Senior Software Cybersecurity Engineer

Motorola Solutions, Inc.
Edinburgh, UK
21 days ago
Apply on www.adzuna.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
£73,890.0
Working hours
Regular working hours

Tech stack

Kubernetes Security Artificial Intelligence Amazon Web Services Software System Penetration Testing Application Testing Unit Testing Microsoft Azure C Sharp (Programming Language) Software as a Service Cloud Computing Code Review Cyber Security
+26 more
Distributed Systems Identity and Access Management Intrusion Detection and Prevention Intrusion Detection Systems Key Management Network Protocols Open Web Application Security Systems Development Life Cycle Secure Coding Security Software Security Information and Event Management Software Engineering Systems Integration TCP/IP Software Vulnerability Management Data Logging Google Cloud Software Security Kubernetes Information Technology Splunk Devsecops Docker Static Application Security Testing Vulnerability Analysis Dynamic Application Security Testing

Job description

The Senior Software Cybersecurity Engineer will analyze software designs and implementations to identify and remediate security vulnerabilities across the SDLC., Security Design and Implementation

  • Perform threat modeling, risk assessments, audits, and architecture reviews, focusing on Cloud and container environments.
  • Manage Key Management and IAM controls.
  • Support engineering teams by defining security requirements to meet compliance standards and industry best practices.
  • Perform security code reviews and act as a technical SME for engineering and compliance teams.

Security Testing & DevSecOps

  • Deploy and manage automated security tools (SCA/SBOM, SAST, DAST, Secret Scanning) within CI/CD pipelines.
  • Apply manual network/application testing, custom scripting, and unit test cases to validate controls.
  • Recommend improvements to existing security tools, processes, and secure coding standards.

Vulnerability Management

  • Drive vulnerability management with a focus on Kubernetes (K8s) and container images.
  • Triage, validate (including writing PoCs), and prioritize scanning tool findings.
  • Communicate security issues to stakeholders and manage remediation throughout the SDLC

Incident Response and Compliance

  • Support product security incident response, including root cause analysis, mitigation strategies, and creation of technical runbooks.
  • Apply Detection Engineering principles, setting baseline app security parameters and maintaining IDS/IPS rules.
  • Conduct post-incident analysis and lessons learned to refine response strategies.
  • Monitor emerging threats to proactively integrate new protections and ensure compliance with standards (OWASP, NIST).

Requirements

  • Experience & Education: 7+ years in Security/Application Engineering; Bachelor’s degree in Computer Science, Information Security, or a related field.
  • Leadership: Proven track record in leading process change, mentoring on secure-by-design principles, and driving continuous improvement.
  • Cloud & Container Security: Strong knowledge of orchestration (AWS, Azure, GCP, Docker, Kubernetes) and container image vulnerability lifecycles.
  • AppSec & DevSecOps: Deep understanding of threat modeling (STRIDE, PASTA), IAM, cryptography, web/network protocols (HTTP, REST, TLS, TCP/IP), and integrating security tooling (SCA, SAST, DAST) into CI/CD pipelines.
  • Software Engineering: Hands-on development experience, specifically in Go and C#.
  • Standards & Frameworks: Knowledge of NIST, ISO 27001, CIS, and OWASP (ASVS/Testing Guides)., * Advanced Technical Skills: Deep vulnerability research, exploit R&D, manual pentesting (cloud/web/embedded/mobile), SIEM/logging platforms (Splunk, OSQuery), AI/ML security, and distributed systems.
  • Education & Certifications: Master’s degree preferred; Cloud/Security certifications (CCSP, CCAK, AWS Security Specialty, OSCP, CISSP, SANS/GIAC).
  • Soft Skills: Strong communication across technical and non-technical groups, calm under pressure, and experience in high-growth SaaS environments.

Benefits & conditions

In return for your expertise, we’ll support you in this new challenge with coaching & development every step of the way. Also, to reward your hard work you’ll get:

  • Competitive salary and bonus schemes
  • Two weeks additional pay per year (holiday bonus).
  • 25 days holiday entitlement + bank holidays.
  • Attractive defined contribution pension scheme.
  • Private medical insurance.
  • Employee stock purchase plan.
  • Flexible working options.
  • Life assurance.
  • Enhanced maternity and paternity pay.
  • Career development support and wide ranging learning opportunities.
  • Employee health and wellbeing support EAP, wellbeing guidance etc.
  • Carbon neutral initiatives/goals.
  • Corporate social responsibility initiatives including support for volunteering days.
  • Well known companies discount scheme.

About the company

At Motorola Solutions, we believe that everything starts with our people. We’re a global close-knit community, united by the relentless pursuit to help keep people safer everywhere. We build and connect technologies to help protect people, property and places. Our solutions foster the collaboration that’s critical for safer communities, safer schools, safer hospitals, safer businesses, and ultimately, safer nations. Connect with a career that matters, and help us build a safer future. The Avigilon security team, which you will be a key member of, is responsible for maintaining and implementing security controls for all confidential and intellectual property data across our physical security and video security platform, within the Avigilon organization.

This role is hybrid, 2 days a week in our Uxbridge or Edinburgh offices.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

Videos

See all

Related articles

See all