51 to 75 of 427 Threat Modelling Jobs in England

Engineering Manager, Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Azure-native, Kubernetes-based platform. Govern security controls across the full stack: Kafka, .NET/C#, Vue.js, Kong API Gateway, Auth0, and Salesforce. Lead threat modelling, penetration testing, and vulnerability management programmes. Own identity and access management strategy, including Entra ID, Auth0, and partner federation. Drive security engineering … with API security patterns (Kong, OAuth 2.0, OIDC) and modern identity architectures. Background in or strong exposure to software engineering — understanding of SDLC security, threat modelling, and DevSecOps. Experience managing a security team and developing talent toward senior positions. Familiarity with Kafka-backed event architectures and the security ...

AI Consultant

Hiring Organisation
Anson Mccade
Location
London, United Kingdom
Employment Type
Permanent
securely adopt AI, GenAI, LLMs and agentic systems . Youll combine strong cyber security consulting with emerging AI security , advising clients on AI risks, threat modelling, secure architecture and practical security controls. Key responsibilities: Assess security across cloud, identity, applications, data and infrastructure. Threat model LLMs … architecture or risk background. Experience with cloud, IAM, application security and security operations . Understanding of GenAI/LLMs and AI security risks . Threat modelling experience. Strong stakeholder and communication skills. Knowledge of NIST AI RMF, OWASP LLM, MITRE ATLAS or ISO 27001 is desirable. Certifications such ...

Principal Product Cybersecurity Assurance

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
team to take it even further. About the Role We are seeking a Principal Product Cybersecurity Assurance Engineer with deep expertise in product security, threat modelling, and risk assurance for highly regulated electromechanical systems. In this role, you will lead the delivery of product cybersecurity across Humanoid … inference pipeline and cloud-to-robot communication architecture. Own and maintain key security artefacts for audit-ready cybersecurity documentation including Security Management Plans, Threat Analysis and Risk Assessment (TARA) reports, Risk Assessments, and Remediation Action Plans across both platforms. Security Assurance & Certification Drive security assurance through the full product ...

Cyber GRC Consultant (DV Cleared)

Hiring Organisation
17918
Location
London, United Kingdom
cloud infrastructures. Contribute to blogs and research within the business community. Experience Required The successful candidate will possess proven experience in cybersecurity, security architecture, threat modelling, or related fields within Public Sector and MOD and will have achieved or be working towards Full Membership of CIISEC … NPSA and NCSC security policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding of: Cloud security including Azure, Amazon Web Service, Key Management Systems, Containerisation, Network Security Groups ...

Cyber GRC Consultant (DV Cleared)

Hiring Organisation
Sanderson Government and Defence
Location
Cambridgeshire, East Anglia, United Kingdom
Employment Type
Permanent
cloud infrastructures. Contribute to blogs and research within the business community. Experience Required The successful candidate will possess proven experience in cybersecurity, security architecture, threat modelling, or related fields within Public Sector and MOD and will have achieved or be working towards Full Membership of CIISEC … NPSA and NCSC security policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding of: Cloud security including Azure, Amazon Web Service, Key Management Systems, Containerisation, Network Security Groups ...

Senior Application Security Specialist

Hiring Organisation
Secure Source
Location
London Area, United Kingdom
composition analysis tools Knowledge of secure coding practices across languages such as Java, C, C++ Experience with CI/CD pipelines and DevSecOps integration Threat modelling techniques and tools Understanding of OWASP Top 10 and common vulnerability classes Experience with API security and web application security Understanding … development lifecycle knowledge: understanding of how to embed security into design, build, test and deployment stages familiarity with shift-left practices and developer workflows Threat modelling capability: ability to identify threats, abuse cases and attack surfaces experience applying structured approaches such as STRIDE or similar CI/ ...

Security Architect

Hiring Organisation
Addition
Location
Warrington, Cheshire, United Kingdom
Employment Type
Full-Time
Salary
£90,000 per annum
purpose solutions. Supporting the security triage of proposed solutions and identifying the resources, timescales and expertise required. Conducting security risk assessments using recognised threat-modelling techniques. Producing high-level and low-level security designs for high-security-impact workstreams. Defining security requirements based on risk-assessment findings, organisational … secure solutions across varied technology environments. You will also have: Experience providing security architecture and assurance support to enterprise-scale programmes. Strong knowledge of threat-modelling techniques such as STRIDE, DREAD and MITRE ATT&CK. The ability to translate risk assessments into structured, high-quality security requirements ...

Senior Application Security Analyst - L3

Hiring Organisation
Global Relay
Location
London, United Kingdom
Salary
£ 80 K
other, completely free of barriers.Job PurposeThe Senior Application Security Specialist is a senior technical role leading advanced application security testing, complex vulnerability analysis and threat modelling across the Application & Product Security function. You will provide technical leadership, mentor analysts and specialists, act as a security point of contact … ResponsibilitiesLead advanced security testing of critical applications and services, including deep-dive manual testing and targeted penetration tests across web, mobile and API surfaces.Own threat modelling using structured frameworks (STRIDE, PASTA), producing threat models for new features and architecture changes.Support and engage in the penetration testing programme.Design ...

Senior Security Assurance Engineer

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£75,000
Regulations - feeding posture data into governance and risk reporting rather than treating it as a point-in-time exercise. Lead risk assessments and threat-modelling sessions , selecting methodologies (ISO 27005, NIST RMF, STRIDE, MITRE ATT&CK) that are proportionate to system criticality, and ensuring findings feed into programme … structuring reports around the decisions people need to make, not just the controls you've tested. Embed security as a continuous engineering concern , supporting threat modelling and security reviews throughout delivery, challenging designs that create unnecessary risk, and mentoring colleagues on secure-by-default practices. Support and assess ...

Security Consultant

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
into complex IT and digital initiatives Advise clients on cyber risk, governance and regulatory compliance frameworks including: ISO 27001 NIST GDPR PCI-DSS Conduct threat modelling and identify security vulnerabilities within solution designs Recommend pragmatic risk mitigation strategies to technical and non-technical stakeholders Support the implementation … IDAM Privileged Access Management (PAM) Single Sign-On (SSO) Network Security Encryption technologies Understanding of infrastructure, architecture methodologies and secure design principles Experience with threat modelling and reference architecture development Excellent stakeholder engagement and communication skills Ability to learn quickly and adapt within fast-paced environments Desirable Experience ...

Information Security Architecture & Engineering Lead (UK-based)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
tooling. Experience building security automation, API integrations, test harnesses or internal engineering tools, using source control, peer review, testing and secure coding practices. Experience threat-modelling applications and cloud workloads at the design stage, not just reviewing them after deployment. Working knowledge of PCI DSS v4.0.1. ISO/… model. Own architecture review and sign-off for all new AWS production changes, including network segmentation, IAM design, and KMS/secrets management etc. Threat-model new cloud services and workloads before go-live, rather than reviewing them after deployment. Own remediation design, not just triage, for CNAPP ...

Senior Application Security Engineer - DevSecOps & Cloud Security

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
security procedures and service documentation.Supporting development teams with the adoption and integration of security tooling and best practices.Contributing to wider cyber security initiatives, including threat modelling and compliance activities.What we are looking for:Previously worked as a Senior Application Security Engineer, Lead Application Security Engineer, Principal Application Security …/CD tools such as GitHub and GitHub ActionsHighly skilled in Terraform and PythonStrong understanding of Azure security controls and cloud security governanceExperience with threat modelling in software engineering contextsKnowledge of ISO 27001 and its relevance to secure engineeringFamiliar with Agile and DevSecOps methodologiesEligible to work ...

Application Security Consultant

Hiring Organisation
Ricoh
Location
London, United Kingdom
Salary
£ 80 K
technologies including Java, C, C++ and other relevant languages.Integrate security controls and automated testing into CI/CD pipelines, including SAST, DAST and SCA.Support threat modelling and vulnerability management across products and services.Work closely with developers, architects, DevOps teams and product owners to embed security into their everyday … least one major language such as Java, C, C++, C#, Python or similar.Knowledge of secure software development lifecycles and shift-left security practices.Experience with threat modelling, such as STRIDE or similar approaches.Understanding of application, API and web security.Experience interpreting security findings, identifying false positives and prioritising genuine risk.The ...

Cyber Security - Security Assurance Consultant (DV Cleared)

Hiring Organisation
Sanderson Government & Defence
Location
Greater Bristol Area, United Kingdom
cloud infrastructures. Contribute to blogs and research within the Cyberfort community. Experience Required The successful candidate will possess proven experience in cybersecurity, security architecture, threat modelling, or related fields within Public Sector and MOD and will have achieved or be working towards Full Membership of CIISEC … NPSA and NCSC security policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling – Kill Chain – Attack tree analysis. Certifications: AWS/Azure Security Professional, CCSP, CISSP, CISM, CIISEC, UK Cyber Security Council registration (Chartered ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Software Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
team. Support the implementation of security guardrails, governance processes, and secure design patterns for AI adoption across the firm. Conduct STRIDE-based threat modelling for new internally developed solutions, AI-enabled workflows, integrations, and automation use cases. Assess risks associated with AI use cases, including data exposure, prompt … with AI-related technologies, enterprise AI platforms, large language models, agentic AI, and the security risks associated with AI adoption. Experience conducting STRIDE-based threat modelling, technical risk assessments, or security design reviews. Practical understanding of cloud and enterprise environments, particularly Microsoft 365, Azure, SaaS platforms, and modern ...

Security Engineer, AWS Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
met. Key job responsibilities Security Reviews: Conduct design reviews for new and existing services, evaluating architecture documents and system designs for security risks. Threat Modelling: Identify attack vectors and security weaknesses in application architectures through structured threatmodelling exercises. Penetration Testing: Coordinate penetration testing to validate … testing, mobile security, cryptography, public key infrastructure, forensic security, IP security, SSL/TLS, computer viruses and malware, network security, trusted security, trusted execution, threat intelligence, IoT security implications, or authentication. Experience scripting with Python, Perl, Bash or PowerShell. Experience triaging and developing security alerts and response automation, conducting ...

Cloud Security Consultant

Hiring Organisation
83zero Limited
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
What You'll Be Doing Design secure architectures across AWS, Azure and hybrid cloud environments Develop cloud security strategies, governance and security standards Conduct threat modelling and security architecture reviews Embed security into cloud deployments through DevSecOps and automation Advise clients on best practice and modern cloud security … Looking For You'll have experience with several of the following: Cloud Security Architecture AWS, Azure and/or GCP Secure by Design & Threat Modelling Zero Trust principles DevSecOps & Infrastructure as Code Cloud Governance & IAM Relevant cloud security certifications (desirable) What's On Offer ...

AI Security Advisor

Hiring Organisation
Anson McCade
Location
England, United Kingdom
security assessments across cloud, applications, identity, data and infrastructure Advising clients on security architecture, risk and control maturity Supporting AI security and assurance assessments Threat modelling AI applications, LLM integrations and agentic workflows Assessing risks around prompt injection, data leakage, excessive agency, insecure tool use and AI supply … have experience across areas such as: Cyber Security Consulting Security Architecture Cyber Risk/GRC Cloud Security Application Security Identity & Access Management Security Operations Threat Modelling Security Assessments And some exposure to AI, GenAI, LLMs or emerging AI security risks . Knowledge of frameworks such as NIST ...

Senior Application Security Engineer / DevSecOps Engineer

Hiring Organisation
Additional Resources Ltd
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £80,000 per annum, Negotiable
security processes through infrastructure-as-code and scripting. Maintaining technical and security documentation. Supporting development teams with security tooling and best practices. Contributing to threat modelling and compliance activities. Applications are welcomed from candidates with the required experience from backgrounds including: Application Security Engineer, DevSecOps Engineer, Product Security … code and secure engineering practices. Familiarity with GitHub and GitHub Actions. Experience with Terraform and Python. Understanding of cloud security governance. Experience with threat modelling in software engineering contexts. Knowledge of ISO 27001 and its relevance to secure engineering. Exposure to Agile working environments and DevSecOps practices Ideally ...

Senior Security Analyst - Product-Based Risk Assessment (PBRA)

Hiring Organisation
Salt
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£517 - £690/day
assessments using recognised methodologies and industry frameworks. Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets. Contribute to threat modelling and attack surface analysis activities. Support technology-focused assessments such as cloud, AI, and emerging technology evaluations. Stakeholder Engagement … understanding of cybersecurity principles, controls, and risk management practices. Knowledge of application security, cloud security, infrastructure security, and network security. Experience conducting security assessments, threat modelling, or risk analyses. Familiarity with industry frameworks and standards such as: NIST Cyber Security Framework ISO 27001 CIS Controls Secure Controls Framework ...

Senior Application Security Engineer

Hiring Organisation
TripAdvisor
Location
London, United Kingdom
Salary
Confidential
permanent contract.What You’ll Do:Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management.Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks.Performing manual security assessments including code reviews.Act as a Subject Matter Expert … that the team remains proactive in its approach to security.What You’ll Need:Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response.Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines.Strong understanding of advanced ...

Cyber Security Architect

Hiring Organisation
DGH Recruitment
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Contract
solution architectures and technical designs. Define and embed security requirements across applications, Azure and cloud services, infrastructure, SaaS, AI and third-party solutions. Conduct threat modelling, security risk assessments and design reviews, identifying risks and appropriate mitigations. Work with project teams, architects and suppliers to ensure security controls … Azure, Microsoft 365 and Microsoft Entra ID. Knowledge of IAM, network and endpoint security, cloud security, data protection and Zero Trust architecture. Experience conducting threat modelling, security risk assessments and technical design reviews. Ability to translate security requirements into practical technical solutions. Experience working with third-party suppliers ...

Senior Application Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
What You’ll Do: Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management. Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks. Performing manual security assessments including code reviews. Act as a Subject Matter … team remains proactive in its approach to security. What You’ll Need: Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response. Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines. Strong understanding ...