Now hiring

Security Engineer @ Vallum Associates Limited

Lower Thames Street 10, SheffieldOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

Salary: £143,000 - 143,000 per year

Requirements: We need experience in Information Security Engineering and Identity and Access Management (IAM).We need a strong understanding of Zero Trust Architecture, Authentication and Authorisation, Workload Identity, Agent Identity, PKI and Certificate Management, Secrets Management, and Cryptography.We need experience with Cloud Security, particularly GCP, as well as Kubernetes Security, Service Mesh Security, and API Security.We need hands-on experience with Policy-as-Code, especially OPA, and DevSecOps practices.We need experience in Secure Software Development Lifecycle (SSDLC), Threat Modelling, Vulnerability Management, Security Monitoring and SIEM, Security Compliance and Governance, and Incident Response.We need a successful track record working in complex global organisations in a fast-paced environment. Responsibilities: We design and implement security controls across the IDAM 2.0 platform.We embed Secure by Design principles throughout solution delivery.We implement and maintain Zero Trust security controls.We configure and maintain authentication and authorisation security mechanisms.We implement secure service-to-service communication using mutual TLS (mTLS).We support Workload Identity, Human Identity, and Agent Identity security controls.We implement and maintain Policy-as-Code solutions using OPA and related technologies.We integrate secrets management, PKI, and certificate lifecycle services.We support cryptographic key management and certificate rotation processes.We perform security reviews of solution designs, infrastructure, and application code.We conduct threat modelling and security risk assessments.We identify, assess, and remediate security vulnerabilities.We support vulnerability management and security patching activities.We develop and maintain security baselines, standards, and hardening guides.We implement cloud security controls for GCP resources and Kubernetes platforms.We configure security monitoring, logging, alerting, and audit capabilities.We support identity governance, privileged access, and least privilege implementation.We assist with penetration testing and remediation activities.We support security compliance with financial services regulatory requirements.We collaborate with Security Operations and Incident Response teams during security events.We support security assurance for third-party integrations and supplier solutions.We contribute to DevSecOps tooling and automated security testing.We promote security awareness and engineering best practice across delivery teams.We produce security documentation, implementation guides, and operational procedures. Technologies: APICloudCryptographyDevSecOpsGCPIAMSupportKubernetesSecurity More:

We are undergoing a transformation of our Identity and Access Management practices and delivering a set of net new tools to overhaul how IAM is carried out in the industry. We are seeking an experienced and dynamic Security Engineer to join us in a fast-paced, complex global environment.

last updated 32 week of 2026

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores