We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and... Read more
We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and resolution of complex cybersecurity incidents. This role will provide senior-level direction during high-impact events, helping protect critical systems, data, and business operations from evolving cyber threats. The successful candidate will combine strong technical expertise with sound judgment, clear communication, and the ability to coordinate effectively across security, technology, risk, legal, and business teams.
Key responsibilities include overseeing the end-to-end incident response lifecycle, from triage and forensic investigation through containment, eradication, recovery, and post-incident review. You will lead investigations into malware, ransomware, phishing, account compromise, insider threats, data loss, and other security events. The role will involve analysing logs, endpoint activity, network traffic, identity events, and threat intelligence to determine attack scope, root cause, and business impact. You will also maintain and improve incident response procedures, playbooks, escalation processes, and crisis communications, while ensuring incidents are documented accurately and lessons learned are translated into measurable security improvements.
The ideal candidate will have substantial experience in cyber defense, digital forensics, security operations, or incident response, including proven experience leading investigations and coordinating responses to significant incidents. Strong knowledge of common attack techniques, security monitoring platforms, endpoint detection and response tools, SIEM technologies, cloud environments, identity systems, and forensic methodologies is expected. Professional certifications such as CISSP, GCIH, GCFA, GCIA, or equivalent qualifications are advantageous. Excellent written and verbal communication skills are essential, together with the ability to explain technical risk to senior stakeholders and remain composed in high-pressure situations. Experience managing or mentoring security professionals and contributing to strategic security initiatives will be highly valued.
Read lessBirmingham, England, United KingdomPermanent
We are seeking an experienced OT Security Consultant to help protect industrial control systems, operational technology environments and... Read more
We are seeking an experienced OT Security Consultant to help protect industrial control systems, operational technology environments and critical infrastructure from evolving cyber threats. In this role, you will work with engineering, infrastructure, risk and operational teams to assess security maturity, identify vulnerabilities and develop practical measures that improve resilience without disrupting essential operations. The position requires a strong understanding of the differences between IT and OT environments, including the need to balance security, safety, availability and regulatory obligations.
Your responsibilities will include conducting OT security assessments, reviewing network architectures and identifying weaknesses across industrial control systems, SCADA, DCS, PLC and safety instrumented environments. You will support the development and implementation of security strategies, policies, standards and procedures aligned with recognised frameworks such as IEC 62443, NIST CSF and relevant critical infrastructure regulations. You will also contribute to risk assessments, threat modelling, incident response planning, vulnerability management, segmentation initiatives and secure remote-access designs. The role involves preparing clear technical documentation, risk reports and recommendations, as well as presenting findings to both technical stakeholders and senior decision-makers. Where required, you may support security testing, audits, supplier reviews and the delivery of awareness sessions for operational personnel.
The successful candidate will have proven experience in OT, ICS or industrial cybersecurity, supported by a strong understanding of network security principles, industrial protocols and common OT technologies. Experience with asset discovery, network monitoring, firewalls, intrusion detection, endpoint protection and secure architecture design is highly desirable. You should be confident working across multidisciplinary teams, able to translate complex technical risks into practical business outcomes and comfortable operating in environments where safety and operational continuity are paramount. Relevant certifications such as GICSP, GRID, CISSP, CISM, IEC 62443 or equivalent qualifications are advantageous. Strong communication, analytical, consulting and stakeholder-management skills are essential, along with a willingness to travel to operational sites when required.
Read lessBirmingham, England, United KingdomPermanent
We are seeking a Security and Development Test Manager to lead the planning, coordination and delivery of security-focused... Read more
We are seeking a Security and Development Test Manager to lead the planning, coordination and delivery of security-focused testing across software, systems and development lifecycles. The successful candidate will ensure that products and services are assessed against robust security, quality and performance standards, while helping development teams identify and address risks early. This role will work closely with engineering, architecture, project management and operational teams to embed secure testing practices throughout the delivery process.
Responsibilities will include developing and maintaining test strategies, plans and schedules; managing functional, integration, regression, performance and security testing activities; and overseeing the use of appropriate testing tools, environments and methodologies. You will coordinate penetration testing, vulnerability assessments, secure code reviews and remediation verification, ensuring findings are documented, prioritised and tracked through to resolution. The role will also involve managing internal and external test resources, monitoring progress against milestones, producing clear reports for technical and senior stakeholders, and contributing to continuous improvement of development and assurance processes.
Applicants should have significant experience managing software development testing, quality assurance or security testing within complex technical environments. A strong understanding of secure development lifecycles, threat modelling, vulnerability management, test automation and common security standards is essential. Experience working with Agile or similar delivery frameworks, CI/CD pipelines and modern development technologies would be highly beneficial. You will be an organised and confident communicator, able to challenge constructively, manage competing priorities and explain technical risks to both specialist and non-specialist audiences. Relevant professional qualifications in software testing, cyber security, quality management or project delivery are desirable, together with a proven record of leading teams and delivering reliable outcomes in a controlled and collaborative environment.
Read lessBirmingham, England, United KingdomPermanent
We are seeking a Security Analyst to help protect the organisation’s systems, networks, applications, and data from evolving... Read more
We are seeking a Security Analyst to help protect the organisation’s systems, networks, applications, and data from evolving cyber threats. The successful candidate will monitor security events, investigate suspicious activity, and support the timely detection, containment, and resolution of incidents. This role will work closely with technology and business teams to strengthen security controls, reduce risk, and promote resilient and secure ways of working.
Key responsibilities include monitoring alerts from security information and event management, endpoint protection, identity, vulnerability management, and other security platforms; triaging and investigating potential incidents; documenting findings; and escalating threats in line with established procedures. You will contribute to incident response activities, threat hunting, malware and phishing investigations, vulnerability assessments, access reviews, and the ongoing improvement of security monitoring and response processes. The role will also involve preparing reports and metrics, supporting audits and compliance reviews, maintaining accurate security documentation, and helping develop practical guidance and awareness materials for colleagues.
Applicants should have experience in a security operations, incident response, infrastructure, or related cybersecurity role, together with a sound understanding of common attack techniques, defensive controls, networking, operating systems, identity and access management, and security principles. Familiarity with SIEM, endpoint detection and response, vulnerability scanning, ticketing, and forensic or investigative tools is desirable. Relevant professional certifications or equivalent practical experience are welcomed. You should be analytical, curious, and methodical, with strong written and verbal communication skills and the ability to explain technical issues to varied audiences. A collaborative approach, sound judgement, attention to detail, and a commitment to continuous learning are essential.
Read lessBirmingham, England, United KingdomPermanent
We are seeking an experienced Cyber Defense Incident Responder to lead and coordinate the response to complex cybersecurity... Read more
We are seeking an experienced Cyber Defense Incident Responder to lead and coordinate the response to complex cybersecurity incidents across a diverse technology environment. In this Assistant Director-level role, you will provide strategic direction and hands-on expertise throughout the incident lifecycle, from detection and triage through containment, eradication, recovery, and post-incident review. You will help strengthen operational resilience, protect critical information assets, and ensure that response activities are timely, coordinated, and well documented.
Key responsibilities include directing investigations into suspected and confirmed security incidents; assessing business and technical impact; coordinating response activities with security operations, infrastructure, applications, legal, risk, privacy, communications, and executive stakeholders; and providing clear situation updates to senior leadership. You will develop and maintain incident response procedures, playbooks, escalation criteria, and reporting standards. The role will also involve leading root-cause analysis, identifying control improvements, supporting threat hunting and forensic investigations, and ensuring lessons learned are incorporated into defensive strategies. You may oversee third-party responders and participate in an on-call or escalation rotation when required.
Applicants should have substantial experience in cyber incident response, digital forensics, security operations, or a closely related discipline, together with experience leading investigations and managing high-impact events. Strong knowledge of attack techniques, threat intelligence, endpoint and network telemetry, identity systems, cloud environments, vulnerability management, and security monitoring is expected. Familiarity with frameworks such as NIST or SANS and experience using SIEM, EDR, SOAR, case management, and forensic tools are highly desirable. Excellent communication, judgement, prioritisation, and stakeholder-management skills are essential, as is the ability to explain technical risk to non-technical audiences. Relevant professional certifications and a degree or equivalent practical experience in cybersecurity, information technology, or a related field are advantageous.
Read lessBirmingham, England, United KingdomPermanent
We are seeking an experienced Chief Information Security Officer to lead the organisation’s information security strategy and strengthen... Read more
We are seeking an experienced Chief Information Security Officer to lead the organisation’s information security strategy and strengthen its ability to manage evolving cyber threats. This senior leadership role will be responsible for establishing a comprehensive security vision aligned with business objectives, regulatory obligations and recognised industry standards. The successful candidate will provide clear direction to executive leadership and the board, communicating security risks, priorities and investment requirements in a concise and commercially focused manner.
Key responsibilities will include developing and maintaining enterprise-wide security policies, frameworks and governance processes; overseeing cyber risk management, vulnerability management, security architecture and incident response; and ensuring the effective protection of information, systems, applications and critical infrastructure. You will lead preparedness for security incidents, direct investigations and recovery activities, and coordinate relevant internal and external stakeholders when required. The role will also oversee security awareness and training programmes, supplier and third-party risk assessments, business continuity planning, and compliance with applicable data protection and cybersecurity requirements. You will manage security budgets, performance metrics and improvement plans while building a capable, collaborative and high-performing security function.
Applicants should bring substantial experience in senior information security or cybersecurity leadership roles, ideally within a complex, highly regulated or technology-intensive environment. You will have a strong understanding of security governance, risk and compliance, cloud security, identity and access management, threat intelligence, data protection and operational resilience. Relevant professional qualifications such as CISSP, CISM, CRISC or an equivalent are desirable. Excellent communication, influencing and stakeholder-management skills are essential, along with the ability to translate technical risks into practical business decisions. We are looking for a strategic and pragmatic leader who can combine sound judgement with hands-on understanding, promote a strong culture of security and deliver measurable improvements in organisational resilience.
Read lessBirmingham, England, United KingdomPermanent
We are seeking a visionary Head of Offensive AI Security & Technical Excellence to lead the development of... Read more
We are seeking a visionary Head of Offensive AI Security & Technical Excellence to lead the development of advanced security capabilities across artificial intelligence, machine learning, and emerging technologies. This senior role will define and execute an offensive security strategy focused on identifying, validating, and reducing risks in AI-enabled products, platforms, models, and supporting infrastructure. You will build and lead a high-performing team of security researchers, red teamers, penetration testers, and technical specialists, fostering a culture of curiosity, responsible challenge, and continuous improvement.
Your responsibilities will include establishing programmes for AI red teaming, adversarial testing, threat modelling, vulnerability research, model abuse assessment, prompt-injection testing, data and supply-chain security reviews, and attack simulation. You will set technical standards, methodologies, and quality measures for offensive security work, while ensuring findings are translated into practical improvements across engineering, product, and operational teams. The role will also oversee complex assessments, communicate risk and remediation priorities to senior stakeholders, and contribute to incident preparedness, security architecture, and governance for AI systems. You will champion technical excellence through coaching, peer review, knowledge sharing, automation, and the adoption of innovative tools and research.
Applicants should have extensive experience in offensive security, red teaming, penetration testing, application or cloud security, with significant practical knowledge of AI and machine learning risks. Strong understanding of attack frameworks, secure development practices, vulnerability management, and modern cloud architectures is expected. Experience testing large language models, autonomous systems, AI agents, or data pipelines is highly desirable. You will need excellent leadership, communication, and influencing skills, together with the ability to explain complex technical issues clearly to both specialist and non-specialist audiences. Relevant professional certifications, a record of published research, or contributions to the security community would be advantageous. This is an opportunity to shape how advanced technologies are tested, defended, and developed responsibly at scale.
Read lessBirmingham, England, United KingdomPermanent
We are seeking an experienced Principal Cyber Security Risk Manager to lead the development and continual improvement of... Read more
We are seeking an experienced Principal Cyber Security Risk Manager to lead the development and continual improvement of cyber security risk management across a complex organisation. In this senior role, you will provide expert advice to executives, technology leaders and business stakeholders, helping them understand cyber threats, make informed risk-based decisions and strengthen the organisation’s overall security posture. You will operate as a trusted authority on cyber risk, influencing strategy, governance and investment priorities across a broad range of services, systems and transformation programmes.
Your responsibilities will include establishing and maintaining cyber security risk frameworks, policies, standards and assessment methodologies. You will oversee the identification, analysis, treatment and reporting of information and cyber security risks, ensuring that key risks are clearly documented, appropriately owned and actively managed. You will lead complex risk assessments, review security controls and provide challenge and assurance across projects, suppliers, cloud services and operational environments. The role will also involve maintaining risk reporting for senior governance forums, monitoring risk appetite and tolerance, tracking remediation activity, and escalating significant or emerging concerns when required. You will contribute to incident preparedness, threat-informed decision-making, regulatory compliance and the continuous improvement of security governance.
To succeed, you will bring substantial experience in cyber security risk, governance, assurance or a closely related discipline, together with a strong understanding of security principles, control frameworks and risk management practices. Experience with recognised standards such as ISO 27001, NIST or CIS is desirable, as is knowledge of cloud security, third-party risk and modern technology environments. You will be an excellent communicator, able to translate complex technical issues into clear business impacts and practical recommendations. Strong influencing, stakeholder management, analytical and decision-making skills are essential, along with the credibility to challenge constructively at senior levels. Relevant professional qualifications in information security, risk management or audit are advantageous.
Read lessBirmingham, England, United KingdomPermanent
An experienced SOC Manager is sought to lead and develop a high-performing Security Operations Centre within a managed... Read more
An experienced SOC Manager is sought to lead and develop a high-performing Security Operations Centre within a managed security services environment. This hybrid role will oversee the delivery of 24/7 security monitoring, detection, investigation and response services for multiple customers, ensuring consistently high standards of operational performance, service quality and client satisfaction. The successful candidate will provide clear direction to SOC analysts, incident responders and technical specialists, while fostering a culture of collaboration, accountability and continuous improvement.
Responsibilities will include managing day-to-day SOC operations, workforce planning, shift coverage, escalation procedures and incident response coordination. You will establish and monitor service-level objectives, operational metrics and key performance indicators, producing regular reports for senior stakeholders and customers. The role will also involve developing and maintaining operational processes, playbooks and runbooks; supporting the implementation and optimisation of SIEM, SOAR, EDR and other security technologies; and ensuring effective threat detection, triage, containment and remediation. You will act as a senior escalation point for complex security incidents and contribute to customer onboarding, service reviews, audits and the continual enhancement of MSSP offerings.
Applicants should have substantial experience managing a SOC, CSIRT or comparable security operations function, ideally within an MSSP or other customer-facing security services environment. Strong knowledge of security monitoring, incident response, threat intelligence, vulnerability management and common security frameworks is essential. Experience with SIEM and automation platforms, security metrics, ITIL-aligned service management and regulatory or compliance requirements would be advantageous. The role requires proven leadership and people-management skills, excellent communication with both technical and non-technical audiences, and the ability to prioritise effectively in a fast-paced environment. Relevant professional certifications such as CISSP, CISM, GIAC or equivalent are desirable. A flexible approach to hybrid working and participation in an out-of-hours escalation rota may be required.
Read lessBirmingham, England, United KingdomPermanent
We are seeking a Principal IT Security Manager (GRC) to lead the development, implementation and continuous improvement of... Read more
We are seeking a Principal IT Security Manager (GRC) to lead the development, implementation and continuous improvement of an enterprise-wide governance, risk and compliance framework. This senior role will provide strategic direction on information security risk management, regulatory compliance, policies, standards and control effectiveness across technology and business environments. You will act as a trusted adviser to senior stakeholders, translating complex security and regulatory requirements into practical, risk-based solutions that support business objectives.
Key responsibilities include owning the information security risk management lifecycle, including risk identification, assessment, treatment, acceptance and reporting. You will oversee the design, review and maintenance of security policies, procedures and control frameworks, and coordinate internal and external audits, regulatory reviews and assurance activities. The role will also involve managing security exceptions, tracking remediation plans, preparing executive-level risk reporting and advising on security requirements for projects, suppliers, cloud services and technology changes. You will help strengthen governance through metrics, maturity assessments, continuous control monitoring and security awareness initiatives, while supporting the development of a high-performing GRC capability.
The successful candidate will bring significant experience in information security governance, risk and compliance, ideally within a complex, regulated or multinational environment. You will have strong knowledge of recognised frameworks and standards such as ISO 27001, NIST, COBIT, SOC 2 and applicable data protection or industry regulations. Professional certifications such as CISSP, CISM, CRISC, CISA or ISO 27001 Lead Implementer/Auditor are desirable. Excellent stakeholder management, communication and influencing skills are essential, together with the ability to engage confidently with technical teams, auditors, risk functions and executive leadership. A pragmatic, analytical and collaborative approach, combined with strong judgement and the ability to manage competing priorities, will be key to success.
Read lessBirmingham, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria