We are seeking a Principal Product Security Engineer to lead the integration of security throughout the product development... Read more
We are seeking a Principal Product Security Engineer to lead the integration of security throughout the product development lifecycle. In this influential role, you will define and advance product security strategy across software, cloud services, APIs, and connected technologies. You will partner with engineering, architecture, product management, privacy, and operations teams to identify risks early, establish pragmatic security requirements, and ensure that security is built into products by design.
Your responsibilities will include driving threat modelling, secure architecture reviews, vulnerability management, security testing, and risk assessments for complex products and platforms. You will develop and maintain security standards, patterns, and guidance; advise teams on secure coding and authentication, authorisation, cryptography, data protection, and cloud security; and help establish measurable security objectives and controls. You will also assess emerging technologies and threats, support incident response and root-cause analysis, and contribute to security reviews for new features, acquisitions, integrations, and significant architectural changes. Where appropriate, you will help automate security checks within CI/CD pipelines and improve the visibility and remediation of product security risks.
The successful candidate will bring significant experience in product or application security, with a strong understanding of secure software development and modern engineering practices. You should be comfortable influencing senior stakeholders and technical teams without relying on formal authority, translating complex security issues into clear business and engineering decisions. Experience with cloud platforms, APIs, containers, infrastructure as code, software supply-chain security, and common application security testing tools is highly desirable. Relevant professional certifications or equivalent practical experience are welcome. We value curiosity, sound judgement, strong communication, and a collaborative approach, along with the ability to balance security, usability, delivery timelines, and customer needs.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking an experienced Cyber Security Consultant to support organisations in strengthening their security posture, managing cyber... Read more
We are seeking an experienced Cyber Security Consultant to support organisations in strengthening their security posture, managing cyber risk and responding effectively to an evolving threat landscape. In this role, you will work with stakeholders across technology, operations and governance to assess current controls, identify vulnerabilities and recommend practical improvements aligned with business priorities and recognised security frameworks.
Your responsibilities will include conducting security assessments, risk reviews, gap analyses and maturity evaluations; developing and maintaining security policies, standards and procedures; and advising on the design and implementation of effective technical and organisational controls. You will contribute to incident response planning, threat and vulnerability management, security awareness initiatives and third-party risk assessments. The role may also involve supporting audits, preparing clear reports for senior stakeholders and translating complex technical findings into actionable recommendations. You will be expected to keep up to date with emerging threats, regulatory developments and industry best practice, helping to ensure that security strategies remain relevant and effective.
Applicants should have proven experience in cyber security consulting, information security, risk management or a related discipline. A strong understanding of security frameworks and standards such as ISO 27001, NIST or CIS Controls is required, together with practical knowledge of security governance, vulnerability management, identity and access management, cloud security and incident response. Relevant professional certifications, such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or equivalent, are desirable. Excellent communication, analytical and stakeholder management skills are essential, as is the ability to manage multiple priorities and deliver high-quality work independently. You should be commercially aware, detail-oriented and confident presenting recommendations to both technical and non-technical audiences.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking a Senior Cyber Threat Intelligence Analyst to lead the collection, analysis and dissemination of intelligence... Read more
We are seeking a Senior Cyber Threat Intelligence Analyst to lead the collection, analysis and dissemination of intelligence that supports the protection of critical systems, data and business operations. You will assess threats across the cyber landscape, identify activity relevant to the organisation’s risk profile, and translate complex technical findings into clear, actionable recommendations for security and business stakeholders. The role will involve working closely with incident response, security operations, vulnerability management, detection engineering and wider technology teams.
Key responsibilities include monitoring open, closed and technical intelligence sources; tracking threat actors, campaigns, malware, vulnerabilities and emerging attack techniques; and producing timely strategic, operational and tactical intelligence reports. You will conduct proactive research, link analysis and investigative assessments to support threat hunting, incident response and detection development. You will also contribute to intelligence requirements, maintain threat profiles and knowledge bases, brief senior stakeholders, and help improve processes, tooling and analytical standards. Where appropriate, you will support the development of indicators of compromise, detection content, threat models and reporting aligned to recognised frameworks such as MITRE ATT&CK.
The successful candidate will have substantial experience in cyber threat intelligence, security analysis, incident response or a closely related discipline, with a strong understanding of threat actor behaviour, attack lifecycles and common defensive controls. You should be confident analysing technical data from multiple sources, validating intelligence and communicating findings to both technical and non-technical audiences. Experience with intelligence platforms, SIEM technologies, malware analysis, scripting or automation is highly desirable. Strong written and verbal communication, sound judgement, curiosity and the ability to prioritise work in a fast-moving environment are essential. Relevant professional certifications or demonstrable equivalent experience will be welcomed.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking a Senior Cyber Threat Detection and Response Analyst to lead the identification, investigation and containment... Read more
We are seeking a Senior Cyber Threat Detection and Response Analyst to lead the identification, investigation and containment of sophisticated cyber threats across a complex technology environment. You will monitor security events, analyse alerts and intelligence, and coordinate effective responses to incidents affecting networks, endpoints, cloud services, applications and critical data. The role will involve working closely with security engineering, infrastructure, risk and operational teams to strengthen defensive capabilities and reduce organisational exposure.
Key responsibilities include developing and tuning detection rules, use cases and correlation logic; conducting advanced threat hunting across security telemetry; investigating indicators of compromise and suspicious activity; and managing incidents from initial triage through to remediation and post-incident review. You will contribute to the development of playbooks, response procedures and threat models, while identifying opportunities to automate repetitive tasks and improve investigation efficiency. The role will also require clear documentation of findings, production of threat and incident reports, participation in vulnerability and risk discussions, and mentoring less experienced analysts. You may be required to support security operations outside standard hours through an agreed on-call or escalation rota.
You will bring significant experience in cyber threat detection, incident response, security operations or a closely related discipline, together with a strong understanding of attack techniques, adversary behaviours and frameworks such as MITRE ATT&CK. Practical experience with SIEM, EDR, SOAR, network monitoring and threat intelligence platforms is essential, as is the ability to investigate using endpoint, network, identity and cloud logs. Scripting or automation skills in languages such as Python or PowerShell are desirable. Relevant professional certifications, such as CISSP, GIAC, GCIH, GCIA or equivalent, would be advantageous. Strong analytical, communication and problem-solving skills are required, along with the ability to explain technical risk clearly to both specialist and non-specialist audiences.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking a Senior Cloud Security Engineer (SecOps) to strengthen cloud security operations, improve resilience, and help... Read more
We are seeking a Senior Cloud Security Engineer (SecOps) to strengthen cloud security operations, improve resilience, and help protect critical systems, applications, and data. This role will work across security engineering, cloud infrastructure, IT operations, and development teams to identify threats, reduce risk, and embed secure practices throughout the technology lifecycle. The successful candidate will bring strong hands-on experience with cloud security, incident response, security monitoring, and automation.
Responsibilities include designing, implementing, and maintaining security controls across cloud environments such as AWS, Azure, or Google Cloud; investigating and responding to security alerts and incidents; developing detection rules, playbooks, and automated response workflows; and supporting vulnerability management, threat hunting, and security assessments. You will help establish and enforce identity and access management, network security, encryption, logging, configuration management, and compliance controls. The role will also contribute to cloud architecture reviews, infrastructure-as-code security, penetration testing activities, and the continuous improvement of Security Operations Centre processes. Clear documentation, concise reporting, and effective communication with both technical and non-technical stakeholders will be essential.
Applicants should have significant experience in cloud security engineering, SecOps, or a closely related discipline, together with a strong understanding of security principles, attack techniques, and incident management. Practical knowledge of SIEM, SOAR, EDR, vulnerability scanning, and cloud-native security tooling is required, along with scripting or programming experience in languages such as Python, PowerShell, or Bash. Familiarity with containers, Kubernetes, CI/CD pipelines, and infrastructure-as-code tools such as Terraform is desirable. Relevant certifications, including CISSP, CCSP, GIAC, or major cloud security certifications, are advantageous. We are looking for an analytical, proactive professional who can operate effectively in a fast-paced environment and promote a culture of continuous security improvement.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking an experienced Lead Security Solution Architect to define and deliver secure, scalable architecture across a... Read more
We are seeking an experienced Lead Security Solution Architect to define and deliver secure, scalable architecture across a complex technology landscape. In this role, you will provide technical leadership from strategy and design through implementation, ensuring that security is embedded into business solutions, platforms, applications and infrastructure. You will work closely with engineering, architecture, product, risk and compliance teams to translate business requirements into practical security outcomes.
Your responsibilities will include developing security architectures, reference models, patterns and design principles; reviewing proposed solutions and identifying risks, vulnerabilities and control gaps; and recommending appropriate mitigations across cloud, on-premises and hybrid environments. You will lead threat modelling, security design reviews and architecture assurance activities, while supporting the definition of identity and access management, network security, data protection, application security, cryptography and monitoring controls. You will also contribute to security standards, policies and roadmaps, maintain clear technical documentation, and provide guidance during delivery, testing and operational transition.
The successful candidate will have substantial experience in security architecture, solution design or a closely related discipline, with a strong understanding of enterprise security principles and modern technology environments. Experience with cloud platforms, zero-trust architectures, secure software development, infrastructure security and security governance is highly desirable. You should be confident assessing complex risks, influencing senior stakeholders and communicating technical concepts to both specialist and non-specialist audiences. Relevant professional certifications such as CISSP, SABSA, CCSP, CISM or a comparable qualification would be advantageous. We are looking for a collaborative, pragmatic and decisive leader who can balance security, usability, delivery priorities and commercial considerations while championing continuous improvement.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking an experienced Lead Security Solution Architect to define and deliver secure, scalable technology solutions across... Read more
We are seeking an experienced Lead Security Solution Architect to define and deliver secure, scalable technology solutions across a complex enterprise environment. In this influential role, you will translate business and technology requirements into robust security architectures, ensuring that products, platforms, applications, and infrastructure are designed with security embedded from the outset. You will provide technical leadership across the full solution lifecycle, from strategy and high-level design through implementation, assurance, and continuous improvement.
Your responsibilities will include developing security architecture principles, patterns, standards, and reference designs; conducting threat modelling, risk assessments, and security reviews; and advising delivery teams on appropriate controls and technologies. You will collaborate with enterprise architects, engineers, product owners, risk specialists, and senior stakeholders to ensure solutions align with regulatory obligations, organisational policies, and industry best practice. You will also evaluate new technologies, support security investment planning, contribute to incident and resilience reviews, and promote secure-by-design practices across the organisation. Where required, you will lead architecture governance, challenge design decisions constructively, and communicate complex risks and recommendations clearly to both technical and non-technical audiences.
You will bring significant experience in security architecture, solution design, or a closely related discipline, together with a strong understanding of cloud, networks, identity and access management, application security, data protection, and infrastructure security. Experience designing solutions across hybrid or multi-cloud environments and working with recognised security frameworks and risk methodologies is highly desirable. Relevant professional certifications, such as CISSP, SABSA, CCSP, or equivalent, would be advantageous. You should be confident operating at both strategic and technical levels, capable of influencing without direct authority, and comfortable balancing security, usability, cost, and delivery priorities. Strong analytical, communication, stakeholder management, and documentation skills are essential, as is a proactive approach to improving security maturity and enabling successful business outcomes.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking a Cyber Security Supply Chain Specialist to strengthen the security, resilience and compliance of third-party... Read more
We are seeking a Cyber Security Supply Chain Specialist to strengthen the security, resilience and compliance of third-party relationships across the organisation. In this role, you will assess and manage cyber security risks associated with suppliers, contractors, technology partners and outsourced services throughout the supplier lifecycle. You will work closely with procurement, legal, technology, risk and operational teams to ensure security requirements are embedded from initial sourcing and contract negotiation through to onboarding, ongoing monitoring and offboarding.
Your responsibilities will include conducting supplier security assessments, reviewing security questionnaires and independent assurance reports, identifying control gaps, and recommending proportionate remediation plans. You will maintain accurate records of supplier risks, controls, exceptions and action plans, escalating significant issues where appropriate. You will support the development and continuous improvement of third-party risk policies, standards, procedures and reporting, while helping to define meaningful metrics for management and regulatory oversight. The role will also involve monitoring changes in the threat landscape, supply chain vulnerabilities and relevant legislation, ensuring that risk assessments and security requirements remain current. You may contribute to incident response activities involving suppliers, audit preparation, security reviews and awareness initiatives.
The successful candidate will have experience in cyber security, third-party risk management, supplier assurance, information security governance or a closely related discipline. You should be comfortable interpreting technical and non-technical information, challenging stakeholders constructively and communicating risk clearly to varied audiences. Knowledge of recognised security frameworks and standards, such as ISO 27001, NIST, CIS Controls or SOC 2, is desirable, along with experience reviewing contractual security clauses and assurance evidence. Strong analytical, organisational and relationship-management skills are essential, as is the ability to manage multiple priorities and work independently. Relevant professional qualifications in cyber security, risk, audit, procurement or information governance would be advantageous.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking a Technical Specialist – OT Security to help protect operational technology environments that support critical... Read more
We are seeking a Technical Specialist – OT Security to help protect operational technology environments that support critical industrial processes. In this role, you will assess, improve and maintain the security of industrial control systems, supervisory control and data acquisition (SCADA) platforms, distributed control systems and connected operational networks. You will work closely with engineering, operations, infrastructure and cybersecurity teams to identify risks and deliver practical security improvements without compromising safety, availability or production requirements.
Your responsibilities will include performing OT security assessments, vulnerability reviews and risk analyses; developing and maintaining security architectures, standards and technical procedures; and supporting the implementation of network segmentation, secure remote access, asset visibility, identity management, monitoring and endpoint protection controls. You will contribute to incident response activities, threat investigations and recovery planning, as well as support compliance with relevant legislation, policies and recognised frameworks such as IEC 62443, NIST and ISO 27001. You will also help maintain accurate asset inventories, review system changes and advise on the secure design and commissioning of new OT technologies.
The successful candidate will have experience securing industrial or critical infrastructure environments, with a strong understanding of OT protocols, industrial networks, PLCs, HMIs, SCADA systems and the differences between IT and OT risk management. Knowledge of security monitoring, vulnerability management, incident response and risk assessment methodologies is highly desirable. Relevant qualifications in cybersecurity, engineering, computer science or a related discipline are advantageous, as are certifications such as GICSP, GRID, CISSP, CISM or IEC 62443. You should be analytical, collaborative and able to communicate complex technical issues clearly to both technical and non-technical stakeholders. A practical, safety-focused approach and willingness to work across operational sites or support occasional out-of-hours activities will be important.
Read lessPortsmouth, England, United KingdomPermanent
We are seeking a dependable and professional Multi-Site Security Officer to provide high-quality security services across several locations.... Read more
We are seeking a dependable and professional Multi-Site Security Officer to provide high-quality security services across several locations. This role is suited to an experienced security professional who can work independently, respond calmly to changing situations and build positive working relationships with colleagues, visitors, contractors and members of the public. You will help maintain a safe, secure and welcoming environment while consistently following site procedures and relevant legislation.
Responsibilities will include conducting regular patrols of buildings, grounds and designated areas; monitoring CCTV, alarms, access control and other security systems; controlling entry and exit points; checking identification and issuing visitor or contractor passes; and maintaining accurate daily occurrence logs and incident reports. You will respond promptly to alarms, emergencies, disturbances and suspicious activity, taking appropriate action and contacting emergency services when required. The role may also involve locking and unlocking premises, carrying out security checks, supporting evacuations, safeguarding property and assisting with investigations. As a multi-site position, you must be willing to travel between locations and adapt quickly to different operating procedures and environments.
Applicants should hold a valid front-line security licence where required and have previous experience in security, guarding, concierge services, facilities management, the armed forces, emergency services or a similar customer-facing environment. Strong observation, communication and report-writing skills are essential, along with the confidence to challenge appropriately and manage incidents professionally. You must be reliable, well presented and able to remain composed under pressure. The ability to work shifts, including nights, weekends and public holidays, is required, as is a willingness to complete site-specific training. A full driving licence and access to reliable transport may be necessary due to travel between sites. Successful applicants will be subject to appropriate background checks and must demonstrate a commitment to confidentiality, integrity and excellent service.
Read lessPortsmouth, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria