We are seeking an experienced Data Protection Officer to provide expert data protection advice and support across a... Read more
We are seeking an experienced Data Protection Officer to provide expert data protection advice and support across a group of schools and trusts. This is a key role responsible for promoting a strong culture of privacy, accountability and information security, while ensuring that personal data is handled lawfully, fairly and transparently. You will act as a trusted adviser to senior leaders, governors, staff and other stakeholders, helping them understand and meet their responsibilities under UK data protection legislation.
Your responsibilities will include monitoring compliance with the UK GDPR, the Data Protection Act 2018 and related guidance; maintaining records of processing activities; reviewing privacy notices, policies, procedures and data-sharing agreements; and advising on data protection impact assessments. You will manage and investigate data breaches, coordinate responses to data subject rights requests, support the delivery of staff training and awareness programmes, and provide clear, practical guidance on issues including children’s data, safeguarding, photographs, educational technology and information sharing. You will also contribute to audits, risk assessments and continuous improvement activity, ensuring that actions are documented, tracked and completed.
The successful candidate will have substantial experience in a data protection, compliance or information governance role, ideally within education, the public sector or another complex multi-site environment. You should have a strong working knowledge of UK data protection law and the ability to interpret regulatory requirements in a practical and proportionate way. Excellent communication, organisation and problem-solving skills are essential, together with the confidence to challenge constructively and build effective relationships at all levels. Professional data protection or information governance qualifications, such as CIPP/E, CIPT, BCS or equivalent, would be desirable. The role may involve travel between sites and requires a high level of discretion, integrity and commitment to protecting the rights and wellbeing of children, young people and staff.
Read lessGloucester, England, United KingdomPermanent
We are seeking a Senior DevSecOps Engineer to help design, implement, and continuously improve secure, reliable, and scalable... Read more
We are seeking a Senior DevSecOps Engineer to help design, implement, and continuously improve secure, reliable, and scalable software delivery practices. In this role, you will work across development, operations, security, and architecture teams to embed security throughout the software development lifecycle and enable efficient, automated delivery of high-quality services.
Your responsibilities will include designing and maintaining CI/CD pipelines, implementing infrastructure as code, and managing cloud-based environments across development, testing, and production. You will establish and improve security controls, including vulnerability scanning, secrets management, identity and access management, container security, and compliance monitoring. You will also support threat modelling, security assessments, incident response, and the remediation of identified risks. A key part of the role will be promoting DevSecOps best practices through automation, technical guidance, documentation, and collaboration with engineering teams. You will help define standards for observability, resilience, configuration management, and secure release processes, while identifying opportunities to improve system performance and operational efficiency.
The successful candidate will have substantial experience in DevOps, platform engineering, cloud infrastructure, or a similar environment, with a strong understanding of modern security principles. Experience with public cloud platforms, Kubernetes, Docker, Linux, Git, and automated deployment tools is expected, together with proficiency in scripting or programming languages such as Python, Bash, or Go. You should be confident working with infrastructure-as-code tools, security testing solutions, monitoring platforms, and source-control workflows. Strong knowledge of networking, authentication, encryption, vulnerability management, and relevant security frameworks is highly desirable. Excellent communication and problem-solving skills are essential, as is the ability to influence teams, manage competing priorities, and explain complex technical issues clearly. Relevant cloud, DevOps, or security certifications would be advantageous.
Read lessGloucester, England, United KingdomPermanent
We are seeking a skilled DevSecOps Engineer to help integrate security throughout the software development and delivery lifecycle.... Read more
We are seeking a skilled DevSecOps Engineer to help integrate security throughout the software development and delivery lifecycle. In this role, you will work closely with development, operations, infrastructure, and security teams to design, automate, and maintain reliable, secure, and scalable platforms. You will champion secure-by-design practices, improve engineering standards, and help teams deliver high-quality services efficiently.
Your responsibilities will include building and maintaining CI/CD pipelines, embedding automated security checks into development workflows, and supporting infrastructure managed through code. You will configure and maintain cloud environments, container platforms, orchestration tools, monitoring solutions, and secrets-management systems. You will identify vulnerabilities, investigate security findings, support remediation, and contribute to threat modelling, risk assessments, incident response, and root-cause analysis. You will also develop reusable automation, strengthen access controls, improve system observability, and document processes, technical decisions, and operational procedures.
The successful candidate will have professional experience in DevSecOps, cloud engineering, site reliability engineering, or a closely related discipline. You should be confident working with source control, CI/CD technologies, containers, infrastructure-as-code, and at least one major cloud platform. Knowledge of scripting or programming languages such as Python, Bash, or Go, together with practical experience of security scanning, vulnerability management, identity and access management, and secure software development practices, is essential. Familiarity with relevant frameworks and standards, such as OWASP, CIS, NIST, or ISO 27001, would be advantageous. Strong communication and collaboration skills are important, as is the ability to balance security, reliability, delivery speed, and business needs. Relevant cloud, security, Kubernetes, or DevSecOps certifications are welcome but not required.
Read lessGloucester, England, United KingdomPermanent
We are seeking a Lead DevSecOps Engineer to drive the integration of security, development, and operations across the... Read more
We are seeking a Lead DevSecOps Engineer to drive the integration of security, development, and operations across the software delivery lifecycle. In this senior role, you will define and implement secure, scalable DevOps practices, while leading engineering teams in building reliable automation, infrastructure, and deployment solutions. You will champion a security-first culture and ensure that security is embedded from design through to production.
Your responsibilities will include designing and maintaining CI/CD pipelines, implementing infrastructure as code, and improving cloud-based platforms for resilience, scalability, and performance. You will establish automated security controls, vulnerability management processes, secrets management, compliance checks, and continuous monitoring. Working closely with software engineers, platform teams, architects, and security specialists, you will identify risks, improve incident response, and support the secure delivery of high-quality products. You will also provide technical leadership through mentoring, design reviews, documentation, standards, and hands-on problem solving.
The successful candidate will have substantial experience in DevOps, DevSecOps, cloud engineering, or a similar discipline, with a strong understanding of secure software development and modern infrastructure practices. Experience with major cloud platforms, Kubernetes, containers, Linux, Git, and CI/CD tooling is expected, together with practical knowledge of infrastructure-as-code technologies such as Terraform or equivalent. You should be comfortable with scripting or programming, security testing tools, observability platforms, and automation frameworks. Strong communication and collaboration skills are essential, as is the ability to influence technical decisions, manage competing priorities, and translate complex security requirements into practical engineering solutions. Relevant cloud, DevOps, or security certifications are desirable but not essential.
Read lessGloucester, England, United KingdomPermanent
We are seeking a Senior Cyber Researcher to lead advanced research into emerging cyber threats, vulnerabilities, attack techniques... Read more
We are seeking a Senior Cyber Researcher to lead advanced research into emerging cyber threats, vulnerabilities, attack techniques and defensive technologies. This role will involve investigating complex security problems, developing original insights and translating technical findings into practical recommendations for security teams, decision-makers and external stakeholders. You will work across threat intelligence, vulnerability research, malware analysis, adversary tracking and security engineering, helping to strengthen understanding of the evolving threat landscape.
Key responsibilities include designing and delivering research projects from initial hypothesis through to publication or operational implementation; analysing data from open, commercial and technical sources; conducting technical investigations, reverse engineering and proof-of-concept development; and identifying trends that may affect systems, platforms and users. You will produce clear and authoritative reports, technical briefings, presentations and supporting tools, while collaborating with researchers, engineers and operational teams. The role may also involve mentoring less experienced colleagues, reviewing research outputs, contributing to internal standards and representing the function at relevant conferences, workshops and industry forums.
Applicants should have substantial experience in cyber security research, threat intelligence, vulnerability analysis, malware analysis or a closely related discipline. Strong knowledge of common attack methods, exploitation techniques, operating systems, networks, cloud environments and security controls is expected, together with practical experience using scripting or programming languages such as Python, PowerShell, C, C++ or Go. You should be comfortable working with security tooling, forensic data and large or complex datasets, and able to explain highly technical subjects to varied audiences. Excellent written and verbal communication, sound analytical judgement, curiosity and the ability to manage multiple priorities are essential. Relevant professional certifications, a degree in cyber security, computer science or a related subject, and experience publishing or presenting original research would be advantageous.
Read lessGloucester, England, United KingdomPermanent
We are seeking a Vulnerability Researcher to join a specialist security team in Manchester. This role is suited... Read more
We are seeking a Vulnerability Researcher to join a specialist security team in Manchester. This role is suited to an experienced vulnerability researcher, penetration tester, reverse engineer or security professional with a strong interest in discovering, analysing and responsibly disclosing weaknesses in software, hardware and connected systems. You will investigate emerging threats, assess the security of products and services, and develop clear technical findings that help engineering teams understand and address risk.
Your responsibilities will include researching vulnerabilities across operating systems, applications, embedded devices and network technologies; performing static and dynamic analysis; reverse engineering binaries and protocols; and creating proof-of-concept exploits or test cases where appropriate. You will use scripting and programming languages such as Python, C, C++, Rust or similar to automate testing, build research tooling and reproduce complex issues. The role will also involve monitoring security developments, contributing to internal research projects, documenting methodologies, presenting findings to technical and non-technical audiences, and collaborating with developers, incident responders and security engineers to support effective remediation.
Applicants should have practical experience in vulnerability research, penetration testing, exploit development, reverse engineering or a closely related discipline. You will need a strong understanding of common vulnerability classes, operating system internals, networking principles and secure development practices, together with the ability to use relevant debugging, disassembly, fuzzing and analysis tools. Familiarity with vulnerability management standards, responsible disclosure processes and frameworks such as MITRE ATT&CK or CVSS would be beneficial. Curiosity, analytical thinking, careful attention to detail and the ability to communicate complex technical issues clearly are essential. The position offers the opportunity to work on challenging security problems, develop innovative research techniques and contribute to improving the resilience of real-world technologies.
Read lessGloucester, England, United KingdomPermanent
We are seeking a dedicated and experienced Security & Compliance Manager to join our team. In this role,... Read more
We are seeking a dedicated and experienced Security & Compliance Manager to join our team. In this role, you will be responsible for developing, implementing, and maintaining our security and compliance programs to ensure that all operations meet regulatory requirements and industry standards. You will work closely with cross-functional teams to assess risks, create policies, and establish best practices that safeguard sensitive information and promote a culture of compliance across the organization.
Your key responsibilities will include conducting regular security audits, risk assessments, and compliance reviews to identify potential vulnerabilities. You will develop and deliver training programs for employees to enhance awareness of security protocols and compliance obligations. Additionally, you will be responsible for managing incident response plans and leading investigations into security breaches or compliance violations, ensuring that all incidents are documented and reported appropriately.
The ideal candidate will have a strong background in information security, risk management, and regulatory compliance, along with relevant certifications (e.g., CISSP, CISM, or similar). Exceptional analytical and problem-solving skills, combined with excellent communication abilities, will be essential in this position. If you are passionate about fostering a secure and compliant environment and are ready to take on a challenging role, we invite you to apply and help drive our commitment to security excellence.
Read lessGloucester, England, United KingdomPermanent
We are seeking a skilled Product Security Engineer to join our dynamic team. In this role, you will... Read more
We are seeking a skilled Product Security Engineer to join our dynamic team. In this role, you will be responsible for assessing and enhancing the security posture of our products throughout their lifecycle. Your primary duties will include identifying vulnerabilities, conducting security assessments, and implementing security best practices to ensure that our products remain secure against evolving threats. You will collaborate closely with cross-functional teams, including product development and quality assurance, to integrate security features seamlessly into our design and development processes.
The ideal candidate will possess a strong understanding of security principles, as well as experience with threat modeling, code reviews, and penetration testing. You should be proficient in programming languages such as Python, Java, or C++, and have a solid grasp of application security tools and frameworks. Additionally, experience with cloud security, encryption standards, and regulatory compliance will be beneficial. Strong analytical skills, attention to detail, and the ability to communicate complex security concepts to non-technical stakeholders are essential for success in this position.
If you are passionate about product security and eager to make a significant impact in a fast-paced environment, we encourage you to apply. Join us in our mission to deliver secure and reliable products that protect our users and their data.
Read lessGloucester, England, United KingdomPermanent
We are seeking an Operational Cyber Researcher to join our dynamic team, responsible for identifying and analyzing emerging... Read more
We are seeking an Operational Cyber Researcher to join our dynamic team, responsible for identifying and analyzing emerging cyber threats and vulnerabilities. The ideal candidate will conduct in-depth research and analysis on cyber threats, utilizing various tools and methodologies to enhance our security posture. You will collaborate with cross-functional teams to translate complex data into actionable intelligence, providing insights that will help shape our cybersecurity strategies. Additionally, you will develop and maintain threat intelligence reports and presentations for stakeholders, ensuring that all team members are informed about the latest developments in the cyber landscape.
Your role will involve monitoring and analyzing threat intelligence feeds, as well as participating in incident response activities to identify the root causes of security breaches. You will also be responsible for developing and refining detection and response capabilities, working closely with engineering teams to implement effective cybersecurity measures. A strong understanding of network protocols, malware analysis, and security information and event management (SIEM) tools is essential. You should possess excellent analytical skills, attention to detail, and the ability to communicate complex technical information to non-technical audiences clearly.
The successful candidate will have a background in cybersecurity, computer science, or a related field, with prior experience in threat research or incident response. Familiarity with programming or scripting languages is a plus, as is a proactive approach to problem-solving. If you are passionate about cybersecurity and eager to contribute to a safer digital environment, we invite you to apply for this exciting opportunity.
Read lessGloucester, England, United KingdomPart Time
We are seeking an experienced Operational Cyber Researcher to join our dynamic team. In this role, you will... Read more
We are seeking an experienced Operational Cyber Researcher to join our dynamic team. In this role, you will be responsible for conducting in-depth research and analysis of cyber threats, vulnerabilities, and attack vectors. You will leverage your expertise to provide actionable insights that enhance the security posture of our systems and protect critical assets. Collaborating with cross-functional teams, you will develop and implement effective strategies to mitigate risks and respond to emerging threats in real-time.
The ideal candidate will have a strong background in cybersecurity, with hands-on experience in threat intelligence, incident response, and security operations. You will be expected to monitor and analyze security alerts, perform forensic investigations, and develop comprehensive reports on cyber incidents. Familiarity with various security tools and frameworks, as well as programming skills, will be essential in automating processes and improving overall efficiency. Excellent communication skills are necessary to convey complex technical information to both technical and non-technical stakeholders.
If you are passionate about cybersecurity and thrive in a fast-paced environment, we encourage you to apply. Join us in our mission to safeguard digital landscapes and make a meaningful impact in the field of cyber defense.
Read lessGloucester, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria