Contract - Cyber Security Engineer (Threat Modelling)

Deloitte(function ($) { $.get( "https://apply.deloitte.co.uk/UKCareers/RelatedJobs", function (data) { var data = $.trim(data)Senior
ActiveVerified 3h ago

Job description

Basic information Location London Business Line Technology & Transformation Job Type Contract Date published 10-Sep-2026 Req # 25099 Job description Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)Basic information Location London Business Line Technology & Transformation Job Type Contract Date published 10-Sep-2026 Req # 25099 Job description Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)Basic informationBasic information

Basic information

Location London Business Line Technology & Transformation Job Type Contract Date published 10-Sep-2026 Req # 25099Location London Business Line Technology & Transformation Job Type Contract Date published 10-Sep-2026 Req # 25099Location LondonLocationLondonBusiness Line Technology & TransformationBusiness LineTechnology & TransformationJob Type ContractJob TypeContractDate published 10-Sep-2026Date published10-Sep-2026Req # 25099Req #25099Job descriptionJob description

Job description

Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)Job Title: Cyber Security Engineer (Threat Modelling) - contractLocation: London Hybrid, 2-3 days a week in the London officeDuration: 4 monthsContract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offerDay Rate: Competitive (Inside IR35)DeloitteWorking with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.The RoleWe are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.Essential Skills and ExperienceAn experienced IT professional with cyber security or information security experienceTechnical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK. Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation. Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm. Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest. Experience applying security standards and SDLC controls to software platforms. Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or AzureDeliverables: Responsibilities but not limited to:Threat Modeling using a documented process.Development of automation tools as required.Maintain a high standard of work in identifying threats and specifying mitigating controls.Attending to the lifecycle of identified threats and controls.Delivery of threat models and supporting tasks within existing timeframes.Provide feedback, support, and improvements to the existing threat modeling process.Present work to seniors, the team, and other technical teams.Train newer members of the teamSupervise junior members of the teamRun parts of our threat model serviceWork with little supervision to complete workDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.IR35As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)

Job Title: Cyber Security Engineer (Threat Modelling) - contract

Job Title:

Location: London Hybrid, 2-3 days a week in the London office

Location: London Hybrid,

Duration: 4 months

Duration:

Contract Start Date: ASAP *please note that onboarding will take 4-6 weeks from the offer

Contract Start Date:

Day Rate: Competitive (Inside IR35)

Day Rate:

Deloitte

Deloitte

Working with the Deloitte Associate (Contractor) Programme means we can offer you the opportunity to work on a variation of industry and client related projects. Our aim is to retain the best talent and so when your project end date nears our team of Talent Community Advisors will be working with you to look at alternative projects within the firm that suit your experience should you wish to continue with Deloitte.

The Role

The Role

We are looking for an experienced Threat Modelling Security Engineer to identify security threats, define effective mitigating controls and manage findings throughout their lifecycle. You will deliver threat models to agreed timeframes, develop secure Python-based automation and help improve the existing threat modelling service. The role involves presenting technical work to senior and cross-functional stakeholders, while training and supervising junior team members. You will work with minimal supervision across cloud, DevOps and regulated security environments.

Threat Modelling Security Engineer

Essential Skills and Experience

Essential Skills and Experience
  • An experienced IT professional with cyber security or information security experience
cyber securityinformation security
  • Technical expertise with threat modelling using STRIDE, PASTA, attack trees, tooling and MITRE ATT&CK.
threat modellingSTRIDE, PASTA, attack trees, toolingMITRE ATT&CK
  • Cyber security experience covering authentication, authorisation, logging and monitoring, encryption, infrastructure security and network segmentation.
Cyber security
  • Development and DevOps knowledge, including CI/CD, pipelines, SDLC, scripting, Infrastructure as Code (Terraform or CloudFormation), Docker, Kubernetes (K8s), serverless and Helm.
DevelopmentDevOpsDocker, Kubernetes (K8s),serverlessHelm
  • Strong programming capability, preferably Python including asynchronous programming and FastAPI, plus unit testing with Pytest.
PythonFastAPPytest
  • Experience applying security standards and SDLC controls to software platforms.
security standardsSDLC controls
  • Experience identifying vulnerabilities using CWE or OWASP, hardening operating systems, and designing or reviewing technical architectures.
identifying vulnerabilities
  • Working knowledge of agile/DevOps delivery, Jira, CDK/GitOps, penetration testing and technologies such as Snowflake, MongoDB, Terraform Cloud, GitHub or Databricks.
agile/DevOps
  • Analytical and adversarial mindset, attention to detail, problem-solving ability and a commitment to continuous learning.
  • Strong documentation, research, communication and collaboration skills, with experience building relationships across diverse teams in a regulated environment.
  • Desirable - Professional-level cloud certification, vendor cloud security certification and professional cyber security certification from either AWS, CGP or Azure

Deliverables: Responsibilities but not limited to:

Deliverables: Responsibilities but not limited to:
  • Threat Modeling using a documented process.
  • Development of automation tools as required.
  • Maintain a high standard of work in identifying threats and specifying mitigating controls.
  • Attending to the lifecycle of identified threats and controls.
  • Delivery of threat models and supporting tasks within existing timeframes.
  • Provide feedback, support, and improvements to the existing threat modeling process.
  • Present work to seniors, the team, and other technical teams.
  • Train newer members of the team
  • Supervise junior members of the team
  • Run parts of our threat model service
  • Work with little supervision to complete work
  • Develop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.

IR35

IR35

As a means of managing tax, commercial and reputational risks, Deloitte prohibits the use of Associates through Personal Service Companies (‘PSCs’). All Associates must contract under PAYE arrangements through a Deloitte approved ‘Employment Company’ (aka ‘umbrella company.’)