> Markdown version of [/jobs/ext/3021540-senior-information-assurance-engineer](https://www.wearedevelopers.com/jobs/ext/3021540-senior-information-assurance-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Assurance Engineer - **Company:** Leidos, Inc. - **Location:** Huntingdon, UK - **Experience:** Expert - **Salary:** £75,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Artificial Intelligence, Software System Penetration Testing, Identity and Access Management, Intrusion Detection Systems, Key Management, Network Security, Lightweight Directory Access Protocols (LDAP), Machine Learning, Public Key Infrastructure, Security Assertion Markup Language (SAML), Security Information and Event Management, Tripwire, Software Vulnerability Management, In-Plane Switching (IPS), Nessus, Vulnerability Analysis - **Published:** September 21, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5890526311 ## About the Role * Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments. * Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks, with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. * Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. * Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing demands, and drive continuous improvement across security processes, methodologies, and tooling. * DV clearance required. * Applicants must be sole British nationals due to customer and programme restrictions. * Willingness to undertake occasional travel across the UK, including London and customer sites, as required. * Experience working within MOD, Home Office, National Security, or other Government environments. * Experience leading the implementation of security, assurance, or risk management changes across complex operational or project environments. * Relevant security qualifications (e.g. CISM, CISSP, CRISC) or equivalent demonstrable experience. * Strong understanding of enterprise security architectures and controls, including network security, secure boundaries, endpoint protection, IDS/IPS, SIEM, identity and access management, PKI, LDAP, Active Directory, SAML, encryption, and key management. * Experience interpreting outputs from vulnerability assessments, penetration testing, IT Health Checks (ITHCs), and security monitoring activities to support remediation planning and risk-based prioritisation. * Ability to assess technical security controls and architectures, providing assurance that solutions meet security, compliance, and business requirements. * Excellent written and verbal communication skills, with the ability to adapt messaging for technical teams, customers, senior leaders, and executive stakeholders. * Strong stakeholder engagement, influencing, and relationship management skills, with the confidence to provide clear risk-based advice and challenge where required. * Proven leadership, prioritisation, and organisational skills, with the ability to lead initiatives, manage competing demands, mentor others, and support informed decision-making. * Strong commercial awareness, with an understanding of programme delivery, customer priorities, business objectives, and effective security risk management. ## Description * Lead Information Assurance across the system lifecycle, ensuring security requirements are understood, implemented, assured, and maintained. * Conduct risk assessments and assurance activities using recognised frameworks including NIST RMF, NIST CSF, and ISO 27001. * Develop, review, and maintain assurance artefacts including SyOPs, RMADs, Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation. * Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes. * Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs). * Manage vulnerability, risk, audit, control assessment, and compliance activities, ensuring findings are prioritised and driven through to resolution. * Engage customers, suppliers, and senior stakeholders with clear risk advice, assurance reporting, and evidence-based recommendations. * Provide leadership, mentoring, and guidance to assurance practitioners and wider project teams. Technologies: * Active Directory * Support * LDAP * Network * SAML * Security * AI * Machine Learning ## Related Videos - [Hacking Kubernetes: Live Demo Marathon](https://www.wearedevelopers.com/videos/488-hacking-kubernetes-live-demo-marathon) - [This Machine Ends Data Breaches](https://www.wearedevelopers.com/videos/574-this-machine-ends-data-breaches) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) - [Pragmatic Blockchain Design Patterns: Integrating Blockchain into Business Processes](https://www.wearedevelopers.com/videos/1579-pragmatic-blockchain-design-patterns-integrating-blockchain-into-business-processes) - [Going Beyond Passwords: The Future of User Authentication](https://www.wearedevelopers.com/videos/714-going-beyond-passwords-the-future-of-user-authentication) ## Related Articles - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)