Security Engineer

Anson McCade

LeicesterFull-timeMid LevelOn-site

Job Description

Lead Security Engineer Location: UK-wide (Remote-first) Salary: Β£70,000 – Β£95,000 + bonus We are seeking an experienced Lead Security Engineer to join a high-performing engineering function focused on building secure, scalable, and resilient platforms across modern cloud environments. This is a senior technical leadership role combining hands-on security engineering with mentoring, strategy, and delivery oversight within agile teams. Role Responsibilities β€’ Lead security engineering and security testing across cloud and application platforms β€’ Define and drive security testing methodologies, tooling, and best practices β€’ Perform and oversee security assessments including penetration testing and code reviews β€’ Embed security into CI/CD pipelines and continuous delivery practices β€’ Collaborate with engineering teams to ensure secure-by-design development β€’ Lead threat modelling activities and articulate risks across systems and architectures β€’ Guide adoption of security standards, frameworks, and compliance requirements β€’ Mentor and develop junior engineers within the security function β€’ Stay current with emerging threats, vulnerabilities, and attack techniques Required Experience β€’ Strong experience securing web applications and cloud platforms (AWS or Azure) β€’ Hands-on experience with security testing, including manual and automated approaches β€’ Strong understanding of secure coding and secure software development lifecycle practices β€’ Experience working with CI/CD and DevSecOps practices β€’ Knowledge of security frameworks and standards (e.g.

NCSC, NIST, CIS, OWASP, ISO27001, PCI DSS, GDPR) β€’ Strong understanding of common attack vectors (OWASP Top 10, XSS, SQL injection, etc.) β€’ Good programming or scripting ability across Linux/Windows environments β€’ Strong communication skills with the ability to explain technical security concepts to varied audiences β€’ Experience mentoring or leading small technical teams Desirable Experience β€’ Security certifications such as OSCP, CREST, or equivalent β€’ Experience with tools such as Burp Suite, Nmap, Nessus, Metasploit, or similar β€’ Exposure to enterprise security tooling (WAF, IDS/IPS, SIEM, etc.) β€’ Active participation in the security community or knowledge sharing activities β€’ Experience working in Agile delivery environments Eligibility Requirements β€’ Must be a UK citizen β€’ Must be eligible for UK Security Clearance This is an excellent opportunity for a senior security professional looking to take ownership of security engineering practices in a modern cloud-first environment, while influencing both technical direction and team development. For more information or a confidential discussion, please get in touch.

Posted 2 weeks ago

Related Jobs

Related Searches

Apply Now