We are seeking a Cyber Security Analyst – Enterprise Markets to help protect critical platforms, applications and data... Read more
We are seeking a Cyber Security Analyst – Enterprise Markets to help protect critical platforms, applications and data across a complex, highly regulated environment. This role will contribute to the delivery of effective security operations, risk management and resilience practices, working closely with technology, business and third-party teams. You will support the identification, assessment and treatment of cyber risks while helping to strengthen security controls across enterprise market services.
Your responsibilities will include monitoring and investigating security events, supporting incident response activities and coordinating the remediation of identified vulnerabilities. You will conduct security assessments, review control effectiveness and contribute to threat modelling, risk assessments and audit preparation. The role will also involve analysing security logs and alerts, maintaining accurate documentation, tracking actions to completion and producing clear reports for technical and non-technical stakeholders. You will help develop and improve security procedures, standards and awareness materials, ensuring they remain aligned with relevant policies, regulatory expectations and industry good practice.
The successful candidate will have experience in cyber security operations, information security, risk, vulnerability management or a related discipline, ideally within financial services, enterprise technology or another regulated environment. You should be comfortable working with security monitoring and ticketing tools, interpreting technical findings and prioritising actions according to business impact. Knowledge of security frameworks, incident management, identity and access management, network security and cloud technologies would be advantageous. Strong analytical, communication and problem-solving skills are essential, together with the ability to collaborate effectively, manage competing priorities and explain complex security matters clearly. Relevant professional certifications or formal qualifications in cyber security, information technology or risk management are desirable.
Read lessGlasgow, Scotland, United KingdomPermanent
We are seeking an Information Security Finance professional to support the financial planning, governance and operational management of... Read more
We are seeking an Information Security Finance professional to support the financial planning, governance and operational management of information security activities. This role will connect finance, cybersecurity, risk and procurement teams, helping ensure that security investments are properly planned, controlled and aligned with business priorities. You will contribute to budgeting and forecasting processes, monitor expenditure, and provide clear financial insight to support informed decision-making across the security function.
Key responsibilities will include preparing annual budgets, quarterly forecasts and management reports for information security programmes; tracking actual spend against approved budgets; investigating variances; and identifying opportunities to improve cost efficiency without compromising security outcomes. You will support business cases for security initiatives, assess financial impacts, and help evaluate investment priorities across technology, people, services and regulatory requirements. The role will also involve maintaining accurate financial records, coordinating purchase orders and invoices, monitoring vendor and contract spend, and supporting the renewal or review of security-related services.
The successful candidate will have experience in financial analysis, management accounting, budgeting or commercial management, ideally within information security, technology, risk or another complex corporate environment. Strong Excel and data analysis skills are essential, along with the ability to interpret financial information and present it clearly to technical and non-technical stakeholders. Experience with enterprise resource planning, procurement or financial reporting systems would be advantageous. You should be organised, analytical and commercially aware, with excellent attention to detail and the confidence to challenge assumptions constructively. An understanding of cybersecurity principles, technology services, risk management or regulatory requirements is desirable, as is the ability to manage competing priorities and deliver accurate work to deadlines.
Read lessGlasgow, Scotland, United KingdomContract
We are seeking a Cyber Defense Incident Responder – Assistant Director to lead the identification, investigation, containment, and... Read more
We are seeking a Cyber Defense Incident Responder – Assistant Director to lead the identification, investigation, containment, and recovery of cybersecurity incidents across a complex technology environment. This senior role will provide operational leadership to incident response activities, helping protect critical systems, data, and services from evolving cyber threats. You will oversee the coordination of high-severity incidents, ensure timely escalation, and support clear communication with technical teams, senior stakeholders, and relevant external parties.
Key responsibilities include developing and maintaining incident response procedures, playbooks, and escalation frameworks; directing investigations into suspected security breaches, malware infections, unauthorized access, and other cyber events; and coordinating forensic analysis, threat hunting, containment, eradication, and recovery activities. You will assess the potential impact of incidents, ensure accurate documentation and reporting, and lead post-incident reviews to identify lessons learned and strengthen defensive capabilities. The role will also contribute to security monitoring improvements, tabletop exercises, metrics, risk assessments, and the continuous enhancement of detection and response processes. You may supervise or mentor incident responders and help build a culture of operational readiness across security and technology teams.
Applicants should have substantial experience in cyber defense, security operations, digital forensics, or incident response, including experience managing complex or high-impact incidents. Strong knowledge of attack techniques, threat intelligence, vulnerability management, network and endpoint security, and common security frameworks is required. Experience with SIEM, EDR, SOAR, forensic, and case-management technologies will be highly valued. Professional security certifications such as CISSP, CISM, GIAC, or equivalent qualifications are desirable. You will need excellent analytical, leadership, communication, and decision-making skills, with the ability to remain calm under pressure, translate technical risk for non-technical audiences, and coordinate multiple teams during time-sensitive events. A commitment to confidentiality, continuous learning, and resilient security operations is essential.
Read lessGlasgow, Scotland, United KingdomPermanent
We are seeking an experienced Cybersecurity Project Manager to lead the planning and delivery of security initiatives across... Read more
We are seeking an experienced Cybersecurity Project Manager to lead the planning and delivery of security initiatives across a complex technology environment. The successful candidate will manage projects from initiation through to completion, ensuring that objectives, timelines, budgets, quality standards and security outcomes are achieved. This role will work closely with technology, risk, compliance, infrastructure and business stakeholders to strengthen cybersecurity capabilities and support organisational resilience.
Responsibilities will include defining project scope, deliverables, milestones, governance structures and resource requirements; developing and maintaining detailed project plans, budgets, risk registers and reporting; and coordinating internal teams, consultants and third-party suppliers. You will oversee initiatives such as security control implementation, vulnerability management, identity and access management, cloud security, incident readiness, regulatory compliance and security awareness. The role will also involve facilitating workshops, tracking dependencies, managing issues and changes, escalating risks appropriately, and providing clear progress updates to senior stakeholders. You will ensure that project documentation is complete and that solutions are transitioned effectively into operational support.
Applicants should have proven experience managing cybersecurity, information security, technology or risk-related projects, ideally within a regulated or complex environment. A strong understanding of security frameworks, governance principles, risk management practices and common cybersecurity technologies is required. You will be confident working with cross-functional teams, influencing stakeholders and translating technical information into clear business outcomes. Excellent organisation, communication, negotiation and problem-solving skills are essential, together with the ability to manage competing priorities and deliver under pressure. Experience with recognised project management methodologies such as Agile, PRINCE2 or PMP is desirable, and relevant cybersecurity or project management certifications will be advantageous. A proactive, collaborative approach and a commitment to continuous improvement are expected.
Read lessGlasgow, Scotland, United KingdomPermanent
We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and... Read more
We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and resolution of sophisticated cybersecurity incidents. This role will provide senior-level technical direction during high-impact events, coordinate response activities across security, technology, risk, legal, and business teams, and help strengthen the organisation’s overall cyber resilience. The successful candidate will be comfortable operating in a fast-paced environment where sound judgment, clear communication, and decisive action are essential.
Responsibilities include managing the end-to-end incident response lifecycle, including detection triage, scoping, forensic investigation, threat containment, eradication, recovery, and post-incident review. You will analyse security alerts and telemetry from SIEM, endpoint detection and response, network monitoring, identity, cloud, and other security platforms. The role will lead investigations involving malware, ransomware, phishing, credential compromise, insider threats, data loss, cloud security events, and advanced persistent threats. You will develop and maintain incident response playbooks, improve operating procedures, support cyber exercises, and provide concise briefings and written reports for senior stakeholders. The position will also help mentor analysts and responders, coordinate third-party support when required, and contribute to threat hunting and proactive detection engineering.
Applicants should have substantial experience in cyber incident response, digital forensics, security operations, or a closely related discipline, including experience leading investigations or response teams. Strong knowledge of attack techniques, incident handling frameworks, network and host-based analysis, identity security, cloud environments, and common security tooling is required. Experience with scripting or automation, forensic utilities, and threat intelligence platforms is desirable. Relevant certifications such as CISSP, GIAC, GCIH, GCFA, or equivalent qualifications would be advantageous. You should demonstrate excellent analytical and problem-solving skills, the ability to prioritise under pressure, and confidence communicating complex technical issues to both technical and non-technical audiences. The role may involve participation in an on-call rota and responding to critical incidents outside standard working hours.
Read lessGlasgow, Scotland, United KingdomPermanent
We are seeking a Senior Information and Cyber Security Officer to lead and support the development, implementation and... Read more
We are seeking a Senior Information and Cyber Security Officer to lead and support the development, implementation and continuous improvement of information security across a complex organisation. This is an influential role for an experienced security professional who can translate strategic objectives and emerging cyber threats into practical, proportionate controls. You will work with stakeholders at all levels to strengthen security culture, protect sensitive information and support the delivery of secure services.
Key responsibilities will include maintaining and improving information security policies, standards, procedures and governance arrangements; coordinating risk assessments, control reviews and assurance activities; and monitoring compliance with relevant legislation, regulatory requirements and recognised security frameworks. You will provide expert advice on security architecture, access management, vulnerability management, incident response, business continuity and secure technology change. The role will also involve investigating and managing security incidents, supporting remediation plans, producing clear reports for senior leaders, and contributing to security awareness and training programmes. You may lead or support audits, penetration testing, third-party assurance reviews and cyber resilience exercises.
Applicants should have substantial experience in information or cyber security, with a strong understanding of security risk management, governance, incident handling and control frameworks such as ISO 27001, NIST or CIS. Relevant professional qualifications, such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or equivalent experience, are desirable. You will need excellent analytical, communication and influencing skills, together with the ability to explain technical risks clearly to non-technical audiences and build effective relationships across multiple teams. A pragmatic, collaborative approach, strong attention to detail and the ability to manage competing priorities are essential. This is an opportunity to make a significant contribution to organisational resilience while helping shape a proactive and continually improving security environment.
Read lessGlasgow, Scotland, United KingdomPermanent
We are seeking a Data Protection Engineer to help design, implement and maintain secure, resilient solutions that protect... Read more
We are seeking a Data Protection Engineer to help design, implement and maintain secure, resilient solutions that protect personal and sensitive information across enterprise systems. You will work closely with information security, infrastructure, software engineering, legal and compliance teams to translate data protection principles into practical technical controls. The role will contribute to the development of privacy-enhancing technologies, secure data flows and effective governance processes throughout the information lifecycle.
Your responsibilities will include assessing systems and processing activities for privacy and security risks; implementing encryption, pseudonymisation, tokenisation, access controls and data loss prevention measures; and supporting the secure design of applications, platforms and integrations. You will develop and maintain technical standards, policies and procedures relating to data protection, retention, deletion and secure data handling. You will also monitor control effectiveness, investigate potential data incidents, support impact assessments and audits, and help coordinate remediation activities. Clear documentation, accurate reporting and the ability to explain technical risks to non-technical stakeholders will be essential.
Applicants should have professional experience in data protection engineering, information security, privacy technology, cloud security or a closely related discipline. Strong knowledge of security architecture, identity and access management, encryption, vulnerability management and data governance is required. Experience with cloud platforms, security monitoring tools, automated compliance controls, databases and scripting languages such as Python, PowerShell or Bash would be advantageous. Familiarity with privacy and data protection legislation, recognised security frameworks and secure software development practices is also desirable. You should be analytical, collaborative and comfortable managing multiple priorities in a changing environment. Relevant qualifications in cybersecurity, information technology, data privacy or engineering, together with industry certifications, would be welcomed.
Read lessGlasgow, Scotland, United KingdomContract
We are seeking a Cyber Incident Operations Lead to oversee the detection, response and resolution of cyber security... Read more
We are seeking a Cyber Incident Operations Lead to oversee the detection, response and resolution of cyber security incidents across a complex technology environment. This role will provide operational leadership during high-impact events, coordinate technical and business stakeholders, and ensure incidents are managed efficiently from initial triage through to recovery and closure. You will act as a senior point of escalation, helping to protect critical services, sensitive information and organisational resilience.
Key responsibilities include leading the incident response process, assessing severity and business impact, assigning appropriate response teams, and maintaining clear communication with technical specialists, senior leaders and relevant third parties. You will coordinate investigations into security alerts, suspected breaches, malware, unauthorised access, data loss and other cyber events. The role will also oversee the development and testing of incident response playbooks, improve escalation procedures, track incident metrics, and ensure accurate, timely documentation. Following major incidents, you will lead post-incident reviews, identify root causes, and drive corrective actions to reduce the likelihood and impact of future events.
The successful candidate will have substantial experience in cyber security operations, incident response or a closely related discipline, including hands-on experience managing complex or high-severity incidents. You will be confident working with security monitoring, endpoint detection, identity, network and vulnerability management technologies, and have a strong understanding of threat intelligence and attack techniques. Experience with recognised security frameworks and standards, such as NIST or ISO 27001, is desirable. Strong analytical, communication and decision-making skills are essential, along with the ability to remain calm under pressure, manage competing priorities and influence stakeholders at all levels. Relevant professional certifications in cyber security, incident handling or service management would be advantageous.
Read lessGlasgow, Scotland, United KingdomPermanent
We are seeking a Data Security Analyst to help protect sensitive information, systems and services across a complex... Read more
We are seeking a Data Security Analyst to help protect sensitive information, systems and services across a complex technology environment. The successful candidate will monitor security events, investigate alerts and support the identification, assessment and resolution of potential threats. You will work closely with technology, risk and business teams to strengthen data protection controls and promote secure working practices across the organisation.
Key responsibilities will include analysing security logs and monitoring tools, conducting initial incident triage, escalating suspected breaches and supporting investigations through to resolution. You will assist with vulnerability assessments, access reviews, security testing and risk assessments, ensuring that findings are clearly documented and tracked to completion. The role will also involve maintaining security procedures, contributing to incident response plans, preparing management reports and helping ensure compliance with relevant data protection, information security and regulatory requirements. You may also support the development of data classification, retention and handling standards, as well as delivering guidance and awareness activities to colleagues.
Applicants should have experience in data security, information security, cyber security operations, risk or a related discipline, with a practical understanding of security monitoring, incident management and common security controls. Familiarity with SIEM platforms, endpoint protection, vulnerability management tools, identity and access management, and cloud security concepts would be advantageous. Strong analytical and problem-solving skills are essential, together with the ability to interpret technical information, identify patterns and communicate findings clearly to both technical and non-technical audiences. Relevant professional qualifications or certifications are welcomed, although equivalent practical experience will be considered. You should be organised, curious and capable of handling confidential information with discretion while managing multiple priorities in a collaborative environment.
Read lessGlasgow, Scotland, United KingdomContract
We are seeking an experienced Senior Information and Cyber Security Officer to lead and support the development of... Read more
We are seeking an experienced Senior Information and Cyber Security Officer to lead and support the development of a robust, risk-based security environment. This is an opportunity to play a key role in protecting information, systems, services and users across a complex organisation, while helping to strengthen security culture and resilience. You will provide expert advice to senior stakeholders, contribute to strategic planning and ensure that security considerations are embedded throughout the design, delivery and operation of technology and business services.
Your responsibilities will include maintaining and improving information security policies, standards and procedures; identifying, assessing and managing cyber and information risks; and supporting compliance with relevant legislation, regulations and recognised security frameworks. You will coordinate security reviews, vulnerability management, assurance activity and incident response, ensuring that issues are investigated, recorded and resolved appropriately. The role will also involve advising on secure architecture, access controls, data protection, supplier assurance, business continuity and disaster recovery. You will monitor the threat landscape, provide clear reports and recommendations, and contribute to security awareness, training and communications across the organisation.
Applicants should have substantial experience in information security, cyber security, risk management or a closely related discipline, together with a strong understanding of governance, security controls and incident management. Professional qualifications such as CISSP, CISM, CRISC, ISO 27001 or equivalent experience are desirable. You will be confident interpreting technical information, influencing stakeholders and explaining complex issues in clear, practical language. Strong analytical, organisational and communication skills are essential, as is the ability to work independently, manage competing priorities and collaborate effectively with technical and non-technical colleagues. A proactive approach, sound judgement and commitment to continuous improvement will be highly valued.
Read lessGlasgow, Scotland, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria