At a Glance
- Tasks: Own the technical security of a growing financial services business and enhance its cyber resilience.
- Company: Rapidly growing UK financial services firm with significant tech investment.
- Benefits: Competitive salary, uncapped bonus, hybrid work, and enhanced leave.
- Other info: Dynamic environment with opportunities for career growth and influence.
- Why this job: Make a real impact on security across a multi-site estate in a hands-on role.
- Qualifications: 5+ years in cyber security with practical experience in cloud and infrastructure security.
The predicted salary is between 63000 - 77000 £ per year.
£60,000 to 70,000 DOE plus uncapped bonus and benefits. East Midlands - hybrid, minimum two to three days per week on site. Commutable from Leicestershire, Cambridgeshire, Warwickshire, Northamptonshire, Buckinghamshire, Bedfordshire, North Hertfordshire, North Oxfordshire.
About the opportunity:
Own the technical security of a growing business rather than one narrow slice of a large team. Our client is a well-established and rapidly growing UK financial services business. Significant investment has gone into technology and data capability in recent years, including an in‑house development function and a growing analytics team. Headcount continues to expand and a further office opens next year. As the organisation grows, so does the requirement to secure it properly.
This is a hands‑on security engineering role reporting directly to the Head of Technology. It is not a policy or advisory position, and it is not one layer within a large security operations centre. A dedicated Cyber and Data Governance Lead is already in post and owns governance policy, which means your findings have somewhere to go and your recommendations get acted upon.
What you will be doing as a Cyber Security Engineer:
- Own the technical security of the estate, working alongside IT operations, development and platform teams.
- Reviewing and strengthening authentication, access and administrative privilege, promoting least privilege and zero trust principles.
- Improving endpoint security, device compliance and secure configuration.
- Assessing cloud services and hosted workloads for configuration weaknesses and excessive access.
- Running and improving vulnerability and exposure management, coordinating remediation with system owners and verifying that fixes hold.
- Investigating security alerts and incidents and maintaining practical response procedures.
- Reviewing the security of third‑party applications, integrations and data sharing arrangements.
- Producing clear reporting on risk, incidents and remediation progress, and supporting audits and customer assurance requests.
- As the new second office is established, extend security coverage to that site, shaping how security works across a growing multi‑site estate.
What we are looking for:
- At least five years in cyber security, infrastructure security, cloud security or a closely related technical role, gained within a regulated commercial environment such as financial services, insurance, lending, wealth management or professional services.
- Practical experience of securing enterprise identity and collaboration services, a working understanding of identity and access management, multifactor authentication, conditional access and privileged access, and experience securing Windows endpoints through a modern device management platform.
- Experience using endpoint detection and response or comparable technologies, and assessing, prioritising and driving the remediation of vulnerabilities in a live environment.
- Working knowledge of public cloud security is essential, covering identity, networking, logging, data protection and secure configuration.
- Ability to influence and persistently chase people who do not report to you, distinguish genuine risk from technical noise, recommend proportionate and achievable improvements, and explain security matters clearly to non-technical colleagues.
- Relevant certifications and experience of frameworks such as ISO 27001, Cyber Essentials, the National Institute of Standards and Technology Cyber Security Framework or the Centre for Internet Security Controls are welcome, though none is a prerequisite.
Salary, benefits and hybrid working:
- Base salary of £60,000 - 70,000 pounds, dependent on experience.
- Uncapped annual bonus, typically five to fifteen per cent of base salary.
- Hybrid working, two to three days per week on site in the East Midlands office.
- Occasional travel to the new Southern office.
- Pension, enhanced leave and a modern office environment.
The location is commutable from Northampton, Milton Keynes, Wellingborough, Kettering, Corby, Rugby, Daventry, Bedford and Banbury, Bicester, Hitchin, Peterborough, Cambridge, Warwick, Stratford on Avon, Leamington.
Please note that Visa Sponsorship is not available for this role and we require candidates with at least 5 years UK based cyber security experience. Unfortunately, we cannot accept any overseas applicants for this role.
Cyber Security Engineer employer: Martin Veasey Talent Solutions
Join a leading global group in the cement manufacturing industry, where you will have the opportunity to drive transformational change and lead a major plant in the Midlands. With a strong focus on decarbonisation, automation, and digital engineering, our company fosters a culture of safety and operational excellence while providing competitive compensation, relocation assistance, and significant opportunities for professional growth and development. As part of a senior leadership team, you will be empowered to build and mentor high-performing teams, making a meaningful impact in a dynamic and supportive work environment.
Contact Details:
Martin Veasey Talent Solutions Recruitment Team