At a Glance
- Tasks: Design and build cloud-native security controls to protect data and applications.
- Company: Join Allstate, a leader in innovative protection solutions for over 90 years.
- Benefits: Flexible benefits, healthcare, career growth, and a supportive work culture.
- Other info: Be part of a socially responsible team that values diversity and inclusion.
- Why this job: Make a real impact in cloud security while working with cutting-edge technology.
- Qualifications: 3+ years in software or security engineering with cloud experience required.
The predicted salary is between 60000 - 80000 £ per year.
At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. Your role in the team Product Security Engineering designs, builds, and operates enterprise security controls as software products that integrate directly into cloud platforms, the SDLC, and core enterprise services. The organization applies modern software and cloud engineering practices to deliver scalable, reliable, and developer-friendly security capabilities for cloud-hosted workloads.
The Cloud Product Security Engineer is a hands-on security engineer responsible for building, integrating, and operating security controls within cloud environments. This role focuses on engineering preventative, detective, and responsive security capabilities across cloud infrastructure, data platforms, and application services. It includes building and operating cloud security posture management (CSPM) and data loss prevention (DLP) capabilities to continuously detect, assess, and reduce risk in cloud environments. Engineers in this role own the full software development lifecycle from design and implementation through deployment and production support and are accountable for the reliability, adoption, and effectiveness of cloud security controls, including their role in incident detection, response, and recovery.
Key Responsibilities:
- Design, build, and operate cloud-native security controls as software products across cloud infrastructure, data platforms, and application services.
- Engineer and maintain cloud security posture management (CSPM) and data loss prevention (DLP) capabilities to continuously detect, assess, and reduce risk in cloud environments.
- Build preventative, detective, and responsive security controls that integrate directly into cloud platforms, CI/CD pipelines, and shared enterprise services.
- Integrate cloud security controls with SIEM and security tooling to generate high-quality signals for detection, investigation, and incident response.
- Support incident handling and response by engineering detection logic, automation, and response mechanisms that improve containment and recovery.
- Apply modern cloud and software engineering practices (e.g., infrastructure as code, automated testing, CI/CD) to ensure security controls are reliable, scalable, and maintainable.
- Collaborate with platform engineers, application teams, and Digital Product Managers to align cloud security controls with architectures and developer workflows.
Essential Skills:
- A minimum of 3 years of professional software or security engineering experience, with hands-on ownership of production systems deployed in cloud environments.
- Strong proficiency in one or more modern programming languages (such as Python, Java, or JavaScript), and a proven ability to design, write, review, and maintain robust production grade code.
- Hands-on experience engineering security controls within public cloud platforms (e.g., AWS and/or Azure), spanning infrastructure, platform services, or application-level integrations.
- Background building or integrating cloud security posture management (CSPM), data protection, or data loss prevention (DLP) capabilities as engineered solutions.
- Understanding of cloud-native architectures and services (e.g., identity, networking, storage, compute) and how security controls integrate into them.
- Experience engineering preventative, detective, and responsive security capabilities, including detection logic, automation, or response workflows in cloud environments.
- Familiarity integrating security controls and signals with SIEM or security monitoring platforms to support detection and incident response.
- Practical application of modern engineering practices such as infrastructure as code, automated testing, CI/CD, and operational feedback loops.
Desirable Skills:
- Working knowledge of cloud service provider security services and patterns (e.g., identity, networking, encryption, logging) and their use in real-world cloud architectures.
- Practical exposure to advanced CSPM techniques, including policy-as-code, drift detection, and automated remediation.
- Experience with data classification, data handling, or data protection strategies that support DLP in cloud-hosted systems.
- Familiarity with security telemetry, logging pipelines, and SIEM platforms used for detection, investigation, and incident response.
- Hands-on involvement in incident response or post-incident analysis from an engineering perspective (e.g., improving detections, controls, or recovery mechanisms).
- Exposure to infrastructure-as-code and cloud automation tooling used to deploy, configure, and secure cloud resources at scale.
- Understanding of secure design principles for cloud-native and distributed systems, including identity-centric and least-privilege approaches.
- Demonstrated interest in continuously improving cloud security controls through learning, experimentation, and collaboration.
Supervisory Responsibilities:
This role has supervisory responsibilities and serves as the first level manager for a team of engineers.
Joining our team isn't just a job - it's an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger - a winning team making a meaningful impact.
Why join us? Allstate NI is proud to be Allstate's European Digital Centre of Excellence-recent winners of 'Best Use of Cloud Services' at the Belfast Telegraph IT Awards 2024, and recognised for our community and sustainability impact at the 2024 Business in the Community Awards and Gold accreditation for Environmental Responsibility. We're a product-driven, cloud-first organisation delivering real outcomes through modern technology, a digital product-centric talent model, and a culture rooted in engineering excellence. Our teams work in cross-functional structures, guided by an outcome-based delivery approach that accelerates speed, agility, and value.
We offer: A generous, flexible benefits package including annual leave, healthcare and dental cover, pension, and lifestyle discounts; Access to world-class learning platforms and award-winning L&D; Clear career paths, internal mobility, and a strong focus on growth; A people-first culture with flexible working options; Be part of a high-performing, socially responsible organisation where your work has purpose, and your growth is supported every step of the way.
Statement on Fair Employment and Equal Opportunities: Allstate NI wishes to ensure equal opportunity is given to all job applicants. This company will not discriminate on the grounds of race, gender (including gender reassignment status), sexual orientation, religious belief, political opinion, marital status, age or disability. We are an equal opportunities employer. We welcome applications from all suitably qualified persons. However, as women are currently under-represented in our workforce, we would particularly welcome applications from women. All appointments will be made on merit. Applicants should note Allstate NI complete AccessNI background checks on all candidates offered a position.
Product Engineers -Cloud (Multiple Levels) Hybrid in Lisburn employer: Allstate Northern Ireland
Contact Detail:
Allstate Northern Ireland Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Product Engineers -Cloud (Multiple Levels) Hybrid in Lisburn
✨Tip Number 1
Network like a pro! Reach out to folks in your industry on LinkedIn or at local meetups. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to cloud security. This gives potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios specific to cloud security engineering. We recommend doing mock interviews with friends or using online platforms to boost your confidence.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team.
We think you need these skills to ace Product Engineers -Cloud (Multiple Levels) Hybrid in Lisburn
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your relevant experience in cloud security and software engineering. We want to see how your skills align with the role, so don’t hold back on showcasing your achievements!
Show Off Your Technical Skills: Since this role is all about engineering security controls, be sure to mention your proficiency in programming languages like Python or Java. We love seeing hands-on experience, especially with cloud platforms like AWS or Azure, so make that clear!
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use bullet points for easy reading and ensure your key skills and experiences stand out. We appreciate clarity and a well-structured application!
Apply Through Our Website: Don’t forget to submit your application through our careers page! It’s the best way for us to receive your details and ensures you’re considered for the role. We can’t wait to see what you bring to the table!
How to prepare for a job interview at Allstate Northern Ireland
✨Know Your Cloud Security Basics
Before heading into the interview, brush up on your knowledge of cloud security principles. Understand how CSPM and DLP work, and be ready to discuss how you've applied these concepts in your previous roles. This will show that you’re not just familiar with the terms but can also implement them effectively.
✨Showcase Your Coding Skills
Since strong programming skills are essential for this role, be prepared to demonstrate your proficiency in languages like Python, Java, or JavaScript. Bring examples of code you've written or projects you've worked on that highlight your ability to create robust, production-grade software.
✨Discuss Real-World Applications
Be ready to talk about specific instances where you've engineered security controls within cloud environments. Share your experiences with incident response, automation, and how you’ve integrated security measures into CI/CD pipelines. This practical insight will set you apart from other candidates.
✨Ask Insightful Questions
Prepare thoughtful questions about the team’s current projects, challenges they face, and how they measure success in cloud security. This not only shows your interest in the role but also helps you gauge if the company culture aligns with your values and career goals.