Senior Security Engineer London (London)

HaylieRead Interior Design
London
9 months ago
Applications closed

Related Jobs

View all jobs

Penetration Tester

Senior Security Engineer

Senior Network Engineer

Senior IT Support

IAM Engineer

Senior ServiceNow Engineer

Rothesay is the UK’s largest pensions insurance specialist, purpose-built to protect pension schemes and their members’ pensions. With over £68 billion of assets under management, we secure the pensions of more than one million people and pay out, on average, approximately £200 million in pension payments each month.

Rothesay is dedicated to providing excellence in customer service alongside prudent underwriting, a conservative investment strategy and the careful management of risk. We are trusted by the pension schemes of some of the UK’s best known companies to provide pension solutions, including British Airways, Cadbury, the Civil Aviation Authority, the Co-Operative, Morrisons, Smiths Industries and Telent.

At Rothesay, we are striving to transform our industry. We believe deeply in creating real security for the future and our leadership in finding new and better ways to do that is the key to our success. To do that, we need the very brightest original thinkers to bring creativity as well as rigour. Rothesay is a rewarding place to work, where quality people can thrive and prosper. We pride ourselves on the connections our people build, many of whom have been with us for over ten years.

Job title:Senior Security Engineer
Contract:Permanent

With significant executive support and sponsorship, Rothesay has launched a multi-year project to redevelop and modernize the full technology and security stack. To support this and maintain our risk exposure, we are making a significant investment in our Information Security team, processes, and technology. This is a chance to join a small tight-knit Security Engineering team at an exciting time where we are designing and building the core services which will allow Rothesay to continue operating securely as we scale and enhance.

If you like working on designs for high scale, leading-edge, and operating in a truly cloud-native fashion, then we want to hear from you!

Responsibilities:

  • You will be part of the Security Engineering team - helping design, implement and support key services within Rothesay.
  • We’re a hands-on engineering team. We partner with the broader engineering organisation and also build and support our own capabilities across IT Security, IAM, SDLC, and Security Architecture practices.
  • Strong hands-on experience working with major cloud solutions (IaaS, PaaS, Event-driven / Serverless, SaaS) AWS and/or Azure.
  • Capable of designing, implementing, and maintaining robust solutions and re-usable patterns that reduce risk across the organisation.
  • Develop policy as code, templates, and modules to implement and enforce secure patterns and guidance.
  • Working with Infrastructure as Code, Containers, and CI/CD concepts.
  • Clearly articulate and communicate the value of a security control vs the friction it may introduce – a credible peer within engineering.
  • An interest in threat modelling as a medium to demonstrate the impact of security and robust Security Architecture’s for protecting organisations.

Skills & ExperienceRequired:

  • 5+ years of relevant technical experience as a Security Engineer or Software Engineer
  • Strong cloud and cloud native experience.
  • Strong communication skills. Ability to communicate at all levels with both technical and executive stakeholders.
  • A high-level understanding of security principles, control frameworks (NIST preferred), and security risks as they apply to cloud solutions.
  • A good understanding of the latest security threats, threat actors, and the tactics and techniques adopted.
  • Possess a degree from a leading university in a relevant subject and/or have relevant industry qualifications such as CISSP/CISM, and/or OSCP/PNPT
  • Experience in financial services, risk management, pensions, or insurance
  • Dedication to role:Motivated to provide an effective support service across all facets of role
  • Team Player:Demonstrates evidence of being a strong team player, collaborates well with others and encourages other team members
  • Communication:Ability to communicate what is relevant and important in a clear, constructive and concise manner
  • Organised:Ability to work under pressure and prioritise workload in a fast paced environment. Ability to work autonomously with limited supervision
  • Creative and innovative:Looks for ways to improve current processes and help develop creative solutions that have practical value for the team
  • Judgement and Problem Solving:Proactive, sees the big picture and willing to be flexible to solve issues as they arise

Disclaimer

This position description is intended to describe the duties most frequently performed by an individual in this position. It is not intended to be a complete list of assigned duties, but to describe a position level. The role shall be performed within a professional office environment. Rothesay Life has health and safety policies that are available for all workers upon request. There are no specific health risks associated with the role.

Inclusion

Rothesay actively promotes diversity and inclusivity. We know that our success depends on our people and that by nurturing a culture that values difference, we create a stronger, more dynamic business. We welcome applications from all qualified candidates, regardless of race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability or age.

Apply for this job

* indicates a required field


#J-18808-Ljbffr

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

SOC Analyst Jobs UK 2026: Salaries, Skills & How to Get Hired

Cyber security is one of the UK's fastest-growing career paths — and SOC analyst is where most people begin. It's in high demand, genuinely accessible, and you don't need a degree or years of experience to get started. But knowing what UK employers actually want in 2026 — what they pay, which certs matter, and how to stand out — is a different matter. This guide covers all of it.

How Many Cyber Security Tools Do You Need to Know to Get a Cyber Security Job?

If you are trying to build or move forward in a cyber security career, it can feel like the list of tools you are expected to know never ends. One job advert asks for SIEM platforms, another mentions penetration testing tools, another lists cloud security, threat intelligence platforms, endpoint detection, scripting languages and compliance frameworks. Scroll LinkedIn and it gets worse. Everyone seems to “know” dozens of tools, certifications and platforms. Here is the reality most cyber security hiring managers agree on: they are not hiring you because you know every tool. They are hiring you because you understand risk, can think like an attacker and a defender, follow process, communicate clearly and make good decisions under pressure. Tools matter — but only when they support those outcomes. So how many cyber security tools do you actually need to know to get a job? For most job seekers, the answer is far fewer than you think. This article explains what employers really expect, which tools are essential, which are role-specific and how to focus your learning so you look credible, not overwhelmed.

What Hiring Managers Look for First in Cyber Security Job Applications (UK Guide)

If you want to stand out in the highly competitive world of cyber security job applications, you need to understand what hiring managers look for before they even finish reading a CV. Cyber security hiring managers scan applications quickly and with specific priorities in mind. They assess not just your technical ability, but your judgement, professionalism, clarity, risk awareness and evidence of impact. This guide explains what hiring managers look for first in cyber security applications across roles like Security Analyst, Security Engineer, Penetration Tester, Incident Responder, Security Architect, Governance Risk and Compliance specialists and Cloud Security positions. Use this as a practical, step-by-step checklist to sharpen your CV, LinkedIn profile, cover letter and portfolio before you apply on www.cybersecurityjobs.tech .