We are seeking a Threat Analyst to join our rapidly growing Information Security team. This is a unique opportunity for an aspiring and motivated professional to be at the forefront of our cyber defence strategy, protecting our brand from existing and emerging threats. You will combine the expertise of … a Threat Hunter and Cyber Threat Intelligence Analyst, and will work alongside our Senior Threat Analyst to build our threat intelligence and hunting capabilities from the ground up. You'll have a major input on what new tooling and services we use and the backing to … Seize the opportunity to join a dynamic security team, reporting to the Head of Cyber Defence, and lead the development of advanced CTI and threat hunting strategies, seamlessly integrating into our security processes and driving continuous improvements. What you'll be doing In this role, your key responsibilities will More ❯
ThreatModelling Engineer - GCP (Senior Associate, Technology) Job Description As a Senior Engineer - ThreatModelling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails an individual contributor role focused on Security Architecture and … ThreatModelling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to pinpoint security opportunities, identify exploitable threats, and propose mitigation … strategies. Your Impact •Conduct thorough threat modeling exercises utilizing established methodologies and frameworks •Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls. •Manage the lifecycle of identified threats and associated controls, ensuring timely updates and adjustments as necessary. •Deliver comprehensive threat models More ❯
ThreatModelling Engineer - GCP (Senior Associate, Technology) Job Description As a Senior Engineer - ThreatModelling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails an individual contributor role focused on Security Architecture and … ThreatModelling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to pinpoint security opportunities, identify exploitable threats, and propose mitigation … strategies. Your Impact •Conduct thorough threat modeling exercises utilizing established methodologies and frameworks •Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls. •Manage the lifecycle of identified threats and associated controls, ensuring timely updates and adjustments as necessary. •Deliver comprehensive threat models More ❯
security standards for data protection, IAM, encryption, network security, and regulatory compliance (GDPR, PCI DSS). Collaborate across teams to integrate security controls, handle threatmodelling, and address risks related to application, API, and cloud security. Lead threatmodelling exercises and define security controls that address … KMS, Cloud Armor) and other cloud-native security tools. Solid understanding of data security practices, including encryption, access control, and key management. Experience in threatmodelling, risk assessment, and defining security controls to mitigate risks in digital products and services. What's in it for you Our goal More ❯
also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies. What you will do in this role: Implement and evolve Canonical … and guide the remediation of security threats and cyber attacks Grow the presence and thought leadership of Canonical SecOps practice Contribute to open source threat intelligence initiatives Drive threatmodelling, table top exercises and other SecOps practices across Engineering, IS and Canonical Develop Canonical SecOps learning and … Drive and a track record of going above-and-beyond expectations Deep personal motivation to be at the forefront of technology security Expertise in threatmodelling and risk management frameworks Knowledge of security architecture and market-leading security tools Experience contributing to, and consuming, threat intelligence feeds More ❯
and network security. Vulnerability Management: Identify and prioritize vulnerabilities across infrastructure and applications, and collaborate with teams to remediate them in a timely manner. ThreatModelling and Risk Assessment: Perform threatmodelling to identify security risks and provide recommendations for mitigation. Monitoring and Incident Response: Develop More ❯
Greater London, England, United Kingdom Hybrid / WFH Options
CLS Group
and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking Job information: Functional title – Senior Threat Hunter Department – IT Security Corporate level – Vice President Report to – Executive Director Location - London, onsite 2 days per week Job purpose: CLS is seeking … a highly motivated, and skilled Senior Threat Hunter to join a global threat management team. The role will be located in London. The position will report to the Head of Cyber Threat Intelligence and will proactively identify, investigate, and mitigate advanced cyber threats across our organization’s … network and systems. Leveraging a deep understanding of the latest attack techniques, threat actor tactics, and security tools, you will help safeguard our infrastructure and ensure the resilience of our networks. The ideal candidate will be aware of industry trends and frameworks and how they could impact our business. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
CLS Group
and shape a supportive and inclusive working environment in which everyone is encouraged to be open and forward-thinking Job information: Functional title – Senior Threat Hunter Department – IT Security Corporate level – Vice President Report to – Executive Director Location - London, onsite 2 days per week Job purpose: CLS is seeking … a highly motivated, and skilled Senior Threat Hunter to join a global threat management team. The role will be located in London. The position will report to the Head of Cyber Threat Intelligence and will proactively identify, investigate, and mitigate advanced cyber threats across our organization’s … network and systems. Leveraging a deep understanding of the latest attack techniques, threat actor tactics, and security tools, you will help safeguard our infrastructure and ensure the resilience of our networks. The ideal candidate will be aware of industry trends and frameworks and how they could impact our business. More ❯
Implement third-party security tools and assist in major incident response, working with the CSOC team on Cloud threats and events. Cloud Security Tooling & ThreatModelling: Build and enforce Cloud-native security tools, desired experience in conducting threatmodelling, and architectural reviews to enhance security practices. More ❯
Security Architect - London, UK About the Role Are you a Security Architect who specialises in Microsoft Azure with experience of Secure By Design & threatmodelling? If so, come and join EDF as a Security Architect! The Opportunity As a Security Architect you’ll take responsibility for supporting the … security input into projects and technical change, ensuring that security is embedded from the outset, and you’ll develop artefacts such a security designs, threat models and risk assessments to support solution delivery. The Security Architect will produce clear and concise documentation, maintaining alignment to internal governance processes and … pragmatic mindset to problem-solving, balancing ideal security outcomes with business priorities. We’re looking for someone with hands-on experience in risk assessment, threatmodelling, security control selection, and integrating Secure by Design principles into technical delivery. You’ll also have experience working within Agile and DevSecOps More ❯
Develop and maintain secure architectural patterns and standards, with a solid working knowledge of cloud security (AWS, Azure, GCP). Apply risk-based and threat-based approaches to evaluate and recommend appropriate and proportionate security technologies and solutions (e.g., SIEM, IAM, CASB, container security). Outline key security components … provide rationale. Ensure designs align with business objectives, security policies, and industry best practices, with a focus on cloud-native security considerations. Risk and Threat Management: Conduct comprehensive risk assessments and threatmodelling, providing detailed analysis and actionable recommendations. Advise clients on risk mitigation strategies and security More ❯
security strategies aligned with industry standards and best practices, ensuring all systems are secure by design. Risk Management: Assess risks, identify vulnerabilities, and create threat models for new and existing systems to prioritize security controls. Compliance and Governance: Ensure solutions comply with regulatory and organizational security standards (e.g., NIST More ❯
Required Skills & Experience Proven experience in security testing for web applications, APIs, and cloud environments. Strong knowledge of OWASP Top Ten, CVE vulnerabilities, and threat modeling techniques . Hands-on experience with security testing tools such as OWASP ZAP, Burp Suite, Nessus, Metasploit, Nikto, or equivalent . Experience in More ❯
ISO 42001, NIST 800-53, NIST 600-1 or PCI-DSS. Experience and/or certification in AWS products and services. Experience in threat modeling, secure coding, identity management and authentication, cryptography, Responsible AI and hands-on technical expertise in building security capabilities in code and deploying infrastructure as More ❯
are built securely Oversee vulnerability management and remediation efforts, including leading responses to pen test findings and security assessments Experience conducting risk assessments and threatmodelling for software development and advise where necessary Experience in software security design review Strong knowledge of Agile, DevSecOps, System Engineer and or More ❯
not only protect our business objectives and regulatory requirements but also provide innovative solutions to stay ahead of emerging threats. Conduct risk assessments and threat modeling to identify and prioritize risks to our business and IT assets, using your extensive experience in security architecture design. Implementation within a Service More ❯
/CD pipeline using agile DevSecOps practices, conduct application security scans, and work closely with development teams. Stay updated on emerging cyber threats, lead threatmodelling exercises, support managed security services, and assist in developing strategies to mitigate cyber risks. Foster strong team relationships, contribute to knowledge sharing More ❯
london, south east england, United Kingdom Hybrid / WFH Options
psd group
/CD pipeline using agile DevSecOps practices, conduct application security scans, and work closely with development teams. Stay updated on emerging cyber threats, lead threatmodelling exercises, support managed security services, and assist in developing strategies to mitigate cyber risks. Foster strong team relationships, contribute to knowledge sharing More ❯
Alexander Mann Solutions - Public Sector Resourcing
hold active security clearance.) . Certifications such as CISSP, CEH, OSCP, Crest or CHECK. . Experience with DevSecOps practices and tools. . Experience in threatmodelling and secure by design processes. . Experience of cloud security architectures and cloud platforms such as AWS, Azure, or Google Cloud. . More ❯
years of experience in system, network or application security. You should also have a proven experience and knowledge with any combination of the following: Threatmodelling and risk assessments Working knowledge of secure coding principles (OWASP and OWASP mobile, SANS ) Experience with designing and administering identity management (authentication More ❯
Key Responsibilities: Overseeing, educating and assessing the implementation of Digital Safety policies and security standards. Safeguarding company data throughout all processes and systems. Validating threat models produced as part of the project design process. Conducting security assessments and raising identified cyber risks into the risk management process. Identifying control More ❯
or corresponding AWS certifications). Comprehensive experience with databases (in the cloud and on-premises) and practical programming skills. Experience in master data modelling and classification of data. Knowledge of SAP Business Warehouse and Master Data Management. Experience with integration patterns and methods like REST, JSON, XML or SOAP … Knowledge of SSO, RBAC, MFA in Azure AD and other modern authentication concepts. Up-to-date knowledge of cybersecurity threats, current best security practices, threatmodelling and risk mitigation techniques. Ability to define Minimum Viable Products (MVPs) and experience delivering them rapidly and with a high rate of More ❯
shaping the future of payments. Conduct vulnerability assessments, penetration testing, and risk analysis to identify and mitigate security weaknesses. Embed security by design and threatmodelling principles into product development. Lead incident response efforts, coordinating with stakeholders to minimise risks. Collaborate with engineering, product, and commercial teams to … in a high-growth tech environment. Strong knowledge of cloud (AWS), application, infrastructure, and network security. Familiarity with payment security standards (PCI DSS) and threat landscapes. Excellent problem-solving, attention to detail, and communication skills. A self-starter who thrives in a fast-paced environment. Even if you do More ❯
a deep understanding of AI/ML concepts, algorithms, models, regulations and controls and extensive technical experience in AI/ML Security Architecture. Proven threatmodelling, risk analysis, and architectural validations and an in-depth knowledge of adversarial machine learning mitigation is also essential for this role. Please More ❯
YAML, JSON Expertise in application security tools and DevSecOps processes Understanding of key frameworks and standards (e.g. OWASP, NIST SSDF, ISO27001, NCSC) Experience with threatmodelling, risk assessments, and secure design reviews Comfortable owning security strategy and tooling across complex, modern product landscapes Strong communicator - able to engage More ❯