Threat Modelling Jobs in the UK

1 to 25 of 318 Threat Modelling Jobs in the UK

Threat Analyst

London, United Kingdom
Hybrid / WFH Options
Our Future Health
We are seeking a Threat Analyst to join our rapidly growing Information Security team. This is a unique opportunity for an aspiring and motivated professional to be at the forefront of our cyber defence strategy, protecting our brand from existing and emerging threats. You will combine the expertise of … a Threat Hunter and Cyber Threat Intelligence Analyst, and will work alongside our Senior Threat Analyst to build our threat intelligence and hunting capabilities from the ground up. You'll have a major input on what new tooling and services we use and the backing to … Seize the opportunity to join a dynamic security team, reporting to the Head of Cyber Defence, and lead the development of advanced CTI and threat hunting strategies, seamlessly integrating into our security processes and driving continuous improvements. What you'll be doing In this role, your key responsibilities will More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Information Security Specialist

United Kingdom
Barclay Simpson
Security Specialist required for market leading financial services firm. You will be championing Secure by Design across all change and delivery programmes, embarking on threat modelling and giving straight up advice for colleagues on security best practice and regulatory requirements. What you'll be doing Build Key Relationships … connections, help to shift our security culture and advocate for Secure by Design principles throughout our projects. Engage in Design Reviews: Perform design reviews, threat modelling, and risk assessments to ensure robust security measures are incorporated from the outset. Provide Expert Guidance: Offer expert advice and consultation on … and operational teams. Capture Security Evidence: Ensure that security requirements and considerations are seamlessly integrated into our change solutions and evident. Assess Security Risks & Threat Landscape: Identify and evaluate security risks, making recommendations to continuously improve the firm's security posture in an ever-changing threat landscape. Define More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Threat Modelling Engineer - GCP

London, UK
Publicis Groupe Holdings B.V
consulting and customer obsession to accelerate our clients' businesses through designing the products and services their customers truly value. Overview As a Senior Engineer - Threat Modelling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails … an individual contributor role focused on Security Architecture and Threat Modelling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to … pinpoint security opportunities, identify exploitable threats, and propose mitigation strategies. Your Impact Conduct thorough threat modeling exercises utilizing established methodologies and frameworks. Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls. Manage the lifecycle of identified threats and associated controls, ensuring timely updates More ❯
Posted:

Threat Modelling Engineer - GCP (Senior Associate, Technology)

London, UK
Hybrid / WFH Options
Publicisgroupe
consulting and customer obsession to accelerate our clients’ businesses through designing the products and services their customers truly value. Overview As a Senior Engineer - Threat Modelling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails … an individual contributor role focused on Security Architecture and Threat Modelling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to … pinpoint security opportunities, identify exploitable threats, and propose mitigation strategies. Your Impact Conduct thorough threat modeling exercises utilizing established methodologies and frameworks. Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls. Manage the lifecycle of identified threats and associated controls, ensuring timely updates More ❯
Posted:

Principal Cyber Security Consultant - Hybrid

London, UK
Hybrid / WFH Options
RiverSafe
implementing and managing advanced security solutions. With expertise in SOC engineering tools and one of either Cloud Security, Identity and Access Management (IAM) or Threat Modelling, this role focuses on enhancing the security posture of organisations. The consultant will lead strategic security initiatives, collaborate with clients or stakeholders … architectures across multi-cloud platforms (AWS, Azure, Google Cloud). Design and deploy IAM solutions to ensure robust authentication, authorisation and access controls. Lead threat modelling exercises to identify, assess and mitigate risks in systems and applications. Lead the design, implementation and optimisation of SIEM solutions (e.g. Splunk … Sentinel). Integrate SIEM systems with other security tools like EDR, SOAR and threat intelligence feeds. Skills Extensive experience in Cyber Security, with a significant portion in a leadership role. A background in SOC engineering tools combined with expertise in either cloud security, Identity & Access Management or threat More ❯
Posted:

MLOps Engineer

Worcester, Worcestershire, UK
Methods Analytics
data audits of deployed models, tracking model drift and identifying opportunities for optimisation to enhance performance and reliability. Security and Vulnerability Management: Participate in threat modelling to identify and assess potential security risks throughout the ML lifecycle. Implement and maintain vulnerability management practices to proactively address security risks … Cloud and ML Infrastructure: Experience with cloud platforms (AWS, Azure, or GCP) and managing cloud-based ML workflows and resources at scale. Experience with Threat Modelling and Vulnerability Management: Proven ability to conduct threat modelling exercises to identify security risks. Experience in Security and Compliance: Demonstrated More ❯
Posted:

MLOps Engineer

Worcester, Worcestershire, UK
Methods
streamline model deployment. Monitor and Maintain Deployed Models: Conduct regular performance reviews and data audits of deployed models. Security and Vulnerability Management: Participate in threat modelling to identify and assess potential security risks throughout the ML lifecycle. Troubleshoot and Resolve Issues: Proactively troubleshoot issues related to model performance … and managing CI/CD pipelines. Knowledge of Cloud and ML Infrastructure: Experience with cloud platforms and managing cloud-based ML workflows. Experience with Threat Modelling and Vulnerability Management: Proven ability to conduct threat modelling exercises. Experience in Security and Compliance: Demonstrated experience working within secure More ❯
Posted:

Product Security Specialist

Bristol, Avon, South West, United Kingdom
Hybrid / WFH Options
Hargreaves Lansdown Asset Management Limited
product team/squad and will support the implementation of secure solutions throughout the application and software development life-cycle. You will also facilitate threat modelling workshops assisting product teams in identifying and mitigating threats. What you will be doing: Oversee security related issues across multiple product teams … Cloud serverless transformation projects. You will have the ability to work with infrastructure as code and understand complex architectures. You will Lead/facilitate threat modelling workshops with SMEs. Engage with key stakeholders to identify threats and recommend countermeasures. Participate in architectural reviews of Product cloud implementations against … such as OWASP, NIST, and ISO. Awareness of security tools and technologies, such as SAST, DAST, IAST, SCA, WAF, IDS, IPS. Experience in conducting threat modelling and risk assessments. Interview process The interview process for this role is two stages including a technical competency-based questions and a More ❯
Employment Type: Permanent, Part Time
Posted:

Senior Product Security Engineer

London, UK
developrec
A leading global payments organization is seeking a highly skilled and motivated Product Security/Application Security Engineer with strong software engineering and threat modelling skills to join its evolving cybersecurity team. This role plays a crucial part in securing the organization's products and services by working … closely with development teams to ensure secure design, implementation, and maintenance of software systems. Responsibilities: Conduct software security architecture design reviews and threat modelling sessions to identify security risks and recommend mitigation strategies. Assess and design security controls and technologies within CI/CD pipelines to enhance product … Ensure alignment of security solutions with industry regulations, including PCI, SOC, GDPR, CCPA, and cloud security best practices. Experience/Background: Proven experience in threat modelling, security design reviews, and security architecture. Background in software engineering, with proficiency in at least one programming language. Expertise in authentication and More ❯
Posted:

Application Security Engineer (Mid or Senior)

London, UK
ZipRecruiter
Up to £110,000 A leading global payments organisation is seeking a highly skilled and motivated Application Security Engineer with strong software engineering and threat modelling skills to join its evolving cybersecurity team. This role plays a crucial part in securing the organisation's products and services by … working closely with development teams to ensure secure design, implementation, and maintenance of software systems. Responsibilities: Conduct software security architecture design reviews and threat modelling sessions to identify security risks and recommend mitigation strategies. Assess and design security controls and technologies within CI/CD pipelines to enhance … Ensure alignment of security solutions with industry regulations, including PCI, SOC, GDPR, CCPA, and cloud security best practices. Experience/Background Proven experience in threat modelling, security design reviews, and security architecture. Background in software engineering, with proficiency in at least one programming language. Expertise in authentication and More ❯
Posted:

OT Project Manager

City, Liverpool, United Kingdom
Hays Technology
to upper management Identify project risks and develop risk mitigation plans Ensure project deliverables meet quality standards Streamline governance and efficient risk mitigation processes Threat analysis/threat modelling and vulnerabilities management The OT Project Manager will bring a combination of technical knowledge, project management expertise, industry … where OT is pivotal to operations. Risk Mapping Enhanced compliance management, ability to map to industry frameworks Control implementation, monitoring, testing, attestation per frameworks Threat analysis/threat modelling and vulnerability management. This is a hybrid role, with an onsite expectation in Liverpool. The role is outside More ❯
Employment Type: Temporary
Salary: GBP Annual
Posted:

Staff Security Operations Engineer

London, United Kingdom
Hybrid / WFH Options
Canonical Group Ltd
also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies. What you will do in this role: Implement and evolve Canonical … and guide the remediation of security threats and cyber attacks Grow the presence and thought leadership of Canonical SecOps practice Contribute to open source threat intelligence initiatives Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical Develop Canonical SecOps learning and … Drive and a track record of going above-and-beyond expectations Deep personal motivation to be at the forefront of technology security Expertise in threat modelling and risk management frameworks Knowledge of security architecture and market-leading security tools Experience contributing to, and consuming, threat intelligence feeds More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Engineer

Coventry, UK
Cadent Gas
activity, provide root cause insights, and drive remediation activity. Engineering & Integration - Maintain and improve SIEM/SOAR tools, integrate with core OT security platforms. Threat Modelling & Analytics - Build advanced alerting, analyse attack vectors, and enhance threat visibility. Vulnerability & Patch Strategy - Develop workarounds for unpatchable assets and mitigate … insight, and the ability to collaborate across functions. Proven OT Cyber Experience – in utilities, critical infrastructure, SCADA, ICS Hands-on Security Tooling – SIEM, SOAR, threat intelligence, vulnerability management Threat Modelling – familiar with MITRE ATT&CK for ICS, and developing detection use cases Incident Management – support cyber incident More ❯
Posted:

Cyber Security Engineer

Coventry, Warwickshire, United Kingdom
Cadent Gas
activity, provide root cause insights, and drive remediation activity. Engineering & Integration - Maintain and improve SIEM/SOAR tools, integrate with core OT security platforms. Threat Modelling & Analytics - Build advanced alerting, analyse attack vectors, and enhance threat visibility. Vulnerability & Patch Strategy - Develop workarounds for unpatchable assets and mitigate … insight, and the ability to collaborate across functions. Proven OT Cyber Experience - in utilities, critical infrastructure, SCADA, ICS Hands-on Security Tooling - SIEM, SOAR, threat intelligence, vulnerability management Threat Modelling - familiar with MITRE ATT&CK for ICS, and developing detection use cases Incident Management - support cyber incident More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Product Security Engineer

Belfast, United Kingdom
Smarsh, Inc
engineering teams and proactively identify, assess, and remediate security risks across our product portfolio. This role will focus on secure development practices, vulnerability management, threat modelling, and driving a shift-left security culture. The ideal candidate is a pragmatic problem solver with strong technical expertise in application security … will you contribute? Secure SDLC Integration: Embed security within the software development lifecycle, ensuring security is considered at every phase-from design to deployment. Threat Modeling & Security Design Reviews: Conduct structured threat modelling and security assessments for new features, architectures, and services. Vulnerability Management & Remediation: Work closely … tenant cloud environments. Knowledge of machine learning security (AI/ML model risks, LLM security best practices). Familiarity with attack surface management and threat intelligence. What do we offer? We value our people and offer a competitive salary along with company bonus. Strong maternity and paternity scheme. A More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Product Security Engineer

London, UK
Smarsh
engineering teams and proactively identify, assess, and remediate security risks across our product portfolio. This role will focus on secure development practices, vulnerability management, threat modelling, and driving a shift-left security culture. How will you contribute? Secure SDLC Integration: Embed security within the software development lifecycle, ensuring … security is considered at every phase-from design to deployment. Threat Modeling & Security Design Reviews: Conduct structured threat modelling and security assessments for new features, architectures, and services. Vulnerability Management & Remediation: Work closely with engineering teams to identify and remediate vulnerabilities from SAST, DAST, SCA, container security … tenant cloud environments. Knowledge of machine learning security (AI/ML model risks, LLM security best practices). Familiarity with attack surface management and threat intelligence. What do we offer? We value our people and offer a competitive salary along with company bonus. Strong maternity and paternity scheme. A More ❯
Posted:

DevSecOps Engineer

London, United Kingdom
Hybrid / WFH Options
Instanda, Inc
and network security. Vulnerability Management: Identify and prioritize vulnerabilities across infrastructure and applications, and collaborate with teams to remediate them in a timely manner. Threat Modelling and Risk Assessment: Perform threat modelling to identify security risks and provide recommendations for mitigation. Monitoring and Incident Response: Develop More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Domain Abuse Lead - Threat Intelligence

Oxford, Oxfordshire, United Kingdom
Nominet
role in making .UK the safest ccTLD in the world. The ideal candidate will be an experienced cyber professional in the fields of cyber threat intelligence, good awareness of the complex cyber threat landscape, and a good understanding of DNS, to lead its team of Domain Abuse Analysts. … and will directly contribute to enhancing Nominet's reputation in the global internet community. This role is ideal for someone with a deep cyber threat intelligence background, but is not typical and offers unique challenges and opportunities. Responsibilities Oversee and direct the execution of Nominet's domain abuse strategy. … Domain Abuse Lead will work closely with the Nominet Security team on a range of different initiatives that are likely to span areas of threat modelling, threat intelligence acquisition and dissemination, amongst others. About you and your experience Substantial experience in cyber threat intelligence, ideally with More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Lead Threat Intelligence Analyst

London, UK
Hybrid / WFH Options
Bupa
Job Description: Lead Threat Intelligence Analyst Primary location: Salford (M50 3SP), Staines (TW18 3DZ) or London (EC2R 7HJ) Flexible/Hybrid working options. Permanent up to £90,000 (NEG - depending on exp. & location) 10% Bonus+ fantastic benefits Full time 37.5 hours We consider all types of flexibility, including locations … our journey and developing yourself along the way. How you’ll help us make health happen: Collaborating closely with the newly appointed Head of Threat Intelligence, you will be responsible for: Directing the Cyber Threat Intelligence team to establish tactical and strategic responses to emerging threats. Define, implement … and manage Cyber Threat Management strategies, including MSSP vendors, contract management, and technology roadmap. Work with vendors and partners to ensure timely and impactful content and analysis, including new product development. Coordinate with Group CISO function and cross-functional teams to mitigate and avoid threats. Develop and schedule a More ❯
Posted:

Application Security Architect

United Kingdom, UK
Arrise
regulatory requirements. Secure Software Development Lifecycle (SDLC): Partner with development teams to integrate security throughout the SDLC, including the creation of secure coding practices, threat modeling, and secure design principles. Security Risk Management: Identify, evaluate, and mitigate security risks in software and applications. Lead threat modeling and vulnerability … relevant to application security experience. Experience: 10+ years of experience in cybersecurity, with a focus on application security. Proven experience in secure software development, threat modelling, penetration testing, and security risk management. Strong experience with common application security tools. Experience with cloud platforms (AWS, Azure, GCP) and securing … languages. Strong understanding of web application architecture, APIs, and microservices. Hands-on experience with security testing tools and automation for application security. Experience with threat modelling techniques and risk assessment frameworks. What We Offer: Driven by a persistence to craft immersive experiences and responsible thrills, our professional team More ❯
Posted:

Lead Threat Intelligence Analyst

London, UK
Hybrid / WFH Options
TN United Kingdom
Social network you want to login/join with: Lead Threat Intelligence Analyst, Central London Client: Bupa Location: Central London, United Kingdom Job Category: Other EU work permit required: Yes Job Reference: 5bce59021a6a Job Views: 2 Posted: 30.03.2025 Expiry Date: 14.05.2025 Job Description: Primary location: Salford (M50 3SP), Staines … of flexibility, including locations, hours and working patterns. How you’ll help us make health happen: Collaborating closely with the newly appointed Head of Threat Intelligence, you will be responsible for: Directing the Cyber Threat Intelligence team to establish tactical and strategic responses to emerging threats. Define, implement … and manage Cyber Threat Management strategies, including MSSP vendors, contract management, and technology roadmap. Work with vendors and partners to ensure timely and impactful content and analysis, including new product development. Coordinate with Group CISO function and cross-functional teams to mitigate and avoid threats. Develop and schedule a More ❯
Posted:

Senior Cloud Security Engineer

London, United Kingdom
Just Eat Takeaway.com
Implement third-party security tools and assist in major incident response, working with the CSOC team on Cloud threats and events. Cloud Security Tooling & Threat Modelling: Build and enforce Cloud-native security tools, desired experience in conducting threat modelling, and architectural reviews to enhance security practices. More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cloud Security Engineer

Hart, County Durham, UK
Takeaway.com
Implement third-party security tools and assist in major incident response, working with the CSOC team on Cloud threats and events. Cloud Security Tooling & Threat Modelling: Build and enforce Cloud-native security tools, desired experience in conducting threat modelling, and architectural reviews to enhance security practices. More ❯
Posted:

Senior Security Engineer

London, UK
Policy Expert
protection mechanisms are in place. Own and drive the Application Security Posture Management (ASPM) function. Integrate security within the plan/design phase through threat modelling, code and architecture reviews, and by defining secure coding standards, libraries, and best practices. Configure and manage security tooling such as ASPM … where you would be the point of contact for consulting on security queries from development team, reviewing state of security through internal or external threat intelligence, and responding to security alerts. Perform and support internal pentesting efforts, identifying and mitigating vulnerabilities in our applications and APIs. Who are you … SDLC tooling, including SAST, DAST, SCA, ASPM and CSPM. Hands-on experience with IAM solutions such as Auth0, or AWS Cognito. Strong background in threat modelling and vulnerability management. Strong background in AWS, cloud computing concepts, and cloud security best practices. Bonus points if: Previous experience as a More ❯
Posted:

Security Services Delivery Consultant

United Kingdom
Hybrid / WFH Options
Maxwell Bond
embed security services into real-world operations. You’ll be responsible for overseeing the delivery and integration of key security services — including penetration testing, threat modelling, logging, and vulnerability scanning — into enterprise platforms and workflows. You’ll work cross-functionally to align technical services with business and risk … Have: At least 3 years of experience in a similar service delivery or cyber consultancy role Deep understanding of enterprise security services: Pen testing, threat modelling, vulnerability management, logging & monitoring, incident response Strong communication and stakeholder engagement skills Excellent documentation and governance capability CISM or CISSP certification Degree More ❯
Posted:
Threat Modelling
10th Percentile
£48,165
25th Percentile
£62,500
Median
£75,000
75th Percentile
£95,000
90th Percentile
£110,500