Security Engineer (Mid Level)

Capco
London
3 weeks ago
Create job alert

Capco

Capco is a global management and technology consultancy dedicated to the financial services and energy industries.

Joining Capco means joining an organisation that is committed to an inclusive working environment where you’re encouraged to #BeYourselfAtWork. We celebrate individuality and recognize that diversity and inclusion, in all forms, is critical to success. We understand that you may need us to make changes to our process to allow you the best possible platform to succeed, and we are happy to cater to any reasonable adjustments you may require.

Why Join Capco?

Capco is a global technology and business consultancy focused on the financial services sector. We are passionate about helping our clients succeed in an ever-changing industry.

You will work on engaging projects with some of the largest banks in the world, transforming the financial services industry.

The Role

We are looking for engineers who want to play a key part in supporting the evolution of the Financial Services industry one project at a time. You will be expected to be a strong team player who prides themselves on delivering modern, first class cloud based platforms through practicing best in class Agile ways of working at all times.

Responsibilities

  • Develop and execute advanced security engineering strategies to fortify infrastructure, networks, and cloud environments.
  • Lead security initiatives across the SDLC, integrating Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and Container scanning using tools such as CheckmarxOne, Prisma Cloud, or equivalents.
  • Collaborate with cross-functional teams to embed security-by-design principles in all engineering efforts.
  • Design and implement robust endpoint protection and cloud security solutions to defend against evolving threats.
  • Implement and monitor cloud configurations to align with compliance standards and best practices, focusing on proactive defense mechanisms.
  • Develop a comprehensive strategy for data protection (encryption, tokenization, masking) across the data lifecycle.
  • Oversee security tool integration in CI/CD pipelines to automate vulnerability detection and resolution.
  • Conduct vulnerability assessments, network security audits, and code reviews to ensure application and infrastructure security.
  • Guide engineering teams to adopt secure development practices and ensure continuous improvement in security maturity.
  • Monitor and test new security tools to enhance the organization’s defenses against emerging threats.

Skills & Expertise

  • Strong knowledge of application security, secure coding practices, and tools like CheckmarxOne, Prisma Cloud, or similar platforms.
  • Proficiency in SAST, DAST, SCA, and Container scanning, with hands-on experience integrating these tools into development pipelines.
  • Extensive experience in endpoint security, cloud security, and network protection.
  • Proficient in cloud platforms such as AWS, Azure, or GCP, with a strong focus on securing cloud architectures.
  • Solid understanding of data security principles and mechanisms, including encryption and masking.
  • Familiarity with major security standards and frameworks (e.g., ISO 27001, NIST, OWASP).
  • Experience with programming languages like Python, Go, or Java.
  • Excellent communication skills to work effectively across technical and business teams.

Preferred Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
  • Relevant certifications such as CISSP, CSSLP, or cloud-specific security certifications.
  • Experience mentoring junior engineers and contributing to thought leadership initiatives.

A Day in the Life of an Engineer at Capco

  • Collaborating with clients to define and implement robust, secure solutions.
  • Designing and developing security frameworks for both on-premise and cloud environments.
  • Supporting engineering teams with the integration of automated security tools and practices.
  • Conducting hands-on assessments of security architectures and offering actionable recommendations.
  • Sharing insights and building Capco’s internal security capabilities.

We Offer

  • A work culture focused on innovation and building lasting value for our clients and employees.
  • Ongoing learning opportunities to help you acquire new skills or deepen existing expertise.
  • A flat, non-hierarchical structure that will enable you to work with senior partners and directly with clients.
  • A diverse, inclusive, meritocratic culture.
  • Enhanced and competitive family friendly benefits, including maternity / adoption / shared parental leave and paid leave for sickness, pregnancy loss, fertility treatment, menopause, and bereavement.

#J-18808-Ljbffr

Related Jobs

View all jobs

Security Engineer, Senior, London, Bank 75k

Security Engineer

Security Engineering Manager - Detection Engineering

Security Engineer

Security Engineer

Security Engineer

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Job-Hunting During Economic Uncertainty: Cyber Security Edition

The cybe rsecurity sector sits at the forefront of today’s digital landscape, defending businesses and governments alike from increasingly sophisticated threats. From incident response and network security to cloud protections and zero-trust architectures, cyber security professionals tackle an ever-evolving array of challenges. Yet, even this mission-critical field is not immune to economic turbulence. When broader financial markets experience uncertainty—whether through global recessions, regional downturns, or unexpected macro events—the hiring climate can shift, making roles more selective and budgets tighter. For job seekers in cyber security, this can be disconcerting. You might discover that once-abundant vacancies have become scarce, competition for the remaining positions is fiercer, or company priorities pivot away from large-scale expansions toward essential, cost-justified security projects. At the same time, data breaches and cyberattacks don’t pause during economic slowdowns—if anything, they may escalate as bad actors exploit organizational vulnerabilities. This paradox means that while the market feels tough, demand for cyber security expertise remains robust. In this article, we’ll look at: Why economic uncertainty affects cyber security hiring trends. Strategies for staying competitive, even if the number of open roles shrinks. Methods to highlight your skills, adapt to shifting priorities, and network effectively. Approaches for preserving mental well-being during prolonged searches or uncertain feedback loops. How www.cybersecurityjobs.tech can help you find the ideal security-focused role. By proactively sharpening your skill set, tailoring your professional profile, and engaging with a focused community, you can secure a rewarding cyber security job—even when the broader market feels volatile.

How to Achieve Work-Life Balance in Cyber Security Jobs: Realistic Strategies and Mental Health Tips

Cyber security is one of today’s most vital and rapidly expanding sectors. As data breaches, ransomware, and other cyber threats continue to evolve, the demand for skilled professionals is surging across industries—from finance and healthcare to government and e-commerce. Whether you’re a penetration tester, security analyst, or threat intelligence expert, you play a key role in safeguarding digital infrastructure and sensitive information. This high-stakes environment, however, often comes with intense pressure. Long hours, constant vigilance, and an ever-changing threat landscape can make it challenging to find time for personal well-being. Many cyber security specialists report difficulty striking a sustainable work-life balance, unsure if it’s even possible in a field that never truly sleeps. Yet, as concerns about mental health and burnout become more pressing, professionals and employers alike are seeking better ways to combine career advancement with a fulfilling personal life. In this comprehensive article, we’ll explore how to achieve a work-life balance in cyber security. You’ll discover strategies for managing 24/7 threat alerts, the importance of realistic expectations, ways to maintain mental health in high-intensity roles, and tips for setting boundaries without compromising your professional growth. Whether you’re new to this dynamic arena or already an established specialist, these insights can help you thrive personally and professionally in the fast-paced world of cyber security.

Transitioning from Academia to the Cyber Security Industry: How Researchers Can Harness Their Skills to Protect Commercial Environments

Cyber security has become a mission-critical field in an era where data breaches, ransomware attacks, and sophisticated hacking techniques threaten businesses and public institutions alike. As digital transformation touches nearly every facet of modern life, the need for highly skilled individuals capable of defending systems and networks continues to grow. For PhDs and academic researchers with expertise in areas like cryptography, network security, or threat intelligence, this presents an exciting opportunity to deploy your analytical prowess in a high-impact, fast-paced commercial setting. In this guide we’ll explore how academics can successfully pivot from the research lab to the cyber security industry. Learn how to apply rigorous, theory-driven approaches to real-world challenges, from designing secure software architectures to neutralising advanced persistent threats. By embracing the industry’s urgency and end-to-end mindset, you can transform your scholarly insights into robust, market-facing security solutions that protect companies and users on a global scale.