Lead Security Engineer

eFinancialCareers
London, United Kingdom
3 days ago
£80,000 – £95,000 pa
Applications closed

Related Jobs

View all jobs

Principal Security Engineer, SDO AppSec EMEA

Amazon London, United Kingdom
Permanent

Senior Security Engineer

Sopra Steria Farnborough, GU14 7JT, United Kingdom
£60,000 – £65,000 pa On-site Clearance Required

Senior Cyber Security Engineer

Proactive Appointments Reading, United Kingdom
£65,000 – £75,000 pa Hybrid

Cyber Security Operations Manager

Zachary Daniels Recruitment Liverpool, Merseyside, United Kingdom
£70,000 – £75,000 pa Hybrid

Cyber Security Operations Manager

Zachary Daniels L31Sf, L3 1SF, United Kingdom
£70,000 – £75,000 pa Hybrid

Lead Information Security Engineer

Langland Consultants S401Lp, S40 1LP, United Kingdom
£50,000 – £54,000 pa Hybrid Clearance Required

Salary

£80,000 – £95,000 pa

Job Type
Permanent
Seniority
Lead
Education
Degree
Security Clearance
Required
Posted
3 Jun 2026 (3 days ago)

Benefits

Bonus
£70,000 to 95,000 GBP

Bonus

Remote WORKING
Type: Permanent

Lead Security Engineer

Location: UK-wide (Remote-first)

Salary: £80,000 - £95,000 + bonus

We are seeking an experienced Lead Security Engineer to join a high-performing engineering function focused on building secure, scalable, and resilient platforms across modern cloud environments.

This is a senior technical leadership role combining hands-on security engineering with mentoring, strategy, and delivery oversight within agile teams.

Role Responsibilities
  • Lead security engineering and security testing across cloud and application platforms
  • Define and drive security testing methodologies, tooling, and best practices
  • Perform and oversee security assessments including penetration testing and code reviews
  • Embed security into CI/CD pipelines and continuous delivery practices
  • Collaborate with engineering teams to ensure secure-by-design development
  • Lead threat modelling activities and articulate risks across systems and architectures
  • Guide adoption of security standards, frameworks, and compliance requirements
  • Mentor and develop junior engineers within the security function
  • Stay current with emerging threats, vulnerabilities, and attack techniques
Required Experience
  • Strong experience securing web applications and cloud platforms (AWS or Azure)
  • Hands-on experience with security testing, including manual and automated approaches
  • Strong understanding of secure coding and secure software development lifecycle practices
  • Experience working with CI/CD and DevSecOps practices
  • Knowledge of security frameworks and standards (e.g. NCSC, NIST, CIS, OWASP, ISO27001, PCI DSS, GDPR)
  • Strong understanding of common attack vectors (OWASP Top 10, XSS, SQL injection, etc.)
  • Good programming or scripting ability across Linux/Windows environments
  • Strong communication skills with the ability to explain technical security concepts to varied audiences
  • Experience mentoring or leading small technical teams
Desirable Experience
  • Security certifications such as OSCP, CREST, or equivalent
  • Experience with tools such as Burp Suite, Nmap, Nessus, Metasploit, or similar
  • Exposure to enterprise security tooling (WAF, IDS/IPS, SIEM, etc.)
  • Active participation in the security community or knowledge sharing activities
  • Experience working in Agile delivery environments
Eligibility Requirements
  • Must be a UK citizen
  • Must be eligible for UK Security Clearance
This is an excellent opportunity for a senior security professional looking to take ownership of security engineering practices in a modern cloud-first environment, while influencing both technical direction and team development.

For more information or a confidential discussion, please get in touch.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.