Senior Security Engineer

MUFG Pension & Market Services
Leeds, West Yorkshire, United Kingdom
2 days ago
Job Type
Permanent
Work Location
Hybrid
Seniority
Senior
Education
Degree
Posted
28 May 2026 (2 days ago)

Benefits

26 days annual leave Wellbeing day Volunteer day Bank holidays Buy up to 5 extra days Health and wellbeing rewards Employee assistance programme Discounts on retail and socialising Travel and technology discounts Cycle2work scheme Gym and fitness subscriptions Car salary sacrifice scheme Employee recognition programme Company pension scheme Medical insurance Life assurance Paid maternity, paternity, adoption, and shared parental leave

Overview:

The Senior IT Security Engineer will be based on a hybrid basis from our stunning office in central Leeds, so you’ll need to be within a commutable distance to allow you to travel to the office.

As team members and colleagues are also based in our APAC region, it is likely that you will be required to participate in out of normal working hours calls on a weekly basis, so you will need to be flexible in your approach to the working day.

You will help drive the Security Architecture and Engineering team and the business in current information security challenges across security technology control assessment, design, configuration, integration, documentation and support.

You’ll get the chance to follow your chosen career path anywhere in MUFG Pension & Market Services, joining a network of experienced, innovative and dedicated individuals across multiple teams and countries. There are numerous opportunities to learn new skills and develop in your career with the support you need to succeed.

Benefits:

26 days annual leave, plus a wellbeing day, a volunteer day, bank holidays and the opportunity to buy up to 5 days’ extra each year

Health, wellbeing and lifestyle rewards that can be tailored to support you and your family. Everything from: Employee Assistance Programme; Discounts on retail and socialising; Travel and technology; cycle2work scheme; A host of gym and fitness subscriptions; Car Salary Sacrifice scheme

Appreciate programme: Employee recognition programme

Company Pension Scheme

Medical insurance

Life Assurance

Paid Maternity, Paternity, Adoption Leave, Shared Parental Leave

What you need:

As with any role, we want to find the right person and we want to make sure you know it’s the right role for you too. You will need:

• A strong understanding of Application Security concepts and best practices, including agile methodologies and coding languages

• Demonstrable experience in DevSecOps transformation, with experience in Security Operations, and as a Security Engineer or similar technical role

• Excellent knowledge of integration concepts, patterns and technologies

• Experience with both successful and unsuccessful project implementations

• Extensive experience across infrastructure domains (network, compute and storage)

• Demonstrable experience across Cloud and infrastructure components (service, storage, network, data and applications), to deliver end to end Cloud Infrastructure architectures and designs

• Strong experience performing threat modelling and value assessment techniques to assess controls and provide architectural decisions

• An ability to identify critical and high priority issues and resolve and / or escalate where required

• Experience working with Cloud Security, Cyber security (Malware, penetration testing, forensics, incident response), endpoint Security, Security Incident and Event management, Data Protection, network Security, Identity & Access Management

• Excellent verbal and written communication skills, with the ability to negotiate and consult with a variety of colleagues and team members

• The drive, desire and ability to assist project teams with technical decisions and implementations and experience of hands-on implementation as part of major projects

• Proven experience in architecting, designing and building Security Architecture Frameworks

• Experience implementing medium to large-scale distributed applications

• Strong skills in Zscaler, CASB, OKTA, Office 365 and Active Directory, Azure AD, Citrix Azure (Cloud) and other Microsoft technologies

• Working knowledge of Agile and Product Centric principles, product management, scheduling and a strong customer focus

• Advanced security computing knowledge and understanding (including cloud security), across the wider organisation

It would be nice to have:

• Azure experience would be preferable

• CISM, SSCP, CCSP, CRISC is not essential but highly desirable

Day to Day, you will:

• Create and maintain global standards, ensuring a consistent security approach

• Design and implement solutions to ensure that they deliver business objectives securely

• Uplift, drive and deliver security capabilities within the group

• Act as the technical point of escalation relating to security controls and concepts

• Deliver security solution designs and implementation direction in a fast-paced environment

• Evaluate, architect, implement and support security tools and services for MUFG Pension & Market Services’ rapidly emerging Cloud-based hosting model and helping execute the global Information Security strategy and Centre of Excellence

• Lead technical change for cybersecurity best practice adoption within projects

• Develop security solutions architecture aligned to organisational strategy and industry best practice

• Provide guidance to key stakeholders on architecture best practice

• Maintain awareness of security trends and the global threat landscape

• Continually develop your subject matter expertise in designated areas of specialisation, including performing research and keeping abreast of trend and best practice techniques and controls

• Provide leadership and mentorship to junior team members, including knowledge transfer and demonstrating ‘by example’, professional and ethical behaviour by ensuring compliance with external legislation, internal operating policies and procedures relevant to the position

• Ensure policies and configuration reviews, approvals and implementation of changes to DLP, WAF, DAM, endpoint and other security products

The above list of key accountabilities is not an exhaustive list and may change from time-to-time based on business needs

Related Jobs

View all jobs

Senior Security Engineer

Bridewell Cardiff, United Kingdom
Hybrid

Senior Security Engineer, Amazon Security Automation

Amazon London, United Kingdom
On-site

Senior Security Engineer, Vulnerability Management and Remediation Operations

Amazon London, United Kingdom
Permanent

Sr. Security Engineer, Amazon Stores Security AppSec

Amazon London, United Kingdom
On-site

Senior OT Security Engineer

Bridewell Cardiff, United Kingdom
Hybrid

Product Security Architect

SRT Marine Systems PLC Bristol, Bristol (county), United Kingdom
£75,000 – £110,000 pa Hybrid

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.