We are seeking a Cloud Security Engineer to help protect cloud-based platforms, applications, and data across a complex... Read more
We are seeking a Cloud Security Engineer to help protect cloud-based platforms, applications, and data across a complex and evolving technology environment. In this role, you will design, implement, and maintain security controls across public and hybrid cloud infrastructures, while partnering with engineering, infrastructure, and compliance teams to embed security throughout the development lifecycle. You will contribute to cloud security architecture, identity and access management, network protection, encryption, secrets management, logging, monitoring, and secure configuration standards.
Key responsibilities include assessing cloud environments for vulnerabilities and misconfigurations, supporting threat modelling and risk assessments, and developing practical remediation plans. You will help define and enforce security policies using infrastructure-as-code, configuration management, and automated guardrails. The role will also involve investigating security alerts and incidents, contributing to response activities, improving detection capabilities, and maintaining clear technical documentation. You will stay informed about emerging threats, cloud-native security practices, and relevant regulatory or industry requirements, translating these into effective controls and guidance for technical teams.
The successful candidate will have professional experience in cloud security, cybersecurity engineering, or a related discipline, with hands-on knowledge of at least one major cloud platform. Familiarity with identity services, network security, container and serverless security, vulnerability management, SIEM or security monitoring tools, and DevSecOps practices is expected. Experience with scripting or programming, infrastructure-as-code, and automated security testing will be highly valued. Relevant certifications are advantageous, but practical expertise and a strong problem-solving mindset are equally important. You should be able to communicate complex security concepts clearly, collaborate effectively with both technical and non-technical stakeholders, and work proactively in a fast-paced environment.
Read lessYork, England, United KingdomPermanent
We are seeking a skilled Network Security Engineer to design, implement and maintain secure, resilient network infrastructure across... Read more
We are seeking a skilled Network Security Engineer to design, implement and maintain secure, resilient network infrastructure across a complex technology environment. You will be responsible for protecting systems, applications and data from evolving cyber threats while supporting the availability and performance of critical services. This role will work closely with infrastructure, cloud, development and operations teams to embed security into network architecture and day-to-day delivery.
Key responsibilities include configuring and managing firewalls, intrusion prevention systems, secure gateways, VPNs, network access controls and security monitoring tools. You will investigate alerts and incidents, perform root-cause analysis, and coordinate appropriate containment, remediation and recovery activities. The role will also involve conducting vulnerability assessments, reviewing network designs, maintaining security rules and policies, and supporting audits and compliance requirements. You will contribute to threat modelling, security improvements, technical documentation and the development of repeatable operational procedures.
The successful candidate will have proven experience in network security engineering, with strong knowledge of TCP/IP, routing, switching, DNS, HTTP/S, segmentation and common network attack techniques. Practical experience with technologies such as next-generation firewalls, IDS/IPS, SIEM platforms, endpoint security, cloud networking and identity-based access controls is highly desirable. Relevant certifications or equivalent hands-on experience in networking and cyber security will be valued. You should be analytical, methodical and confident working through complex incidents, with the ability to communicate technical risks clearly to both technical and non-technical stakeholders. A proactive approach to continuous improvement, strong documentation skills and a commitment to secure-by-design principles are essential.
Read lessYork, England, United KingdomPermanent
We are seeking a Cyber Threat Intelligence Lead to develop and enhance an organisation-wide capability for identifying, assessing... Read more
We are seeking a Cyber Threat Intelligence Lead to develop and enhance an organisation-wide capability for identifying, assessing and responding to evolving cyber threats. You will lead the collection, analysis and dissemination of intelligence from open-source, commercial, technical and internal sources, translating complex information into clear, actionable insights for security operations, technology teams and senior stakeholders. The role will help shape intelligence priorities, improve threat visibility and support informed decisions across the wider cyber security function.
Key responsibilities include overseeing strategic, operational and tactical threat intelligence activities; maintaining threat actor, campaign, vulnerability and sector-focused assessments; and producing concise reports, briefings and alerts tailored to different audiences. You will coordinate intelligence-led threat hunting and detection engineering, support incident response investigations, and identify opportunities to strengthen monitoring and defensive controls. The role will also involve developing intelligence requirements, managing relevant platforms and data sources, contributing to threat modelling and risk assessments, and building effective relationships with internal teams, external partners and trusted industry communities.
Applicants should have substantial experience in cyber threat intelligence, security operations, incident response or a closely related discipline, with a strong understanding of threat actor behaviours, attack techniques and frameworks such as MITRE ATT&CK. You will be comfortable analysing technical and non-technical information, validating sources and communicating findings with clarity and confidence. Experience leading projects or specialist teams, influencing senior decision-makers and improving intelligence processes is highly desirable. Relevant professional certifications or equivalent practical experience are welcome. You should demonstrate sound judgement, curiosity, strong written and verbal communication skills, and the ability to prioritise effectively in a changing threat environment.
Read lessYork, England, United KingdomPermanent
We are seeking a Security Analyst to support the protection of information systems, networks, applications and data across... Read more
We are seeking a Security Analyst to support the protection of information systems, networks, applications and data across a complex technology environment. The successful candidate will monitor security events, investigate alerts and potential incidents, and help identify, contain and remediate threats. You will work closely with technology, infrastructure and business teams to strengthen security controls, reduce risk and maintain a clear understanding of the organisation’s threat landscape.
Key responsibilities include analysing logs and alerts from security monitoring tools, conducting initial incident triage, documenting findings and escalating confirmed or significant events. You will assist with vulnerability assessments, remediation tracking, access reviews, security investigations and the development of incident response procedures. The role will also involve supporting security awareness initiatives, contributing to risk assessments, maintaining accurate records and producing clear reports for technical and non-technical stakeholders. You may participate in security testing, audit preparation, policy reviews and continuous improvements to monitoring and detection capabilities.
Applicants should have experience in a security operations, cyber security, IT risk or related analytical role, together with a practical understanding of common cyber threats, attack techniques and defensive controls. Familiarity with SIEM platforms, endpoint detection tools, vulnerability scanners, identity and access management, networking concepts and cloud environments is desirable. Relevant qualifications or certifications in cyber security, information technology or a related discipline will be advantageous. You should be analytical, organised and confident investigating complex issues, with strong written and verbal communication skills. The ability to prioritise competing demands, work collaboratively, handle sensitive information appropriately and maintain a commitment to continuous learning is essential.
Read lessYork, England, United KingdomPermanent
We are seeking a skilled Penetration Tester to assess the security of applications, infrastructure, networks, cloud environments and... Read more
We are seeking a skilled Penetration Tester to assess the security of applications, infrastructure, networks, cloud environments and connected devices. You will plan and conduct authorised penetration tests, vulnerability assessments and red-team activities, using a combination of manual techniques and industry-standard tools. Your work will include identifying vulnerabilities, validating their exploitability, assessing potential business impact and documenting clear, evidence-based findings. You will work across a varied technology landscape and help stakeholders understand security risks in practical, actionable terms.
Key responsibilities include defining test scopes and rules of engagement, performing reconnaissance and exploitation activities, reviewing source code and configurations where appropriate, and maintaining accurate testing records. You will prepare high-quality technical reports that explain vulnerabilities, affected assets, reproduction steps, risk ratings and remediation recommendations. You will also present findings to technical and non-technical audiences, support retesting activities, contribute to threat modelling and security reviews, and help improve testing methodologies, tooling and internal security standards. The role may involve collaboration with engineering, infrastructure, development and risk teams, as well as occasional participation in incident response or security improvement initiatives.
Applicants should have demonstrable experience in penetration testing, ethical hacking or an equivalent cybersecurity role, with a strong understanding of network, web application, API, cloud and operating system security. Proficiency with tools such as Burp Suite, Nmap, Metasploit, Wireshark and relevant scripting languages is expected, along with the ability to develop or adapt scripts and tooling when required. Industry-recognised certifications such as CREST, OSCP, OSWE, GPEN or equivalent qualifications are desirable. Strong communication, analytical and report-writing skills are essential, as is a professional approach to confidentiality, authorisation and responsible disclosure. The successful candidate will be curious, methodical, willing to learn and able to manage multiple engagements while delivering accurate results to agreed deadlines.
Read lessYork, England, United KingdomPermanent
We are seeking an experienced and strategic leader for the role of VP for IT Operations & Security,... Read more
We are seeking an experienced and strategic leader for the role of VP for IT Operations & Security, North America. This pivotal position will focus on overseeing the organization’s IT operations, ensuring the security of all systems and data within the region. The successful candidate will be responsible for developing and implementing robust IT strategies that align with business objectives, while also leading a team of IT professionals to enhance operational efficiency. Additionally, you will be tasked with managing vendor relationships, optimizing IT budgets, and ensuring compliance with industry regulations and security standards.
The ideal candidate will possess a proven track record in IT operations management and security. A minimum of 10 years of progressive experience in IT leadership roles is required, with a strong emphasis on security protocols and risk management. You should have in-depth knowledge of IT infrastructure, cloud computing, and cybersecurity practices. Exceptional communication skills are essential as you will collaborate with cross-functional teams and present IT initiatives to executive leadership. A relevant degree in Computer Science, Information Technology, or a related field is required, along with advanced certifications in IT security and operations.
Read lessYork, England, United KingdomPermanent
We are seeking an experienced Information Security Lead to join our dynamic team in Dublin, London, or New... Read more
We are seeking an experienced Information Security Lead to join our dynamic team in Dublin, London, or New York City. In this pivotal role, you will be responsible for developing and implementing robust information security strategies to safeguard our organization’s data and systems. You will lead a team of security professionals, ensuring compliance with industry regulations and best practices. Your expertise will be essential in identifying potential vulnerabilities and mitigating risks through proactive measures. You will also collaborate with various departments to cultivate a security-first culture and provide training on security awareness and best practices.
Key responsibilities include conducting thorough risk assessments, managing security incidents, and overseeing the implementation of security controls across the organization. You will be tasked with staying abreast of the latest security trends and technologies, ensuring that our security posture remains competitive and effective. Additionally, you will communicate security policies and procedures to stakeholders at all levels, preparing detailed reports for senior management to inform decision-making. The ideal candidate will possess a strong background in information security, excellent leadership skills, and the ability to adapt to an ever-evolving threat landscape.
Read lessYork, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria