Security Posture Jobs in London

26 to 50 of 73 Security Posture Jobs in London

Head of Cyber Security

London, South East, England, United Kingdom
CODEVERSE LIMITED
the impregnability of the clients critical digital assets. This includes securing public-facing portals, safeguarding the vital infrastructure links between Aramco and Saudi government projects, and developing a proactive security posture that anticipates future threats. You are not just a manager; you are a player-coach and a strategic thinker. We are looking for someone currently in a … Responsibilities: Practice Leadership: Define the strategic vision, methodologies, and service offerings for our cybersecurity vertical. Hands-On Technical Delivery: Lead the architecture, design, and hands-on implementation of robust security solutions for critical systems. This includes application security, network security, and infrastructure hardening. Client Liaison: Act as a trusted security advisor to our key stakeholders at … compliance, including those specific to the Kingdom of Saudi Arabia (KSA) and critical national infrastructure. Team Building: Be prepared to recruit, mentor, and lead a team of top-tier security engineers as the practice expands. Who You Are: You have 8+ years of experience in cybersecurity, with at least 2+ years in a Team Lead or Manager capacity. You More ❯
Employment Type: Full-Time
Salary: £90,000 - £120,000 per annum
Posted:

SOC Principal Analyst

London, South East, England, United Kingdom
QBE Management Services (UK) Limited
We are an international insurer and reinsurer with a local presence in 27 countries. The Opportunity QBE Europe is currently recruiting a SOC Principal Analyst to join our cyber security team in our London Office. Reporting to regional team leads, the SOC Principal Analyst will be a key member of our rapidly growing Global Security Operations team. Your … new role This is an exciting hands-on technical role in which the specialist will use their security skills and knowledge to perform advanced analysis on the collection of cyber threats using high-level proactive and reactive threat hunting methods, classifying, analysing, prioritising and remediating security alerts/events. The focus is to provide effective, proactive and a … highly technical analytical response to cyber security-related incidents to prevent QBE from becoming compromised by modern attack methods and techniques. Main responsibilities: Act as point of escalation and mentor to junior SOC analysts. Translates business objectives into security objectives by providing support in design/architecture for new security applications to improve the current security More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Platform Senior Security Engineer London £105K - £125K

London, United Kingdom
V7 Labs
you'll have Reporting to Sasha, our Platform Engineering Manager, you'll be working in a team of three. The Platform Engineering team is responsible for Platform Engineering, DevOps, Security, Compliance, Infrastructure Management and providing support to Sales team and customers in these areas. The role will build upon the existing security baseline established but strategically advance the … company's security posture, and developing long-term security strategies. What you'll be doing from day one Design and implement robust, forward-thinking security strategies, policies, and procedures to safeguard our systems, networks, and data. Lead regular security assessments, vulnerability scans, and penetration tests to identify risks and deploy effective remediation measures. Monitor systems … networks, and logs then Investigate security breaches, incidents, and other cybersecurity events. Oversight of compliance for regulatory compliance requirements, such as SOC2, HIPAA, ISO 27001, GDPR etc, and ensure our systems adhere to these standards Conduct security awareness training sessions, enabling the business. Who you are Cloud security enthusiast - You're comfortable navigating AWS and GCP environments More ❯
Employment Type: Permanent
Salary: GBP 105,000 - 125,000 Annual
Posted:

Cyber Security Lead

City of London, London, United Kingdom
Humanoid
environments deemed hazardous or monotonous, we envision a future where human well-being is safeguarded while closing the gaps in critical global labour needs. About the Role As Cyber Security Lead , you will establish the security posture of Humanoid from the ground up — creating the frameworks, controls, and culture that protect our people, systems, data, and intellectual … property. This is a hands-on role with significant strategic impact: you will personally deliver core policies and controls in the early stages while shaping the security roadmap that supports Humanoid’s global ambitions. Reporting directly to the IT Director, you will have independence to assess and report on risk at the highest level. You will partner closely with … the IT Ops Lead (who implements day-to-day controls) and the ITSM Lead (who manages incidents and processes) to ensure security is embedded across the business. What You’ll Do Policy & Frameworks: Define and maintain security policies, standards, and governance models aligned with ISO 27001, SOC2, and NIST. Risk Management: Lead risk assessments, threat modelling, and vendor More ❯
Posted:

Cyber Security Lead

London Area, United Kingdom
Humanoid
environments deemed hazardous or monotonous, we envision a future where human well-being is safeguarded while closing the gaps in critical global labour needs. About the Role As Cyber Security Lead , you will establish the security posture of Humanoid from the ground up — creating the frameworks, controls, and culture that protect our people, systems, data, and intellectual … property. This is a hands-on role with significant strategic impact: you will personally deliver core policies and controls in the early stages while shaping the security roadmap that supports Humanoid’s global ambitions. Reporting directly to the IT Director, you will have independence to assess and report on risk at the highest level. You will partner closely with … the IT Ops Lead (who implements day-to-day controls) and the ITSM Lead (who manages incidents and processes) to ensure security is embedded across the business. What You’ll Do Policy & Frameworks: Define and maintain security policies, standards, and governance models aligned with ISO 27001, SOC2, and NIST. Risk Management: Lead risk assessments, threat modelling, and vendor More ❯
Posted:

Cyber Security Lead

london, south east england, united kingdom
Humanoid
environments deemed hazardous or monotonous, we envision a future where human well-being is safeguarded while closing the gaps in critical global labour needs. About the Role As Cyber Security Lead , you will establish the security posture of Humanoid from the ground up — creating the frameworks, controls, and culture that protect our people, systems, data, and intellectual … property. This is a hands-on role with significant strategic impact: you will personally deliver core policies and controls in the early stages while shaping the security roadmap that supports Humanoid’s global ambitions. Reporting directly to the IT Director, you will have independence to assess and report on risk at the highest level. You will partner closely with … the IT Ops Lead (who implements day-to-day controls) and the ITSM Lead (who manages incidents and processes) to ensure security is embedded across the business. What You’ll Do Policy & Frameworks: Define and maintain security policies, standards, and governance models aligned with ISO 27001, SOC2, and NIST. Risk Management: Lead risk assessments, threat modelling, and vendor More ❯
Posted:

Cyber Security Lead

london (city of london), south east england, united kingdom
Humanoid
environments deemed hazardous or monotonous, we envision a future where human well-being is safeguarded while closing the gaps in critical global labour needs. About the Role As Cyber Security Lead , you will establish the security posture of Humanoid from the ground up — creating the frameworks, controls, and culture that protect our people, systems, data, and intellectual … property. This is a hands-on role with significant strategic impact: you will personally deliver core policies and controls in the early stages while shaping the security roadmap that supports Humanoid’s global ambitions. Reporting directly to the IT Director, you will have independence to assess and report on risk at the highest level. You will partner closely with … the IT Ops Lead (who implements day-to-day controls) and the ITSM Lead (who manages incidents and processes) to ensure security is embedded across the business. What You’ll Do Policy & Frameworks: Define and maintain security policies, standards, and governance models aligned with ISO 27001, SOC2, and NIST. Risk Management: Lead risk assessments, threat modelling, and vendor More ❯
Posted:

Cyber Defense Analyst

london, south east england, united kingdom
Kyndryl
forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role Kyndryl's Security & Resiliency is one of our most critical practices, ensuring enterprises, regardless of their size and complexity, remain secure, available, reliable, and resilient. We take Cybersecurity seriously. We're not … and managing the most modern and reliable technology infrastructure that the world depends on every day. As a Cybersecurity Defense professional at Kyndryl, you will encompass cybersecurity, incident response, security operations, vulnerability management, and the world of cyber threat hunting and security intelligence analysis all to protect the very heartbeat of organizations – their infrastructure. In this role, you … detection and response (EDR) will be the shield that safeguards individual workstations, laptops, servers, and other devices from cybercrime. Your responsibilities go beyond vigilance. When it comes to network security, you'll utilize Network Detection and Response (NDR) to monitor the ever-flowing currents of network traffic. The incident management process will be used as you respond and manage More ❯
Posted:

Head of Cyber Security

South West London, London, England, United Kingdom
Robert Half
a private equity owned legal firm who are growing exponentially. Due to this rapid expansion, they are scaling their technology function and are recruiting for a Head of Cyber Security to join their team and lead their security posture. The Role Define and execute the overall Cyber Security strategy, ensuring it aligns with business objectives, manages risk … and supports the firm's rapid growth. Oversee the Cyber Security function, including Security Operations, Incident Response, and Governance, Risk, and Compliance (GRC) specialists, providing leadership, mentorship, and effective resource allocation. Establish and enforce a robust security governance framework, including policies and procedures for information security, risk management, and compliance with legal and regulatory requirements (e.g. … GDPR, ISO 27001, PCI DSS if applicable). Manage and continuously improve the firm's security architecture and controls across all domains: network, cloud (SaaS/IaaS), endpoints, and applications. Lead the Incident Response and Disaster Recovery programs, ensuring capabilities are tested, effective, and ready to mitigate the impact of security breaches. Drive security awareness and training More ❯
Employment Type: Full-Time
Salary: £115,000 - £125,000 per annum
Posted:

Senior Security Risk Assurance Manager

City of London, London, United Kingdom
Hybrid / WFH Options
Sanderson Government and Defence
Senior Security Risk Assurance Manager - SC cleared Location: Hybrid (75% remote) with on-site presence as required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role The Senior Security Risk Assurance Manager plays a critical role in strengthening the organisation's security posture through strategic risk-based assurance activities. This role supports informed … decision-making across the enterprise by providing expert insight into the effectiveness of security controls, risk management practices, and supply chain security. The position may sit within one of several assurance functions, including internal security assurance, supply chain assurance, or enterprise-level risk management. Key Responsibilities Lead and manage a team of security professionals to deliver high … quality assurance activities. Develop and maintain an annual security assurance plan aligned with strategic business risks. Engage with stakeholders to scope, plan, and execute assurance activities across people, processes, and technology. Validate and interpret evidence to provide a holistic view of the organisation's security posture. Present findings and recommendations to senior leadership and governance forums. Collaborate with More ❯
Employment Type: Permanent, Work From Home
Posted:

Senior Security Risk Assurance Manager

London, South East, England, United Kingdom
Hybrid / WFH Options
Sanderson
Senior Security Risk Assurance Manager - SC cleared Location: Hybrid (75% remote) with on-site presence as required Contract Type: Permanent & Full-time Salary: Competitive + Benefits About the Role The Senior Security Risk Assurance Manager plays a critical role in strengthening the organisation's security posture through strategic risk-based assurance activities. This role supports informed … decision-making across the enterprise by providing expert insight into the effectiveness of security controls, risk management practices, and supply chain security. The position may sit within one of several assurance functions, including internal security assurance, supply chain assurance, or enterprise-level risk management. Key Responsibilities Lead and manage a team of security professionals to deliver high … quality assurance activities. Develop and maintain an annual security assurance plan aligned with strategic business risks. Engage with stakeholders to scope, plan, and execute assurance activities across people, processes, and technology. Validate and interpret evidence to provide a holistic view of the organisation's security posture. Present findings and recommendations to senior leadership and governance forums. Collaborate with More ❯
Employment Type: Full-Time
Salary: Salary negotiable
Posted:

Cloud Security Consultant

City of London, London, United Kingdom
Barclay Simpson
Cloud Security Consultant required for public sector client. You will be designing, implementing, and enhancing security capabilities across AWS and Azure environments. The ideal candidate will have hands-on expertise with cloud-native security and governance tools, Cloud Adoption and Assurance Frameworks, and Well-Architected Reviews. This role will focus on assessing current security posture … Adoption Frameworks aligned with AWS and Microsoft best practices. Conduct and lead Well-Architected Reviews (AWS & Azure) to assess and enhance cloud workloads. Recommend improvements for governance, automation, and security orchestration across both platforms. Evaluate IaC templates (Terraform, ARM/Bicep) for compliance, security, and efficiency. Design and enhance secure landing zones aligned with Microsoft CAF and AWS … best practices. Integrate and optimize use of native cloud security tools including CSPM solutions. Support compliance and control validation automation using AWS and Azure native services. Provide strategic recommendations to improve identity, access, and network security within cloud ecosystems. Collaborate with engineering and DevSecOps teams to embed security by design. Required Skills and Experience AWS Expertise: AWS More ❯
Posted:

Cloud Security Consultant

London Area, United Kingdom
Barclay Simpson
Cloud Security Consultant required for public sector client. You will be designing, implementing, and enhancing security capabilities across AWS and Azure environments. The ideal candidate will have hands-on expertise with cloud-native security and governance tools, Cloud Adoption and Assurance Frameworks, and Well-Architected Reviews. This role will focus on assessing current security posture … Adoption Frameworks aligned with AWS and Microsoft best practices. Conduct and lead Well-Architected Reviews (AWS & Azure) to assess and enhance cloud workloads. Recommend improvements for governance, automation, and security orchestration across both platforms. Evaluate IaC templates (Terraform, ARM/Bicep) for compliance, security, and efficiency. Design and enhance secure landing zones aligned with Microsoft CAF and AWS … best practices. Integrate and optimize use of native cloud security tools including CSPM solutions. Support compliance and control validation automation using AWS and Azure native services. Provide strategic recommendations to improve identity, access, and network security within cloud ecosystems. Collaborate with engineering and DevSecOps teams to embed security by design. Required Skills and Experience AWS Expertise: AWS More ❯
Posted:

Cloud Security Consultant

london, south east england, united kingdom
Barclay Simpson
Cloud Security Consultant required for public sector client. You will be designing, implementing, and enhancing security capabilities across AWS and Azure environments. The ideal candidate will have hands-on expertise with cloud-native security and governance tools, Cloud Adoption and Assurance Frameworks, and Well-Architected Reviews. This role will focus on assessing current security posture … Adoption Frameworks aligned with AWS and Microsoft best practices. Conduct and lead Well-Architected Reviews (AWS & Azure) to assess and enhance cloud workloads. Recommend improvements for governance, automation, and security orchestration across both platforms. Evaluate IaC templates (Terraform, ARM/Bicep) for compliance, security, and efficiency. Design and enhance secure landing zones aligned with Microsoft CAF and AWS … best practices. Integrate and optimize use of native cloud security tools including CSPM solutions. Support compliance and control validation automation using AWS and Azure native services. Provide strategic recommendations to improve identity, access, and network security within cloud ecosystems. Collaborate with engineering and DevSecOps teams to embed security by design. Required Skills and Experience AWS Expertise: AWS More ❯
Posted:

Cloud Security Consultant

london (city of london), south east england, united kingdom
Barclay Simpson
Cloud Security Consultant required for public sector client. You will be designing, implementing, and enhancing security capabilities across AWS and Azure environments. The ideal candidate will have hands-on expertise with cloud-native security and governance tools, Cloud Adoption and Assurance Frameworks, and Well-Architected Reviews. This role will focus on assessing current security posture … Adoption Frameworks aligned with AWS and Microsoft best practices. Conduct and lead Well-Architected Reviews (AWS & Azure) to assess and enhance cloud workloads. Recommend improvements for governance, automation, and security orchestration across both platforms. Evaluate IaC templates (Terraform, ARM/Bicep) for compliance, security, and efficiency. Design and enhance secure landing zones aligned with Microsoft CAF and AWS … best practices. Integrate and optimize use of native cloud security tools including CSPM solutions. Support compliance and control validation automation using AWS and Azure native services. Provide strategic recommendations to improve identity, access, and network security within cloud ecosystems. Collaborate with engineering and DevSecOps teams to embed security by design. Required Skills and Experience AWS Expertise: AWS More ❯
Posted:

Cyber Security Operations Manager - NonVolume

London, UK
Hybrid / WFH Options
The Automobile Association
roadside assistance to home and motor insurance, and the latest driving technologies, we have it all. As we continue to expand, diversify, and modernise, joining us as a Cyber Security Operations Manager means you'll play a crucial role in our success and be part of this exciting motoring journey. Our Chief Operating Office (COO) are the backbone of … stability and structure to support growth and innovation. We are the drivers of change. #LI-Hybrid This is the job We’re looking for a dynamic and experienced Cyber Security Operations Manager to lead the AA’s operational cyber defence capabilities. This is a hands-on leadership role, responsible for managing a team of cyber analysts and third-party … suppliers to ensure the security and resilience of our systems and data. You’ll oversee the lifecycle of cyber security controls, drive continuous improvement, and play a key role in shaping our strategic cyber posture. This role requires strong people leadership, deep technical expertise in Microsoft cyber security technologies, and the ability to build trusted relationships with More ❯
Posted:

Cyber Security Operations Manager - NonVolume

london, south east england, united kingdom
Hybrid / WFH Options
The Automobile Association
roadside assistance to home and motor insurance, and the latest driving technologies, we have it all. As we continue to expand, diversify, and modernise, joining us as a Cyber Security Operations Manager means you'll play a crucial role in our success and be part of this exciting motoring journey. Our Chief Operating Office (COO) are the backbone of … stability and structure to support growth and innovation. We are the drivers of change. #LI-Hybrid This is the job We’re looking for a dynamic and experienced Cyber Security Operations Manager to lead the AA’s operational cyber defence capabilities. This is a hands-on leadership role, responsible for managing a team of cyber analysts and third-party … suppliers to ensure the security and resilience of our systems and data. You’ll oversee the lifecycle of cyber security controls, drive continuous improvement, and play a key role in shaping our strategic cyber posture. This role requires strong people leadership, deep technical expertise in Microsoft cyber security technologies, and the ability to build trusted relationships with More ❯
Posted:

Security Engineer

Greater London, England, United Kingdom
Hybrid / WFH Options
La Fosse
Security Engineer Our Client requires a Contract Security Engineer to identify gaps in security, identify root causes, work with stakeholders to remediate software and hardware issues. Day Rate: £650-£700pd IR35 Status: Inside Travel: 3 days a week in Central London (2 WFH) Duration: 6 Months initially This Security Engineer will have the previous following experience … Captures, refines, and embeds information security requirements into systems and configurations, ensuring alignment with organisational needs. Conducts security reviews and risk assessments to identify vulnerabilities, develop risk mitigation plans, and strengthen overall security posture. Documents and maintains security processes, procedures, and controls across infrastructure, hardware, and software environments. Partners with internal teams and external vendors to … ensure effective communication, risk remediation, and shared accountability for security outcomes. Demonstrates strong knowledge of security engineering and risk management practices, translating complex technical concepts into clear guidance for diverse stakeholders. Hands-on experience configuring and managing security across multi-cloud environments, including GCP, AWS, and Azure. Skilled in implementing a wide array of security controls More ❯
Posted:

Security Engineer

london, south east england, united kingdom
Hybrid / WFH Options
La Fosse
Security Engineer Our Client requires a Contract Security Engineer to identify gaps in security, identify root causes, work with stakeholders to remediate software and hardware issues. Day Rate: £650-£700pd IR35 Status: Inside Travel: 3 days a week in Central London (2 WFH) Duration: 6 Months initially This Security Engineer will have the previous following experience … Captures, refines, and embeds information security requirements into systems and configurations, ensuring alignment with organisational needs. Conducts security reviews and risk assessments to identify vulnerabilities, develop risk mitigation plans, and strengthen overall security posture. Documents and maintains security processes, procedures, and controls across infrastructure, hardware, and software environments. Partners with internal teams and external vendors to … ensure effective communication, risk remediation, and shared accountability for security outcomes. Demonstrates strong knowledge of security engineering and risk management practices, translating complex technical concepts into clear guidance for diverse stakeholders. Hands-on experience configuring and managing security across multi-cloud environments, including GCP, AWS, and Azure. Skilled in implementing a wide array of security controls More ❯
Posted:

WebApplicationFirewall Specialist / Engineer

London, United Kingdom
N Consulting Limited
17th, 2025Apply Now WAF Specialist/Engineer London- Contract- Hybrid (3 days from WFO)This is a hands-on, high-impact position where you'll combine your expertise in security operations, web application security, and WAF engineering to craft custom rules, analyze traffic, reduce false positives, and uplift our overall security posture . What You'll … DoDesign and implement custom WAF rules and configurations to close security gaps.Conduct log analysis and efficacy testing , identifying and mitigating false positives.Support WAF PoCs, DevSecOps pipelines, and automation for scalable testing.Act as an SME for web & API attack methodologies , evasions, and mitigations.Collaborate with security, DevOps, and engineering teams to ensure seamless WAF integration.Stay ahead of emerging web security … develop and optimize WAF policies tailored to diverse environments.Strong analytical skills and excellent communication with technical & non-technical teams.A proactive, detail-oriented mindset and passion for staying ahead of security threatsWe're looking for a Web Application Firewall (WAF) Specialist to strengthen our defenses across multiple applications and platforms. In this role, you'll be designing, testing, and tuning More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Information Security Architect

London, South East, England, United Kingdom
DS Smith
About Us Our Information & Technology (I&T) Digital Security organisation is on a mission to deliver scalable, flexible, and effective security services that support the evolving needs of our business. We operate as a centralised team, providing strategic security architecture and assurance across all business units, assets, and change initiatives. Our goal is to proactively mitigate threats … with our technology partners. Our team is committed to maintaining a secure digital environment that aligns with regulatory requirements and industry best practices. About the Role As an Information Security Architect, you will play a key role in shaping and maintaining our enterprise security architecture. You’ll work closely with enterprise architects, functional area specialists, and security experts to ensure that all IT systems and platforms are designed with robust, scalable, and compliant security solutions. Your responsibilities will include: Developing and maintaining security architectural models, standards, and procedures. Advising on security strategies to manage risks and ensure compliance with internal policies and external regulations. Supporting the creation of reference architectures and artefacts for More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Technical Presales Lead - Cyber Security, AI

City of London, London, United Kingdom
Hybrid / WFH Options
Adecco
Job Title: Technical Presales Lead - Cyber Security, AI, Enterprise Location: London (Hybrid) Type: Full-time Salary: depending on experience + benefits About the Role We're looking for a Technical Presales Lead to shape and elevate our presales function. This is a unique opportunity for someone who thrives on combining strategic leadership with hands-on technical engagement. You'll … AI/ML Fundamentals: - Knowledge of Natural Language Processing (NLP), model lifecycle management, and explainability techniques. - Ability to articulate how AI models integrate into enterprise workflows and compliance frameworks. Security & Compliance: - Strong grasp of SOC 2, ISO 27001, GDPR, and enterprise security best practices. - Understanding of identity and access management (IAM), encryption standards, and secure API design. Integrations … trusted technical advisor in customer meetings, supporting strategic deals and proof-of-value (POV) engagements. * Own the Technical Narrative: Clearly articulate the value of our AI technology, platform architecture, security posture, and integration capabilities. * Create High-Impact Assets: Build demo environments, technical guides, and reference architectures that simplify complex concepts for senior stakeholders. * Collaborate Cross-Functionally: Work closely More ❯
Employment Type: Permanent
Posted:

GenAI Security Specialist

London, UK
ActiveFence
What We Are Looking For As a Red Team Specialist focused on GenAI models, you will play a critical role in safeguarding the security and integrity of commercial cutting-edge AI technologies. Your primary responsibility will be to analyze and test commercial GenAI systems including, but not limited to, language models, image generation models, and related infrastructure. The objective … and deliver actionable insights that strengthen AI models and guardrails against potential threats. Key Responsibilities Execute sophisticated and comprehensive attacks on generative foundational models and agentic frameworks. Assess the security posture of AI models and infrastructure, identifying weaknesses and potential threats. Collaborate with security teams to design and implement effective risk mitigation strategies that enhance model resilience. … Apply innovative testing methodologies to ensure state-of-the-art security practices. Document all red team activities, findings, and recommendations with precision and clarity. Must-Have Proven track record in AI vulnerability analysis. Strong understanding of AI technologies and underlying architectures, especially generative models and frameworks. Minimum of 5 years of experience in offensive cybersecurity, with a focus on More ❯
Posted:

GenAI Security Specialist

london, south east england, united kingdom
ActiveFence
What We Are Looking For As a Red Team Specialist focused on GenAI models, you will play a critical role in safeguarding the security and integrity of commercial cutting-edge AI technologies. Your primary responsibility will be to analyze and test commercial GenAI systems including, but not limited to, language models, image generation models, and related infrastructure. The objective … and deliver actionable insights that strengthen AI models and guardrails against potential threats. Key Responsibilities Execute sophisticated and comprehensive attacks on generative foundational models and agentic frameworks. Assess the security posture of AI models and infrastructure, identifying weaknesses and potential threats. Collaborate with security teams to design and implement effective risk mitigation strategies that enhance model resilience. … Apply innovative testing methodologies to ensure state-of-the-art security practices. Document all red team activities, findings, and recommendations with precision and clarity. Must-Have Proven track record in AI vulnerability analysis. Strong understanding of AI technologies and underlying architectures, especially generative models and frameworks. Minimum of 5 years of experience in offensive cybersecurity, with a focus on More ❯
Posted:

Vulnerability Lead - Engine by Starling

London, United Kingdom
Hybrid / WFH Options
Starling Bank Limited
passionate and experienced Vulnerability Lead to shape and lead the creation and ongoing operation of our comprehensive vulnerability management program. This is a unique opportunity to establish a critical security function, define best practices, and significantly enhance our overall security posture. A key aspect of this role involves the end-to-end management and continuous improvement of the … vulnerability management programme. This includes defining scanning strategies, conducting risk-based triage and prioritisation, overseeing remediation efforts, and providing actionable reporting to enhance the Engine's security posture. What you'll get to do Conduct vulnerability scans regularly and proactively as needed. Validate findings and use a risk-based approach. Enrich findings with threat intelligence and business impact to … resolver groups by triaging and prioritising vulnerabilities to facilitate timely resolution of outstanding findings using a risk based approach Track and manage remediation through to closure with Technology and Security teams. Ensure timely patching of critical vulnerabilities in line with SLAs. Ensure visibility across the technology estate, including cloud environments. Coordinate scanning and coverage of data centre estate, cloud More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:
Security Posture
London
10th Percentile
£55,000
25th Percentile
£70,625
Median
£87,500
75th Percentile
£94,375
90th Percentile
£112,375