Senior Cyber Security Engineer
London - Hybrid working 3 days per week in the office
£80,000 - £125,000 + benefits
Fantastic new permanent opportunity for an experienced Cyber Security Engineer with this leading player within the financial services sector. You will be joining a leading business and team where you will help bring to life a new digital platform capability, transforming and modernising their digital estate to build a market-leading digital offering with customer experience at its heart.
You will work with the wider engineering team and be instrumental in ensuring security is embedded into the design and development process. This is an exciting and key role, partnering with business aligned engineering and product teams, to ensure a collaborative team culture is at the heart of what they do.
Main responsibilities:
- Provision of subject matter expertise on security systems and engineering patterns.
- Development and implementation of protocols, algorithms, and software applications to protect sensitive data and systems.
- Management and protection of secrets, ensuring that they are securely generated, stored, and used.
- Execution of audits to monitor, identify and assess vulnerabilities in the infrastructure/software and support the response to potential security breaches.
- Identification of advancements in to support the innovation and adoption of new cryptographic technologies and techniques.
- Collaboration across the bank, including developers and security teams, to ensure that cryptographic solutions align with business objectives, security policies and regulatory requirements.
- Development/ Implementation and maintenance of Identity and Access Management solutions and systems.
Skills Required:
- Extensive experience of working within Cyber Security Engineering and within a DevSecOps environment.
- Experience across configuration and integration with Hardware Security Module (HSM) and AWS Secrets Manager (ASM) tooling, certificate lifecycle management, e.g. rotation, revocation, and in automating security workflows.
- Experience using GitLab CI/CD pipelines, AWS CLI or Chef.
- Strong experience with Cloud Security expertise across the following areas: AWS security controls, policies and automation, CLI tools, role based and attribute-based access controls, cryptographic protocols and secure key lifecycle management, advanced threat modelling, SOC operations, securing microservices and APIs, DevSecOps best practices, vulnerability scanning, tools, approaches, vulnerability patching and vendor management for security.
- Strong experience in penetration testing and hands-on coding in at least one of the following: JavaScript, Java, Python.
For any further queries regarding the role, please contact Danny Palmer at
Reasonable Adjustments: We understand that there are a wide range of reasons that you may require reasonable adjustments to the recruitment process- please let us know in your application how we can best support you.