At a Glance
- Tasks: Lead security engineering and testing across cloud platforms while mentoring junior engineers.
- Company: Join a high-performing team in a remote-first innovative tech environment.
- Benefits: Competitive salary, bonus, and opportunities for professional growth.
- Other info: Great chance to influence technical direction and develop your career.
- Why this job: Make a real impact on security practices in a modern cloud-first setting.
- Qualifications: Experience in securing web applications and cloud platforms, plus strong communication skills.
The predicted salary is between 70000 - 95000 £ per year.
We are seeking an experienced Lead Security Engineer to join a high-performing engineering function focused on building secure, scalable, and resilient platforms across modern cloud environments. This is a senior technical leadership role combining hands-on security engineering with mentoring, strategy, and delivery oversight within agile teams.
Role Responsibilities
- Lead security engineering and security testing across cloud and application platforms
- Define and drive security testing methodologies, tooling, and best practices
- Perform and oversee security assessments including penetration testing and code reviews
- Embed security into CI/CD pipelines and continuous delivery practices
- Collaborate with engineering teams to ensure secure-by-design development
- Lead threat modelling activities and articulate risks across systems and architectures
- Guide adoption of security standards, frameworks, and compliance requirements
- Mentor and develop junior engineers within the security function
- Stay current with emerging threats, vulnerabilities, and attack techniques
Required Experience
- Strong experience securing web applications and cloud platforms (AWS or Azure)
- Hands-on experience with security testing, including manual and automated approaches
- Strong understanding of secure coding and secure software development lifecycle practices
- Experience working with CI/CD and DevSecOps practices
- Knowledge of security frameworks and standards (e.g. NCSC, NIST, CIS, OWASP, ISO27001, PCI DSS, GDPR)
- Strong understanding of common attack vectors (OWASP Top 10, XSS, SQL injection, etc.)
- Good programming or scripting ability across Linux/Windows environments
- Strong communication skills with the ability to explain technical security concepts to varied audiences
- Experience mentoring or leading small technical teams
Desirable Experience
- Security certifications such as OSCP, CREST, or equivalent
- Experience with tools such as Burp Suite, Nmap, Nessus, Metasploit, or similar
- Exposure to enterprise security tooling (WAF, IDS/IPS, SIEM, etc.)
- Active participation in the security community or knowledge sharing activities
- Experience working in Agile delivery environments
Eligibility Requirements
- Must be a UK citizen
- Must be eligible for UK Security Clearance
This is an excellent opportunity for a senior security professional looking to take ownership of security engineering practices in a modern cloud-first environment, while influencing both technical direction and team development.
For more information or a confidential discussion, please get in touch.
Security Engineer in Nottingham employer: ANSON MCCADE
Contact Detail:
ANSON MCCADE Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer in Nottingham
✨Tip Number 1
Network like a pro! Reach out to your connections in the security field, attend meetups, and engage in online forums. The more people you know, the better your chances of landing that Lead Security Engineer role.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your security projects, including any penetration tests or secure coding examples. This will give potential employers a taste of what you can bring to their team.
✨Tip Number 3
Prepare for interviews by brushing up on common security concepts and frameworks. Be ready to discuss your hands-on experience with cloud platforms like AWS or Azure, and how you've implemented security best practices in past roles.
✨Tip Number 4
Don’t forget to apply through our website! We’re always on the lookout for talented individuals like you. Plus, it’s a great way to ensure your application gets the attention it deserves.
We think you need these skills to ace Security Engineer in Nottingham
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Lead Security Engineer. Highlight your experience with cloud platforms, security testing, and mentoring, as these are key aspects we’re looking for.
Craft a Compelling Cover Letter: Use your cover letter to tell us why you’re passionate about security engineering. Share specific examples of how you've led security initiatives or mentored teams, and don’t forget to mention your familiarity with security frameworks!
Showcase Your Technical Skills: In your application, be sure to include any relevant certifications and tools you’ve worked with, like Burp Suite or AWS. We want to see your hands-on experience and how you’ve applied it in real-world scenarios.
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you get all the updates directly from us!
How to prepare for a job interview at ANSON MCCADE
✨Know Your Security Frameworks
Make sure you brush up on key security frameworks and standards like NIST, OWASP, and ISO27001. Be ready to discuss how you've applied these in your previous roles, especially in securing web applications and cloud platforms.
✨Showcase Your Hands-On Experience
Prepare to share specific examples of your hands-on security testing experience. Whether it's penetration testing or code reviews, having concrete stories will demonstrate your expertise and problem-solving skills.
✨Emphasise Mentoring Skills
Since this role involves mentoring junior engineers, think about times you've guided others. Highlight your approach to teaching complex security concepts and how you've fostered a culture of security within teams.
✨Stay Current with Threats
Be prepared to discuss recent security threats and vulnerabilities. Showing that you're up-to-date with the latest attack techniques will not only impress but also prove your commitment to continuous learning in the field.