AWS Security lead

1 month ago


United Kingdom Response Informatics Full time

Job Summary:

We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and security teams to proactively identify and mitigate potential threats in our cloud-based infrastructure.

The AWS Security Lead (Threat Modeling) will be responsible for conducting risk assessments, defining security requirements, and building threat models to guide security architecture and design in AWS environments. This role requires a strategic thinker with hands-on experience in AWS security, threat modeling, and a passion for securing cloud-native applications.

Key Responsibilities:

  • Threat Modeling & Risk Assessments
  • Lead the development of threat models for AWS-based applications and infrastructure.
  • Conduct regular threat assessments and risk analyses for new and existing systems.
  • Collaborate with development, architecture, and DevOps teams to design security into the cloud-native architecture.
  • Create detailed reports, diagrams, and other documentation to communicate threat models, risk levels, and mitigation strategies.
  • Security Architecture & Best Practices
  • Define security requirements for cloud-based applications and infrastructure, ensuring alignment with AWS security best practices.
  • Work closely with engineering teams to integrate security controls throughout the software development lifecycle (SDLC).
  • Evaluate and recommend security tools, platforms, and frameworks for effective threat detection, prevention, and response.
  • Cloud Security Leadership
  • Serve as the subject matter expert on AWS security and threat modeling methodologies.
  • Provide guidance on cloud security principles, including identity and access management (IAM), data protection, network security, and incident response in AWS environments.
  • Stay current on the latest cloud security trends, AWS security features, and emerging threats.
  • Collaboration & Cross-functional Communication
  • Partner with other security leaders to ensure security considerations are integrated into all stages of development and deployment.
  • Assist in building a culture of security awareness across engineering and operations teams.
  • Lead workshops and training sessions to raise security awareness and improve threat modeling practices within the organization.
  • Incident Response & Vulnerability Management
  • Lead post-incident reviews related to security breaches or vulnerabilities in AWS infrastructure.
  • Assist in the identification and resolution of security vulnerabilities related to AWS resources.
  • Collaborate with the Incident Response team to help identify root causes and implement lessons learned.

Required Qualifications:

  • Education :
  • Bachelor's degree in Computer Science, Information Security, or a related field. Relevant certifications or equivalent practical experience is a plus.
  • Experience :
  • 7+ years of experience in information security, with a focus on AWS cloud security, threat modeling, and risk management.
  • Proven experience leading threat modeling exercises and designing secure systems within AWS.
  • Deep knowledge of AWS security services (e.g., AWS IAM, VPC, KMS, GuardDuty, Security Hub, Inspector).
  • Hands-on experience with cloud-native security tools, frameworks, and standards (e.g., CIS AWS Foundations Benchmark, NIST, OWASP).
  • Experience with secure SDLC practices and DevSecOps methodologies.
  • Technical Skills :
  • Strong knowledge of threat modeling methodologies (e.g., STRIDE, PASTA, OCTAVE).
  • Familiarity with cloud-native security tools for monitoring, vulnerability management, and threat detection.
  • Understanding of encryption, tokenization, and data protection strategies in the cloud.
  • Expertise in IAM and access controls, including role-based access control (RBAC), policies, and permissions in AWS.
  • Certifications (Preferred):
  • AWS Certified Security – Specialty.
  • Certified Information Systems Security Professional (CISSP).
  • Certified Cloud Security Professional (CCSP).
  • Certified Information Security Manager (CISM).


  • AWS Security lead

    1 month ago


    United Kingdom Response Informatics Full time

    Job Summary: We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and...

  • Security Lead

    1 month ago


    United Kingdom Response Informatics Full time

    We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and security teams to...

  • Security Lead

    1 month ago


    United Kingdom Response Informatics Full time

    We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and security teams to...


  • United Kingdom Hawksworth Full time €100,000 - €120,000

    Hawksworth are now searching for a talented, Senior Microsoft Security Architect. This is a senior post so we do need tenure as a Microsoft Security Architect. Ideally hybrid working from Belfast OR Tampa or Chicago OR remote from the UK with travel to meetings when required. Must have significant tenure as an Architect, background in IT / Cloyd...


  • United Kingdom Hawksworth Full time €100,000 - €120,000

    Hawksworth are now searching for a talented, Senior Microsoft Security Architect. This is a senior post so we do need tenure as a Microsoft Security Architect. Ideally hybrid working from Belfast OR Tampa or Chicago OR remote from the UK with travel to meetings when required. Must have significant tenure as an Architect, background in IT / Cloyd...


  • United Kingdom Computappoint Full time

    AWS Cloud Security Engineer Opportunity type: Contract (Outside IR35) Rate: £600/day Location: Hybrid (3 days/week onsite) Duration: Initial 3-month contract with extension opportunities Start: ASAP About you: You are a highly skilled AWS Security Engineer with expert-level cloud infrastructure capabilities. you will demonstrate advanced...


  • United Kingdom Computappoint Full time

    AWS Cloud Security Engineer Opportunity type: Contract (Outside IR35) Rate: £600/day Location: Hybrid (3 days/week onsite) Duration: Initial 3-month contract with extension opportunities Start: ASAP About you: You are a highly skilled AWS Security Engineer with expert-level cloud infrastructure capabilities. you will demonstrate advanced...

  • Junior Architect

    3 weeks ago


    United Kingdom Maxwell Bond Full time €80,000

    Security Consultant Architecture - Remote First - £80,000 We’re seeking a well-rounded Security Consultant comfortable in both technical and architectural discussions. You’ll need strong technical fundamentals across networking, infrastructure, applications (on-premise and cloud, particularly AWS), and SDLC tools, with hands-on experience in...

  • Junior Architect

    3 weeks ago


    United Kingdom Maxwell Bond Full time €80,000

    Security Consultant Architecture - Remote First - £80,000 We’re seeking a well-rounded Security Consultant comfortable in both technical and architectural discussions. You’ll need strong technical fundamentals across networking, infrastructure, applications (on-premise and cloud, particularly AWS), and SDLC tools, with hands-on experience in...


  • United Kingdom Digital Skills ltd Full time €525

    Senior AWS DevOps/Platform Engineer 6 Month Contract Hybrid working, 4 days remote - 1 day on-site in South London My client is looking for a top-level AWS Platform Engineer who’s ready to lead architecture decisions, experiment boldly, and push boundaries in delivering secure, scalable, and dynamic cloud platforms. You’ll collaborate with...


  • United Kingdom Hayward Hawk Full time

    About Hayward Hawk:We are a leading company in the tech industry, known for our innovative approach to cloud computing and infrastructure management. Our team is dedicated to delivering high-quality solutions that meet the evolving needs of our clients.Requirements:Bachelor's degree in Computer Science, Information Technology, or a related field.Experience...


  • United Kingdom C&C Consulting Full time

    This leading consultancy with clients in the public sector is looking for an Infrastructure Engineer with strong AWS and Cloudflare experience to spearhead their technical advancements and ensure the security and performance of their systems to their clients. This role requires a deep understanding of cloud technologies, particularly AWS and Cloudflare,...


  • United Kingdom Control Plane Limited Full time

    Principal Cloud Native Security Consultant Remote Principal Cloud Native Security Consultant Report To: Security Engineering Manager Job Location: Remote UK (Must be able to obtain UK SC or above) Employment Status: Full Time We are a London based cloud technology company, helping to keep people safe online. We work with cloud providers and...

  • Risk Management

    2 months ago


    United Kingdom TalentHawk Full time

    Cloud Security Posture Management (CSPM) SME - Wiz Location: Remote Our client is seeking a highly experienced CSPM Subject Matter Expert (SME) to lead the development and execution of a comprehensive cloud security posture strategy. The CSPM SME will define and implement a CSPM managed security service (MSS), provide best practice guidance for securing...

  • Risk Management

    2 months ago


    United Kingdom TalentHawk Full time

    Cloud Security Posture Management (CSPM) SME - Wiz Location: Remote Our client is seeking a highly experienced CSPM Subject Matter Expert (SME) to lead the development and execution of a comprehensive cloud security posture strategy. The CSPM SME will define and implement a CSPM managed security service (MSS), provide best practice guidance for securing...

  • Technical Lead

    1 week ago


    United Kingdom Ocho Full time

    We are seeking an experienced Python/AWS Engineer to join our team and help us design, develop, and deploy cloud-based solutions on AWS. As a member of our pioneering UK-based team, you will have the opportunity to work on impactful projects that truly make a difference in the world.The ideal candidate will have 1-3+ years of hands-on experience in Python...

  • AWS Architect

    3 weeks ago


    United Kingdom Explore Group Full time €690

    DV Cleared AWS Architect - Inside IR35 - £690 per day Location: Hybrid (UK-based, with occasional on-site requirements) Contract Type: 12-Month Contract Design and implement scalable and secure AWS Cloud architectures aligned with client needs. Incorporate DevSecOps principles to ensure security and automation in cloud deployments. Apply...

  • Quality Service Lead

    1 month ago


    United Kingdom Response Informatics Full time

    We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and security teams to...

  • Security Consultant

    1 week ago


    United Kingdom Secure Impact Ltd Full time €85,000 - €100,000

    Principal Security Consultant (Offensive Services) Founded by renowned cybersecurity expert James Lyne and affiliated with the SANS Institute, we are a company that has achieved exceptional feats in just four years. As a purpose-driven team, we focus on high-quality, meaningful offensive security services rather than commoditised penetration testing. Our...

  • Security Consultant

    1 week ago


    United Kingdom Secure Impact Ltd Full time €85,000 - €100,000

    Principal Security Consultant (Offensive Services) Founded by renowned cybersecurity expert James Lyne and affiliated with the SANS Institute, we are a company that has achieved exceptional feats in just four years. As a purpose-driven team, we focus on high-quality, meaningful offensive security services rather than commoditised penetration testing. Our...