and usability. Knowledge of security standards and regulations (e.g. NCSC, ISO, SoC, NIST, PCI, GDPR). Experience in application architecture, software development and / or infrastructure architecture. Experience testing the security of software and infrastructure using appropriate security tools. Experience with Continuous Security, Continuous Integration and Continuous Delivery … techniques. Experience of network security (e.g. OSI, TCP/IP), web application security (e.g. OWASP) and cryptographic controls (e.g. PKI, TLS). Demonstrated ability in managing, mentoring and coaching members of your team and wider community. Excellent communication skills, with the ability to convey … security complexities to audiences of various technical abilities (e.g. senior stakeholders, development teams). DESIRABLE: Experience of Identity management and authentication / authorisation products and patterns. End-to-end security involvement, including governance, risk and compliance, operational security, supply chain security and secure user management. Penetration testing qualifications More ❯