• Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
  • Sign in
  • Sign up
  • Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

103 jobs found

Email me jobs like this
Refine Search
Current Search
threat detection engineer
Anson McCade
Threat Hunting & Detection Engineering Analyst
Anson McCade Cheltenham, Gloucestershire
Threat Hunting & Detection Engineering Analyst Location: UK (Hybrid) Salary: Competitive + Excellent Benefits Threat Hunting & Detection Engineering Analyst A leading global technology consultancy is looking to hire a Threat Hunting & Detection Engineering Analyst to join its growing Cyber Security practice click apply for full job details
Aug 25, 2026
Full time
Threat Hunting & Detection Engineering Analyst Location: UK (Hybrid) Salary: Competitive + Excellent Benefits Threat Hunting & Detection Engineering Analyst A leading global technology consultancy is looking to hire a Threat Hunting & Detection Engineering Analyst to join its growing Cyber Security practice click apply for full job details
Senior Detection Engineer
Electronic Arts Guildford, Surrey
Locations: Guildford, Surrey, United Kingdom Role ID 215727 Worker Type Regular Employee Studio/Department CT - Security Work Model Hybrid Description & Requirements Electronic Arts creates next-level entertainment experiences that inspire players and fans around the world. Here, everyone is part of the story. Part of a community that connects across the globe. A place where creativity thrives, new perspectives are invited, and ideas matter. A team where everyone makes play happen. We are seeking a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor reporting to the Director of Threat Intelligence and Detections, you will play a central role in the technical leadership of the Detection Engineering team. You'll mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions, including those applying AI and cloud-native technologies. Responsibilities Technical Leadership Design and operationalize advanced detections across cloud, container, and on-prem environments. You will build integrations for diverse data sources (e.g., Wiz, host telemetry, network sensors) into EA's detection infrastructure. You will define detection lifecycle processes governance, and performance metrics. Lead development of AI-driven detection proof-of-concepts Guide peers in building scalable, maintainable detection infrastructure and tuning detection content. Support priorities like product detection assessments, threat-led risk prioritization, and production telemetry uplift. Minimum Qualifications Experience in detection engineering, security engineering, or software development with a focus on cybersecurity. Experience developing detections and integrations within SIEM platforms (e.g., Splunk, Elastic, QRadar), use of Risk-based alerting Familiarity with cybersecurity frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST CSF). Experience with cloud security platforms (e.g., Wiz) and integrating their outputs into detection pipelines. Background in AI/ML or data science applied to cybersecurity detections. Understanding of cloud-native architectures, container security, and host-based detection. Experience leading PoCs or greenfield development plans in a complex security ecosystem. About Electronic Arts We're proud to have an extensive portfolio of games and experiences, locations around the world, and opportunities across EA. We value adaptability, resilience, creativity, and curiosity. From leadership that brings out your potential, to creating space for learning and experimenting, we empower you to do great work and pursue opportunities for growth. We adopt a holistic approach to our benefits programs, emphasizing physical, emotional, financial, career, and community wellness to support a balanced life. Our packages are tailored to meet local needs and may include healthcare coverage, mental well-being support, retirement savings, paid time off, family leaves, complimentary games, and more. We nurture environments where our teams can always bring their best to what they do. Electronic Arts is an equal opportunity employer. All employment decisions are made without regard to race, color, national origin, ancestry, sex, gender, gender identity or expression, sexual orientation, age, genetic information, religion, disability, medical condition, pregnancy, marital status, family status, veteran status, or any other characteristic protected by law. We will also consider employment qualified applicants with criminal records in accordance with applicable law. EA also makes workplace accommodations for qualified individuals with disabilities as required by applicable law.
Aug 25, 2026
Full time
Locations: Guildford, Surrey, United Kingdom Role ID 215727 Worker Type Regular Employee Studio/Department CT - Security Work Model Hybrid Description & Requirements Electronic Arts creates next-level entertainment experiences that inspire players and fans around the world. Here, everyone is part of the story. Part of a community that connects across the globe. A place where creativity thrives, new perspectives are invited, and ideas matter. A team where everyone makes play happen. We are seeking a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor reporting to the Director of Threat Intelligence and Detections, you will play a central role in the technical leadership of the Detection Engineering team. You'll mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions, including those applying AI and cloud-native technologies. Responsibilities Technical Leadership Design and operationalize advanced detections across cloud, container, and on-prem environments. You will build integrations for diverse data sources (e.g., Wiz, host telemetry, network sensors) into EA's detection infrastructure. You will define detection lifecycle processes governance, and performance metrics. Lead development of AI-driven detection proof-of-concepts Guide peers in building scalable, maintainable detection infrastructure and tuning detection content. Support priorities like product detection assessments, threat-led risk prioritization, and production telemetry uplift. Minimum Qualifications Experience in detection engineering, security engineering, or software development with a focus on cybersecurity. Experience developing detections and integrations within SIEM platforms (e.g., Splunk, Elastic, QRadar), use of Risk-based alerting Familiarity with cybersecurity frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST CSF). Experience with cloud security platforms (e.g., Wiz) and integrating their outputs into detection pipelines. Background in AI/ML or data science applied to cybersecurity detections. Understanding of cloud-native architectures, container security, and host-based detection. Experience leading PoCs or greenfield development plans in a complex security ecosystem. About Electronic Arts We're proud to have an extensive portfolio of games and experiences, locations around the world, and opportunities across EA. We value adaptability, resilience, creativity, and curiosity. From leadership that brings out your potential, to creating space for learning and experimenting, we empower you to do great work and pursue opportunities for growth. We adopt a holistic approach to our benefits programs, emphasizing physical, emotional, financial, career, and community wellness to support a balanced life. Our packages are tailored to meet local needs and may include healthcare coverage, mental well-being support, retirement savings, paid time off, family leaves, complimentary games, and more. We nurture environments where our teams can always bring their best to what they do. Electronic Arts is an equal opportunity employer. All employment decisions are made without regard to race, color, national origin, ancestry, sex, gender, gender identity or expression, sexual orientation, age, genetic information, religion, disability, medical condition, pregnancy, marital status, family status, veteran status, or any other characteristic protected by law. We will also consider employment qualified applicants with criminal records in accordance with applicable law. EA also makes workplace accommodations for qualified individuals with disabilities as required by applicable law.
Security Engineer - Product
Jackalope Digital LLC
Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google's Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation. Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We're honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you'll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun! Role Description Wiz is looking for a Security Engineer for Product & Production Infrastructure who has experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. You'll get to collaborate with our software development and DevOps teams to secure Wiz's products, CI/CD infrastructure, and production infrastructure. You'll also have the opportunity to influence our product roadmap by utilizing Wiz-for-Wiz to assess, monitor, and harden our environments. Responsibilities Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies. Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows. Design and implement secure baselines for cloud resources and Kubernetes based infrastructure. Drive vulnerability management and remediation efforts - prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production. Extend our detection and response capabilities - building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents. Build deep functional partnerships with Wiz's engineering and operations teams - helping them deliver secure-by-design solutions. Minimum qualifications 7+ years of experience in security engineering or security operations work in cloud environments. Experience with AWS cloud security (or equivalent experience in Azure and GCP with some level of AWS experience). Experience with cloud native Kubernetes services (EKS/GKE/AKS) and container security principles. Experience securing IAM and cloud identities at scale. Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls. Practical understanding of web application security concepts (such as OWASP Top-10 and similar). Hands-on experience with IaC and related tools (Terraform, CloudFormation, Helm, Pulumi). Experience with automation and tooling development in one or more of the following: Python, Go, Shell, HCL, Rego. Preferred qualifications Bachelor's degree in computer science or a related field, and/or equivalent job experience in lieu of a degree. Experience working with remote, globally distributed teams. Experience working in organizations that develop software and/or operate managed infrastructure and technology services for their own customers. Experience with CNAPP, CSPM, or CIEM solutions. Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship. Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.
Aug 25, 2026
Full time
Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google's Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation. Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We're honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you'll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun! Role Description Wiz is looking for a Security Engineer for Product & Production Infrastructure who has experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. You'll get to collaborate with our software development and DevOps teams to secure Wiz's products, CI/CD infrastructure, and production infrastructure. You'll also have the opportunity to influence our product roadmap by utilizing Wiz-for-Wiz to assess, monitor, and harden our environments. Responsibilities Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies. Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows. Design and implement secure baselines for cloud resources and Kubernetes based infrastructure. Drive vulnerability management and remediation efforts - prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production. Extend our detection and response capabilities - building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents. Build deep functional partnerships with Wiz's engineering and operations teams - helping them deliver secure-by-design solutions. Minimum qualifications 7+ years of experience in security engineering or security operations work in cloud environments. Experience with AWS cloud security (or equivalent experience in Azure and GCP with some level of AWS experience). Experience with cloud native Kubernetes services (EKS/GKE/AKS) and container security principles. Experience securing IAM and cloud identities at scale. Experience leading technical security reviews of products and architectures, conducting threat modeling exercises, and translating findings into actionable security controls. Practical understanding of web application security concepts (such as OWASP Top-10 and similar). Hands-on experience with IaC and related tools (Terraform, CloudFormation, Helm, Pulumi). Experience with automation and tooling development in one or more of the following: Python, Go, Shell, HCL, Rego. Preferred qualifications Bachelor's degree in computer science or a related field, and/or equivalent job experience in lieu of a degree. Experience working with remote, globally distributed teams. Experience working in organizations that develop software and/or operate managed infrastructure and technology services for their own customers. Experience with CNAPP, CSPM, or CIEM solutions. Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship. Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.
Senior Detection Engineer - AI-Driven Cloud Security (Hybrid, UK)
Electronic Arts Guildford, Surrey
Electronic Arts in Guildford, UK seeks a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments and will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor, you will mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions,
Aug 24, 2026
Full time
Electronic Arts in Guildford, UK seeks a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments and will directly impact our ability to detect, respond to, and prevent cyber threats at scale. As a senior individual contributor, you will mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions,
Oscar Technology
DevSecOps Engineer
Oscar Technology
DevSecOps Engineer - Azure / Application Security We're working with an established organisation looking to appoint an experienced DevSecOps Engineer to strengthen its Azure deployment and application security capabilities. This is a hands-on position combining Azure DevOps, cloud infrastructure and application security. You'll take ownership of CI/CD pipelines, Infrastructure-as-Code and security testing, while helping development teams embed secure practices throughout the software delivery lifecycle. The Role You'll be responsible for: Designing and maintaining CI/CD pipelines within Azure DevOps Deploying Azure applications and infrastructure using Terraform Supporting Azure services including App Services, AKS, Azure SQL, Storage, Key Vault, VNets, Private Endpoints and Front Door/WAF Introducing deployment practices such as blue/green releases, automated rollback and infrastructure drift detection Integrating SAST, DAST, dependency and container scanning into development pipelines Conducting web application security testing using Burp Suite, OWASP ZAP or similar tools Identifying and managing vulnerabilities against OWASP Top 10 and CVSS principles Implementing secrets detection, credential rotation and secure Key Vault practices Strengthening software supply-chain security through SBOM generation, dependency scanning and artefact signing Supporting API security testing, threat modelling and third-party penetration tests Configuring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure Monitor Enforcing identity and access controls across Entra ID, RBAC, Conditional Access and PIM Supporting compliance with frameworks such as Cyber Essentials Plus, ISO 27001 and GDPR Mentoring junior engineers and helping developers adopt secure coding and deployment practices What We're Looking For You'll need: Around three to five years' experience across DevOps, platform engineering or application security Strong hands-on experience with Microsoft Azure and Azure DevOps Proven experience securing web applications in a production environment Practical experience using Burp Suite for application security testing Experience with SonarQube or comparable SAST tooling Strong knowledge of OWASP Top 10, vulnerability management and remediation Experience building repeatable Azure deployments using Terraform Scripting ability with PowerShell, Python or Bash Experience implementing secrets detection and dependency/CVE remediation tooling The confidence to work independently, make risk-based decisions and support junior engineers Experience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful. Relevant certifications such as AZ-500, AZ-400, Security+, CySA+, CEH or OSCP would also be beneficial, although practical experience is more important. This is an excellent opportunity for someone who enjoys working across cloud engineering and application security and wants genuine ownership over how secure software is built, tested and released. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Aug 24, 2026
Full time
DevSecOps Engineer - Azure / Application Security We're working with an established organisation looking to appoint an experienced DevSecOps Engineer to strengthen its Azure deployment and application security capabilities. This is a hands-on position combining Azure DevOps, cloud infrastructure and application security. You'll take ownership of CI/CD pipelines, Infrastructure-as-Code and security testing, while helping development teams embed secure practices throughout the software delivery lifecycle. The Role You'll be responsible for: Designing and maintaining CI/CD pipelines within Azure DevOps Deploying Azure applications and infrastructure using Terraform Supporting Azure services including App Services, AKS, Azure SQL, Storage, Key Vault, VNets, Private Endpoints and Front Door/WAF Introducing deployment practices such as blue/green releases, automated rollback and infrastructure drift detection Integrating SAST, DAST, dependency and container scanning into development pipelines Conducting web application security testing using Burp Suite, OWASP ZAP or similar tools Identifying and managing vulnerabilities against OWASP Top 10 and CVSS principles Implementing secrets detection, credential rotation and secure Key Vault practices Strengthening software supply-chain security through SBOM generation, dependency scanning and artefact signing Supporting API security testing, threat modelling and third-party penetration tests Configuring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure Monitor Enforcing identity and access controls across Entra ID, RBAC, Conditional Access and PIM Supporting compliance with frameworks such as Cyber Essentials Plus, ISO 27001 and GDPR Mentoring junior engineers and helping developers adopt secure coding and deployment practices What We're Looking For You'll need: Around three to five years' experience across DevOps, platform engineering or application security Strong hands-on experience with Microsoft Azure and Azure DevOps Proven experience securing web applications in a production environment Practical experience using Burp Suite for application security testing Experience with SonarQube or comparable SAST tooling Strong knowledge of OWASP Top 10, vulnerability management and remediation Experience building repeatable Azure deployments using Terraform Scripting ability with PowerShell, Python or Bash Experience implementing secrets detection and dependency/CVE remediation tooling The confidence to work independently, make risk-based decisions and support junior engineers Experience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful. Relevant certifications such as AZ-500, AZ-400, Security+, CySA+, CEH or OSCP would also be beneficial, although practical experience is more important. This is an excellent opportunity for someone who enjoys working across cloud engineering and application security and wants genuine ownership over how secure software is built, tested and released. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Morson Edge
Cyber Security Engineer
Morson Edge
Your Role: As a Cyber Security Specialist, you will work within a multi-disciplinary security team delivering a broad range of services, including threat detection and response, vulnerability scanning, dark web monitoring, social engineering assessments, and security reporting. You will act as a technical escalation point for complex security incidents, leading containment and remediation activitie click apply for full job details
Aug 24, 2026
Full time
Your Role: As a Cyber Security Specialist, you will work within a multi-disciplinary security team delivering a broad range of services, including threat detection and response, vulnerability scanning, dark web monitoring, social engineering assessments, and security reporting. You will act as a technical escalation point for complex security incidents, leading containment and remediation activitie click apply for full job details
Yolk Recruitment Ltd
Cyber Security Engineer
Yolk Recruitment Ltd Cardiff, South Glamorgan
Cyber Security Engineer Hybrid / Cardiff £62,000 - £72,000 We're looking for an experienced Security Engineer to join an established Cyber Resilience function, taking a hands-on role in strengthening security operations across a complex technology environment. You'll work across Microsoft security technologies, cloud security, identity, vulnerability management and threat detection, while helping improve the organisation's overall cyber resilience. What you'll be doing: Managing and improving Microsoft Defender and Sentinel capabilities Securing Azure environments and implementing effective security controls Managing Entra ID security, including Conditional Access, Identity Protection and privileged access Supporting vulnerability management and remediation Implementing data protection controls using Microsoft Purview Supporting threat monitoring, detection and incident response Providing security input into technology projects and architecture decisions Supporting security frameworks including NCSC CAF, ISO 27001, NIST CSF and CIS Controls Acting as a security SME to technical and non-technical stakeholders What we're looking for: Proven Security Engineer experience Strong Microsoft Defender and Sentinel knowledge Good Azure and Entra ID security experience Hands-on vulnerability management experience Understanding of security frameworks and technical controls Strong communication and stakeholder management skills Benefits: Flexible working opportunities Discretionary bonus of up to 10% 25 days annual leave plus bank holidays Retirement Savings Plan (pension) with Aviva: 5% employee contribution, doubling your contribution at 10% - totalling 15% 14 x salary Life Insurance linked to membership of the Retirement Savings Plan "Choices" flexible benefit scheme options including corporate gym memberships, dental insurance, and health cash-plans Access to our Financial Wellbeing Programme - allowing you to manage your benefits flexibly to suit your financial needs Enhanced pay for parental leave Retail discounts and cashback scheme Annual salary review Company Sick Pay Ready to Apply? Contact Daniel Newton to find out more. Please apply with a CV and a cover letter outlining why you're perfect for the role. Know someone great for the job? We offer a referral scheme-just get in touch!
Aug 24, 2026
Full time
Cyber Security Engineer Hybrid / Cardiff £62,000 - £72,000 We're looking for an experienced Security Engineer to join an established Cyber Resilience function, taking a hands-on role in strengthening security operations across a complex technology environment. You'll work across Microsoft security technologies, cloud security, identity, vulnerability management and threat detection, while helping improve the organisation's overall cyber resilience. What you'll be doing: Managing and improving Microsoft Defender and Sentinel capabilities Securing Azure environments and implementing effective security controls Managing Entra ID security, including Conditional Access, Identity Protection and privileged access Supporting vulnerability management and remediation Implementing data protection controls using Microsoft Purview Supporting threat monitoring, detection and incident response Providing security input into technology projects and architecture decisions Supporting security frameworks including NCSC CAF, ISO 27001, NIST CSF and CIS Controls Acting as a security SME to technical and non-technical stakeholders What we're looking for: Proven Security Engineer experience Strong Microsoft Defender and Sentinel knowledge Good Azure and Entra ID security experience Hands-on vulnerability management experience Understanding of security frameworks and technical controls Strong communication and stakeholder management skills Benefits: Flexible working opportunities Discretionary bonus of up to 10% 25 days annual leave plus bank holidays Retirement Savings Plan (pension) with Aviva: 5% employee contribution, doubling your contribution at 10% - totalling 15% 14 x salary Life Insurance linked to membership of the Retirement Savings Plan "Choices" flexible benefit scheme options including corporate gym memberships, dental insurance, and health cash-plans Access to our Financial Wellbeing Programme - allowing you to manage your benefits flexibly to suit your financial needs Enhanced pay for parental leave Retail discounts and cashback scheme Annual salary review Company Sick Pay Ready to Apply? Contact Daniel Newton to find out more. Please apply with a CV and a cover letter outlining why you're perfect for the role. Know someone great for the job? We offer a referral scheme-just get in touch!
Claranet Limited
SOC Shift Lead
Claranet Limited Leeds, Yorkshire
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Aug 24, 2026
Full time
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Claranet Limited
SOC Automation Engineer
Claranet Limited Leeds, Yorkshire
SOC Automation Engineer As a SOC Automation Engineer, you will apply hands-on engineering expertise to design, build, and optimise automation workflows that improve the scalability and efficiency of SOC services. Working across SIEM, endpoint, and orchestration platforms (primarily Palo Alto XSOAR), you will reduce analyst workload, accelerate incident response, and enhance decision-making across customer environments. Key Responsibilities Automation Development - Design, build, and maintain scalable automation workflows across detection and response platforms. Integration & Orchestration - Deliver cross-platform automation enabling fast, reliable response actions. Lifecycle Management - Develop, deploy, and continuously optimise automation for performance, resilience, and coverage. Collaboration & Requirements Gathering - Work with SOC and engineering teams to identify automation opportunities. Documentation - Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning - Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support - Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development Build and maintain workflows across SIEM, EDR, and SOAR platforms Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through to optimisation Troubleshoot failures and refine logic Use post-incident insights to improve workflows Documentation & Standards Maintain clear documentation of workflows, dependencies, and error handling Ensure consistency and usability for wider teams Strategic Contribution Support use cases aligned to threat modelling and MITRE ATT&CK Contribute to automation playbooks and response strategies Stay current with tools, frameworks, and emerging threats Collaboration Embed automation into SOC workflows Share best practices and support team development Pre-Sales Support workshops, onboarding, and solution design where needed Stakeholder Collaboration SOC Analysts - Automate repeatable triage and response activities Platform & Detection Engineers - Integrate automation into tooling and detections Sales & Pre-Sales - Provide technical input for customer solutions Requirements 2+ years' experience in SOC, automation, or cloud security engineering Experience in managed services or multi-tenant environments Strong experience building automations across SIEM, SOAR, or EDR platforms Proficiency in scripting (e.g., Python, PowerShell) Experience working with APIs, webhooks, and authentication methods Knowledge of threat frameworks (e.g., MITRE ATT&CK) Understanding of cloud security, identity, and event-driven automation Strong communication and analytical skills Security clearance (NPPV and/or SC) may be required. Technical Knowledge Security orchestration and automation principles Scripting and integration patterns (APIs, webhooks) SOC detection and response workflows Threat intelligence integration and use case design Cloud and identity security concepts Multi-tenant automation design Certifications Essential: Hands-on experience with Palo Alto XSOAR Desirable: Palo Alto Networks Certified XSOAR Engineer Palo Alto Networks Certified Security Automation Engineer (PCSAE) Palo Alto Networks Security Operations Professional
Aug 24, 2026
Full time
SOC Automation Engineer As a SOC Automation Engineer, you will apply hands-on engineering expertise to design, build, and optimise automation workflows that improve the scalability and efficiency of SOC services. Working across SIEM, endpoint, and orchestration platforms (primarily Palo Alto XSOAR), you will reduce analyst workload, accelerate incident response, and enhance decision-making across customer environments. Key Responsibilities Automation Development - Design, build, and maintain scalable automation workflows across detection and response platforms. Integration & Orchestration - Deliver cross-platform automation enabling fast, reliable response actions. Lifecycle Management - Develop, deploy, and continuously optimise automation for performance, resilience, and coverage. Collaboration & Requirements Gathering - Work with SOC and engineering teams to identify automation opportunities. Documentation - Produce clear documentation to support delivery, troubleshooting, and continuous improvement. Automation Planning - Contribute to automation roadmaps, threat modelling, and use case development. Pre-Sales Support - Assist with demos, scoping, and proof-of-value activities where required. Core Duties Automation Design & Development Build and maintain workflows across SIEM, EDR, and SOAR platforms Develop reusable scripts, templates, and components Ensure solutions support secure, multi-tenant environments Integration & Response Automation Orchestrate containment, enrichment, and remediation actions Integrate with threat intelligence, cloud, vulnerability, and reporting tools Partner with analysts to map and automate response processes Lifecycle Management & Optimisation Manage automation from design through to optimisation Troubleshoot failures and refine logic Use post-incident insights to improve workflows Documentation & Standards Maintain clear documentation of workflows, dependencies, and error handling Ensure consistency and usability for wider teams Strategic Contribution Support use cases aligned to threat modelling and MITRE ATT&CK Contribute to automation playbooks and response strategies Stay current with tools, frameworks, and emerging threats Collaboration Embed automation into SOC workflows Share best practices and support team development Pre-Sales Support workshops, onboarding, and solution design where needed Stakeholder Collaboration SOC Analysts - Automate repeatable triage and response activities Platform & Detection Engineers - Integrate automation into tooling and detections Sales & Pre-Sales - Provide technical input for customer solutions Requirements 2+ years' experience in SOC, automation, or cloud security engineering Experience in managed services or multi-tenant environments Strong experience building automations across SIEM, SOAR, or EDR platforms Proficiency in scripting (e.g., Python, PowerShell) Experience working with APIs, webhooks, and authentication methods Knowledge of threat frameworks (e.g., MITRE ATT&CK) Understanding of cloud security, identity, and event-driven automation Strong communication and analytical skills Security clearance (NPPV and/or SC) may be required. Technical Knowledge Security orchestration and automation principles Scripting and integration patterns (APIs, webhooks) SOC detection and response workflows Threat intelligence integration and use case design Cloud and identity security concepts Multi-tenant automation design Certifications Essential: Hands-on experience with Palo Alto XSOAR Desirable: Palo Alto Networks Certified XSOAR Engineer Palo Alto Networks Certified Security Automation Engineer (PCSAE) Palo Alto Networks Security Operations Professional
Senior Solution Architect - Email & Collaboration Security
Mimecast
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
Aug 24, 2026
Full time
Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job. The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis. This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features. Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring 10+ years building and operating production SaaS systems, with at least 3 years in a Senior Architect or equivalent role carrying product-shaping responsibility. A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole. Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room. Product Understanding - Not Just Technical Understanding prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet. Genuine customer orientation: asking what problem the customer has before asking how to build the feature. Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one. The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context. Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found. An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive. Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution. Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment. Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause. Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database. AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping. Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions. Bonus Points Background in email security, threat detection, DLP, identity, or data platforms. Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture. Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches. Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS. What We Offer Impact: architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars. Voice: a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane. Senior peers: a small, high-trust Architecture Leadership Team where everyone operates at a high level. Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience. 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role. A track record of product-shaping responsibility, not just technical delivery. Active, daily use of AI development tools in a professional setting - not experimentation, practice. Equal Opportunity Statement Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. Commitment to Diversity and Inclusion We're proud to be an Equal Opportunity and Aff We particularly welcome applicants from traditionally underrepresented groups. We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. We save companies the embarrassment of awkward data slip ups by disrupting cybercriminal activity. We think fast, go big and always demand more. We work hard, deliver - and repeat. We grow with meaningful determination. And put success well within our reach. We empower each other, live by our values, and always deliver on our purpose . click apply for full job details
Staff+ Software Engineer, Account Compromise
United States Digital Space LLC
About the company - the company's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role the company's Safeguards organization builds the systems that keep Claude safe to use at scale. The Account Compromise team owns one specific slice of that work: protecting the people and organizations who use Claude from losing control of their accounts, and preventing compromised accounts and credentials from being used to abuse our platform. Account takeover, credential stuffing, phishing-driven session theft, leaked API keys, and resold access all cause real harm - to the customers whose accounts are hijacked, and to the wider ecosystem when stolen access is used to route abusive traffic through legitimate accounts. We are looking for a staff+ engineer to set the technical direction for this work. You will own the architecture of how we detect, contain, and remediate account compromise across Claude and the Claude Developer Platform, making the design decisions that other engineers and teams build on top of. You will move between deep technical work and adversarial problem-solving: threat modelling how attackers will adapt, scoping multi-month projects from ambiguous starting points, and leading complex live investigations when they escalate. This is a hard problem space. Attackers iterate quickly, the signals separating a compromised account from an unusual but legitimate one are subtle, and every defence carries a cost to real users if it fires incorrectly. You will be building the playbook, and the judgement calls about where to draw those lines will largely be yours to make and defend. You will operate with high autonomy - owning detection coverage and incident leadership, driving alignment with Security, Product, and Policy teams, and shaping how the company approaches this problem globally rather than executing against someone else's roadmap. Key responsibilities Set the technical direction and own the architecture for account compromise detection, response, and remediation across Claude and the Claude Developer Platform Independently scope and lead complex, multi-month engineering projects from an ambiguous starting point through to production systems that operate reliably under adversarial pressure Build and evolve detection systems that identify account takeover, credential abuse, and compromised API keys in near real time Design automated response flows that cut off attacker access while minimising disruption to legitimate users Lead investigations into significant compromise incidents end to end, then convert what you learn into durable, automated defences Threat model how attackers are likely to adapt, and prioritise the team's work against that view rather than only against incidents already observed Drive cross-organisational alignment on account security direction with Security, Product, Support, Policy and other partners. Define how the team measures success and hold the work to those measures Set technical standards for the domain and raise the bar for other engineers through code review, design review, and mentorship Surface patterns from compromise cases to research and product teams so that protections improve upstream Minimum qualifications 10 + years experience designing, building, and operating detection, anti-fraud, anti-abuse, or security systems in production A track record of independently scoping and delivering complex, ambiguous, multi-month technical projects Experience making architectural decisions in an adversarial domain that other engineers and teams then build on Proficiency in Python and SQL, with strong software engineering fundamentals and hands-on coding ability Experience leading investigations into account-based abuse or security incidents, and translating findings into automated detection Ability to reason rigorously about large behavioural or telemetry datasets, and to distinguish attacker behaviour from unusual but legitimate use Strong written communication and a track record of driving alignment across multiple teams and stakeholders Sound judgement about the tradeoff between stopping bad actors and disrupting legitimate users, and the ability to explain and defend where you have drawn that line Preferred qualifications Significant engineering experience in trust and safety, platform integrity, fraud, or detection and response, including time as a technical lead or mentor Deep familiarity with account attack techniques Experience with authentication and identity systems, including OAuth, single sign-on, multi-factor authentication, device binding, and risk-based authentication Experience applying machine learning to fraud or abuse detection, alongside a clear sense of when simpler rules-based approaches are the better choice Experience with cloud data tooling such as BigQuery, Spark, dbt, Airflow or similar Experience building tooling for operational or investigative teams, and partnering closely with the people who use it Interest in AI safety, and in the specific ways account compromise intersects with model misuse Representative projects - Design the architecture for real-time login risk scoring, and get agreement across Security, Product, and Safeguards on where step-up authentication should and should not fire Design detection for compromised API keys, together with security controls to limit exposure Rebuild product features to regain access quickly when customers get compromised Write the threat model that sets the team's roadmap for the next year, and bring the rest of the organisation along with it Instrument a false positive review loop that measures how often the team's defences affect legitimate users, and drive that number down The annual compensation range for this role is listed below. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role. Annual Salary: £325,000 - £390,000 GBP Logistics Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices. Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this. We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team. Your safety matters to us. To protect yourself from potential scams, remember that the company recruiters only contact you email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of the company. Be cautious of emails from other domains. Legitimate the company recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links-visit the directly for confirmed position openings. How we're different - We're different We believe that the highest-impact AI research will be big science. At the company we work as a single cohesive team on just a few large-scale research efforts. And we value impact - advancing our long-term goals of steerable, trustworthy AI - rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills. The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to the company, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute . click apply for full job details
Aug 24, 2026
Full time
About the company - the company's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role the company's Safeguards organization builds the systems that keep Claude safe to use at scale. The Account Compromise team owns one specific slice of that work: protecting the people and organizations who use Claude from losing control of their accounts, and preventing compromised accounts and credentials from being used to abuse our platform. Account takeover, credential stuffing, phishing-driven session theft, leaked API keys, and resold access all cause real harm - to the customers whose accounts are hijacked, and to the wider ecosystem when stolen access is used to route abusive traffic through legitimate accounts. We are looking for a staff+ engineer to set the technical direction for this work. You will own the architecture of how we detect, contain, and remediate account compromise across Claude and the Claude Developer Platform, making the design decisions that other engineers and teams build on top of. You will move between deep technical work and adversarial problem-solving: threat modelling how attackers will adapt, scoping multi-month projects from ambiguous starting points, and leading complex live investigations when they escalate. This is a hard problem space. Attackers iterate quickly, the signals separating a compromised account from an unusual but legitimate one are subtle, and every defence carries a cost to real users if it fires incorrectly. You will be building the playbook, and the judgement calls about where to draw those lines will largely be yours to make and defend. You will operate with high autonomy - owning detection coverage and incident leadership, driving alignment with Security, Product, and Policy teams, and shaping how the company approaches this problem globally rather than executing against someone else's roadmap. Key responsibilities Set the technical direction and own the architecture for account compromise detection, response, and remediation across Claude and the Claude Developer Platform Independently scope and lead complex, multi-month engineering projects from an ambiguous starting point through to production systems that operate reliably under adversarial pressure Build and evolve detection systems that identify account takeover, credential abuse, and compromised API keys in near real time Design automated response flows that cut off attacker access while minimising disruption to legitimate users Lead investigations into significant compromise incidents end to end, then convert what you learn into durable, automated defences Threat model how attackers are likely to adapt, and prioritise the team's work against that view rather than only against incidents already observed Drive cross-organisational alignment on account security direction with Security, Product, Support, Policy and other partners. Define how the team measures success and hold the work to those measures Set technical standards for the domain and raise the bar for other engineers through code review, design review, and mentorship Surface patterns from compromise cases to research and product teams so that protections improve upstream Minimum qualifications 10 + years experience designing, building, and operating detection, anti-fraud, anti-abuse, or security systems in production A track record of independently scoping and delivering complex, ambiguous, multi-month technical projects Experience making architectural decisions in an adversarial domain that other engineers and teams then build on Proficiency in Python and SQL, with strong software engineering fundamentals and hands-on coding ability Experience leading investigations into account-based abuse or security incidents, and translating findings into automated detection Ability to reason rigorously about large behavioural or telemetry datasets, and to distinguish attacker behaviour from unusual but legitimate use Strong written communication and a track record of driving alignment across multiple teams and stakeholders Sound judgement about the tradeoff between stopping bad actors and disrupting legitimate users, and the ability to explain and defend where you have drawn that line Preferred qualifications Significant engineering experience in trust and safety, platform integrity, fraud, or detection and response, including time as a technical lead or mentor Deep familiarity with account attack techniques Experience with authentication and identity systems, including OAuth, single sign-on, multi-factor authentication, device binding, and risk-based authentication Experience applying machine learning to fraud or abuse detection, alongside a clear sense of when simpler rules-based approaches are the better choice Experience with cloud data tooling such as BigQuery, Spark, dbt, Airflow or similar Experience building tooling for operational or investigative teams, and partnering closely with the people who use it Interest in AI safety, and in the specific ways account compromise intersects with model misuse Representative projects - Design the architecture for real-time login risk scoring, and get agreement across Security, Product, and Safeguards on where step-up authentication should and should not fire Design detection for compromised API keys, together with security controls to limit exposure Rebuild product features to regain access quickly when customers get compromised Write the threat model that sets the team's roadmap for the next year, and bring the rest of the organisation along with it Instrument a false positive review loop that measures how often the team's defences affect legitimate users, and drive that number down The annual compensation range for this role is listed below. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role. Annual Salary: £325,000 - £390,000 GBP Logistics Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices. Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this. We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team. Your safety matters to us. To protect yourself from potential scams, remember that the company recruiters only contact you email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of the company. Be cautious of emails from other domains. Legitimate the company recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links-visit the directly for confirmed position openings. How we're different - We're different We believe that the highest-impact AI research will be big science. At the company we work as a single cohesive team on just a few large-scale research efforts. And we value impact - advancing our long-term goals of steerable, trustworthy AI - rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills. The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to the company, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute . click apply for full job details
Staff Engineer - Account Security & Threat Detection
United States Digital Space LLC
United States Digital Space LLC is hiring a Staff+ Engineer to set the technical direction for safeguarding Claude at scale. You will own the architecture for detection, containment, and remediation of account compromise across Claude and the Claude Developer Platform, while guiding multi-month projects in adversarial environments. You will lead investigations, build durable automated defenses, and drive alignment with Security, Product, and Policy teams to protect users globally.
Aug 24, 2026
Full time
United States Digital Space LLC is hiring a Staff+ Engineer to set the technical direction for safeguarding Claude at scale. You will own the architecture for detection, containment, and remediation of account compromise across Claude and the Claude Developer Platform, while guiding multi-month projects in adversarial environments. You will lead investigations, build durable automated defenses, and drive alignment with Security, Product, and Policy teams to protect users globally.
Incydr Sales Specialist
Mimecast Limited
Incydr Sales SpecialistApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6506At Mimecast, we're redefining cybersecurity and leading the charge in human risk management. We protect businesses from evolving threats, and you'll be at the forefront. Every customer you bring on board builds something bigger - for them, for us, for our communities, and for your career. Simply put - when we grow, you grow.We set you up to win. Top-tier enablement, smart coaching, and real insights mean you'll smash quotas, not just hit them. You get the tools and knowledge to sell with confidence, turning complex sales cycles into closed deals.Your career path? It's yours to shape. Compelling commission, clear progression, and chances to lead, specialize, or pivot - you decide what's next. Here, success isn't just about the deals you close. It's about your progress, your influence, your impact.Mimecast is hiring an Incydr Sales Specialist to lead the charge in driving sales of the Incydr product Incydr Overview sales via new and expansion revenue while teaming with the core Mimecast sales teams within the local country. This is a unique opportunity to join an innovative, fast-growing team and make a significant impact on a key strategic growth area for the company.As an Incydr Sales Specialist, you'll focus on driving new and expansion revenue while working closely with Mimecast's core sales teams. You'll thrive in this role if you enjoy building relationships with key decision-makers and working collaboratively with cross-functional teams to deliver results.Ready to push boundaries and accelerate your career? Let's make it happen. About Mimecast Incydr The Incydr solution is a key strategic revenue growth lever for Mimecast, coming via the acquisition of Code42 in mid 2024. The solution is led and sold by an overlay sales team, teaming with the core Mimecast sales leaders and account executives. Incydr speeds the time to detect and respond to Insider Risks by delivering a fast, simple path to data loss detection, investigation and response. With our product, IncydrTM, security teams easily protect corporate data and reduce insider risk while fostering a collaborative and productive culture for employees. We're here to support organizations made up of people that move fast and think big. The ones who work together to solve hard problems and relentlessly pursue better. What You'll Do Develop and Grow Accounts: Build and manage accounts and key relationships, leveraging Mimecast's resources to drive sales execution. Introduce Incydr to Security Buyers: Use your expertise and connections to position Incydr with key stakeholders, including CISOs, IT Leaders, and Risk/Compliance professionals. Build and Maintain Strategic Partnerships: Establish relationships with business development and program teams within FSIs while understanding their business models and sales cycles. CRM Mastery: Maintain accurate and effective CRM hygiene in Salesforce and design impactful client campaigns. Product Demonstrations: Showcase the value of Incydr to clients, demonstrating how it helps address insider risks. Collaborate Across Teams: Partner with Account Executives, Sales Engineers, BDRs, Field Marketing, and Channel Account Managers to exceed sales targets. Drive Privacy and Security Compliance: Ensure all activities align with Mimecast's strict privacy and security policies, protecting sensitive information. What You'll Bring Enterprise SaaS Sales Experience: Proven track record of selling SaaS solutions to mid-market and enterprise customers. Cybersecurity Knowledge: Familiarity with the cybersecurity landscape and experience selling security solutions. Proven Sales Success: A history of exceeding booking and revenue targets, with experience engaging senior-level decision-makers (e.g., CIOs, CISOs). Communication Skills: Exceptional oral and written communication skills, with the ability to negotiate complex deals and overcome objections. Adaptability: Success in a fast-paced, high-growth environment with a collaborative and problem-solving mindset. Salesforce Proficiency: Strong working knowledge of Salesforce and other sales tools. The on-target earnings (OTE) range for this position is £128,000-£192,000 (OTE) plus benefits. This range represents the minimum and maximum new hire compensation for this role. The position may also be eligible for incentive plans and additional benefits, in accordance with company policy and local regulations. Our salary ranges are determined by role, level, and location with individual compensation also dependent on factors such as qualifications, experience, and skills. Final offers will reflect these considerations and may vary accordingly. Belonging at Mimecast Cybersecurity is a community effort. That's why we're committed to building an inclusive, diverse community that celebrates and welcomes everyone - unless they're a cybercriminal, of course.We're proud to be an Equal Opportunity and Affirmative Action Employer, and we'd encourage you to join us whatever your background. We particularly welcome applicants from traditionally underrepresented groups.We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law.
Aug 23, 2026
Full time
Incydr Sales SpecialistApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6506At Mimecast, we're redefining cybersecurity and leading the charge in human risk management. We protect businesses from evolving threats, and you'll be at the forefront. Every customer you bring on board builds something bigger - for them, for us, for our communities, and for your career. Simply put - when we grow, you grow.We set you up to win. Top-tier enablement, smart coaching, and real insights mean you'll smash quotas, not just hit them. You get the tools and knowledge to sell with confidence, turning complex sales cycles into closed deals.Your career path? It's yours to shape. Compelling commission, clear progression, and chances to lead, specialize, or pivot - you decide what's next. Here, success isn't just about the deals you close. It's about your progress, your influence, your impact.Mimecast is hiring an Incydr Sales Specialist to lead the charge in driving sales of the Incydr product Incydr Overview sales via new and expansion revenue while teaming with the core Mimecast sales teams within the local country. This is a unique opportunity to join an innovative, fast-growing team and make a significant impact on a key strategic growth area for the company.As an Incydr Sales Specialist, you'll focus on driving new and expansion revenue while working closely with Mimecast's core sales teams. You'll thrive in this role if you enjoy building relationships with key decision-makers and working collaboratively with cross-functional teams to deliver results.Ready to push boundaries and accelerate your career? Let's make it happen. About Mimecast Incydr The Incydr solution is a key strategic revenue growth lever for Mimecast, coming via the acquisition of Code42 in mid 2024. The solution is led and sold by an overlay sales team, teaming with the core Mimecast sales leaders and account executives. Incydr speeds the time to detect and respond to Insider Risks by delivering a fast, simple path to data loss detection, investigation and response. With our product, IncydrTM, security teams easily protect corporate data and reduce insider risk while fostering a collaborative and productive culture for employees. We're here to support organizations made up of people that move fast and think big. The ones who work together to solve hard problems and relentlessly pursue better. What You'll Do Develop and Grow Accounts: Build and manage accounts and key relationships, leveraging Mimecast's resources to drive sales execution. Introduce Incydr to Security Buyers: Use your expertise and connections to position Incydr with key stakeholders, including CISOs, IT Leaders, and Risk/Compliance professionals. Build and Maintain Strategic Partnerships: Establish relationships with business development and program teams within FSIs while understanding their business models and sales cycles. CRM Mastery: Maintain accurate and effective CRM hygiene in Salesforce and design impactful client campaigns. Product Demonstrations: Showcase the value of Incydr to clients, demonstrating how it helps address insider risks. Collaborate Across Teams: Partner with Account Executives, Sales Engineers, BDRs, Field Marketing, and Channel Account Managers to exceed sales targets. Drive Privacy and Security Compliance: Ensure all activities align with Mimecast's strict privacy and security policies, protecting sensitive information. What You'll Bring Enterprise SaaS Sales Experience: Proven track record of selling SaaS solutions to mid-market and enterprise customers. Cybersecurity Knowledge: Familiarity with the cybersecurity landscape and experience selling security solutions. Proven Sales Success: A history of exceeding booking and revenue targets, with experience engaging senior-level decision-makers (e.g., CIOs, CISOs). Communication Skills: Exceptional oral and written communication skills, with the ability to negotiate complex deals and overcome objections. Adaptability: Success in a fast-paced, high-growth environment with a collaborative and problem-solving mindset. Salesforce Proficiency: Strong working knowledge of Salesforce and other sales tools. The on-target earnings (OTE) range for this position is £128,000-£192,000 (OTE) plus benefits. This range represents the minimum and maximum new hire compensation for this role. The position may also be eligible for incentive plans and additional benefits, in accordance with company policy and local regulations. Our salary ranges are determined by role, level, and location with individual compensation also dependent on factors such as qualifications, experience, and skills. Final offers will reflect these considerations and may vary accordingly. Belonging at Mimecast Cybersecurity is a community effort. That's why we're committed to building an inclusive, diverse community that celebrates and welcomes everyone - unless they're a cybercriminal, of course.We're proud to be an Equal Opportunity and Affirmative Action Employer, and we'd encourage you to join us whatever your background. We particularly welcome applicants from traditionally underrepresented groups.We consider everyone equally: your race, age, religion, sexual orientation, gender identity, ability, marital status, nationality, or any other protected characteristic won't affect your application. Due to certain obligations to our customers, an offer of employment will be subject to your successful completion of applicable background checks, conducted in accordance with local law.
Senior Architect - Email & Collaboration Security
Mimecast Limited
Senior Architect - Email & Collaboration SecurityApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6496 Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait.This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job.The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis.This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features.Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring Breadth Over Depth - and Knowing the Difference 10+ years building and operating production SaaS systems, with at least 3 years in a Solutions Architect, Principal Engineer, or equivalent role carrying product-shaping responsibility A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room Product Understanding - Not Just Technical Understanding Prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet Genuine customer orientation: asking what problem the customer has before asking how to build the feature Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions Bonus Points Background in email security, threat detection, DLP, identity, or data platforms Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS What We Offer Impact : architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars Voice : a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane Senior peers : a small, high-trust Architecture Leadership Team where everyone operates at a high level Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role A track record of product-shaping responsibility, not just technical delivery Active, daily use of AI development tools in a professional setting - not experimentation, practice Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. The base salary range for this position is £124,000 - £186,000 base + benefits. This reflects the minimum and maximum target for new hire salaries for this position. This position may also be eligible for incentive plans and other related benefits. Our salary ranges are determined by role, level, and location. These factors and individual capabilities will also determine the individual pay offered.
Aug 22, 2026
Full time
Senior Architect - Email & Collaboration SecurityApplylocations: Great Britain - Londontime type: Full timeposted on: Posted Todayjob requisition id: R6496 Senior Solutions Architect - Email & Collaboration Security - London UK Why This Role Exists The Email & Collaboration Security (ECS) product line sits at the intersection of some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait.This architecture is not greenfield. It carries two decades of accumulated product decisions, integration contracts, and operational constraints. The right candidate understands why that history matters before proposing how to move beyond it. Reasoning about legacy shape and evolutionary trajectory simultaneously is not optional; it is the job.The successful candidate will serve as connective tissue across product management, engineering, and the broader Architecture Leadership Team - turning customer and business problems into coherent, deliverable technical direction, and owning the decisions that give ECS engineering teams a stable foundation to move fast with quality. AI-First Ways of Working Mimecast is an AI-first engineering organisation. This is not a cultural aspiration - it is an operating expectation. The person in this role is expected to use AI tools as a genuine, daily part of how they work: for design exploration and iteration, documentation, analysis, prototyping, and research synthesis.This means having a real, practised opinion on where AI tooling accelerates quality decisions and where it introduces risk. It also means designing systems that incorporate AI components thoughtfully: understanding the implications of LLM integration, agent boundaries, prompt and data-contract stability, and evaluation coverage for AI-driven features.Candidates who treat AI tooling as optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations enablement What You Will Do Lead from Problem Space, Not Solution Space The role engages at the problem-framing stage, not after requirements have already hardened into tickets. This means facilitating workshops with PMs, UX, and engineers to surface real customer constraints and articulate what good looks like in business and user terms before any technical shape is proposed. Own Integration Contracts as Product Artefacts The durable interfaces - APIs, event contracts, data schemas - that connect ECS capabilities to the broader Mimecast platform are first-class artefacts owned by this role. They outlast individual features, and the coordination work that makes integrations actually land across teams and time is part of the remit. Build the Architectural Context Engineering Teams Operate Inside ADRs, service interaction patterns, NFR targets, and data contracts are not documentation - they are the substrate that lets engineering teams and AI-assisted development workflows make consistent decisions at scale. The artefacts produced in this role are clear, reasoned, and durable. Govern Without Blocking Governance is a mechanism for alignment and acceleration, not gatekeeping. Structure and discipline are introduced where they reduce risk or improve quality - and removed where ceremony adds cost without value. The role engages the Chief Architect early, pushes back constructively when platform standards do not fit the ECS context, and helps teams close decisions with conviction rather than endless review. Reason About Cost and Unit Economics Infrastructure choices are sized, cost trajectories modelled for new architecture work, and unexpected spend is flagged with a proposed remediation. The frame is cost per outcome - per protected mailbox, per remediated incident - not just monthly AWS spend. Communicate at Every Altitude A one-page decision record that lands with engineers, a solution brief that holds up under senior architecture review, a strategy narrative that resonates with product and commercial leadership - this role operates across all of those registers. Whiteboard sessions produce actual decisions, not just richer ambiguity. What You Will Bring Breadth Over Depth - and Knowing the Difference 10+ years building and operating production SaaS systems, with at least 3 years in a Solutions Architect, Principal Engineer, or equivalent role carrying product-shaping responsibility A genuinely broad architectural lens - thinking about system shape, data flows, and organisational constraints rather than reaching for the nearest deep technical rabbit hole Comfort operating across cloud-native patterns (AWS, Kafka, managed services, distributed event architectures) at high throughput - able to reason about trade-offs with confidence, without needing to be the most technically specialist person in the room Product Understanding - Not Just Technical Understanding Prior close collaboration with Product Managers and UX designers, with an understanding of jobs-to-be-done framing and a real opinion on what makes a product bet good - not just a technical bet Genuine customer orientation: asking what problem the customer has before asking how to build the feature Understanding of SaaS unit economics, the commercial implications of architectural choices, and how to reason about scale from a product perspective as well as a systems one The Right Mindset for Complex, Inherited Systems An understanding of what twenty years of software history means in a production system - no assumption of greenfield, and no treatment of legacy as only debt; it is accumulated context Structure and discipline as cognitive defaults, not imposed processes - thorough, well-reasoned artefacts, and a habit of leaving things clearer than they were found An ability to connect dots across a large picture with many moving parts, make a call, and communicate it clearly - rather than waiting for certainty that will not arrive Self-Direction and Strategic Initiative A proactive self-starter who identifies the right problems to work on without being told, and drives them to resolution Comfortable acting independently within a set of principles, while keeping the right stakeholders informed and in sync - not seeking permission, but maintaining alignment Thrives with ambiguity and treats it as a problem to be structured, not a reason to pause Learning Orientation - Not Encyclopaedic Knowledge Able to reach a solution even without all the knowledge in front of them - a problem-solver who knows how to navigate to an answer, not a mnemonic database AI tooling treated as a core capability multiplier, with a real daily practice in design work, documentation, research synthesis, and prototyping Stays ahead of where the market and the technology are going, and brings that signal back into product and architecture decisions Bonus Points Background in email security, threat detection, DLP, identity, or data platforms Familiarity with agentic AI, MCP (Model Context Protocol), or LLM application architecture Experience with eval design for AI features, product discovery practices, or data contract / data mesh approaches Exposure to M365 or GWS integration patterns, SMTP relay architecture, or cloud-native security SaaS What We Offer Impact : architecture decisions that protect millions of mailboxes and shape the technical direction of one of Mimecast's core product pillars Voice : a direct working relationship with the Chief Architect and a genuine say in technology direction - not an advisory lane Senior peers : a small, high-trust Architecture Leadership Team where everyone operates at a high level Qualifications Bachelor's degree in Computer Science, Software Engineering, or a related field - or equivalent demonstrable experience 10+ years of professional software engineering and architecture experience, with at least 3 years in a senior architecture or principal engineering role A track record of product-shaping responsibility, not just technical delivery Active, daily use of AI development tools in a professional setting - not experimentation, practice Mimecast is an equal opportunity employer committed to an inclusive and diverse workplace. The base salary range for this position is £124,000 - £186,000 base + benefits. This reflects the minimum and maximum target for new hire salaries for this position. This position may also be eligible for incentive plans and other related benefits. Our salary ranges are determined by role, level, and location. These factors and individual capabilities will also determine the individual pay offered.
Tank Recruitment
Cyber Security Operations Specialist
Tank Recruitment Bath, Somerset
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Aug 22, 2026
Contractor
Cyber Security Operations Specialist We are looking for an experienced Cyber Security Operations Specialist to join a growing security team responsible for protecting a complex IT, cloud and operational technology environment. You will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage and investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. Support security reporting, compliance and audit activity. Provide technical guidance and support to junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks such as ISO 27001, NIS and GDPR would be beneficial. Desirable certifications include: SC-200, SC-300, SC-400, MS-500, Security+ or similar cyber security qualifications. The role will involve participation in an out-of-hours incident response rota , with occasional travel where required.
Founding Security Engineer (Application & Infrastructure)
Crane Venture Partners
Founding Security Engineer (Application & Infrastructure) Build the shield that makes Enterprise Superintelligence trustworthy London / Remote • Full-time • Pavo Labs About Pavo Pavo is building Enterprise Superintelligence: compounding systems that take ownership of business outcomes and work with humans to deliver them. We believe that while foundation models are necessary, they are not sufficient. The hard problem is systems intelligence: end-to-end architectures that understand a company's code, data, and decisions, and improve themselves through experience. We are assembling a small, senior team of researchers and engineers obsessed with systems-first intelligence. Our current team consists of PhDs and ML engineers from top applied ML and coding agent companies, with a heritage of shipping systems at Spotify, ShareChat, and Sourcegraph scale. Our team has built impressive momentum with a small group of highly capable engineers and researchers. The Opportunity As a Founding Security Engineer, you will help establish the security foundations for Pavo's agentic and knowledge systems. You help secure autonomous systems that write code, execute tools, and interact with sensitive enterprise data. This role sits at the bleeding edge of AI Security, wherein you harden the infrastructure that allows our knowledge and agentic systems to work safely inside Fortune 500 environments. You will build the shield that makes Enterprise Superintelligence trustworthy. What You'll Build You will own the holistic security posture of the Pavo platform, spanning Application, AI, and Infrastructure security: AI & Application Security: Lead the defense against LLM-specific vulnerabilities (Prompt Injection, Insecure Output Handling) and standard web threats (OWASP Top 10). Implement "Guardrails" that sanitize agent inputs/outputs and conduct continuous red-teaming of our agent behaviors. Secure SDLC & DevSecOps: Embed security into our CI/CD pipelines without slowing down our high-velocity engineering team. Integrate automated SAST/DAST scanning, dependency management (SCA), and secret detection into our daily workflow. Cloud & Infrastructure Hardening: Work closely with Systems Engineers to secure our Kubernetes clusters and compute environments. Design strict IAM policies (least privilege for agents) and ensure network isolation so that agent execution environments are impenetrable. Vulnerability Management: Own the lifecycle of vulnerability detection and remediation. Manage bug bounty programs, coordinate third-party pentests, and ensure our open-source dependencies (and the code our agents generate) are secure. Enterprise Trust: Help design features that give our customers confidence, such as audit logging, data residency controls, and rigorous access governance. What We Are Looking For We are looking for a security practitioner who is a builder at heart-someone who would rather ship a secure fix than write a policy document. Core Qualifications Experience: 5+ years of experience in Security Engineering, with a strong focus on Application Security and Cloud Security. AppSec Proficiency: Deep understanding of modern web vulnerabilities (CSRF, SSRF, XSS) and experience utilizing tools like Burp Suite, Semgrep, or CodeQL. Review code in Python or Go and spot logic flaws that scanners miss. AI Security Curiosity: Understand the unique risks of LLMs. Familiar with the OWASP Top 10 for LLMs and have explored defenses against prompt injection and data exfiltration in agentic systems. Cloud Native Security: Hands-on experience securing AWS/GCP environments and Kubernetes clusters. Knowledge of container security (capabilities, seccomp, namespaces) and how to secure microservices architectures. Offensive Mindset: Experience with Red Teaming or CTFs. Think like an attacker to uncover weaknesses in business logic and agent reasoning. Nice to Have Experience securing execution sandboxes (gVisor, Firecracker, or similar). Background in "Purple Teaming"-collaborating with developers to fix what you break. Contributions to the open-source security community or research on AI safety. Knowledge of compliance frameworks (SOC 2, ISO 27001) in an early-stage startup context. Why Join Us Founding Equity: Significant ownership in a company tackling the next layer of the AI stack. Frontier Security: Define the security standards for a new category of software-autonomous enterprise agents. World-Class Team: Collaborate with a dense talent cluster of researchers and engineers who have shipped products serving hundreds of millions of users. Pavo is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Aug 22, 2026
Full time
Founding Security Engineer (Application & Infrastructure) Build the shield that makes Enterprise Superintelligence trustworthy London / Remote • Full-time • Pavo Labs About Pavo Pavo is building Enterprise Superintelligence: compounding systems that take ownership of business outcomes and work with humans to deliver them. We believe that while foundation models are necessary, they are not sufficient. The hard problem is systems intelligence: end-to-end architectures that understand a company's code, data, and decisions, and improve themselves through experience. We are assembling a small, senior team of researchers and engineers obsessed with systems-first intelligence. Our current team consists of PhDs and ML engineers from top applied ML and coding agent companies, with a heritage of shipping systems at Spotify, ShareChat, and Sourcegraph scale. Our team has built impressive momentum with a small group of highly capable engineers and researchers. The Opportunity As a Founding Security Engineer, you will help establish the security foundations for Pavo's agentic and knowledge systems. You help secure autonomous systems that write code, execute tools, and interact with sensitive enterprise data. This role sits at the bleeding edge of AI Security, wherein you harden the infrastructure that allows our knowledge and agentic systems to work safely inside Fortune 500 environments. You will build the shield that makes Enterprise Superintelligence trustworthy. What You'll Build You will own the holistic security posture of the Pavo platform, spanning Application, AI, and Infrastructure security: AI & Application Security: Lead the defense against LLM-specific vulnerabilities (Prompt Injection, Insecure Output Handling) and standard web threats (OWASP Top 10). Implement "Guardrails" that sanitize agent inputs/outputs and conduct continuous red-teaming of our agent behaviors. Secure SDLC & DevSecOps: Embed security into our CI/CD pipelines without slowing down our high-velocity engineering team. Integrate automated SAST/DAST scanning, dependency management (SCA), and secret detection into our daily workflow. Cloud & Infrastructure Hardening: Work closely with Systems Engineers to secure our Kubernetes clusters and compute environments. Design strict IAM policies (least privilege for agents) and ensure network isolation so that agent execution environments are impenetrable. Vulnerability Management: Own the lifecycle of vulnerability detection and remediation. Manage bug bounty programs, coordinate third-party pentests, and ensure our open-source dependencies (and the code our agents generate) are secure. Enterprise Trust: Help design features that give our customers confidence, such as audit logging, data residency controls, and rigorous access governance. What We Are Looking For We are looking for a security practitioner who is a builder at heart-someone who would rather ship a secure fix than write a policy document. Core Qualifications Experience: 5+ years of experience in Security Engineering, with a strong focus on Application Security and Cloud Security. AppSec Proficiency: Deep understanding of modern web vulnerabilities (CSRF, SSRF, XSS) and experience utilizing tools like Burp Suite, Semgrep, or CodeQL. Review code in Python or Go and spot logic flaws that scanners miss. AI Security Curiosity: Understand the unique risks of LLMs. Familiar with the OWASP Top 10 for LLMs and have explored defenses against prompt injection and data exfiltration in agentic systems. Cloud Native Security: Hands-on experience securing AWS/GCP environments and Kubernetes clusters. Knowledge of container security (capabilities, seccomp, namespaces) and how to secure microservices architectures. Offensive Mindset: Experience with Red Teaming or CTFs. Think like an attacker to uncover weaknesses in business logic and agent reasoning. Nice to Have Experience securing execution sandboxes (gVisor, Firecracker, or similar). Background in "Purple Teaming"-collaborating with developers to fix what you break. Contributions to the open-source security community or research on AI safety. Knowledge of compliance frameworks (SOC 2, ISO 27001) in an early-stage startup context. Why Join Us Founding Equity: Significant ownership in a company tackling the next layer of the AI stack. Frontier Security: Define the security standards for a new category of software-autonomous enterprise agents. World-Class Team: Collaborate with a dense talent cluster of researchers and engineers who have shipped products serving hundreds of millions of users. Pavo is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Director, Program Delivery Management
Mimecast Services Ltd
About Mimecast Mimecast is a leading cybersecurity company protecting people, data, and communications from today's most sophisticated threats. With over 42,000 customers worldwide and 18 billion security events analysed daily, we pioneer Human Risk Management - combining threat detection, awareness training, and insider risk management into a platform built around the human element of cybersecurity. About the role The Director, Program and Delivery Management leads the team responsible for how Mimecast's Product and R&D organisation plans, executes, and delivers - from the first articulation of a program's goals through to customer impact. You will own the discipline of programme and delivery management across the organisation: setting the standards, systems, and operating model that enable teams to commit with confidence and deliver with consistency. What you'll do Team Leadership & Capability Development Lead, develop and retain a team of Programme and Delivery Managers, each embedded as a senior partner to Product and R&D leadership across the portfolio. Set the standard for planning ownership, delivery partnership, systemic problem solving, coach your team to perform consistently at that level, and monitor team health - pace, process overhead, retention risk - addressing emerging issues before they affect delivery or people. Planning System & Portfolio Oversight Partner with senior leadership to shape and evolve the planning system - the frameworks, cadences and standards that govern how work is prioritised, resourced, sequenced and committed to across the portfolio. Maintain a portfolio level view of commitments, capacity and delivery confidence, act as the escalation point for cross portfolio dependencies, trade offs and resourcing conflicts - bringing recommended solutions, not just problem statements. Delivery Rhythm & Execution Governance Work with leadership to define and maintain the delivery operating rhythm - the cadences, forums and reporting structures that keep execution visible without adding unnecessary overhead. Ensure your team runs consistent programme reviews, proactively manages risk and dependencies, and drives blockers to resolution before they affect commitments. AI Integration & Program Management Innovation Define the AI strategy for programme and delivery management - identifying where AI tools can meaningfully improve how programmes are planned, tracked and delivered - and translate that into an actionable roadmap. Keep the team current with evolving AI tools, foster shared learning and experimentation, and proactively identify opportunities to leverage AI within the teams and programmes you support to reduce manual overhead and increase velocity. Metrics, Velocity & Reporting Own the metrics strategy - defining what gets measured, how, and how delivery flow data drives decisions at every level. Build and maintain executive facing reporting that gives leadership a clear, honest view of portfolio health: what is on track, what is at risk, and what requires a decision. Pattern Recognition & Systemic Improvement Look across the portfolio to identify patterns of friction, misalignment and inefficiency - and drive improvement programmes that address root causes, not symptoms. Lead the evolution of shared delivery practices - planning standards, estimation norms, definitions of done - making what works repeatable and retiring what does not. What you'll bring 7+ years in Technical Programme Management, Delivery Management or Engineering Programme Management, including 4+ years leading a team of programme managers within a multi team Product and R&D organisation. Track record of designing and owning planning and delivery systems at scale - accountable for the quality and reliability of the output. Executive presence and communication skills - able to influence without authority across functions and levels. Proven ability to drive change in complex, matrixed organisations - building alignment around new ways of working. Strategic clarity combined with operational depth - knowing when to see across a portfolio and when to dive into detail. Analytical capability to build a metrics framework, interpret delivery flow data and construct a clear narrative that drives leadership decisions. Fluency in agile delivery practices and hands on experience with delivery tooling (e.g. Jira, Confluence) and leading programmes across multiple geographies and time zones. Genuine interest in how AI tools are reshaping programme and delivery management, and a drive to lead adoption where it creates measurable value for the team. High ownership and a team first mindset - bringing problems with proposed solutions, developing others to do the same and measuring success by what the team achieves. Why Mimecast The programme and delivery management function at Mimecast has a strong foundation built by a team with deep experience and genuine commitment to how this organisation delivers. This role is an opportunity to build on that foundation, raise the bar on what's already working, bring new thinking to what can be better and shape what the function becomes as Mimecast scales. You will be visible at every level of the company and have the chance to lead meaningful work, operate with real influence and leave a mark on how a world class cybersecurity company runs. Base salary range: £104,000 - £156,000 base + benefits. The position may also be eligible for incentive plans and other related benefits. Mimecast is an equal opportunity and affirmative action employer. We are committed to building an inclusive, diverse community that reflects the world we serve.
Aug 21, 2026
Full time
About Mimecast Mimecast is a leading cybersecurity company protecting people, data, and communications from today's most sophisticated threats. With over 42,000 customers worldwide and 18 billion security events analysed daily, we pioneer Human Risk Management - combining threat detection, awareness training, and insider risk management into a platform built around the human element of cybersecurity. About the role The Director, Program and Delivery Management leads the team responsible for how Mimecast's Product and R&D organisation plans, executes, and delivers - from the first articulation of a program's goals through to customer impact. You will own the discipline of programme and delivery management across the organisation: setting the standards, systems, and operating model that enable teams to commit with confidence and deliver with consistency. What you'll do Team Leadership & Capability Development Lead, develop and retain a team of Programme and Delivery Managers, each embedded as a senior partner to Product and R&D leadership across the portfolio. Set the standard for planning ownership, delivery partnership, systemic problem solving, coach your team to perform consistently at that level, and monitor team health - pace, process overhead, retention risk - addressing emerging issues before they affect delivery or people. Planning System & Portfolio Oversight Partner with senior leadership to shape and evolve the planning system - the frameworks, cadences and standards that govern how work is prioritised, resourced, sequenced and committed to across the portfolio. Maintain a portfolio level view of commitments, capacity and delivery confidence, act as the escalation point for cross portfolio dependencies, trade offs and resourcing conflicts - bringing recommended solutions, not just problem statements. Delivery Rhythm & Execution Governance Work with leadership to define and maintain the delivery operating rhythm - the cadences, forums and reporting structures that keep execution visible without adding unnecessary overhead. Ensure your team runs consistent programme reviews, proactively manages risk and dependencies, and drives blockers to resolution before they affect commitments. AI Integration & Program Management Innovation Define the AI strategy for programme and delivery management - identifying where AI tools can meaningfully improve how programmes are planned, tracked and delivered - and translate that into an actionable roadmap. Keep the team current with evolving AI tools, foster shared learning and experimentation, and proactively identify opportunities to leverage AI within the teams and programmes you support to reduce manual overhead and increase velocity. Metrics, Velocity & Reporting Own the metrics strategy - defining what gets measured, how, and how delivery flow data drives decisions at every level. Build and maintain executive facing reporting that gives leadership a clear, honest view of portfolio health: what is on track, what is at risk, and what requires a decision. Pattern Recognition & Systemic Improvement Look across the portfolio to identify patterns of friction, misalignment and inefficiency - and drive improvement programmes that address root causes, not symptoms. Lead the evolution of shared delivery practices - planning standards, estimation norms, definitions of done - making what works repeatable and retiring what does not. What you'll bring 7+ years in Technical Programme Management, Delivery Management or Engineering Programme Management, including 4+ years leading a team of programme managers within a multi team Product and R&D organisation. Track record of designing and owning planning and delivery systems at scale - accountable for the quality and reliability of the output. Executive presence and communication skills - able to influence without authority across functions and levels. Proven ability to drive change in complex, matrixed organisations - building alignment around new ways of working. Strategic clarity combined with operational depth - knowing when to see across a portfolio and when to dive into detail. Analytical capability to build a metrics framework, interpret delivery flow data and construct a clear narrative that drives leadership decisions. Fluency in agile delivery practices and hands on experience with delivery tooling (e.g. Jira, Confluence) and leading programmes across multiple geographies and time zones. Genuine interest in how AI tools are reshaping programme and delivery management, and a drive to lead adoption where it creates measurable value for the team. High ownership and a team first mindset - bringing problems with proposed solutions, developing others to do the same and measuring success by what the team achieves. Why Mimecast The programme and delivery management function at Mimecast has a strong foundation built by a team with deep experience and genuine commitment to how this organisation delivers. This role is an opportunity to build on that foundation, raise the bar on what's already working, bring new thinking to what can be better and shape what the function becomes as Mimecast scales. You will be visible at every level of the company and have the chance to lead meaningful work, operate with real influence and leave a mark on how a world class cybersecurity company runs. Base salary range: £104,000 - £156,000 base + benefits. The position may also be eligible for incentive plans and other related benefits. Mimecast is an equal opportunity and affirmative action employer. We are committed to building an inclusive, diverse community that reflects the world we serve.
Head of Security Architecture
AXA Group
The Head of Security Architecture with deep expertise in AI systems to design, implement, and maintain secure architectures for enterprise security, artificial intelligence and machine learning initiatives across the organisation. This role will define technical security standards, reference architectures, and implementation frameworks that protect traditional IT environments and AI systems, models, data pipelines, and deployments throughout their life-cycle - from conception to production. The Head of Security Architecture will partner with stakeholders and internal teams to establish a comprehensive, forward-looking security strategy and architecture that enables organisational ambitions while managing AI-related security risks. What you'll be doing What will your essential responsibilities include? Work with stakeholders and internal teams to define a comprehensive, forward-looking Security strategy, inclusive of AI Security and Architecture that supports the organisation's global growth ambitions, incorporating policies, standards, and control frameworks applicable across multiple jurisdictions. Establish and evolve governance mechanisms that promote responsible, ethical, and compliant AI use worldwide, considering regional regulatory nuances and cultural sensitivities. Integrate AI security requirements into security and enterprise architecture, software development life cycles, and model life-cycle management, ensuring consistency and agility across diverse operational regions. Will be part of Security Strategy development and does require interaction with executive business leaders for a global organisation. Architecture & Design: Design enterprise-wide security architectures and reference implementations Establish secure AI development, training, and deployment pipelines Define AI & security data governance and access control frameworks for systems Create security-by-design principles for AI model development Design threat models specific to AI/ML systems and attack surfaces Technical Security Standards: Develop and maintain security frameworks and best practices Create secure coding standards for ML engineers and data scientists Establish model validation, testing, and verification protocols Define encryption, authentication, and authorisation standards for systems Document security requirements and technical specifications Infrastructure & Systems: Architect secure AI infrastructure (cloud, on-prem, hybrid) Design model registry, versioning, and deployment systems with security controls Implement monitoring, logging, and anomaly detection for AI systems Oversee secure data pipelines and feature stores Design isolation and sandboxing for high-risk AI workloads Risk & Threat Mitigation: Conduct threat modelling for AI systems (adversarial attacks, model poisoning, data poisoning) Design defences against AI-specific vulnerabilities Implement model robustness testing and validation frameworks Create incident response architectures for AI security breaches Design recovery and rollback mechanisms for compromised models Vendor & Third-Party Management: Evaluate and architect integrations with third-party AI platforms securely Define security requirements for AI vendors and SaaS providers Design secure APIs and interfaces for external AI model access Oversee security architecture of outsourced AI development Governance & Compliance: Align security architecture with regulatory requirements (GDPR, AI Act, industry standards) Design audit trails and compliance monitoring systems Document architecture decisions and security trade-offs Collaborate on responsible AI and ethical AI architecture considerations Team Leadership & Knowledge Sharing: Lead AI security architecture reviews and design sessions Mentor security engineers and architectsPresent architecture recommendations to technical and executive stakeholders Build and maintain security architecture documentation Drive adoption of secure architecture patterns You will report to Chief Security Officer. What you'll bring We're looking for someone who has these abilities and skills: Substantial experience in cyber security, systems architecture, or infrastructure security Proven capabilities in designing and architecture large-scale systems Experience in hands-on and applied experience with AI/ML security architecture Deep technical knowledge of: Machine learning systems and workflows AI/ML vulnerabilities and attack vectors (adversarial examples, model extraction, poisoning) Cloud security and containerisation (Docker, Kubernetes) Data security, encryption, and access controls API security and micro-services architecture Robust background in threat modelling and security architecture frameworks Experience with secure software development life-cycle (SSDLC) Advanced degree in Computer Science, Cyber security, or related field (or equivalent) Key Competencies Executive judgement and credibility Global risk thinking and cultural agility Governance and control design Influencing and stakeholder management without direct authority Clear, compelling communication tailored for diverse audiences, including boards and regulators Balancing innovation with disciplined risk management on a global scale Preferred Skills CISSP, CCSK, CISM, AAISM or similar security architecture certification Experience with MLOps/MLSecOps platforms Background in machine learning engineering or data science Experience with AI governance and responsible AI frameworks Knowledge of AI-specific security standards (NIST AI RMF, ISO/IEC 42001) Experience in regulated industries (finance, healthcare, government) Contributions to open-source security or AI security projects Speaking/publishing on AI security topics What we offer Inclusion AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic. At AXA XL, we know that an inclusive culture and enables business growth and is critical to our success. That's why we have made a strategic commitment to attract, develop, advance and retain the most inclusive workforce possible, and create a culture where everyone can bring their full selves to work and reach their highest potential. It's about helping one another - and our business - to move forward and succeed. Five Business Resource Groups focused on gender, LGBTQ+, ethnicity and origins, disability and inclusion with 20 Chapters around the globe. Robust support for Flexible Working Arrangements Enhanced family-friendly leave benefits Named to the Diversity Best Practices Index Signatory to the UK Women in Finance Charter Learn more at AXA XL is an Equal Opportunity Employer. Total Rewards AXA XL's Reward program is designed to take care of what matters most to you, covering the full picture of your health, wellbeing, lifestyle and financial security. It provides competitive compensation and personalized, inclusive benefits that evolve as you do. We're committed to rewarding your contribution for the long term, so you can be your best self today and look forward to the future with confidence. Sustainability At AXA XL, Sustainability is integral to our business strategy. In an ever-changing world, AXA XL protects what matters most for our clients and communities. We know that sustainability is at the root of a more resilient future. Our 2023-26 Sustainability strategy, called "Roots of resilience", focuses on protecting natural ecosystems, addressing climate change, and embedding sustainable practices across our operations. Our Pillars: Valuing nature: How we impact nature affects how nature impacts us. Resilient ecosystems - the foundation of a sustainable planet and society - are essential to our future. We're committed to protecting and restoring nature - from mangrove forests to the bees in our backyard - by increasing biodiversity awareness and inspiring clients and colleagues to put nature at the heart of their plans. Addressing climate change: The effects of a changing climate are far-reaching and significant. Unpredictable weather, increasing temperatures, and rising sea levels cause both social inequalities and environmental disruption. We're building a net zero strategy, developing insurance products and services, and mobilizing to advance thought leadership and investment in societal-led solutions. Integrating ESG: All companies have a role to play in building a more resilient future. Incorporating ESG considerations into our internal processes and practices builds resilience from the roots of our business. We're training our colleagues, engaging our external partners, and evolving our sustainability governance and reporting. AXA Hearts in Action: We have established volunteering and charitable giving programs to help colleagues support causes that matter most to them, known as AXA XL's "Hearts in Action" programs . click apply for full job details
Aug 20, 2026
Full time
The Head of Security Architecture with deep expertise in AI systems to design, implement, and maintain secure architectures for enterprise security, artificial intelligence and machine learning initiatives across the organisation. This role will define technical security standards, reference architectures, and implementation frameworks that protect traditional IT environments and AI systems, models, data pipelines, and deployments throughout their life-cycle - from conception to production. The Head of Security Architecture will partner with stakeholders and internal teams to establish a comprehensive, forward-looking security strategy and architecture that enables organisational ambitions while managing AI-related security risks. What you'll be doing What will your essential responsibilities include? Work with stakeholders and internal teams to define a comprehensive, forward-looking Security strategy, inclusive of AI Security and Architecture that supports the organisation's global growth ambitions, incorporating policies, standards, and control frameworks applicable across multiple jurisdictions. Establish and evolve governance mechanisms that promote responsible, ethical, and compliant AI use worldwide, considering regional regulatory nuances and cultural sensitivities. Integrate AI security requirements into security and enterprise architecture, software development life cycles, and model life-cycle management, ensuring consistency and agility across diverse operational regions. Will be part of Security Strategy development and does require interaction with executive business leaders for a global organisation. Architecture & Design: Design enterprise-wide security architectures and reference implementations Establish secure AI development, training, and deployment pipelines Define AI & security data governance and access control frameworks for systems Create security-by-design principles for AI model development Design threat models specific to AI/ML systems and attack surfaces Technical Security Standards: Develop and maintain security frameworks and best practices Create secure coding standards for ML engineers and data scientists Establish model validation, testing, and verification protocols Define encryption, authentication, and authorisation standards for systems Document security requirements and technical specifications Infrastructure & Systems: Architect secure AI infrastructure (cloud, on-prem, hybrid) Design model registry, versioning, and deployment systems with security controls Implement monitoring, logging, and anomaly detection for AI systems Oversee secure data pipelines and feature stores Design isolation and sandboxing for high-risk AI workloads Risk & Threat Mitigation: Conduct threat modelling for AI systems (adversarial attacks, model poisoning, data poisoning) Design defences against AI-specific vulnerabilities Implement model robustness testing and validation frameworks Create incident response architectures for AI security breaches Design recovery and rollback mechanisms for compromised models Vendor & Third-Party Management: Evaluate and architect integrations with third-party AI platforms securely Define security requirements for AI vendors and SaaS providers Design secure APIs and interfaces for external AI model access Oversee security architecture of outsourced AI development Governance & Compliance: Align security architecture with regulatory requirements (GDPR, AI Act, industry standards) Design audit trails and compliance monitoring systems Document architecture decisions and security trade-offs Collaborate on responsible AI and ethical AI architecture considerations Team Leadership & Knowledge Sharing: Lead AI security architecture reviews and design sessions Mentor security engineers and architectsPresent architecture recommendations to technical and executive stakeholders Build and maintain security architecture documentation Drive adoption of secure architecture patterns You will report to Chief Security Officer. What you'll bring We're looking for someone who has these abilities and skills: Substantial experience in cyber security, systems architecture, or infrastructure security Proven capabilities in designing and architecture large-scale systems Experience in hands-on and applied experience with AI/ML security architecture Deep technical knowledge of: Machine learning systems and workflows AI/ML vulnerabilities and attack vectors (adversarial examples, model extraction, poisoning) Cloud security and containerisation (Docker, Kubernetes) Data security, encryption, and access controls API security and micro-services architecture Robust background in threat modelling and security architecture frameworks Experience with secure software development life-cycle (SSDLC) Advanced degree in Computer Science, Cyber security, or related field (or equivalent) Key Competencies Executive judgement and credibility Global risk thinking and cultural agility Governance and control design Influencing and stakeholder management without direct authority Clear, compelling communication tailored for diverse audiences, including boards and regulators Balancing innovation with disciplined risk management on a global scale Preferred Skills CISSP, CCSK, CISM, AAISM or similar security architecture certification Experience with MLOps/MLSecOps platforms Background in machine learning engineering or data science Experience with AI governance and responsible AI frameworks Knowledge of AI-specific security standards (NIST AI RMF, ISO/IEC 42001) Experience in regulated industries (finance, healthcare, government) Contributions to open-source security or AI security projects Speaking/publishing on AI security topics What we offer Inclusion AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic. At AXA XL, we know that an inclusive culture and enables business growth and is critical to our success. That's why we have made a strategic commitment to attract, develop, advance and retain the most inclusive workforce possible, and create a culture where everyone can bring their full selves to work and reach their highest potential. It's about helping one another - and our business - to move forward and succeed. Five Business Resource Groups focused on gender, LGBTQ+, ethnicity and origins, disability and inclusion with 20 Chapters around the globe. Robust support for Flexible Working Arrangements Enhanced family-friendly leave benefits Named to the Diversity Best Practices Index Signatory to the UK Women in Finance Charter Learn more at AXA XL is an Equal Opportunity Employer. Total Rewards AXA XL's Reward program is designed to take care of what matters most to you, covering the full picture of your health, wellbeing, lifestyle and financial security. It provides competitive compensation and personalized, inclusive benefits that evolve as you do. We're committed to rewarding your contribution for the long term, so you can be your best self today and look forward to the future with confidence. Sustainability At AXA XL, Sustainability is integral to our business strategy. In an ever-changing world, AXA XL protects what matters most for our clients and communities. We know that sustainability is at the root of a more resilient future. Our 2023-26 Sustainability strategy, called "Roots of resilience", focuses on protecting natural ecosystems, addressing climate change, and embedding sustainable practices across our operations. Our Pillars: Valuing nature: How we impact nature affects how nature impacts us. Resilient ecosystems - the foundation of a sustainable planet and society - are essential to our future. We're committed to protecting and restoring nature - from mangrove forests to the bees in our backyard - by increasing biodiversity awareness and inspiring clients and colleagues to put nature at the heart of their plans. Addressing climate change: The effects of a changing climate are far-reaching and significant. Unpredictable weather, increasing temperatures, and rising sea levels cause both social inequalities and environmental disruption. We're building a net zero strategy, developing insurance products and services, and mobilizing to advance thought leadership and investment in societal-led solutions. Integrating ESG: All companies have a role to play in building a more resilient future. Incorporating ESG considerations into our internal processes and practices builds resilience from the roots of our business. We're training our colleagues, engaging our external partners, and evolving our sustainability governance and reporting. AXA Hearts in Action: We have established volunteering and charitable giving programs to help colleagues support causes that matter most to them, known as AXA XL's "Hearts in Action" programs . click apply for full job details
Information Security Director
Smart Communications group City Of Westminster, London
Information Security Director We are seeking a highly skilled and experienced Director of Information Security to join our dynamic and growing team. As the Director of Information Security you will play a crucial role in ensuring safety, integrity and privacy, securing our company and data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship and direction. Partner with Product, Engineering, Operations, HR, Legal and Finance functions to embed security into all business operations and change programmes. Collaborate with the CIO to provide a future vision of technology and systems with security in mind. Provide strategic planning, development and delivery of the information security strategy across the business. Lead and direct security operations team in monitoring, detecting, and responding to security incidents and breaches. Champion the adoption of security by design and privacy by design principles, fostering a culture of security. Required Skills and Experience A minimum of 10+ years hands on, proven industry experience in a similar role. Bachelor's or master's degree in computer science, Information Security, or a related field. Industry certifications such as CISSP, CISM, CEH, ECSA, LPT, OSCP, AWS certified security or equivalent are highly desirable. Strong budget planning and financial management capabilities related to security operations, combined with a proactive problem solving attitude and service oriented approach. Experience managing and growing high performing teams. Excellent communication and interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. Benefits Competitive salary commensurate with experience. Extensive health insurance, income protection, life assurance. Subsidised gym membership, leisure travel insurance. Pension contribution and 25 days holiday allowance plus an additional day off for your birthday. Fully remote role with flexible working environment. Equal Opportunity We are an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of colour, religion, sex, national origin, sexual orientation, age, disability, marital status or gender identity. Location UK - Remote
Aug 20, 2026
Full time
Information Security Director We are seeking a highly skilled and experienced Director of Information Security to join our dynamic and growing team. As the Director of Information Security you will play a crucial role in ensuring safety, integrity and privacy, securing our company and data against cyber threats. We operate in a highly secure global SaaS organization that holds multiple certifications such as PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP and works with a large, federated customer base. Responsibilities Develop and lead a team of Security Analysts and Engineers, providing management, mentorship and direction. Partner with Product, Engineering, Operations, HR, Legal and Finance functions to embed security into all business operations and change programmes. Collaborate with the CIO to provide a future vision of technology and systems with security in mind. Provide strategic planning, development and delivery of the information security strategy across the business. Lead and direct security operations team in monitoring, detecting, and responding to security incidents and breaches. Champion the adoption of security by design and privacy by design principles, fostering a culture of security. Required Skills and Experience A minimum of 10+ years hands on, proven industry experience in a similar role. Bachelor's or master's degree in computer science, Information Security, or a related field. Industry certifications such as CISSP, CISM, CEH, ECSA, LPT, OSCP, AWS certified security or equivalent are highly desirable. Strong budget planning and financial management capabilities related to security operations, combined with a proactive problem solving attitude and service oriented approach. Experience managing and growing high performing teams. Excellent communication and interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience working on projects ensuring compliance with PCI DSS, ISO/IEC 27001, SOC, HIPAA, IRAP controls. Knowledge of security compliance standards relevant to the SaaS industry such as PCI, GDPR, ISO 27001, SOC 2, NIST. Benefits Competitive salary commensurate with experience. Extensive health insurance, income protection, life assurance. Subsidised gym membership, leisure travel insurance. Pension contribution and 25 days holiday allowance plus an additional day off for your birthday. Fully remote role with flexible working environment. Equal Opportunity We are an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of colour, religion, sex, national origin, sexual orientation, age, disability, marital status or gender identity. Location UK - Remote
Sr. Manager, Data Science (Remote, GBR)
CrowdStrike Holdings, Inc.
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role CrowdStrike's Data Science team mis seeking a Sr. Manager to lead a team of data scientists at the intersection of Machine Learning, Large Language Models, and Cybersecurity/reverse engineering. This is a leadership role where you will help the team manager business demand/needs, translate them to technical objectives, gain stakeholder buy in, and help drive the technical approaches and provide technical feedback and guidance to junior and experienced team members. As a technical leader you will support you team in identifying high-value problems in the short, mid, and long term, obtain stakeholder buy in, and translate problems in the business into actionable research objectives. You'll collaborate and work with all aspects of ML and cybersecurity, across a large enterprise and complex data problems in size (trillions of events a day), asperity, and the dynamic nature of an active adversary that adapts to our advances in the field. This role is a chance to work in impactful outcomes that improve people's security and safety, while also growing in depth and breadth. From assemble, lifting, decompilation to optimal control and continuous optimization, every problem in the spectrum of computer science and related disciplines occurs in tackling the problems CrowdStrike deals with. An excellent candidate will have a intrinsic desire to learn and leverage tools across these domains, invent new tools to fill the gaps in what we need, and a desire to increase their leverage by enabling a team to perform these critical research objectives. What You'll Do Lead and mentor a team of data scientists, providing technical guidance, career development, and performance management Work with senior leadership to refine/define priorities, identify risks/gaps, support staff and budget planning, and disseminate key milestones to the business leaders. Plan and prioritize team roadmaps, balancing research innovation with delivery of production ML systems Stay current with emerging trends in ML and cybersecurity, and evaluate new technologies for potential adoption Collaborate with cross-functional teams including security research, engineering, and product to align ML capabilities with business objectives Partner with security domain experts to identify high-impact opportunities where ML can enhance threat detection and response Communicate complex technical concepts and ML insights to stakeholders across the organization Guide the development of advanced models for malware detection, behavioral threat analysis, and AI-driven security automation Drive research initiatives that result in publications, blog posts, patents, and other contributions to the ML and security communities Contribute to hands on technical work when needed, maintaining deep expertise in ML systems and security applications What You'll Need Advanced degree (Master's or PhD) in Computer Science, Data Science, Mathematics, Physics, or related STEM field, OR Bachelor's degree with equivalent experience 5+ years of experience in data science and machine learning 5+ years in a technical leadership or team lead capacity Proven track record of leading ML projects from research to production deployment Demonstrated ability to collaborate with cross functional teams and communicate technical concepts to non technical stakeholders Ability to present and work with senior stakeholders in a business, communicate risks/opportunities, and translate business problems into technical objectives Strong verbal and written communication skills, and ability to keep track of multiple projects, and distill key details for regular program management. Proven experience utilizing AI technologies to enhance decision making, streamline workflows and processes, improve efficiency and drive business outcomes. Bonus Points Deep expertise in cybersecurity, including experience in threat intelligence, malware analysis, or security operations Experience with agentic AI systems, LLMs, or autonomous security automation Track record of working with very large, sparse, high dimensional datasets in production environments Experience with advanced ML techniques including semi supervised learning, online learning, and model optimization for reducing false positives Strong knowledge of ML operations, including model monitoring, A/B testing, and production ML infrastructure Comfortable working in cloud environments (AWS) and Linux systems Proven ability to set technical vision and drive innovation in ML systems Experience hiring, building, and scaling high performing data science teams Strategic mindset with ability to balance research exploration with pragmatic business outcomes Additional Qualifications Published research, patents, or contributions to the ML or security communities Benefits of Working at CrowdStrike Market leader in compensation and equity awards Comprehensive physical and mental wellness programs Competitive vacation and holidays for recharge Paid parental and adoption leaves Professional development opportunities for all employees regardless of level or role Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections Vibrant office culture with world class amenities Great Place to Work Certified across the globe CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions-including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay offs, return from lay off, terminations and social/recreational programs-on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at for further assistance. CrowdStrike was founded in 2011 to fix a fundamental problem: The sophisticated attacks that were forcing the world's leading businesses into the headlines could not be solved with existing malware based defenses. Founder George Kurtz realized that a brand new approach was needed - one that combines the most advanced endpoint protection with expert intelligence to pinpoint the adversaries perpetrating the attacks, not just the malware. There's much more to the story of how Falcon has redefined endpoint protection but there's only one thing to remember about CrowdStrike: We stop breaches.
Aug 19, 2026
Full time
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role CrowdStrike's Data Science team mis seeking a Sr. Manager to lead a team of data scientists at the intersection of Machine Learning, Large Language Models, and Cybersecurity/reverse engineering. This is a leadership role where you will help the team manager business demand/needs, translate them to technical objectives, gain stakeholder buy in, and help drive the technical approaches and provide technical feedback and guidance to junior and experienced team members. As a technical leader you will support you team in identifying high-value problems in the short, mid, and long term, obtain stakeholder buy in, and translate problems in the business into actionable research objectives. You'll collaborate and work with all aspects of ML and cybersecurity, across a large enterprise and complex data problems in size (trillions of events a day), asperity, and the dynamic nature of an active adversary that adapts to our advances in the field. This role is a chance to work in impactful outcomes that improve people's security and safety, while also growing in depth and breadth. From assemble, lifting, decompilation to optimal control and continuous optimization, every problem in the spectrum of computer science and related disciplines occurs in tackling the problems CrowdStrike deals with. An excellent candidate will have a intrinsic desire to learn and leverage tools across these domains, invent new tools to fill the gaps in what we need, and a desire to increase their leverage by enabling a team to perform these critical research objectives. What You'll Do Lead and mentor a team of data scientists, providing technical guidance, career development, and performance management Work with senior leadership to refine/define priorities, identify risks/gaps, support staff and budget planning, and disseminate key milestones to the business leaders. Plan and prioritize team roadmaps, balancing research innovation with delivery of production ML systems Stay current with emerging trends in ML and cybersecurity, and evaluate new technologies for potential adoption Collaborate with cross-functional teams including security research, engineering, and product to align ML capabilities with business objectives Partner with security domain experts to identify high-impact opportunities where ML can enhance threat detection and response Communicate complex technical concepts and ML insights to stakeholders across the organization Guide the development of advanced models for malware detection, behavioral threat analysis, and AI-driven security automation Drive research initiatives that result in publications, blog posts, patents, and other contributions to the ML and security communities Contribute to hands on technical work when needed, maintaining deep expertise in ML systems and security applications What You'll Need Advanced degree (Master's or PhD) in Computer Science, Data Science, Mathematics, Physics, or related STEM field, OR Bachelor's degree with equivalent experience 5+ years of experience in data science and machine learning 5+ years in a technical leadership or team lead capacity Proven track record of leading ML projects from research to production deployment Demonstrated ability to collaborate with cross functional teams and communicate technical concepts to non technical stakeholders Ability to present and work with senior stakeholders in a business, communicate risks/opportunities, and translate business problems into technical objectives Strong verbal and written communication skills, and ability to keep track of multiple projects, and distill key details for regular program management. Proven experience utilizing AI technologies to enhance decision making, streamline workflows and processes, improve efficiency and drive business outcomes. Bonus Points Deep expertise in cybersecurity, including experience in threat intelligence, malware analysis, or security operations Experience with agentic AI systems, LLMs, or autonomous security automation Track record of working with very large, sparse, high dimensional datasets in production environments Experience with advanced ML techniques including semi supervised learning, online learning, and model optimization for reducing false positives Strong knowledge of ML operations, including model monitoring, A/B testing, and production ML infrastructure Comfortable working in cloud environments (AWS) and Linux systems Proven ability to set technical vision and drive innovation in ML systems Experience hiring, building, and scaling high performing data science teams Strategic mindset with ability to balance research exploration with pragmatic business outcomes Additional Qualifications Published research, patents, or contributions to the ML or security communities Benefits of Working at CrowdStrike Market leader in compensation and equity awards Comprehensive physical and mental wellness programs Competitive vacation and holidays for recharge Paid parental and adoption leaves Professional development opportunities for all employees regardless of level or role Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections Vibrant office culture with world class amenities Great Place to Work Certified across the globe CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions-including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay offs, return from lay off, terminations and social/recreational programs-on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at for further assistance. CrowdStrike was founded in 2011 to fix a fundamental problem: The sophisticated attacks that were forcing the world's leading businesses into the headlines could not be solved with existing malware based defenses. Founder George Kurtz realized that a brand new approach was needed - one that combines the most advanced endpoint protection with expert intelligence to pinpoint the adversaries perpetrating the attacks, not just the malware. There's much more to the story of how Falcon has redefined endpoint protection but there's only one thing to remember about CrowdStrike: We stop breaches.

Modal Window

  • Home
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Google Plus
  • LinkedIn
Parent and Partner sites: IT Job Board | Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | Construction Job Board | Property jobs | myJobsnearme.com | Jobs near me
© 2008-2026 Jobsite Jobs | Designed by Web Design Agency