Transform the security maturity of key product areas and teams as a Senior Cyber Security Partner, partnering with leadership to make well-informed decisions about security and privacy.
Requirements
- Possess experience across multiple sectors and have undertaken diverse roles in engineering and security.
- Demonstratable accomplishments of collaborating with leadership and management on security programmes and initiatives.
- Good knowledge of various security domains, and solid experience in architecture practices and design patterns ā the technology might have changed but most of the security challenges have not.
- Experience in designing security and privacy controls with sound understanding of standards and regulation.
- Experience in threat modelling, attack trees, vulnerability chaining, applying MITRE ATT&CK framework.
- Good understanding of web applications, REST APIs, micro services, eventing, modern application frameworks, and mobile apps.
- Good understanding of software architecture, network topologies, SaaS, PaaS, IaaS (infrastructure as a service).
- Proficient in applying industry standards such as OWASP ASVS (Application Security Verification Standard), OWASP Top 10, CIS (Centre of Internet Security) controls and benchmarks.
- Experience with cloud native and hybrid architectures with an emphasis on containerised workloads and Kubernetes.
- Some development experience is always a plus - Java, cloud, Golang, python.
- Degree in computer science / information systems or engineering field, or equivalent experience.
- Experience with regulations like GDPR (General Data Protection Regulation), PCI-DSS is desirable.
- Azure or AWS (Amazon Web Services) cloud security certifications is desirable.
- Excellent interpersonal skills and leadership skills.
Benefits
- Inclusive workplace
- Flexible work environment
- Disability Confident Committed Employer