Lead Cybersecurity Engineer

Lead Cybersecurity Engineer

Full-Time 63000 - 77000 £ / year (est.) Home office (partial)
Fundment

At a Glance

  • Tasks: Lead the charge in securing our cloud and IT infrastructure for a fast-growing fintech platform.
  • Company: Join Fundment, a trailblazer in transforming the UK wealth management market.
  • Benefits: Enjoy competitive pay, private health insurance, generous leave, and hybrid working options.
  • Other info: Be part of an inclusive culture that values growth, balance, and support.
  • Why this job: Make a real impact by enhancing cybersecurity in a cutting-edge digital investment system.
  • Qualifications: 5-8 years in cloud security engineering with strong GCP and Microsoft 365 experience.

The predicted salary is between 63000 - 77000 £ per year.

Fundment is a fast-growing wealth infrastructure company, building on our success in transforming the £3 trillion UK wealth management market with our cutting-edge digital investment system.

We are passionate about revolutionising the investment experience for financial advisers and their clients by combining innovative proprietary technology with exceptional customer service.

About the Role

We are looking for a Lead Cybersecurity Engineer to play a critical role in designing, implementing, and continuously improving the security of our cloud and IT infrastructure across a fast-growing fintech platform.

This is a hands-on technical role focused on securing our cloud infrastructure and user endpoints.

Working closely with the Head of IT Infrastructure, you will translate security strategy and policies into scalable, automated technical controls that support secure-by-design principles and regulatory compliance.

You will be responsible for strengthening our cybersecurity posture, implementing security automation, securing identity and access management, and embedding security throughout our infrastructure and software delivery lifecycle.

Key Responsibilities

  • Implement and maintain cloud security controls across our Google Cloud Platform (GCP) environment, ensuring services are secure, resilient, and aligned with security best practices.
  • Design, implement, and continuously improve cloud security architecture, including identity, networking, data protection, and workload security.
  • Implement and manage GCP security capabilities including IAM, VPC Service Controls, Identity-Aware Proxy (IAP), and Security Command Center.
  • Implement and maintain security controls within CI/CD pipelines, including Ia C validation, vulnerability scanning, secret detection, and compliance checks.
  • Develop and maintain Infrastructure as Code using Terraform.
  • Work with engineering teams to embed security by design into application development.
  • Perform security architecture reviews, threat modelling, and technical risk assessments.
  • Continuously improve cloud and infrastructure security monitoring, detection, and automation.
  • Identity & Endpoint Security
  • Secure and manage Microsoft 365, Entra ID, and Intune environments using MFA, Conditional Access, PIM, device compliance, and least-privilege access.
  • Drive the implementation of Zero Trust security principles across cloud infrastructure, corporate systems, endpoints, and identity platforms.
  • Support and optimise MDR/EDR technologies.
  • Security Operations & Incident Response
  • Support vulnerability management and remediation.
  • Maintain vulnerability management processes.
  • Act as a technical escalation point during security incidents.
  • Compliance & Governance
  • Support cybersecurity certification, compliance, and audit requirements, including SOC 2 and ISO 27001.
  • Support audits by providing technical evidence.
  • Ensure controls align with regulatory and organisational requirements.

Skills & Experience

  • 5–8+ years in cloud security engineering or infrastructure security.
  • Email security, phishing protection, and user security awareness.
  • Experience implementing and managing identity and access management solutions, including SSO, MFA, and privileged access controls.
  • Vulnerability management across cloud infrastructure, servers, and endpoints.
  • Understanding of SOC 2 and/or ISO 27001 controls, audits, and compliance processes.
  • Networking, cloud, and IT infrastructure security.
  • Zero Trust and cloud security architecture knowledge.
  • MDR/EDR and cloud monitoring.
  • Fin Tech or Financial Services experience.
  • Strong hands-on GCP security experience.
  • Strong Microsoft 365, Entra ID and Intune security experience.
  • Exposure Container security, GKE and Cloud Run.
  • Python, Power Shell or Bash automation.

Qualifications & Certifications

  • A degree in Cybersecurity, Computer Science, Information Technology, or a related discipline is advantageous.
  • Relevant industry certifications (desirable), such as CISSP, CISM, Google Professional Cloud Security Engineer, or equivalent cloud security certifications.
  • Company Benefits
  • Be part of a modern, inclusive, high-trust engineering culture
  • Take ownership and ship code that directly improves client outcomes
  • Work with a smart, friendly team that values balance, growth, and support
  • Pension 6% employer contribution, minimum 2% employee contribution.
  • BUPA Private Health Insurance – fully paid for by the company, for you and your immediate family.
  • Medicash Cashplan – fully paid for by the company, for you and your immediate family.
  • Travel insurance – fully paid for by the company, for you and your immediate family.
  • Life Assurance – 4 x base salary.
  • Employee Assistance Programme
  • 28 days annual leave plus bank holidays.
  • Paid compassionate leave – up to 5 days per year.
  • Enhanced paternity/maternity/adoption leave – 16 weeks at full pay after 12 months of service.
  • Jury service – 10 days at full pay.
  • Hybrid working arrangements – 3 days per week in the Fitzrovia office.
  • #J-18808-Ljbffr

Lead Cybersecurity Engineer employer: Fundment

At Fundment, we pride ourselves on fostering a collaborative and innovative work culture that empowers our employees to thrive. As a Lead Python Engineer, you will not only engage in hands-on coding but also play a pivotal role in mentoring a talented team, ensuring your professional growth alongside theirs. Located in a vibrant tech hub, we offer competitive benefits, flexible working arrangements, and opportunities for continuous learning, making us an exceptional employer for those seeking meaningful and rewarding careers.

Fundment

Contact Details:

Fundment Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Lead Cybersecurity Engineer

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Fundment, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Fundment

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Fundment. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Lead Cybersecurity Engineer

Cloud Security Engineering
Google Cloud Platform (GCP)
Identity and Access Management (IAM)
Zero Trust Security Principles
Infrastructure as Code (IaC) using Terraform
Vulnerability Management
Security Automation

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Fundment insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Fundment that you’re committed to staying ahead in the game.

How to prepare for a job interview at Fundment

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Fundment to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Fundment.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.