technology job

Senior SOC Analyst (DV Cleared)

  • Posted March 6, 2025
  • £500 - £900 per day
  • Hemel Hempstead
  • Contract

Senior SOC Analyst
DV Clearance Required

Hemel Hempstead (Onsite)

£500/day – £900/day DOE (Inside IR35)
Initial 6 Month contract

Role details:

We are working with a global consultancy and recognised expert in defence and security. They are looking for a Senior SOC Analyst to support on a key project in Hemel Hempstead.

Responsibilities:

  • Monitor, triage, and investigate security incidents on critical client infrastructure.
  • Perform in-depth analysis of network traffic, logs, and system events to identify potential security threats and vulnerabilities.
  • Provide Incident Response support when required, providing guidance on containment, eradication and recovery activities.
  • Maintain and, where appropriate, improve and develop team knowledge of SOC tools, security operations and triage.
  • Prepare reports for managed clients to both technical and non-technical audiences and continuously improve their content and presentation.

Requirements:

  • Proven experience in Security Operations Centre.
  • Demonstrable experience of using Microsoft Sentinel and Splunk.
  • Knowledge and experience with Mitre Att&ck Framework.
  • Strong knowledge of client-server applications, multi-tier web applications, relational databases, firewalls, VPNs, and enterprise AntiVirus products.
  • Strong understanding of networking principles including TCP/IP, WANs, LANs, and commonly used Internet protocols such as SMTP, HTTP, FTP, POP, LDAP

Eligibility:

To be considered for the role, you must have active MOD DV Clearance and be a Sole UK National.

Apply for this Job

    technology job

    Junior Professional Services Engineer

    • Posted March 5, 2025
    • £27000 - £32000 per annum
    • Permanent

    Junior Professional Services Engineer

    Location: Abingdon (Hybrid)
    Salary: £27-32k per annum

    An award-winning provider of IT security solutions, is looking for a Junior Professional Services Engineer to join their growing team. Specialising in IT security and with a focus on developing our people, our client is committed to providing opportunities for growth and career advancement. This role offers a fantastic pathway for someone to develop into a highly skilled and professional services engineer.

    Key Responsibilities:
    As a Junior Professional Services Engineer, you will:

    • Provide onsite helpdesk support, troubleshooting and resolving IT issues at client locations.
    • Act as the escalation point for onsite requirements and ensure all client issues are logged and managed appropriately.
    • Deliver client projects alongside senior engineers, gaining hands-on experience and mentoring.
    • Manage and prioritise incident tickets, ensuring SLAs are met and clients are kept informed.
    • Work closely with other departments, including project management, to ensure smooth delivery of projects and services.
    • Maintain communication with clients, vendors, and internal teams to ensure clarity on project scope and timelines.

    Skills and Experience:
    To be considered for this role, you should have:

    • A minimum of 2 years’ experience in IT, preferably in a corporate or service environment.
    • Strong technical knowledge in areas such as Windows 7/8/10, MacOS, Active Directory, Office 365, and Email Management (Exchange).
    • Experience with troubleshooting, problem resolution, and client-facing communication.
    • A full UK driving license and access to your own transport. Applicants must be local.
    • A desire to grow within the IT sector, with the drive to further your skills and certifications.

    Desirable Skills:

    • Experience with Microsoft Server OS (2008/2012/2016)
    • CompTIA A+, N+ certifications, and/or Microsoft certifications (MS-900, MS-100, MS-101)
    • Experience with wireless management solutions (Ubiquiti, Meraki, Netgear)
    • Experience in an MSP environment is a plus.

    Apply today to join a company that supports your growth and success!

    Apply for this Job

      technology job

      SOC Engineer (DV Cleared)

      • Posted
      • £500 - £575 per day + Outside IR35
      • Farnborough
      • Contract

      SOC Engineer (DV Cleared)

      Farnborough (Hybrid)

      £500 – £575/day (Outside IR35)
      Initial 6 Month Contract

      Role details:

      We are working with a leading provider of digital solutions in high security environments. They specialise in digital experimentation, focused on fail-safe-fast cutting-edge technology solutions.

      They are looking for a SOC Engineer to join them on fast moving, innovative and influential work that is underway in the Defence and Security Sector.


      Responsibilities:

      • Development of Use Cases
      • Development of playbooks
      • Development of alerts and dashboards in Elastic SIEM
      • 2nd line Security Monitoring to triage incidents and carry out investigations

      Requirements:

      • Knowledge of configuring SIEM tooling
      • Experience in developing use cases and playbooks for Security Operations Centre
      • Experience in configuration Elastic SIEM

      Eligibility:

      To be considered for the role, you must have active MOD DV Clearance.

      Apply for this Job

        technology job

        SOC Analyst (DV Cleared)

        • Posted
        • £500 - £900 per day
        • Gosport
        • Contract

        Senior SOC Analyst

        DV Clearance Required
        Gosport (Onsite)

        £500/day – £900/day DOE (Inside IR35)
        Initial 6 Month contract

        Role details:

        We are working with a global consultancy and recognised expert in defence and security. They are looking for a Senior SOC Analyst to support on a key MOD project in Gosport.

        As an L2 SOC Analyst, you’ll be the escalation point from L1, supporting security monitoring and incident response activities. The team is transitioning to Splunk, so experience with it is a plus.

        Requirements:

        • L1 SOC experience – ready to take on L2 responsibilities
        • Knowledge of Splunk (or willingness to learn)
        • Strong security monitoring & incident response skills
        • Certifications (e.g., Security+, GCIH, or similar) are beneficial but not essential
        • Threat detection experience is a nice-to-have

        Eligibility:

        To be considered for the role, you must have active MOD DV Clearance and be a Sole UK National.

        Apply for this Job

          technology job

          Information Security Analyst - GRC

          • Posted
          • £45000 - £50000 per annum + + benefits
          • Kent - Mainly Remote site visits once per month
          • Permanent

          Information Security Analyst – GRC

          Kent – Mainly Remote site visits once per month

          £45,000 – £50,000 + benefits

          Fantastic new permanent opportunity for an experienced GRC focused Information Security Analyst with this market leading financial services business based in Kent.

          As an Information Security Analyst, you will join an established team to provide Governance, Risk and Compliance oversight and services to deliver Information Security Strategy and help manage internal and third-party information security risk. You will also support other initiatives, such as the management of the Logical Access Management (LAM) of key technology systems, to meet full compliance requirements and always protecting customers and colleagues.

          Main responsibilities:

          • Support the execution of the Cyber Strategic Plan while continuously seeking innovative methods to enhance the cyber security function, reduce risk across the organisation, and improve customer and colleague experiences.
          • Oversee and manage cyber security governance controls in line with the Cyber Assurance Framework, including tracking performance through KPIs and SLAs, supporting vulnerability, management activities and providing relevant management information as needed.
          • Assist with compliance activities such as policy and process assessments / improvements, ISO27001 and PCI-DSS re-certifications and audits.
          • Implement and ensure the efficiency of internal and third-party cyber risk mitigation controls to align with risk appetites. Utilising internal reviews and third-party risk management systems and processes to ensure third parties meet security standards.
          • Stay updated on the external cyber threat landscape through participation in internal/external events and obtaining certifications and share best practices with colleagues.
          • Manage the technology access review process, coordinating with technology teams, broader business functions, and audit teams to ensure proper system access management and review.
          • Assist and support the incident management processes, including handling incidents, performing root cause analysis, documenting lessons learned, creating and ongoing reviews of playbooks.
          • Offer cyber consultancy services to support business initiatives, ensuring compliance and risk appetite requirements are met.
          • Adhere to our Governance and Business Code of Conduct, consistently acting with integrity and due diligence.

          Skills Required:

          • You will have proven experience of working within a similar GRC focused Information Security Analyst position.
          • Have a good understanding of risk management approaches and the application of Cyber risk management controls.
          • A broad understanding of the Cyber Security domain and associated compliance requirements such as FCA, GDPR, and PCI/DSS.
          • Experience with 3rd Party Risk Assessments.
          • Broad knowledge and understanding of cyber-attack techniques and vulnerability testing approaches.
          • Experience in undertaking Risk assessments, control testing and reporting in a regulated environment.
          • Proven stakeholder management experience and be able to demonstrate good written and verbal communications skills.
          • Can demonstrate previous experience in the planning, leading and delivering of audits and compliance activities.

          For any further queries regarding the role, please contact Danny Palmer at danny.palmer@sandersonplc.com

          Apply for this Job

            technology job

            Security Assurance Consultant

            • Posted March 4, 2025
            • £70000 - £80000 per annum
            • Reading (Hybrid 2 days/week onsite)
            • Permanent

            Security Assurance Consultant
            MOD SC or DV Clearance
            Reading (2 days/week onsite)

            £70k – £80k DOE

            Role details:

            We are working with an industry leading organisation that delivers complex solutions to government and industry partners that operate in highly secure environments. They are looking for a Security Assurance Consultant to provide oversight, advice and guidance to critical MOD projects.

            Requirements:

            • Certified Information Systems Security Professional (CISSP) or equivalent.
            • CESG Certified Professional (CCP) SIRA, Accreditor or IA Architect or equivalent certification.
            • Previous experience of using appropriate methodologies to identify, assess and manage information risk.

            Eligibility:

            To be considered for the role, you must have active MOD SC Clearance OR DV clearance.

            Apply for this Job

              technology job

              IT Security Engineer

              • Posted
              • £45000 - £50000 per annum + + benefits
              • Bristol - Hybrid Working / 1 or 2 days per week onsite
              • Permanent

              IT Security Engineer

              Bristol – Hybrid Working / 1 or 2 days per week onsite

              £45,000 – £50,000 + benefits

              Fantastic new permanent opportunity for an experienced IT Security Engineer with this large financial services company based in Bristol.

              As a key member of the Planning, Architecture & Security services team, the role will be at the forefront of the company’s security strategy, ensuring the confidentiality, integrity and availability of all their information and information systems.

              This role will focus on security and quality control in the IT department and will include designing, building and securing, scalable and robust systems. This role will help the company understand security threats and help create strategies to protect the businesses assets and interests.

              Main responsibilities:

              • Proactively identify information security deficiencies or opportunities for improvement and facilitate development of pragmatic solutions.
              • Plan, implement and upgrade security measures and controls.
              • Establish plans and protocols to protect digital files and information systems against unauthorized access, modification and/or destruction.
              • Contribute to the IT Strategy planning process with regards to Information Security, ISO27001/27002 developments.
              • Provide advisory and consulting support to help the Company improve its security posture and adhere to security policies, expected controls and regulatory requirements.
              • Maintain data and monitor security access.
              • Perform vulnerability testing, risk analyses and security assessments.
              • Define, implement and maintain corporate security policies.
              • Anticipate security alerts, incidents and disasters and reduce their likelihood.
              • Perform information security reviews of the core business and group business as well as third parties.
              • Identify and document areas of IT Risk related to Information/Cyber Security.
              • Support IT Risk Management by proposing appropriate risk mitigation and control measures.

              Skills Required:

              • A proven background within Security Operations / Network Security and Security Engineering.
              • Able to demonstrate a good understanding of information security frameworks, standards and security best practice (ISO27001, NIST CSF, Mitre Att&ck Framework, OWASP).
              • Experience in designing secure components (e.g. networks, systems, applications, security technologies)
              • Knowledge of and skills in at least one scripting language such as PowerShell.
              • Comprehensive knowledge of network design, defence-in-depth principles and network security architecture.
              • Extensive experience and understanding of security analysis tools, defensive technologies and other security technologies (e.g. SIEM, VAS, IDS/IPS, Firewalls, IAM, PAM, NAC, Email Security, Web filtering, Patch management, Anti-malware).
              • Experience in identifying, detecting, applying protection, responding and remediating to security incidents to within business risk appetite.
              • Strong working knowledge of authentication technologies (e.g. two-factor, multifactor).
              • Strong proficiency in using the Microsoft Ecosystem such as Active Directory and MS Entra ID, including GPO, DNS, DHCP.
              • Knowledge of endpoint security solutions (e.g. HIDS, anti-malware, file integrity, DLP).
              • AWS, Azure and other cloud platforms, including hybrid cloud (e.g. SaaS, IaaS, PaaS).
              • System administration, supporting multiple platforms and applications.
              • Skilled in conducting vulnerability scans and identifying vulnerabilities in systems.
              • Effective technical and non-technical communication skills to provide security support for colleagues, at all levels, across the business.

              For any further queries regarding the role or to apply, please contact Danny Palmer on at danny.palmer@sandersonplc.com

              Apply for this Job

                technology job

                IAM Engineer

                • Posted March 3, 2025
                • £500 - £630 per day
                • Fully Remote
                • Contract

                IAM Engineer (SC Cleared)

                Up to £630/day (Inside IR35)

                Fully Remote

                6 Month Contract

                Role details:

                We are working with a globally recognised consultancy who are market leaders in Cybersecurity.

                They are looking for an IAM Engineer to support on a project for a key government client.

                Requirements:

                • IAM Engineer or Security Consultant
                • Solid Auth0 & Okta experience.
                • Comfortable integrating AD attributes into modern IAM solutions.
                • Must have active SC Clearance.

                Click below to Apply.

                Apply for this Job

                  technology job

                  IT Security Capability and QA Lead/Manager

                  • Posted
                  • £550 - £600 per day
                  • Canary Wharf, London.
                  • Permanent

                  IT Security QA Lead/Manager, NIST

                  Our client, a leading financial services organisation, are looking to engage a specialist IT Security QA specialist.

                  The IT Security QA Lead will be responsible for ensuring quality is embedded throughout IT Security Capability, including setting strategies and standard to achieve predictable outcomes and defect-free products consumed by colleagues across the wider IT estate and business

                  Hybrid working – 2 days per week on site.
                  Limited company engagement is permitted; IR35 determination is the responsibility of the Limited company providing services prior to commencement.

                  General responsibilities: –

                  • Define capability-wide Quality strategy and in-depth knowledge of drivers of cyber engineering, cyber security terminology, methodologies and cyber threat intelligence frameworks.
                  • Conduct quality assurance reviews of security systems, tools and processes ensuring compliance with security standards.
                  • Standardise security testing on applications and infrastructure enabling identification of security weaknesses.
                  • Standardise validation of security patches, updates, and configurations.
                  • Review security procedures, and controls for compliance and effectiveness ensuring alignment to NIST.
                  • Ensuring alignment to NIST maturity improvements
                  • Analyse security incidents, changes, and requests to identify root causes and prevent future occurrences/improve efficiency.
                  • Develop company-wide best practices for IT security quality assurance and conduct security awareness training for employees.
                  • Ensuring adherence to prescribed Digital Operational Resilience processes and ensuring that capability technology resilience strategies and plans meet business resilience needs at all times.

                  Skills and experience required: –

                  • Extensive Security Technology and Engineering experience with deep insight into the latest security technology trends.
                  • Extensive experience in managing teams and MSPs.
                  • In-depth knowledge and experience of drivers of cyber engineering, cyber security terminology, methodologies and cyber threat intelligence frameworks.
                  • Experience with security tooling .
                  • Experience with incident response frameworks and methodologies, including frameworks like NIST CSF and MITRE ATT&CK.
                  • Familiarity of working with Agile software and development teams
                  • Familiarity with security information and event management (SIEM) and security orchestration, automation, and response (SOAR) tools.
                  • ITIL, ISTQB, ASTQB, ISEB certified or equivalent commercial experience.
                  • Experience working with the NIST Cyber Security Framework and ISO27001.

                  Apply for this Job

                    technology job

                    Information Security Manager

                    • Posted February 25, 2025
                    • £60000 - £65000 per annum + + car allowance
                    • Fully Remote
                    • Permanent

                    Information Security Manager

                    Fully Remote

                    £60,000 – £65,000 + car allowance + benefits

                    Are you an experienced Information Security Manager with a strong GRC focus looking for your next challenge? If so, this could be the ideal opportunity for you. My client, a specialist waste management business with an excellent reputation and ambitious growth plans, are looking to hire an Information Security Manager to join the team.

                    Reporting into the Group IT Director this will be a stand-alone Information Security Manager role focused on governance, risk management, compliance, processes and ensuring the organisation’s information security framework is robust and aligned with industry standards. You will be responsible for Information Security across the group and will be responsible for further developing the existing ISMS, ensuring that information security is at the heart of what they do as a business and that their information and their partners’ information assets are secure.

                    Key responsibilities

                    • Development and implementation of security standards, policies and processes aligned to industry best practice.
                    • Ensuring compliance with legislation/standards such as GDPR, PCI DSS etc.
                    • Management of external Information and Cyber security partners, including audits and assessments.
                    • Lead and manage cybersecurity projects, ensuring completion to deadlines and within budget.
                    • Collaborate with cross-functional teams: acting as the Information Security expert for teams across the business to ensure good information security is embedded within everything they do.
                    • Keep up to date with emerging Information Technology and threats.
                    • Ensure employees are aware of their InfoSec responsibilities and have adequate training to achieve them.

                    Skills and Experience required

                    • Proven experience within a similar Information Security Management role.
                    • Experience managing an ISMS (policy, procedures, Risk Management, Information Governance etc.)
                    • Detailed knowledge of GDPR legislation and PCI DSS framework.
                    • Experience managing audits against frameworks such CIS, NIST or similar.
                    • Ability to work with initiative, requiring minimum supervision.
                    • Excellent time management skills, ensuring that deadlines and priorities are met.
                    • CISM/CISSP qualification (desirable)
                    • Experience implementing ISO27001 (desirable)

                    For more information or to apply please send a copy of your CV to [email protected]

                    Apply for this Job