Build, Scale and Strengthen Your Cybersecurity Function.
TTC Group is a global, award-winning technology staffing firm placing specialist cybersecurity professionals across the UK, US, and Europe — on contract and permanently.
Whether hiring a CISO, building a Security Operations Centre, or scaling a cloud security function, we provide access to proven professionals who strengthen organisational resilience. This document outlines the ten cybersecurity disciplines we recruit across, the roles within each, and the typical profile of candidates we place.
Build Stronger Cybersecurity
with the Right Expertise
We focus on the following core disciplines:
Security Leadership
Board-level and senior executives (CISO, CSO, Heads of Security) who define strategy and cultivate a security-first culture.
Cyber Operations & Incident Response
SOC analysts, incident responders and threat-intelligence specialists who detect, contain and learn from attacks in real time.
Penetration Testing & Red Team
Ethical hackers and red-team consultants who proactively identify and remediate vulnerabilities before adversaries do.
Governance, Risk & Compliance (GRC)
Professionals who design and maintain frameworks that keep your organisation aligned with ISO 27001, NIST, GDPR and other regulatory standards.
Security Architecture & Engineering
Architects and engineers who build secure-by-design infrastructures across cloud, on-premises and hybrid environments.
Identity & Access Management (IAM/PAM)
Experts who enforce least-privilege access and manage complex authentication and authorisation estates.
Business Continuity & Operational Resilience
Practitioners who ensure critical services remain available and recover swiftly in the face of disruption.
Cyber Transformation & Change
Project managers, programme leads and change specialists who deliver large-scale security uplift and cultural change initiatives.
Cybersecurity Recruitment
We support Salesforce consulting partners from boutique to global SI, ISVs building on the platform, and end customers running their own orgs. We have built entire Salesforce practices for clients from a standing start, and we deliver across the UK, Europe, the US and India from our three offices.
Why clients use us for Cybersecurity
Specialist Focus
Our cyber team works exclusively within information and cyber security. This depth of focus allows us to understand technical nuances across architecture, operations, governance and leadership functions.
Global Capability
With headquarters in London and additional international offices, we deliver compliant recruitment and consultancy solutions worldwide.
Quality-Led Delivery
Every candidate is carefully qualified and matched against technical capability, cultural fit and strategic alignment. We prioritise precision over volume.
Public Sector Expertise
We support public sector organisations with secure and compliant hiring solutions.
Flexible Engagement Models
We deliver contract, interim, permanent and Statement of Work (SoW) solutions depending on your operational requirements.
AI-Linked Cybersecurity roles.
Artificial intelligence is reshaping every layer of the cybersecurity profession — creating entirely new specialisms while transforming existing roles.
TTC Group actively places professionals at this intersection, sourcing talent who combine deep security expertise with hands-on AI and machine learning capability.
AI Security Engineer
Designs, builds and maintains security controls for AI systems and ML pipelines. Identifies vulnerabilities in model training, deployment and inference layers.-
Key skills:
AI/ML pipeline security, adversarial ML, model hardening, MLOps security
AI Governance & Ethics Specialist
Develops and enforces policy frameworks governing the responsible use of AI within an organisation — covering bias, accountability, transparency and regulatory compliance.-
Key skills:
EU AI Act, NIST AI RMF, AI ethics policy, risk frameworks
AI Red Team Operator
Simulates adversarial attacks against AI systems — including LLM jailbreaking, prompt injection and model extraction — to expose security weaknesses before deployment.-
Key skills:
LLM red teaming, prompt injection, OWASP LLM Top 10, GenAI security
AI Security Researcher
Conducts primary research into AI attack vectors, defensive techniques and policy implications — informing both product development and organisational AI security posture.-
Key skills:
Academic & applied research, CVE analysis,
AI vulnerability disclosure
AI Risk & Compliance Officer
Ensures AI systems meet regulatory and internal risk requirements — mapping AI usage to compliance obligations and managing AI-specific risk registers.-
Key skills:
EU AI Act compliance, AI risk registers, regulatory mapping, GRC
AI Threat Intelligence Analyst
Monitors and analyses how threat actors are leveraging AI to enhance attack capabilities — including AI-generated phishing, deepfakes and automated exploitation.-
Key skills:
LLM threat analysis, OSINT, adversarial AI TTPs,
MITRE ATLAS
Machine Learning Security Engineer
Secures ML systems against data poisoning, model inversion and adversarial attacks. Works alongside data science teams to embed security into the ML lifecycle.-
Key skills:
Adversarial robustness, federated learning, differential privacy, MLSec
Security Data Scientist
Applies data science and machine learning techniques to threat detection, anomaly identification and predictive risk modelling within the security operations function.-
Key skills:
Python, ML/NLP, SIEM data analysis, anomaly detection, threat scoring
Prompt Injection & LLM Security Specialist
A fast-emerging role focused on securing large language model deployments against prompt injection, data leakage and model abuse in enterprise environments.-
Key skills:
LLM security, RAG architecture, prompt engineering, agent security
Autonomous SOC Engineer
Architects and operates AI-driven Security Operations Centres where detection, triage and initial response are increasingly handled by autonomous agents and ML models.-
Key skills:
Agentic AI, SOAR, automated playbooks, AI-augmented threat hunting
Cybersecurity roles we focus on:
- Chief Information Security Officer (CISO)
- Director Information Security
- Data Protection Officer
- GRC Professional
- Data Privacy Officer
- Information Security Manager
- Information Security Officer
- Security Architect
- Security Business Analyst
- DevSecOps
- Security Project / Programme Manager
- Cyber Security Engineer
- Network Security Specialist
- Incident Response Manager
- Risk Manager
- SOC Manager
- SOC Analyst Level 1, 2, 3
- Penetration Tester
- Digital Forensics
- Identity Access Management Professional
- Information Security Project Manager
- Cryptography Expert
- Cyber Security Researcher
- BCP / DR Manager
- AI Security Engineer
- AI Threat Intelligence Analyst
- AI Governance & Ethics Specialist
- Machine Learning Security Engineer
- AI Red Team Operator
- Security Data Scientist
- AI Security Researcher
- Prompt Injection & LLM Security Specialist
- AI Risk & Compliance Officer
- Autonomous SOC Engineer
Cybersecurity & AI
As AI transforms the threat landscape, a new class of hybrid roles is emerging that bridges traditional cybersecurity expertise with machine learning, data science and AI governance. TTC Group recruits across this fast-growing discipline.
AI Security Engineer
Secures AI/ML systems, pipelines and model infrastructure against adversarial attacks, data poisoning and model theft.
ML Security Engineer
Hardens machine learning models and training environments; implements adversarial robustness and conducts model red-teaming.
AI Red Teamer
Simulates attacks against AI systems including prompt injection, jailbreaking and adversarial input testing using frameworks like Garak and PyRIT.
LLM Security Architect
Designs secure architectures for large language model deployments, covering prompt injection defences, data leakage controls and agentic AI risk.
AI Trust & Safety Analyst
Monitors AI systems for misuse, harmful outputs and policy violations; implements guardrails and content moderation pipelines.
AI Threat Intelligence Analyst
Tracks AI-driven attack techniques and adversarial TTPs using MITRE ATLAS alongside ATT&CK; feeds intelligence to SOC and detection teams.
AI Risk Manager
Identifies, quantifies and mitigates risks associated with deploying AI solutions across the enterprise; aligns to EU AI Act and emerging regulatory frameworks.
AI Governance & Compliance Officer
Develops and enforces AI governance frameworks, ensures regulatory alignment (EU AI Act, GDPR) and oversees responsible AI deployment.
AI Security Researcher
Conducts research into adversarial AI, offensive use of LLMs and defensive countermeasures; informs internal policy and product security strategy.
Agentic AI Security Specialist
Secures autonomous AI agent workflows and multi-agent systems; addresses non-human identity risks, privilege escalation and agentic attack surfaces.
Shadow AI / AI Discovery Analyst
Identifies unsanctioned AI tool usage across the organisation; assesses risk exposure and enforces AI acceptable-use policies.
Automated SOC / AI-Assisted Triage Analyst
Operates within AI-augmented SOC environments; oversees automated detection pipelines, validates AI-generated alerts and handles escalations.
Products Including:
Forgerock
Cloudguard
Splunk
SailPoint
Arcserve
Palo Alto
Okta
Checkpoint
McAfee
PKI
Cisco
Fortinet
Symantec
OneLogin
IBM, Microsoft & Oracle Security Products
Role Profiles
We place specialists across the full cybersecurity spectrum — from hands-on technical engineers to board-level security leaders. Below is a summary of the ten core disciplines we recruit within.
01. Security Architects
Overview: Design end-to-end security architecture across cloud, hybrid and on-premise. Specialists in zero trust, IAM frameworks and threat modelling.
Exp: 8–15+ yrs
Type: Contract & Perm
02. Risk Managers & Compliance Specialists
Overview: Design and maintain GRC frameworks aligned to ISO 27001, NIST, GDPR, DORA and SOC 2 across regulated sectors.
Exp: 4–12 yrs
Type: Contract & Perm
03. Security Analysts / CTI Analysts
Overview: Monitor, detect and investigate threats using SIEM tools,
Exp: 2–8 yrs
Type: Contract & Perm
04. Incident Response & Forensic Investigators
Overview: Contain and investigate real-world cyber incidents across cloud, Kubernetes and hybrid estates. Preserve evidence for legal and internal use.
Exp: 5–12 yrs
Type: Contract (Surge & Retained)
05. Penetration Testers & Vulnerability Assessors
Overview: Simulate adversarial attacks across web applications, infrastructure and red team engagements to expose exploitable weaknesses.
Exp: 3–10 yrs
Type: Contract & Perm
06. Security Engineers / Cloud Security Engineers
Overview: Build and maintain security controls across AWS, Azure and GCP. Specialists in CSPM, IaC (Terraform), DevSecOps and Kubernetes security.
Exp: 4–10 yrs
Type: Contract & Perm
07. Data Privacy & Governance Officers
Overview: Oversee lawful data handling, GDPR compliance, PIAs and records of processing activities across global privacy regulations.
Exp: 4–10 yrs
Type: Contract & Perm
08. IT Security Operations Managers
Overview: Lead SOC teams, incident workflows, tooling and vendor relationships to maintain a responsive security operations function.
Exp: 6–12 yrs
Type: Contract & Perm
09. Head of Information Security
Overview: function, owning the programme, budget and board relationships.
Exp: 10–18 yrs
Type: Permanent
10. Chief Information Security Officer (CISO)
Overview: Set enterprise-wide security vision, strategy and culture. Operate as a business enabler and risk advisor at board level.
Exp: 15+ yrs
Type: Permanent & Fractional
TTC Group is a global award-winning technology recruitment agency with offices in the UK, USA and India. We place specialist cybersecurity talent — contract and permanent — across the UK, US, and Europe. Cybersecurity is a core discipline for us, not an afterthought.