Security Analyst

AXA UK plc
West Northamptonshire, UK
2 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Proxy Servers Server Applications Software System Penetration Testing Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Software Vulnerability Management Web Applications Google Cloud Cloud Platform System
+4 more
Software Security Mitre Att&ck Firewalls (Computer Science) Information Technology

Job description

requests with the right technical teams. Producing clear, meaningful metrics and reports for executive steering groups, translating complex technical findings into actionable insight for senior audiences. Constantly looking for opportunities to sharpen, simplify, and scale our processes - your ideas will be welcomed and acted upon. Work arrangements At AXA we work smart, empowering our people to balance their time between home and the office in a way that works best for them, their team and our customers. You’ll work at least two days a week (40%) away from home, moving to three days a week (60%) from December 2026. Away from home means attending the office, visiting clients or attending industry events. We’re also happy to consider flexible working arrangements, which you can discuss with Talent Acquisition. Your skills & experience Prior hands-on technical penetration testing experience (internal, external, web application, cloud) A deep understanding of IT systems and

Requirements

vulnerabilities, ideally spanning cloud environments (AWS, Azure, GCP), infrastructure components such as web and application servers, firewalls, proxies and operating systems and application code security. Experience in cloud security engineering, architecture or general IT infrastructure is advantageous. Strong analytical and problem-solving skills, with the ability to dig into technical detail. Confidence to challenge ambiguity and ask the right questions. A genuine curiosity about how systems can be broken - and how to make them more resilient. Comfortable working with industry frameworks, including threat behaviour modelling e.g. MITRE ATT&CK, Vulnerability management e.g. CVSS, Penetration testing standards e.g. CREST, CBEST, TIGER and Security frameworks e.g. NIST, ISO 27001/27002. OSCP or equivalent practical penetration testing certification or an MSc in Cyber Security or Information Technology is desirable but not essential. We’re proud to be an Equal Opportunities Employer and don’t discriminate against employees or potential employees based on protected characteristics. If you have a long-term condition or disability and require adjustments during the application or interview process, we’re proud to offer access to the AXA Accessibility Concierge. #LI-Hybrid #J-18808-Ljbffr

About the company

About AXA AXA is a global leader in insurance and financial services, dedicated to helping customers protect what matters most to them. As the sixth-largest insurance company in the world, we provide a wide range of services, including health, car, home, and business insurance. We support millions of customers worldwide, helping them navigate life’s uncertainties with confidence. AXA UK Support Functions look after our three customer-facing business units, providing the infrastructure and expertise to make sure we can be there for our customers. Job overview We have a new opportunity for a Security Analyst to join our Proactive Security team in AXA UK to support our Breach and Attack Simulation tooling. As part of AXA UK’s Cyber Security function, you’ll move beyond simply identifying vulnerabilities in the traditional way - you’ll play an active role in continuously challenging our defences using real-world attacker techniques. This role sits at the intersection of technical depth and

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

2:14 min

Understanding the basic mechanics of automated web scraping

Vidas Bacevičius Vidas Bacevičius · World Congress 2025

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

5:13 min

Audience Q&A on maturity assessments and external consultants

Mathias Tausig · LIVE

2:12 min

Generating a reverse proxy server from proto definitions

Rajiv Ranjan Singh Rajiv Ranjan Singh · Europe 2026 Virtual

Videos

See all

Related articles

See all