51 to 75 of 367 Threat Modelling Jobs in England

Senior Application Security Specialist

Hiring Organisation
Secure Source
Location
City of London, London, United Kingdom
composition analysis tools Knowledge of secure coding practices across languages such as Java, C, C++ Experience with CI/CD pipelines and DevSecOps integration Threat modelling techniques and tools Understanding of OWASP Top 10 and common vulnerability classes Experience with API security and web application security Understanding … development lifecycle knowledge: understanding of how to embed security into design, build, test and deployment stages familiarity with shift-left practices and developer workflows Threat modelling capability: ability to identify threats, abuse cases and attack surfaces experience applying structured approaches such as STRIDE or similar CI/ ...

Engineering Manager, Security

Location
Greater London, England, United Kingdom
Azure-native, Kubernetes-based platform. Govern security controls across the full stack: Kafka, .NET/C#, Vue.js, Kong API Gateway, Auth0, and Salesforce. Lead threat modelling, penetration testing, and vulnerability management programmes. Own identity and access management strategy, including Entra ID, Auth0, and partner federation. Drive security engineering … with API security patterns (Kong, OAuth 2.0, OIDC) and modern identity architectures. Background in or strong exposure to software engineering — understanding of SDLC security, threat modelling, and DevSecOps. Experience managing a security team and developing talent toward senior positions. Familiarity with Kafka-backed event architectures and the security ...

Senior Security Consultant

Location
Greater London, England, United Kingdom
with engineering and product teams to deliver secure, scalable cloud-native banking solutions. Acting as a security partner, you'll perform design reviews and threat modelling across platform, product and infrastructure initiatives. This role provides pragmatic security guidance that balances risk management with business and delivery objectives. … role will be helping to build and operate practical security controls that support the safe adoption of agentic AI. What you will do Lead threat modelling workshops for new products, services, AI tooling and architectural changes. Review solution designs and provide clear, actionable security recommendations. You'll assess ...

Software Engineer III - DevSecOps / Compliance Platform Engineering

Location
Greater London, England, United Kingdom
help teams understand and remediate their exposure. You will collaborate closely with platform engineers, product squads, and risk and governance teams. Job responsibilities Perform threat modelling of platform services and cloud infrastructure, translating findings into clear, actionable remediation guidance for engineering teams Design and implement cloud security guardrails … concepts and proficient applied experience Hands‐on experience in a DevSecOps, cloud security, or compliance platform engineering role operating in AWS Practical experience with threat modelling methodologies (e.g., STRIDE or equivalent) applied to cloud services or distributed systems Good working knowledge of AWS cloud security services including Identity ...

Senior Application Security Engineer - DevSecOps & Cloud Security

Hiring Organisation
Additional Resources
Location
London, UK
Employment Type
Full-time
service documentation. Supporting development teams with the adoption and integration of security tooling and best practices. Contributing to wider cyber security initiatives, including threat modelling and compliance activities. What we are looking for: Previously worked as a Senior Application Security Engineer, Lead Application Security Engineer, Principal Application Security …/CD tools such as GitHub and GitHub ActionsHighly skilled in Terraform and PythonStrong understanding of Azure security controls and cloud security governanceExperience with threat modelling in software engineering contextsKnowledge of ISO 27001 and its relevance to secure engineeringFamiliar with Agile and DevSecOps methodologiesEligible to work ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Software Security Engineer

Location
Greater London, England, United Kingdom
secure‐by‐design culture across the business. Key responsibilities include: Driving application and product security initiatives across multiple engineering teams Conducting security reviews, threat modelling and risk assessments Implementing and improving vulnerability management processes Embedding security tooling into CI/CD pipelines and development workflows Partnering with developers … software development practices Experience working closely with software engineering teams Hands‐on experience securing cloud environments (AWS, GCP or Azure) Experience with vulnerability management, threat modelling and security reviews Knowledge of CI/CD security and modern development practices Excellent stakeholder management and communication skills Eligibility Please note ...

Senior Cyber Security Engineer

Location
West of England, England, United Kingdom
controls are effectively embedded, and that all systems are resilient, compliant, and aligned with current security standards. The ideal candidate will bring knowledge of threat modelling, secure system design, and compliance frameworks including NIST, ISO 27001, and DefStan 05-139. We understand that even experienced professionals … documentation, testing, and reporting. Collaborating with project teams and external partners to deliver on agreed security deliverables and schedules. Participating in security risk assessments, threat modelling, and vulnerability management for cloud, software, and far-edge deployments. Contributing to the security accreditation process, preparing evidence, managing asset registers ...

AI Security Advisor

Hiring Organisation
Anson McCade
Location
England, United Kingdom
security assessments across cloud, applications, identity, data and infrastructure Advising clients on security architecture, risk and control maturity Supporting AI security and assurance assessments Threat modelling AI applications, LLM integrations and agentic workflows Assessing risks around prompt injection, data leakage, excessive agency, insecure tool use and AI supply … have experience across areas such as: Cyber Security Consulting Security Architecture Cyber Risk/GRC Cloud Security Application Security Identity & Access Management Security Operations Threat Modelling Security Assessments And some exposure to AI, GenAI, LLMs or emerging AI security risks . Knowledge of frameworks such as NIST ...

Cyber Security Architect

Hiring Organisation
DGH Recruitment
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Contract
solution architectures and technical designs. Define and embed security requirements across applications, Azure and cloud services, infrastructure, SaaS, AI and third-party solutions. Conduct threat modelling, security risk assessments and design reviews, identifying risks and appropriate mitigations. Work with project teams, architects and suppliers to ensure security controls … Azure, Microsoft 365 and Microsoft Entra ID. Knowledge of IAM, network and endpoint security, cloud security, data protection and Zero Trust architecture. Experience conducting threat modelling, security risk assessments and technical design reviews. Ability to translate security requirements into practical technical solutions. Experience working with third-party suppliers ...

Cyber Security Lead

Hiring Organisation
Babcock
Location
Plymouth, Devon, UK
Employment Type
Full-time
lifecycle while advancing your own career in a highly complex and rewarding environment. Leading secure by design assurance activities across complex programmesConducting threat modelling and cyber risk assessments using recognised frameworksDeveloping risk treatment plans and implementing mitigation strategiesProducing technical security evidence including risk assessments and vulnerability analysisSupporting programme … Devonport Royal Dockyard. Essential experience of the Cyber Security LeadStrong experience delivering secure by design or cyber security assurance activitiesProven ability to conduct threat modelling and risk assessmentsIn-depth knowledge of cyber security frameworks such as NIST, ISO 27001, and ISO 27005Experience influencing multidisciplinary teams including engineering ...

Senior Application Security Engineer / DevSecOps Engineer

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
security processes through infrastructure-as-code and scripting. Maintaining technical and security documentation. Supporting development teams with security tooling and best practices. Contributing to threat modelling and compliance activities. Applications are welcomed from candidates with the required experience from backgrounds including: Application Security Engineer, DevSecOps Engineer, Product Security … code and secure engineering practices. Familiarity with GitHub and GitHub Actions. Experience with Terraform and Python. Understanding of cloud security governance. Experience with threat modelling in software engineering contexts. Knowledge of ISO 27001 and its relevance to secure engineering. Exposure to Agile working environments and DevSecOps practices Ideally ...

Security Architect

Location
Warrington, England, United Kingdom
project lifecycle. Support security triage activities to identify resource requirements based on project priorities, timelines, and specialist skills. Conduct security risk assessments using recognized threat modelling methodologies such as STRIDE, DREAD, and MITRE Att&ck. Produce high-level and detailed security architecture and design documentation for complex, high … standards, and regulatory requirements. Essential Skills & Experience Proven experience providing security architecture support within enterprise-scale technology projects. Strong understanding and practical application of threat modelling techniques, including STRIDE, DREAD, MITRE Att&ck, or similar frameworks. Experience producing structured, high-quality security designs and technical documentation. Broad technical ...

DevSecOps Engineer

Hiring Organisation
Oscar Associates (UK) Limited
Location
Surrey, South East, United Kingdom
Employment Type
Permanent
Salary
£80,000
credential rotation and secure Key Vault practices Strengthening software supply-chain security through SBOM generation, dependency scanning and artefact signing Supporting API security testing, threat modelling and third-party penetration tests Configuring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure Monitor Enforcing identity … remediation tooling The confidence to work independently, make risk-based decisions and support junior engineers Experience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful. Relevant certifications such as AZ-500, AZ-400, Security+, CySA+ ...

Group Head of AI Security Architecture

Location
Greater London, England, United Kingdom
engineering within a regulated environment, with expertise in enabling the secure adoption of emerging technologies, including AI. Deep understanding of AI security risks and threat patterns. In depth knowledge of security architecture and control design for cloud, data and AI-enabled platforms. Experience designing security framework and patterns … secure adoption of AI. Experience defining assurance evidence, go-live criteria and governance inputs for AI or high-risk technology initiatives, including threat modelling, secure design review and conversion of risk into actionable delivery requirements aligned to organisational risk appetite. Experience with relevant AI security, risk and governance ...

Group Head of AI Security Architecture

Location
Staines-upon-Thames, England, United Kingdom
engineering within a regulated environment, with expertise in enabling the secure adoption of emerging technologies, including AI. Deep understanding of AI security risks and threat patterns. In depth knowledge of security architecture and control design for cloud, data and AI-enabled platforms. Experience designing security framework and patterns … secure adoption of AI. Experience defining assurance evidence, go-live criteria and governance inputs for AI or high-risk technology initiatives, including threat modelling, secure design review and conversion of risk into actionable delivery requirements aligned to organisational risk appetite. Experience with relevant AI security, risk and governance ...

Remote Security Architect (Azure, Threat Modelling, SC)

Location
City Of London, England, United Kingdom
Architect for remote UK work with Active SC clearance. You will guide security design across delivery and engineering, review designs for compliance, and lead threat modelling and risk assessments. The role focuses on Azure security services and cloud-native controls within regulated government contexts. The position requires strong ...

Cybersecurity consultant

Location
Greater London, England, United Kingdom
hands-on implementation. About the role. You'll advise enterprise clients across banking, insurance, and public sector on security posture - from architecture review and threat modelling through to hands-on implementation of identity, segmentation, and detection controls. Our clients don't need another slide deck telling them they … their platform teams and get zero-trust principles actually implemented, on their timeline, without breaking the systems that run their business. Lead architecture reviews, threat modelling sessions, and control gap assessments against frameworks like NIST, ISO 27001, and industry-specific regulation. Translate risk into a roadmap Turn assessment ...

Security Engineer

Hiring Organisation
Tiro Partners Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £90,000 per annum
Develop security and policy-as-code capabilities using tools such as OPA. Help secure cloud and data platforms, including Databricks, Dagster and Snowflake. Support threat modelling and ISO 27001 activities. Operate and improve application security services and tooling. Work directly with developers to identify and remediate vulnerabilities. About … with KQL advantageous. Experience securing GitHub/GitHub Actions, Kubernetes and APIs. Strong knowledge of application security testing and vulnerability management. Experience with DevSecOps, threat modelling and security automation. Knowledge of ISO 27001. Strong cloud security knowledge Azure (Preferred) If you’re looking for a role where ...

Application Security Engineer

Location
Oxford, England, United Kingdom
Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management. Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks. Performing manual security assessments including code reviews. Act as a Subject Matter Expert (SME) for security … best practices, ensuring that the team remains proactive in its approach to security. Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response. Hands‐on experience with security testing tools (SAST, DAST) and their integration into development pipelines. Strong understanding ...

Senior Application Security Engineer

Location
Greater London, England, United Kingdom
What You’ll Do: Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management. Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks. Performing manual security assessments including code reviews. Act as a Subject Matter … team remains proactive in its approach to security. What You’ll Need: Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response. Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines. Strong understanding ...

Senior Security Engineer Crypto

Hiring Organisation
Teya Solutions
Location
London, UK
Employment Type
Full-time
platforms other teams operate against. ResponsibilitiesDesign, implement, and continuously improve a Secure SDLC integrated from design through productionEmbed security into planning and delivery via threat modelling, security requirements, and automated controlsLead application security reviews for new systems, major features, and high-risk changes across web, API, mobile … lifecycle management, PCI PIN and PCI-DSS scope experience is required. Application security at scale. SAST/DAST/SCA toolchain design and rollout. Threat modelling as a routine practice, not an event. Familiarity with modern AppSec tooling (Snyk, Wiz, Veracode, Checkmarx, Semgrep, GitHub Advanced Security or equivalents ...

AI Security Architect

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Employment Type
Contract
secure operating models that enable the safe deployment and use of AI solutions across complex business environments. This role focuses on AI security assessments, threat modelling, governance frameworks, security controls, secure integrations and identifying AI-specific security risks. Please only apply if you have the right to work … visa sponsorship is not available. You will be responsible for Conducting security assessments of AI solutions, including threat modelling. Developing governance frameworks, security standards and best practice for AI adoption. Designing controls for identity, access management, auditability and human oversight. Supporting the implementation of security guardrails for AI, generative ...

AI Security Architect

Hiring Organisation
Additional Resources Ltd
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
operating models that enable the safe deployment and use of AI solutions across complex business environments. . This role focuses on AI security assessments, threat modelling, governance frameworks, security controls, secure integrations and identifying AI-specific security risks . Please only apply if you have the right … work in the UK, as visa sponsorship is not available. You will be responsible for Conducting security assessments of AI solutions, including threat modelling. Developing governance frameworks, security standards and best practice for AI adoption. Designing controls for identity, access management, auditability and human oversight. Supporting the implementation ...

AI Security Architect

Hiring Organisation
Anson McCade
Location
England, United Kingdom
clients to understand how AI is being introduced into their organisations and, importantly, how it can be adopted securely. You'll assess security architectures, threat model AI and agentic systems, identify emerging risks and design practical security controls and guardrails. You'll work across areas including: AI-enabled applications … integrations Agentic AI and autonomous workflows Cloud, identity, application and data security AI governance and assurance Secure AI adoption AI-enabled security operations Threat modelling and Secure by Design AI security architecture and security controls You'll also be expected to translate complex technical risks into clear, practical ...