We are seeking an experienced Information Security GRC Lead to strengthen governance, risk management and compliance capabilities across... Read more
We are seeking an experienced Information Security GRC Lead to strengthen governance, risk management and compliance capabilities across a complex technology and business environment. This role will provide strategic direction while remaining closely involved in the delivery of practical security initiatives, ensuring that information security risks are identified, assessed and managed in line with business priorities and regulatory expectations.
Key responsibilities will include developing and maintaining information security policies, standards and control frameworks; coordinating enterprise-wide risk assessments; managing risk treatment plans and tracking remediation activities; and preparing clear reporting for senior leadership and relevant governance forums. You will lead internal and external audit activity, support regulatory and client assurance requests, and oversee the collection of evidence for compliance assessments. The role will also contribute to third-party risk management, business continuity and resilience activities, security awareness programmes, and the continuous improvement of governance processes. You will work collaboratively with technology, legal, privacy, procurement and operational teams to embed effective controls without creating unnecessary barriers to delivery.
The successful candidate will have substantial experience in information security governance, risk and compliance, with a strong understanding of recognised frameworks and standards such as ISO 27001, NIST, COBIT or equivalent. Experience leading audits, control assessments, risk reporting and remediation programmes is essential, ideally within a regulated or highly complex organisation. Professional qualifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Lead Auditor are desirable. You will combine sound technical knowledge with excellent communication, stakeholder management and influencing skills, and be confident presenting complex risks to both technical and executive audiences. A proactive, analytical and pragmatic approach is essential, together with the ability to manage multiple priorities and deliver measurable improvements in security maturity.
Read lessChippenham, England, United KingdomPermanent
We are seeking a Ground System Security Design Engineer to support the development, integration and protection of complex... Read more
We are seeking a Ground System Security Design Engineer to support the development, integration and protection of complex ground-based systems. In this role, you will contribute to the security design of infrastructure, networks, applications and operational technologies that support critical mission services. You will work across the system lifecycle, from concept and requirements definition through architecture, implementation, verification and ongoing improvement, ensuring that security is embedded by design.
Your responsibilities will include producing and maintaining security architectures, design documents, technical requirements, threat models and risk assessments. You will identify vulnerabilities and attack paths, define appropriate security controls, and support the implementation of measures such as network segmentation, identity and access management, encryption, secure configuration, monitoring and resilience. You will collaborate with systems engineers, software developers, infrastructure specialists, operations teams and external suppliers to ensure that security requirements are understood, traceable and effectively delivered. You may also support security testing, design reviews, assurance activities, incident investigations and the resolution of technical findings.
The successful candidate will have experience in systems security engineering, cyber security architecture or a related discipline, ideally within a regulated, safety-critical or mission-critical environment. You should be able to interpret security standards and apply recognised frameworks, risk-management methods and secure engineering principles to practical designs. Knowledge of networks, operating systems, cloud or virtualised environments, security monitoring and vulnerability management is desirable. Strong analytical, documentation and communication skills are essential, together with the ability to explain complex security matters to both technical and non-technical stakeholders. Relevant professional qualifications or certifications in cyber security, systems engineering or information assurance would be advantageous. The role may require eligibility for appropriate security clearance.
Read lessChippenham, England, United KingdomPermanent
We are seeking a motivated Junior Cyber Security Analyst to join a collaborative security team and support the... Read more
We are seeking a motivated Junior Cyber Security Analyst to join a collaborative security team and support the protection of systems, applications, networks, and data. This is an excellent opportunity for someone at the beginning of their cyber security career who is keen to develop practical experience across monitoring, incident response, vulnerability management, and security assurance.
In this role, you will monitor security alerts and event logs, investigate suspicious activity, and escalate potential incidents in line with established procedures. You will assist with triaging and documenting incidents, gathering relevant evidence, and supporting response and recovery activities. Other responsibilities will include reviewing vulnerability scan results, helping track remediation actions, maintaining accurate security records, and contributing to regular reports and performance metrics. You may also support access reviews, security control testing, phishing awareness activities, and the maintenance of security policies, procedures, and technical documentation. The role involves working closely with IT and business teams to promote secure practices and ensure risks are identified and addressed appropriately.
The successful candidate will have a foundational understanding of cyber security principles, common threats, and defensive controls, together with strong attention to detail and a methodical approach to problem-solving. Familiarity with security information and event management tools, endpoint protection, vulnerability scanners, ticketing systems, or cloud security concepts would be advantageous. Relevant study, certifications, or practical experience in cyber security, information technology, networking, or a related discipline is desirable. You should be curious, organised, and able to communicate technical information clearly to both technical and non-technical colleagues. A willingness to learn, follow documented processes, handle sensitive information responsibly, and work effectively as part of a team is essential.
Read lessChippenham, England, United KingdomPermanent
We are seeking a diligent SOC Analyst to join a security operations team responsible for monitoring, investigating and... Read more
We are seeking a diligent SOC Analyst to join a security operations team responsible for monitoring, investigating and responding to cyber security threats across a diverse technology environment. You will work as part of a 24/7 monitoring function, analysing alerts from security information and event management (SIEM) platforms, endpoint detection tools, network monitoring systems and other security technologies. The role requires strong analytical ability, sound judgement and a methodical approach to identifying suspicious activity and reducing risk.
Your responsibilities will include triaging and investigating security alerts, correlating events across multiple data sources, identifying indicators of compromise and escalating incidents in line with established procedures. You will support incident response activities, maintain accurate case records, produce clear investigation reports and contribute to post-incident reviews. You will also assist with threat hunting, vulnerability investigations, security control testing and the development of detection rules, playbooks and operational procedures. The successful candidate will collaborate with infrastructure, engineering and compliance teams to improve monitoring coverage and strengthen the organisation’s overall security posture.
Applicants should have practical experience in a security operations, incident response or cyber defence environment, together with a good understanding of networking, operating systems, authentication, common attack techniques and security principles. Experience using SIEM, EDR, IDS/IPS, ticketing or threat intelligence platforms is highly desirable. Relevant certifications or formal training in cyber security are advantageous. You should be comfortable analysing logs and data, documenting technical findings and communicating effectively with both technical and non-technical colleagues. A proactive attitude, attention to detail and willingness to work shifts or participate in an on-call rota may be required. This is an opportunity to develop your technical expertise while contributing to the detection and prevention of evolving cyber threats.
Read lessChippenham, England, United KingdomPermanent
We are seeking a dedicated and detail-oriented SOC Analyst to join our dynamic cybersecurity team. In this role,... Read more
We are seeking a dedicated and detail-oriented SOC Analyst to join our dynamic cybersecurity team. In this role, you will be responsible for monitoring, detecting, and responding to security incidents within our organization’s IT infrastructure. Your primary duties will include analyzing security alerts, investigating potential threats, and providing timely incident response in accordance with established protocols. You will leverage various security tools and technologies to identify vulnerabilities and recommend appropriate remediation strategies to enhance our security posture.
The ideal candidate will possess a strong understanding of security frameworks, network protocols, and incident response methodologies. You will collaborate closely with cross-functional teams to develop and maintain security policies and procedures, as well as conduct regular security assessments and audits. Additionally, you will be expected to stay current with emerging threats and trends in cybersecurity, contributing to ongoing training and awareness programs for staff members. Strong analytical skills, attention to detail, and the ability to work effectively under pressure are essential for success in this role.
Read lessChippenham, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria