development and cloud security (CSSLP, AZ-500, SC-100/SC-200, AWS Security, GCSA, GCLD, or similar). Familiarity with secure coding standards (OWASP, SEI CERT) and SSDLC models (Microsoft SDL, NIST 800-218 SSDF). Knowledge or experience of Product Assurance Schemes (PAS) or product security frameworks (PAS More ❯
with AWS (or other cloud-based solutions) . Strong understanding of secured Software Development Lifecycle (SDLC) and CI/CD platforms . Familiarity with OWASP, CIS frameworks, and security best practices . Infrastructure & Scripting Knowledge: Proficiency in Microsoft platforms (Office 365, IIS, .NET, SQL Server, Windows Server, Active Directory). More ❯
with AWS (or other cloud-based solutions) . Strong understanding of secured Software Development Lifecycle (SDLC) and CI/CD platforms . Familiarity with OWASP, CIS frameworks, and security best practices . Infrastructure & Scripting Knowledge: Proficiency in Microsoft platforms (Office 365, IIS, .NET, SQL Server, Windows Server, Active Directory). More ❯
and AI/ML technologies. Deep understanding of DevSecOps principles and agile development. Knowledge of secure architecture and design principles, industry standards (NIST SSDF, OWASP) and security best practices. Ability to formulate strategic concepts, propose security solutions and communicate effectively to both technical staff and non-technical stakeholders. To be More ❯
versed in Information security principles at an Intermediate level. Exposure to applicationsecurity testing (source code review, threat modeling, security testing). Understanding of OWASP, CVSS, the MITRE ATT&CK framework, and the software development lifecycle (SLDC). What is it like to work here? Outstanding - you've probably already More ❯
versed in Information security principles at an Intermediate level. Exposure to applicationsecurity testing (source code review, threat modeling, security testing). Understanding of OWASP, CVSS, the MITRE ATT&CK framework, and the software development lifecycle (SLDC). What is it like to work here? Outstanding - you've probably already More ❯
knowledge of Agile, DevSecOps, System Engineer and or equivalent Knowledge of security standards and secure development principles such as NCSC Secure Development & Deployment Guidance, OWASP, NIST Secure Software Development Framework (SSDF - 800-218), Microsoft Azure Secure Development best practices, ISO27001 Experience with Azure cloud infrastructure, particularly Azure PaaS service Experience More ❯
opportunity with a ton of cool projects and tech you'll be working with. To succeed you'll need: Strong applicationsecurity knowledge (e.g., OWASP). Familiarity with cloud platforms (AWS, Azure, GCP). Proficiency in IaC tools (Terraform, CloudFormation) for security deployment. Experience extracting metrics from security tools. Expertise More ❯
Build and maintain REST API microservices using Java 17 (and occasionally Go), deploying them on OpenShift/Kubernetes 🔹 Integrate security tools like Snyk, BlackDuck, OWASP DependencyTrack, and Artifactory into our CI/CD pipelines 🔹 Work with Jenkins, TeamCity, and Tekton to optimize and maintain our DevSecOps toolchain 🔹 Collaborate with developers More ❯
Build and maintain REST API microservices using Java 17 (and occasionally Go), deploying them on OpenShift/Kubernetes 🔹 Integrate security tools like Snyk, BlackDuck, OWASP DependencyTrack, and Artifactory into our CI/CD pipelines 🔹 Work with Jenkins, TeamCity, and Tekton to optimize and maintain our DevSecOps toolchain 🔹 Collaborate with developers More ❯
solid understanding of data security principles and mechanisms, including encryption and masking and familiarity with major security standards and frameworks (e.g., ISO 27001, NIST, OWASP). Any experience with programming languages like Python, Go, or Java would be a distinct advantage. More ❯
both strategic needs and day-to-day challenges, unblocking the team as needed. Skills, Knowledge and Expertise Experience with tools like Serenity, Selenium, RestAssured, Owasp ZAP, AXE, Locust and JMeter, build tools like Maven or Gradle, and Git for version control. Experience with unit test frameworks like JUnit or similar More ❯
core areas: Build verification Alert and Monitoring Backup and Restore Resilience and Recovery Logging, Audit and House Keeping Release Management Config Management Work Instructions OWASP "top ten" security tests Experience with CI/CD pipelines, Jenkins, and test automation frameworks. Knowledge of cloud platforms (AWS/Azure), infrastructure monitoring, and More ❯
security policies, procedures, and best practices. Requirements: Proven experience in applicationsecurity, penetration testing, and secure software development practices. Strong understanding of security vulnerabilities (OWASP Top 10, etc.) and secure coding techniques. Experience with security tools (e.g., static/dynamic analysis tools, vulnerability scanners). Familiarity with common web technologies More ❯
CD) Familiar with scripting languages like PowerShell, YAML, JSON Expertise in applicationsecurity tools and DevSecOps processes Understanding of key frameworks and standards (e.g. OWASP, NIST SSDF, ISO27001, NCSC) Experience with threat modelling, risk assessments, and secure design reviews Comfortable owning security strategy and tooling across complex, modern product landscapes More ❯
skills Strong written and verbal communication skills Ability to multi-task and handle competing deadlines in a fast-paced dynamic environment. Desirable: Familiarity with OWASP would be advantageous Benefits: Competitive salary Generous 28 days holiday allowance, in addition to public holidays. For every year of service you complete, we'll More ❯
and Cloud networking architecture: VNets, application gateways, private and service endpoints, and firewalls. Secure Software Development: Deep experience implementing effective secure coding practices (e.g., OWASP Top 10, SAST, DAST, SonarCloud). You can seamlessly integrate security into the SDLC with a shift-left approach. Cloud Security Tools: Practical experience with More ❯
team Ability to travel to meet business needs Preferred competencies: Relevant cyber security or other qualifications, certifications such as CSX-P, CDPSE, SSCP, CAP, OWASP, PCI DSS Security Cleared with potential to gain enhanced clearances Experience implementing privacy solutions based on the requirements of the EU GDPR and UK Data More ❯
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Cyber Search Partners
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯
East London, London, United Kingdom Hybrid / WFH Options
Cyber Search Partners
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯
Central London / West End, London, United Kingdom Hybrid / WFH Options
Cyber Search Partners
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯
london, south east england, united kingdom Hybrid / WFH Options
Cyber Search Partners
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Cyber Search Partners
in web/API/mobile/thick client application penetration testing; Deep knowledge of various Operating Systems and network principles. Strong understanding of OWASP, PTES and MITRE ATT&CK framework; Knowledge of how modern solutions are designed and deployed across different platforms; Ability to program or script in your More ❯