CareerAddict

Information Security Engineer

CV-Library

Posted on Jul 22, 2026 by CV-Library
How End, Bedfordshire, United Kingdom
Military
Immediate Start
£54k - £67k Annual
Full-Time
Information Security Engineer

Ampthill, Bedfordshire, UK

£(phone number removed) p/a with BUPA, bonus, 4 day work week

Reporting to the EMEA Information Security Officer, the Information Security Engineer will be responsible for the security engineering, accreditation, and lifecycle assurance of classified and sensitive IT systems. The role will support the design, implementation, operation, and continuous improvement of secure IT environments, ensuring compliance with UK Government, MoD, and Lockheed Martin security requirements.

The successful candidate will work closely with programme teams, architects, infrastructure engineers, accrediting authorities, and information assurance stakeholders to ensure security is embedded throughout the system lifecycle.

Key Responsibilities:

Lead the implementation of Secure by Design principles across classified IT systems and projects
Provide security engineering expertise throughout the system development and operational lifecycle, ensuring security requirements are identified and implemented from concept through disposal.
Conduct security architecture reviews, threat assessments, and technical risk analysis for classified environments.
Support the development and maintenance of system security documentation, security architectures, and security operating procedures.
Lead and coordinate system accreditation activities for classified and sensitive systems.
Develop and maintain accreditation artefacts including Risk Management and Accreditation Documentation Sets (RMADS), Security Cases, Security Management Plans, and supporting evidence.
Work with Accreditors, Security Controllers, and customer security representatives to obtain and maintain Authority to Operate (ATO) approvals.
Ensure continued compliance with applicable regulatory, contractual, and customer security requirements throughout system operation.
Identify, assess, and mitigate cybersecurity risks within classified IT environments.
Conduct security assessments, vulnerability reviews, and compliance audits against corporate and government security standards.
Support risk treatment planning and remediation activities.
Ensure alignment with NCSC, MoD, JSP, NIST, and Lockheed Martin security policies and standards where applicable.
Support incident response investigations affecting classified systems.
Assist with vulnerability management, patch management, and security monitoring activities.
Participate in security reviews and technical investigations to identify root causes and corrective actions.
Provide technical guidance to system administrators and engineering teams on security controls and best practices.
Collaborate with programme managers, solution architects, IT teams, information assurance practitioners, and customer representatives.
Provide security guidance to project teams during system design, implementation, and operational support phases.
Support customer and regulatory audits and inspections.
Required skills, qualifications and experience

Strong understanding of Microsoft Windows Server, Linux operating systems, virtualisation technologies, and enterprise networking.
Experience securing classified, air-gapped, or highly regulated IT environments.
Knowledge of cloud security principles including AWS, IaaS, and PaaS technologies where applicable.
Familiarity with security technologies including endpoint protection, SIEM, vulnerability management, encryption, and identity management solutions
Demonstrable experience applying Secure by Design principles in complex IT systems and programmes.
Experience conducting security architecture reviews, threat modelling, and risk assessments.
Strong understanding of system hardening, security controls implementation, and security testing methodologies.
Experience supporting system engineering and security requirements management within regulated environments.
Accreditation & ATO Experience

Proven experience developing accreditation evidence and security assurance documentation.
Experience obtaining and maintaining Authority to Operate (ATO) approvals for classified or regulated systems.
Knowledge of UK Government and MoD accreditation processes and assurance frameworks.
Experience working directly with accrediting authorities, security controllers, or customer assurance organisations.
Excellent written and verbal communication skills.
Ability to communicate technical security concepts to both technical and non-technical stakeholders.
Strong analytical and problem-solving skills.
Ability to work independently while supporting multiple programmes and stakeholders.
CISSP, CISM, or equivalent Information Assurance certification.
Degree in Cyber Security, Information Security, Computer Science, Engineering, or a related discipline.
Experience within Defence, Aerospace, Government, or National Security sectors.

Disclaimer:

This vacancy is being advertised by Optamor Limited. Optamor is a specialist Recruitment Process Outsourcing provider. We provide a flexible full recruitment solution which takes care of all recruitment requirements from planning to on-boarding. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission

Reference: 225403092

https://jobs.careeraddict.com/post/113594867
CV-Library

Information Security Engineer

CV-Library

Posted on Jul 22, 2026 by CV-Library

Print
How End, Bedfordshire, United Kingdom
Military
Immediate Start
£54k - £67k Annual
Full-Time
Information Security Engineer

Ampthill, Bedfordshire, UK

£(phone number removed) p/a with BUPA, bonus, 4 day work week

Reporting to the EMEA Information Security Officer, the Information Security Engineer will be responsible for the security engineering, accreditation, and lifecycle assurance of classified and sensitive IT systems. The role will support the design, implementation, operation, and continuous improvement of secure IT environments, ensuring compliance with UK Government, MoD, and Lockheed Martin security requirements.

The successful candidate will work closely with programme teams, architects, infrastructure engineers, accrediting authorities, and information assurance stakeholders to ensure security is embedded throughout the system lifecycle.

Key Responsibilities:

Lead the implementation of Secure by Design principles across classified IT systems and projects
Provide security engineering expertise throughout the system development and operational lifecycle, ensuring security requirements are identified and implemented from concept through disposal.
Conduct security architecture reviews, threat assessments, and technical risk analysis for classified environments.
Support the development and maintenance of system security documentation, security architectures, and security operating procedures.
Lead and coordinate system accreditation activities for classified and sensitive systems.
Develop and maintain accreditation artefacts including Risk Management and Accreditation Documentation Sets (RMADS), Security Cases, Security Management Plans, and supporting evidence.
Work with Accreditors, Security Controllers, and customer security representatives to obtain and maintain Authority to Operate (ATO) approvals.
Ensure continued compliance with applicable regulatory, contractual, and customer security requirements throughout system operation.
Identify, assess, and mitigate cybersecurity risks within classified IT environments.
Conduct security assessments, vulnerability reviews, and compliance audits against corporate and government security standards.
Support risk treatment planning and remediation activities.
Ensure alignment with NCSC, MoD, JSP, NIST, and Lockheed Martin security policies and standards where applicable.
Support incident response investigations affecting classified systems.
Assist with vulnerability management, patch management, and security monitoring activities.
Participate in security reviews and technical investigations to identify root causes and corrective actions.
Provide technical guidance to system administrators and engineering teams on security controls and best practices.
Collaborate with programme managers, solution architects, IT teams, information assurance practitioners, and customer representatives.
Provide security guidance to project teams during system design, implementation, and operational support phases.
Support customer and regulatory audits and inspections.
Required skills, qualifications and experience

Strong understanding of Microsoft Windows Server, Linux operating systems, virtualisation technologies, and enterprise networking.
Experience securing classified, air-gapped, or highly regulated IT environments.
Knowledge of cloud security principles including AWS, IaaS, and PaaS technologies where applicable.
Familiarity with security technologies including endpoint protection, SIEM, vulnerability management, encryption, and identity management solutions
Demonstrable experience applying Secure by Design principles in complex IT systems and programmes.
Experience conducting security architecture reviews, threat modelling, and risk assessments.
Strong understanding of system hardening, security controls implementation, and security testing methodologies.
Experience supporting system engineering and security requirements management within regulated environments.
Accreditation & ATO Experience

Proven experience developing accreditation evidence and security assurance documentation.
Experience obtaining and maintaining Authority to Operate (ATO) approvals for classified or regulated systems.
Knowledge of UK Government and MoD accreditation processes and assurance frameworks.
Experience working directly with accrediting authorities, security controllers, or customer assurance organisations.
Excellent written and verbal communication skills.
Ability to communicate technical security concepts to both technical and non-technical stakeholders.
Strong analytical and problem-solving skills.
Ability to work independently while supporting multiple programmes and stakeholders.
CISSP, CISM, or equivalent Information Assurance certification.
Degree in Cyber Security, Information Security, Computer Science, Engineering, or a related discipline.
Experience within Defence, Aerospace, Government, or National Security sectors.

Disclaimer:

This vacancy is being advertised by Optamor Limited. Optamor is a specialist Recruitment Process Outsourcing provider. We provide a flexible full recruitment solution which takes care of all recruitment requirements from planning to on-boarding. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission
Print

Reference: 225403092

Share this job:
CareerAddict

Alert me to jobs like this:

Amplify your job search:

CV/résumé help

Increase interview chances with our downloads and specialist services.

CV Help

Expert career advice

Increase interview chances with our downloads and specialist services.

Visit Blog

Job compatibility

Increase interview chances with our downloads and specialist services.

Start Test

Similar Jobs

Manufacturing Engineer

How End, Bedfordshire, United Kingdom

Facilities Engineer

How End, Bedfordshire, United Kingdom

Cmm Inspector

How End, Bedfordshire, United Kingdom

Quality Assurance Engineer

How End, Bedfordshire, United Kingdom