Location
Central London
Hours
Full Time
Salary
Negotiable
About the Role
This opportunity within the Offensive Security Operations team is a crucial role for managing vulnerability discovery, offensive testing, and remediation activities across the group to protect the business from sophisticated cyber threats. You will work closely with 3rd party vendors to plan and facilitate testing programmes ensuring efficient delivery. Programmes include Regulatory Threat Intelligence Led Pen Testing (TLTP) and Red Teaming, Bug Bounty, Continuous External Attack Surface Management, Active Directory security posture management, and any future initiatives aimed at reducing cyber risk at scale.
As a domain authority on vulnerability testing, impact, and remediation, you will provide insight on root cause analysis and scalable risk management. The role requires collaboration within a technical team and with external teams such as BISOs, GSOC, and regulators. You will stay ahead of emerging cybersecurity thought leadership and contribute ideas for continuous improvement and innovation. There are opportunities to explore and experiment with AI and automation to enhance existing and future security initiatives.
Key responsibilities include collaborating with external vendors, regulators, and leadership to coordinate timely delivery of requirements; reviewing vulnerability reports, validating and triaging issues based on risk; supporting teams to understand vulnerabilities and validating fixes through retesting; coordinating remediation efforts by detailing actions, owners, timelines, and follow-up; and leveraging engineering skills to automate and scale security programme objectives.
Experience
Technology related Bachelor's Degree or equivalent experience and certifications in cybersecurity. Background in Red Teaming, Penetration Testing, or Bug Bounty is advantageous. Experience building AI agentic workflows or deploying and managing security tooling is also advantageous. Understanding of large-scale enterprise IT system environments. Knowledge of security vulnerabilities, common software engineering flaws, and network defence analytical models such as Kill Chain, ATT&CK, and OWASP Top 10.
About you
Strong verbal and written communication and presentation skills. Ability to work in a fast-paced environment as a problem solver and barrier breaker with initiative. Collaborative mindset with a passion for innovation and continuous improvement.
Qualifications
Relevant cybersecurity certifications and a technology-related Bachelor's Degree or equivalent experience.
London Stock Exchange Group











