technology job

Security Architect - DV Cleared

  • Posted September 2, 2026
  • Bonus + Benefits
  • Farnborough
  • Permanent

Security Architect – DV Cleared

  • Location: Farnborough, Hampshire, UK
  • Employment Type: Permanent, Full-Time
  • Security Clearance: Developed Vetting (DV) – Essential

About the Role

The Security Architect designs and implements comprehensive security architectures protecting defence and aerospace IT environments. You will develop enterprise security strategies, lead security programme implementations, architect integrated defence-in-depth solutions, and ensure compliance with stringent MOD security requirements. This role demands exceptional expertise in security architecture, risk management and defence security standards.

Key Responsibilities

Security Strategy & Architecture

  • Design holistic security architectures incorporating people, process and technology security
  • Develop enterprise-wide security strategies aligned with Defence Security Policy
  • Architect defence-in-depth security solutions across network, application, data and endpoint layers
  • Lead security architecture reviews and technical security assessments
  • Design zero-trust security models and continuous verification frameworks

Cyber Threat & Risk Management

  • Assess cyber threat landscape and design threat-informed security architectures
  • Lead security risk assessments and vulnerability management programmes
  • Design incident response, threat intelligence and cyber defence capabilities
  • Architect security monitoring, detection and response solutions
  • Design business continuity and cyber resilience frameworks

Compliance & Standards Implementation

  • Ensure security architectures comply with MOD security requirements and ITAR regulations
  • Design security solutions supporting Information Security Management System (ISMS) compliance
  • Architect compliance and audit capabilities for regulatory reporting
  • Lead security standards implementation and controls frameworks

Security Solutions & Integration

  • Architect endpoint protection, data loss prevention (DLP) and advanced threat protection solutions
  • Design cloud security architectures supporting hybrid and multi-cloud environments
  • Architect application security, API security and secure SDLC integration
  • Design security operations centre (SOC) capabilities and security information and event management (SIEM)
  • Lead security technology evaluation and implementation programmes

Technical Leadership & Governance

  • Lead security technical teams and provide architectural mentoring
  • Establish security design standards, architecture patterns and operational governance
  • Drive technical decision-making through security design reviews
  • Document security architecture decisions and design specifications

Customer & Stakeholder Engagement

  • Serve as technical authority for security architecture discussions with customer leadership
  • Present security recommendations to defence programme teams and executive stakeholders
  • Lead security architecture workshops and customer engagement activities
  • Communicate complex security concepts to technical and non-technical audiences

Essential Requirements

Experience & Expertise

  • Minimum 12 years’ information security experience with 5+ years in architecture role
  • Proven experience designing enterprise-scale security architectures
  • Strong background in defence, aerospace or government security programmes
  • Demonstrated expertise with security operations, incident response and threat management
  • Track record of leading security transformation and programme implementations

Technical Knowledge

  • Deep expertise in security architecture frameworks, methodologies and best practices
  • Expert-level knowledge of network security, endpoint security and application security
  • Strong understanding of threat models, attack vectors and defence-in-depth strategies
  • Proficiency in cloud security (AWS, Azure security, or equivalent)
  • Knowledge of security tools (SIEM, DLP, EDR, WAF, firewalls, etc.)
  • Understanding of cryptography, encryption and security protocols
  • Familiarity with MOD security requirements, Classification Guides and defence standards
  • Knowledge of compliance frameworks (ISO 27001, NIST CSF, etc.)

Personal Attributes

  • Exceptional strategic thinking combined with strong technical depth
  • Outstanding communication and stakeholder engagement skills
  • Strong problem-solving and analytical capabilities
  • Proven ability to lead technical teams and influence executive stakeholders
  • Passion for security excellence and continuous improvement

Desirable Requirements

  • Experience with defence or aerospace security programmes
  • CISSP, CISM, CCSK or equivalent security certifications
  • AWS Security or Azure Security certifications
  • Experience with security governance and compliance frameworks
  • Knowledge of ITAR compliance and export controls
  • Armed Forces or military security background

What We Offer

  • Highly competitive salary and comprehensive benefits package
  • Enhanced pension and private medical insurance
  • Flexible working and professional development support
  • Opportunity to architect security for mission-critical defence organisations

Reasonable Adjustments:

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

Apply for this Job

    technology job

    PAM Engineer (CyberArk / BeyondTrust)

    • Posted
    • £440 - £540 per annum + Inside IR35
    • Permanent

    PAM Engineer (CyberArk / BeyondTrust)

    Contract | 2 Positions Available

    📍 Location: Manchester (5 Days Onsite)
    💰 Rate: £440 – £540 per day Inside IR35
    🕒 Duration: 3 months

    About the Role

    I’m actively searching for two experienced BeyondTrust Endpoint Privilege Management (EPM) Engineers to support a large-scale, highly customised endpoint privilege management environment within a secure enterprise setting.

    This is an excellent opportunity for individuals with strong expertise in BeyondTrust EPM, endpoint security, application control, and privilege management. You will work closely with Application Packaging, Endpoint Engineering, and Security teams to ensure the ongoing operation, optimisation, and enhancement of a complex EPM estate.

    Candidates with significant CyberArk Endpoint Privilege Manager experience who are interested in cross-training into BeyondTrust EPM are also encouraged to apply.

    Key Responsibilities

    • Administer, support, and maintain a highly customised BeyondTrust EPM platform.
    • Design, implement, and manage policies covering privilege elevation, application control, allow-listing, and endpoint security.
    • Collaborate with Application Packaging and Endpoint Engineering teams to support application deployment and compatibility.
    • Analyse application requirements and define appropriate privilege management solutions.
    • Troubleshoot complex endpoint privilege management and application control issues.
    • Develop, test, and deploy policy changes while maintaining operational stability and security.
    • Support the on-boarding of new applications into the EPM environment.
    • Investigate and resolve incidents relating to privilege elevation, application execution, and endpoint security controls.
    • Work closely with infrastructure, packaging, and security teams to ensure seamless service delivery.
    • Produce and maintain technical documentation, support procedures, and operational standards.
    • Contribute to continuous improvement initiatives and platform optimisation activities.

    Essential Skills & Experience

    • Extensive hands-on experience with BeyondTrust Endpoint Privilege Management (EPM) administration and engineering.
    • Strong understanding of Windows endpoint security architecture.
    • Proven experience creating, modifying, and troubleshooting BeyondTrust EPM policies.
    • Experience supporting application packaging and software deployment processes.
    • Strong knowledge of:
      • Windows Desktop Operating Systems
      • Application Control
      • Privilege Elevation
      • Endpoint Security
      • Software Packaging and Deployment
      • Group Policy Administration
    • Ability to analyse software requirements and design effective privilege management solutions.
    • Experience supporting highly customised enterprise EPM environments.
    • Excellent troubleshooting and root cause analysis skills.
    • Experience working within secure, controlled, or highly regulated environments.
    • Strong documentation and technical communication skills.
    • Ability to work independently in a complex operational setting.

    Desirable Skills

    • Experience with CyberArk Endpoint Privilege Manager (EPM).
    • Experience migrating between endpoint privilege management platforms.
    • Knowledge of Microsoft Intune, MECM/SCCM, or similar endpoint management solutions.
    • PowerShell scripting and automation experience.
    • Experience supporting large-scale enterprise endpoint estates.
    • Familiarity with ITIL-based operational environments.
    • Experience working within secure facilities or restricted-access environments.

    What’s Required?

    To be considered for this opportunity, you must:

    ✅ Be eligible for BPSS clearance
    ✅ Be able to work 5 days per week onsite in Manchester or Inverness
    ✅ Be available to participate in a 24×7 support rota

    If you have strong BeyondTrust EPM expertise and are looking to work on a complex, enterprise-scale deployment within a secure environment, apply to be considered.

    Reasonable Adjustments:

    Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

    If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

    Apply for this Job

      technology job

      Security Engineer (Site Reliability Engineering) - SC Cleared

      • Posted
      • £545 - £590 per day + Inside IR35
      • London
      • Contract

      Security Engineer (Site Reliability Engineering) x2

      Location: UK (Hybrid, London 3 days per week)
      Security Clearance: Active SC Clearance Required
      Contract Length: 6-18 Months
      Rate: £545-£590 per day (Inside IR35)
      Positions Available: 2

      About the Role

      We are seeking two experienced Security Engineers (SRE) to join a specialist consultancy delivering cyber security services across a portfolio of government projects and digital transformation programmes.

      This role is ideal for security professionals with strong experience in security engineering, platform security, enterprise security architecture, and operational resilience. You will play a pivotal role in designing, implementing, and maintaining secure, scalable, and resilient systems while ensuring security best practices are embedded across complex technology environments.

      Working alongside engineering, operations, architecture, DevSecOps, and security teams, you will help protect critical applications, infrastructure, data, and services against evolving cyber threats. You will be expected to operate independently, provide technical leadership, and contribute to the continual improvement of security capabilities across multiple client engagements.

      Key Responsibilities

      Security Engineering & Platform Protection

      • Design, build, implement, and maintain security controls across enterprise platforms, applications, and infrastructure.
      • Protect systems, services, networks, and data from cyber threats and security risks.
      • Ensure security is integrated throughout the system development and operational lifecycle.
      • Promote Secure by Design and Secure by Default principles across technology solutions.

      Security Architecture

      • Apply Enterprise Security Architecture principles to support secure solutions and services.
      • Contribute to the development and implementation of security architecture strategies and standards.
      • Review solution designs and provide security recommendations aligned to business and regulatory requirements.
      • Support architectural decision-making to ensure platforms remain secure, scalable, and resilient.

      Splunk Engineering & Security Monitoring

      • Develop and maintain security monitoring capabilities using Splunk.
      • Create dashboards, alerts, reports, and use cases to enhance threat detection and security visibility.
      • Support log ingestion, optimisation, data onboarding, and security analytics.
      • Collaborate with SOC and Threat Intelligence teams to improve monitoring and response capabilities.

      Security Assessments & Risk Management

      • Conduct security assessments, reviews, and audits to identify vulnerabilities and weaknesses.
      • Assess risks and recommend appropriate mitigation strategies.
      • Support vulnerability management and remediation activities.
      • Validate the effectiveness of implemented security controls.

      Collaboration & Stakeholder Engagement

      • Work closely with engineering, operations, architecture, DevOps, and security teams to embed security controls throughout the environment.
      • Act as a trusted security advisor to project teams and stakeholders.
      • Participate in technical workshops, design reviews, and architecture discussions.
      • Provide expert security guidance and contribute to key technical decisions.

      Continuous Improvement

      • Monitor emerging threats, vulnerabilities, technologies, and industry trends.
      • Identify opportunities to improve security capabilities, automation, resilience, and operational efficiency.
      • Support the development of security standards, policies, and best practices.
      • Drive continual improvements across security engineering and platform security functions.

      Essential Skills & Experience

      • Strong experience as a Security Engineer, Security-focused SRE, Platform Security Engineer, or similar role.
      • Advanced knowledge of Enterprise Security Architecture principles.
      • Hands-on experiencewithSplunk, including:
        • Security monitoring
        • Dashboard development
        • Alerting and reporting
        • Log analysis
        • Security analytics
      • Experience implementing security controls across cloud, infrastructure, and application environments.
      • Strong understanding of security architecture and secure design principles.
      • Experience conducting security assessments, audits, and risk reviews.
      • Knowledge of vulnerability management and remediation processes.
      • Excellent analytical and problem-solving capabilities.
      • Ability to work independently and provide technical leadership.
      • Active SC Clearance.

      Technical Experience

      Experience with some of the following technologies would be advantageous:

      Security & Monitoring

      • Splunk Enterprise Security
      • SIEM & Security Analytics Platforms
      • SOAR Technologies
      • Identity & Access Management (IAM)

      Cloud & Infrastructure

      • AWS Security Services
      • Microsoft Azure Security
      • Kubernetes Security
      • Docker Security
      • Terraform (Infrastructure as Code)

      Preferred Certifications

      The following certifications would be advantageous:

      • CISSP
      • CCSP
      • SABSA
      • GIAC Certifications
      • AWS Security Specialty
      • Microsoft Certified: Azure Security Engineer Associate
      • Security+ or equivalent

      Reasonable Adjustments:

      Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

      If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

      Apply for this Job

        technology job

        Security Delivery Lead

        • Posted August 26, 2026
        • £350 - £500 per annum + Inside IR35
        • High Wycombe
        • Contract

        Delivery Team Security Lead (DTSL)

        Location: High Wycombe
        Security Clearance: SC Clearance Required
        Contract: 6-Month Rolling Contract
        Rate: £350 – £500 per day (Inside IR35)


        About the Role

        We are seeking a Junior Security Architect / Delivery Team Security Lead (DTSL) to support a large-scale military digital transformation programme.

        This is an exciting opportunity for an ambitious cyber security professional looking to progress into Security Architecture while gaining hands-on experience across secure software delivery, risk management, security assurance, governance, and Defence accreditation activities.

        Working within a Through Life Support (TLS) environment, you will be responsible for maintaining the security posture of a portfolio of live operational applications. Acting as the security lead for assigned projects, you will work closely with engineering teams, delivery managers, architects, and assurance stakeholders to ensure that security is embedded throughout the software development lifecycle.


        Key Responsibilities

        Secure by Design

        • Support the implementation of Secure by Design principles across Agile delivery teams.
        • Ensure products maintain a live security case supported by appropriate assurance evidence.
        • Promote security best practices throughout the software development lifecycle.

        Security Risk Management

        • Conduct and maintain security risk assessments using recognised risk management methodologies.
        • Manage product-level security risk registers and track remediation activities.
        • Assess vulnerabilities and support teams in reducing risk exposure.
        • Escalate security risks that exceed agreed tolerance levels.

        Security Architecture & Assurance

        • Collaborate with engineering teams and technical stakeholders to integrate security requirements into solution designs.
        • Contribute to the development and review of:
          • High-Level Designs (HLDs)
          • Through-Life Management Plans (TLMPs)
          • Data Through-Life Management Plans (D-TLMPs)
        • Provide pragmatic security guidance to support secure delivery outcomes.

        Compliance & Governance

        • Support compliance with Defence security policies, standards, and governance requirements.
        • Develop and maintain security documentation and assurance artefacts.
        • Contribute to Security Management Plans (SMPs) and accreditation evidence packs.
        • Assist with governance reviews and security assurance activities.

        Stakeholder Engagement

        • Build strong relationships with technical and non-technical stakeholders across the programme.
        • Act as a trusted security advisor to delivery teams.
        • Support security discussions during governance forums, delivery ceremonies, and assurance engagements.

        Essential Skills & Experience

        • Experience within Cyber Security, Information Security, Security Assurance, Governance, or Risk Management roles.
        • Understanding of secure software development lifecycles (SSDLC).
        • Knowledge of security risk management principles and methodologies.
        • Experience working within Agile and/or DevSecOps environments.
        • Strong written and verbal communication skills.
        • Ability to work effectively with both technical and non-technical stakeholders.
        • Strong organisational and workload management skills.
        • Experience creating and maintaining security documentation and assurance artefacts.

        Desirable Skills & Experience

        • Experience within Defence, Government, or highly regulated environments.
        • Knowledge of security accreditation and assurance processes.
        • Familiarity with the NIST Risk Management Framework (RMF).
        • Experience with vulnerability management and security tooling.
        • Exposure to security architecture, secure design reviews, or threat modelling.
        • Understanding of AI governance and Responsible AI principles.
        • Knowledge of Government Digital Service (GDS) delivery methodologies.

        Qualifications

        The following certifications would be advantageous:

        • CompTIA Security+
        • ISC2 Certified in Cybersecurity (CC)
        • SSCP
        • CISSP Associate
        • SABSA Foundation
        • Equivalent industry-recognised security certifications

        Reasonable Adjustments:

        Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

        If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

        Apply for this Job

          technology job

          Threat Intelligence Analyst - SC Cleared

          • Posted August 20, 2026
          • £545 - £590 per day + Inside IR35
          • London
          • Contract

          Threat Intelligence Analyst x3

          Location: UK (Hybrid/Remote as required)
          Security Clearance: Active SC Clearance Required
          Contract Length: 6-18 Months
          Rate: £545-£590 per day (Inside IR35)
          Positions Available: 3

          About the Role

          We are seeking three Threat Intelligence Analysts to join a specialist consultancy supporting the delivery of cyber security services across a range of government projects and digital transformation programmes.

          This is an exciting opportunity to work within a complex and evolving threat landscape, supporting the protection of critical public services and highly sensitive environments. As a Threat Intelligence Analyst, you will be responsible for identifying, analysing, and communicating cyber threats that may impact clients, systems, and services.

          Working closely with Security Operations, Incident Response, Engineering, and wider Cyber Security teams, you will help build situational awareness, deliver actionable intelligence, and strengthen detection and response capabilities across multiple government-focused engagements.

          Key Responsibilities

          Threat Monitoring & Intelligence Analysis

          • Monitor and assess a wide range of intelligence sources, including OSINT, commercial intelligence platforms, security telemetry, online databases, and intelligence feeds.
          • Identify, analyse, and prioritise actionable cyber threats relevant to client environments.
          • Maintain awareness of emerging threat actors, campaigns, vulnerabilities, and attack techniques.
          • Develop intelligence-led insights to support proactive cyber defence activities.

          Research & Reporting

          • Conduct in-depth research into cyber threats, threat actors, vulnerabilities, and industry trends.
          • Produce high-quality intelligence reports, threat assessments, executive summaries, and technical briefings.
          • Deliver actionable intelligence products to both technical and non-technical stakeholders.
          • Communicate complex cyber threats in a clear and accessible manner.

          Threat Hunting & Indicators of Compromise

          • Analyse Indicators of Compromise (IoCs), including malicious IP addresses, domains, file hashes, and malware indicators.
          • Support the identification of threat actor behaviours, tactics, techniques, and procedures (TTPs).
          • Develop recommendations to strengthen defensive controls and improve detection capabilities.
          • Contribute to proactive threat hunting and intelligence-led investigations.

          Incident Response Support

          • Support cyber incident investigations throughout the intelligence lifecycle.
          • Work closely with Incident Response and Security Operations teams to enrich investigations with threat intelligence.
          • Assist with incident containment, remediation activities, and post-incident analysis.

          Threat Modelling & Intelligence Frameworks

          • Apply recognised threat intelligence methodologies including:
            • MITRE ATT&CK
            • Cyber Kill Chain
            • Pyramid of Pain
            • Diamond Model
          • Identify intelligence gaps and opportunities to improve threat detection and response capabilities.

          Strategic Threat Intelligence

          • Contribute to tactical, operational, and strategic intelligence activities.
          • Support the development and maturity of threat intelligence capabilities.
          • Provide proactive threat warnings and situational awareness to stakeholders.
          • Support the protection of critical systems, services, and infrastructure through intelligence-led decision making.

          Essential Skills & Experience

          • Minimum one year’s experience in Cyber Security or a related discipline.
          • Strong understanding of:
            • Cyber Threat Intelligence principles
            • Threat Actor Analysis
            • Intelligence Collection and Dissemination Processes
            • Cyber Security Operations
          • Experience using threat intelligence and analysis platforms such as:
            • Recorded Future
            • OpenCTI
            • Cribl
            • Splunk
            • Other intelligence and SIEM technologies
          • Knowledge of threat intelligence frameworks including:
            • MITRE ATT&CK
            • Cyber Kill Chain
            • Pyramid of Pain
            • Diamond Model
          • Strong analytical, investigative, and problem-solving skills.
          • Ability to identify, assess, and prioritise actionable intelligence.
          • Excellent communication and stakeholder engagement skills.
          • Active SC Clearance.

          Preferred Certifications

          The following certifications would be advantageous but are not essential:

          • GIAC Cyber Threat Intelligence (GCTI)
          • CISSP
          • CEH
          • GIAC Certifications
          • CompTIA Security+
          • CREST Certifications
          • SANS Cyber Security Certifications

          Reasonable Adjustments:

          Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

          If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

          Apply for this Job

            technology job

            SOC Analyst - SC Cleared

            • Posted
            • £545 - £590 per day + Inside IR35
            • London
            • Contract

            SOC Analyst x2

            Location: UK (Hybrid, 3 days per week in London)
            Security Clearance: Active SC Clearance Required
            Contract Length: 6-18 Months
            Rate: £545-£590 per day (Inside IR35)
            Positions Available: 2

            About the Role

            We are seeking two experienced SOC Analysts to join a specialist consultancy delivering cyber security services across a portfolio of government projects and digital transformation programmes.

            This is an excellent opportunity to work within complex and dynamic security environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams.

            You will act as a cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions.

            Key Responsibilities

            Security Monitoring & Incident Response

            • Monitor and triage security alerts generated through SIEM and security tooling.
            • Investigate and respond to cyber security incidents across cloud, endpoint, and network environments.
            • Analyse security events to determine impact, severity, and appropriate response actions.
            • Support incident containment, remediation, and post-incident review activities.
            • Participate in incident response exercises and security simulations.

            Detection Engineering

            • Develop, maintain, and optimise security detection content within Splunk SIEM.
            • Create and refine correlation searches, use cases, alerts, and detection rules.
            • Identify gaps in detection coverage and recommend improvements.
            • Work closely with security teams to improve visibility and enhance monitoring capabilities.
            • Support the onboarding and optimisation of new log sources.

            Security Operations Improvement

            • Review and enhance security operations processes, standards, and procedures.
            • Identify trends in incidents, attack patterns, and security monitoring activity.
            • Recommend improvements to logging, monitoring, alerting, and response capabilities.
            • Support service improvement and operational efficiency initiatives.

            Threat Intelligence & Threat Hunting

            • Remain current with emerging cyber threats, threat actors, vulnerabilities, and attack techniques.
            • Leverage threat intelligence to improve detection and response capabilities.
            • Support proactive threat hunting activities.
            • Research adversary tactics, techniques, and procedures (TTPs) relevant to highly regulated environments.

            Technical Leadership

            • Act as an escalation point for junior analysts.
            • Provide mentoring, coaching, and knowledge-sharing support.
            • Contribute to capability development across the wider security team.
            • Present technical findings and recommendations to stakeholders when required.

            Additional Responsibilities

            Depending on project requirements, responsibilities may also include:

            • Proactive threat hunting
            • Detection engineering and use-case development
            • Incident response playbook creation
            • Threat intelligence collection and analysis
            • Vulnerability assessment and reporting
            • Security change approval activities
            • Security capability enhancement initiatives

            Essential Skills & Experience

            • Demonstrable experience working within a Security Operations Centre (SOC) environment.
            • Strong experience in security monitoring, alert triage, and incident investigation.
            • Hands-on experience with:
              • Splunk
              • SIEM technologies
              • Endpoint security tools
              • Security monitoring platforms
            • Experience developing and improving detection content and alert logic.
            • Strong understanding of incident response processes and cyber security operations.
            • Knowledge of network security concepts and attack methodologies.
            • Excellent analytical, investigative, and problem-solving skills.
            • Strong communication and stakeholder engagement capabilities.
            • Active SC Clearance.

            Desirable Skills & Knowledge

            Experience in one or more of the following areas would be advantageous:

            • Detection Engineering and Alert Development
            • Threat Hunting
            • Threat Intelligence Analysis
            • Security Automation and Orchestration
            • Incident Response Playbook Development
            • Vulnerability Management
            • Cloud Security (AWS, Azure, GCP)
            • Digital Forensics

            On-Call Requirement

            This role includes participation in an on-call rota, averaging approximately one week per month to support priority cyber security incidents.

            • Additional compensation is provided for on-call participation.
            • Frequency may vary depending on project requirements.

            Reasonable Adjustments:

            Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

            If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

            Apply for this Job

              technology job

              Security Engineer (Site Reliability Engineering)

              • Posted
              • £545 - £590 per day + Inside IR35
              • London
              • Permanent

              Security Engineer (Site Reliability Engineering) x2

              Location: UK (Hybrid, London 3 days per week)
              Security Clearance: Active SC Clearance Required
              Contract Length: 6-18 Months
              Rate: £545-£590 per day (Inside IR35)
              Positions Available: 2

              About the Role

              We are seeking two experienced Security Engineers (SRE) to join a specialist consultancy delivering cyber security services across a portfolio of government projects and digital transformation programmes.

              This role is ideal for security professionals with strong experience in security engineering, platform security, enterprise security architecture, and operational resilience. You will play a pivotal role in designing, implementing, and maintaining secure, scalable, and resilient systems while ensuring security best practices are embedded across complex technology environments.

              Working alongside engineering, operations, architecture, DevSecOps, and security teams, you will help protect critical applications, infrastructure, data, and services against evolving cyber threats. You will be expected to operate independently, provide technical leadership, and contribute to the continual improvement of security capabilities across multiple client engagements.

              Key Responsibilities

              Security Engineering & Platform Protection

              • Design, build, implement, and maintain security controls across enterprise platforms, applications, and infrastructure.
              • Protect systems, services, networks, and data from cyber threats and security risks.
              • Ensure security is integrated throughout the system development and operational lifecycle.
              • Promote Secure by Design and Secure by Default principles across technology solutions.

              Security Architecture

              • Apply Enterprise Security Architecture principles to support secure solutions and services.
              • Contribute to the development and implementation of security architecture strategies and standards.
              • Review solution designs and provide security recommendations aligned to business and regulatory requirements.
              • Support architectural decision-making to ensure platforms remain secure, scalable, and resilient.

              Splunk Engineering & Security Monitoring

              • Develop and maintain security monitoring capabilities using Splunk.
              • Create dashboards, alerts, reports, and use cases to enhance threat detection and security visibility.
              • Support log ingestion, optimisation, data onboarding, and security analytics.
              • Collaborate with SOC and Threat Intelligence teams to improve monitoring and response capabilities.

              Security Assessments & Risk Management

              • Conduct security assessments, reviews, and audits to identify vulnerabilities and weaknesses.
              • Assess risks and recommend appropriate mitigation strategies.
              • Support vulnerability management and remediation activities.
              • Validate the effectiveness of implemented security controls.

              Collaboration & Stakeholder Engagement

              • Work closely with engineering, operations, architecture, DevOps, and security teams to embed security controls throughout the environment.
              • Act as a trusted security advisor to project teams and stakeholders.
              • Participate in technical workshops, design reviews, and architecture discussions.
              • Provide expert security guidance and contribute to key technical decisions.

              Continuous Improvement

              • Monitor emerging threats, vulnerabilities, technologies, and industry trends.
              • Identify opportunities to improve security capabilities, automation, resilience, and operational efficiency.
              • Support the development of security standards, policies, and best practices.
              • Drive continual improvements across security engineering and platform security functions.

              Essential Skills & Experience

              • Strong experience as a Security Engineer, Security-focused SRE, Platform Security Engineer, or similar role.
              • Advanced knowledge of Enterprise Security Architecture principles.
              • Hands-on experience withSplunk, including:
                • Security monitoring
                • Dashboard development
                • Alerting and reporting
                • Log analysis
                • Security analytics
              • Experience implementing security controls across cloud, infrastructure, and application environments.
              • Strong understanding of security architecture and secure design principles.
              • Experience conducting security assessments, audits, and risk reviews.
              • Knowledge of vulnerability management and remediation processes.
              • Excellent analytical and problem-solving capabilities.
              • Ability to work independently and provide technical leadership.
              • Active SC Clearance.

              Technical Experience

              Experience with some of the following technologies would be advantageous:

              Security & Monitoring

              • Splunk Enterprise Security
              • SIEM & Security Analytics Platforms
              • SOAR Technologies
              • Identity & Access Management (IAM)

              Cloud & Infrastructure

              • AWS Security Services
              • Microsoft Azure Security
              • Kubernetes Security
              • Docker Security
              • Terraform (Infrastructure as Code)

              Preferred Certifications

              The following certifications would be advantageous:

              • CISSP
              • CCSP
              • SABSA
              • GIAC Certifications
              • AWS Security Specialty
              • Microsoft Certified: Azure Security Engineer Associate
              • Security+ or equivalent

              Reasonable Adjustments:

              Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

              If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

              Apply for this Job

                technology job

                Security Architect - SC Cleared

                • Posted
                • £545 - £590 per day
                • London
                • Contract

                Security Architect

                Location: UK (Hybrid/Remote as required)
                Security Clearance: Active SC Clearance Required
                Contract Length: 6-18 Months
                Rate: £545-£590 per day (Inside IR35)

                About the Role

                We are seeking an experienced Security Architect to join a specialist consultancy supporting the delivery of critical government projects and digital transformation programmes.

                This is an exciting opportunity to play a key role in shaping and securing complex cloud environments, ensuring the confidentiality, integrity, and resilience of essential public services. As a Security Architect, you will lead the design and implementation of secure cloud architectures, provide architectural assurance, and champion security-by-design principles across large-scale programmes.

                Working closely with engineering, DevOps, infrastructure, security, and delivery teams, you will provide technical leadership, influence strategic decisions, and help clients strengthen their cyber security posture within highly regulated environments.

                Key Responsibilities

                Cloud Security Architecture

                • Define and maintain cloud security architecture, standards, and security frameworks across multiple projects.
                • Design secure cloud solutions that meet business, operational, security, and compliance requirements.
                • Ensure architectures align with recognised security standards, industry frameworks, and architectural best practices.
                • Establish security patterns, principles, and reusable standards for adoption across delivery teams.

                Security Strategy & Governance

                • Lead the development and continuous improvement of cloud security strategies and roadmaps.
                • Ensure security requirements are embedded within technology and business initiatives from inception.
                • Support governance activities through architectural assurance and security guidance.
                • Conduct design reviews and provide recommendations relating to security risks and control effectiveness.

                Security Controls & Risk Management

                • Define, document, and oversee the implementation of cloud security controls.
                • Identify security risks within cloud environments and recommend mitigation strategies.
                • Conduct security assessments and architecture reviews to validate security and compliance requirements.
                • Support threat modelling activities and risk assessments for new and existing services.

                Cloud Security Operations

                • Support the transition of cloud solutions into operational security environments.
                • Ensure operational teams have the controls, monitoring capabilities, and processes required to manage secure services.
                • Collaborate with Security Operations, Incident Response, Engineering, and Platform teams to maintain secure systems.
                • Drive continuous improvement within security monitoring and incident response capabilities.

                Stakeholder Engagement

                You will work closely with:

                • Cloud Engineering Teams
                • Infrastructure Teams
                • Security Operations Teams
                • DevOps Teams
                • Enterprise Architects
                • Programme and Delivery Leadership

                You will provide expert security guidance throughout solution design and implementation while communicating technical risks and recommendations to senior stakeholders.

                Skills & Experience

                Essential

                • Proven experience as a Security Architect, Cloud Security Architect, or Enterprise Security Architect.
                • Expertise in:
                  • Cloud Security Planning
                  • Cloud Security Architecture
                  • Cloud Infrastructure Security
                  • Cloud Security Assessment
                  • Managed Cloud Security Services
                • Strong understanding of secure cloud design principles and architecture methodologies.
                • Experience securing large-scale cloud environments.
                • Strong knowledge of cloud-native security controls and services.
                • Experience with threat modelling, risk assessments, and security architecture reviews.
                • Ability to translate business requirements into secure technical solutions.
                • Experience working within highly regulated environments.
                • Strong stakeholder management and communication skills.
                • Active SC Clearance.

                Desirable

                • Experience supporting government departments, public sector organisations, or Critical National Infrastructure programmes.
                • Knowledge of:
                  • Zero Trust Architecture
                  • Secure by Design Principles
                  • DevSecOps Methodologies
                  • Security Operations & Incident Response
                  • Identity & Access Management (IAM)
                  • Data Protection & Privacy Controls
                  • Enterprise Security Architecture Frameworks
                • Familiarity with:
                  • NCSC Cloud Security Principles
                  • ISO 27001
                  • NIST Cybersecurity Framework
                  • CIS Controls
                  • OWASP

                Technical Experience

                Cloud Platforms

                • AWS
                • Microsoft Azure
                • Google Cloud Platform (GCP)

                Security Technologies

                • Microsoft Defender Suite
                • Splunk
                • Microsoft Sentinel
                • CrowdStrike
                • Prisma Cloud
                • Wiz
                • Lacework
                • Tenable
                • Qualys

                Infrastructure & DevOps

                • Kubernetes
                • Docker
                • Terraform
                • GitHub
                • GitLab
                • Jenkins
                • CI/CD Security Tooling

                Scripting & Automation

                • Python
                • PowerShell
                • Bash

                Preferred Certifications

                • CISSP (Certified Information Systems Security Professional)
                • CCSP (Certified Cloud Security Professional)
                • SABSA
                • TOGAF
                • Microsoft Certified: Azure Security Engineer Associate
                • Google Professional Cloud Security Engineer
                • CRISC
                • CISM

                Reasonable Adjustments:

                Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

                If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

                Apply for this Job

                  technology job

                  Risk & Compliance Analyst - SC Cleared

                  • Posted
                  • £500 - £545 per annum
                  • Contract

                  Risk & Compliance Analyst

                  Location: UK (Hybrid, London 3 days per week)
                  Contract Rate: £500 – £545 per day (Inside IR35)
                  Contract Duration: 6 Months Rolling

                  About the Role

                  We are seeking an experienced Risk & Compliance Representative to join a consultancy delivering services across a range of government projects and highly regulated environments.

                  This is an exciting opportunity for a risk and compliance professional to support the delivery of governance, risk, and compliance objectives while helping clients enhance their control frameworks, strengthen regulatory compliance, and improve risk management practices.

                  You will work closely with programme teams, business stakeholders, and senior leadership to promote a strong compliance culture, drive continuous improvement initiatives, and provide expert advice on risk and regulatory matters.

                  Key Responsibilities

                  • Support project and service delivery through effective quality assurance, risk management, and compliance oversight.
                  • Drive awareness and adoption of compliance policies, standards, and processes across multiple teams and workstreams.
                  • Act as a subject matter expert for risk and compliance-related matters.
                  • Develop and implement strategies to improve compliance culture and organisational awareness.
                  • Deliver training and guidance on compliance obligations, policies, and regulatory requirements.
                  • Monitor adherence to internal policies, procedures, and applicable regulatory requirements.
                  • Analyse risk management processes and identify opportunities for improvement.
                  • Conduct risk assessments and support the mitigation of operational, regulatory, and business risks.
                  • Collaborate with stakeholders across delivery, governance, security, and operational teams to support compliance objectives.
                  • Support governance activities, audits, reviews, and assurance assessments where required.
                  • Monitor and report on compliance metrics, trends, risk indicators, and remedial actions.
                  • Provide practical and pragmatic solutions to complex compliance and risk challenges.
                  • Support business and programme decision-making through the provision of expert risk and compliance advice.
                  • Contribute to the implementation and continual enhancement of compliance frameworks, controls, and governance processes.

                  Skills & Experience

                  Essential

                  • Significant experience in Enterprise Risk Management (ERM).
                  • Strong understanding of risk management principles, methodologies, and frameworks.
                  • Experience working within governance, risk, compliance, or regulatory environments.
                  • Knowledge of regulatory compliance requirements and compliance management practices.
                  • Proven ability to influence stakeholders and drive successful compliance initiatives.
                  • Excellent analytical, problem-solving, and decision-making skills.
                  • Strong communication and stakeholder management capabilities.
                  • Experience developing and delivering compliance training and awareness programmes.
                  • Ability to work independently while collaborating effectively across multidisciplinary teams.
                  • Experience producing compliance reports, dashboards, metrics, and management information.

                  Desirable

                  • Experience supporting government departments, public sector organisations, or other highly regulated sectors.
                  • Knowledge of governance frameworks and regulatory best practice.
                  • Experience operating within large-scale transformation or complex delivery environments.
                  • Familiarity with:
                    • Policy Compliance
                    • Regulatory Compliance
                    • Regulatory Compliance Management
                    • Enterprise Risk Management
                    • Governance and Assurance Frameworks

                  Preferred Certifications

                  The following qualifications would be advantageous:

                  • CIPM (Certified Information Privacy Manager)
                  • CIPP (Certified Information Privacy Professional)
                  • CIPT (Certified Information Privacy Technologist)

                  Reasonable Adjustments:

                  Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

                  If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

                  Apply for this Job

                    technology job

                    Information Assurance CAF Consultant

                    • Posted
                    • £600 - £700 per day
                    • Contract

                    Information Assurance CAF Consultant

                    Location: UK (London – 3 days a week)
                    Security Clearance: Active SC Clearance required
                    Contract Length: 6-18 Months
                    Rate: Competitive Market Rate

                    About the Role

                    We are seeking an experienced Information Assurance CAF Consultant to join a growing consultancy delivering cyber security, assurance, and governance services across a portfolio of government projects.

                    This is an excellent opportunity for an Information Assurance professional with strong experience in the Cyber Assessment Framework (CAF), Governance, Risk & Compliance (GRC), Quality Assurance, and Operational Resilience. You will work alongside client and delivery teams to strengthen security controls, enhance assurance frameworks, support compliance activities, and drive continuous improvement initiatives.

                    As a trusted subject matter expert, you will engage with stakeholders at all levels, providing guidance on assurance, risk management, governance, and resilience while helping clients meet regulatory and security requirements within complex and highly regulated environments.

                    Key Responsibilities

                    Information Assurance & CAF Compliance

                    • Support the implementation, assessment, and continuous improvement of Information Assurance frameworks aligned to the Cyber Assessment Framework (CAF).
                    • Evaluate compliance against security, governance, risk, and resilience requirements.
                    • Conduct assurance reviews to identify control gaps and recommend remediation actions.
                    • Support internal and external audits, assessments, and accreditation activities.
                    • Ensure security, quality, and assurance activities align with organisational and client standards.

                    Quality Assurance & Governance

                    • Develop, maintain, and enhance quality assurance frameworks, methodologies, and controls.
                    • Monitor compliance with policies, procedures, standards, and regulatory requirements.
                    • Assess operational effectiveness and identify opportunities for improvement.
                    • Support governance forums by providing assurance reporting and recommendations.
                    • Contribute to the development of quality metrics and performance indicators.

                    Business Continuity & Operational Resilience

                    • Support Business Continuity and Disaster Recovery (BCDR) activities.
                    • Review resilience capabilities and identify opportunities to strengthen operational readiness.
                    • Assist with testing, exercising, and validating continuity and recovery plans.
                    • Ensure critical services meet resilience and availability requirements.

                    Process Improvement & Best Practice

                    • Lead initiatives to improve assurance, compliance, and quality management processes.
                    • Identify trends, risks, and recurring issues that could impact delivery or compliance.
                    • Promote continuous improvement and operational excellence across teams.
                    • Develop and implement best practices that enhance governance and assurance outcomes.

                    Reporting & Analysis

                    • Analyse assurance, risk, and quality data to support decision-making.
                    • Produce high-quality reports, dashboards, and management information.
                    • Present findings and recommendations to senior stakeholders.
                    • Monitor remediation activities and report progress against agreed objectives.

                    Skills & Experience

                    Essential

                    • Strong experience within Information Assurance, Governance, Risk, Compliance, or Quality Assurance environments.
                    • Demonstrable experience working with the Cyber Assessment Framework (CAF) or comparable assurance frameworks.
                    • Advanced knowledge of Quality Assurance principles and methodologies.
                    • Experience conducting audits, compliance assessments, and assurance reviews.
                    • Strong understanding of governance, risk management, and control frameworks.
                    • Experience producing assurance reports, recommendations, and improvement plans.
                    • Excellent communication, stakeholder engagement, and influencing skills.
                    • Ability to work independently and provide subject matter expertise.
                    • Active SC Clearance.

                    Desirable

                    • Experience supporting Business Continuity and Disaster Recovery programmes.
                    • Knowledge of government security standards and public sector assurance frameworks.
                    • Experience working within government, Critical National Infrastructure (CNI), or other highly regulated environments.
                    • Familiarity with:
                      • NCSC Cyber Assessment Framework (CAF)
                      • ISO 27001
                      • NIST Cybersecurity Framework
                      • Risk Management Frameworks
                      • Control Assurance and Testing
                      • Operational Resilience Programmes
                    • Experience supporting large-scale digital transformation, cloud migration, or complex technology programmes.

                    Reasonable Adjustments:

                    Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

                    If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

                    Apply for this Job