ORdigiNAL
Security Operations Engineer

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
About us
ORdigiNAL is a technology company operating worldwide, with our strongest presence across Europe. We deliver technology through an established partner network alongside our own applications, sold into markets where security isn't a checkbox; it's a condition of sale. Our SecOps function sits at the heart of that, and this role sits at the heart of SecOps.
The role
You'll join our SecOps function, reporting directly to the Global Technology & Services Director. The role is deliberately broad: at its day-to-day level you'll own operational security - handling security requests, access control reviews, and keeping our security posture tidy and evidenced. At its highest level you'll drive the certifications that let us sell our applications across Europe: ISO 27001 and the audits, evidence and assessments that surround it.
You'll have real ownership from day one, direct support from the director you report to, and the chance to shape our security programme as the business and product line grow.
What you'll do
Day to day
- Own the security request queue: access requests, permission changes, joiner/mover/leaver reviews, security questions from around the business
- Run periodic access control reviews across our systems and keep the evidence audit-ready
- Monitor, triage and escalate security events and keep our incident readiness current
- Carry out vendor risk assessments for new tools and suppliers
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Compliance and certification
- Drive ISO 27001 evidence collection and keep our ISMS living, not shelfware, including extending its scope to cover our software development
- Support DPIAs and data protection reviews alongside the business
- Coordinate CREST-accredited penetration tests (annually and per major release) and track remediation through to closure
- Help us attain and maintain the market schemes our customers require: Cyber Essentials Plus, NHS DSPT and DTAC in the UK, NEN 7510 in the Netherlands, and equivalents as we grow
Product security
- Work with our engineering function on secure development practices for our applications
- Contribute to the security cases our customers ask for during procurement
What we're looking for
- 2+ years in a security, infrastructure or IT role with meaningful security responsibility
- Working knowledge of ISO 27001 (helping run an ISMS, gathering evidence, or being on the receiving end of an audit all count)
- Comfortable owning a queue: organised, responsive, and able to keep many small things moving without dropping them
- Clear writing: much of this role is producing evidence, assessments and documentation that auditors and customers will read
- Pragmatism: security that is proportionate and enables the business, evidenced without becoming bureaucracy


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Nice to have
- Experience in a regulated sector (e.g. DSPT, DTAC, NEN 7510, HDS, BSI C5, SOC 2)
- Exposure to DPIAs or GDPR work
- Familiarity with cloud security (Microsoft 365 / Azure) and identity management
- A security certification (Security+, ISO 27001 internal auditor, or similar), or the appetite to work towards one
What we offer
- £33,000 salary (or local equivalent) plus employer pension
- Remote working from the UK or mainland Europe, with occasional travel to our Netherlands office for team days and audits
- Netherlands-based? Even better: you're welcome to work from our office
- A genuinely broad role with direct access to senior leadership and a clear growth path as our security programme and product line grow
- An annual training budget to support role-relevant development and certifications
- A role where security visibly matters to the business and its route to market
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills