> Markdown version of [/jobs/ext/2241464-it-security-officer](https://www.wearedevelopers.com/jobs/ext/2241464-it-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Officer - **Company:** MLM SEARCH - **Location:** Greater London, UK - **Contract:** Permanent contract - **Skills:** Cyber Security, Network Security, Software Vulnerability Management, Vulnerability Analysis - **Published:** August 26, 2026 - **Apply:** https://www.collegerecruiter.com/job/2815095450-it-security-officer ## About the Role You're a cybersecurity professional who's moved beyond the basics. You understand how risk lives in an organisation - not just in the firewall, but in processes, people, and third-party relationships. You're as comfortable writing a risk treatment plan as you are with a vulnerability scanner. And you know how to communicate security to people who don't speak the language. Concretely, you'll bring: * A solid grounding in cybersecurity fundamentals - network security, vulnerability management, incident response, access controls * Experience assessing and treating IT risk, ideally within a regulated environment * Hands-on familiarity with security tooling (endpoint monitoring, vulnerability scanning - Tenable experience is a plus) * The ability to design and land security measures that actually stick * Strong enough communication skills to influence without authority * Recent and relevant experience in Financial services is a must ## Description We're looking for an IT Security Officer to take genuine first-line ownership of security across a UK-regulated business. You'll be the person who makes security real - not the team that writes the policies, but the one who implements them, tests them, and fixes what's broken. What makes this different You'll work across the full security lifecycle. One week you might be running a VAPT or interrogating vulnerability scan data; the next you're advising on a major project with IS implications or presenting risk findings to senior stakeholders. The breadth is genuine - and so is the accountability. You'll also have the backing of a well-resourced Group security function, which means established frameworks, a peer network, and Group-wide norms to work within - without being swallowed by a huge central IT machine. The local business is yours to protect. Who you are You're a cybersecurity professional who's moved beyond the basics. You understand how risk lives in an organisation - not just in the firewall, but in processes, people, and third-party relationships. You're as comfortable writing a risk treatment plan as you are with a vulnerability scanner. And you know how to communicate security to people who don't speak the language. Concretely, you'll bring: * A solid grounding in cybersecurity fundamentals - network security, vulnerability management, incident response, access controls * Experience assessing and treating IT risk, ideally within a regulated environment * Hands-on familiarity with security tooling (endpoint monitoring, vulnerability scanning - Tenable experience is a plus) * The ability to design and land security measures that actually stick * Strong enough communication skills to influence without authority * Recent and relevant experience in Financial services is a must The opportunity This is a role for someone who wants to build something, not just maintain it. The business is growing, the threat landscape is evolving, and there's real work to be done. If you want to help own a security function rather than feed into someone else\'s, this is worth a conversation. ## Related Videos - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london)