Thinking Beyond Limitations
Lead Security Engineer
Location
United Kingdom
Posted
19 days ago
Salary
0
Seniority
Lead
Job Description
Lead Security Engineer
Kainos
Role Description As a Lead Security Engineer (Consultant) in Kainos, you will be responsible for leading our security engineering and security testing efforts across Kainos Platforms and Services. Your responsibilities will include: - Setting direction on our security testing methodology, engagement scoping, outputs, and tool/technology selections. - Developing junior security engineers. - Working with agile delivery teams to promote good security practices throughout the software development journey. - Sharing knowledge and educating customers and Kainos team members on good security practices. - Managing, coaching, and developing a small number of staff, focusing on performance management and career development. - Providing direction and leadership for your team while solving challenging problems together. Qualifications - Expertise in securing Web Applications and Cloud Platforms (e.g. AWS/Azure). - Expertise in testing software and infrastructure security using existing manual or automated security tools. - Expertise in assessing software and infrastructure source code from a security standpoint. - Expertise in Continuous Security, Continuous Integration, and Continuous Delivery techniques. - Knowledge of international security standards and regulations such as NCSC, NIST, CIS, PCI, GDPR, OWASP ASVS, HIPPA, SOC2, etc. - Knowledge of typical cyber security attack vectors (e.g. OWASP Top 10, SQL, XSS, XXE, MITM, etc.) and ability to articulate threats and risks via threat modelling exercises/workshops. - Excellent communication skills, with the ability to convey security complexities to audiences of various technical abilities. - Demonstrated ability in managing, mentoring, and coaching team members and the wider community. - Good programming or scripting experience across Windows/Linux/MacOS. - Stays up to date with new threats and attack types. Requirements - Penetration testing qualifications (e.g. OSCP, CREST, TIGER or equivalent). - Experience of working with external penetration test companies to translate report findings into actionable tasks. - Experience with security tools (e.g. Burp Suite, OWASP-ZAP, NMAP, Nessus, Kali, Metasploit, etc.). - Knowledge about main cyber security areas (e.g. OSINT, network scanning, enumeration, sniffing, session hijacking, social engineering, firewalls, honeypots, IDS/IPS/WAF/AV/DLP, Cryptography/PKI, IoT threats, trojans/viruses/worms/backdoors/ransomware, etc.). - Active participation in knowledge sharing activities, both within the team and at a wider level. - Active involvement in the security community – conference speaking, sharing knowledge externally. - Experience of working in an Agile environment. Benefits - People-first culture where ideas are valued and growth is supported. - Opportunity to be part of a diverse, ambitious team that celebrates creativity and collaboration.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Ingeniero de Ciberseguridad – Banca
KeppriEspecialistas en el end to end de activos digitales, staffing y Servicios Tecnológicos. Hazlo fácil con KEPPRI !!!
• Serás responsable de liderar la definición funcional y la evolución de productos digitales para un cliente del sector bancario. • Actuarás como puente entre negocio y tecnología, asegurando que el equipo entregue valor continuo mediante una gestión clara del backlog, criterios de aceptación bien definidos y una visión alineada con objetivos del negocio, cumplimiento y experiencia del cliente. • Levantar y traducir necesidades del negocio en épicas, features y user stories claras y accionables. • Priorizar el backlog con foco en valor, riesgo, dependencias y cumplimiento normativo. • Definir objetivos, roadmap y alcance por releases junto a stakeholders. • Elaborar requerimientos funcionales (flujos, reglas de negocio, excepciones) y criterios de aceptación. • Asegurar consistencia del producto: journeys, casos borde, reglas transaccionales, mensajes al usuario. • Validar entregables con negocio (UAT), asegurar trazabilidad y apoyar al equipo QA. • Facilitar workshops con áreas bancarias (canales, operaciones, riesgo, cumplimiento, tecnología). • Gestionar expectativas, dependencias y decisiones, comunicando avances y riesgos de forma oportuna. • Participar activamente en ceremonias ágiles (refinamiento, planning, daily, review, retrospectiva).
Senior Solutions Director – Security
ePlus Technology SolutionsCó tâm, đủ tầm, phát triển, vươn xa, ...
• Responsible for setting the strategy and go-to-market plans for current and emerging Security solutions • Maintain and evolve a Security strategy that aligns with business goals • Develop and maintain a competitive edge and deliver innovative solutions to clients • Collaborate with national delivery teams to refine, simplify, and differentiate solutions • Build go-to-market plans for introduction of new technology solutions • Develop packaged solutions that deliver profitability and sustainable growth for services
Cyber Security
Btree SystemsKindly check our website ( https://www.btreesystems.com/ ) to check the current training we are providing. If you are already doing any of this training, feel free to join us.
Role Description We have an exciting opportunity for you if you are doing freelance IT training. We are currently hiring for freelancer technical (IT & Software) trainers. It would be the best opportunity for you to make a handful of side hustles. What we expect from you: - Technical trainers should have more than 5 years of experience in the respective field. - Ability to make students do individual toy projects on the respective skill. Qualifications - Any Degree - Experience: 2-10 Years Benefits - Flexible Timings, Spend only 1-2 hours daily - Online & Offline are both available - Work on Weekdays or Weekends as per your schedule - On-time payments & Dedicated Support Company Description Kindly check our website ( https://www.btreesystems.com/ ) to check the current training we are providing. If you are already doing any of this training, feel free to join us.
Director of Corporate Security
Mosaic HealthTo support the dynamic needs of Mosaic Health, its business units, and strategic partner, this job description is provided as an overview. It is not an all-inclusive presentation of the role, as other duties should be expected as organizational needs arise.
Role Description The Director of Corporate Security is a high-impact leadership role responsible for the safety and security of patients, providers, and employees across Mosaic’s national healthcare footprint. This role requires a strategic leader who can balance the clinical necessity of an open, welcoming environment with the rigorous security protocols required to mitigate risks in a modern healthcare setting. The role will oversee security operations for a diverse portfolio, including outpatient clinics and corporate administrative offices. The mission is to foster a culture of safety that allows Mosaic’s medical professionals to focus on patient care without fear of harm. Qualifications - Bachelor’s degree in Criminal Justice, Healthcare Administration, Emergency Management, or a related field. A Master’s degree (MBA or MS) is preferred. - 10+ years of progressive leadership experience in corporate security or law enforcement. - 5 years of experience specifically managing security in a large-scale healthcare system or hospital environment preferable. - Board certification in security management, such as CPP (Certified Professional) or CHPA (Certified Healthcare Protection Administrator) is highly desired. - Understanding of the unique psychological and emotional state of patients and families in a hospital setting. - Experience managing security for a “large footprint” (multi-state or 50+ locations). - Ability to use crime mapping and incident data to justify resource allocation and headcount. - Exceptional public speaking skills for training staff and addressing the media during crisis events. Requirements - Develop and execute a multi-year national security strategy aligned with the company’s growth and clinical goals. - Establish enterprise-wide security policies, standard operating procedures (SOPs), and physical security standards. - Provide regular risk-assessment briefings to Executive Leadership, Board of Directors, and other stakeholders regarding emerging threats to the healthcare industry. - Lead the enterprise-wide Workplace Violence Prevention committee (to be developed). - Implement data-driven strategies to reduce incidents of aggression against clinical staff. - Oversee the rollout of de-escalation training (e.g., CPI, MOAB, or AVADE) for frontline employees. - Partner with Real Estate and IT Information Security to manage security technology including IP-based CCTV, integrated access control, visitor management, and other protection systems (e.g., Hugs/Halo). - Provide guidance on security specifications and design for new facility construction and renovations. - Manage a budget, including the selection and performance management of third-party security guard vendors. - Ensure all facilities maintain continuous “survey readiness” for The Joint Commission (TJC), CMS, and state health department inspections. - Coordinate with Clinical Leadership to ensure security protocols do not interfere with HIPAA privacy regulations or patient rights. - Oversee the security aspects of the Environment of Care (EOC) plans. - Act as a key leader during emergencies. - Maintain primary relationships with local, state, and federal law enforcement for intelligence sharing. - Direct internal investigations into high stakes matters, including drug diversion, theft, or threats against personnel. Benefits - Compensation: $150,864.00 to $238,207.00 - Ability to travel up to 50% to various regional sites across the United States.


