Contract Spy
Hybrid (Glasgow, UK)
As a Cyber Security Lead , your main responsibilities will be:
Act as the primary security design authority for the compensation services architecture.
Collaborate with Solution Architects and Developers to implement Secure by Design principles at the code and infrastructure level, ensuring robust identity management (e.g., MFA, RBAC), data encryption at rest and in transit, and secure API integrations across the digital service.
Lead the integration of security into the Software Development Lifecycle (SDLC) by implementing and overseeing DevSecOps practices. This includes managing automated security testing tools—such as Static and Dynamic Application Security Testing (SAST/DAST) and Software Composition Analysis (SCA)—to identify and remediate code vulnerabilities and insecure dependencies in real-time.
Identify, assess, and mitigate security risks related to the compensation process, including...