Threat and Vulnerability Management Jobs in London

1 to 25 of 32 Threat and Vulnerability Management Jobs in London

Information Protection Reporting and Analytics Analyst

London, United Kingdom
STATE STREET CORPORATION
Information Protection Reporting and Analytics Analyst page is loaded Information Protection Reporting and Analytics Analyst Apply locations Quincy, Massachusetts London, England Boston, Massachusetts Kilkenny, Ireland Dublin 2, Ireland time type Full time posted on Posted 5 Days Ago time left to apply End Date: June 30, 2025 (30+ days left … to apply) job requisition id R-766929 Who we are looking for State Street seeks to recruit a cross-functional, Reporting and Analytics (RA) Analyst responsible for a variety of functions within the Fusion & Security Operations (F&SO) Governance Program at State Street. This includes gathering, analyzing, and enriching data … for utilization on scorecards and related to governance reporting across the cybersecurity space related to Data Loss Prevention (DLP), Key/Cert/Encryption Management (KCEM), Software Development Lifecycle (SDLC), Cloud Security (CS), Cyber Incident Management (CIM), and Threat and Vulnerability Management (TVM) within the State More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

GRC Lead

London Area, United Kingdom
BGC Group
Cantor Fitzgerald’s Global Information Security team is seeking a Governance, Risk, and Compliance (GRC) Lead with expertise on managing cyber risk, ensuring compliance with regulatory requirements, and maintaining corporate controls. This role will be primarily responsible for leading efforts related to third-party risk management, client due diligence … awareness training, and regulatory compliance. The ideal candidate will have a strong grasp of cybersecurity threats and hands-on experience. Key Responsibilities Governance Risk and Compliance Advise project teams, application owners, infrastructure services, and other IT teams on information security controls, such as access management, incident handling, business continuity … system development lifecycle, threat and vulnerability management, and data protection. Identify and manage risks and vulnerabilities, providing strategic mitigation recommendations. Continuously improve policies and procedures related to controls and operational processes. Develop and deliver precise and timely metrics and reports. Third-Party Risk Management: Conduct risk assessments More ❯
Posted:

GRC Lead

london, south east england, United Kingdom
BGC Group
Cantor Fitzgerald’s Global Information Security team is seeking a Governance, Risk, and Compliance (GRC) Lead with expertise on managing cyber risk, ensuring compliance with regulatory requirements, and maintaining corporate controls. This role will be primarily responsible for leading efforts related to third-party risk management, client due diligence … awareness training, and regulatory compliance. The ideal candidate will have a strong grasp of cybersecurity threats and hands-on experience. Key Responsibilities Governance Risk and Compliance Advise project teams, application owners, infrastructure services, and other IT teams on information security controls, such as access management, incident handling, business continuity … system development lifecycle, threat and vulnerability management, and data protection. Identify and manage risks and vulnerabilities, providing strategic mitigation recommendations. Continuously improve policies and procedures related to controls and operational processes. Develop and deliver precise and timely metrics and reports. Third-Party Risk Management: Conduct risk assessments More ❯
Posted:

Cyber Security Analyst

City Of London, England, United Kingdom
Hybrid / WFH Options
Sarafin Partners
A dynamic and prestigious professional services company based in the heart of the City of London are seeking a talented Cyber Security Analyst to join their team. This multifaceted position offers an exceptional opportunity for an experienced professional to work with their offices around the world to support cyber security … initiatives. The successful candidate will possess strong analytical skills, an understanding of security administration, risk management and identity access management solutions. The main focus of the role will include: Performance of system security administration on designated technology platforms in accordance with the defined policies, standards and procedures, as … well as with industry best practices and vendor guidelines Completion of threat and vulnerability assessments, in some cases followed by appropriate remedial action, to ensure that systems are protected from known and potential threats and are free from known vulnerabilities Collating security incident and event data to produce monthly More ❯
Posted:

Cyber Security Analyst

london (city of london), south east england, United Kingdom
Hybrid / WFH Options
Sarafin Partners
A dynamic and prestigious professional services company based in the heart of the City of London are seeking a talented Cyber Security Analyst to join their team. This multifaceted position offers an exceptional opportunity for an experienced professional to work with their offices around the world to support cyber security … initiatives. The successful candidate will possess strong analytical skills, an understanding of security administration, risk management and identity access management solutions. The main focus of the role will include: Performance of system security administration on designated technology platforms in accordance with the defined policies, standards and procedures, as … well as with industry best practices and vendor guidelines Completion of threat and vulnerability assessments, in some cases followed by appropriate remedial action, to ensure that systems are protected from known and potential threats and are free from known vulnerabilities Collating security incident and event data to produce monthly More ❯
Posted:

DevSecOps Engineer (London Area)

London, UK
Hazeltree
Inc. Hazeltree is a global leader in cloud-based treasury solutions, empowering investment firms with cutting-edge technology to optimize financial performance, enhance liquidity, and mitigate risk. As part of our commitment to security and innovation, we are expanding our Information Security Team and seeking a DevSecOps Engineer to drive … security automation and best practices across our cloud infrastructure and IT operations. Job Overview As a DevSecOps Engineer , you will play a pivotal role in integrating security practices into our DevOps pipeline and IT operations . Working at the intersection of operations, security, and development , you will collaborate closely with … internal teams to safeguard critical business operations by design and default. You will be responsible for security automation, CI/CD pipeline enhancements , and cloud security management , ensuring compliance with industry standards. Key Responsibilities Security & DevOps Integration: Support and extend the secured CI/CD pipeline to enhance development More ❯
Employment Type: Part-time
Posted:

DevSecOps Engineer

London Area, United Kingdom
Hazeltree
Inc. Hazeltree is a global leader in cloud-based treasury solutions, empowering investment firms with cutting-edge technology to optimize financial performance, enhance liquidity, and mitigate risk. As part of our commitment to security and innovation, we are expanding our Information Security Team and seeking a DevSecOps Engineer to drive … security automation and best practices across our cloud infrastructure and IT operations. Job Overview As a DevSecOps Engineer , you will play a pivotal role in integrating security practices into our DevOps pipeline and IT operations . Working at the intersection of operations, security, and development , you will collaborate closely with … internal teams to safeguard critical business operations by design and default. You will be responsible for security automation, CI/CD pipeline enhancements , and cloud security management , ensuring compliance with industry standards. Key Responsibilities Security & DevOps Integration: Support and extend the secured CI/CD pipeline to enhance development More ❯
Posted:

DevSecOps Engineer

london, south east england, United Kingdom
Hazeltree
Inc. Hazeltree is a global leader in cloud-based treasury solutions, empowering investment firms with cutting-edge technology to optimize financial performance, enhance liquidity, and mitigate risk. As part of our commitment to security and innovation, we are expanding our Information Security Team and seeking a DevSecOps Engineer to drive … security automation and best practices across our cloud infrastructure and IT operations. Job Overview As a DevSecOps Engineer , you will play a pivotal role in integrating security practices into our DevOps pipeline and IT operations . Working at the intersection of operations, security, and development , you will collaborate closely with … internal teams to safeguard critical business operations by design and default. You will be responsible for security automation, CI/CD pipeline enhancements , and cloud security management , ensuring compliance with industry standards. Key Responsibilities Security & DevOps Integration: Support and extend the secured CI/CD pipeline to enhance development More ❯
Posted:

Head of Cyber Security

London, United Kingdom
Hybrid / WFH Options
DfT Operator
into public ownership. It is a publicly owned company established by the Department for Transport in 2018. Our ambition is to deliver safe, secure and sustainable transport to everyone, everywhere. At the heart of this promise is improving journeys and providing customers with an excellent service, while supporting the industry … build a more passenger-focused railway. We currently have four train operators: London North Eastern Railway (LNER) - Northern - Southeastern - TransPennine Express (TPE), delivering four and a half thousand services a day, and 300 million customer journeys across our network every year. Over the next 3 years, we will complete the … transfer of all passenger services operated under contracts with the Department for Transport (DfT). Our vision is to unify and strengthen train operators under the DFTO banner. By working collaboratively, we aim to become industry-leading in safety, customer service, financial and operational performance. About the role: The Head More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Global Cyber Security Manager

London, United Kingdom
Hybrid / WFH Options
Oritain
to be the source of truth in global supply chains. Our mission is to build a world-class business that will evolve for decades and help create a tangible difference in our world. Oritain is the global leader in scientifically verifying origin, notably in the cotton/textiles, food, and … pharmaceutical sectors. We exist to protect the reputations of our customers and US borders by identifying and mitigating well-known risks in global supply chains. Sustainability isn't just about tackling climate change; it represents a growing conscience around our actions and their impact on people, animals, and the planet. … The personal, professional, and governmental move to sustainable practice is driven by a desire to change our impact on the world. We can only do this by knowing the certainty of our actions. Take the Lead as Our Global Cybersecurity Expert! As a result of our continued growth, we're More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Information Security Engineer - Development and Automation

London, United Kingdom
UnitedHealth Group
Information Security Engineer - Development and Automation - UK, Remote Optum is a global organisation that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources … they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health equity on a global scale. Join us to start Caring. … no limits here on the resources you'll have or the challenges you'll encounter. We have been supporting global healthcare systems from Ireland and the UK for more than 20 years, building a dynamic and diverse team of more than 2,100 talented individuals. With a continued record of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Analyst

London Area, United Kingdom
NDK Cyber
Overview: We’re seeking a proactive and detail-oriented Information Security Analyst to join a London based Banks growing security function. Reporting to the Cyber Security Manager , you will support the daily operational security activities across the business. This role is ideal for a professional with 2–3 years' experience … structured environment in a security analyst or security operations role. You'll focus on daily log analysis, vulnerability management support, antivirus monitoring, and helping to close security-related incidents. Key Responsibilities: 🔍 Security Monitoring & Analysis Review, monitor, and analyze daily security logs using SIEM tools (e.g., Splunk, Sentinel, Defender … . Identify false positives, escalate true positives, and assist in incident investigations. Support service desk and IT teams with closing out security-related calls and incidents. 🛠️ Threat & Vulnerability Management Assist with running and analyzing vulnerability scans; help track remediation. Monitor and manage endpoint protection and antivirus alerts. More ❯
Posted:

Security Analyst

london, south east england, United Kingdom
NDK Cyber
Overview: We’re seeking a proactive and detail-oriented Information Security Analyst to join a London based Banks growing security function. Reporting to the Cyber Security Manager , you will support the daily operational security activities across the business. This role is ideal for a professional with 2–3 years' experience … structured environment in a security analyst or security operations role. You'll focus on daily log analysis, vulnerability management support, antivirus monitoring, and helping to close security-related incidents. Key Responsibilities: 🔍 Security Monitoring & Analysis Review, monitor, and analyze daily security logs using SIEM tools (e.g., Splunk, Sentinel, Defender … . Identify false positives, escalate true positives, and assist in incident investigations. Support service desk and IT teams with closing out security-related calls and incidents. 🛠️ Threat & Vulnerability Management Assist with running and analyzing vulnerability scans; help track remediation. Monitor and manage endpoint protection and antivirus alerts. More ❯
Posted:

Senior Cloud & Applications Security Engineer

London Area, United Kingdom
Amtis - Digital, Technology, Transformation
Senior Cloud & Apps Security Engineer - £80,000 - £110,000 + Bonus + Benefits London/Remote AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security, Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and Azure Resource Manager (ARM) templates. Are you passionate about cloud security and eager to engineer robust security … solutions within AWS and Azure environments? We are seeking Senior Cloud & Application Security Engineers to help our client define and implement its cloud security strategy. If you're an experienced Security Engineering professional excited to work with cutting-edge technology and collaborate with diverse teams, we want to hear from … you! Key Skills: Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security (authentication and authorization). Proficiency in programming languages such as Python, JavaScript, GoLang More ❯
Posted:

Senior Cloud & Applications Security Engineer

london, south east england, United Kingdom
Amtis - Digital, Technology, Transformation
Senior Cloud & Apps Security Engineer - £80,000 - £110,000 + Bonus + Benefits London/Remote AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security, Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and Azure Resource Manager (ARM) templates. Are you passionate about cloud security and eager to engineer robust security … solutions within AWS and Azure environments? We are seeking Senior Cloud & Application Security Engineers to help our client define and implement its cloud security strategy. If you're an experienced Security Engineering professional excited to work with cutting-edge technology and collaborate with diverse teams, we want to hear from … you! Key Skills: Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security (authentication and authorization). Proficiency in programming languages such as Python, JavaScript, GoLang More ❯
Posted:

Senior Cloud & Apps Security Engineer

Central London, London, United Kingdom
Amtis Professional Ltd
+ Bonus + Benefits Remote/London 1-2 days p/m AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security, Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and Azure Resource Manager (ARM) templates. Are you passionate about cloud security and eager to engineer robust security solutions within AWS … and Azure environments? We are seeking Senior Cloud & Application Security Engineers to help our client define and implement its cloud security strategy. If you're an experienced Security Engineering professional excited to work with cutting-edge technology and collaborate with diverse teams, we want to hear from you! Key Skills … Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security (authentication and authorization). Proficiency in programming languages such as Python, JavaScript, GoLang, Terraform, CloudFormation (AWS More ❯
Employment Type: Permanent
Posted:

Senior Cloud & Apps Security Engineer

London, Tottenham Court Road, United Kingdom
Amtis Professional Ltd
+ Bonus + Benefits Remote/London 1-2 days p/m AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security, Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and Azure Resource Manager (ARM) templates. Are you passionate about cloud security and eager to engineer robust security solutions within AWS … and Azure environments? We are seeking Senior Cloud & Application Security Engineers to help our client define and implement its cloud security strategy. If you're an experienced Security Engineering professional excited to work with cutting-edge technology and collaborate with diverse teams, we want to hear from you! Key Skills … Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security (authentication and authorization). Proficiency in programming languages such as Python, JavaScript, GoLang, Terraform, CloudFormation (AWS More ❯
Employment Type: Permanent
Salary: £80000 - £110000/annum
Posted:

Infrastructure Engineer - Meraki

City, London, United Kingdom
Michael Page (UK)
as well as providing BAU Support to 200 users across the business. Key Responsibilities Include: Network Architecture & Management (Cisco Meraki) Lead network design and management across schools using Cisco Meraki. Optimize Meraki wireless, switching, and security appliances. Manage VLANs, segmentation, and network performance. Collaborate with vendors and internal … teams on connectivity and ISP engagement. Infrastructure, Cloud & Security Administer Microsoft 365 and Google Workspace tenants (user provisioning, MFA, licensing, Conditional Access). Manage Azure cloud services, focusing on performance, identity, and cost control. Oversee IAM, including Azure AD, SSO, and policy enforcement. Maintain SSL certificates across infrastructure. Manage MDM … platforms (Intune, Jamf) across the organisation. Implement and maintain IT security policies aligned with global standards. Coordinate external security assessments, audits, and penetration testing. Develop and maintain business continuity and disaster recovery strategies. Security Strategy & Compliance Regularly audit system configurations and permissions. Lead endpoint protection, external threat prevention, and vulnerability More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cyber Security & Strategy Manager - Consulting

London, United Kingdom
Oliver James Associates Ltd
Manager candidates based in London. This grade pays up to £120,000 basic salary plus bonuses, pension, broad benefits, professional membership costs, training & development and more. In addition, our client offers a clear and defined path for career progression where employees have complete control of their development. Key Responsibilities: Develop … and implement cyber security strategies and frameworks. Manage cyber risk and compliance with relevant standards and regulations. Work with large organisations to address cyber security challenges. Communicate effectively with stakeholders through reports and presentations. Required Skills and Experience: Strong skills in areas such as cyber strategy, cyber risk, cyber maturity … security architecture, cyber transformation and regulatory compliance for cyber. Experience of various recognised cyber security relevant standards and regulations, such as NIST CSF, CRI2.0, ISO27001, NCSC CAF, GDPR and NIS2. Experience working in a variety of environments or organisational contexts to develop cyber strategy and manage cyber risk. Desire to More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Operations Manager

London, United Kingdom
Barclay Simpson
A leading bank is seeking a skilled Security Operations Manager to strengthen its IT Security team. This role involves optimizing security controls, frameworks, and processes while supporting the integration of new technologies to enhance the bank's security posture. You will act as the right hand to the Head of … IT Security, ensuring robust security services across the organization. Key Responsibilities: Security Operations: Oversee and improve IT Security operations, ensuring efficient and compliant management of security services. Vendor Management: Manage outsourced security providers, ensuring performance meets established SLA standards. Incident Response: Lead and manage IT security incidents, including … forensics when necessary. Security Services: Drive the delivery of services including Threat & Vulnerability Management, Privileged Access Management, IAM, DLP, Network Security, and Penetration Testing. Project Leadership: Lead IT/Cybersecurity improvement projects as an SME. Risk & Compliance: Evaluate IT changes for security risks, ensuring compliance with security More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Strategy Manager - Consulting

City, London, United Kingdom
Oliver James Associates Ltd
Manager candidates based in London. This grade pays up to £90,000 basic salary plus bonuses, pension, broad benefits, professional membership costs, training & development and more. In addition, our client offers a clear and defined path for career progression where employees have complete control of their development. Key Skills Required … Strong skills in areas such as cyber strategy, cyber risk, cyber maturity, security architecture, cyber transformation and regulatory compliance for cyber. Experience of various recognised cyber security relevant standards and regulations, such as NIST CSF, CRI2.0, ISO27001, NCSC CAF, GDPR and NIS2. Experience working in a variety of environments or … organisational contexts to develop cyber strategy and manage cyber risk. Desire to work with large organisations trying to solve the latest cyber security problems. Relevant certifications, such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. Practical experience across various areas of cyber security More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cyber Security & Risk Consultant

London, United Kingdom
Oliver James Associates Ltd
consultant candidates based in London. This grade pays up to £60,000 basic salary plus bonuses, pension, broad benefits, professional membership costs, training & development and more. In addition, our client offers a clear and defined path career progression where employees have complete control of their development. Key Responsibilities: Candidates carrying … of the below skills would be particularly relevant: Strong skills in areas such as cyber strategy, cyber risk, cyber maturity, security architecture, cyber transformation and regulatory compliance for cyber. Experience of various recognised cyber security relevant standards and regulations, such as NIST CSF, CRI2.0, ISO27001, NCSC CAF, GDPR and NIS2. … Experience working in a variety of environments or organisational contexts to develop cyber strategy and manage cyber risk. Desire to work with large organisations trying to solve the latest cyber security problems. Relevant certifications, such as M.Inst.ISP, CISSP, CISM, CISA or an MSc in cyber security or a related discipline. More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cloud & Apps Security Engineer

London, England, United Kingdom
Amtis Professional
+ Bonus + Benefits Remote/London 1-2 days p/m AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security, Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and Azure Resource Manager (ARM) templates. Are you passionate about cloud security and eager to engineer robust security solutions within AWS … and Azure environments? We are seeking Senior Cloud & Application Security Engineers to help our client define and implement its cloud security strategy. If you're an experienced Security Engineering professional excited to work with cutting-edge technology and collaborate with diverse teams, we want to hear from you! Key Skills … Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security (authentication and authorization). Proficiency in programming languages such as Python, JavaScript, GoLang, Terraform, CloudFormation (AWS More ❯
Posted:

Senior Cloud & Applications Security Engineer

London, England, United Kingdom
Amtis - Digital, Technology, Transformation
Description Senior Cloud & Apps Security Engineer - £80,000 - £110,000 + Bonus + Benefits London/Remote AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security, Python, JavaScript, GoLang, Terraform, CloudFormation (AWS), and Azure Resource Manager (ARM) templates. Are you passionate about cloud security and eager to engineer robust … security solutions within AWS and Azure environments? We are seeking Senior Cloud & Application Security Engineers to help our client define and implement its cloud security strategy. If you're an experienced Security Engineering professional excited to work with cutting-edge technology and collaborate with diverse teams, we want to hear … from you! Key Skills: Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Azure, Kubernetes, Service Mesh, API gateways, and API security (authentication and authorization). Proficiency in programming languages such as Python, JavaScript More ❯
Posted:

Security Engineer - ForgeRock (London Area)

London, UK
Hybrid / WFH Options
JCW
Date: 21 April 2025 IR35 Status: PAYE A top-tier financial services organisation is seeking a Security Engineer with deep expertise in ForgeRock IAM and cloud security . You’ll be leading efforts to secure large-scale identity platforms, automate security workflows, and embed “security by design” into DevSecOps. Key … PingIDM, PingDS Advanced cloud security knowledge (AWS CLI, security controls, policies) Strong experience with PKI, HSMs, certificate lifecycle management Proficiency in penetration testing , threat modeling, and vulnerability management Automating security with GitLab CI/CD, Chef, AWS CLI Collaborating with CISO, engineering, and product teams on secure … based self-sovereign identity Hands-on coding in JavaScript, Java, or Python Apply now to join a critical security initiative protecting millions of customers and shaping IAM best practices at enterprise scale. More ❯
Employment Type: Part-time
Posted:
Threat and Vulnerability Management
London
10th Percentile
£57,500
25th Percentile
£62,188
Median
£77,500
75th Percentile
£110,000
90th Percentile
£128,125