technology job

Senior DevSecOps Engineer

  • Posted September 17, 2026
  • £600 - £650 per day
  • london, Hybrid
  • Contract

Senior DevSecOps Engineer

AWS | EKS | Platform Security | Financial Services

📍 Location: London/ Hybrid
💰 Day Rate: Up to £650 (OUTSIDE IR35)
📄 Contract: Initial 6 Months

We’re supporting a major financial services organisation delivering a next-generation cloud platform that will underpin multiple strategic programmes and engineering teams.

As a result, we’re looking for a hands-on DevSecOps Engineer to join the platform security function and help build the guardrails, controls and automation that allow product and engineering teams to scale securely by default.

This is an engineering-first role focused on AWS, Kubernetes, CI/CD security and platform protection. You’ll work alongside Platform Engineering, Developer Platform and Security Architecture teams to ensure security is embedded into the platform rather than bolted on afterwards.

What You’ll Be Doing

  • Engineering and maintaining security controls across a multi-tenant AWS platform
  • Implementing and managing IAM controls including SCPs, Permission Boundaries and ABAC
  • Designing secure workload identity and tenant isolation controls
  • Embedding security into CI/CD delivery pipelines
  • Implementing container, IaC, secrets and software composition scanning
  • Building software supply chain security controls including image signing, verification and SBOM generation
  • Developing Policy-as-Code controls using OPA, Rego, Kyverno or similar technologies
  • Securing and hardening EKS environments through RBAC, Network Policies and Admission Controllers
  • Supporting mTLS, PKI and service-to-service authentication initiatives
  • Driving remediation of security findings and penetration test outcomes
  • Creating reusable security modules, patterns and golden paths for engineering teams

Essential Experience

  • Proven experience within DevSecOps, Cloud Security Engineering or Platform Security
  • Strong AWS security expertise, including IAM, SCPs, Permission Boundaries and ABAC
  • Commercial experience securing Kubernetes environments, ideally EKS
  • Terraform and Infrastructure-as-Code experience
  • Building security controls into CI/CD pipelines
  • Experience with workload identity, PKI and mTLS
  • Strong understanding of software supply chain security
  • Scripting or development capability using Python, Go or similar
  • Ability to work effectively with engineers, platform teams and security architects

Desirable Experience

  • Istio and Service Mesh security
  • AWS Private CA and IAM Roles Anywhere
  • Harness CI/CD
  • OPA, Gatekeeper, Kyverno or OSCAL
  • Sigstore, Cosign, SLSA and SBOM tooling
  • Internal Developer Platform (IDP) security
  • AWS Security Specialty, CKS, CISSP or equivalent certifications
  • Experience within regulated financial services environments

Why Apply?

This is an opportunity to shape the security foundations of a major enterprise platform operating at significant scale. You’ll be working on modern cloud-native security challenges across AWS, Kubernetes, platform engineering and software supply chain security, helping define the controls and guardrails that every engineering team will rely upon.

Reasonable Adjustments:

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

Apply for this Job

    technology job

    Cyber Security Consultant

    • Posted September 15, 2026
    • £350 - £390 per day
    • Contract

    Cyber Security Assurance Consultant
    12 Months Initial (Multi-year programme)
    Up to £390 Inside IR35 (Via Umbrella)

    Scotland based (Mostly remote)

    Role Details: This role will provide technical leadership across applications, servers, storage, networks and virtualisation, helping to protect critical systems.

    It’s a hands-on assurance role combining technically advanced security assessments, ethical hacking and penetration testing with risk management, remediation planning and senior stakeholder engagement. You will advise complex projects on security requirements, translate technical findings into clear recommendations and support the implementation of proportionate security solutions.

    Key Responsibilities:

    • Lead engagements with project teams, senior management and stakeholders, providing security briefings, technical guidance and input into system requirements.
    • Plan and lead technically advanced security assessments, testing and reporting within agreed governance and timescales.
    • Perform ethical hacking and penetration testing against internal systems using tools such as Kali Linux, Nessus and Metasploit.
    • Chair technical security meetings and produce reports and briefings for senior stakeholders.
    • Identify changes in threat and risk conditions, escalate emerging risks and support the implementation of mitigating actions.

    Key Skills:

    • Substantial experience in cyber security assurance, information assurance, technical security consulting or a closely related role
    • Broad technical knowledge across applications, servers, storage, networking and virtualisation.
    • Hands-on ethical hacking and penetration-testing experience, including use of relevant specialist tools.
    • Strong understanding of vulnerability management, remediation planning, cyber risk and security controls.
    • Strong technical leadership, stakeholder management, communication and meeting-chairing skills.
    • Public sector experience is highly advantageous
    • Candidate must pass vetting to NPPV3 level

    This is an excellent opportunity to take on a hands-on role within a long-term programme of work that will deliver meaningful improvements for communities across Scotland. Offering multi-year scope, high-impact project delivery and a largely remote working pattern, it’s a great opportunity for someone looking to combine flexibility with genuinely purposeful work.

    Candidates must be based in Scotland. The role is expected to be around 90% working from home, with occasional travel to a local office or other Scottish sites as required

    Reasonable Adjustments:

    Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

    If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

    Apply for this Job

      technology job

      IAM Security Engineer

      • Posted September 14, 2026
      • £400 - £450 per day
      • London, Hybrid
      • Contract

      IAM Security Engineer

      Contract Details

      • Initial 6-month contract
      • 4 days per week onsite in London
      • £400-£450 per day (INSIDE IR35)

      We’re working with a leading financial services organisation seeking an experienced IAM Security Engineer to join a high-performing cloud security team. This is an opportunity to play a key role in designing and delivering Identity & Access Management solutions across large-scale cloud environments.

      Key Responsibilities

      • Design and implement IAM roles, policies and controls across AWS and/or GCP environments.
      • Collaborate with security, infrastructure, engineering and application teams to deliver secure cloud services.
      • Develop automation and self-service capabilities for identity and access provisioning.
      • Deliver IAM solutions through CI/CD pipelines with automated testing and validation.
      • Ensure cloud IAM implementations align with security standards, policies and regulatory requirements.

      Key Skills Required

      • Strong IAM engineering experience within AWS or GCP.
      • Hands-on experience with Terraform and/or CloudFormation.
      • Proficiency in Python, Go or Java.
      • Experience with automated testing frameworks such as pytest, Behave or JUnit.
      • Knowledge of REST/SOAP APIs, DevOps practices and CI/CD delivery.
      • Previous experience within financial services or a large-scale enterprise environment.

      If you’re an IAM Security Engineer looking for your next contract opportunity within a complex cloud environment, I’d be keen to speak with you.

      Reasonable Adjustments:

      Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

      If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

      Apply for this Job

        technology job

        Senior Threat Modelling & Application Security Engineer

        • Posted September 11, 2026
        • £450 - £500 per day
        • London, Hybrid
        • Contract

        Senior Threat Modelling & Application Security Engineer

        Day rate: Up to £450 – £500 (Inside IR35)

        Location: London/ Hybrid – 4 days a week onsite

        Duration: 6 months (Initial)

        A major organsiation is seeking a Senior Threat Modelling & Application Security Engineer to help drive secure-by-design practices across cloud and application environments.

        Key Responsibilities

        • Conduct threat modelling using STRIDE, PASTA, ATT&CK and Attack Trees.
        • Identify vulnerabilities and define mitigating security controls.
        • Review technical architectures and support secure SDLC processes.
        • Develop security automation tooling and Python-based applications.
        • Partner with engineering teams to embed security best practices.
        • Track threats and controls through to remediation and closure.

        Required Experience

        • 6+ years in IT, including 4+ years within Cyber Security.
        • Strong threat modelling and application security experience.
        • Knowledge of OWASP, CWE, authentication, authorisation, encryption and infrastructure security.
        • Experience with Terraform/CloudFormation, CI/CD and Jira.
        • Strong Python skills, including FastAPI and Pytest.
        • Experience within a regulated environment.

        Desirable

        • Docker, Kubernetes, Helm, Serverless, GitOps and CDK.
        • Penetration testing exposure.
        • Snowflake, MongoDB, Databricks, GitHub and Terraform Cloud.

        Certifications

        • Associate-level cloud certification (AWS, Azure, GCP or equivalent).
        • Cyber security certification such as CySA+, CISA, GSEC, SSCP or Microsoft Security certifications.

        What You’ll Bring

        • Strong analytical and problem-solving skills.
        • Excellent communication and stakeholder management.
        • An adversarial mindset and passion for continuous learning.
        • Ability to work independently and collaboratively across teams.

        Reasonable Adjustments:

        Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

        If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

        Apply for this Job

          technology job

          Cyber Security Controls Tester (Assurance)

          • Posted
          • £500 - £550 per day + Outside IR35
          • Nottingham
          • Contract

          Cyber Security Controls Tester

          Location: Fully Remote
          Contract Length: 6 Months
          Day Rate: Circa £550 per day (Outside IR35)
          Security Clearance: Active SC Clearance required (must be current and verifiable)

          About the Role

          An established MSSP is seeking an experienced Cyber Security Controls Tester to support a large-scale security assurance programme. This is an excellent opportunity for a security professional with a strong controls testing, audit, risk, or assurance background to assess the effectiveness of security controls across complex environments.

          Working closely with security architects, risk teams, and business stakeholders, you will provide independent assurance that security controls are appropriately designed, implemented, and operating effectively against recognised industry frameworks and standards.

          Key Responsibilities

          • Evaluate the effectiveness of technical, procedural, and physical security controls against documented security requirements and standards.
          • Assess security controls against recognised frameworks including ISO 27001, NIST CSF, NIST 800-53, and CIS Controls.
          • Review security documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), policies, procedures, and controls catalogues.
          • Assess network configurations, firewall rules, identity and access management controls, encryption controls, and endpoint security measures.
          • Develop and agree test plans and testing scopes with security architects, risk teams, and relevant stakeholders.
          • Apply recognised assurance methodologies, including walkthroughs, documentation reviews, sampling, evidence gathering, and technical verification.
          • Produce detailed testing reports, findings, risk assessments, and remediation recommendations.
          • Provide pragmatic guidance to improve security posture and address identified control weaknesses.
          • Maintain accurate and auditable records of testing activities, findings, and corrective actions.
          • Collaborate with risk and security architecture teams to ensure testing activities support wider governance, risk, and assurance objectives.

          Required Skills & Experience

          • Proven experience testing and assessing the effectiveness of security controls within complex enterprise environments.
          • Strong knowledge of security frameworks including:
            • ISO 27001
            • NIST Cyber Security Framework (CSF)
            • NIST 800-53
            • CIS Controls
          • Experience reviewing and testing:
            • Network security controls
            • Firewall configurations and rule sets
            • Identity and Access Management (IAM)
            • Encryption controls
            • Endpoint security technologies
          • Strong understanding of security assurance and control testing methodologies.
          • Experience working with technical design documentation, including HLDs, LLDs, and controls catalogues.
          • Knowledge of relevant legislation and regulatory requirements, including:
            • GDPR
            • PCI DSS
            • ICO requirements
          • Familiarity with HMG and NCSC security policies, standards, and guidance.
          • Excellent analytical, investigative, and problem-solving skills.
          • Strong stakeholder engagement and communication capabilities.
          • Ability to produce clear, concise, and actionable assurance reports for both technical and non-technical audiences.

          Desirable Certifications

          One or more of the following certifications would be advantageous:

          • CISA
          • CRISC
          • ISO 27001 Lead Auditor
          • ISO 27001 Lead Implementer
          • CompTIA Security+
          • Other security assurance, audit, or controls testing certifications

          Reasonable Adjustments:

          Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

          If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

          Apply for this Job

            technology job

            Web Security Engineer, Akamai

            • Posted September 10, 2026
            • £550 - £600 per day
            • London, Hybrid
            • Contract

            Web Security Engineer (Akamai)

            Rate – £500 – £600 Inside IR35
            Duration – 6 months initial
            Location – Surrey – Twice a week on site

            We’re supporting a major organisation looking for a Cyber Security Engineer to join its growing security team.

            You’ll play a key role in protecting customer facing applications, APIs and internet facing services, taking ownership of web and API security controls while helping to strengthen the organisation’s overall security posture.

            Key Responsibilities:

            • Manage and optimise Akamai WAAP configurations, WAF policies, security rules and exceptions – Administer, maintain and enhance Web Application Firewall (WAF) controls to protect customer facing web applications and APIs.
            • Tune controls to improve protection and reduce false positives.
            • Identify vulnerabilities and drive remediation activities.
            • Support the wider cyber security strategy and security improvement initiatives.
            • Work closely with Security Engineering, SOC, Architecture and Infrastructure teams.
            • Present security recommendations to technical and senior stakeholders.
            • Support audit and compliance activities, including remediation of audit findings.
            • Contribute to security projects from design through to implementation.

            About You:

            • Strong Cyber Security background with hands on security engineering experience.
            • Proven experience administering Akamai WAAP, including Web Application Firewall (WAF), API Security and bot protection capabilities.
            • Strong hands on experience with Web Application Firewalls (WAF), including policy design, rule tuning, exception management and application onboarding.
            • Good understanding of OWASP Top 10 and OWASP API Security Top 10.
            • Knowledge of HTTP/S, REST APIs and application layer attack mitigation.
            • Experience with vulnerability management, Qualys and attack surface monitoring tools.
            • Understanding of patch management and vulnerability remediation.
            • Strong stakeholder engagement and communication skills.

            Reasonable Adjustments:

            Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

            If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

            Apply for this Job

              technology job

              Senior Security Architect (Active SC Clearance)

              • Posted September 9, 2026
              • £550 - £600 per day + Outside IR35
              • Nottingham
              • Contract

              Senior Security Architect (Active SC Clearance)

              Location: Fully Remote (UK)
              Clearance: Active SC Clearance Required
              Contract Length: Until February 2027
              Rate: Up to £600 per day (Outside IR35)

              Shape the Security of Critical UK Government Services

              We are seeking an experienced Senior Security Architect to join a major public sector programme, playing a key role in designing and assuring the security of large-scale digital services operating across cloud environments.

              This is an excellent opportunity for a senior cyber security professional with strong government experience to provide strategic security leadership, influence architectural direction, and support the secure delivery of business-critical platforms.

              What You’ll Be Doing

              • Providing security architecture leadership throughout the full project lifecycle, from discovery through to service retirement.
              • Advising stakeholders on Secure by Design principles and security best practices.
              • Reviewing and assuring solution designs against established security standards, patterns and architectural frameworks.
              • Leading threat modelling, risk assessments and security design reviews.
              • Identifying security risks and recommending effective mitigation strategies.
              • Supporting cloud-first solutions across Azure and wider multi-cloud environments.
              • Reviewing penetration testing and IT Health Check outcomes and developing remediation plans.
              • Working closely with engineering, assurance and risk teams to validate security controls.
              • Producing high-quality security architecture artefacts, standards and blueprints.
              • Monitoring emerging cyber threats and incorporating threat intelligence into security decision-making.

              Experience Required

              • Extensive experience in Security Architecture within Central Government or the wider Public Sector.
              • Strong understanding of ISO 27001, NIST CSF and CIS Controls.
              • Deep knowledge of NCSC and HMG security standards and guidance.
              • Expertise in Azure security technologies, including Entra ID, Azure Policy, Key Vault and Identity & Access Management.
              • Experience securing cloud-native and microservices-based architectures.
              • Strong background in threat modelling, risk analysis and security assurance.
              • Experience supporting penetration testing and control effectiveness reviews.

              Desirable Certifications

              • CISSP
              • CISM
              • SABSA
              • TOGAF
              • Azure Solutions Architect

              Reasonable Adjustments:

              Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

              If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

              Apply for this Job

                technology job

                Security Architect - (Active SC Clearance Required)

                • Posted
                • £500 - £550 per day + Outside IR35
                • Nottingham
                • Contract

                Security Architect (Active SC Clearance) x 2

                Location: Fully Remote (UK)
                Clearance: Active SC Clearance Required
                Contract Length: Until February 2027
                Rate: Up to £550 per day (Outside IR35)

                Security Architect

                We are looking for two Security Architects to support the secure design and delivery of large-scale cloud-based services within a major public sector programme.

                You’ll work across project teams to ensure security is embedded throughout the development lifecycle, helping teams manage risk, apply security standards, and deliver resilient solutions in complex environments.

                Key Responsibilities

                • Provide expert security design guidance to delivery and engineering teams.
                • Review solution and product designs to ensure compliance with security standards and best practice.
                • Conduct threat modelling and security risk assessments.
                • Design security controls aligned to organisational risk appetite.
                • Support the deployment of cloud-based services, predominantly within Azure environments.
                • Work with technical teams to validate security control effectiveness.
                • Assist with penetration testing and IT Health Check scoping activities.
                • Review security findings and provide practical remediation guidance.
                • Contribute to security standards, patterns and architecture documentation.
                • Stay informed on evolving cyber threats and attack techniques.

                What We’re Looking For

                • 5+ years’ experience within Security Architecture, Cyber Security or a closely related technical security role.
                • Experience working within government or highly regulated environments.
                • Good knowledge of ISO 27001, NIST CSF and CIS Controls.
                • Experience with Azure security services, identity management and cloud-native security controls.
                • Exposure to threat modelling and risk assessment methodologies.
                • Understanding of security assurance and controls testing activities.
                • Excellent stakeholder engagement and communication skills.

                Desirable Skills & Certifications

                • CISSP, CISM, SABSA or TOGAF
                • Azure or AWS cloud certifications
                • Knowledge of PKI, Encryption, PAM and RBAC
                • Experience with cloud security posture management tools

                Reasonable Adjustments:

                Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

                If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

                Apply for this Job

                  technology job

                  Senior Cyber Security Engineer (EDR)

                  • Posted September 7, 2026
                  • £55000 - £85000 per annum + + Benefits
                  • London
                  • Permanent

                  Senior Security Engineer – Monitoring & Detection

                  📍 Hybrid Working (Bristol, London, Manchester or Swansea)

                  💰 £55,000 – £85,000 + Benefits

                  🔒 Active SC Clearance Required

                  Join a Team Protecting Critical Digital Services

                  We’re looking for an experienced Senior Security Engineer – Monitoring & Detection to play a key role in securing large-scale, cloud-based environments supporting critical public sector and government services.

                  This is a hands-on engineering role focused on threat detection, SIEM engineering, security monitoring, log management, and SOC optimisation. You’ll design and enhance detection capabilities, improve security visibility, and ensure organisations can rapidly identify and respond to emerging cyber threats.

                  Working alongside SOC analysts, engineers, architects, and stakeholders, you’ll help build modern security monitoring capabilities that improve resilience while enabling faster, risk-based decision-making.

                  What You’ll Be Doing

                  Detection Engineering & Threat Monitoring

                  • Develop, tune, and maintain detection rules across SIEM, EDR, and threat detection platforms.
                  • Create and optimise detection logic using technologies such as Splunk and endpoint security solutions.
                  • Map detections against the MITRE ATT&CK framework to ensure comprehensive threat coverage.
                  • Continuously improve detection quality by analysing alert fidelity, false positives, and operational effectiveness.
                  • Validate detections through testing, simulation exercises, and red-team scenarios.

                  Security Data & Log Engineering

                  • Manage and optimise log ingestion pipelines to ensure high-quality, actionable security data.
                  • Configure routing, filtering, enrichment, and normalisation of security telemetry.
                  • Improve data efficiency through deduplication, data reduction, and flow summarisation techniques.
                  • Support cloud-native data streaming and storage solutions.
                  • Ensure security data aligns with industry standards such as OCSF while maintaining strong encryption and access controls.

                  Stakeholder Engagement

                  • Translate complex technical risks into clear business-focused recommendations.
                  • Collaborate with technical and non-technical stakeholders to improve security outcomes.
                  • Act as a trusted technical advisor across engineering and security teams.
                  • Mentor junior engineers and contribute to the growth of the wider cyber security function.

                  What We’re Looking For

                  Essential Experience

                  • Strong hands-on experience within Security Operations, Detection Engineering, Threat Detection, or Security Monitoring.
                  • Experience securing cloud environments across AWS, Azure, or GCP.
                  • Expertise in one or more of the following:
                    • Splunk and SPL
                    • YARA rule development
                    • EDR detection engineering
                    • SIEM content development and tuning
                  • Experience mapping detections to the MITRE ATT&CK framework.
                  • Strong understanding of modern security principles including Zero Trust, identity-first security, secrets management, and network segmentation.

                  Desirable Experience

                  • Experience with Cribl and security data pipeline management.
                  • Knowledge of Kinesis, Amazon S3, Amazon Security Lake, or similar technologies.
                  • Understanding of OCSF and security data normalisation.
                  • Experience working within government, defence, highly regulated industries, or the wider public sector.
                  • Experience mentoring or leading engineers within a SOC or cyber security function.

                  Reasonable Adjustments:

                  Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

                  If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

                  Apply for this Job

                    technology job

                    Web Security Engineer (Akamai)

                    • Posted September 2, 2026
                    • £550 - £600 per day
                    • Surrey - Twice a week on site
                    • Contract

                    Web Security Engineer (Akamai)

                    Rate – £500 – £600 Inside IR35
                    Duration – 6 months initial
                    Location – Surrey – Twice a week on site

                    We’re supporting a major organisation looking for a Cyber Security Engineer to join its growing security team.

                    You’ll play a key role in protecting customer facing applications, APIs and internet facing services, taking ownership of web and API security controls while helping to strengthen the organisation’s overall security posture.

                    Key Responsibilities:

                    • Manage and optimise Akamai WAAP configurations, WAF policies, security rules and exceptions – Administer, maintain and enhance Web Application Firewall (WAF) controls to protect customer facing web applications and APIs.
                    • Tune controls to improve protection and reduce false positives.
                    • Identify vulnerabilities and drive remediation activities.
                    • Support the wider cyber security strategy and security improvement initiatives.
                    • Work closely with Security Engineering, SOC, Architecture and Infrastructure teams.
                    • Present security recommendations to technical and senior stakeholders.
                    • Support audit and compliance activities, including remediation of audit findings.
                    • Contribute to security projects from design through to implementation.

                    About You:

                    • Strong Cyber Security background with hands on security engineering experience.
                    • Proven experience administering Akamai WAAP, including Web Application Firewall (WAF), API Security and bot protection capabilities.
                    • Strong hands on experience with Web Application Firewalls (WAF), including policy design, rule tuning, exception management and application onboarding.
                    • Good understanding of OWASP Top 10 and OWASP API Security Top 10.
                    • Knowledge of HTTP/S, REST APIs and application layer attack mitigation.
                    • Experience with vulnerability management, Qualys and attack surface monitoring tools.
                    • Understanding of patch management and vulnerability remediation.
                    • Strong stakeholder engagement and communication skills.

                    Reasonable Adjustments:

                    Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

                    If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

                    Apply for this Job