We are seeking a Product Security Engineer to help build secure, resilient products from design through deployment. In... Read more
We are seeking a Product Security Engineer to help build secure, resilient products from design through deployment. In this role, you will work closely with software engineering, architecture, infrastructure, quality assurance, and product teams to identify security risks early and ensure that security is embedded throughout the development lifecycle. You will contribute to practical, scalable security solutions that protect customer data, business systems, and product functionality.
Your responsibilities will include conducting threat modelling and security reviews, assessing application and system designs, and advising teams on secure coding and architecture principles. You will help define and maintain security requirements, standards, and engineering guidelines, while supporting vulnerability management, penetration testing, dependency analysis, and remediation activities. You will investigate security findings, prioritise risks based on business impact, and work with development teams to implement effective corrective actions. You may also contribute to security tooling, automation, security testing in CI/CD pipelines, incident response, and the continuous improvement of product security processes.
We are looking for experience in product, application, or software security, together with a strong understanding of common vulnerabilities, secure development practices, authentication and authorisation, data protection, and cloud or distributed systems. Familiarity with security frameworks such as OWASP, threat modelling methodologies, source code analysis, and modern DevSecOps practices is highly desirable. You should be comfortable communicating technical risks to both technical and non-technical audiences, influencing without direct authority, and balancing security requirements with usability and delivery goals. A curious, collaborative, and pragmatic approach is essential, along with the ability to manage multiple priorities and work effectively in a changing environment. Relevant professional experience, certifications, or a degree in computer science, cybersecurity, or a related discipline will be valued.
Read lessLondon, England, United KingdomPermanent
We are seeking an End User Platform Vulnerability Engineer to strengthen the security of workplace technology and protect... Read more
We are seeking an End User Platform Vulnerability Engineer to strengthen the security of workplace technology and protect users, devices, applications and data across an enterprise environment. In this role, you will identify, assess and help remediate vulnerabilities affecting endpoint platforms, operating systems, productivity tools, browsers, mobile devices and associated infrastructure. You will work closely with security operations, infrastructure, service management and engineering teams to reduce risk and maintain secure, reliable end-user services.
Your responsibilities will include managing vulnerability scanning and assessment activities, validating findings, prioritising remediation according to risk, and coordinating corrective actions with technical owners. You will investigate vulnerabilities, assess their potential business impact, recommend mitigation or compensating controls, and track remediation through to completion. You will also support patch management, security configuration reviews, exception management and vulnerability reporting, ensuring accurate records and clear communication of risks, trends and outstanding actions. The role may involve developing dashboards, metrics, procedures and automation to improve visibility and accelerate remediation. You will contribute to security projects, provide technical guidance during platform changes, and stay informed about emerging threats, vendor advisories and relevant industry standards.
The successful candidate will have practical experience in vulnerability management, endpoint security, systems engineering or a closely related discipline. You should understand common operating systems, enterprise device management, software deployment, patching processes, identity controls and security hardening principles. Experience with vulnerability scanners, endpoint detection and response tools, configuration management platforms, scripting or automation is highly desirable. You will be analytical, organised and able to translate technical findings into clear, actionable recommendations for both technical and non-technical stakeholders. Strong communication skills, sound judgement and the ability to manage competing priorities are essential. Relevant professional certifications or demonstrable equivalent experience in cybersecurity, infrastructure or platform engineering would be advantageous.
Read lessLondon, England, United KingdomPermanent
We are seeking a Lead Security Engineer to provide technical leadership across the design, implementation, and continuous improvement... Read more
We are seeking a Lead Security Engineer to provide technical leadership across the design, implementation, and continuous improvement of security capabilities. This role will help shape secure architecture, strengthen engineering practices, and support the organisation in identifying and managing cyber risk across cloud, infrastructure, applications, and corporate systems. You will work closely with engineering, IT, architecture, compliance, and risk teams to ensure security is embedded throughout the technology lifecycle.
Key responsibilities include leading security engineering initiatives, reviewing architectures and designs, and defining practical controls that protect systems, data, and services. You will develop and maintain security solutions such as identity and access management, endpoint protection, vulnerability management, security monitoring, secrets management, and cloud security controls. The role will also involve improving detection and response capabilities, supporting incident investigations, conducting threat modelling, and advising on remediation priorities. You will contribute to security standards, engineering guidance, technical documentation, and automation that enables teams to deliver securely and efficiently. As a technical lead, you will mentor engineers, coordinate delivery across multiple workstreams, and communicate complex security matters clearly to both technical and non-technical stakeholders.
The successful candidate will have substantial experience in security engineering, architecture, or a closely related discipline, together with a strong understanding of modern infrastructure, networks, operating systems, applications, and cloud platforms. Experience with secure software development, DevSecOps, infrastructure as code, scripting, vulnerability assessment, and security tooling is highly desirable. You should be comfortable analysing threats, balancing risk with business requirements, and influencing decisions without relying solely on authority. Strong communication, problem-solving, and stakeholder management skills are essential, along with a proactive approach to continuous improvement. Relevant professional certifications or equivalent practical experience will be valued.
Read lessLondon, England, United KingdomPermanent
We are seeking a Member of Technical Staff (Software Engineer, Security) to help design, build, and maintain secure,... Read more
We are seeking a Member of Technical Staff (Software Engineer, Security) to help design, build, and maintain secure, reliable software systems. In this role, you will work across engineering teams to identify security risks, improve application and infrastructure security, and deliver practical solutions that protect products, services, and customer data. You will contribute throughout the software development lifecycle, from technical design and threat modelling through implementation, testing, deployment, and ongoing improvement.
Your responsibilities will include developing security tools, services, libraries, and automation; reviewing code and architecture for vulnerabilities; investigating security issues; and partnering with engineers to remediate findings. You will help establish secure coding practices, strengthen authentication, authorization, secrets management, logging, monitoring, and vulnerability management capabilities. You may also support incident response, security assessments, penetration testing, and the development of engineering standards and documentation. The role requires the ability to balance security goals with usability, performance, scalability, and delivery timelines.
The successful candidate will have professional experience developing software in one or more languages such as Go, Python, Java, C++, or JavaScript, along with a strong understanding of software security principles and common vulnerabilities. Experience with cloud platforms, distributed systems, operating systems, networking, containers, CI/CD pipelines, or infrastructure as code is highly valued. You should be comfortable reviewing technical designs, communicating risk to varied audiences, and influencing secure engineering practices without relying solely on formal authority. Strong analytical, problem-solving, and communication skills are essential, as is a collaborative approach to working with teams across the organisation. Experience in application security, product security, security engineering, or vulnerability research is desirable.
Read lessLondon, England, United KingdomPermanent
We are seeking an experienced Technical Leader to shape and deliver a modern security monitoring capability centred on... Read more
We are seeking an experienced Technical Leader to shape and deliver a modern security monitoring capability centred on Splunk and related security technologies. In this role, you will provide technical direction across the design, implementation, and continuous improvement of security information and event management services. You will work closely with cybersecurity, infrastructure, cloud, application, and risk teams to ensure security data is collected effectively, analysed accurately, and translated into meaningful action.
Your responsibilities will include defining technical standards and architecture, leading the development of detection use cases, improving alert quality, and establishing effective processes for threat monitoring, incident investigation, and response. You will oversee the onboarding and management of data sources, including cloud platforms, endpoints, networks, applications, and identity services. You will also guide the creation of dashboards, reports, correlation searches, automation, and operational metrics that support both security teams and senior stakeholders. A key part of the role will be mentoring engineers and analysts, coordinating delivery across technical teams, and promoting consistent engineering and documentation practices.
You will bring substantial experience working with Splunk in a security operations, detection engineering, or cyber defence environment, together with a strong understanding of SIEM architecture, log management, threat detection, and incident response. Experience with Splunk Enterprise Security, SPL, data onboarding, alert tuning, and security automation is highly desirable. Knowledge of cloud security, identity and access management, network security, vulnerability management, and relevant security frameworks will be valuable. You should be comfortable leading technical discussions, influencing stakeholders, managing competing priorities, and communicating complex issues clearly to both technical and non-technical audiences. Relevant certifications in Splunk, cybersecurity, cloud, or security operations are advantageous.
Read lessLondon, England, United KingdomPermanent
We are seeking a Test Automation Engineer to support the delivery of secure, reliable and high-quality software within... Read more
We are seeking a Test Automation Engineer to support the delivery of secure, reliable and high-quality software within a security and intelligence environment. You will design, develop and maintain automated test frameworks and suites across web, API, integration and end-to-end applications. Working closely with software engineers, analysts, product owners and security specialists, you will help ensure that systems meet functional, performance, resilience and security requirements throughout the development lifecycle.
Your responsibilities will include translating requirements and technical specifications into comprehensive test strategies, scenarios and automated scripts; identifying opportunities to improve test coverage and reduce manual effort; integrating automated testing into CI/CD pipelines; and investigating, documenting and tracking defects through to resolution. You will contribute to regression, exploratory, system, acceptance and non-functional testing, while supporting release readiness and continuous improvement of quality assurance practices. The role may also involve testing systems that handle sensitive information, so you will be expected to work carefully within strict security, governance and confidentiality standards.
Applicants should have professional experience in software testing and automation, with strong programming or scripting skills in a language such as Python, Java, C# or JavaScript. Experience with tools and technologies such as Selenium, Playwright, Cypress, REST API testing, Git and CI/CD platforms is highly desirable. You should understand modern testing principles, Agile delivery methods, defect management and software development lifecycles, with the ability to analyse complex problems and communicate technical findings clearly. Experience of secure development, threat-informed testing, cloud platforms, containerised environments or regulated projects would be advantageous. A proactive, methodical approach, strong attention to detail and the ability to work collaboratively while handling sensitive material are essential.
Read lessCheltenham, England, United KingdomPermanent
We are seeking an Information Security Engineer to help protect critical systems, applications, networks and data in a... Read more
We are seeking an Information Security Engineer to help protect critical systems, applications, networks and data in a rapidly evolving technology environment. In this role, you will contribute to the design, implementation and continuous improvement of security controls across cloud and on-premises infrastructure. You will work closely with engineering, infrastructure, risk and compliance teams to identify vulnerabilities, reduce operational risk and support secure delivery of technology services.
Your responsibilities will include monitoring and responding to security events, investigating incidents, supporting vulnerability management and recommending appropriate remediation activities. You will help develop and maintain security policies, standards, procedures and technical documentation, while assisting with security assessments, penetration testing coordination and risk reviews. The role will also involve configuring and maintaining security tools such as SIEM, endpoint protection, identity and access management, vulnerability scanners, firewalls and cloud security services. You will contribute to automation and improve detection, response and reporting processes through scripting and practical engineering solutions.
The successful candidate will have proven experience in information security engineering, cyber defence, infrastructure security or a related technical discipline. You should have a good understanding of networking, operating systems, identity management, encryption, secure configuration and common attack methods. Experience with cloud platforms, security monitoring, incident response, vulnerability management and security frameworks such as ISO 27001, NIST or CIS is highly desirable. Familiarity with scripting languages such as Python or PowerShell, along with relevant professional certifications, would be advantageous. Strong analytical, communication and problem-solving skills are essential, as is the ability to manage priorities, explain technical risks clearly and work effectively with both technical and non-technical stakeholders.
Read lessCoventry, England, United KingdomPermanent
We are seeking a Java Software Engineer to contribute to the development of secure, resilient and high-performance software... Read more
We are seeking a Java Software Engineer to contribute to the development of secure, resilient and high-performance software supporting security and intelligence capabilities. You will work as part of a multidisciplinary engineering team, designing, implementing, testing and maintaining Java-based applications that process complex data and support mission-critical decision-making. The role offers the opportunity to work across the full software development lifecycle, from requirements analysis and technical design through to deployment, monitoring and continuous improvement.
Your responsibilities will include developing clean, maintainable and well-tested code; integrating applications with databases, APIs, messaging platforms and distributed systems; and investigating technical issues across development, test and production environments. You will contribute to architectural discussions, code reviews, automated testing, documentation and secure development practices. You may also support the enhancement of existing systems, identify opportunities to improve performance and reliability, and collaborate with analysts, product specialists, DevOps engineers and other stakeholders to deliver effective technical solutions.
Applicants should have professional experience developing software in Java and a strong understanding of object-oriented design, data structures, algorithms and software engineering principles. Experience with frameworks such as Spring or Spring Boot, relational and non-relational databases, RESTful services, unit and integration testing, and version control systems such as Git is highly desirable. Familiarity with containerisation, CI/CD pipelines, cloud technologies, Linux environments or secure coding practices would be advantageous. You should be comfortable working with sensitive information, able to communicate clearly, and capable of balancing independent problem-solving with collaborative delivery. A methodical approach, attention to detail and a genuine interest in security, intelligence and emerging technology are essential.
Read lessManchester, England, United KingdomPermanent
We are seeking a Senior Corporate Security Engineer to design, implement, and maintain secure technology solutions across a... Read more
We are seeking a Senior Corporate Security Engineer to design, implement, and maintain secure technology solutions across a complex enterprise environment. This role will help protect corporate systems, networks, applications, data, and users from evolving cyber threats while supporting business objectives and regulatory requirements. You will work closely with infrastructure, cloud, application development, risk, compliance, and operations teams to embed security into projects, services, and day-to-day technology operations.
Responsibilities will include developing and maintaining security architectures, standards, controls, and engineering patterns; conducting threat modelling, vulnerability assessments, and security reviews; and recommending practical improvements to reduce risk. You will configure and optimise security technologies such as endpoint protection, identity and access management, network security, cloud security, logging, monitoring, and data protection platforms. The role will also support incident response, investigation, and remediation activities, contribute to security automation, and help ensure effective detection and response capabilities. You will provide technical guidance to project teams, review proposed solutions, document risks and controls, and contribute to audit and compliance activities.
The successful candidate will have significant experience in corporate security engineering, cybersecurity operations, or a related technical discipline, with a strong understanding of enterprise infrastructure and modern security principles. Experience with cloud environments, identity platforms, security information and event management, vulnerability management, endpoint security, and network technologies is highly desirable. You should be comfortable analysing complex problems, prioritising risks, and communicating technical issues clearly to both technical and non-technical audiences. Relevant professional certifications, such as CISSP, CISM, CCSP, GIAC, or equivalent experience, would be advantageous. We are looking for a proactive, collaborative professional who can work independently, influence stakeholders, and deliver robust security solutions in a changing environment.
Read lessLondon, England, United KingdomPermanent
We are seeking a Senior Product Security Engineer to help embed security throughout the product development lifecycle. In... Read more
We are seeking a Senior Product Security Engineer to help embed security throughout the product development lifecycle. In this role, you will partner with software engineers, product managers, architects, and infrastructure teams to identify risks, define practical security controls, and deliver secure, resilient products. You will contribute to security strategy while remaining hands-on in assessing applications, services, APIs, cloud environments, and supporting technologies.
Your responsibilities will include leading threat modelling and secure design reviews, conducting vulnerability assessments, and advising engineering teams on remediation. You will develop and maintain security guidance, patterns, and standards; improve application security testing across the development pipeline; and support the integration of tools such as static analysis, dynamic testing, software composition analysis, and secrets detection. You will also investigate complex security issues, help prioritise findings according to business impact, and contribute to incident response, security architecture reviews, and continuous improvement initiatives. Clear documentation and effective communication will be essential, as you will translate technical risks into actionable recommendations for both technical and non-technical stakeholders.
To succeed, you should have substantial experience in product or application security, with strong knowledge of secure software development practices, common web and API vulnerabilities, identity and access management, cryptography fundamentals, and cloud security principles. Experience with modern programming languages, CI/CD systems, infrastructure as code, containers, and security automation is highly desirable. Familiarity with recognised security frameworks and standards, such as OWASP guidance, NIST practices, or equivalent, would be advantageous. You should be comfortable influencing teams, mentoring colleagues, balancing security with usability and delivery goals, and working independently in a changing environment. Relevant professional certifications or demonstrable contributions to security engineering, research, or open-source projects are welcome.
Read lessLondon, England, United KingdomPermanent
All your saved jobs are no longer available or you've already applied.
for the following search criteria