Offensive Security Engineer

Company: London Stock Exchange
Apply for the Offensive Security Engineer
Location: London
Job Description:

Requirements

  • Technology related Bachelor’s Degree or equivalent experience and certifications in cyber security
  • Background in Red Teaming / Penetration Testing / Bug Bounty advantageous!
  • Experience building AI agentic workflows or deploying and managing security tooling is also advantageous!
  • Understanding of large scale enterprise IT system environments
  • Knowledge of security vulnerabilities and common software engineering flaws and Network Defence analytical models (Kill Chain, ATT&CK, OWASP top 10 etc.)
  • Strong verbal & written communication skills & presentation skills
  • Ability to work in a fast-paced environment as a problem solver and barrier breaker with initiative

What the job involves

  • This opportunity within the Offensive Security Operations team is a crucial role for the management of vulnerability discovery, offensive testing and remediation activities across the group which protects the business from sophisticated cyber threats!
  • The role holder will work with our 3rd party vendors to plan and facilitate our testing programmes ensuring they run efficiently
  • Regulatory Threat Intelligence Led Pen Testing (TLTP) and Red teaming
  • Bug Bounty
  • Continuous External Attack Surface Management
  • Active Directory security posture management
  • Any programme launched in the future aimed at driving dow
  • The applicant will be a domain authority on vulnerability testing, impact and remediation. They will provide insight on root cause analysis and scalable risk management. This role requires working closely within a technical team and with external teams like BISOs, GSOC and regulators
  • The candidate will stay ahead of emerging cyber security thought leadership and share their ideas for areas of improvement and innovation that drive continuous cyber security risk improvement
  • In this role there are opportunities to explore and experiment with how AI and other types of automation can be used to improve our existing and future initiatives
  • Collaborate with external vendors, regulators and leadership teams coordinating the timely delivery of requirements
  • Review vulnerability reports, validate issues reported and triage based on risk
  • Support teams in understanding vulnerabilities and validate fixes through retesting
  • Coordinate remediation efforts by detailing actions, owners, timelines and follow up when appropriate
  • Leverage engineering skills to automate and scale security programme objectives

#J-18808-Ljbffr…

Posted: June 10th, 2026