Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Security engineer

Liverpool (Merseyside)
Permanent
Security engineer
£50,000 - £55,000 a year
Posted: 9 December
Offer description

Role Summary: We are seeking a highly skilled and proactive Security Engineer to join our Information Security team. This role is fundamental to maintaining the security posture of our critical financial platforms and infrastructure. The successful candidate will be a hands-on technical expert responsible for securing our assets across the full spectrum of Application, Systems, and Network domains. Given the nature of our work, a strong adherence to UK financial regulations (FCA) and data protection laws (GDPR) is paramount. This position offers a hybrid working model, providing flexibility while ensuring effective collaboration with the CISO and broader teams. 1. Key Responsibilities The Security Engineer will drive security initiatives within the following core areas: A. Application Security Engineering (AppSec) Secure Development Lifecycle (SDLC): Integrate security tools and processes into the CI/CD pipelines (DevSecOps), ensuring security is "shifted left." Vulnerability Management: Manage and execute Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) on proprietary applications. Remediation & Guidance: Act as the primary security resource for development teams, providing technical advice on vulnerability fixes and secure coding practices (e.g., adherence to the OWASP Top 10). Threat Modeling: Conduct formal threat modeling exercises for new features and application architectures to proactively identify and mitigate design flaws. B. Systems Security Engineering & Configuration Secure Baselines: Define, implement, and audit secure configuration standards for all corporate systems, including servers (Windows/Linux), cloud resources (AWS, Azure), and critical databases, ensuring compliance with CIS Benchmarks or equivalent standards. Endpoint Security: Deploy, manage, and optimize Endpoint Detection and Response (EDR) solutions and host-based firewalls to enhance visibility and defensive capabilities. Identity & Access Management (IAM): Engineer and govern the secure configuration of IAM services, including Multi-Factor Authentication (MFA), Single Sign-On (SSO), and Privileged Access Management (PAM) tools. Patch & Vulnerability Management: Oversee the technical operation of the enterprise vulnerability scanning program, working with IT Operations to prioritize and track remediation of system and software vulnerabilities. C. Network Security Engineering & Infrastructure Firewall Management: Design, implement, and maintain complex rule sets and policies on Next-Generation Firewall (NGFW) platforms, managing network segmentation, site-to-site VPNs, and secure remote access. Intrusion Detection/Prevention (NIPS): Configure and tune Network Intrusion Prevention Systems (NIPS) and Intrusion Detection Systems (IDS) to actively block and alert on malicious network traffic and policy breaches. Security Tool Implementation: Lead the research, deployment, and operationalisation of new network and cloud security tooling, ensuring full integration with our Security Information and Event Management (SIEM) system. Architecture Review: Conduct security reviews of network diagrams and proposed infrastructure changes to ensure secure deployment prior to production release. 2. Required Skills and Experience Professional Experience: Proven experience (typically 4 years) in a security engineering role, with demonstrable expertise across Application, Systems, and Network security domains and associated technology controls. Industry Knowledge: Previous experience working within the UK financial services, banking, or highly regulated industry. Compliance: Excellent working knowledge of UK and EU regulatory requirements, and Exposure to ‘Cyber Essentials plus’. Technical Stack: Expertise in managing and troubleshooting enterprise-grade firewalls (e.g., Palo Alto, Fortinet, Cisco ASA). Strong familiarity with cloud security frameworks and tools (e.g., AWS Security Hub, Azure Security Center). Hands-on experience with scripting for automation (Python, PowerShell, Bash). Reporting: Ability to communicate complex technical security risks and compliance gaps effectively to the CISO. 3. Desirable Qualifications Relevant industry certifications (e.g., CISSP, CISM, SSCP). Cloud-specific security certification (e.g., AWS Certified Security – Specialty, Microsoft Azure Security Engineer Associate). Certifications related to specific technologies, such as PCNSE, CCNP Security, or GIAC. Experience with Infrastructure as Code (IaC) security scanning tools (e.g., Checkov, Terrascan). 4. Work Arrangement and Benefits Hybrid Working: This role operates under a flexible hybrid model, requiring attendance at our Manchester or Liverpool, UK office for essential collaboration meetings (e.g., 2-3 days per week) with the remainder of the time working remotely.

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Senior security engineer
Warrington
Permanent
AtkinsRéalis
Security engineer
€60,000 a year
Similar job
Senior security engineer, building technologies (flexible)
Warrington
Permanent
AtkinsRéalis
Security engineer
€60,000 a year
Similar job
Information technology security engineer
Liverpool (Merseyside)
Permanent
Ventula Consulting
Security engineer
€60,000 a year
See more jobs
Similar jobs
Travel jobs in Liverpool (Merseyside)
jobs Liverpool (Merseyside)
jobs Merseyside
jobs England
Home > Jobs > Travel jobs > Security engineer jobs > Security engineer jobs in Liverpool (Merseyside) > Security Engineer

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2025 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save