Threat Modelling Jobs in the UK

1 to 25 of 45 Threat Modelling Jobs in the UK

Software Security Engineer, Software Security Specialist, COR5774

London, United Kingdom
Hybrid / WFH Options
Corriculo Ltd
software systems by reviewing designs, auditing code, and performing penetration tests. The role involves developing and implementing vulnerability mitigation strategies, conducting risk assessments and threat modelling, and managing vulnerabilities using industry standards. You will act as a security expert, proactively identifying and addressing potential threats, and integrating robust more »
Employment Type: Permanent, Work From Home
Salary: £75,000
Posted:

Product Security Specialist

Bristol, Avon, South West, United Kingdom
Hybrid / WFH Options
Hargreaves Lansdown Asset Management Limited
for each assigned product team/squad, and will support the implementation of secure solutions throughout the development life-cycle. You will also facilitate threat modeling workshops assisting product teams in identifying and mitigating threats. What you will be doing Oversee security related issues across multiple product teams/… Cloud serverless transformation projects. You will have the ability to work with infrastructure as code and understand complex architectures. You will Lead/facilitate threat modeling workshops with SMEs Engage with key stakeholders to identify threats and recommend countermeasures. Participate in architectural reviews of Product cloud implementations against security … such as OWASP, NIST, and ISO. Awareness of security tools and technologies, such as SAST, DAST, IAST, SCA, WAF, IDS, IPS. Experience in conducting threat modeling and risk assessments. Interview process The interview process for this role is two stages including a technical competency-based questions and a task. more »
Employment Type: Permanent, Part Time
Posted:

Development Manager

Tadworth, Surrey, South East, United Kingdom
Hybrid / WFH Options
Proactive Appointments Limited
Key Skills: Proven API Development experience In depth knowledge of API Integration Technologies, e.g. REST, SOAP Extensive exposure to secure coding principles e.g. OWASP, Threat Modelling High skills level in the ASP.NET and the .NET ecosystem and tools e.g. C#, Visual Studio, dotnet CLI Deep understanding of SOLID more »
Employment Type: Permanent, Work From Home
Salary: £70,000
Posted:

Modelling and Simulation Engineer

Farnborough, Hampshire, South East, United Kingdom
Searchability NS&D Ltd
NEW CONTRACT OPPORTUNITY AVAILABLE FOR A MODELLING AND SIMULATION ENGINEER IN FARNBOROUGH Searchability NS&D has a contract opportunity for an Modelling and Simulation Engineer with a weapons background to work across an exciting range of projects Must have active SC Clearance or be eligible to attain SC … Clearance Competitive market rate - Inside IR35 For more details please call me on 07842 002 256 or email WHAT WILL THE MODELLING AND SIMULATION ENGINEER BE DOING? The role will be to undertake M&S tasks in order to provide expertise in developing Threat Models. You will develop … fit-for-purpose threat data & models in support of the programme through to Integrated Test, Evaluation and Acceptance activities. SKILLS & EXPERIENCE REQUIRED: Weapons Background Parametric/Analytical modelling Defence related systems engineering Defence related systems analysis Experience and proven history of CAD related activity Demonstrable understanding of engineering more »
Employment Type: Contract
Posted:

Development Manager

Surrey, United Kingdom
Proactive Appointments
Key Skills: Proven API Development experience In depth knowledge of API Integration Technologies, eg REST, SOAP Extensive exposure to secure coding principles eg OWASP, Threat Modelling High skills level in the ASP.NET and the .NET ecosystem and tools eg C#, Visual Studio, dotnet CLI Deep understanding of SOLID more »
Employment Type: Permanent
Salary: GBP 75,000 Annual
Posted:

Security Architect, Consulting

London, United Kingdom
Cognizant
and initiatives and ensure compliance with security policies and regulations. Prepare and deliver security reports and presentations to senior management and stakeholders. Knowledge of threat modelling techniques such as STRIDE. Experience and Qualifications Required Bachelor's degree in computer science, information systems, cybersecurity, or related field. Good years more »
Employment Type: Permanent
Posted:

Lead Security Specialist

Bristol, Avon, South West, United Kingdom
Hybrid / WFH Options
Hargreaves Lansdown Asset Management Limited
all product teams, dealing with complex projects daily and serving as the escalation point for the Product Security Specialist (PSS). You will lead threat modelling workshops and engage with key stakeholders to identify threats and recommend countermeasures. Additionally, you will lead a team of Product Security Specialists … a team of Product Security Specialist (PSS). Providing leadership, technical guidance, and support to the Product Security Specialists. You will lead/facilitate threat modelling workshops with SMEs. Engaging with key stakeholders to identify threats and recommend countermeasures. Collaborating with strategy, transformation, and digital engineering parts of … such as OWASP, NIST, and ISO Awareness of security tools and technologies, such as SAST, DAST, IAST, SCA, WAF, IDS, IPS. Experience in conducting threat modelling and risk assessments. Interview process The interview process for this role is two stages including a technical competency-based questions and a more »
Employment Type: Permanent, Part Time
Posted:

Senior Security Engineer

London, United Kingdom
Hybrid / WFH Options
Confidential
will engineering teams to create solutions that solve or remediate security problems. This will involve a range of activities, including (but not limited to) threat modelling, selection and configuration of DevSecOps tools, high-level and detailed security designs. About you We are looking for a Senior Security Engineer … with experience in design and implementing cloud native applications in the cloud. You should have demonstrable experience in Threat modelling, design and implementing security controls in the cloud environment (AWS or Azure) Design and implementing cloud native and hybrid solutions in major public cloud platforms. Understanding of cryptographic more »
Posted:

Information Security Technical Analyst

Sussex, United Kingdom
Confidential
and solution designs , to help advise project managers and developers across the business. Maintain awareness of current and emerging security risks and the changing threat landscape and recommend mitigating solutions to project managers and developers to help ensure security enhancement and controls are pro-actively applied across the LGRI … preferred) and/or AWS security technologies is essential. Expertise and practical experience of Information Security frameworks including NIST, ISO27001/17 and STRIDE Threat Modelling Framework. Understanding of general security practices such as encryption, IAM, PAM, penetration testing, container security, security information and event management etc. and more »
Posted:

Lead Product Security Engineer

London, United Kingdom
Hybrid / WFH Options
Confidential
the Governance, Risk, and Compliance (GRC) team to inform on risk, compliance, and assurance matters related to the portfolio of change initiatives. Ensure that Threat Modeling is implemented for identified programs, projects, and engineering initiatives within the portfolio. Work closely with the Security Culture team to ensure alignment and more »
Posted:

Technical Security Architect

United Kingdom
Hybrid / WFH Options
Confidential
to product owners and delivery teams working on a viariety solutions for both colleagues and members. This will include developing solution overviews and designs, threat models, and architectural patterns. This opportunity is within the Security Architecture team, and part of Security and Resilience. The team have a challenging mandate … understanding their problems helping find secure solutions Assuring and advising on secure systems design Creating patterns and other architecture artefacts Good knowledge of cryptography Threat Modelling using common industry techniques (such as STRIDE, Attack Trees, PnG), and working with a recognised risk framework to evaluate severity and priority. … level you will have: A good general appreciation of enterprise-wide security threats, controls and principles across the above areas Experience or aptitude for threat evaluation and documenting enterprise-level architectural solutions that mitigate, or offer a risk aligned roadmap to mitigation. Producing artefacts such as Security designs, patterns more »
Posted:

Enterprise Architect

United Kingdom
Hybrid / WFH Options
Confidential
ecommerce or retail sectors Strong domain driven design (DDD) skills and experience Familiarity with high-availability and resilience engineering patterns, secure design principles and threat modelling. Expertise with software used to create clear strategic/architectural documentation and assets. Educated to degree level or equivalent experience. Location: Fully Remote more »
Posted:

Security Architect

London, United Kingdom
Confidential
ideal candidate for the Security Architect will have the following skills and experience: Extensive experience designing security solutions, primarily for on-prem Experience with Threat Modelling frameworks Thorough knowledge of Information Security controls Excellent communication skills, with the ability to translate complex engineering terms into language that business more »
Posted:

Senior Threat Modeller

United Kingdom
Hybrid / WFH Options
Confidential
Senior Threat Modeller Remote-based with occasional travel to Preston or Frimley £45,000 - £55,000 2.5% bonus excellent bens What you ll be doing - Senior Threat Modeller Building and implementing processes and procedures for continuous and effective threat modelling capability Producing reports detailing key threats … digest Contributing to plans and delivering activities in support of organisational and security development needs in accordance with regulatory requirements and changes in the threat landscape Maintaining up to date knowledge of cyber security threats, analyst toolsets and relevant activity group tactics, techniques, and procedures (TTPs) Identifies security gaps … and builds attack simulations to support Purple Team engagements by illustrating potential attack patterns to prioritise future remediation efforts Your skills and experiences - Senior Threat Modeller An in-depth understanding of the external security environment and how the organisation reacts to security threats Good knowledge of cyber threat more »
Posted:

Senior Threat Analyst

Preston, Lancashire, United Kingdom
Confidential
Senior Threat Analyst Can you build and implement effective threat modelling processes? Join my clients Cyber Operations team to build and implement effective threat modelling processes, produce strategic threat reports, and support organizational security development. Staying ahead of cyber threats, identify security gaps, and … design attack simulations for Purple Team engagements. Key Responsibilities: Develop and execute continuous threat modelling procedures. Create strategic threat reports for their business units. Support security development in line with regulatory changes. Maintain up-to-date knowledge of cyber threats and analyst tools. Identify security gaps and … build attack simulations. Skills & Experience: Deep understanding of the external security environment and threat response. Knowledge of the cyber threat landscape, current affairs, and geopolitics. Expertise in infrastructure analysis (perimeters, network endpoints, user behavior). Package: £50,000 - £55,000 Hybrid - 2/3 split Huge training budget more »
Posted:

Principal Security Consultant

Bristol, Gloucestershire, United Kingdom
Confidential
inherently secure. - Ideally you will have worked across the system lifecycle, undertaking the security risk management activities required to support each phase, from initial threat and risks assessments and specification of security requirements, through to overseeing implementation and testing of socio-technical security architectures. You will also have experience … assurance workstreams for projects delivering secure systems and services within a government context. Undertaking and producing socio-technical security risk assessments, ideally including technical threat modelling (e.g. using STRIDE). Development and implementation of risk management strategies and plans. Specification, development and technical assurance of security policies and … Knowledge and understanding of core cyber security risk management areas, including but not limited to: Security governance and risk management approaches, tools, and techniques. Threat modelling (e.g. STRIDE) and socio-technical risk assessment (e.g. NIST 800-30) methodologies. Attack classification and characterisation frameworks (e.g. MITRE ATT&CK) Computer more »
Posted:

DevSecOps Engineer

East London, London, United Kingdom
Hybrid / WFH Options
MECS Communications Ltd
office, 4 days remote working, work from home Key Skills: Continuous Integration (CI), Continuous Deployment (CD), Infrastructure as Code (IaC), Security Automation, Vulnerability Management, Threat Intelligence, Secure Software Development Lifecycle (SSDLC), Compliance as Code, Security Orchestration, Container Security, Microservices Security, Threat Modelling, Secure Configuration Management, Secure DevOps more »
Employment Type: Permanent, Work From Home
Salary: £65,000
Posted:

Security Architect/ Security Consultant

Manchester, North West, United Kingdom
Hays
align with industry best practice. Experience of managing a wide range of internal and external stakeholders within a large and complex organisation. Experience of threat modelling including the Microsoft STRIDE process and exposure to industry best practices for describing threat such as MITRE ATT&CK What you more »
Employment Type: Contract
Posted:

Senior Security Consultant

United Kingdom
Hybrid / WFH Options
Maclean Moore Ltd
Knowledge/experience of cloud security (AWS/Azure), e.g. web components integration, containerisation (such Docker, Kubernetes, OpenShift) and APIs; Knowledge/experience of threat modelling and threat assessment; Experience working in an Agile or DevSecOps methodology/tools e.g GIT, Maven/Gradle, Jenkins, Nexus, Terraform more »
Employment Type: Contract
Rate: Up to £500 per day
Posted:

Software Development Manager - .NET

Epsom, Surrey, South East, United Kingdom
Hybrid / WFH Options
Reed Technology
Skills & Qualifications: Proven experience in API development and integration technologies such as REST and SOAP. Extensive knowledge of secure coding principles, including OWASP and Threat Modelling. Excellent hands-on coding skills using ASP.NET, the .NET ecosystem, and tools like C#, Visual Studio, and dotnet CLI. A deep understanding of more »
Employment Type: Permanent, Work From Home
Posted:

Security Solution Architect

London, United Kingdom
Hybrid / WFH Options
Confidential
Knowledge and experience of applying best practice for solution security (e.g., OWASP, NCSC cloud security principles) Strong understanding and practical experience of performing security threat modelling and articulating risk profiles Deep understanding of security concepts and demonstrated application to technical solutions Knowledge and experience of applying best practice more »
Posted:

Internal Audit-London-Vice President-Technology Audit

London, United Kingdom
Confidential
Vulnerability assessment and penetration testing methodologies and processes for web, thick-client and mobile applications Experience with Splunk and/or other SIEM platforms Threat modelling, intelligence and incident response Management, monitoring and operations of technology (backups, change management, system monitoring, incident/problem Management) Operational resilience, business more »
Posted:

Principal Security Engineer

London, United Kingdom
Confidential
Developing cyber defence capabilities to protect LSEG from cyber threats that impact the confidentiality, integrity, and availability of group assets. Domain area is Vulnerability & Threat Management. Reports to Senior Manager, Vulnerability & Threat Management No direct FTE reports, but may handle contingents and vendor/partner resources. Location/… Key Risk Indicators, are delivered and handled. Technical/Job Functional Knowledge Knowledge and experience of the architecture, engineering and operation of vulnerability and threat management technology. Discovery and classification of vulnerabilities across systems and platforms. Guidance & assurance aspects of remediation. Level of knowledge in the domain technology area … level. A solid grasp of information security principles and standard methodologies. Adversary Tools, Techniques and Procedures. A deep understanding of TTP s is required. Threat Modelling experience. Broad technology knowledge across non-core domain area. Modern engineering practices, automation to drive efficiencies. Infrastructure as Code mentality. Code/ more »
Posted:

Senior DevSecOps Engineer, Italy

London, United Kingdom
Confidential
Systems Security Professional (CISSP) Certified Authorization Professional (CAP) Certified Secure Software Lifecycle Professional (CSSLP) HealthCare Information Security and Privacy Practitioner (HCISPP) Experience Experience in Threat Modeling. A proven track record as engineer and consultant, capable of working directly with teams, embedded in the delivery model. Experience with Kubernetes, Openshift more »
Posted:

First VP, Business Information and Cyber Security Manager

London, United Kingdom
Confidential
required. At least 12 years of experience in Information Security and risk related work preferable in large organization especially banking environment. Deep understanding of threat modeling and risk management principles and best practices, and able to explain it in a structured and easy-to-understand manner. Strong understanding of more »
Posted:
Threat Modelling
10th Percentile
£46,875
25th Percentile
£56,938
Median
£72,500
75th Percentile
£83,750
90th Percentile
£105,000