About this role
Salary: £90,000 - 120,000 per year
Requirements: We expect you to have experience working within information security operations and engineering functions.We expect you to have experience developing and documenting detailed designs.We expect you to have experience with cyber security and data protection regulations.We expect you to have experience with cloud development techniques.We expect you to have experience configuring and implementing software and hardware security components, including cryptographic solutions.We expect you to have experience with secure development standards, such as Security Development Lifecycle.We expect you to have experience with agile techniques and methodologies, such as SCRUM, SAFe, Continuous Development, Continuous Integration and Continuous Testing.We expect you to have experience mentoring and supporting people development.We value knowledge and experience in one or more of the following areas: Identify & Access Management, Endpoint Protection, Network Security, Office 365 & Email Security, Application Security, Cloud Platform Security, Operational Technology Security. Responsibilities: We are responsible for the design, engineering, technical delivery, maintenance and improvements of the systems and applications for the Information Security Office.We improve our tools through tuning, enhancements and improved adoption.We ensure that solutions delivered meet industry best practice and compliance requirements.We develop and update systems or products in conformance with agreed security requirements and standards throughout the lifecycle.We document technical designs, implementation and tuning of a combination of security controls to balance prevention, detection, response and usability.We may carry out detailed technical design, coding, hardware prototyping, debugging and documentation.We proactively protect clients by engineering secure solutions from inception to retirement, reducing the risk of a cyber event impacting customers, colleagues or reputation.We develop information security products using components, tools, techniques and methodologies that minimise the chance of creating vulnerabilities.We integrate security products into more complex systems, including cloud-based systems.We produce documentation on products and services to guide implementers, system operators and administrators, and sometimes end users.We review and process incoming engineering requests from Cybersecurity stakeholders.We test and implement technology configuration changes and updates.We work with other areas of the information security team to share subject matter expertise, resolve issues and transfer knowledge through training, support materials and workshops.We provide technical guidance and leadership for at least one product within the cyber portfolio.We provide out-of-hours support as part of a rota. Technologies: CloudHardwareSupportNetworkOffice 365Security More:
The Information Security Design and Engineering Team is responsible for the design, engineering, technical delivery, maintenance and improvements of the systems and applications for the Information Security Office. We work alongside other areas of Technology and the Information Security Office to deliver solutions that meet industry best practice and compliance requirements. As an Information Security Engineer, we focus on secure development, technical design, integration and support across our cyber portfolio, with opportunities to provide subject matter expertise and leadership for key products.
last updated 38 week of 2026