National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Lead Security Engineer

Synergize Consulting
Luton
2 weeks ago
Create job alert

Our client a leading defence and security company is seeking to recruit experienced security engineers with expertise in developing and maintaining product security management systems for defence and government customers.


About the Role

This position will report to the Head of Engineering Projects and will take responsibility for all security aspects of product design, development, verification and maintenance through all phases of the product lifecycle. The role will focus on undertaking security risk assessments for products, preparing security risk mitigation plans, deriving security requirements and working with product development teams to design, implement and maintain appropriate security controls and production of Product Security Artefacts.


Responsibilities


  • The successful candidate will report to the Head of Engineering Products and be responsible for providing security advice to product development teams in a range areas including:
  • Production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals.
  • Undertaking security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation.
  • Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities.
  • Liaison with Security Accreditors and Security Assurance Coordinators in support of security accreditation.
  • Preparation of Protection Profiles, Security Targets and Evaluation Management Plans, and liaison with NCSC and commercial evaluation teams in support of evaluation activities.
  • Preparation of TEMPEST Control Plans, advising development teams on appropriate implementation techniques and liaising with TEMPEST test facilities.
  • Advising development teams on suitable platform lockdown and configurations, and supporting Penetration test activities.
  • Analysing penetration test results and preparation of remedial action plans.
  • Prepare and implement through life support and maintenance for product security including vulnerability and patch management plans.
  • Lead security incident management teams during incident/crisis situations in conjunction with Head of Product Security for EW/FCA.
  • Review and maintain corporate product security policies.
  • Deliver product security training to project engineering teams.



Qualifications


  • Experience in the development of security solutions for a military &/or commercial products and systems.
  • Graduate degree in relevant engineering, computing or related scientific discipline, and/or evidence of further professional study.
  • Registered NCSC certified professional at senior level or above, or NCSC recognised qualification, e.g. ISC2 Certified Information System Security Professional.
  • Knowledge of UK/NATO Information Assurance standards, procedures & systems, including Government Functional Standard GovS 007: Security, HMG IS1&2, ISO27000 series standards, NIST SP800 series standards, JSP440, JSP604, guidance material provided by NCSC, CPNI and NIST.
  • Practical experience of producing Security Accreditation documentation.
  • Practical experience of NCSC and Common Criteria security evaluation techniques.
  • Knowledge of current crypto technologies and key management systems.
  • Model Base System Engineering (MBSE) knowledge.
  • Understanding operating systems, firmware and software security controls and how to apply them.
  • Understanding of existing, current and emerging technologies including cloud, virtualisation and web.
  • Excellent verbal & written communication skills.
  • Good team worker with ability to influence and motivate.
  • Positive attitude and drive to improve the business.
  • Ability to obtain SC clearance with UK-eyes only caveat.
  • Enterprise Security Architectures (SABSA, MODAF).


Synergize Consulting is committed to equality and diversity in our workplace. Synergize Consulting provides equal employment opportunity to all employees and applicants without regard to an individual's protected status, including race/ethnic origin, colour, nationality, national origin, ancestry, sex/gender, gender identity/expression, gender reassignment, sexual orientation, marriage/civil partnership, pregnancy/maternity, religion or belief, age, disability, or any other protected status or characteristic.

Related Jobs

View all jobs

Lead Security Engineer (OT)

Lead Fire and Security Engineer

Lead Fire and Security Engineer

Lead Application Security Engineer

Lead Product Security Engineer (contract)

Lead Cloud Security Engineer

National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How to Present Cyber Security Solutions to Non-Technical Audiences: A Public Speaking Guide for Job Seekers

Cyber security is no longer just an IT issue—it’s a board-level priority. Whether you’re applying for a role in penetration testing, security operations, risk management, or compliance, your ability to clearly explain cyber threats and solutions to non-technical stakeholders is vital. This guide will help cyber security job seekers develop one of the most in-demand soft skills in the industry: public speaking. You’ll learn how to simplify complex concepts, structure effective presentations, use storytelling and analogies, and handle common stakeholder questions with confidence.

Cyber Security Jobs Employer Hotlist 2025: 50 UK Companies Actively Hiring Right Now

Bookmark this guide—refreshed every quarter—so you always know who’s really expanding their cyber security teams. Ransomware payouts broke records in 2024, the UK’s new Cyber Security Bill imposed mandatory breach disclosure, and the National Cyber Force’s move to Samlesbury has super‑charged the northern skills market. Result? Demand for security architects, SOC analysts, penetration testers, cloud‑security engineers, threat hunters & GRC specialists is at an all‑time high in 2025. Below you’ll find 50 organisations that have posted UK‑based cyber security vacancies or announced head‑count growth during the past eight weeks. They’re organised into five quick‑scan categories. For every employer you’ll see: Main UK hub Example live or recent vacancy Why it’s worth a look (tech stack, culture, mission) Search any company on CyberSecurityJobs.tech to view current ads, or set a free alert so fresh openings land straight in your inbox.

Return-to-Work Pathways: Relaunch Your Cyber Security Career with Returnships, Flexible & Hybrid Roles

Re-entering the workforce after a career break can feel especially challenging in a fast-moving field like cyber security. Whether you stepped away for parenting, caregiving or another life chapter, the UK’s cyber security sector now offers a range of return-to-work pathways—from structured returnships to flexible and hybrid roles. These programmes value the transferable skills and resilience you’ve developed during your break, pairing you with mentorship, upskilling opportunities and supportive networks to ease your transition back into cyber security. In this article, tailored for parents and carers, you’ll discover how to: Understand the growing demand for cyber security talent in the UK Translate your organisational, communication and problem-solving skills into cyber security roles Tackle common re-entry challenges with practical solutions Refresh your technical knowledge through targeted learning Access returnship and re-entry programmes specific to cyber security Find roles that accommodate family commitments—whether hybrid, flexible or full-time Balance your career relaunch with caring responsibilities Master applications, interviews and networking in cyber security Draw inspiration from real returner success stories Whether you aim to return as an analyst, penetration tester, security engineer or compliance specialist, this guide will equip you with the steps and resources to reignite your cyber security career.