Senior Security Engineer

Senior Security Engineer

Full-Time 63000 - 77000 £ / year (est.) Home office (partial)
Change Grow Live

At a Glance

  • Tasks: Design and improve security controls across cloud platforms while leading incident response.
  • Company: Join Change Grow Live, a national organisation focused on cyber security and social impact.
  • Benefits: Enjoy 25 days annual leave, wellness support, and professional development opportunities.
  • Other info: Hybrid role with excellent career growth and a collaborative team environment.
  • Why this job: Make a real difference in cyber security while working with cutting-edge technology.
  • Qualifications: Senior-level experience in security engineering and strong cloud security expertise required.

The predicted salary is between 63000 - 77000 £ per year.

Protect the technology behind life-changing services. Cyber security at Change Grow Live is about more than protecting systems. It protects the digital services thousands of colleagues rely on to support people across the UK. We’re looking for a Senior Security Engineer to join our Cloud, Infrastructure and Security team and help shape the next stage of our cyber security capability.

You’ll design modern security controls across Microsoft Azure, Microsoft 365, AWS and hybrid infrastructure—combining hands-on engineering with the influence to strengthen architecture, standards and technical decision-making across Digital & IT. This isn’t a role where you simply respond to risk. You’ll help us stay ahead of it.

The impact you’ll make

You’ll be a senior technical authority for security, helping ensure our platforms, applications and services remain secure, resilient and aligned with organisational priorities. From strengthening cloud architecture to leading the response to complex incidents, you’ll focus on the areas that present the greatest risk and opportunity.

  • Design and improve security controls across Azure, AWS and Microsoft 365.
  • Lead incident response, vulnerability management and remediation activity.
  • Strengthen threat detection through SIEM, EDR, NDR and proactive threat hunting.
  • Embed secure-by-design and Zero Trust principles across technical projects.
  • Improve identity, access governance, endpoint, network and infrastructure security.
  • Support continued alignment with Cyber Essentials Plus, ISO 27001 and the Cyber Assessment Framework.

You’ll also develop playbooks and technical standards, support audit and governance activity, evaluate new security technologies and use scripting and automation to make our security operations faster and more effective.

Why this opportunity?

You’ll join a national organisation that is investing in modern technology and strengthening its cyber security maturity. You’ll have genuine influence over our security architecture, tooling and technical direction—while working with cloud platforms and services that have a clear social purpose. This is an opportunity to build stronger defences, develop the capability of others and shape security improvements that will last.

Where you’ll work

Location: This is a hybrid role, and your contractual base will be the Change Grow Live office closest to your home. You’ll work remotely for part of the week, with office attendance required when needed. The role will also involve occasional travel to Change Grow Live locations across the UK, including overnight stays where necessary.

Contract: Permanent
Hours: Full time, 37.5 hours per week. Due to the nature of cyber security operations, occasional out-of-hours support may be required in response to significant incidents or business needs.

What you’ll bring

You’re an experienced security engineer who can move confidently between strategy and delivery. You’ll be comfortable investigating a complex incident, reviewing a solution design and explaining technical risk to colleagues from different disciplines.

  • Senior-level experience in security engineering or security operations.
  • Strong cloud security expertise across Azure, Microsoft 365 and AWS.
  • Deep knowledge of identity and access management, Zero Trust, encryption and endpoint security.
  • Hands-on experience with SIEM, EDR, NDR and vulnerability-management tooling.
  • Strong scripting and automation skills using PowerShell, Bash or Python.
  • Experience leading incident investigations across production environments.
  • Strong knowledge of networking, firewalls, VPNs and hybrid infrastructure.
  • The ability to influence decisions, mentor engineers and translate complexity into clear action.

Professional certifications such as Azure Security Engineer, Microsoft Cybersecurity Architect, AWS Security Specialty, CISSP, CCSP or CompTIA Security+ would be valuable. Experience with Terraform, ARM, Bicep, SOC operations or threat intelligence would also be welcomed.

What we’ll give you

You’ll join a collaborative Digital & IT function where your expertise will be valued and your professional development supported. You’ll also receive:

  • 25 days’ annual leave plus bank holidays, increasing to 30 days with service.
  • A paid Wellness Hour every week.
  • Access to our Wellness Hub and Employee Assistance Programme.
  • A contributory pension scheme.
  • Learning, development and career opportunities.
  • Employee discounts across shopping, cinema, holidays and more.
  • Our Refer a Friend Scheme.

Our values—Be open. Be compassionate. Be bold.—guide everything we do. If they reflect the way you work, we’d love to hear from you.

When completing your application, show us how your technical expertise, security leadership and approach to continuous improvement align with the essential requirements of the role.

A note about using AI in your application: AI can be a really helpful tool when putting together your application, and we're happy for you to use it. However, what we're most interested in is you. We want to understand your experiences, achievements and strengths, so please make sure your application reflects your own story and clearly shows how you meet the essential criteria and the impact you've made in previous roles.

We reserve the right to close this opportunity early if we receive a high number of applications, so we encourage you to apply as soon as possible. This opportunity may be eligible for visa sponsorship. Applicants must already have the right to work in the UK at the time of application. Please note that we are not accepting applications from recruitment agencies for this vacancy. Direct applications only.

Salary Range (pro rata if part time)

CGL points 55 to 58 (£62,849.32 - £66,528.65)

ILW / OLW /Fringe

N/A - Outside London Weighting Area

If you have any questions or concerns on this opportunity that you would like to talk through please contact us using the below details:

Joshua Bridgens | josh.bridgens@cgl.org.uk | 07771115801

This post is subject to a Disclosure and Barring Service (DBS) Scheme check at a basic level.

Senior Security Engineer employer: Change Grow Live

Change Grow Live is an exceptional employer, offering a supportive and compassionate work culture that prioritises the well-being of both employees and service users. Located in Bromley, this role provides meaningful opportunities for personal and professional growth, with a focus on making a positive impact in the community. Employees benefit from a competitive salary, generous leave, and the chance to collaborate with dedicated professionals in the field of recovery support.

Change Grow Live

Contact Details:

Change Grow Live Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Engineer

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Change Grow Live, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Change Grow Live

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Change Grow Live. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Senior Security Engineer

Security Engineering
Cloud Security Expertise
Microsoft Azure
Microsoft 365
AWS
Identity and Access Management
Zero Trust Principles

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Change Grow Live insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Change Grow Live that you’re committed to staying ahead in the game.

How to prepare for a job interview at Change Grow Live

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Change Grow Live to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Change Grow Live.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.