processes both on-premise and in the cloud, to ensure they effectively mitigate risks and comply with regulatory and industry standards. You will oversee and conduct security control testing, to verify the design, implementation, and operational effectiveness of controls. In this role, you will work in an agile environment, ensuring the quality of security assessments through thorough testing, automation, and collaboration with cross-functional teams and various stakeholders. Summary of Primary Responsibilities Design and deliver repeatable testing methodologies to support control assurance testing, including automated testing steps for cloud environments. Ensure control tests are well-planned, including risk identification, sampling, selection of controls, testing methods, and reporting criteria. … tools such as Sailpoint, Rapid7, Wiz.io, MS Defender a plus. Experience with cloud security controls within environments such as AWS and Azure. Experience leveraging automation, datadriventesting techniques and generative AI to gain efficiency in control assurance. Experience creating queries and reports using RSA Archer and Service-Now. Familiarity with Kanban boards and More ❯
helping to protect critical assets and ensure compliance. What You'll Do: Conduct security control assessments and develop test plans Identify control gaps and recommend improvements Leverage data-driventesting and automation tools Collaborate with stakeholders and deliver clear, actionable insights What You Bring: 8+ years in InfoSec/IT, with 3+ years in … control testing or IT audit Strong knowledge of frameworks (NIST, ISO 27001, CIS, COBIT) Certifications: CISA, CISSP, CISM, or ISO 27001 Lead Auditor Excellent analytical, communication, and stakeholder engagement skills Nice to Have: Experience with Sailpoint, Rapid7, Wiz.io, RSA Archer, ServiceNow Familiarity with cloud security, automation, and agile methodologies Big 4 background and data analytics proficiency More ❯
in a forward thinking engineering culture that embraces automation, observability and modern dev practices. ️ Tech Stack You'll Work With Core: Java (essential), JavaScript or TypeScript (bonus) Performance Testing: Custom frameworks, traffic analysis, monitoring tools Testing Tools: Playwright, Cypress or similar (performance testing more important for this role) Infrastructure: APIs, databases, CICD pipelines Cloud … solid grasp of Java Proven track record in building and maintaining performance and automation test frameworks Experience with backend testing , APIs, CICD, and datadriventesting A collaborative mindset: someone who enjoys mentoring, problem solving and working closely with devs and stakeholders Nice to Have Familiarity with observability tools, logging, and analysing More ❯
Edinburgh, Scotland, United Kingdom Hybrid / WFH Options
Cathcart Technology
in a forward-thinking engineering culture that embraces automation, observability and modern dev practices. 🛠️ Tech Stack You'll Work With Core: Java (essential), JavaScript or TypeScript (bonus) Performance Testing: Custom frameworks, traffic analysis, monitoring tools Testing Tools: Playwright, Cypress or similar (performance testing more important for this role) Infrastructure: APIs, databases, CICD pipelines Cloud … solid grasp of Java Proven track record in building and maintaining performance and automation test frameworks Experience with backend testing , APIs, CICD, and datadriventesting A collaborative mindset: someone who enjoys mentoring, problem-solving and working closely with devs and stakeholders 🌟 Nice to Have Familiarity with observability tools, logging, and analysing More ❯