About the Role:
We are seeking a highly skilled and experienced Senior Cybersecurity Engineer / Architect to join our growing cybersecurity team. In this leadership position, you will be responsible for designing, implementing, and optimizing cybersecurity architectures across complex IT environments. Your focus will be on safeguarding our systems and data while ensuring that security solutions are integrated seamlessly across the organization. This role offers the opportunity to influence cybersecurity strategy and drive initiatives to protect the company from evolving cyber threats. You will work closely with other teams to enhance our security posture and ensure compliance with industry standards.
Key Responsibilities:
- Cybersecurity Architecture & Design: Lead the design, development, and implementation of secure architectures for applications, systems, and networks. Ensure alignment with industry standards, best practices, and regulatory requirements.
- Vulnerability Management: Identify, assess, and mitigate security vulnerabilities. Oversee penetration testing, vulnerability assessments, and security audits to maintain a secure environment.
- Risk Management & Threat Modeling: Lead the development and execution of risk assessments and threat modeling processes to proactively identify security risks and establish mitigation strategies.
- Incident Response & Forensics: Manage and lead incident response efforts. Conduct root cause analysis for security incidents, implement corrective measures, and oversee post-incident reviews.
- Security Policy & Standards Development: Develop, implement, and enforce security policies, procedures, and controls to protect sensitive data and ensure compliance with regulatory frameworks (e.g., GDPR, HIPAA, ISO 27001).
- Cloud Security: Architect and implement secure solutions for cloud platforms (AWS, Azure, Google Cloud) and ensure that cloud environments follow best practices for security.
- Collaboration & Mentorship: Work closely with cross-functional teams (IT, development, compliance, etc.) to integrate security into software development cycles and infrastructure. Mentor junior cybersecurity staff to help them grow in their roles.
- Continuous Improvement: Stay current with emerging cyber threats and evolving technologies. Evaluate new security tools, frameworks, and methodologies to enhance the organization’s security posture.
- Compliance & Regulatory Adherence: Ensure that all cybersecurity measures align with industry standards, regulations, and legal requirements, such as NIST, ISO 27001, and CIS frameworks.
- Security Audits & Reporting: Conduct regular security audits, vulnerability assessments, and penetration tests. Provide detailed reporting and actionable insights to leadership.
Qualifications & Skills:
- Experience: 7+ years of experience in cybersecurity, with at least 3 years in a senior or lead role.
- Cybersecurity Expertise: In-depth knowledge of network security, application security, endpoint security, identity and access management (IAM), and security operations.
- Frameworks & Standards: Deep understanding of cybersecurity frameworks and best practices, including NIST, ISO 27001, CIS, and GDPR.
- Cloud Security: Extensive experience securing cloud environments (AWS, Azure, GCP) and implementing cloud-native security solutions.
- Penetration Testing & Vulnerability Assessments: Proficiency with tools such as Burp Suite, Nessus, Qualys, and others for identifying vulnerabilities and performing penetration tests.
- Security Architecture: Experience designing and implementing security solutions such as firewalls, IDS/IPS, SIEM systems, and endpoint security tools.
- Certifications: Industry certifications such as CISSP, CISM, CISA, CCSP, or similar are highly desirable.
- Scripting & Automation: Proficiency in scripting languages like Python, PowerShell, or Bash to automate security tasks and enhance security workflows.
- Problem-Solving & Analytical Skills: Strong troubleshooting and analytical skills with the ability to solve complex cybersecurity challenges.
- Communication: Exceptional verbal and written communication skills, capable of clearly explaining complex security issues to both technical and non-technical stakeholders.
- Educational Background: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field. A Master's degree is a plus.
- Middle East Experience Preferred
What We Offer:
- Competitive Salary
- Comprehensive Benefits Package
- Opportunities for Career Growth and Development
- Innovative and Collaborative Work Environment
- Flexible Work Options
Employment Details:
- Salary: Competitive, with a comprehensive benefits package.
- Job Type: Hybrid, permanent/contract.
- Job Location: Europe, UK
About London Strategy:
We are a boutique management and IT consulting firm based in London, with vast experience in M&A, IT, and transformation services in the Life Sciences industry. Our current client base is predominantly in the Medtech and Pharma sectors. Our team excels at transforming complexity into actionable steps, clear timelines, and executive decisions supported by appropriate governance. At London Strategy, you will have the opportunity to work with senior advisors with backgrounds from big-4 and top-tier advisory firms. Our success comes from a shared belief in rolling up our sleeves, working hard to solve complex challenges, executing plans, and implementing technology to help transform organizations.