Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer

Leidos

Brampton

On-site

GBP 62,000 - 79,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave
Flexible benefits
Flexi-Time

Job summary

Leidos UK in Huntingdon seeks a Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer to join our growing Cyber Security team. You will lead information assurance across UK programmes, shaping risk-based security strategies and embedding security throughout the project lifecycle.

DV clearance is required, and the role is onsite in Huntingdon with occasional UK travel. You will work with customers, suppliers, and delivery teams to raise cyber security standards and ensure compliance

Qualifications

  • Proven experience delivering information assurance, risk management and security assurance in regulated environments.
  • Strong knowledge of NIST RMF/CSF, ISO 27001 and government security frameworks; able to produce assurance artefacts.
  • Experience leading assurance initiatives, audits, control assessments and vulnerability management using Nessus/Trivy/Tenable.
  • Ability to brief senior stakeholders, mentor assurance practitioners and drive continuous improvement of security processes.

Responsibilities

  • Lead Information Assurance across the system lifecycle, ensuring requirements are understood and maintained.
  • Conduct risk assessments using recognised frameworks (NIST RMF/CSF, ISO 27001).
  • Develop, review and maintain assurance artefacts (SyOPs, RMADs, Security Impact Assessments).
  • Drive maturity of assurance processes, tooling, reporting and governance across programmes.
  • Lead incident response capability development, including playbooks and exercises.
  • Manage vulnerability, risk, audit and compliance activities to resolution.
  • Engage customers and suppliers with clear risk-based advice and reporting.
  • Provide leadership and guidance to assurance practitioners and project teams.

Skills

NIST RMF/CSF
ISO 27001
Risk Management
Security Assurance
Stakeholder Briefing
Mentoring
Security Governance

Tools

Nessus
Trivy
Tenable

Job description

Description
Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer
LOCATION - HUNTINGDON, UK
CLEARANCE - HIGH - DV
UNLEASH YOUR POTENTIAL

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success.

We empower our teams in the UK to address some of the most complex problems in defence, government, safety and security, and transportation. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Are you ready for your next career challenge?

We are seeking an experienced Senior Cyber Security Governance, Risk & Compliance (GRC) Engineer to join our growing Cyber Security team, supporting customer programmes across the Defence, Intelligence, Logistics, and National Security sectors within the UK.

This is an opportunity to lead practical, proportionate security assurance across complex UK programmes, helping customers manage risk while enabling successful delivery.

You will shape assurance strategy, support risk-based decision making, and work closely with customers, suppliers, and multidisciplinary delivery teams to embed security throughout the project lifecycle.

You will also drive the continued maturity of our security assurance capability, including NIST-aligned risk assessment methods, assurance processes, tooling, and reporting that improve consistency and visibility across programmes.

You will be part of a wider UK cyber community, working alongside Information Assurance, Security Architecture, Security Engineering, and Security Monitoring specialists to deliver security by design and continually raise cyber security standards.

Eligibility, Clearance & Location Requirements
  • DV clearance required.
  • Applicants must be sole British nationals due to customer and programme restrictions.
  • Huntingdon, Cambridgeshire - minimum 4 days per week onsite (alternative arrangements by exception and subject to agreement with the Cyber Security Lead).
  • Willingness to undertake occasional travel across the UK, including London and customer sites, as required.
Essential Skills and Experience
  • Proven experience delivering Information Assurance, risk management, and security assurance within Defence, Government, Intelligence, or other highly regulated environments.
  • Strong understanding of NIST RMF/CSF, ISO 27001, and Government security frameworks, with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence.
  • Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms.
  • Ability to brief and influence senior stakeholders, mentor assurance practitioners, prioritise competing demands, and drive continuous improvement across security processes, methodologies, and tooling.
Your Role and Responsibilities
  • Lead Information Assurance across the system lifecycle, ensuring security requirements are understood, implemented, assured, and maintained.
  • Conduct risk assessments and assurance activities using recognised frameworks including NIST RMF, NIST CSF, and ISO 27001.
  • Develop, review, and maintain assurance artefacts including SyOPs, RMADs, Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation.
  • Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes.
  • Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs).
  • Manage vulnerability, risk, audit, control assessment, and compliance activities, ensuring findings are prioritised and driven through to resolution.
  • Engage customers, suppliers, and senior stakeholders with clear risk advice, assurance reporting, and evidence-based recommendations.
  • Provide leadership, mentoring, and guidance to assurance practitioners and wider project teams.
Favourable If You Have
  • Experience working within MOD, Home Office, National Security, or other Government environments.
  • Experience leading the implementation of security, assurance, or risk management changes across complex operational or project environments.
  • Relevant security qualifications (e.g. CISM, CISSP, CRISC) or equivalent demonstrable experience.
Technology Skills
  • Strong understanding of enterprise security architectures and controls, including network security, secure boundaries, endpoint protection, IDS/IPS, SIEM, identity and access management, PKI, LDAP, Active Directory, SAML, encryption, and key management.
  • Experience interpreting outputs from vulnerability assessments, penetration testing, IT Health Checks (ITHCs), and security monitoring activities to support remediation planning and risk-based prioritisation.
  • Ability to assess technical security controls and architectures, providing assurance that solutions meet security, compliance, and business requirements.
Communication and Soft Skills
  • Excellent written and verbal communication skills, with the ability to adapt messaging for technical teams, customers, senior leaders, and executive stakeholders.
  • Strong stakeholder engagement, influencing, and relationship management skills, with the confidence to provide clear risk-based advice and challenge where required.
  • Proven leadership, prioritisation, and organisational skills, with the ability to lead initiatives, manage competing demands, mentor others, and support informed decision-making.
  • Strong commercial awareness, with an understanding of programme delivery, customer priorities, business objectives, and effective security risk management.
What we do for you:

At Leidos we are PASSIONATE about customer success, UNITED as a team and INSPIRED to make a difference. We offer meaningful and engaging careers, a collaborative culture, and support for your career goals, all while nurturing a healthy work-life balance.

We provide an employment package that attracts, develops and retains only the best in talent.

Our reward scheme includes:
  • Contributory Pension Scheme
  • Private Medical Insurance
  • 33 days Annual Leave (including public and privilege holidays)
  • Access to Flexible benefits (including life assurance, health schemes, gym memberships, annual buy and sell holidays and a cycle to work scheme)
  • Flexi-TIme
Commitment to Diversity:

We welcome applications from every part of the community and are committed to a truly diverse and inclusive culture. We foster a sense of belonging, welcoming all perspectives and contributions, and providing equal access to opportunities and resources for everyone. If you have a disability or need any reasonable adjustments during the application and selection stages please let us know, and we will respond in a way that best fits your needs.

Who We Are:

Leidos UK & EUROPE – we work to make the world safer, healthier, and more efficient through technology, engineering and science.

Leidos is a growing company delivering innovative technology and solutions focused on safeguarding critical capabilities and transformation in frontline services, our work in the United Kingdom includes addressing some of the most complex problems in defence, healthcare, government, safety and security, and transportation.

What Makes Us Different:

Purpose: you can use your passion and abilities at Leidos to keep the people you care about safe. We are at the forefront of machine learning, AI, cyber security and solutions. Using your skill in the technology frontline by helping to build a safer world. You can inspire change.

Collaboration: having flexibility to do your job is one of our core benefits, enabling you to become part of our extraordinary team. We have been empowering our people to work flexibly for years. Whether you work from home, the office or on customer sites, we will give you the digital tools and the flexibility to work smarter and align your needs and ours.

People: Leidos empowers people from every background to be themselves and gives you the tools to learn new skills by enabling growth whilst developing. We believe that extraordinary people need opportunities to grow, to be inspired and to inspire others. At Leidos, we invest in technical academies, career rotations and a career development plans that enhance your future.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 — and moving faster than anyone else dares.

Pay Range:

£61,500.00-£78,800.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SENIOR INFORMATION ASSURANCE ENGINEER
SENIOR INFORMATION ASSURANCE ENGINEER

Leidos Innovations UK Limited • Carrville

On-site
GBP 70,000 - 100,000
Contributory Pension Scheme
Private Medical Insurance
33 days annual leave
+1
Senior Information Assurance Engineer Leidos
Senior Information Assurance Engineer Leidos

Womenempoweringdefence • United Kingdom

Remote
GBP 70,000 - 90,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave
+2
SENIOR INFORMATION ASSURANCE ENGINEER
SENIOR INFORMATION ASSURANCE ENGINEER

Leidos Innovations UK Limited • Cambridge

On-site
GBP 70,000 - 110,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave
+2
Cyber Security Engineer
Cyber Security Engineer

Leidos • Farnborough

On-site
GBP 48,000 - 61,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave (including public
+1
Solution Architect Leidos
Solution Architect Leidos

Womenempoweringdefence • United Kingdom

Remote
GBP 62,000 - 79,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave
+2
Senior Systems Engineer
Senior Systems Engineer

Leidos • Winchester

On-site
GBP 62,000 - 79,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave
+2
Senior 3rd Line Infrastructure Engineer
Senior 3rd Line Infrastructure Engineer

Leidos • Huntingdon

On-site
GBP 62,000 - 79,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave (including public
+2
AWS Devops Engineer
AWS Devops Engineer

Leidos • West of England

On-site
GBP 37,000 - 46,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave
+2
Systems Engineer
Systems Engineer

Leidos • Ham

Hybrid
GBP 48,000 - 61,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave including public/
+2
Solution Architect
Solution Architect

COMFORT SYSTEMS • Greater London

On-site
GBP 76,000 - 100,000
Contributory Pension Scheme
Private Medical Insurance
33 days Annual Leave (including public
+2