Security Lead
7 days ago
We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and security teams to proactively identify and mitigate potential threats in our cloud-based infrastructure.
The AWS Security Lead (Threat Modeling) will be responsible for conducting risk assessments, defining security requirements, and building threat models to guide security architecture and design in AWS environments. This role requires a strategic thinker with hands-on experience in AWS security, threat modeling, and a passion for securing cloud-native applications.
Key Responsibilities:
Threat Modeling & Risk Assessments
Lead the development of threat models for AWS-based applications and infrastructure.
Conduct regular threat assessments and risk analyses for new and existing systems.
Collaborate with development, architecture, and DevOps teams to design security into the cloud-native architecture.
Create detailed reports, diagrams, and other documentation to communicate threat models, risk levels, and mitigation strategies.
Security Architecture & Best Practices
Define security requirements for cloud-based applications and infrastructure, ensuring alignment with AWS security best practices.
Work closely with engineering teams to integrate security controls throughout the software development lifecycle (SDLC).
Evaluate and recommend security tools, platforms, and frameworks for effective threat detection, prevention, and response.
Cloud Security Leadership
Serve as the subject matter expert on AWS security and threat modeling methodologies.
Provide guidance on cloud security principles, including identity and access management (IAM), data protection, network security, and incident response in AWS environments.
Stay current on the latest cloud security trends, AWS security features, and emerging threats.
Collaboration & Cross-functional Communication
Partner with other security leaders to ensure security considerations are integrated into all stages of development and deployment.
Assist in building a culture of security awareness across engineering and operations teams.
Lead workshops and training sessions to raise security awareness and improve threat modeling practices within the organization.
Incident Response & Vulnerability Management
Lead post-incident reviews related to security breaches or vulnerabilities in AWS infrastructure.
Assist in the identification and resolution of security vulnerabilities related to AWS resources.
Collaborate with the Incident Response team to help identify root causes and implement lessons learned.
Required Qualifications:
Education:
Bachelor's degree in Computer Science, Information Security, or a related field. Relevant certifications or equivalent practical experience is a plus.
Experience:
7+ years of experience in information security, with a focus on AWS cloud security, threat modeling, and risk management.
Proven experience leading threat modeling exercises and designing secure systems within AWS.
Deep knowledge of AWS security services (e.g., AWS IAM, VPC, KMS, GuardDuty, Security Hub, Inspector).
Hands-on experience with cloud-native security tools, frameworks, and standards (e.g., CIS AWS Foundations Benchmark, NIST, OWASP).
Experience with secure SDLC practices and DevSecOps methodologies.
Technical Skills:
Strong knowledge of threat modeling methodologies (e.g., STRIDE, PASTA, OCTAVE).
Familiarity with cloud-native security tools for monitoring, vulnerability management, and threat detection.
Understanding of encryption, tokenization, and data protection strategies in the cloud.
Expertise in IAM and access controls, including role-based access control (RBAC), policies, and permissions in AWS.
Certifications (Preferred):
AWS Certified Security – Specialty.
Certified Information Systems Security Professional (CISSP).
Certified Cloud Security Professional (CCSP).
Certified Information Security Manager (CISM).
-
Fire and Security Tutor
3 months ago
UK, UK, United Kingdom Complete Security Recruitment Full timeFire & Security Role: Are you an experienced Fire and Security Engineer to upskill as an apprenticeship tutor?Paying up to £40kWhat can you expect as an employee: Fully Funded QualificationMonday to FridayBasic Salary starting at £37,000Performance related bonusAccess to the company’s pension scheme25 days holiday plus bank holidaysAbout the role: An...
-
Lead Security Architect
7 days ago
UK, UK, United Kingdom Intaso Full timeRole - Lead Security Architect ( DevSecOps)Location - Remote (occasional travel)Salary - up to £110,000 + Bonus + Car Allowance Intaso's key client have a requirement for a Lead Security Architect with strong DevSecOps and SDLC experience. This role is 90+% remote but will have occasional travel to one of the local offices. About the role:This position...
-
Lead Security Architect
7 days ago
UK, UK, United Kingdom Barclay Simpson Full timeThis FTSE listed firm is currently investing in DevSecOps practices and principles to ensure the security of its secure development life cycle. They are seeking a Lead Security Architect with strong experience in secure application pipelines to help them develop patterns which can be reused, to design secure solutions and to offer internal guidance and...
-
AWS Security lead
7 days ago
London, UK, UK, United Kingdom Response Informatics Full timeJob Summary:We are seeking an experienced and highly skilled AWS Security Lead with expertise in Threat Modeling to join our dynamic team. The ideal candidate will have a deep understanding of cloud security principles, threat modeling methodologies, and AWS security best practices. This individual will work closely with development, engineering, and...
-
Lead Threat Detection Engineer
3 months ago
UK, UK, United Kingdom Iceberg Cyber Security Full timeI'm currently representing a reputable Financial organisation located in Surrey, which are looking to hire a Lead Threat Detection Engineer. This position is best suited for a senior security engineer skilled in complex security tooling and automation, who is looking to take the next step into a leadership role. My client operates in both a Windows and...
-
Lead Security Engineer – Route to Leadership
7 days ago
London,, UK, United Kingdom Iceberg Cyber Security Full timeMy client hires top academic performers and those who are able to problem solve and work in highly demanding and changing technology environments. Are you an infrastructure-focused cybersecurity engineer with a deep understanding of both on-premises and cloud-based network security? We’re looking for an experienced professional to step into a hands-on,...
-
Cyber Security Awareness Training Lead
2 weeks ago
UK, UK, United Kingdom Maxwell Bond Full timeCybersecurity Awareness and Training Lead - Remote first - £63,000Role Overview:As a Cybersecurity Awareness and Training Lead, you will be responsible for developing and delivering comprehensive security awareness programs to foster a strong cybersecurity culture across the organization. Collaborating with stakeholders across IT and OT domains, you will...
-
Interim Health
2 months ago
London, UK, UK, United Kingdom The Management Recruitment Group Full time- Interim Health & Safety, and Security Lead- Prestigious public sector organisation- London location- Full time / 3-6 month contract- £300 - £330 per day (Premium PAYE rate)Know health and safety? Know security? Know how to put them both together and be that font of all knowledge? The you are who my client is crying out for.Whilst they recruit permanently...
-
Security Lead
2 weeks ago
London,, UK, United Kingdom Hellowork Consultants Full timeJob Description-Experience:7+ years of experience in information security, with a focus on AWS cloud security, threat modeling, and risk management.Proven experience leading threat modeling exercises and designing secure systems within AWS.Deep knowledge of AWS security services (e.g., AWS IAM, VPC, KMS, GuardDuty, Security Hub, Inspector).Hands-on...
-
Managing Director
4 weeks ago
UK, UK, United Kingdom Rapid Security Services Limited Full timeCompany DescriptionRapid Security Services Ltd is a leading provider of Facilities Management solutions in the United Kingdom. Since 2018, we have specialized in delivering high standard, cost-effective security solutions for various sectors, including retail, corporate, concierge, event, construction, CCTV, and dog handling services. Our security personnel...
-
Security Consultant
1 month ago
UK, UK, United Kingdom Cloud Decisions Full timeMicrosoft Data Security Senior Consultant To £85,000Remote opportunity!This would be working for a leading provider of innovative IT solutions, dedicated to helping businesses achieve their goals through cutting-edge technology and exceptional service. Their team is composed of highly skilled professionals who are passionate about delivering the highest...
-
Security Architect
7 days ago
UK, UK, United Kingdom DCS Technology Full timeSecurity Architect (Microsoft Technologies) – Remote - Up to £75,000 per annumAbout Us: At DCS Technology, we’re dedicated to supporting candidates find their next opportunity by partnering with top-tier clients. We’re currently seeking a highly skilled Security Architect with deep expertise in Microsoft technologies to play a pivotal role in...
-
Information Security Consultant
2 months ago
UK, UK, United Kingdom Barclay Simpson Full timeInformation Security Consultant required for market-leading financial services firm. You will recommend, develop, implement, and monitor enterprise-wide information security policies, procedures, and operational guidelines. You will also research and develop solutions for information security issues and promote information security awareness.Core...
-
Cyber Incident Response
7 days ago
London,, UK, United Kingdom Iceberg Cyber Security Full timeWe are excited to partner with an investment bank in London that is looking to expand its EMEA capability at the AVP level. They seek a specialist with relevant experience in incident response, threat modeling, and cybersecurity frameworks. The ideal candidate should have knowledge of security technologies, operating systems, networks, and SIEM tools....
-
Marketing Executive
4 weeks ago
UK, UK, United Kingdom Longwall Security Part time**This is a 12-month contract with the potential to go permanent**The last 10 months has seen us introduce a brand new marketing capability into Longwall to drive pipeline growth and raise our brand awareness. The team consists of a part-time Marketing Director and full-time Digital Marketing Manager. This role will cover the day to day marketing activities...
-
Head of Security Operations Delivery
4 months ago
UK, UK, United Kingdom ESP Recruitment London Full timeOur client, a high profile Estate and venue in London with over 4 million visitors per year, is looking for a senior security professional to lead the tactical delivery of security operations. Leading a team of Duty Managers, Supervisors, Security Controllers and Security Officers, the Head of Security Operations Delivery will work with internal departments...
-
Cloud Security SME
7 days ago
UK, UK, United Kingdom TalentHawk Full timeJob Title: Cloud Security Posture Management (CSPM) SME - WizLocation: RemoteAbout the Role:Our client is seeking a highly experienced CSPM Subject Matter Expert (SME) to lead the development and execution of a comprehensive cloud security posture strategy. The CSPM SME will define and implement a CSPM managed security service (MSS), provide best practice...
-
Cyber Security Practice Director
6 days ago
UK, UK, United Kingdom SoftServe Full timeWE ARESoftServe is looking for Cyber Security Director to run a Multi-million Euro Security Services Pipeline in the EU. The ideal candidate will have an extensive background in developing, leading, and delivering Cyber Security engagements, coupled with the stature and capability to engage with executives at CTO/CXO/Board levels. Experience in EU Public...
-
Cyber Security Analyst
3 weeks ago
UK, UK, United Kingdom MLM SEARCH Full timeA global financial services client is seeking a Cyber Security Analyst to take on a key operational role within their Cyber Infrastructure team. This role involves supporting the Cyber Engineering Lead with critical administrative tasks in line with the organization's broader Cyber Security Strategy. Candidate Profile:The ideal candidate will have a...
-
Cyber Security Engineer
2 months ago
UK, UK, United Kingdom GCS Full timeThe Cyber Security Engineer holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences, utilizing...