Senior Information Assurance Engineer

Leidos, Inc.
Huntingdon, UK
4 days ago
Apply on www.adzuna.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£75,000.0
Working hours
Regular working hours

Tech stack

Active Directory Artificial Intelligence Software System Penetration Testing Identity and Access Management Intrusion Detection Systems Key Management Network Security Lightweight Directory Access Protocols (LDAP) Machine Learning Public Key Infrastructure Security Assertion Markup Language (SAML) Security Information and Event Management
+5 more
Tripwire Software Vulnerability Management In-Plane Switching (IPS) Nessus Vulnerability Analysis

Job description

  • Lead Information Assurance across the system lifecycle, ensuring security requirements are understood, implemented, assured, and maintained.
  • Conduct risk assessments and assurance activities using recognised frameworks including NIST RMF, NIST CSF, and ISO 27001.
  • Develop, review, and maintain assurance artefacts including SyOPs, RMADs, Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation.
  • Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes.
  • Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs).
  • Manage vulnerability, risk, audit, control assessment, and compliance activities, ensuring findings are prioritised and driven through to resolution.
  • Engage customers, suppliers, and senior stakeholders with clear risk advice, assurance reporting, and evidence-based recommendations.
  • Provide leadership, mentoring, and guidance to assurance practitioners and wider project teams.

Technologies:

  • Active Directory
  • Support
  • LDAP
  • Network
  • SAML
  • Security
  • AI
  • Machine Learning

Requirements

  • Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments.
  • Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks, with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence.
  • Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms.
  • Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing demands, and drive continuous improvement across security processes, methodologies, and tooling.
  • DV clearance required.
  • Applicants must be sole British nationals due to customer and programme restrictions.
  • Willingness to undertake occasional travel across the UK, including London and customer sites, as required.
  • Experience working within MOD, Home Office, National Security, or other Government environments.
  • Experience leading the implementation of security, assurance, or risk management changes across complex operational or project environments.
  • Relevant security qualifications (e.g. CISM, CISSP, CRISC) or equivalent demonstrable experience.
  • Strong understanding of enterprise security architectures and controls, including network security, secure boundaries, endpoint protection, IDS/IPS, SIEM, identity and access management, PKI, LDAP, Active Directory, SAML, encryption, and key management.
  • Experience interpreting outputs from vulnerability assessments, penetration testing, IT Health Checks (ITHCs), and security monitoring activities to support remediation planning and risk-based prioritisation.
  • Ability to assess technical security controls and architectures, providing assurance that solutions meet security, compliance, and business requirements.
  • Excellent written and verbal communication skills, with the ability to adapt messaging for technical teams, customers, senior leaders, and executive stakeholders.
  • Strong stakeholder engagement, influencing, and relationship management skills, with the confidence to provide clear risk-based advice and challenge where required.
  • Proven leadership, prioritisation, and organisational skills, with the ability to lead initiatives, manage competing demands, mentor others, and support informed decision-making.
  • Strong commercial awareness, with an understanding of programme delivery, customer priorities, business objectives, and effective security risk management.

About the company

We are Leidos UK & Europe, working to make the world safer, healthier, and more efficient through technology, engineering, and science. We are growing our Cyber Security team and supporting customer programmes across Defence, Intelligence, Logistics, and National Security sectors within the UK. This role is based in Huntingdon, Cambridgeshire, with a minimum of 4 days per week onsite and occasional travel across the UK as required. We offer a collaborative culture, meaningful careers, flexible working, and a reward package including a contributory pension scheme, private medical insurance, 33 days annual leave, flexible benefits, and flexi-time. We are committed to diversity, inclusion, and supporting career growth through technical academies, career rotations, and development plans.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:41 min

Protecting etcd databases using Key Management System plugins

Alex Soto Alex Soto · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:03 min

Balancing robust code verification with user liability paradigms

John Woods John Woods · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:52 min

Row and cell level database encryption tradeoffs

Chris Nesbitt-Smith · LIVE

Videos

See all

Related articles

See all