We are seeking a Cyber SOC Specialist to join a security operations team responsible for monitoring, investigating and... Read more
We are seeking a Cyber SOC Specialist to join a security operations team responsible for monitoring, investigating and responding to cyber threats across a complex technology environment. In this role, you will help protect critical systems, applications and data by identifying suspicious activity, assessing security alerts and coordinating timely responses to incidents.
Your responsibilities will include monitoring security information and event management (SIEM) platforms, endpoint detection and response tools, network security solutions and other monitoring technologies. You will triage alerts, investigate potential compromises, analyse logs and security events, and determine the scope and impact of incidents. You will also support containment, eradication and recovery activities, maintain accurate incident records, and escalate significant threats in line with established procedures. Additional duties may include developing and refining detection rules, contributing to threat-hunting activities, preparing operational reports, and helping improve playbooks, processes and security controls.
The successful candidate will have practical experience in a security operations centre, incident response or a related cyber security role. You should have a sound understanding of common attack techniques, vulnerabilities, malware, phishing, identity threats and network security principles, together with experience using SIEM, EDR or comparable security tooling. Familiarity with frameworks such as MITRE ATT&CK, NIST or ISO 27001 is desirable. Strong analytical and problem-solving skills are essential, along with the ability to communicate clearly and work effectively under pressure. Relevant certifications such as Security+, CySA+, GCIH, GCIA or equivalent experience would be advantageous. A willingness to participate in shift-based or on-call support may be required.
Read lessBristol, England, United KingdomPermanent
We are seeking a Cyber Security Ops. Professional to support the protection, monitoring, and continuous improvement of critical... Read more
We are seeking a Cyber Security Ops. Professional to support the protection, monitoring, and continuous improvement of critical systems, networks, and information assets. In this role, you will work as part of a collaborative security team to identify threats, investigate suspicious activity, and help maintain a strong and resilient security posture across the organisation.
Your responsibilities will include monitoring security alerts and events, analysing logs, and responding to incidents in accordance with established procedures. You will investigate potential threats, support containment and recovery activities, and document findings clearly for technical and non-technical stakeholders. The role will also involve vulnerability management, security control reviews, access monitoring, and assisting with security assessments and audits. You may contribute to the development of playbooks, operating procedures, awareness activities, and recommendations that improve detection and response capabilities.
Applicants should have practical experience in a cyber security operations, security monitoring, incident response, or related technology role. Knowledge of security information and event management platforms, endpoint protection, vulnerability scanners, network security principles, and common attack techniques is expected. Familiarity with frameworks such as NIST or ISO 27001, along with relevant security certifications, would be advantageous. Strong analytical and problem-solving skills are essential, as is the ability to communicate effectively, prioritise competing tasks, and remain calm during security incidents. A proactive approach, attention to detail, and commitment to ongoing professional development will be highly valued.
Read lessBristol, England, United KingdomPermanent
An opportunity is available for an Information Security Assurance Administrator to support the effective management, monitoring and continuous... Read more
An opportunity is available for an Information Security Assurance Administrator to support the effective management, monitoring and continuous improvement of information security controls. The role will assist with maintaining assurance activities across systems, processes and third-party services, helping to ensure that security requirements are understood, implemented and evidenced. You will work with colleagues across technology, risk, compliance and operational teams to coordinate security reviews and support a strong culture of information protection.
Key responsibilities will include maintaining security assurance records, control frameworks, policies, procedures and risk documentation; coordinating evidence collection for internal and external audits; tracking remediation actions and escalating overdue or significant issues; and preparing clear reports, dashboards and updates for relevant stakeholders. You will assist with security risk assessments, supplier assurance reviews, control testing and periodic reviews of access, vulnerability, incident and business continuity arrangements. The role will also involve scheduling meetings, recording decisions, managing action logs and ensuring that documentation is accurate, current and readily available.
The successful candidate will have experience in information security, IT governance, risk, compliance, audit coordination or a related administrative role. You should be organised, detail-oriented and confident handling sensitive information, with the ability to manage competing priorities and meet deadlines. Strong written and verbal communication skills are essential, along with the ability to explain security requirements clearly to both technical and non-technical audiences. Familiarity with recognised information security principles, risk management practices, audit processes, data protection requirements or frameworks such as ISO 27001, NIST or Cyber Essentials would be advantageous. A proactive approach, sound judgement and a commitment to maintaining high standards of confidentiality and accuracy are also required.
Read lessBristol, England, United KingdomPermanent
We are seeking a Product Security Engineer to help build secure, resilient products throughout their lifecycle. You will... Read more
We are seeking a Product Security Engineer to help build secure, resilient products throughout their lifecycle. You will work closely with software engineering, platform, architecture, quality assurance, and product teams to identify security risks early and integrate effective controls into design, development, testing, and release processes. This role is suited to someone who enjoys solving complex technical problems, influencing engineering practices, and translating security requirements into practical solutions.
Your responsibilities will include conducting threat modelling, design and architecture reviews, and security assessments for new and existing products. You will identify vulnerabilities through code reviews, automated scanning, penetration testing coordination, and analysis of security findings, then support teams in prioritising and remediating issues. You will help develop secure coding standards, reusable security patterns, and guidance for application and cloud development. You will also contribute to security tooling, vulnerability management, incident investigations, and continuous improvements to secure development and delivery pipelines.
We are looking for experience in product, application, or software security, with a solid understanding of secure software development principles and common vulnerability classes such as those described by OWASP. You should be comfortable working with modern programming languages, APIs, cloud platforms, CI/CD pipelines, containers, and version-control systems. Experience with threat modelling methodologies, security testing tools, identity and access management, and relevant security frameworks is desirable. Strong communication and collaboration skills are essential, as you will explain technical risks to varied audiences and work constructively with engineering teams. Relevant professional certifications or equivalent practical experience are welcome. This position offers the opportunity to shape security practices, improve product quality, and make a measurable contribution to the protection of customers and systems.
Read lessBristol, England, United KingdomPermanent
We are seeking a Product Security Engineer to help build secure, resilient products from design through deployment. You... Read more
We are seeking a Product Security Engineer to help build secure, resilient products from design through deployment. You will work closely with software engineering, product management, infrastructure, and quality teams to identify security risks early and embed practical security controls throughout the development lifecycle. The role combines hands-on technical work with advisory responsibilities, supporting teams in delivering secure and reliable customer experiences.
Your responsibilities will include conducting threat modelling, architecture and design reviews, and security assessments for new and existing products. You will identify vulnerabilities, recommend effective remediation strategies, and help prioritise security improvements based on risk and business impact. You will contribute to secure coding standards, security testing strategies, and automation within CI/CD pipelines, including static and dynamic analysis, dependency scanning, secrets detection, and container or cloud security checks. You will also investigate security issues, support incident response activities, and help develop repeatable processes for vulnerability management and security risk tracking.
The successful candidate will have professional experience in product, application, or software security, with a strong understanding of common web, API, cloud, and mobile security risks. Familiarity with frameworks such as OWASP and experience using security testing tools and automation are expected. Knowledge of secure software development practices, identity and access management, cryptography fundamentals, and modern cloud environments would be valuable. You should be comfortable reviewing code, communicating technical risks to varied audiences, and influencing teams without relying on direct authority. Strong analytical, problem-solving, and collaboration skills are essential, as is a proactive approach to learning and improving security practices.
Read lessBristol, England, United KingdomPermanent
We are seeking a Security Assurance Lead to strengthen the organisation’s information security governance, risk management and assurance... Read more
We are seeking a Security Assurance Lead to strengthen the organisation’s information security governance, risk management and assurance capabilities. In this role, you will provide expert guidance on security controls, regulatory obligations and risk treatment across technology, business and third-party environments. You will work with senior stakeholders, technical teams and control owners to ensure that security requirements are clearly defined, consistently implemented and supported by reliable evidence.
Your responsibilities will include developing and maintaining security assurance frameworks, policies, standards and operating procedures; coordinating internal and external audits; and overseeing assessments against recognised security and privacy standards. You will plan and deliver risk-based assurance reviews, identify control weaknesses, assess their potential business impact and agree practical remediation plans. You will monitor progress through to completion, prepare clear reports for governance forums and escalate material risks where appropriate. The role will also contribute to supplier assurance, new technology assessments, security architecture reviews, incident lessons learned and the continuous improvement of control effectiveness.
To succeed, you will have substantial experience in information security, IT risk, audit, compliance or assurance, together with a strong understanding of security governance frameworks and industry standards such as ISO 27001, NIST, CIS Controls or comparable models. Experience working with third-party risk, cloud environments, data protection requirements and regulatory compliance would be advantageous. You should be confident interpreting technical information, challenging constructively and communicating complex risks to both technical and non-technical audiences. Strong analytical, organisational and stakeholder-management skills are essential, along with the ability to manage multiple priorities, influence across teams and deliver high-quality work in a changing environment. Relevant professional qualifications, such as CISM, CISSP, CISA, CRISC or ISO 27001 Lead Auditor, are desirable.
Read lessBristol, England, United KingdomPermanent
We are seeking a Manager/Senior Manager, Cyber Strategy & Transformation to help organisations strengthen their cyber resilience, manage... Read more
We are seeking a Manager/Senior Manager, Cyber Strategy & Transformation to help organisations strengthen their cyber resilience, manage technology risk and deliver sustainable security transformation. This role will work with senior stakeholders to assess current capabilities, define target operating models and develop practical strategies aligned with business objectives, regulatory expectations and evolving threat landscapes. You will lead complex engagements from strategy through implementation, providing clear recommendations and measurable roadmaps that improve cyber maturity, governance and operational effectiveness.
Responsibilities will include leading cyber strategy and transformation programmes; conducting maturity assessments, risk analyses and capability reviews; designing cyber operating models, governance frameworks, policies and performance measures; and supporting the development of investment cases and multi-year transformation roadmaps. You will manage workstreams, budgets, timelines and delivery risks while maintaining high-quality client relationships and executive communications. The role may also involve advising on areas such as identity and access management, security operations, cloud security, data protection, third-party risk, incident response and regulatory compliance. You will coach junior team members, contribute to business development, support proposal development and help build innovative approaches, tools and service offerings.
The successful candidate will have significant experience in cybersecurity, technology risk, digital transformation, management consulting or a closely related field, with a track record of delivering strategy and transformation initiatives in complex environments. Strong knowledge of cyber risk management, security frameworks, governance principles and current industry developments is essential. Experience engaging boards, executive committees and senior technology or risk leaders is highly desirable, as is the ability to translate technical issues into clear business outcomes. Excellent analytical, communication, stakeholder management and presentation skills are required, together with commercial awareness and a collaborative leadership style. Relevant professional qualifications such as CISSP, CISM, CRISC, SABSA, TOGAF, PMP or equivalent credentials would be advantageous.
Read lessBristol, England, United KingdomPermanent
We are seeking a Principal Security Architecture Consultant to provide strategic leadership and expert guidance across complex technology... Read more
We are seeking a Principal Security Architecture Consultant to provide strategic leadership and expert guidance across complex technology and information security initiatives. You will work with senior stakeholders, engineering teams, product owners and delivery partners to develop secure, resilient and scalable solutions aligned with business objectives, regulatory obligations and recognised industry standards. The role will involve translating business and technical requirements into practical security architectures, identifying risks and recommending proportionate controls across cloud, on-premises and hybrid environments.
Key responsibilities will include defining and maintaining security architecture principles, patterns, standards and reference designs; conducting architecture reviews and threat modelling; and providing assurance throughout the solution development lifecycle. You will assess proposed technologies, platforms and services, challenge design decisions where appropriate, and support the remediation of security risks. You will also contribute to security strategy, roadmaps, policies and governance forums, while helping to strengthen secure-by-design practices across programmes and operational teams. The position requires the ability to communicate complex security matters clearly to both technical and non-technical audiences and to influence decisions at senior levels.
The successful candidate will have substantial experience in security architecture, consulting or a closely related discipline, with a strong understanding of enterprise security principles, identity and access management, network security, application security, data protection, cryptography and cloud security. Experience with architecture frameworks, risk management methodologies, threat modelling techniques and relevant standards such as ISO 27001, NIST or CIS is highly desirable. Professional security or architecture certifications would be advantageous. You should be analytical, pragmatic and commercially aware, with excellent stakeholder management, communication and influencing skills. A proven ability to lead complex work, manage competing priorities and deliver clear, actionable recommendations in fast-changing environments is essential.
Read lessBristol, England, United KingdomPermanent
We are seeking an experienced Lead Security Engineer to provide technical leadership across the design, implementation, and continuous... Read more
We are seeking an experienced Lead Security Engineer to provide technical leadership across the design, implementation, and continuous improvement of security capabilities. In this role, you will help define security architecture, strengthen preventative and detective controls, and guide engineering teams in delivering secure, resilient services. You will work closely with technology, product, infrastructure, and risk stakeholders to identify threats, assess vulnerabilities, and ensure security is embedded throughout the development and operational lifecycle.
Your responsibilities will include leading security engineering initiatives, developing and maintaining security standards, and reviewing architectural and technical designs. You will oversee vulnerability management, security monitoring, identity and access controls, cloud security, endpoint protection, and incident response readiness. You will investigate complex security events, coordinate remediation activities, and provide clear recommendations to technical and senior audiences. The role will also involve mentoring security engineers, setting engineering priorities, evaluating new tools and technologies, and supporting the development of repeatable processes that improve the organisation’s overall security posture.
To succeed, you should have significant experience in security engineering, security architecture, or a closely related discipline, together with a strong understanding of modern infrastructure, cloud platforms, networks, operating systems, and application security. You will be comfortable working with security tooling, automation, logging and monitoring platforms, vulnerability scanners, and identity technologies. Experience leading technical projects and influencing teams without direct authority is essential, as is the ability to communicate complex risks clearly and pragmatically. Relevant professional certifications are advantageous. We are looking for a collaborative, analytical, and proactive security professional who can balance strategic thinking with hands-on technical delivery and remain effective in a fast-changing environment.
Read lessBristol, England, United KingdomPermanent
We are seeking an experienced Associate Director, OT & Cybersecurity to lead the development and delivery of robust... Read more
We are seeking an experienced Associate Director, OT & Cybersecurity to lead the development and delivery of robust cybersecurity strategies across operational technology environments. This role will provide strategic direction for protecting industrial control systems, manufacturing technologies, connected assets and critical infrastructure against evolving cyber threats. You will work closely with technology, engineering, operations, risk, compliance and business leadership teams to ensure security is embedded throughout the design, implementation and operation of OT systems.
Key responsibilities will include defining and maintaining an OT cybersecurity roadmap; establishing governance, policies, standards and operating procedures; and overseeing risk assessments, vulnerability management, threat monitoring, incident response and remediation programmes. You will lead the identification and treatment of cyber risks across OT and IT/OT convergence environments, support secure architecture and technology decisions, and ensure appropriate controls are implemented throughout the asset lifecycle. The role will also contribute to audit and regulatory activity, third-party and supply-chain risk management, security awareness initiatives, and the development and testing of business continuity and cyber incident response plans. You will manage specialist partners and provide clear reporting on risk, performance, priorities and investment requirements to senior stakeholders.
The successful candidate will bring substantial experience in OT, industrial cybersecurity, critical infrastructure security or a closely related field, together with a strong understanding of standards and frameworks such as IEC 62443, NIST, ISO 27001 and relevant regulatory requirements. Experience leading cybersecurity programmes across complex, geographically distributed environments is essential, as is the ability to translate technical risks into practical business decisions. Relevant professional qualifications in cybersecurity, information technology, engineering or risk management are desirable. You will be an influential and collaborative leader with excellent communication skills, sound judgement and the ability to engage confidently with both technical specialists and executive audiences.
Read lessBristol, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria