Engineer the Quantum RevolutionYour expertise can help us shape the future of quantum computing at Oxford Ionics.

View Open Roles

Head of Security Engineering | London, UK

Brevan Howard
London
1 week ago
Create job alert

The Department:

The Information Security Team is responsible for protecting the company's infrastructure, intellectual property and digital assets. The team has a large scope of responsibilities and tackles projects in different security verticals (Cloud Security, Application Security, Corporate Security, Detection and Response, etc.)

In this role, you will have the opportunity to work on various projects based on your skillset, experience, career goals and the team's priorities.

The Role

This is a hands on Security Engineering role, leading a small team, defining and delivering against the strategy for a range of areas including:

  • Endpoint security / EDR
  • Vulnerability Management
  • Cloud security
  • Email Security
  • Security testing


With a view to also taking on responsibility for maturing other areas (Secure by Design, Application Security / secure DevOps etc).

The ambition for this role is to own the engineering part of our defence-in-depth InfoSec strategy, taking an automation-first approach. This will involve the maturing of existing controls and the selection and integration of best of breed products alongside emerging suppliers.

As a core member of the CISO's security leadership team this role will work closely with peers including Security Operations (in defining requirements and during live incidents) and Identity and Access Management.

The role will also interact with partners in our Technology organisation and beyond - who we rely on to deploy our tools, and who rely on us to provide security advice and approvals.

This role will suit candidates with a strong cyber security background in the financial or tech sector.

Source: BHAM: 1: Data as at 18 Jul 2023

MAIN DUTIES/RESPONSIBILITIES OF THE ROLE:

Essential Responsibilities:

  • Lead the SecEng Team
  • Be pragmatic and commercially driven positioning the security function as an enabler for the business.
  • Work to design, develop and execute on the BH InfoSec strategy.
  • Design and execute an adversarial security program to proactively identify vulnerabilities and risks.
  • Own the relationship with key stakeholders across the firm to inform the Security requirements, roadmap and priorities.
  • Assist the Head of SecOps on security incidents, investigations and remediation.
  • Lead Red Teaming and/or penetration testing.
  • Advocate of the principle of "shift left" and approach to DevSecOps


PERSON SPECIFICATION

WORK EXPERIENCE/BACKGROUND:

Essential

  • 5+ years of professional hands-on experience with a programming or scripting language, e.g. Java, Golang, Python, Bash, Node.js, etc.
  • Professional experience within financial services
  • Experience working in a dynamic, fast paced environment
  • Strong experience in securing Cloud environments, AWS, Azure, GCP
  • Strong experience in securing microservice architecture e.g. Kubernetes, Docker
  • Deep understanding of Operating System security, Windows & Linux
  • Strong knowledge around cryptographically securing data, assets and infrastructure


Desirable

  • Familiarity with secure execution environments, air gapped system architecture, infra-as-code, tamper proof hardware.
  • Experience with application security toolsets such as SAST, DAST, SCA and secret scanning
  • Experience in securing CI/CD pipelines and Infrastructure-as-Code
  • Experience in managing internal or external vulnerability assessments such as pentests, red team etc.

Boost your careerFind thousands of job opportunities by signing up to eFinancialCareers today.
#J-18808-Ljbffr

Related Jobs

View all jobs

Head of Security Engineering

Head of Security Engineering

Head of Security Engineering

IT Security Engineering Manager

IT Security Engineering Manager

Chief Information Security Officer - Managing Director

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.

Why Now Is the Perfect Time to Launch Your Career in Cyber Security: The UK's Digital Defence Revolution

The United Kingdom faces an unprecedented cyber security challenge that presents an extraordinary career opportunity. With cyber attacks increasing by 300% year-on-year and the average cost of a data breach reaching £4.24 million, Britain urgently needs skilled cyber security professionals to defend its digital infrastructure, protect citizens' data, and maintain national security in an increasingly connected world. If you've been considering a career change or seeking to future-proof your professional trajectory, cyber security represents one of the most secure, well-compensated, and socially impactful career choices available. The convergence of escalating threats, skills shortage, government investment, and regulatory requirements has created a perfect storm of opportunity that shows no signs of abating.

Automate Your Cyber Security Jobs Search: Using ChatGPT, RSS & Alerts to Save Hours Each Week

Cyber roles drop across consultancies, MSSPs, hyperscalers, banks, gov & start-ups every day—often buried in ATS portals or duplicated across boards. The fix is simple: put discovery on autopilot with keyword-rich alerts, RSS feeds & a reusable ChatGPT workflow that triages listings, ranks fit, & tailors your CV in minutes. This copy-paste playbook is built for www.cybersecurityjobs.tech readers. It’s UK-centric, practical, & designed to save you hours each week. What You’ll Have Working In 30 Minutes A role & keyword map spanning SecOps/Detection, DFIR, AppSec, Cloud Security, GRC, Red Team, Threat Intel, IAM/PAM, OT/ICS & Vulnerability Management. Shareable Boolean search strings for Google & job boards to cut noise fast. Always-on alerts & RSS feeds delivering fresh roles to your inbox/reader. A ChatGPT “Cyber Job Scout” prompt that deduplicates, scores fit & outputs tailored actions. A simple pipeline tracker so deadlines & follow-ups never slip.