26 to 50 of 289 Threat Modelling Jobs in London

Security Solution Architect

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Security: Design and validate secure architectures for multi-cloud and hybrid environments (AWS, Azure, GCP), focusing on platform protection, network resilience, and digital sovereignty. Threat Modelling & Analysis: Establish and implement a tactical threat modelling methodology (e.g., STRIDE, PASTA) to identify design flaws early in the development ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
London, United Kingdom
Salary
£ 80 K
risks introduced by AI systems that can reason, retrieve data, call tools and take action.You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing … risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight.Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions.Advise on secure patterns for AI application ...

AI Security Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
introduced by AI systems that can reason, retrieve data, call tools and take action. You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing … risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight. Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions. Advise on secure patterns ...

Security Architect

Hiring Organisation
Anson Mccade
Location
South East London, London, United Kingdom
Employment Type
Contract, Work From Home
aligned to business requirements Translate security, compliance and regulatory requirements into practical security designs Develop and maintain security architecture patterns, standards and frameworks Conduct threat modelling, security assessments and risk reviews Advise clients on security governance, compliance and risk management strategies Support cloud security initiatives across AWS, Azure … governance, risk and compliance frameworks Experience designing and reviewing secure cloud architectures Knowledge of AWS, Azure and/or GCP security services Experience conducting threat modelling and risk assessments Strong stakeholder engagement and communication skills Experience working with enterprise security technologies and controls Ability to balance strategic architecture ...

Security Architect

Hiring Organisation
Version 1
Location
London, United Kingdom
Salary
£ 80 K
partner with government, financial services, and private sector clients to design security solutions that address their most complex digital risks. You'll translate threat landscapes, compliance obligations, and business constraints into practical security architectures, working across the full engagement lifecycle, from threat modelling, security options analysis, through … SAST/DAST tooling, API security, and container security in agile delivery contexts.Experience directly working with clients and senior stakeholders to assess risk, facilitate threat modelling, and build consensus around security approaches. You communicate clearly with both technical teams and non-technical leadership.Highly DesirableGOV.UK and public sector compliance ...

Security Architect (Cloud Security)

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
providing mitigation recommendations. Support governance, risk, compliance, and assurance activities. Contribute to security roadmaps and continuous improvement initiatives. Provide guidance on cloud security monitoring, threat management, and incident response capabilities. Support managed cloud security service engagements where required. Essential Skills & Experience Proven experience working as a Security Architect within … secure cloud solutions within AWS, Azure, or multi-cloud environments. Deep understanding of security architecture principles, frameworks, and best practices. Experience conducting security reviews, threat modelling, and risk assessments. Strong knowledge of identity and access management, network security, encryption, and security monitoring. Experience integrating security into cloud transformation ...

Director, ProdSecOps

Hiring Organisation
Genius Sports
Location
London, United Kingdom
Salary
£ 120 K
Sports. It is a program leadership role responsible for embedding security into how products are designed, built, and shipped — and for owning the full threat detection and incident response pipeline end-to-end.The Director sets direction for a global team spanning secure development lifecycle, security architecture, threat modeling … across multiple regions and time zones.Set team objectives aligned to functional and company-level OKRs. Own delivery against them.Product SecurityDrive shift-left security — embed threat modelling, secure design review, and SDL practices into the development lifecycle.Own the security architecture direction, including zero trust principles and secure design patterns.Own ...

Director, ProdSecOps

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Sports. It is a program leadership role responsible for embedding security into how products are designed, built, and shipped — and for owning the full threat detection and incident response pipeline end-to-end. The Director sets direction for a global team spanning secure development lifecycle, security architecture, threat … time zones. Set team objectives aligned to functional and company-level OKRs. Own delivery against them. Product Security Drive shift-left security — embed threat modelling, secure design review, and SDL practices into the development lifecycle. Own the security architecture direction, including zero trust principles and secure design patterns. ...

Security Solutions Architect

Hiring Organisation
Huxley Associates
Location
London, United Kingdom
Salary
£ 120 K
design, scalable, and aligned to business and regulatory requirements.Working closely with architecture, engineering, and delivery teams, you will produce high-level designs, conduct threat modelling and risk assessments, and provide architectural leadership throughout project lifecycles.Key ResponsibilitiesDevelop high-level security architecture and solution designs for enterprise technology initiatives.Evaluate emerging … technologies and security tooling, providing recommendations and business justification.Conduct threat modelling, security risk assessments, and secure-by-design reviews.Define security controls, network architectures, and data flow models for internal and external integrations.Provide technical guidance to engineering, testing, and delivery teams during implementation.Contribute to security roadmaps, standards, policies ...

Senior Technical Security Risk Consultant

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
frameworks including ISO 27005 and NIST RMF Lead risk identification, assessment and treatment across applications, infrastructure and digital services Facilitate structured risk workshops and threat modelling sessions Assess solution architectures to identify security risks and control gaps Review and interpret IT Health Check outputs and define clear remediation … defence Proven ability to engage senior stakeholders and influence decisions Ability to translate technical findings into clear, actionable risk outcomes Confident leading risk workshops, threat modelling and control assessments Experience working within Agile delivery environments Strong analytical capability and sound judgement Any candidates must have an active ...

Engineering Manager, Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Azure-native, Kubernetes-based platform. Govern security controls across the full stack: Kafka, .NET/C#, Vue.js, Kong API Gateway, Auth0, and Salesforce. Lead threat modelling, penetration testing, and vulnerability management programmes. Own identity and access management strategy, including Entra ID, Auth0, and partner federation. Drive security engineering … with API security patterns (Kong, OAuth 2.0, OIDC) and modern identity architectures. Background in or strong exposure to software engineering — understanding of SDLC security, threat modelling, and DevSecOps. Experience managing a security team and developing talent toward senior positions. Familiarity with Kafka-backed event architectures and the security ...

AI Consultant

Hiring Organisation
Anson Mccade
Location
London, United Kingdom
Employment Type
Permanent
securely adopt AI, GenAI, LLMs and agentic systems . Youll combine strong cyber security consulting with emerging AI security , advising clients on AI risks, threat modelling, secure architecture and practical security controls. Key responsibilities: Assess security across cloud, identity, applications, data and infrastructure. Threat model LLMs … architecture or risk background. Experience with cloud, IAM, application security and security operations . Understanding of GenAI/LLMs and AI security risks . Threat modelling experience. Strong stakeholder and communication skills. Knowledge of NIST AI RMF, OWASP LLM, MITRE ATLAS or ISO 27001 is desirable. Certifications such ...

Principal Product Cybersecurity Assurance

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
team to take it even further. About the Role We are seeking a Principal Product Cybersecurity Assurance Engineer with deep expertise in product security, threat modelling, and risk assurance for highly regulated electromechanical systems. In this role, you will lead the delivery of product cybersecurity across Humanoid … inference pipeline and cloud-to-robot communication architecture. Own and maintain key security artefacts for audit-ready cybersecurity documentation including Security Management Plans, Threat Analysis and Risk Assessment (TARA) reports, Risk Assessments, and Remediation Action Plans across both platforms. Security Assurance & Certification Drive security assurance through the full product ...

Cyber GRC Consultant (DV Cleared)

Hiring Organisation
17918
Location
London, United Kingdom
cloud infrastructures. Contribute to blogs and research within the business community. Experience Required The successful candidate will possess proven experience in cybersecurity, security architecture, threat modelling, or related fields within Public Sector and MOD and will have achieved or be working towards Full Membership of CIISEC … NPSA and NCSC security policies, standards and guidance. Have experience building and implementing secure by design principals within the software development lifecycle (SDLC). Threat Modelling - Kill Chain - Attack tree analysis. Working understanding of: Cloud security including Azure, Amazon Web Service, Key Management Systems, Containerisation, Network Security Groups ...

Senior Application Security Specialist

Hiring Organisation
Secure Source
Location
London, UK
composition analysis tools Knowledge of secure coding practices across languages such as Java, C, C++ Experience with CI/CD pipelines and DevSecOps integration Threat modelling techniques and tools Understanding of OWASP Top 10 and common vulnerability classes Experience with API security and web application security Understanding … development lifecycle knowledge: understanding of how to embed security into design, build, test and deployment stages familiarity with shift-left practices and developer workflows Threat modelling capability: ability to identify threats, abuse cases and attack surfaces experience applying structured approaches such as STRIDE or similar CI/ ...

Senior Application Security Specialist

Hiring Organisation
Secure Source
Location
City of London, Greater London, UK
composition analysis tools Knowledge of secure coding practices across languages such as Java, C, C++ Experience with CI/CD pipelines and DevSecOps integration Threat modelling techniques and tools Understanding of OWASP Top 10 and common vulnerability classes Experience with API security and web application security Understanding … development lifecycle knowledge: understanding of how to embed security into design, build, test and deployment stages familiarity with shift-left practices and developer workflows Threat modelling capability: ability to identify threats, abuse cases and attack surfaces experience applying structured approaches such as STRIDE or similar CI/ ...

Senior Application Security Specialist

Hiring Organisation
Secure Source
Location
London Area, United Kingdom
composition analysis tools Knowledge of secure coding practices across languages such as Java, C, C++ Experience with CI/CD pipelines and DevSecOps integration Threat modelling techniques and tools Understanding of OWASP Top 10 and common vulnerability classes Experience with API security and web application security Understanding … development lifecycle knowledge: understanding of how to embed security into design, build, test and deployment stages familiarity with shift-left practices and developer workflows Threat modelling capability: ability to identify threats, abuse cases and attack surfaces experience applying structured approaches such as STRIDE or similar CI/ ...

Senior Application Security Analyst - L3

Hiring Organisation
Global Relay
Location
London, United Kingdom
Salary
£ 80 K
other, completely free of barriers.Job PurposeThe Senior Application Security Specialist is a senior technical role leading advanced application security testing, complex vulnerability analysis and threat modelling across the Application & Product Security function. You will provide technical leadership, mentor analysts and specialists, act as a security point of contact … ResponsibilitiesLead advanced security testing of critical applications and services, including deep-dive manual testing and targeted penetration tests across web, mobile and API surfaces.Own threat modelling using structured frameworks (STRIDE, PASTA), producing threat models for new features and architecture changes.Support and engage in the penetration testing programme.Design ...

Security Consultant

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
into complex IT and digital initiatives Advise clients on cyber risk, governance and regulatory compliance frameworks including: ISO 27001 NIST GDPR PCI-DSS Conduct threat modelling and identify security vulnerabilities within solution designs Recommend pragmatic risk mitigation strategies to technical and non-technical stakeholders Support the implementation … IDAM Privileged Access Management (PAM) Single Sign-On (SSO) Network Security Encryption technologies Understanding of infrastructure, architecture methodologies and secure design principles Experience with threat modelling and reference architecture development Excellent stakeholder engagement and communication skills Ability to learn quickly and adapt within fast-paced environments Desirable Experience ...

Information Security Architecture & Engineering Lead (UK-based)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
tooling. Experience building security automation, API integrations, test harnesses or internal engineering tools, using source control, peer review, testing and secure coding practices. Experience threat-modelling applications and cloud workloads at the design stage, not just reviewing them after deployment. Working knowledge of PCI DSS v4.0.1. ISO/… model. Own architecture review and sign-off for all new AWS production changes, including network segmentation, IAM design, and KMS/secrets management etc. Threat-model new cloud services and workloads before go-live, rather than reviewing them after deployment. Own remediation design, not just triage, for CNAPP ...

Senior Application Security Engineer - DevSecOps & Cloud Security

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
security procedures and service documentation.Supporting development teams with the adoption and integration of security tooling and best practices.Contributing to wider cyber security initiatives, including threat modelling and compliance activities.What we are looking for:Previously worked as a Senior Application Security Engineer, Lead Application Security Engineer, Principal Application Security …/CD tools such as GitHub and GitHub ActionsHighly skilled in Terraform and PythonStrong understanding of Azure security controls and cloud security governanceExperience with threat modelling in software engineering contextsKnowledge of ISO 27001 and its relevance to secure engineeringFamiliar with Agile and DevSecOps methodologiesEligible to work ...

Application Security Consultant

Hiring Organisation
Ricoh
Location
London, United Kingdom
Salary
£ 80 K
technologies including Java, C, C++ and other relevant languages.Integrate security controls and automated testing into CI/CD pipelines, including SAST, DAST and SCA.Support threat modelling and vulnerability management across products and services.Work closely with developers, architects, DevOps teams and product owners to embed security into their everyday … least one major language such as Java, C, C++, C#, Python or similar.Knowledge of secure software development lifecycles and shift-left security practices.Experience with threat modelling, such as STRIDE or similar approaches.Understanding of application, API and web security.Experience interpreting security findings, identifying false positives and prioritising genuine risk.The ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Software Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
team. Support the implementation of security guardrails, governance processes, and secure design patterns for AI adoption across the firm. Conduct STRIDE-based threat modelling for new internally developed solutions, AI-enabled workflows, integrations, and automation use cases. Assess risks associated with AI use cases, including data exposure, prompt … with AI-related technologies, enterprise AI platforms, large language models, agentic AI, and the security risks associated with AI adoption. Experience conducting STRIDE-based threat modelling, technical risk assessments, or security design reviews. Practical understanding of cloud and enterprise environments, particularly Microsoft 365, Azure, SaaS platforms, and modern ...