Deloitte

Senior Threat Modeler

⭐ - Featured Role | Apply direct with Data Freelance Hub
This role is for a Senior Threat Modeler based in London/Belfast, with a 6-month contract and a competitive daily rate, inside IR35. Key requirements include 10+ years of IT experience, cloud and cyber-security certifications, and expertise in threat modeling and Python development.
🌎 - Country
United States
πŸ’± - Currency
$ USD
-
πŸ’° - Day rate
Unknown
-
πŸ—“οΈ - Date
June 24, 2026
πŸ•’ - Duration
More than 6 months
-
🏝️ - Location
On-site
-
πŸ“„ - Contract
Inside IR35
-
πŸ”’ - Security
Unknown
-
πŸ“ - Location detailed
London Area, United Kingdom
-
🧠 - Skills detailed
#Cybersecurity #GCP (Google Cloud Platform) #DevOps #Azure Security #Azure #Automation #MongoDB #Logging #Agile #Data Engineering #Programming #Big Data #Pytest #Python #Jira #Terraform #Unit Testing #Infrastructure as Code (IaC) #GitHub #FastAPI #Oracle #Oracle Cloud #Docker #Monitoring #Scripting #Security #Defender #Cloud #Snowflake #AWS (Amazon Web Services)
Role description
Role: Senior Threat Modeler Location: London / Belfast Start Date: ASAP End Date: 6 Months Daily Rate: Competitive Day Rate, Inside IR35 Payroll provider – Rockford Payroll Info for Contingent Workers – Rockford Pay Responsibilit β€’ iesThreat Modeling using a documented proce β€’ ss.Development of automation tools as requir β€’ ed.Maintain a high standard of work in identifying threats and specifying mitigating contro β€’ ls.Attending to the lifecycle of identified threats and contro β€’ ls.Delivery of threat models and supporting tasks within existing timefram β€’ es.Provide feedback, support, and improvements to the existing threat modeling proce β€’ ss.Present work to seniors, the team, and other technical tea β€’ ms.Train newer members of the t β€’ eamSupervise junior members of the t β€’ eamRun parts of our threat model serv β€’ iceWork with little supervision to complete w β€’ orkDevelop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standar ds.Certification Requireme β€’ ntsYou’re expected to have a professional level cloud certification (defined further below) from either AWS, GCP or Azu β€’ re.You’re expected to have a vendors cloud security certification (defined further below) from either AWS, GCP or Azu β€’ re.You’re expected to have a professional cyber-security certification (defined further belo w).Technical ski β€’ llsYou’re expected to have five or more years of experience in several of the followi β€’ ng:IT experience minimum of 10 years with minimum of 4 years Cyber-Security/Information Security – m β€’ ustThreat Modeling (STRIDE, PASTA, Attack trees, tooling, Att&ck) – mu β€’ st.Identifying vulnerabilities using CWE or OWA β€’ SP.Experience working in a cyber-security role - mu β€’ st.Security practices pertaining to authentication, authorization, logging/monitoring, encryption, infrastructure security, network/segmentation – mu β€’ st.Operating systems and their hardeni β€’ ng.Development concepts (such as: CICD, Pipelines, SDLC) – mu β€’ st.Scripting languages, Infrastructure as Code (Terraform, CloudFormation) – mu β€’ st.Cloud Development Kit (CDK), GitO β€’ ps.Operating in a DevOps / agile team structu β€’ re.Jira or other ticketing syste β€’ ms.Understanding of docker/K8S/serverless/helm – mu β€’ st.Support or perform pen testi β€’ ng.Snowflake/MongoDB/Terraform Cloud/GitHub/Databric β€’ ks.Design and review technical architectur β€’ es.Strong proficiency in Programming Languages, with a preference for Python (asynchronous programming), and FastAPI (mus β€’ t).Unit Testing: Developing and executing unit tests using frameworks like Pytest to ensure code quality (mus β€’ t).Ensure all software platforms adhere to the client’s security standards and Software Development Life Cycle (SDLC) processes (mus t).Essential ski β€’ llsAnalytical, diligence and attention to deta β€’ il.Eagerness to research using vendor documentati β€’ on.Create and maintain quality documentati β€’ on.Experience of regulated environme β€’ nt.Adversary minds β€’ et.Work with diverse set of people and tea β€’ ms.Constant learner of new technologies and methodologi β€’ es.Problem solv β€’ er.Communication and collaboration skil β€’ ls.Builder of relationships across cross-functional tea ms.Educat β€’ ionBachelor's degree in computer related field or equivalent work experien ce.Professional level cloud certificat β€’ ionAWS Certified Solutions Architect, AWS Certified DevOps Engin β€’ eerGoogle Cloud Architect, Cloud Developer, Data Engineer, Network Engineer, and m β€’ oreOracle Cloud Infrastructure Certified Architect Professional, Oracle Cloud Infrastructure HPC and Big Data Solutions Associ β€’ ateMicrosoft Certified: Azure Solutions Architect Exp ertCloud security certificat β€’ ionGoogle Professional Cloud Security Engin β€’ eerMicrosoft Certified Azure Security Engineer Associ β€’ ateAWS Certified Security - Specia ltyProfessional cyber-security certificat β€’ ionISACA Certified Information Security Manager (CI β€’ SM)GIAC Certified Enterprise Defender (GCED), GIAC Certified Intrusion Analyst (GCIA), GIAC Open Source Intelligence (GO β€’ SI)ISC2 Certified Information Systems Security Professional (CIS β€’ SP)CompTIA CASP+, CompTIA PenTe β€’ st+Microsoft Certified: Identity and Access Administrator Associ ate