We are seeking a Manager – Information Security (Compliance) to lead and develop information security compliance activities across... Read more
We are seeking a Manager – Information Security (Compliance) to lead and develop information security compliance activities across the organisation. This role will help ensure that policies, controls and processes align with applicable laws, regulations, contractual obligations and recognised security frameworks. You will work closely with technology, risk, legal, audit and business stakeholders to strengthen the organisation’s control environment and promote a culture of security and accountability.
Key responsibilities include managing the information security compliance programme; maintaining and improving security policies, standards and procedures; coordinating internal and external audits; and overseeing evidence collection, control testing, remediation plans and management reporting. You will monitor regulatory and industry developments, assess their impact, and translate requirements into practical controls and guidance. The role will also support risk assessments, third-party security reviews, security awareness initiatives, exception management and responses to customer or client security questionnaires. You will be expected to track compliance metrics, identify emerging risks and provide clear, actionable recommendations to senior stakeholders.
The successful candidate will have substantial experience in information security, IT risk, governance, audit or compliance, together with a strong understanding of frameworks such as ISO 27001, SOC 2, NIST or equivalent standards. Experience managing audits, control assurance programmes and remediation activity is essential, as is the ability to interpret complex regulatory requirements and communicate them effectively to technical and non-technical audiences. Relevant professional qualifications, such as CISM, CISSP, CISA, CRISC or ISO 27001 Lead Auditor, would be advantageous. Strong organisational, analytical and stakeholder-management skills are required, along with sound judgement, attention to detail and the confidence to challenge constructively.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a Cloud Security Engineer to help protect cloud-based platforms, applications, and data across a complex... Read more
We are seeking a Cloud Security Engineer to help protect cloud-based platforms, applications, and data across a complex and evolving technology environment. In this role, you will work closely with infrastructure, software engineering, DevOps, and risk teams to design, implement, and maintain effective security controls across public and hybrid cloud environments. You will contribute to secure architecture decisions, improve security automation, and support the continuous development of cloud security standards and best practices.
Your responsibilities will include monitoring cloud environments for vulnerabilities, misconfigurations, suspicious activity, and compliance risks; investigating and responding to security incidents; and supporting the implementation of identity and access management, encryption, network security, logging, and threat detection capabilities. You will help build security into infrastructure-as-code and CI/CD pipelines, review cloud architectures and services, and provide practical guidance to engineering teams. You will also assist with risk assessments, vulnerability management, security documentation, audit preparation, and the development of playbooks, policies, and technical recommendations.
The successful candidate will have professional experience in cloud security, platform security, infrastructure engineering, or a closely related discipline, with hands-on knowledge of services and security capabilities in platforms such as AWS, Azure, or Google Cloud. Experience with Kubernetes, containers, Terraform or similar infrastructure-as-code tools, CI/CD systems, scripting, and security monitoring platforms is highly desirable. You should understand common identity, network, application, and data security principles, as well as relevant frameworks and standards such as ISO 27001, NIST, or CIS benchmarks. Strong analytical, communication, and problem-solving skills are essential, along with the ability to explain technical risks clearly and collaborate effectively with teams at all levels. Relevant cloud or security certifications are advantageous.
Read lessKnutsford, England, United KingdomPermanent
We are seeking an experienced Cyber Recovery Lead to design, strengthen and oversee the organisation’s capability to recover... Read more
We are seeking an experienced Cyber Recovery Lead to design, strengthen and oversee the organisation’s capability to recover critical technology services following a cyber incident. This role will provide strategic direction across cyber resilience, disaster recovery and business continuity, ensuring that recovery arrangements are practical, regularly tested and aligned with operational priorities, security standards and regulatory expectations.
You will lead the development and maintenance of cyber recovery strategies, playbooks, procedures and supporting documentation for key systems, applications and infrastructure. Working closely with cybersecurity, technology, risk, compliance and business stakeholders, you will assess recovery requirements, identify vulnerabilities and dependencies, define recovery objectives, and ensure appropriate segregation, backup, restoration and validation controls are in place. You will coordinate recovery exercises and simulations, including scenario planning, technical testing and lessons-learned reviews, while tracking remediation actions through to completion. The role will also contribute to incident response planning and provide clear reporting on recovery readiness, risks, testing outcomes and improvement plans to senior leadership.
The successful candidate will have substantial experience in cyber recovery, disaster recovery, technology resilience, incident management or a closely related discipline. You will understand modern backup and recovery technologies, ransomware response, identity and access management, infrastructure and cloud environments, and the principles of secure restoration. Strong knowledge of recognised security, continuity and risk management frameworks is desirable, along with experience developing executive reports and managing complex stakeholder relationships. You should be confident working under pressure, able to translate technical risks into clear business impacts, and capable of influencing teams across multiple functions. Relevant professional certifications in cybersecurity, business continuity, disaster recovery, risk management or project delivery would be advantageous.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a Vulnerability Management Ops SME to provide specialist operational leadership across the end-to-end vulnerability management... Read more
We are seeking a Vulnerability Management Ops SME to provide specialist operational leadership across the end-to-end vulnerability management lifecycle. The successful candidate will help strengthen the organisation’s ability to identify, assess, prioritise and remediate security vulnerabilities across infrastructure, applications, cloud environments and end-user technologies. This role will work closely with security operations, infrastructure, engineering, risk and technology teams to ensure vulnerabilities are managed consistently and within agreed risk-based timeframes.
Key responsibilities will include overseeing vulnerability scanning schedules, validating and interpreting scan results, investigating false positives, and producing clear reports for technical and senior stakeholders. You will support the development and maintenance of vulnerability management processes, standards, procedures and service metrics. The role will also involve coordinating remediation activity, tracking exceptions and risk acceptances, escalating overdue or high-risk vulnerabilities, and providing practical guidance to technology teams. You will contribute to continuous improvement initiatives, including tool optimisation, automation, reporting enhancements and integration with ticketing, asset management and security platforms.
Applicants should have strong experience in vulnerability management operations, including the use of enterprise vulnerability scanning and security assessment tools. You will bring a good understanding of common vulnerabilities and exposures, CVSS-based risk assessment, remediation techniques, patch management and security controls across on-premises, cloud and endpoint environments. Experience with scripting or automation, data analysis, dashboard creation and workflow management would be advantageous. Excellent communication and stakeholder management skills are essential, along with the ability to translate technical findings into clear business risks and actionable recommendations. Relevant security certifications or equivalent practical experience are desirable. The role requires a methodical, collaborative and proactive approach, with a strong focus on accuracy, accountability and continual service improvement.
Read lessKnutsford, England, United KingdomPermanent
We are seeking an IAM Governance Specialist to support the effective management, oversight and continuous improvement of identity... Read more
We are seeking an IAM Governance Specialist to support the effective management, oversight and continuous improvement of identity and access management practices. This role will help ensure that access to systems, applications and data is appropriate, well controlled and aligned with security, regulatory and business requirements. You will work closely with technology, cybersecurity, risk, compliance and business stakeholders to promote consistent governance across the organisation’s identity environment.
Key responsibilities include developing and maintaining IAM policies, standards, procedures and control frameworks; coordinating periodic access reviews, user access recertifications and privileged access assessments; monitoring compliance with joiner, mover and leaver processes; and identifying opportunities to improve access lifecycle management. You will support the collection of audit evidence, respond to internal and external audit requests, track remediation actions and prepare clear governance reports for senior stakeholders. The role will also involve reviewing access-related risks, maintaining accurate documentation, supporting segregation-of-duties controls and contributing to the assessment of new applications, technologies and third-party services.
The successful candidate will have practical experience in identity and access management, security governance, IT risk, compliance or a related discipline. You should understand access control principles, least privilege, role-based access, privileged account management and identity lifecycle processes. Experience with IAM or governance, risk and compliance tools, access certification platforms and service management systems would be beneficial. Strong analytical, organisational and communication skills are essential, along with the ability to interpret policies and controls, manage multiple priorities and influence stakeholders at different levels. Relevant professional qualifications or certifications in information security, audit, risk or IT service management are desirable. This is an opportunity to contribute to a mature and continually evolving security framework while helping protect critical systems and information.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a skilled Penetration Tester to identify, assess, and help remediate security weaknesses across applications, infrastructure,... Read more
We are seeking a skilled Penetration Tester to identify, assess, and help remediate security weaknesses across applications, infrastructure, networks, cloud environments, and supporting technologies. You will plan and conduct authorised penetration tests, vulnerability assessments, and security reviews using a combination of manual techniques and industry-standard tools. Your work will include reconnaissance, threat modelling, exploitation, privilege escalation, lateral movement, and post-exploitation analysis, while maintaining strict testing controls and protecting sensitive information.
You will produce clear, accurate, and evidence-based reports that explain technical findings, business impact, risk ratings, and practical remediation recommendations. The role will involve working closely with security, engineering, infrastructure, and development teams to validate vulnerabilities, support remediation activities, and communicate complex technical issues to both technical and non-technical stakeholders. You may also contribute to security assessments, penetration-testing methodologies, internal tooling, knowledge sharing, and the ongoing improvement of security processes and controls.
Applicants should have professional experience in penetration testing, ethical hacking, or a closely related cybersecurity discipline, with a strong understanding of common attack techniques and security principles. Practical knowledge of web applications, APIs, networks, operating systems, cloud platforms, authentication mechanisms, and Active Directory is required. Experience with tools such as Burp Suite, Nmap, Metasploit, PowerShell, or equivalent technologies would be advantageous, as would scripting or programming capability in Python, Bash, or a similar language. Relevant certifications such as OSCP, CREST, GPEN, or equivalent experience are desirable. You should demonstrate sound judgement, strong written and verbal communication skills, attention to detail, and the ability to manage multiple assessments while working ethically, independently, and collaboratively.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a dynamic and experienced professional for the role of Chief Controls Officer in the Technology,... Read more
We are seeking a dynamic and experienced professional for the role of Chief Controls Officer in the Technology, Cyber & Resilience sector. The successful candidate will be responsible for overseeing the development and implementation of robust control frameworks to ensure compliance with regulatory standards and internal policies. This role involves collaborating with various departments to assess and mitigate risks associated with technology and cyber operations, ensuring that resilience strategies are in place to protect organizational assets and data integrity.
The Chief Controls Officer will lead a team dedicated to identifying control weaknesses and developing actionable plans to enhance operational effectiveness. Key responsibilities include conducting risk assessments, providing guidance on best practices in technology governance, and fostering a culture of accountability and compliance across the organization. The ideal candidate will possess strong analytical skills, a deep understanding of cybersecurity frameworks, and experience in managing large-scale technology projects. Excellent communication skills are essential for effectively liaising with stakeholders at all levels to promote a proactive approach to risk management and resilience initiatives.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a skilled Security Engineer to join our dynamic team. In this role, you will be... Read more
We are seeking a skilled Security Engineer to join our dynamic team. In this role, you will be responsible for designing, implementing, and maintaining security protocols to protect our organization's information systems. You will work collaboratively with various departments to identify vulnerabilities and ensure compliance with industry standards and regulations. Your expertise will be paramount in developing security policies, conducting risk assessments, and implementing solutions to mitigate potential threats.
The ideal candidate will possess a strong understanding of network security, encryption technologies, and intrusion detection systems. You will analyze security breaches and provide detailed reports on findings and recommendations. Additionally, you will stay updated on the latest security trends and threats, ensuring that our organization remains proactive in its defense strategies. Excellent problem-solving skills and the ability to communicate technical concepts to non-technical stakeholders are essential for success in this role.
Qualifications include a Bachelor’s degree in Computer Science, Information Technology, or a related field, along with relevant certifications such as CISSP, CISM, or CEH. Proven experience in security engineering or a related area is required, with a deep understanding of firewalls, VPNs, IDS/IPS, and other security technologies. If you are passionate about cybersecurity and eager to contribute to a secure environment, we encourage you to apply.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a dedicated Endpoint Security Engineer to join our dynamic cybersecurity team. In this role, you... Read more
We are seeking a dedicated Endpoint Security Engineer to join our dynamic cybersecurity team. In this role, you will be responsible for designing, implementing, and managing endpoint security solutions to protect our organization's data and infrastructure. You will work closely with IT and network teams to ensure seamless integration of security measures across all endpoints, including laptops, desktops, and mobile devices. Your expertise will help assess security vulnerabilities, conduct regular audits, and respond to incidents effectively to maintain a robust security posture.
The ideal candidate will possess a strong technical background in endpoint security technologies, including antivirus, anti-malware, and endpoint detection and response (EDR) solutions. You will be tasked with developing security policies, procedures, and best practices to enhance our endpoint security framework. Additionally, you will stay informed on the latest threats and trends in cybersecurity, proactively recommending improvements and updates to our endpoint protection strategies. Excellent communication skills are essential, as you will need to collaborate with various teams and provide training to end-users on security awareness.
To be successful in this role, you should have a relevant degree in Computer Science, Information Technology, or a related field, along with industry certifications such as CEH, CISSP, or equivalent. A minimum of 3 years of experience in endpoint security or a related area is required. If you are passionate about cybersecurity and are looking for an opportunity to make a significant impact, we encourage you to apply.
Read lessKnutsford, England, United KingdomPermanent
We are seeking a skilled Application Security Specialist to join our dynamic team. In this role, you will... Read more
We are seeking a skilled Application Security Specialist to join our dynamic team. In this role, you will be responsible for ensuring the security of software applications throughout their lifecycle. Your primary duties will include conducting security assessments, identifying vulnerabilities, and implementing remediation strategies to mitigate risks. You will collaborate closely with development teams to integrate security best practices into the software development process, ensuring that security is prioritized from the initial design phase through deployment.
In addition to performing threat modeling and code reviews, you will be tasked with developing and maintaining security tools and processes that enhance our overall security posture. You will also provide guidance and training to developers on secure coding standards and practices. Staying up-to-date with the latest security trends, threats, and technologies will be crucial for this position, as you will be responsible for recommending enhancements and improvements to our security protocols.
The ideal candidate will have a deep understanding of application security frameworks, security testing methodologies, and relevant compliance standards. Strong analytical skills, attention to detail, and the ability to work collaboratively with cross-functional teams are essential. A Bachelor's degree in Computer Science, Information Security, or a related field, along with relevant industry certifications, is preferred. This is an exciting opportunity for a dedicated professional to make a significant impact on our security strategy and help protect our digital assets.
Read lessKnutsford, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria