Lead Cyber Security Engineer

Effectivelymentor
Reading, United Kingdom
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Reading, United Kingdom

Tech stack

Microsoft Windows
Amazon Web Services (AWS)
Software System Penetration Testing
Azure
Burp Suite
Cloud Computing
Code Review
Computer Security
Computer Programming
Continuous Delivery
Continuous Integration
Linux
Intrusion Detection Systems
NMap
Open Web Application Security
PCI Data Security Standards
Systems Development Life Cycle
Secure Coding
Security Software
Security Information and Event Management
SQL Injection
Web Applications
Scripting (Bash/Python/Go/Ruby)
Cross-Site Scripting (XSS)
SC Clearance
Nessus
Devsecops
Vulnerability Analysis

Job description

Lead and deliver security testing and engineering activities across platformsPerform and oversee penetration testing, code reviews, and security assessmentsDevelop and implement secure development and testing practicesIntegrate security tooling into continuous delivery pipelinesWork closely with engineering teams to ensure security is embedded earlyLead threat modelling exercises across systems and architecturesSupport adoption of security frameworks and compliance standardsMentor and develop engineers within the security capabilityStay current with emerging threats, vulnerabilities, and techniques

Requirements

Key Requirements:Strong experience securing web applications and cloud platforms (AWS or Azure)Hands-on experience with manual and automated security testingStrong understanding of secure coding and SDLC practicesExperience working within CI/CD and DevSecOps environmentsKnowledge of security frameworks such as: NCSC, NIST, CIS, OWASP, ISO27001, PCI DSS / GDPRStrong understanding of common attack vectors (e.g. XSS, SQL injection)Scripting or programming capability across Linux/Windows environmentsStrong communication skills with ability to explain technical concepts clearlyExperience mentoring or leading small technical teams You will gain exposure with: Enterprise-scale cloud platforms and modern security architecturesDevSecOps tooling and integrated security pipelinesAdvanced security testing techniques and real-world threat scenariosSecurity tooling such as Burp Suite, Nmap, Nessus, MetasploitEnterprise security platforms (WAF, SIEM, IDS/IPS)Agile delivery environments and collaborative engineering teams Additional RequirementsMust be a UK citizenMust be eligible for UK Security Clearance, in line with project requirements Why Join? Take ownership of security engineering within a modern cloud-first environmentInfluence how security is embedded across large-scale platformsWork in a technically strong, collaborative engineering cultureRemote-first model with flexibility and autonomyCompetitive salary and bonus structure

About the company

Our client is a leading digital and technology consultancy, recognised among The Times Top 100 Companies to Work For, delivering secure, large-scale platforms across cloud-first environments. The organisation partners with clients to build resilient, scalable systems with security engineered at their core. This opportunity is suited to someone ready to take ownership of security engineering practices across modern cloud platforms, combining hands-on technical expertise with leadership, mentoring, and influence across engineering teams. You'll have the opportunity to: Lead security engineering across cloud and application platformsDefine and evolve security testing methodologies and toolingEmbed security into CI/CD pipelines and DevSecOps practicesInfluence secure-by-design engineering approaches across teamsLead threat modelling and communicate risks effectivelyMentor engineers and support capability growth within the functionShape how security is implemented across modern, scalable platforms

Apply for this position