> Markdown version of [/jobs/ext/1925010-senior-information-assurance-engineer](https://www.wearedevelopers.com/jobs/ext/1925010-senior-information-assurance-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Assurance Engineer - **Company:** Leidos, Inc. - **Location:** Brampton, UK (Remote available) - **Experience:** Expert - **Salary:** £67,264.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Software System Penetration Testing, Cyber Security, Identity and Access Management, Intrusion Detection Systems, Key Management, Network Security, Lightweight Directory Access Protocols (LDAP), Public Key Infrastructure, Security Assertion Markup Language (SAML), Security Information and Event Management, Tripwire, Software Vulnerability Management, In-Plane Switching (IPS), Nessus, Vulnerability Analysis - **Published:** August 5, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5829129049 ## About the Role * Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments. * Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks, with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. * Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. * Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing demands, and drive continuous improvement across security processes, methodologies, and tooling., * Experience working within MOD, Home Office, National Security, or other Government environments. * Experience leading the implementation of security, assurance, or risk management changes across complex operational or project environments. * Relevant security qualifications (e.g. CISM, CISSP, CRISC) or equivalent demonstrable experience. Technology Skills * Strong understanding of enterprise security architectures and controls, including network security, secure boundaries, endpoint protection, IDS/IPS, SIEM, identity and access management, PKI, LDAP, Active Directory, SAML, encryption, and key management. * Experience interpreting outputs from vulnerability assessments, penetration testing, IT Health Checks (ITHCs), and security monitoring activities to support remediation planning and risk-based prioritisation. * Ability to assess technical security controls and architectures, providing assurance that solutions meet security, compliance, and business requirements. Communication and Soft Skills * Excellent written and verbal communication skills, with the ability to adapt messaging for technical teams, customers, senior leaders, and executive stakeholders. * Strong stakeholder engagement, influencing, and relationship management skills, with the confidence to provide clear risk-based advice and challenge where required. * Proven leadership, prioritisation, and organisational skills, with the ability to lead initiatives, manage competing demands, mentor others, and support informed decision-making. * Strong commercial awareness, with an understanding of programme delivery, customer priorities, business objectives, and effective security risk management. Are you ready to make an impact? Begin your journey of a flourishing and meaningful career, share your CV with us today! ## Description We are seeking an experienced Senior Information Assurance Engineer to join our growing Cyber Security team, supporting customer programmes across the Defence, Intelligence, Logistics, and National Security sectors within the UK. This is an opportunity to lead practical, proportionate security assurance across complex UK programmes, helping customers manage risk while enabling successful delivery. As a Senior Information Assurance Engineer, you will shape assurance strategy, support risk-based decision making, and work closely with customers, suppliers, and multidisciplinary delivery teams to embed security throughout the project lifecycle. You will also drive the continued maturity of our security assurance capability, including NIST-aligned risk assessment methods, assurance processes, tooling, and reporting that improve consistency and visibility across programmes. You will be part of a wider UK cyber community, working alongside Information Assurance, Security Architecture, Security Engineering, and Security Monitoring specialists to deliver security by design and continually raise cyber security standards. Eligibility, Clearance & Location Requirements * DV clearance required. * Applicants must be sole British nationals due to customer and programme restrictions. * Huntingdon, Cambridgeshire - minimum 4 days per week onsite (alternative arrangements by exception and subject to agreement with the Cyber Security Lead). * Willingness to undertake occasional travel across the UK, including London and customer sites, as required., * Lead Information Assurance across the system lifecycle, ensuring security requirements are understood, implemented, assured, and maintained. * Conduct risk assessments and assurance activities using recognised frameworks including NIST RMF, NIST CSF, and ISO 27001. * Develop, review, and maintain assurance artefacts including SyOPs, RMADs, Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation. * Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes. * Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs). * Manage vulnerability, risk, audit, control assessment, and compliance activities, ensuring findings are prioritised and driven through to resolution. * Engage customers, suppliers, and senior stakeholders with clear risk advice, assurance reporting, and evidence-based recommendations. * Provide leadership, mentoring, and guidance to assurance practitioners and wider project teams. ## Related Videos - [Hacking Kubernetes: Live Demo Marathon](https://www.wearedevelopers.com/videos/488-hacking-kubernetes-live-demo-marathon) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)