> Markdown version of [/jobs/ext/1480677-security-engineer](https://www.wearedevelopers.com/jobs/ext/1480677-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** 17918 - **Location:** Cleckheaton, UK - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Software System Penetration Testing, User Authentication, Cloud Computing Security, Cyber Security, Identity and Access Management, Key Management, Public Key Infrastructure, Zero Trust Network Access, Service Pack, Security Information and Event Management, Software Engineering, Software Vulnerability Management, Policy as Code, SSL Certificate Management, Data Logging, Istio, Software Security, Kubernetes, CIS Benchmarks, Devsecops - **Published:** July 29, 2026 - **Apply:** https://www.apply4u.co.uk/jobs/x/42321062/ ## About the Role The client undergoing a transformation of its Identity and Access Management practices including the delivery of a set of net new tools to overhaul how IAM is carried out in the industry. We are seeking experienced and dynamic Security Engineer who have an excellent understanding of Identity Management, with a successful track record of working in complex global organisations at fast pace. In this role, you will: Design and implement security controls across the IDAM 2.0 platform. Embed Secure by Design principles throughout solution delivery. Implement and maintain Zero Trust security controls. Configure and maintain authentication and authorisation security mechanisms. Implement secure service-to-service communication using mutual TLS (mTLS). Support Workload Identity, Human Identity and Agent Identity security controls. Implement and maintain Policy-as-Code solutions using OPA and related technologies. Integrate secrets management, PKI and certificate lifecycle services. Support cryptographic key management and certificate rotation processes. Perform security reviews of solution designs, infrastructure and application code. Conduct threat modelling and security risk assessments. Identify, assess and remediate security vulnerabilities. Support vulnerability management and security patching activities. Develop and maintain security baselines, standards and hardening guides. Implement cloud security controls for GCP resources and Kubernetes platforms. Configure security monitoring, logging, alerting and audit capabilities. Support identity governance, privileged access and least privilege implementation. Assist with penetration testing and remediation activities. Support security compliance with financial services regulatory requirements. Collaborate with Security Operations and Incident Response teams during security events. Support security assurance for third-party integrations and supplier solutions. Contribute to DevSecOps tooling and automated security testing. Promote security awareness and engineering best practice across delivery teams. Produce security documentation, implementation guides and operational Procedures. Essential Skills Information Security Engineering Identity and Access Management (IAM) Zero Trust Architecture Authentication and Authorisation Workload Identity Agent Identity PKI and Certificate Management Secrets Management Cryptography Cloud Security (GCP) Kubernetes Security Service Mesh Security API Security Policy-as-Code (OPA) DevSecOps Secure Software Development Lifecycle (SSDLC) Threat Modelling Vulnerability Management Security Monitoring and SIEM Security Compliance and Governance Incident Response TPBN1_UKTJ ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)