and test hypotheses, map adversary activity against MITRE ATT&CK, perform forensic artefact analysis, and establish scope and root cause clearly enough that the team and client can act on your findings. Author, tune, and peer-review detection content - treat detections as code (version-controlled, reviewed), translate threat intelligence into new rules, and contribute to iterative improvement of the SIEM ruleset; onboard new log sources, including cloud and application feeds, to close coverage gaps. Own sub-cycles of the intelligence lifecycle - run structured collection against defined requirements, track actor TTPs, manage indicator lifecycles, and produce situational-awareness products that inform both detection priorities and client risk decisions. Lead incident response and drive improvement - co-ordinate containment across engineering and analyst teams, communicate incident detail clearly to client stakeholders, and turn every incident into improved detection content, hardening, or runbook coverage; design for resilience by anticipating failure modes and ensuring systems degrade gracefully. Build SOAR playbooks and auto-triage - identify toil and repetition in analyst workflows, and build automation that saves the team time and improves consistency without removing human judgement where it matters. Align security operations to UK public sector standards - ensure investigations, evidence handling, and detection coverage reflect NCSC CAF Objective C, GovAssure requirements, and lawful-monitoring obligations; feed gaps back into risk governance. Mentor junior analysts and raise team standards - pair deliberately on complex investigations, review triage work, share adversary tradecraft with the team, and help create an environment where people feel safe raising concerns and learning from mistakes. Contribute to the practice beyond your immediate engagement - improve shared SOC standards and onboarding documentation, turn good solutions into reusable playbooks and accelerators the next team can pick up, contribute detection content to practice-level repositories, and engage with cross-government security communities such as NCSC CISP and relevant ISACs. Skills, knowledge and expertise Essential Hold one of the following - Systems Security Certified Practitioner (SSCP), CompTIA Security+, or an equivalent foundational operational security credential expected of Senior SOC analysts. Desirable Certifications that would strengthen your application: Certified Cloud Security Professional (CCSP) CompTIA Advanced Security Practitioner (CASP+) HTB Certified Defensive Security Analyst (HTB CDSA) Capabilities that set strong applications apart: Experience applying structured analytical techniques - ACH, key-assumptions checks, or similar, to produce rigorous, bias-resistant intelligence assessments, and comfort peer-reviewing others' analytic tradecraft. Working knowledge of cloud security event investigation and cloud detection tuning, particularly across AWS, Azure, or GCP environments, including understanding of infrastructure-level telemetry. Experience framing security findings in risk terms for non-technical stakeholders - communicating likelihood, impact, and recommended treatment clearly, and reflecting asset criticality and threat context in prioritisation decisions. Evidence of building or improving SOAR playbooks, automated triage workflows, or equivalent automation that reduced analyst toil in a SOC or detection-engineering context. Familiarity with UK government security frameworks - in particular the NCSC CAF, GovAssure, and HMG Security Policy Framework - and experience aligning detection or response work to those standards in a government or regulated environment. Experience working within an agile or Kanban-based team model, contributing to workflow improvement, running or participating in retrospectives, and helping the team improve its own practices - not just delivering within them. Experience acting as a trusted working-level contact for client security stakeholders - anchoring on their actual outcomes, raising concerns or opportunities proactively, and contributing subject-matter expertise to proposals or bids. Tools and practice familiarity: Hands-on experience with at least one major SIEM platform (for example, Splunk, Microsoft Sentinel, or Elastic Security) including writing and tuning detection rules. Familiarity with threat intelligence platforms, OSINT tooling, or indicator lifecycle management in an operational context. Made Tech sponsors attainment of recognised cyber certifications for staff in scope. If you don't yet hold the listed credentials but are actively working toward them, or can demonstrate equivalent capability through experience, we'd encourage you to apply. Job benefits SC Eligibility An increasing number of our customers are specifying a minimum of SC (security check) clearance in order to work on their projects. As a result, we're looking for all successful candidates for this role to have eligibility. Eligibility for SC requires 5 years' UK residency and 5 year' employment history (or back to full-time education). Please note that if at any point during the interview process it is apparent that you may not be eligible for SC, we won't be able to progress your application and we will contact you to let you know why. Support in applying If you need this job description in another format, or other support in applying, please email . We believe we can use tech to make public services better. We also believe this can happen best when our own team represents the society that actually uses the services we work on. We're collectively continuing to grow a culture that is happy, healthy, safe and inspiring for people of all backgrounds and experiences, so we encourage people from underrepresented groups to apply for roles with us. When you apply, we'll put you in touch with a member of our talent team who can help with any needs or adjustments we may need to make to help with your application. We've put together this blog as a resource to share more about reasonable adjustments and some examples of what this could include. We also welcome any feedback on how we can improve the experience for future candidates. Life at Made Tech We're committed to building a happy, inclusive and diverse workforce. You can get a sense of what it's like working here from our blog, where we talk about mental health, communities of practice and neurodiversity as well as our client work and best practice. We're committed to building a happy, inclusive and diverse workforce. You can get a sense of what it's like working here from our blog, where we talk about mental health, communities of practice and neurodiversity (as well as our client work and best practice). Like many organisations, we use Slack to foster a sense of community and connection. As well as special interest groups such as music, food and pets, we also have 10+ Slack channels dedicated to specific communities, allies, and identities as well as dedicated learning spaces called communities of practice (COPs). If you'd like to speak to someone from one of these groups about their experience as an employee, please do let a member of the Made Tech talent team know. We are always listening to our growing teams and evolving the benefits available to our people. As we scale, as do our benefits and we are scaling quickly . click apply for full job details
Aug 11, 2026
Full time
hackajob is collaborating with Made Tech to connect them with exceptional professionals for this role. Made Tech helps UK public sector organisations build and run secure, user-centred digital services. Our Cyber practice works directly with government departments, agencies, and other public bodies - embedding alongside client teams to raise their security capability, not just deliver a report and leave. As a Senior Security Analyst, you'll be a core part of that practice, operating in a security operations context where the stakes are real: the systems we protect carry sensitive public data and underpin services that people depend on. This is a hands-on technical role with genuine scope and influence. You'll lead threat hunts and intrusion investigations, author and tune detection content, and help your team respond to incidents in a way that leaves things better than you found them. You'll translate threat intelligence into actionable detections, align your work to frameworks like the NCSC Cyber Assessment Framework and GovAssure, and communicate clearly with client security stakeholders who need to understand what's happening and why it matters. You'll own significant pieces of the SOC's work end-to-end - not just executing tasks, but making considered decisions and being clear about the trade-offs. At Senior level, though, the role is about more than your own output. You'll help junior analysts develop their triage tradecraft, normalise pairing on incident response, contribute to shared detection standards across the practice, and model the kind of blameless, collaborative culture that makes a security team genuinely effective. If you're looking for a role where you can grow technically, build real influence within a team, and do meaningful work for the public sector, this is it. Key responsibilities Lead threat hunts and intrusion investigations - form and test hypotheses, map adversary activity against MITRE ATT&CK, perform forensic artefact analysis, and establish scope and root cause clearly enough that the team and client can act on your findings. Author, tune, and peer-review detection content - treat detections as code (version-controlled, reviewed), translate threat intelligence into new rules, and contribute to iterative improvement of the SIEM ruleset; onboard new log sources, including cloud and application feeds, to close coverage gaps. Own sub-cycles of the intelligence lifecycle - run structured collection against defined requirements, track actor TTPs, manage indicator lifecycles, and produce situational-awareness products that inform both detection priorities and client risk decisions. Lead incident response and drive improvement - co-ordinate containment across engineering and analyst teams, communicate incident detail clearly to client stakeholders, and turn every incident into improved detection content, hardening, or runbook coverage; design for resilience by anticipating failure modes and ensuring systems degrade gracefully. Build SOAR playbooks and auto-triage - identify toil and repetition in analyst workflows, and build automation that saves the team time and improves consistency without removing human judgement where it matters. Align security operations to UK public sector standards - ensure investigations, evidence handling, and detection coverage reflect NCSC CAF Objective C, GovAssure requirements, and lawful-monitoring obligations; feed gaps back into risk governance. Mentor junior analysts and raise team standards - pair deliberately on complex investigations, review triage work, share adversary tradecraft with the team, and help create an environment where people feel safe raising concerns and learning from mistakes. Contribute to the practice beyond your immediate engagement - improve shared SOC standards and onboarding documentation, turn good solutions into reusable playbooks and accelerators the next team can pick up, contribute detection content to practice-level repositories, and engage with cross-government security communities such as NCSC CISP and relevant ISACs. Skills, knowledge and expertise Essential Hold one of the following - Systems Security Certified Practitioner (SSCP), CompTIA Security+, or an equivalent foundational operational security credential expected of Senior SOC analysts. Desirable Certifications that would strengthen your application: Certified Cloud Security Professional (CCSP) CompTIA Advanced Security Practitioner (CASP+) HTB Certified Defensive Security Analyst (HTB CDSA) Capabilities that set strong applications apart: Experience applying structured analytical techniques - ACH, key-assumptions checks, or similar, to produce rigorous, bias-resistant intelligence assessments, and comfort peer-reviewing others' analytic tradecraft. Working knowledge of cloud security event investigation and cloud detection tuning, particularly across AWS, Azure, or GCP environments, including understanding of infrastructure-level telemetry. Experience framing security findings in risk terms for non-technical stakeholders - communicating likelihood, impact, and recommended treatment clearly, and reflecting asset criticality and threat context in prioritisation decisions. Evidence of building or improving SOAR playbooks, automated triage workflows, or equivalent automation that reduced analyst toil in a SOC or detection-engineering context. Familiarity with UK government security frameworks - in particular the NCSC CAF, GovAssure, and HMG Security Policy Framework - and experience aligning detection or response work to those standards in a government or regulated environment. Experience working within an agile or Kanban-based team model, contributing to workflow improvement, running or participating in retrospectives, and helping the team improve its own practices - not just delivering within them. Experience acting as a trusted working-level contact for client security stakeholders - anchoring on their actual outcomes, raising concerns or opportunities proactively, and contributing subject-matter expertise to proposals or bids. Tools and practice familiarity: Hands-on experience with at least one major SIEM platform (for example, Splunk, Microsoft Sentinel, or Elastic Security) including writing and tuning detection rules. Familiarity with threat intelligence platforms, OSINT tooling, or indicator lifecycle management in an operational context. Made Tech sponsors attainment of recognised cyber certifications for staff in scope. If you don't yet hold the listed credentials but are actively working toward them, or can demonstrate equivalent capability through experience, we'd encourage you to apply. Job benefits SC Eligibility An increasing number of our customers are specifying a minimum of SC (security check) clearance in order to work on their projects. As a result, we're looking for all successful candidates for this role to have eligibility. Eligibility for SC requires 5 years' UK residency and 5 year' employment history (or back to full-time education). Please note that if at any point during the interview process it is apparent that you may not be eligible for SC, we won't be able to progress your application and we will contact you to let you know why. Support in applying If you need this job description in another format, or other support in applying, please email . We believe we can use tech to make public services better. We also believe this can happen best when our own team represents the society that actually uses the services we work on. We're collectively continuing to grow a culture that is happy, healthy, safe and inspiring for people of all backgrounds and experiences, so we encourage people from underrepresented groups to apply for roles with us. When you apply, we'll put you in touch with a member of our talent team who can help with any needs or adjustments we may need to make to help with your application. We've put together this blog as a resource to share more about reasonable adjustments and some examples of what this could include. We also welcome any feedback on how we can improve the experience for future candidates. Life at Made Tech We're committed to building a happy, inclusive and diverse workforce. You can get a sense of what it's like working here from our blog, where we talk about mental health, communities of practice and neurodiversity as well as our client work and best practice. We're committed to building a happy, inclusive and diverse workforce. You can get a sense of what it's like working here from our blog, where we talk about mental health, communities of practice and neurodiversity (as well as our client work and best practice). Like many organisations, we use Slack to foster a sense of community and connection. As well as special interest groups such as music, food and pets, we also have 10+ Slack channels dedicated to specific communities, allies, and identities as well as dedicated learning spaces called communities of practice (COPs). If you'd like to speak to someone from one of these groups about their experience as an employee, please do let a member of the Made Tech talent team know. We are always listening to our growing teams and evolving the benefits available to our people. As we scale, as do our benefits and we are scaling quickly . click apply for full job details
CYBER SECURITY ANALYST (SOC ANALYST) CCL Global are currently recruiting for a Cyber Security Analyst to support a high-security Security Operations Centre (SOC) environment within a critical national infrastructure setting. This role will play a key part in protecting enterprise systems by monitoring, detecting, analysing, and responding to cyber security threats in real time. Type of Contract: Contract (Inside IR35) Location: Bath (100% office) Contract Length: Until April 2027 Key Duties Will Include: Monitor, investigate, and triage security events and alerts within a live SOC environment. Analyse security incidents to determine scope, impact, and priority, ensuring appropriate escalation and response. Manage end-to-end incident response activities from detection through to resolution. Support the development and enhancement of SIEM use cases, detection rules, analytics, and playbooks. Conduct real-time analysis of logs and security data to identify malicious activity or policy violations. Work closely with technical teams to support containment and remediation of security incidents. Support continuous improvement of SOC processes, tooling, and detection capability. Contribute to security reporting, documentation, and operational procedures. Requirements: Proven experience working as a SOC Analyst (Tier 2/3) within enterprise or critical environments. Strong experience with SIEM technologies (e.g. ArcSight or similar), including configuration and engineering support. Ability to triage security alerts and accurately assess risk, impact, and priority. Experience managing security incidents in real time within a SOC environment. Strong understanding of networking, cloud environments, and enterprise IT infrastructure. Experience creating and tuning detection use cases, analytics, and playbooks. Knowledge of Information Security principles, threat detection, and incident response practices. Familiarity with Microsoft technologies, Linux systems, and security tooling. Understanding of security frameworks and data protection principles including GDPR and the Data Protection Act 2018. Experience working within an ITIL-based service environment. Desirable: Industry-recognised cyber security certifications (e.g. SANS, ISC2). Experience within Defence, Government, or high-security environments. Degree in Cyber Security, Computing, Engineering, or related discipline. Experience in a senior SOC or lead analyst capacity.
Aug 11, 2026
Contractor
CYBER SECURITY ANALYST (SOC ANALYST) CCL Global are currently recruiting for a Cyber Security Analyst to support a high-security Security Operations Centre (SOC) environment within a critical national infrastructure setting. This role will play a key part in protecting enterprise systems by monitoring, detecting, analysing, and responding to cyber security threats in real time. Type of Contract: Contract (Inside IR35) Location: Bath (100% office) Contract Length: Until April 2027 Key Duties Will Include: Monitor, investigate, and triage security events and alerts within a live SOC environment. Analyse security incidents to determine scope, impact, and priority, ensuring appropriate escalation and response. Manage end-to-end incident response activities from detection through to resolution. Support the development and enhancement of SIEM use cases, detection rules, analytics, and playbooks. Conduct real-time analysis of logs and security data to identify malicious activity or policy violations. Work closely with technical teams to support containment and remediation of security incidents. Support continuous improvement of SOC processes, tooling, and detection capability. Contribute to security reporting, documentation, and operational procedures. Requirements: Proven experience working as a SOC Analyst (Tier 2/3) within enterprise or critical environments. Strong experience with SIEM technologies (e.g. ArcSight or similar), including configuration and engineering support. Ability to triage security alerts and accurately assess risk, impact, and priority. Experience managing security incidents in real time within a SOC environment. Strong understanding of networking, cloud environments, and enterprise IT infrastructure. Experience creating and tuning detection use cases, analytics, and playbooks. Knowledge of Information Security principles, threat detection, and incident response practices. Familiarity with Microsoft technologies, Linux systems, and security tooling. Understanding of security frameworks and data protection principles including GDPR and the Data Protection Act 2018. Experience working within an ITIL-based service environment. Desirable: Industry-recognised cyber security certifications (e.g. SANS, ISC2). Experience within Defence, Government, or high-security environments. Degree in Cyber Security, Computing, Engineering, or related discipline. Experience in a senior SOC or lead analyst capacity.
We are supporting a leading technology organisation in the search for a Cyber Security Analyst to join its Security Operations team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying, investigating, and responding to security threats across both cloud-based and on-premise environments. Key Responsibilities Monitor security events, alerts, and incidents across enterprise networks and systems. Manage security cases and tickets through to resolution. Analyse logs and data from SIEM platforms, security monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation findings. Identify and address false positives, providing feedback to improve detection capabilities. Support the development and optimisation of security monitoring rules and processes. Analyse data sets to identify security gaps and recommend improvements. Skills & Experience Essential Degree in Information Security, Computer Science, Digital Forensics, or a related discipline, or equivalent industry experience. 3+ years' experience in cyber security, security operations, threat analysis, or security monitoring. Experience investigating security incidents and working within a Security Operations Centre environment. Understanding of incident response processes, security event triage, and escalation procedures. Strong knowledge of networking protocols, authentication mechanisms, and common attack techniques. Good understanding of information security principles, technologies, and best practices. Experience securing and supporting Windows and Linux environments. Excellent written and verbal communication skills. Desirable Industry certifications such as GCIH, GCIA, or equivalent cyber security qualifications. Experience working with SIEM platforms and security monitoring technologies. Knowledge of Oracle and virtualised environments. What's on Offer Opportunity to work within a highly skilled cyber security team. Exposure to complex security environments and emerging threats. Ongoing professional development and training opportunities. Collaborative and supportive working culture. Competitive salary, bonus and benefits package. This is an excellent opportunity for a Cyber Security Analyst looking to further develop their incident response, threat analysis, and security operations expertise within a technically challenging environment. TT
Aug 11, 2026
Full time
We are supporting a leading technology organisation in the search for a Cyber Security Analyst to join its Security Operations team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying, investigating, and responding to security threats across both cloud-based and on-premise environments. Key Responsibilities Monitor security events, alerts, and incidents across enterprise networks and systems. Manage security cases and tickets through to resolution. Analyse logs and data from SIEM platforms, security monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation findings. Identify and address false positives, providing feedback to improve detection capabilities. Support the development and optimisation of security monitoring rules and processes. Analyse data sets to identify security gaps and recommend improvements. Skills & Experience Essential Degree in Information Security, Computer Science, Digital Forensics, or a related discipline, or equivalent industry experience. 3+ years' experience in cyber security, security operations, threat analysis, or security monitoring. Experience investigating security incidents and working within a Security Operations Centre environment. Understanding of incident response processes, security event triage, and escalation procedures. Strong knowledge of networking protocols, authentication mechanisms, and common attack techniques. Good understanding of information security principles, technologies, and best practices. Experience securing and supporting Windows and Linux environments. Excellent written and verbal communication skills. Desirable Industry certifications such as GCIH, GCIA, or equivalent cyber security qualifications. Experience working with SIEM platforms and security monitoring technologies. Knowledge of Oracle and virtualised environments. What's on Offer Opportunity to work within a highly skilled cyber security team. Exposure to complex security environments and emerging threats. Ongoing professional development and training opportunities. Collaborative and supportive working culture. Competitive salary, bonus and benefits package. This is an excellent opportunity for a Cyber Security Analyst looking to further develop their incident response, threat analysis, and security operations expertise within a technically challenging environment. TT
Title: Senior Security Operations Analyst Location: Hybrid - Manchester or Leeds 3 days per week, 2 days remote Salary: From 54,000 Who we are: interactive investor is an award-winning investment platform that puts its customers in control of their financial future. We've been helping investors for nearly 30 years. We've seen market highs and lows and been resilient throughout. We're now the UK's number one flat-fee investment platform, with assets under administration approaching 75 billion and over 500,000 customers. For a simple, flat monthly fee we provide a secure home for your pensions, ISAs and investments. We offer a wide choice of over 20,000 UK and international investment options, including shares, funds, trusts and ETFs. We also bring impartial, expert content from our award-winning financial journalists, highly engaged community of investors, and daily newsletters and insights. Purpose of the Role We are recruiting for a Senior Security Operations Analyst to join the Information Security Team to support our continued growth. You will help maintain and protect our key business assets from threats and risks by monitoring, detecting, analysing, and responding to security incidents. Key Responsibilities Oversee the day to day running of our SIEM solution (Chronicle) working closely with Infrastructure, Networks, DevOps and our outsourced Security Operations Centre (SOC) team. Define and facilitate the creation of new rules or fine-tuning existing rules within SIEM. Investigate SIEM alerts and other security incidents through to completion. Work within the Information Security Team to provide a dynamic monitoring and incident response capability. Monitor and analyse security events identifying trends, attacks, and potential threats. Identify and raise problems. Communicate & escalate these via the appropriate channels and track through to remediation. Monitoring and gathering Threat intelligence and coordinating subsequent Threat Hunting. Assess security threats from multiple sources and plan mitigation/remediation. Gather relevant data, analyse and respond to cyber security incidents. Research and stay current on the latest trends, best practices, and technology developments for all things cyber. Assist in the design, management, and documentation of security policies, solutions, standards, and processes. Designing effective test methods for logical security controls. Day to day management of Endpoint Detection and Response (EDR). REQUIREMENTS: A good understanding of technical and network security requirements. Ability to proactively identify control weakness and vulnerabilities. Knowledge and use of SIEM tooling i.e., Splunk, Chronicle, Sentinel etc and event log data. Experience in understanding Firewalls and IDS/IPS and Windows Security Event Logs. Strong verbal and written communication skills with the ability to articulate complex ideas in easy to comprehend business terms. Comfortable taking ownership for own work, identifying the need for action whilst working effectively within a team. Ability to quickly understand existing infrastructure, network security principles, data flow and security architectures. Knowledge of the fundamentals of cloud infrastructure as well as traditional technologies. Degree in IT / Cyber preferred or industry recognised qualification. BENEFITS: Group Personal Pension Plan - 8% employer contribution and 4% employee contribution Life Assurance and Group Income Protection Private Medical Insurance - Provided by Bupa 25 Days Annual Leave, plus bank holidays Staff Discounts on our investment products Personal & Well-being Fund - Supporting your physical and mental wellness Retail Discounts - Savings at a wide range of high street and online retailers Voluntary Flexible Benefits - Tailor your benefits to suit your lifestyle If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Aug 11, 2026
Full time
Title: Senior Security Operations Analyst Location: Hybrid - Manchester or Leeds 3 days per week, 2 days remote Salary: From 54,000 Who we are: interactive investor is an award-winning investment platform that puts its customers in control of their financial future. We've been helping investors for nearly 30 years. We've seen market highs and lows and been resilient throughout. We're now the UK's number one flat-fee investment platform, with assets under administration approaching 75 billion and over 500,000 customers. For a simple, flat monthly fee we provide a secure home for your pensions, ISAs and investments. We offer a wide choice of over 20,000 UK and international investment options, including shares, funds, trusts and ETFs. We also bring impartial, expert content from our award-winning financial journalists, highly engaged community of investors, and daily newsletters and insights. Purpose of the Role We are recruiting for a Senior Security Operations Analyst to join the Information Security Team to support our continued growth. You will help maintain and protect our key business assets from threats and risks by monitoring, detecting, analysing, and responding to security incidents. Key Responsibilities Oversee the day to day running of our SIEM solution (Chronicle) working closely with Infrastructure, Networks, DevOps and our outsourced Security Operations Centre (SOC) team. Define and facilitate the creation of new rules or fine-tuning existing rules within SIEM. Investigate SIEM alerts and other security incidents through to completion. Work within the Information Security Team to provide a dynamic monitoring and incident response capability. Monitor and analyse security events identifying trends, attacks, and potential threats. Identify and raise problems. Communicate & escalate these via the appropriate channels and track through to remediation. Monitoring and gathering Threat intelligence and coordinating subsequent Threat Hunting. Assess security threats from multiple sources and plan mitigation/remediation. Gather relevant data, analyse and respond to cyber security incidents. Research and stay current on the latest trends, best practices, and technology developments for all things cyber. Assist in the design, management, and documentation of security policies, solutions, standards, and processes. Designing effective test methods for logical security controls. Day to day management of Endpoint Detection and Response (EDR). REQUIREMENTS: A good understanding of technical and network security requirements. Ability to proactively identify control weakness and vulnerabilities. Knowledge and use of SIEM tooling i.e., Splunk, Chronicle, Sentinel etc and event log data. Experience in understanding Firewalls and IDS/IPS and Windows Security Event Logs. Strong verbal and written communication skills with the ability to articulate complex ideas in easy to comprehend business terms. Comfortable taking ownership for own work, identifying the need for action whilst working effectively within a team. Ability to quickly understand existing infrastructure, network security principles, data flow and security architectures. Knowledge of the fundamentals of cloud infrastructure as well as traditional technologies. Degree in IT / Cyber preferred or industry recognised qualification. BENEFITS: Group Personal Pension Plan - 8% employer contribution and 4% employee contribution Life Assurance and Group Income Protection Private Medical Insurance - Provided by Bupa 25 Days Annual Leave, plus bank holidays Staff Discounts on our investment products Personal & Well-being Fund - Supporting your physical and mental wellness Retail Discounts - Savings at a wide range of high street and online retailers Voluntary Flexible Benefits - Tailor your benefits to suit your lifestyle If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Our client Scottish Power are looking for a Security Operations Lead for an initial 12 month contract role, which will in all likelihood extend further. This is based at the client offices in Glasgow, working hybrid, 3 days in the office. SP Energy Networks (SPEN) has kicked off an ambitious security transformation programme to transparently reduce risk, achieve compliance with NIS regulations and deliver a cyber resilient business, the Security Operations Lead will be essential in achieving our goals. The Security Operations Lead will be a subject matter expert on security incident detection and response. They will drive continuous improvement across the outsourced SOC and in-house SOC teams of analysts and engineers. Youll have experience of configuring SIEM tools, onboarding sources, writing processes and alerts, understanding business environments and managing incidents affecting applications and infrastructure across a varied technology stack spanning operational technology and information technology environments. You ll also be able to undertake post incident reviews to identify root causes and put follow-up mitigations in place. The postholder will work within a security operations team containing various cyber security functions such as threat intelligence, identity & access management, response & recovery and vulnerability management. What Youll be doing Support the Security Operations Manager in the running of BAU activities Implement and maintain 3rd line security incident / event management, escalation and technical response process and investigate suspected and actual incidents / events. Acting as a key escalation point in the team to the relevant team/individual Design, implement, manage, monitor, and upgrade security measures for the protections of the information systems and networks Identify and feedback any potential improvements from a cyber perspective to OT systems and infrastructure Ensuring incident identification, assessment, quantification, reporting, communication, mitigation and monitoring Ensuring compliance to policy, process, and procedure adherence and process improvisation to achieve operational objectives Revise and develop processes to strengthen the current Security Operations Framework Review policies and highlight the challenges in managing SLAs Ensuring daily management, administration & maintenance of security technology to achieve operational effectiveness Ensure the orchestration and integration of security services and platforms to maximise its usage and coverage The role will be integrated into an active and ambitious global cyber security function, contributing to SPEN s cyber security purpose of delivering cyber resilient OT and IT, to enable a safe and reliable electricity supply to customers What Youll bring Skills and experience in understanding at a technical level security operations. Awareness of key legislation and regulation impacting IT/OT General Control requirements in an energy utility. Experience in working within a SOC. Record of academic achievement, including some form of recognised qualification from further education, such as a degree or diploma. Good oral and written communication skills. Must be a proven team player to work, promote and consolidate efficient team working relationships.
Aug 11, 2026
Contractor
Our client Scottish Power are looking for a Security Operations Lead for an initial 12 month contract role, which will in all likelihood extend further. This is based at the client offices in Glasgow, working hybrid, 3 days in the office. SP Energy Networks (SPEN) has kicked off an ambitious security transformation programme to transparently reduce risk, achieve compliance with NIS regulations and deliver a cyber resilient business, the Security Operations Lead will be essential in achieving our goals. The Security Operations Lead will be a subject matter expert on security incident detection and response. They will drive continuous improvement across the outsourced SOC and in-house SOC teams of analysts and engineers. Youll have experience of configuring SIEM tools, onboarding sources, writing processes and alerts, understanding business environments and managing incidents affecting applications and infrastructure across a varied technology stack spanning operational technology and information technology environments. You ll also be able to undertake post incident reviews to identify root causes and put follow-up mitigations in place. The postholder will work within a security operations team containing various cyber security functions such as threat intelligence, identity & access management, response & recovery and vulnerability management. What Youll be doing Support the Security Operations Manager in the running of BAU activities Implement and maintain 3rd line security incident / event management, escalation and technical response process and investigate suspected and actual incidents / events. Acting as a key escalation point in the team to the relevant team/individual Design, implement, manage, monitor, and upgrade security measures for the protections of the information systems and networks Identify and feedback any potential improvements from a cyber perspective to OT systems and infrastructure Ensuring incident identification, assessment, quantification, reporting, communication, mitigation and monitoring Ensuring compliance to policy, process, and procedure adherence and process improvisation to achieve operational objectives Revise and develop processes to strengthen the current Security Operations Framework Review policies and highlight the challenges in managing SLAs Ensuring daily management, administration & maintenance of security technology to achieve operational effectiveness Ensure the orchestration and integration of security services and platforms to maximise its usage and coverage The role will be integrated into an active and ambitious global cyber security function, contributing to SPEN s cyber security purpose of delivering cyber resilient OT and IT, to enable a safe and reliable electricity supply to customers What Youll bring Skills and experience in understanding at a technical level security operations. Awareness of key legislation and regulation impacting IT/OT General Control requirements in an energy utility. Experience in working within a SOC. Record of academic achievement, including some form of recognised qualification from further education, such as a degree or diploma. Good oral and written communication skills. Must be a proven team player to work, promote and consolidate efficient team working relationships.
IT Security Analyst - 40,000/ 45,000 per annum - Brandesburton (Hybrid) Principal IT are proud to be supporting a leading provider of modular buildings for various sectors, such as education, healthcare, defence, and justice. This is an excellent opportunity for someone with a passion for cybersecurity who is looking to play a key role in strengthening and developing an organisation's overall security posture and cyber resilience strategy. Working closely with the Infrastructure & Security Manager, you will be responsible for monitoring, detecting, investigating, and responding to security threats across the organisation's infrastructure and systems. You will also support vulnerability management, compliance initiatives, and wider security improvement projects across the business. This role would suit someone with 2-4 years' experience in a cybersecurity, SOC, or infrastructure security-focused position who enjoys working across a broad technology estate and keeping up to date with emerging threats and security technologies. Key Responsibilities: Monitor and develop SIEM and threat detection platforms Investigate and respond to security incidents and alerts Support vulnerability scanning, remediation, and reporting activities Assist with development of security policies, procedures, and controls Work alongside Infrastructure and Technical Services teams to improve security across the estate Support compliance activities aligned to ISO27001, GDPR, and NIST frameworks Conduct security awareness initiatives including phishing simulations and end-user training Maintain and improve endpoint protection, IDS/IPS, EDR, XDR, and MDR solutions Assist with backup, disaster recovery, and digital asset protection strategies Stay up to date with emerging cyber threats and recommend improvements where appropriate Key Skills & Experience: 2-4 years' experience within a cybersecurity or infrastructure security role Experience working with SIEM tools and vulnerability management platforms Strong understanding of EDR, XDR, MDR, IDS/IPS technologies Good knowledge of Microsoft security technologies and infrastructure environments Understanding of ISO27001, NIST, GDPR, and security best practices Experience investigating security incidents and producing clear documentation Full UK driving licence Desirable: CompTIA Security+ CISSP Associate Microsoft certifications Experience with Azure environments Scripting or automation knowledge Experience working with ERP systems This is a fantastic opportunity to join a business investing heavily in cybersecurity, where you will have the chance to influence security best practices, work with modern technologies, and continue developing your technical skillset within a collaborative environment. The Package: If successful our client is offering a salary of between 40,000/ 45,000 per annum, favorable holiday allowance, company contributed pension scheme and opportunities for professional development including training and advancement. This a hybrid working role 3 days on site and 2 days working from home. How to Apply: If you are interested in hearing more about this IT security analyst vacancy or interested in applying for the role please email me at or contact Principal IT Directly on LinkedIn. INDGH
Aug 11, 2026
Full time
IT Security Analyst - 40,000/ 45,000 per annum - Brandesburton (Hybrid) Principal IT are proud to be supporting a leading provider of modular buildings for various sectors, such as education, healthcare, defence, and justice. This is an excellent opportunity for someone with a passion for cybersecurity who is looking to play a key role in strengthening and developing an organisation's overall security posture and cyber resilience strategy. Working closely with the Infrastructure & Security Manager, you will be responsible for monitoring, detecting, investigating, and responding to security threats across the organisation's infrastructure and systems. You will also support vulnerability management, compliance initiatives, and wider security improvement projects across the business. This role would suit someone with 2-4 years' experience in a cybersecurity, SOC, or infrastructure security-focused position who enjoys working across a broad technology estate and keeping up to date with emerging threats and security technologies. Key Responsibilities: Monitor and develop SIEM and threat detection platforms Investigate and respond to security incidents and alerts Support vulnerability scanning, remediation, and reporting activities Assist with development of security policies, procedures, and controls Work alongside Infrastructure and Technical Services teams to improve security across the estate Support compliance activities aligned to ISO27001, GDPR, and NIST frameworks Conduct security awareness initiatives including phishing simulations and end-user training Maintain and improve endpoint protection, IDS/IPS, EDR, XDR, and MDR solutions Assist with backup, disaster recovery, and digital asset protection strategies Stay up to date with emerging cyber threats and recommend improvements where appropriate Key Skills & Experience: 2-4 years' experience within a cybersecurity or infrastructure security role Experience working with SIEM tools and vulnerability management platforms Strong understanding of EDR, XDR, MDR, IDS/IPS technologies Good knowledge of Microsoft security technologies and infrastructure environments Understanding of ISO27001, NIST, GDPR, and security best practices Experience investigating security incidents and producing clear documentation Full UK driving licence Desirable: CompTIA Security+ CISSP Associate Microsoft certifications Experience with Azure environments Scripting or automation knowledge Experience working with ERP systems This is a fantastic opportunity to join a business investing heavily in cybersecurity, where you will have the chance to influence security best practices, work with modern technologies, and continue developing your technical skillset within a collaborative environment. The Package: If successful our client is offering a salary of between 40,000/ 45,000 per annum, favorable holiday allowance, company contributed pension scheme and opportunities for professional development including training and advancement. This a hybrid working role 3 days on site and 2 days working from home. How to Apply: If you are interested in hearing more about this IT security analyst vacancy or interested in applying for the role please email me at or contact Principal IT Directly on LinkedIn. INDGH
GRC Analyst Location: Manchester, Hybrid 80% remote, 20% onsite Duration: 31/10/2031 Rate - 480 - 520 CONTRACTOR MUST BE SC CLEARED (active) AND BE A SOLE UK NATIONAL The candidate hasn't been outside the UK for more than 28 consecutive days during the past 5 years MUST BE PAYE THROUGH UMBRELLA Role Description: Maintain oversight of cyber security risks across suppliers Ensure risks are: Identified, Assessed, Recorded, Tracked & Escalated appropriately Govern risk acceptance and exception management processes Support risk-based prioritisation across security disciplines Coordinate supplier compliance activities within the SIAM framework Validate supplier adherence to agreed security requirements Monitor security performance against contractual obligations Drive accountability for control weaknesses, non-compliance, and improvement actions Maintain visibility of compliance obligations and control requirements Support compliance against frameworks and standards such as: ISO 27001, NIST CSF, NCSC guidance & Secure by Design principles Coordinate remediation of identified compliance gaps Produce consolidated security governance reporting Provide visibility of: Security risks, Compliance status, Control effectiveness, Supplier performance & Assurance findings Present governance information to client stakeholders and governance forums Support strategic planning and risk-informed decision making Drive security governance maturity improvements across the supplier landscape Identify opportunities to improve: Risk management, Compliance processes & Assurance effectiveness Security governance practices Support continuous improvement programmes across the cyber security operating model Facilitate cross-supplier resolution of governance issues If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Aug 11, 2026
Contractor
GRC Analyst Location: Manchester, Hybrid 80% remote, 20% onsite Duration: 31/10/2031 Rate - 480 - 520 CONTRACTOR MUST BE SC CLEARED (active) AND BE A SOLE UK NATIONAL The candidate hasn't been outside the UK for more than 28 consecutive days during the past 5 years MUST BE PAYE THROUGH UMBRELLA Role Description: Maintain oversight of cyber security risks across suppliers Ensure risks are: Identified, Assessed, Recorded, Tracked & Escalated appropriately Govern risk acceptance and exception management processes Support risk-based prioritisation across security disciplines Coordinate supplier compliance activities within the SIAM framework Validate supplier adherence to agreed security requirements Monitor security performance against contractual obligations Drive accountability for control weaknesses, non-compliance, and improvement actions Maintain visibility of compliance obligations and control requirements Support compliance against frameworks and standards such as: ISO 27001, NIST CSF, NCSC guidance & Secure by Design principles Coordinate remediation of identified compliance gaps Produce consolidated security governance reporting Provide visibility of: Security risks, Compliance status, Control effectiveness, Supplier performance & Assurance findings Present governance information to client stakeholders and governance forums Support strategic planning and risk-informed decision making Drive security governance maturity improvements across the supplier landscape Identify opportunities to improve: Risk management, Compliance processes & Assurance effectiveness Security governance practices Support continuous improvement programmes across the cyber security operating model Facilitate cross-supplier resolution of governance issues If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
IT & Systems Manager Salary: 50,000 + Bonus + Benefits Location: Driffield, East Yorkshire Hours: Monday to Friday, 37.5 hours per week, Hybrid Are you an experienced IT & Systems professional looking for an opportunity to own and shape technology within a growing international business? We're recruiting for an IT & Systems Manager to join a fast-growing company based in Driffield. Reporting directly to the CEO, you'll take ownership of the company's technology landscape, leading business systems, ERP optimisation, digital transformation and continuous improvement initiatives that will support ambitious growth plans over the coming years. This is a unique opportunity for someone who enjoys combining technology with commercial thinking, working closely with senior leadership to improve business processes, drive automation and ensure technology becomes a key enabler of business success. The Role As IT & Systems Manager, you'll become the internal owner of the company's technology estate, working across business systems, applications and third-party suppliers while driving improvements across the organisation. Your responsibilities will include: Owning and developing core business systems including Odoo ERP, Shopify, Microsoft 365, Qlik, Netstock, Pimberly and eDesk Leading ERP optimisation, systems integrations and automation projects Identifying opportunities to improve business processes through technology Supporting users through training, documentation and best practice Managing relationships with external IT providers and software vendors Coordinating Microsoft 365 administration and user management Supporting cyber security, disaster recovery and business continuity initiatives Managing software licensing and hardware procurement Driving digital transformation and continuous improvement projects Improving reporting, data quality and business intelligence Evaluating AI tools and automation opportunities that deliver genuine business value Helping shape the company's long-term technology roadmap What We're Looking For We're looking for someone who enjoys understanding how businesses operate and using technology to improve efficiency, productivity and performance. You'll likely have experience in one of the following roles: IT Manager Business Systems Manager Applications Manager Systems Manager ERP Manager Business Systems Analyst (Senior) Essential Previous experience managing business systems or IT within a commercial environment Strong experience supporting ERP or integrated business systems Experience delivering technology improvement or implementation projects Microsoft 365 administration experience Experience managing third-party technology suppliers Excellent stakeholder management and communication skills Strong analytical and problem-solving ability Commercial mindset with a passion for continuous improvement Desirable Odoo ERP Shopify Qlik Netstock Pimberly API integrations AI and automation technologies Cyber security and IT governance Distribution, wholesale, manufacturing or e-commerce experience Why Join? This is a genuine opportunity to influence the future direction of technology within a rapidly expanding international business. You'll join at an exciting stage of the company's growth, taking ownership of systems that are central to future success while working directly with the CEO and senior leadership team. Over the coming years you'll play a key role in: Expanding ERP capability Driving automation across the business Enhancing reporting and business intelligence Improving business processes Supporting future acquisitions and integrations Developing AI capabilities where they add commercial value There is genuine scope for this role to develop into a broader technology leadership position as the business continues to grow. Salary & Benefits 50,000 salary Annual performance bonus Hybrid working Private medical cover 25 days annual leave plus Bank Holidays Company pension Ongoing professional development Opportunity to shape technology strategy within a growing international business If you're looking for a role where you can combine technical expertise with commercial impact and play a key part in a company's growth journey, we'd love to hear from you.
Aug 11, 2026
Full time
IT & Systems Manager Salary: 50,000 + Bonus + Benefits Location: Driffield, East Yorkshire Hours: Monday to Friday, 37.5 hours per week, Hybrid Are you an experienced IT & Systems professional looking for an opportunity to own and shape technology within a growing international business? We're recruiting for an IT & Systems Manager to join a fast-growing company based in Driffield. Reporting directly to the CEO, you'll take ownership of the company's technology landscape, leading business systems, ERP optimisation, digital transformation and continuous improvement initiatives that will support ambitious growth plans over the coming years. This is a unique opportunity for someone who enjoys combining technology with commercial thinking, working closely with senior leadership to improve business processes, drive automation and ensure technology becomes a key enabler of business success. The Role As IT & Systems Manager, you'll become the internal owner of the company's technology estate, working across business systems, applications and third-party suppliers while driving improvements across the organisation. Your responsibilities will include: Owning and developing core business systems including Odoo ERP, Shopify, Microsoft 365, Qlik, Netstock, Pimberly and eDesk Leading ERP optimisation, systems integrations and automation projects Identifying opportunities to improve business processes through technology Supporting users through training, documentation and best practice Managing relationships with external IT providers and software vendors Coordinating Microsoft 365 administration and user management Supporting cyber security, disaster recovery and business continuity initiatives Managing software licensing and hardware procurement Driving digital transformation and continuous improvement projects Improving reporting, data quality and business intelligence Evaluating AI tools and automation opportunities that deliver genuine business value Helping shape the company's long-term technology roadmap What We're Looking For We're looking for someone who enjoys understanding how businesses operate and using technology to improve efficiency, productivity and performance. You'll likely have experience in one of the following roles: IT Manager Business Systems Manager Applications Manager Systems Manager ERP Manager Business Systems Analyst (Senior) Essential Previous experience managing business systems or IT within a commercial environment Strong experience supporting ERP or integrated business systems Experience delivering technology improvement or implementation projects Microsoft 365 administration experience Experience managing third-party technology suppliers Excellent stakeholder management and communication skills Strong analytical and problem-solving ability Commercial mindset with a passion for continuous improvement Desirable Odoo ERP Shopify Qlik Netstock Pimberly API integrations AI and automation technologies Cyber security and IT governance Distribution, wholesale, manufacturing or e-commerce experience Why Join? This is a genuine opportunity to influence the future direction of technology within a rapidly expanding international business. You'll join at an exciting stage of the company's growth, taking ownership of systems that are central to future success while working directly with the CEO and senior leadership team. Over the coming years you'll play a key role in: Expanding ERP capability Driving automation across the business Enhancing reporting and business intelligence Improving business processes Supporting future acquisitions and integrations Developing AI capabilities where they add commercial value There is genuine scope for this role to develop into a broader technology leadership position as the business continues to grow. Salary & Benefits 50,000 salary Annual performance bonus Hybrid working Private medical cover 25 days annual leave plus Bank Holidays Company pension Ongoing professional development Opportunity to shape technology strategy within a growing international business If you're looking for a role where you can combine technical expertise with commercial impact and play a key part in a company's growth journey, we'd love to hear from you.
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Aug 10, 2026
Full time
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Cyber Security SOC Incident Analyst Milton Keynes - On Site £40,000 - £45,000 + Benefits Our client is looking for a proactive and detail-oriented SOC Incident Analyst to join a high-performing Cyber Security Operations team, supporting a diverse client base across multiple sectors. The Opportunity In this role, you will be at the frontline of cyber defence-monitoring, detecting, and responding to security threats in a fast-paced Security Operations Centre. You will play a key role in protecting critical systems and data, working with modern technologies and collaborating with experienced security professionals. This is an excellent opportunity for someone with SOC experience, or a strong infrastructure background, looking to develop further within security operations. Key Responsibilities Monitor, triage, and respond to security incidents using SIEM tools such as Microsoft Sentinel Investigate and resolve alerts, escalating where necessary Manage and maintain SOC tools, configurations, and updates Follow ITIL-based processes for incident, problem, and service management Produce regular reports and analytics on security incidents Contribute to continuous improvement of SOC processes and services What We're Looking For Experience in a SOC Analyst role or strong systems administration experience with security exposure Hands-on experience with Microsoft Sentinel and Microsoft Defender technologies Good understanding of networking concepts (DNS, IP, routing, SSL, etc.) Familiarity with cloud environments, ideally Azure Experience with Windows and/or Linux administration Strong analytical and problem-solving skills Ability to work independently and make sound decisions under pressure Certifications & Requirements SC-200 (Microsoft Security Operations Analyst), or willingness to achieve during probation Other certifications such as Security+ are beneficial Ability to obtain Security Clearance (SC) Desirable Skills Experience with SIEM tools such as Graylog Scripting or programming (PowerShell, Python, etc.) Knowledge of hybrid AD/Entra ID environments Exposure to Cloudflare or similar technologies ITIL Foundation certification What's in It for You Exposure to a wide range of technologies and industries Supportive team environment with a focus on development Clear progression opportunities within Cyber Security Apply now to take the next step in your cyber security career. Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website
Aug 10, 2026
Full time
Cyber Security SOC Incident Analyst Milton Keynes - On Site £40,000 - £45,000 + Benefits Our client is looking for a proactive and detail-oriented SOC Incident Analyst to join a high-performing Cyber Security Operations team, supporting a diverse client base across multiple sectors. The Opportunity In this role, you will be at the frontline of cyber defence-monitoring, detecting, and responding to security threats in a fast-paced Security Operations Centre. You will play a key role in protecting critical systems and data, working with modern technologies and collaborating with experienced security professionals. This is an excellent opportunity for someone with SOC experience, or a strong infrastructure background, looking to develop further within security operations. Key Responsibilities Monitor, triage, and respond to security incidents using SIEM tools such as Microsoft Sentinel Investigate and resolve alerts, escalating where necessary Manage and maintain SOC tools, configurations, and updates Follow ITIL-based processes for incident, problem, and service management Produce regular reports and analytics on security incidents Contribute to continuous improvement of SOC processes and services What We're Looking For Experience in a SOC Analyst role or strong systems administration experience with security exposure Hands-on experience with Microsoft Sentinel and Microsoft Defender technologies Good understanding of networking concepts (DNS, IP, routing, SSL, etc.) Familiarity with cloud environments, ideally Azure Experience with Windows and/or Linux administration Strong analytical and problem-solving skills Ability to work independently and make sound decisions under pressure Certifications & Requirements SC-200 (Microsoft Security Operations Analyst), or willingness to achieve during probation Other certifications such as Security+ are beneficial Ability to obtain Security Clearance (SC) Desirable Skills Experience with SIEM tools such as Graylog Scripting or programming (PowerShell, Python, etc.) Knowledge of hybrid AD/Entra ID environments Exposure to Cloudflare or similar technologies ITIL Foundation certification What's in It for You Exposure to a wide range of technologies and industries Supportive team environment with a focus on development Clear progression opportunities within Cyber Security Apply now to take the next step in your cyber security career. Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website