76 to 100 of 508 Threat Modelling Jobs in the UK

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Software Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
team. Support the implementation of security guardrails, governance processes, and secure design patterns for AI adoption across the firm. Conduct STRIDE-based threat modelling for new internally developed solutions, AI-enabled workflows, integrations, and automation use cases. Assess risks associated with AI use cases, including data exposure, prompt … with AI-related technologies, enterprise AI platforms, large language models, agentic AI, and the security risks associated with AI adoption. Experience conducting STRIDE-based threat modelling, technical risk assessments, or security design reviews. Practical understanding of cloud and enterprise environments, particularly Microsoft 365, Azure, SaaS platforms, and modern ...

Security Engineer, AWS Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
met. Key job responsibilities Security Reviews: Conduct design reviews for new and existing services, evaluating architecture documents and system designs for security risks. Threat Modelling: Identify attack vectors and security weaknesses in application architectures through structured threatmodelling exercises. Penetration Testing: Coordinate penetration testing to validate … testing, mobile security, cryptography, public key infrastructure, forensic security, IP security, SSL/TLS, computer viruses and malware, network security, trusted security, trusted execution, threat intelligence, IoT security implications, or authentication. Experience scripting with Python, Perl, Bash or PowerShell. Experience triaging and developing security alerts and response automation, conducting ...

Cloud Security Consultant

Hiring Organisation
83zero Limited
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
What You'll Be Doing Design secure architectures across AWS, Azure and hybrid cloud environments Develop cloud security strategies, governance and security standards Conduct threat modelling and security architecture reviews Embed security into cloud deployments through DevSecOps and automation Advise clients on best practice and modern cloud security … Looking For You'll have experience with several of the following: Cloud Security Architecture AWS, Azure and/or GCP Secure by Design & Threat Modelling Zero Trust principles DevSecOps & Infrastructure as Code Cloud Governance & IAM Relevant cloud security certifications (desirable) What's On Offer ...

AI Security Advisor

Hiring Organisation
Anson McCade
Location
England, United Kingdom
security assessments across cloud, applications, identity, data and infrastructure Advising clients on security architecture, risk and control maturity Supporting AI security and assurance assessments Threat modelling AI applications, LLM integrations and agentic workflows Assessing risks around prompt injection, data leakage, excessive agency, insecure tool use and AI supply … have experience across areas such as: Cyber Security Consulting Security Architecture Cyber Risk/GRC Cloud Security Application Security Identity & Access Management Security Operations Threat Modelling Security Assessments And some exposure to AI, GenAI, LLMs or emerging AI security risks . Knowledge of frameworks such as NIST ...

Senior Application Security Engineer / DevSecOps Engineer

Hiring Organisation
Additional Resources Ltd
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £80,000 per annum, Negotiable
security processes through infrastructure-as-code and scripting. Maintaining technical and security documentation. Supporting development teams with security tooling and best practices. Contributing to threat modelling and compliance activities. Applications are welcomed from candidates with the required experience from backgrounds including: Application Security Engineer, DevSecOps Engineer, Product Security … code and secure engineering practices. Familiarity with GitHub and GitHub Actions. Experience with Terraform and Python. Understanding of cloud security governance. Experience with threat modelling in software engineering contexts. Knowledge of ISO 27001 and its relevance to secure engineering. Exposure to Agile working environments and DevSecOps practices Ideally ...

Senior Security Analyst - Product-Based Risk Assessment (PBRA)

Hiring Organisation
Salt
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£517 - £690/day
assessments using recognised methodologies and industry frameworks. Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets. Contribute to threat modelling and attack surface analysis activities. Support technology-focused assessments such as cloud, AI, and emerging technology evaluations. Stakeholder Engagement … understanding of cybersecurity principles, controls, and risk management practices. Knowledge of application security, cloud security, infrastructure security, and network security. Experience conducting security assessments, threat modelling, or risk analyses. Familiarity with industry frameworks and standards such as: NIST Cyber Security Framework ISO 27001 CIS Controls Secure Controls Framework ...

Senior Application Security Engineer

Hiring Organisation
TripAdvisor
Location
London, United Kingdom
Salary
Confidential
permanent contract.What You’ll Do:Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management.Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks.Performing manual security assessments including code reviews.Act as a Subject Matter Expert … that the team remains proactive in its approach to security.What You’ll Need:Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response.Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines.Strong understanding of advanced ...

Cyber Security Architect

Hiring Organisation
DGH Recruitment
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Contract
solution architectures and technical designs. Define and embed security requirements across applications, Azure and cloud services, infrastructure, SaaS, AI and third-party solutions. Conduct threat modelling, security risk assessments and design reviews, identifying risks and appropriate mitigations. Work with project teams, architects and suppliers to ensure security controls … Azure, Microsoft 365 and Microsoft Entra ID. Knowledge of IAM, network and endpoint security, cloud security, data protection and Zero Trust architecture. Experience conducting threat modelling, security risk assessments and technical design reviews. Ability to translate security requirements into practical technical solutions. Experience working with third-party suppliers ...

Senior Application Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
What You’ll Do: Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management. Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks. Performing manual security assessments including code reviews. Act as a Subject Matter … team remains proactive in its approach to security. What You’ll Need: Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response. Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines. Strong understanding ...

DevSecOps Engineer

Hiring Organisation
Oscar
Location
Guildford, Surrey, United Kingdom
Salary
£ 80 K
secrets detection, credential rotation and secure Key Vault practicesStrengthening software supply-chain security through SBOM generation, dependency scanning and artefact signingSupporting API security testing, threat modelling and third-party penetration testsConfiguring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure MonitorEnforcing identity and access …/CVE remediation toolingThe confidence to work independently, make risk-based decisions and support junior engineersExperience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful.Relevant certifications such as AZ-500, AZ-400, Security+, CySA+ ...

DevSecOps Engineer

Hiring Organisation
Oscar Technology
Location
Surrey, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £80,000 per annum
credential rotation and secure Key Vault practices Strengthening software supply-chain security through SBOM generation, dependency scanning and artefact signing Supporting API security testing, threat modelling and third-party penetration tests Configuring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure Monitor Enforcing identity … remediation tooling The confidence to work independently, make risk-based decisions and support junior engineers Experience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful. Relevant certifications such as AZ-500, AZ-400, Security+, CySA+ ...

Senior Security Engineer

Hiring Organisation
Flagstone
Location
London, United Kingdom
Salary
£ 80 K
Defender - triage, escalate, or contain as appropriateSupport incident response activities including containment, evidence gathering, and post-incident reviewParticipate in security risk assessments and threat modelling exercises across new and existing systemsCoordinate penetration test engagements (scope, logistics, findings review) and work with engineering teams to prioritise remediationWhat … Azure networking, and cloud security posture managementExperience writing infrastructure-as-code using Terraform or Bicep in a security engineering contextAbility to contribute to threat modelling and communicate security risk clearly to engineering and product audiencesExperience supporting or coordinating penetration testing programmes, including managing remediation cyclesFamiliarity with AI security ...

Information Security Review, Threat Modelling Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Information Security or Information Technology. Strong experience reviewing infrastructure security. Hands‐on cloud security experience across AWS and/or GCP. Demonstrated expertise in Threat Modelling methodologies such as STRIDE, PASTA or MITRE ATT&CK/ATLAS. Strong understanding of authentication, authorisation, encryption, logging & monitoring, infrastructure security ...

Head of Security Architecture

Hiring Organisation
Jobleads-UK
Location
United Kingdom
identity, access, network security, cloud security, application security, data protection, APIs, secrets management, encryption, logging, monitoring and resilience. Secure by Design, Zero Trust and threat modelling: Experience embedding security into delivery lifecycles through Secure by Design practices, Zero Trust architecture, threat modelling, security requirements, architecture review ...

Head of Security Architecture

Hiring Organisation
Jobleads-UK
Location
Bexhill-on-Sea, England, United Kingdom
identity, access, network security, cloud security, application security, data protection, APIs, secrets management, encryption, logging, monitoring and resilience. Secure by Design, Zero Trust and threat modelling: Experience embedding security into delivery lifecycles through Secure by Design practices, Zero Trust architecture, threat modelling, security requirements, architecture review ...

Security Architect

Hiring Organisation
NEC Software Solutions
Location
United Kingdom
Salary
£ 55 K
design.This is a hands‐on, design‐led role. You will be involved in real delivery, real assurance, and real decision‐making, from early threat modelling and risk assessment through to architecture assurance, accreditation support, and implementation guidance.The role is well suited to someone who enjoys balancing pragmatic security … engagement in complex, regulated environments.What you’ll be doingProducing security architecture designs for internal systems and customer solutions, aligned with the overarching architecture framework.Conducting threat modelling and risk assessments to identify and manage security risks in applications, platforms, and services.Producing security assurance documentation to support internal governance, customer ...

Security Engineer

Hiring Organisation
Tiro Partners Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £90,000 per annum
Develop security and policy-as-code capabilities using tools such as OPA. Help secure cloud and data platforms, including Databricks, Dagster and Snowflake. Support threat modelling and ISO 27001 activities. Operate and improve application security services and tooling. Work directly with developers to identify and remediate vulnerabilities. About … with KQL advantageous. Experience securing GitHub/GitHub Actions, Kubernetes and APIs. Strong knowledge of application security testing and vulnerability management. Experience with DevSecOps, threat modelling and security automation. Knowledge of ISO 27001. Strong cloud security knowledge Azure (Preferred) If you’re looking for a role where ...

SOC Automation Engineer

Hiring Organisation
Claranet Limited
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
engineering teams to identify automation opportunities. Documentation – Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning – Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support – Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development … Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through ...

Senior AI DevSecOps Engineer

Hiring Organisation
WeDo Technology Solutions Limited
Location
Telford, Shropshire, United Kingdom
Employment Type
Full-Time
Salary
£120,000 - £130,000 per annum
enjoy building tooling and automation, and thrive in modern cloud native engineering environments, this is an opportunity to make a real impact. Responsibilities: Lead threat modelling across a portfolio of AI native products. Build, enhance and maintain security tooling and DevSecOps automation. Coordinate penetration testing activities and ensure … Skills: Commercial experience in a DevSecOps, Product Security or Application Security role. Experience securing AI native or modern cloud native applications. Strong knowledge of threat modelling and secure software development. Experience building security tooling and automation. Hands on experience with vulnerability management, validation and remediation. Knowledge of penetration ...

Senior AI DevSecOps Engineer

Hiring Organisation
WeDoTech
Location
Remote work, United Kingdom
Employment Type
Permanent
Salary
£120000 - £130000/annum
enjoy building tooling and automation, and thrive in modern cloud native engineering environments, this is an opportunity to make a real impact. Responsibilities: Lead threat modelling across a portfolio of AI native products. Build, enhance and maintain security tooling and DevSecOps automation. Coordinate penetration testing activities and ensure … Skills: Commercial experience in a DevSecOps, Product Security or Application Security role. Experience securing AI native or modern cloud native applications. Strong knowledge of threat modelling and secure software development. Experience building security tooling and automation. Hands on experience with vulnerability management, validation and remediation. Knowledge of penetration ...

Senior Security Engineer Crypto

Hiring Organisation
Teya Solutions
Location
London, United Kingdom
Salary
£ 80 K
into platforms other teams operate against.ResponsibilitiesDesign, implement, and continuously improve a Secure SDLC integrated from design through productionEmbed security into planning and delivery via threat modelling, security requirements, and automated controlsLead application security reviews for new systems, major features, and high-risk changes across web, API, mobile … lifecycle management, PCI PIN and PCI-DSS scope experience is required.Application security at scale. SAST/DAST/SCA toolchain design and rollout. Threat modelling as a routine practice, not an event. Familiarity with modern AppSec tooling (Snyk, Wiz, Veracode, Checkmarx, Semgrep, GitHub Advanced Security or equivalents).Cloud ...

CyberSecurity OpenSource Data Platform Solution Architect

Hiring Organisation
Hays Specialist Recruitment Limited
Location
Sheffield, South Yorkshire, United Kingdom
Employment Type
Full-Time
Salary
£450.00 - £550.00 per day
engineering, platform, and central architecture/governance teams, they run design and governance forums and influence without authority. They'll bring genuine cybersecurity expertise-threat modelling, security controls, identity and access, encryption, logging, and secure SDLC-so CSA's platforms and products can be trusted in production … premise hosting; hands-on experience with Azure, AWS and/or GCP is beneficial. You will also have proven security architecture expertise, including: Threat modelling and secure-by-design practices. IAM (RBAC/ABAC), privileged access concepts, and service-to-service authentication. Encryption in transit/at rest ...

CyberSecurity OpenSource Data Platform Solution Architect

Hiring Organisation
Hays Technology
Location
Sheffield, South Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day Up to £550 per day (Inside IR35)
engineering, platform, and central architecture/governance teams, they run design and governance forums and influence without authority. They'll bring genuine cybersecurity expertise-threat modelling, security controls, identity and access, encryption, logging, and secure SDLC-so CSA's platforms and products can be trusted in production … premise hosting; hands-on experience with Azure, AWS and/or GCP is beneficial. You will also have proven security architecture expertise, including: Threat modelling and secure-by-design practices. IAM (RBAC/ABAC), privileged access concepts, and service-to-service authentication. Encryption in transit/at rest ...