slough, south east england, united kingdom Hybrid / WFH Options
Hunter Bond
architectures. Review technical designs for security compliance and risk. Establish secure-by-design guidelines and support DevSecOps practices. Evaluate new technologies and lead security tool POCs and integrations. Perform threatmodelling and security risk assessments. Collaborate with cross-functional teams on secure architecture and governance. Provide security expertise, training, and mentorship to technical teams. Support security monitoring and More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Hunter Bond
architectures. Review technical designs for security compliance and risk. Establish secure-by-design guidelines and support DevSecOps practices. Evaluate new technologies and lead security tool POCs and integrations. Perform threatmodelling and security risk assessments. Collaborate with cross-functional teams on secure architecture and governance. Provide security expertise, training, and mentorship to technical teams. Support security monitoring and More ❯
Design (SbD) and Operational Technology (OT) security, specifically aligned to ISO 62443 standards. Key Responsibilities: Apply MoD SbD principles across system and solution design. Carry out risk assessments and threatmodelling to embed security throughout project lifecycles. Provide expertise in OT environments (industrial control systems, SCADA, PLCs, etc.), with specific alignment to ISO 62443. Develop and maintain security More ❯
Harmondsworth, West Drayton, Middlesex, England, United Kingdom Hybrid / WFH Options
Hays Specialist Recruitment Limited
Recognised cybersecurity certifications or qualifications desirable. Deep technical expertise in security tools and methodologies, including: Static Application Security Testing (SAST) Dynamic Application Security Testing (DAST) Software Composition Analysis (SCA) ThreatModelling Demonstrated success in leading or advising teams on secure development practices. Senior-level experience with a solid understanding of cloud migration challenges and solutions. What you need More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Holland & Barrett International Limited
years of experience in cloud security, particularly with AWS, and at least 2+ years in software development. Strong understanding of cloud and application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Kubernetes, Service Mesh, API gateways, and API Security (authentication and authorization). Proficiency in programming languages such as Python More ❯
be a part of something from the start! DevSecOps Engineer - Responsibilities: Collaborate with architects and developers to review application designs and code for security vulnerabilities. Establish and drive a threat modeling program, ensuring security is considered early in the design phase. Define and integrate security testing plans into the software development lifecycle (SDLC). Oversee and perform application security More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities: Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement risk management strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and …/53, OWASP) . Experience with risk management methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge of secure development practices, penetration testing, and vulnerability assessments. Ability to communicate security risks and strategies to technical and non-technical stakeholders. Experience in incident More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
also contribute to security compliance and best practices, ensuring products meet regulatory and industry standards. Key Responsibilities: Identify security requirements and integrate controls into product development. Conduct risk assessments, threat modeling, and vulnerability analysis. Develop and implement risk management strategies using security frameworks. Collaborate with development teams to ensure security best practices and secure-by-design principles. Identify and …/53, OWASP) . Experience with risk management methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). Proficiency in security threat modeling and risk assessments. Knowledge of secure development practices, penetration testing, and vulnerability assessments. Ability to communicate security risks and strategies to technical and non-technical stakeholders. Experience in incident More ❯
london, south east england, united kingdom Hybrid / WFH Options
InfoSec People Ltd
people, and processes, and can explain it clearly. What you’ll do Assess and communicate security risks clearly Work with engineers, architects, and ops to design practical controls Use threatmodelling to identify real-world attack paths Stay ahead of the evolving threat landscape What we’re looking for Strong understanding of risk, and how security interacts More ❯
slough, south east england, united kingdom Hybrid / WFH Options
InfoSec People Ltd
people, and processes, and can explain it clearly. What you’ll do Assess and communicate security risks clearly Work with engineers, architects, and ops to design practical controls Use threatmodelling to identify real-world attack paths Stay ahead of the evolving threat landscape What we’re looking for Strong understanding of risk, and how security interacts More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
InfoSec People Ltd
people, and processes, and can explain it clearly. What you’ll do Assess and communicate security risks clearly Work with engineers, architects, and ops to design practical controls Use threatmodelling to identify real-world attack paths Stay ahead of the evolving threat landscape What we’re looking for Strong understanding of risk, and how security interacts More ❯
Milton Keynes, Buckinghamshire, United Kingdom Hybrid / WFH Options
Banco Santander SA
strategy Experience defining and evolving RESTful APIs following best practices for scalability, versioning and documentation Experience with event-driven architectures Expertise in authorisation and security protocols, secure architecture practices, threatmodelling Problem-Solving Skills and an effective approach to tacking complex challenges It would also be nice for you to have: Understanding and practical experience with C4 Model More ❯
fixer', a Cyber Security specialist capable of resolving issues, rather than just noting them and passing them on. You will be responsible for identifying threats via penetration testing and threatmodelling, working with DevOps, IT and compliance teams to enforce policies, respond to risks and improve defences. To apply for this fantastic role you will be able to More ❯
our flagship products cyber resilient? We are looking for a Security Engineer to join our Information Security team at our Oxford headquarters. You will be working across software engineering, modelling, and data science bringing your full self, including your security knowledge and expertise to the business. As a Security Engineer at Aurora Energy Research, you will enable our colleagues … reduction outcomes. Build secure products. Ensure security is considered throughout the product and software development life cycle. Provide security best practice, build security design patterns, complete security architecture reviews, threat models and risk assessments. Help solve engineering problems by implementing technical controls to mitigate risk. Ensure we are deploying solutions into a secure environment . Ensure we build solutions More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Holland & Barrett International Limited
SDLC) that enables development teams to deliver high-quality applications quickly while implementing essential controls for software integrity, authenticity, and third-party library management. Risk Assessments: Conduct risk assessments, threat modeling, and architecture reviews alongside development teams, producing artifacts to drive the implementation of effective security controls. Standards Development: Own the creation and maintenance of tailored security standards and … strategies. Key Requirements: Essential: 5+ years of experience in application security, with at least 3+ years in software development. Strong understanding of application security concepts, including secure coding practices, threat modeling, vulnerability management, and access control mechanisms. Experience with AWS, Kubernetes, Service Mesh, and API Security (including authentication and authorization). Proficiency in programming languages such as Python, Java More ❯
trust, HSMs, PKI, DRM and designing secure systems. Experience implementing and integrating with secure RESTful Web Services. Experience with AWS security services such as KMS and ACM. Experience with threat modeling and an awareness of the Internet threat model. Experience with DevOps environments that support security at speed, i.e., SecDevOps. Ability to accurately estimate software tasks and work More ❯
SARL (Irish Branch) Do you want to work on planetary scale incident response solutions in the cloud? Are you skilled at performing Incident Response activities and helping customers build threat detection and incident response capabilities using highly scalable computing architectures? Are you excited to help customers respond to security incidents and automate security operations giving them unprecedented capability and … agility? Do you enjoy working on fast-paced complex projects focused on game changing business outcomes for customers globally? As a member of the Threat Detection and Incident Response Practice in the AWS Global Service Security you will have the opportunity to help customers respond to security incidents and pioneer technically superb security solutions to help customer operate securely … resource that earns the trust of customer stakeholders before, during, and after a security event. Independently contribute to teams that include Amazonians, partners, and customers to build and deploy threat detection and incident response capabilities. Design, build, and deploy solutions to automate security operations and incident response on AWS. Independently contribute to internal builder projects to develop new consulting More ❯