At a Glance
- Tasks: Lead the design and implementation of enterprise-grade PAM solutions across multi-cloud environments.
- Company: Join a leading global financial markets infrastructure provider with a focus on innovation.
- Benefits: Enjoy competitive salary, healthcare, retirement planning, and paid volunteering days.
- Why this job: Make a significant impact in cyber security while working with cutting-edge technologies.
- Qualifications: Experience in PAM solutions and strong leadership skills required.
- Other info: Be part of a diverse and inclusive culture that values your individuality.
The predicted salary is between 36000 - 60000 £ per year.
The Cyber Security Engineering Privileged Access Management team are looking for an independent, pro-active, and aspiring individual who is committed to making a meaningful contribution as a Lead Engineer to lead in the design, implementation, and lifecycle management of enterprise-grade PAM solutions across multi-site and multi-cloud environments (AWS, Azure, GCP). You’ll serve as a technical authority for PAM, shaping standards, delivering sophisticated migrations, and ensuring privileged access is secure, auditable, and resilient.
Key Responsibilities
- Design and implement PAM capabilities (vaulting, session management/recording, credential rotation, least privilege, EPM/PRA) across on-prem and cloud workloads.
- Lead complex integrations with AD/EntraID, IdPs, SIEM/SOAR, CSPM, ITSM, DevOps tooling (CI/CD), and secrets management.
- Be responsible for the operational model: backup/recovery, DR, platform upgrades, policy hardening, performance tuning, and continuous improvement.
- Drive onboarding at scale ensuring standardized onboarding patterns and controls.
- Establish guardrails and RBAC/ABAC models aligned to Zero Trust and regulatory frameworks (ISO 27001, SOC 2, NIST 800-53/63).
- Define and maintain technical roadmaps, standards, and reference architectures; mentor engineers and review develop/runbooks.
- Lead security assessments, threat modeling, and control efficacy reviews; partner with risk/compliance and audit functions on evidence and remediation.
- Solve complex issues end-to-end, including proxy/connector components, high-availability clusters, and multi-region architectures.
Technical / job functional knowledge
- Consistent record implementing and operating PAM at scale in complex enterprises (multi-site, multi-cloud).
- Hands-on expertise with at least one of the top PAM vendors (e.g., CyberArk, Delinea, BeyondTrust, One Identity), including deployment, integration, and automation.
- Solid understanding of Windows/Linux administration, AD/EntraID, networking and database fundamentals (TLS/PKI, proxies, firewalls), and identity protocols (SAML/OIDC/OAuth).
- Automation proficiency (PowerShell, Python, REST APIs) and Infrastructure-as-Code (Terraform/CloudFormation) for repeatable deployments.
- Experience with SIEM (e.g., Splunk, Sentinel, QRadar) and SOAR integrations for session telemetry, alerts, and response.
- Proven leadership in defining standards, runbooks, and governance; excellent customer engagement and interpersonal skills.
Additional desired capabilities
- Experience with endpoint privilege management (Windows/macOS/Linux), JIT access, and Kubernetes/containers.
- Exposure to segmentation and network security (micro-segmentation, PAM proxies, bastion hosts).
- Relevant certifications (e.g., CyberArk Defender/Sentry, Azure/AWS Security, CISSP, CCSP).
Diversity & Inclusion
People are at the heart of what we do and drive the success of our business. Our colleagues thrive personally and professionally through our shared values of Integrity, Partnership, Innovation and Excellence which are at the core of our culture. We embrace diversity and actively seek to attract people with unique backgrounds and perspectives. We are always looking at ways to become more agile, so we meet the needs of our teams and customers. We believe that an inclusive collaborative workplace is pivotal to our success and supports the potential and growth of all colleagues at LSEG.
LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth. Our culture of connecting, creating opportunity and delivering excellence shapes how we think, how we do things and how we help our people fulfil their potential.
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law.
Lead Engineer employer: London Stock Exchange Group
Contact Detail:
London Stock Exchange Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Lead Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with potential colleagues on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your PAM projects and any relevant automation work. This gives employers a tangible look at what you can do and sets you apart from the crowd.
✨Tip Number 3
Prepare for those interviews! Research common questions related to PAM and be ready to discuss your experience with tools like CyberArk or BeyondTrust. Practising your responses will help you feel more confident and articulate.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at LSEG.
We think you need these skills to ace Lead Engineer
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Lead Engineer role. Highlight your experience with PAM solutions and any relevant cloud environments like AWS, Azure, or GCP. We want to see how your skills align with our needs!
Showcase Your Technical Expertise: Don’t hold back on your technical skills! Mention your hands-on experience with PAM vendors and any automation tools you’ve used. We’re looking for someone who can hit the ground running, so let us know what you bring to the table.
Be Clear and Concise: When writing your application, keep it clear and to the point. Use bullet points where possible to make it easy for us to read. We appreciate a well-structured application that gets straight to the important bits!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets to the right people. Plus, you’ll find all the details about the role and our company culture there!
How to prepare for a job interview at London Stock Exchange Group
✨Know Your PAM Inside Out
Make sure you have a solid understanding of Privileged Access Management (PAM) solutions. Familiarise yourself with the key capabilities like vaulting, session management, and credential rotation. Being able to discuss your hands-on experience with top PAM vendors will show that you're not just knowledgeable but also practical.
✨Showcase Your Technical Skills
Prepare to demonstrate your technical expertise in areas like Windows/Linux administration, networking fundamentals, and automation tools. Brush up on your skills with PowerShell, Python, and Infrastructure-as-Code tools like Terraform. Be ready to share specific examples of how you've used these skills in past projects.
✨Understand the Bigger Picture
Research the company’s approach to security and compliance frameworks such as ISO 27001 and SOC 2. Be prepared to discuss how you can contribute to their goals around Zero Trust and regulatory compliance. This shows that you’re not just focused on the technical aspects but also understand the strategic importance of your role.
✨Be Ready for Scenario-Based Questions
Expect to face scenario-based questions that assess your problem-solving abilities. Think about complex issues you've solved in the past, especially those involving multi-cloud environments or high-availability clusters. Use the STAR method (Situation, Task, Action, Result) to structure your answers effectively.