Cyber Lead - DevSecOps (CTO)
- Location
- Sheffield, England, United Kingdom
SDLC and DevSecOps including SAST DAST SCA and secrets management in CI/CD Define and maintain secure coding standards security acceptance criteria and threat modelling processes for engineering teams Partner with engineering teams to triage and prioritise vulnerabilities ensuring remediation SLAs are met using CVSS and EPSS … generation open‐source dependency risk and third‐party component governance aligned to DORA and NCSC guidance Shape the divisional AI security function including AI threat models and governance aligned to the EU AI Act the organisation’s AI risk framework and relevant PRA and FCA guidance Own the divisional ...