Lead IT Security Engineer

Lead IT Security Engineer

Full-Time 63000 - 77000 £ / year (est.) Home office (partial)
DTCC

At a Glance

  • Tasks: Lead Change and Release Management for innovative IAM projects in a dynamic team.
  • Company: Join DTCC, a leader in financial market innovation and technology.
  • Benefits: Enjoy competitive pay, comprehensive health benefits, and flexible work arrangements.
  • Other info: Diverse and inclusive workplace with excellent training and development opportunities.
  • Why this job: Make a real impact in the financial sector while growing your career.
  • Qualifications: 7+ years in IT Change and Release Management with strong IAM knowledge.

The predicted salary is between 63000 - 77000 £ per year.

Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We’re committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

Pay and Benefits:

  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits
  • Pension
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (Onsite Tuesdays, Wednesdays and a third day of your choosing)

The impact you will have in this role:

The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.

Role Summary

We are seeking an experienced and highly organized Change & Release Manager to lead/govern end-to-end Change and Release Management activities across the Identity & Access Management (IAM) portfolio. The ideal candidate should possess extensive experience in ITIL-based Change and Release Management, strong stakeholder management skills, and solid functional knowledge of IAM technologies including Privileged Access Management (PAM), Secret Management, PKI/Certificate Management, Active Directory Services, ARC, and related identity platforms. The role is responsible for planning, tracking, coordinating, governing, and successfully delivering production changes and releases while ensuring compliance, minimal business disruption, and successful stakeholder communication. The individual will act as the primary liaison between engineering teams, operations teams, business stakeholders, CAB members, vendors, and leadership to ensure smooth, well-governed, and successful delivery of IAM initiatives.

Your Primary Responsibilities:

  • Own and govern the end-to-end lifecycle of Change Requests and Releases across the IAM portfolio, ensuring timely planning, review, approval, implementation, validation, and closure in accordance with organizational Change and Release Management processes.
  • Review and assess change requests for completeness, technical impact, implementation approach, risk assessment, rollback plans, testing results, and required approvals to ensure deployment readiness and minimize operational risk.
  • Plan, coordinate, and manage release schedules, deployment calendars, maintenance windows, and production implementations across IAM platforms including PAM, Vault, PKI, Active Directory (AD), ARC, and related security services.
  • Act as the primary point of coordination between application teams, infrastructure teams, security teams, operations teams, business stakeholders, vendors, and leadership to ensure successful execution of all planned changes and releases.
  • Coordinate and present changes during Change Advisory Board (CAB) meetings, providing visibility into implementation plans, business impacts, risks, mitigation strategies, and rollback procedures while securing timely approvals.
  • Ensure all change and release records contain complete and accurate documentation, including implementation plans, test results, validation reports, risk assessments, rollback plans, approvals, deployment evidence, and post-implementation review artifacts.
  • Manage production deployments and release execution activities, ensuring releases are implemented successfully with minimal business disruption, adherence to SLAs, and effective issue resolution during implementation windows.
  • Coordinate with internal and external vendors to track deliverables, support release activities, manage dependencies, mitigate risks, and ensure commitments are delivered within agreed timelines and quality standards.
  • Drive release readiness reviews, Go/No-Go assessments, post-implementation reviews, and lessons-learned sessions to improve deployment quality, operational stability, and release governance.
  • Maintain audit-ready records, evidence repositories, and compliance documentation to support internal audits, external audits, regulatory requirements, and enterprise governance standards.
  • Own Change & Release Management KPIs and operational metrics, including Change Success Rate, Failed Changes, Emergency Changes, Release Success Rate, Deployment Compliance, and SLA Adherence, while driving process optimization, automation, governance enhancements, and continuous improvement initiatives.

Qualifications:

  • Bachelor's degree preferred or equivalent experience
  • Minimum of 7 years of experience in IT Change and Release Management.
  • Strong understanding of IAM platforms and services.
  • Strong knowledge of ITIL Change, Release, and Incident Management processes.
  • Experience handling enterprise-level production changes and releases.
  • Excellent coordination and stakeholder management skills.
  • Experience working with multiple application teams and vendors.
  • Strong documentation, presentation, and governance capabilities.
  • Ability to manage multiple high-priority releases simultaneously.
  • ITIL Foundation or ITIL Managing Professional Certification is preferred.

We offer top class training and development for you to be an asset in our organization! We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

About Us

With over 50 years of experience, DTCC is the premier post-trade market infrastructure for the global financial services industry. From 20 locations around the world, DTCC, through its subsidiaries, automates, centralizes, and standardizes the processing of financial transactions, mitigating risk, increasing transparency, enhancing performance and driving efficiency for thousands of broker/dealers, custodian banks and asset managers.

About the Team

Serves as a dedicated technology resource for advancing DTCC's business opportunities and providing industry thought leadership for leveraging new technology. The goal of this new department is to partner internally with IT, our business and regulatory divisions and externally with clients, regulators, and fintech vendors, to help build new platforms and business models to advance DTCC's mission to support the financial markets.

Lead IT Security Engineer employer: DTCC

At DTCC, we pride ourselves on being an excellent employer by fostering a dynamic and supportive work culture that prioritises employee growth and well-being. With a competitive salary, comprehensive benefits, and a flexible hybrid working model, we empower our Integration Senior Analysts to thrive in their roles while making a meaningful impact in the financial markets. Join us to be part of a diverse team that values innovation and collaboration, ensuring you have the resources and opportunities to succeed.

DTCC

Contact Details:

DTCC Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Lead IT Security Engineer

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including DTCC, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through DTCC

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at DTCC. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Lead IT Security Engineer

ITIL-based Change Management
ITIL-based Release Management
Stakeholder Management
Identity & Access Management (IAM)
Privileged Access Management (PAM)
Secret Management
PKI/Certificate Management

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at DTCC insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to DTCC that you’re committed to staying ahead in the game.

How to prepare for a job interview at DTCC

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at DTCC to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at DTCC.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.