At a Glance
- Tasks: Join our team to enhance security and drive strategic change in a dynamic tech environment.
- Company: M&G plc, a leading savings and investments firm with over 175 years of innovation.
- Benefits: Enjoy competitive salary, generous pension scheme, 38 days annual leave, and flexible working options.
- Why this job: Make a real impact on security while working with cutting-edge technologies in a supportive culture.
- Qualifications: Experience in security engineering, cloud technologies, and strong problem-solving skills required.
- Other info: Inclusive workplace with diverse opportunities and support for personal and professional growth.
The predicted salary is between 36000 - 60000 £ per year.
Our purpose is to give everyone real confidence to put their money to work. With a heritage dating back more than 175 years, we have a long history of innovation in savings and investments, combining asset management and insurance expertise to offer a wide range of solutions.
Our two distinct operating segments, Asset Management and Life, work together to provide access to balanced, long-term investment and savings solutions. Through telling it like it is, owning it now, and moving it forward together with care and integrity; we are creating an exceptional place to work for exceptional talent.
We will consider flexible working arrangements for any of our roles and also offer workplace accommodations to ensure you have what you need to effectively deliver in your role.
The Role: Our Life & Technology business unit is facilitating business growth by launching a variety of new applications and undergoing a strategic journey of digitizing our services with an organization-wide migration to the cloud. The function of this role is to collaborate across the business to initiate, design and manage strategic change for M&G in a holistic manner. The function will also focus on providing affordable and reliable technology solutions and services that will be at the heart of our M&G business success.
Our Security Operations team are looking for highly motivated Enterprise Security Engineer with strong technical skills, problem-solving abilities, deep customer affinity and strong communication skills.
Key Responsibilities:
- Application Security reviews.
- Work with Security SDLC Tooling and key teams within Security Operations to ensure secure delivery of 3rd parties libraries and application container images.
- Investigate and analyse suspected vulnerabilities and weak security controls while working across the various facets of the business unit.
- Quantify and articulate security risk into business risk to inform key stakeholders of security findings.
- Work closely with security operations teams on any reported or suspected vulnerability, emerging threats, incidents and improving continuous development tooling.
- Security metrics delivery and improvements.
- Automating Continuous Improvement and Continuous Development processes to include security by design.
- Develop and maintain key relationships with key stakeholders across the business unit and the various technology areas.
You will have:
- BS in Computer Science or related field, or equivalent work experience.
- Minimum of 2 years of experience with any combination of the following: threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration and network security.
- Minimum of 2 years of experience with security engineering, system and network security, authentication and security protocols, cryptography, or application security.
- A deep understanding of Windows and Linux systems hardening, containerization, and cloud security controls.
- Experience of cloud and container technologies and solutions (particularly Microsoft Azure, Red Hat Openshift Container Platform/Kubernetes) and other SaaS/PaaS technologies.
- Experience of integrating security tooling within deployment pipelines.
- Experience of operating in agile working practices and exposure to Atlassian products (Jira and Confluence), Azure DevOps, Github.
- Exposure to continuous integration, continuous development related systems and techniques (e.g. Azure DevOps (VSTS) / Jenkins).
- Experience with or exposure to compliances (FedRAMP, SOC-2, PCI, ISO 27K, GDPR).
- Excellent verbal and written interpersonal skills, a phenomenal teammate with strong analytical, problem-solving, debugging and troubleshooting skills.
- Demonstrate talent in technologies such as Java, Python, Powershell, Bash, Terraform, Azure ARM Infrastructure and KQL (for Azure Log Analytics queries).
- An ability to drive decisions and be hands-on.
What we offer:
At M&G, we're committed to helping you thrive and supporting your wellbeing, both at work and beyond. Our benefits are designed to help you balance your professional and personal life, while planning confidently for your future. Our UK benefits include:
- A valuable pension scheme of 18%, with 13% made up of Employer Contributions and 5% Employee Contributions.
- Share Save and our Share Incentive Plan, together with access to financial wellbeing and support services.
- 38 days annual leave including bank holidays, with the opportunity to purchase up to 5 extra days and additional flexibility through our Time Off When You Need It policy.
- Our market leading Inspiring Families policy includes comprehensive support and paid parental leave covering maternity, adoption, surrogacy, and paternity leave.
- Health & Protection cover including Private Healthcare, Critical Illness cover and Life Assurance for you, with family options.
We have a diverse workforce and an inclusive culture at M&G, underpinned by our policies and our employee-led networks who provide networking opportunities, advice and support for the diverse communities our colleagues represent. Regardless of gender, ethnicity, age, sexual orientation, nationality, disability or long term condition, we are looking to attract, promote and retain exceptional people. We also welcome those who take part in military service and those returning from career breaks.
M&G is also proud to be a Disability Confident Leader, and we welcome applications from candidates with long-term health conditions, disabilities, or neuro-divergent conditions. If you need assistance or an alternative means of applying for a role due to a disability or additional need, please let us know by contacting us at: careers@mandg.com
Enterprise Security Engineer - (Fixed Term Contract) - M&G plc. in Stirling employer: M&G plc
Contact Detail:
M&G plc Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Enterprise Security Engineer - (Fixed Term Contract) - M&G plc. in Stirling
✨Tip Number 1
Network like a pro! Reach out to current employees at M&G on LinkedIn or through mutual connections. A friendly chat can give you insider info and might just get your foot in the door.
✨Tip Number 2
Prepare for the interview by researching M&G's recent projects and initiatives, especially in security and technology. Show us that you're not just another candidate but someone who genuinely cares about our mission.
✨Tip Number 3
Practice your technical skills! Brush up on your knowledge of cloud security, application security, and the tools we use. Being able to discuss these confidently will set you apart from the competition.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team.
We think you need these skills to ace Enterprise Security Engineer - (Fixed Term Contract) - M&G plc. in Stirling
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Enterprise Security Engineer role. Highlight your relevant experience in security engineering, cloud technologies, and any specific tools mentioned in the job description. We want to see how you fit into our team!
Show Off Your Skills: Don’t hold back on showcasing your technical skills! Whether it’s your experience with Azure, containerisation, or secure coding practices, let us know what you bring to the table. We love seeing candidates who can articulate their expertise clearly.
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use bullet points where possible to make it easy for us to read. We appreciate clarity and want to quickly understand your qualifications and experiences.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets to the right people. Plus, you’ll find all the details about the role and our company culture there!
How to prepare for a job interview at M&G plc
✨Know Your Stuff
Make sure you brush up on your technical skills related to security engineering, especially around cloud technologies like Microsoft Azure and containerisation. Be ready to discuss your experience with threat modelling, secure coding, and any relevant compliance standards.
✨Show Your Problem-Solving Skills
Prepare to share specific examples of how you've tackled security vulnerabilities or improved security processes in the past. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your analytical abilities.
✨Communicate Clearly
Since this role involves working closely with various teams, practice explaining complex security concepts in simple terms. Good communication is key, so be prepared to demonstrate your interpersonal skills during the interview.
✨Ask Insightful Questions
At the end of the interview, have a few thoughtful questions ready about M&G's approach to security and their ongoing projects. This shows your genuine interest in the role and helps you assess if the company culture aligns with your values.