> Markdown version of [/jobs/ext/2216458-cyber-security-engineer-onsite-inside-ir35-architect-and-analyst](https://www.wearedevelopers.com/jobs/ext/2216458-cyber-security-engineer-onsite-inside-ir35-architect-and-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Engineer - Onsite - Inside IR35 - Architect and Analyst - **Company:** Resourcing Group Ltd - **Location:** Redhill, UK - **Salary:** £130,000.0 - £156,000.0 - **Contract:** Temporary contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Data Centers, Linux, Apache POI, Windows Servers, PCI Data Security Standards, PRINCE2, Cloud Services, Security Support Provider Interface, Smart Cards, Tripwire, Software Vulnerability Management, Google Cloud, Togaf, Information Technology, Splunk, Cisco, Qualys - **Published:** August 25, 2026 - **Apply:** https://www.careerboard.com/pt/en/find-jobs-in-United-Kingdom/-45F7D2E8F981AABF40/ ## About the Role Essential * Certification as an Information Security professional, for example: * IISP * CISA * CISM * CISSP * CCSP * ISA Desirable * University degree in a numerate subject such as Computer Science, Mathematics, Engineering or Natural Sciences. * Information privacy/data protection certifications such as CIPP/E and CIPM. * HMG IA qualifications/CLAS. * Crest-registered penetration tester and/or security architect. * ITIL v3, PRINCE2 Foundation and/or TOGAF. * Security, IT infrastructure or networking vendor certifications. Skills, Experience and Knowledge Essential * Strong experience taking a leading role in the establishment and implementation of security architecture, policies and procedures. * Good understanding of enterprise-scale security management processes and infrastructure. * Experience working with current IT security standards and regulations such as PCI-DSS, ISO 27001 and UK data protection legislation. * In-depth understanding of information security control tools, for example: * Splunk Cloud * CrowdStrike * Qualys * Trellix * Tripwire * Cisco IPS * F5 * Centrify Experience working with enterprise IT infrastructure and technologies such as Microsoft Windows Server, Cisco and Linux. Desirable * Experience within transactional revenue, Embedded systems, Smartcards and mobile payment systems. * Knowledge or experience of security architecture across major public cloud services such as: * Microsoft Azure * Amazon Web Services * Google Cloud * Cloud Access Security Brokers Knowledge of cryptographic services, products and HSM devices. Knowledge of wider security, audit, risk and compliance standards including: * PCI-P2PE * PCI-POI-PTS * ISO 27701 * ISO 27005 * ISO 31000 * NIST * GDPR * Governance, Risk and Compliance tools Experience with quality management systems and external audit standards such as ISO 9001. ## Description Supports the handover of existing security tools, including oversight and management of access control, technical management of security materials such as cryptographic keys, passwords and certificates, as well as additional security monitoring, vulnerability management, tool maintenance and configuration. The role will also provide knowledge transfer and training to the successor operator's security architecture staff. Essential Job Duties and Responsibilities * Ensure RCC Handover project objectives are supported by appropriate cybersecurity requirements. * Define, document and perform technical changes in security tooling to support RCC Handover. * Lead cybersecurity assurance within RCC Handover change boards and design gateways. * Ensure appropriate security support processes are followed by the RCC Handover team. * Ensure the customer and successor operator understand the technical impact of RCC Handover tasks. * Provide input into other cybersecurity, contingency planning and related RCC Handback activities. * Create and update technical documentation for security tools, processes and information assets as directed by the RCC Handover leadership team. * Assess RCC Handover change control requests for potential impact on existing security mechanisms and ensure any potential compromise or weakening of security controls is minimised. * Perform security monitoring and vulnerability management of information assets in scope of RCC Handover tasks, supporting existing business-as-usual teams. * Perform handover of security secret materials, including cryptographic keys and certificates, devices and access control credentials to the customer and/or successor operator. * Provide reporting to the RCC Handback leadership team. * May be required to work across customer, TfL, successor operator sites and data centres. * Comply with all relevant company policies and procedures, including standards relating to conduct, quality, security, occupational health, safety and environmental requirements. * Perform any other reasonable duties assigned by the manager from time to time. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london)