Lead Security Engineer JPMorgan Chase & Co. London, United Kingdom Job Description As a Platform Engineer at JPMorgan Chase within the Platform SDLC team, you are the heart of this venture, focused on getting smart ideas into the hands of our customers. You have a curious mindset, thrive in collaborative squads, and are passionate about new technology. By your nature … role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies. As a Lead Security Engineer at JP Morgan Chase within the Platform team, you are an integral … contributor, you are responsible for carrying out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions. Job responsibilities Design and enforce security best practices in public cloud (AWS, Azure, GCP) Show strong experience defining and implementing infrastructure as Code (IaC), working with CI/CD pipelines, and associated automation tooling. Integrate More ❯
Job Purpose The Data Security Manager will partner with multiple divisions and technical managers to enhance security aspects of the data security program. Extensive oversight and control of CLS information assets, mitigating the risks of data loss at CLS in all aspects of day-to-day business. The individual will be accountable for the Data Security Program, setting strategic direction and driving operational excellence while leveraging resources distributed across several functional teams. The Data Security Manager will be responsible for analyzing potential weaknesses and identifying a roadmap to improve the security of information assets across CLS. The candidate will advise Business Owners, developers, and technical teams on options to mitigate risk. The candidate … must have excellent verbal, written, analytical and interpersonal communication skills. Essential Functions/Major Duties and Responsibilities Strategic Provide strategic direction specific to data security management. Build and maintain a robust data security program while aligning closely with CLS's mission. Improve and manage the data security program and the company-wide security standards for the More ❯
executing advanced penetration tests and vulnerability assessments across a diverse portfolio of applications. This is a hands-on, technical role where you'll actively identify, exploit, and help remediate security weaknesses in web, mobile, and cloud-based applications. You'll be at the forefront of defending against cyber threats by implementing cutting-edge security tools, collaborating with development … teams to integrate security into the SDLC, and playing a critical role in protecting the organisation's digital assets. The successful candidate will play a hands-on role in testing the security of applications, networks, and systems, while ensuring that security standards are integrated into the development process. Key Responsibilities: Penetration Testing & Vulnerability Assessment: Conduct … exploits. Analyse and prioritise vulnerabilities based on risk and provide detailed technical reports with recommended remediation steps for developers and system administrators. Keep up to date with the latest security vulnerabilities, exploits, and attack methodologies to ensure effective penetration testing. Security Risk Management: Develop and manage the organisation's vulnerability management program, ensuring compliance with internal policies and More ❯
Cyber Security Engineer - London (Hybrid) - £700 per day inside IR35 - 4 months+ All applicants must hold an active SC clearance. My client is on the hunt for a Cyber Security Engineer to join a central government client of theirs. You will be joining an AppSec team focused on building security automation into delivery pipelines and conducting security focused tests against digital services. Key Responsibilities Perform penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure. Evaluate the automated security tooling into CI/CD pipelines (SAST, DAST, dependency checking, IaC etc), and make necessary recommendations. Collaborate with developers to remediate identified vulnerabilities and ensure secure code practices. Provide expert input on cloud … security (AWS, Azure, or GCP) and DevSecOps tooling. Assist in maintaining security assurance across the SDLC in line with MoJ and NCSC guidelines. Essential Criteria Penetration testing, ethical hacking, or vulnerability assessments. Securitytesting tools (e.g., Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.). DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced SecurityMore ❯
London, England, United Kingdom Hybrid / WFH Options
Spinwell Global
Role: Cyber Security Engineer REF 88311 Contract Length: Initial end date 01/10/2025 Location: Ideally London – Hybrid role 2-3 days on site per week IR35: Inside Pay Rate to Intermediary: Market rate Security Clearance: BPSS Spinwell is recruiting for a Cyber Security Engineer for an excellent opportunity within the public sector. RESPONSIBILITIES OF … THE CYBER SECURITY ENGINEER Perform penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure. Evaluate the automated security tooling into CI/CD pipelines (SAST, DAST, dependency checking, IaC etc), and make necessary recommendations. Collaborate with developers to remediate identified vulnerabilities and ensure secure code practices. Provide expert input on cloud security (AWS … Azure, or GCP) and DevSecOps tooling. Assist in maintaining security assurance across the SDLC in line with client guidelines. SKILLS/EXPERIENCE OF THE CYBER SECURITY ENGINEER Penetration testing, ethical hacking, or vulnerability assessments. Securitytesting tools (e.g., Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.) DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced More ❯
London, England, United Kingdom Hybrid / WFH Options
Mindrift
SRE - Freelance Security & Automation Engineer (Pentesting Focus) 3 days ago Be among the first 25 applicants About The Company At Mindrift, innovation meets opportunity. We believe in using the power of collective intelligence to ethically shape the future of AI. Our goal? Advance the field of artificial intelligence through collaborative Generative AI projects with domain experts. The Mindrift platform … to make them capable of addressing specialized questions and achieving complex reasoning skills. In this role, you will use your skills to train AI systems to identify and exploit security weaknesses in a controlled and ethical manner. Your role will involve designing and executing a code injection attack to identify vulnerabilities in an AI-powered computer agent. You'll … Bash and Python scripts, modifying HTML files, crafting malicious Linux commands, etc. Requirements Required Qualifications: Strong Linux administration and automation skills (Bash, Python, PowerShell) Hands-on experience with penetration testing tools (Metasploit, Burp Suite, Nessus, Nmap) Knowledge of AI security risks, including prompt injection, adversarial attacks, and AI red teaming Experience in automating security tasks, securing DevOps More ❯
Staff Security Architect, Officer Apply locations London, England Kilkenny, Ireland Dublin 2, Ireland time type Full time posted on Posted 5 Days Ago time left to apply End Date: March 31, 2025 (30+ days left to apply) job requisition id R-755134 Who we are looking for: The State Street Global Cybersecurity team is looking for a Product/… Platform Jr. Security Architect . The Cybersecurity team delivers platforms, architecture, and tooling to help Cybersecurity teams make faster, more informed decisions as we work to secure State Street’s digital footprint. As a Product/Platform Jr. Security Architect on the Security Architecture Governance Engineering (SAGE) team, you will focus on supporting security risk assessment … of in-house developed applications, cloud platforms, and vendor solutions. You will help define the reference architectures, security technical standards, and enforce their adherence enterprise-wide. What you will be responsible for: Support comprehensive risk assessments, threat modelling, and vulnerability analysis to identify potential security gaps and develop mitigation strategies. Perform Application Architecture security reviews, documenting risk More ❯
London, England, United Kingdom Hybrid / WFH Options
AltFi Ltd
Sr. Application Security Engineer/Director - Generative AI (Remote) About the Role: The S&P Ratings Security team focuses on protecting our clients and users from all aspects of modern-day security threats. The mission of our team is to safeguard systems and data by developing innovative solutions for the biggest security challenges. We are looking … for a Senior security engineer responsible for development and implementation of security architecture and engineering best practices across S&P Ratings technology platforms. This role will provide Security engineering and Security Architecture consultation to build and enhance security in S&P Ratings Applications and Services including GenAI applications. Responsibilities and Impact: This is a Director … level individual contributor role that will work across Security, software development, Data science/LLM, QA, and Operations teams to identify component and system level technical risks, identify and evaluate critical failure points, determine technical security controls to mitigate risks, prioritize and schedule controls with application development timelines, and work with cross functional teams to implement remediations. This More ❯
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. Help us protect not only the Amazon Security (AmSec) cloud computing environment but all of our customers as well! Since 2006, our … has been enabling our customers to bring great ideas to life in ways that aren't possible in traditional IT environments. With AmSec you can flexibly harness compute, storage, security, and other services from across the globe as your business demands them. Amazon Security is working on security issues for a wide variety of platforms and technologies … of the Secure Hardware and Foundational Technologies group, we help Amazon launch brand new products and invest in emerging technologies securely. We are looking for a technically deep Senior Security Engineer to help secure our foundational platforms such as OS kernels, virtualization, device emulation, firmware and hardware. You will be responsible for conducting security reviews, threat modeling, developing More ❯
Security Engineer - Hardware, Firmware, Virtualization, Secure Hardware And Foundational Technologies Team Join to apply for the Security Engineer - Hardware, Firmware, Virtualization, Secure Hardware And Foundational Technologies Team role at Amazon Security Engineer - Hardware, Firmware, Virtualization, Secure Hardware And Foundational Technologies Team Join to apply for the Security Engineer - Hardware, Firmware, Virtualization, Secure Hardware And Foundational Technologies … Team role at Amazon Description At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. Description At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization … is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. Help us protect not only the Amazon Security (AmSec) cloud computing environment but all of our customers as well! Since 2006, our great team at AmSec has been enabling our customers to bring great ideas to life in ways More ❯
Application Security Senior Manager Location: London Accenture is a leading global professional services company, providing a broad range of services in strategy and consulting, interactive, technology and operations, with digital capabilities across all of these services. With our thought leadership and culture of innovation, we apply industry expertise, diverse skill sets and next-generation technology to each business challenge. … the communities in which we work and live. It is personal to all of us.” – Julie Sweet, Accenture CEO As a team We are currently looking for keen Application Security Senior Manager , who would join our Application Security team in UK. Our team helps our clients to protect their business by helping them to secure their cloud modernization … and securing the transformation of their digital core. These include wide range of tasks from assessment of client maturity, securing and security design and architecture, design of operating model and process design, engineering of new capabilities, management & maintenance of automated securitytesting and remediation at scale. Discovered vulnerabilities along with our advice helps our clients to harden More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Cyber Talent Limited
Security Systems Engineer - DevSecOps - Remote - Amazing role - to £70,0000 + Bens Once in a life time opportunity to join a scaling up tech company who are disrupting the digital security sector. My customer are an incredibly innovative scaling up tech company who are looking to recruit a Security Systems Engineer with experience of DevSecOps, AWS, and … + health + share scheme + flexible working + 25 days holidays. Complete remote role with quarterly meet-ups and customer site visits. Position Overview: We are seeking a security systems engineer who combines strategic oversight with strong hands-on capabilities. This role is pivotal in shaping the overarching technical security posture of our organisation while actively integrating … security into our development and operational workflows. The ideal candidate will bridge the gap between high-level security strategy and practical implementation, ensuring that our systems are secure by design and that security is embedded throughout the software development lifecycle. This individual will ensure that both our strategic security objectives and operational practices align with compliance More ❯
Fintech investors Breega and Element Ventures, as well as the founders of Zoopla, Funding Circle, Comply Advantage, Tessian, Fenergo and Fidel. The Role: You will be responsible for information security at Thirdfort, leveraging your expertise to help us live our Build on Trust company value. By improving the coverage and efficiency of our security controls, you will help … reduce our security risk whilst also allowing us to give best in class answers to clients, regulators and auditors about our security practices. You will report directly to the Head of Engineering. You will oversee critical security infrastructure and operations, automate security workflows, and work closely with technical and business stakeholders to ensure effective, efficient and … appropriate security controls are in place across all parts of the business. This is a great opportunity to across all aspects of security, and help shape how security is done at Thirdfort. Working in a fast paced, cloud native environment, you will be involved in everything from security operations to application security, cloud securityMore ❯
About Us Integrity360 is one of Europe’s leading cyber security specialists operating from office locations spread out across Europe, providing a comprehensive range of professional, support and managed cyber security services for our 300+ clients. With four top-class Security Operation Centers, we offer a complete end-to-end security services covering our clients’ security from every angle. Our services include Managed Security, Cyber SecurityTesting, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services. What sets Integrity360 apart is our excellent team of people that drive the business forward. The company was founded with a focus on technical expertise and that philosophy remains today. The skills and … Integrity360 because they can rely on and trust us to go above and beyond to ensure their needs are met. Listed multiple times on Gartner Market Guides for Managed Security Services. Job Role/Responsibilities Assisting our clients in securing their information systems (defining target objectives, developing action plans, implementing actions (organizational or technical), coordination, monitoring and managing these More ❯
About Us Integrity360 is one of Europe’s leading cyber security specialists operating from office locations spread out across Europe, providing a comprehensive range of professional, support and managed cyber security services for our 300+ clients. With four top-class Security Operation Centers, we offer a complete end-to-end security services covering our clients’ security from every angle. Our services include Managed Security, Cyber SecurityTesting, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services. What sets Integrity360 apart is our excellent team of people that drive the business forward. The company was founded with a focus on technical expertise and that philosophy remains today. The skills and … Integrity360 because they can rely on and trust us to go above and beyond to ensure their needs are met. Listed multiple times on Gartner Market Guides for Managed Security Services. Job Role/Responsibilities Assisting our clients in securing their information systems (defining target objectives, developing action plans, implementing actions (organizational or technical), coordination, monitoring and managing these More ❯
tell you more. What you need to know about the role... The Lead InfoSec Engineer at The Gym Group is responsible for creating and managing the company-wide information security program to ensure that information assets are properly protected. This role includes the design and execution of policies, procedures, and technology to secure and protect The Gym Group systems … and data. Main Job Activities •Risk Assessment and Management•Security Policy Development•Incident Response•Security Awareness and Training•Security Architecture•Network Security•Access Control•Data security•Security Audits and Assessments:•Security Documentation:•Security Monitoring Lead InfoSec Engineer Reporting to: Head of Engineering Based: Hybrid 2+/East Croydon Here at The Gym … tell you more. What you need to know about the role... The Lead InfoSec Engineer at The Gym Group is responsible for creating and managing the company-wide information security program to ensure that information assets are properly protected. This role includes the design and execution of policies, procedures, and technology to secure and protect The Gym Group systems More ❯
product managers and designers to translate business requirements into technical solutions. Ensure high reliability and uptime through proactive monitoring and improvements. Optimize application performance and ensure best practices in security and maintainability. Technical Leadership & Innovation Influence architectural decisions and technical direction within the team. Advocate for best practices in code quality, testing, and maintainability. Identify and address technical … Lead technical discussions and help drive consensus on complex engineering challenges. Collaboration & Communication Influence architectural decisions and technical direction within the team. Advocate for best practices in code quality, testing, and maintainability. Identify and address technical debt, improving system resilience and scalability. Stay ahead of industry trends and propose innovative solutions to business problems. Lead technical discussions and help … . Strong understanding of CI/CD pipelines, DevOps practices, and software deployment strategies. Deep knowledge of database technologies (SQL and NoSQL) and performance optimization techniques. Experience in software testing, including test automation, performance testing, and security testing. Familiarity with Agile development methodologies and modern product engineering practices. Excellent problem-solving, analytical, and debugging skills. Strong communication More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The MDU
Manager: CISO Department: Cyber Security Division: Enterprise Information Technology Services Location: London, Hybrid Main Purpose: Identity is a core security component in any modern IT estate, ensuring the right people, machines, and software components have access to the correct resources at the appropriate time, while preventing unauthorised access and maintaining a secure environment. The Identity and Access Manager … role heads up this crucial security function within the Cyber Security Team and will Lead strategic development and operational management of identity services. Develop and manage identity and access related tooling and processes to ensure mature, efficient, and secure working practices. Be an advocate for best practices in Identity and Access Management. Ensure compliance and risk management standards … are met. Main Responsibilities: Lead the Identity and Access function within the Cyber Security team, including: o Access Management o Identity Governance and Administration o Role Based Access Control o Privileged Access Management o Identity Threat Detection and Response o Access Certification o Identity Data Management & Analytics Ensure that only authorised identities have access to the relevant data and More ❯
London, England, United Kingdom Hybrid / WFH Options
Hargreaves Lansdown
role in building market-leading solutions for our clients. You will: Test Automation Development : Design, develop, and maintain automated test frameworks, tools, and libraries. Integrate, implement, and optimize automated testing strategies within our CI/CD pipelines. Performance and SecurityTesting : Develop and execute performance and load test strategies to ensure the system can handle high volumes … of traffic. Implement securitytesting practices to identify and mitigate vulnerabilities. Develop functional resilience strategies such as chaos engineering. Quality Assurance : Support the team in conducting thorough testing of software applications, including unit, integration, system, and acceptance tests. Collaborate with developers to debug and resolve complex issues, including fixing bugs. Test Planning and Execution : Translate product requirements … design decisions that ensure quality and non-functional requirements (NFRs) are considered upfront. Collaboration : Work closely with other SDETs, Software Engineers, QA Analysts, and DevOps Engineers to integrate automated testing and quality into the development process. Participate in code reviews and provide feedback on testability and quality of code. Continuous Improvement : Identify areas for improvement in the testingMore ❯
cross- functional teams to define test strategies, create test plans, execute test cases, and identify and report software defects. The ideal candidate will have a strong understanding of software testing methodologies, excellent analytical skills, and a passion for delivering high-quality products. Tech Stack: AWS Serverless Lambda with Node.js API Gateway (REST/JSON) DynamoDB S3 WAF Back-Office … with the development team to ensure timely resolution. Participate in the review of product requirements, design documents, and specifications to provide input on testability and quality aspects. Perform exploratory testing and provide feedback on user experience and potential usability issues. Conduct regression testing to ensure that software changes and updates do not introduce new defects. Collaborate with software … concise steps to reproduce. Continuously improve the QA process by identifying inefficiencies, proposing solutions, and implementing best practices. Stay up to date with industry trends and advancements in software testing methodologies and tools. Communicate test progress, test results, and other relevant information to project stakeholders. About You: Qualifications: Bachelor's or Master's degree in Computer Science, Engineering, or More ❯
We're looking for a highly motivated and enthusiastic Information Security Engineer to join our dynamic UK IT Security team. In this role, you'll play a key part in strengthening our security posture by: Supporting the development and implementation of application security controls Automating security-related tasks to improve efficiency and consistency Contributing to … the enhancement of our incident response capabilities This is a great opportunity to work in a collaborative environment where your ideas and technical skills will directly impact the security of our systems and services Key Responsibilities Support the development and implementation of secure coding practices. Assist in application securitytesting and vulnerability assessments. Collaborate with developers to … embed security into the SDLC. Help design and maintain automated securitytesting workflows. Contribute to vulnerability reporting and security recommendations. Apply security best practices to IT and security projects. Monitor applications for compliance with security standards. Promote application security awareness and best practices. Aid in maintaining incident response plans for securityMore ❯
London, England, United Kingdom Hybrid / WFH Options
Barclay Simpson
Position Overview Fast growing FinTech seeking a technically proficient Principal Application Security Architect to join our innovative FinTech organisation. This role is critical in shaping the security posture of complex, cloud-native applications that power fast-growing financial services and digital payments platforms. As an Application Security Architect, you will work closely with software engineers, DevSecOps specialists … product owners, and compliance teams to ensure that secure design principles and automated security controls are Embedded throughout the software development lifecycle (SDLC). You will take ownership of threat modeling, vulnerability management, and security automation efforts with a specific focus on cloud platforms, primarily Google Cloud Platform (GCP). You will be instrumental in building scalable, resilient … security architectures that protect sensitive customer data, meet rigorous regulatory requirements, and enable rapid innovation in a dynamic FinTech environment. What You'll Do Application Security Architecture & Strategy Lead the design and implementation of comprehensive application security frameworks that guide the secure development of cloud-native APIs, microservices, and web applications. Conduct detailed threat modeling workshops and More ❯
have been building the bank of the future from the ground up, offering you the chance to join us and make a significant impact. Job summary As a Product Security Lead in the Cybersecurity & Technology Controls (CTC) team for the International Consumer Bank, you will work proactively with your technology and business colleagues to identify and quantify security issues within their business and empower them to take decisive risk decisions at speed and scale. You're a security expert with a strong mix of technical and communication skills and are passionate about enabling safe and secure innovation. You will work with some of the best and brightest cybersecurity and technology engineers to solve complex problems which … will both challenge you and help you develop your skills in one of the most innovative and respected companies in the world." Job responsibilities Cultivate security culture with your product technology and business colleagues. Products that have the right security culture will strive to prioritize sustainable controls and driving real risk reduction outcomes." Perform threat modelling with application More ❯
London, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
Job Description Cloud Application Security Engineer/AppSec Engineer/Cloud Security Engineer/AWS Security Hybrid – London (2 days in-office) | Competitive Salary + Bonus + Benefits Are you passionate about securing cutting-edge digital platforms in a fast-moving fintech environment? We're seeking an experienced Cloud Application Security Engineer to play a vital … role in safeguarding our cloud infrastructure and applications. If you have expertise in AWS security, secure coding, Service Mesh/Observability, IAM/Okta, threat modelling and a strong understanding of security frameworks like ISO27001, OWASP or NIST, and the ability to drive secure coding practices, SAST and DAST, we want to hear from you! About the Role … As a Cloud Application Security Engineer, you will be the go-to expert for ensuring secure development practices and implementing robust security controls across cloud and application environments. Working closely with DevOps and engineering teams, you will influence security strategy and ensure security is embedded at every stage of development. Key Responsibilities: Perform in-depth securityMore ❯
Security Engineer - Hardware, Firmware, Virtualization, Secure Hardware And Foundational Technologies Team Job ID: 2874718 | Amazon Development Centre (London) Limited At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. Help us protect … not only the Amazon Security (AmSec) cloud computing environment but all of our customers as well! Since 2006, our great team at AmSec has been enabling our customers to bring great ideas to life in ways that aren’t possible in traditional IT environments. With AmSec you can flexibly harness compute, storage, security, and other services from across … the globe as your business demands them. Amazon Security is working on security issues for a wide variety of platforms and technologies including cloud services, Internet of Things (IoT), identity and access management, mobile devices, virtualization, and custom hardware, all operating at massive scale. Similarly, our highly collaborative team is committed to each team member’s growth as More ❯