At a Glance
- Tasks: Secure applications and Azure cloud, preventing vulnerabilities and leading security detection.
- Company: Join a supportive tech company focused on personal and professional growth.
- Benefits: Great career development, collaborative culture, and opportunities to make a real impact.
- Other info: Dynamic role with a focus on continuous improvement and innovation.
- Why this job: Influence critical security decisions and see tangible results in your work.
- Qualifications: Experience in Azure security, DevSecOps, and strong communication skills.
The predicted salary is between 48000 - 72000 £ per year.
Join us as a Senior Security Engineer. Hone your existing technical expertise and take on a role with great career development potential and make a real difference for our business. This is your chance to have real influence and see your decisions producing tangible results in a critical role. Here, you can expect to enjoy a collaborative and supportive culture, with a big focus on personal and professional development.
What you'll do:
- You'll be responsible for securing applications and the Azure cloud estate by preventing vulnerabilities early and leading effective security detection and response.
- You'll operate a "security happens on day one" mindset, embedding controls into engineering workflows through DevSecOps and operating a proactive SecOps capability.
- Working closely with our Principal Engineers, Architects in the domain and other key stakeholders, you'll develop a deep understanding of how our platform works and supports the business.
- You'll also become familiar with our applications, data and infrastructure.
- Crucially, you'll find new ways to improve the way we work.
You'll also:
- Implement secure-by-design patterns using automated, policy-driven controls integrated into CI/CD pipelines across Azure.
- Own vulnerability management and penetration testing activities, ensuring remediation is risk-based and aligned with PCI DSS where applicable.
- Contribute to Azure security operations, including threat detection, alert triage, investigation, and incident response using SIEM/SOAR and automation to reduce MTTD/MTTR.
- Define and maintain security policies, standards, and threat modelling practices while driving continuous improvement across security tooling and processes.
- Champion best practice, especially around scalability, automation, virtualisation, optimisation, availability and performance.
The skills you'll need:
We're looking for an experienced Azure cloud security and SecOps professional with hands‐on ownership of security design, detection, and incident response in modern DevSecOps environments. What's more, you're able to communicate technical concepts in a simple way for non-technical people.
We'll also expect you to have:
- Azure experience, including hands‐on ownership of security engineering and operations using Microsoft Defender for Cloud, Microsoft Sentinel (SIEM/SOAR), Azure Policy, and continuous compliance monitoring (e.g., PCI DSS).
- Strong knowledge of Azure DevOps, GitHub Advanced Security, CI/CD integration, and compliance frameworks such as GDPR and PCI DSS.
- Hands‐on experience securing containerised workloads and AKS, including vulnerability management, runtime security, and Infrastructure as Code using Bicep.
- Experience of information security policies and practices within the financial sector.
- Strong stakeholder management skills and communication skills.
Senior Security Engineer in London employer: NatWest Group
Contact Detail:
NatWest Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Security Engineer in London
✨Tip Number 1
Network like a pro! Reach out to current employees on LinkedIn or at industry events. Ask them about their experiences and the company culture. This can give you insider info and might even lead to a referral!
✨Tip Number 2
Prepare for interviews by practising common security scenarios. Think about how you'd handle specific vulnerabilities or incidents. We want you to showcase your problem-solving skills and technical know-how!
✨Tip Number 3
Show off your passion for security! Share relevant projects or contributions you've made in the past, especially those that align with Azure and DevSecOps. This will help us see your commitment and expertise.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our team!
We think you need these skills to ace Senior Security Engineer in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior Security Engineer role. Highlight your Azure experience and any relevant security projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how you can contribute to our team. Keep it concise but impactful, and don't forget to mention your experience with DevSecOps.
Showcase Your Technical Skills: In your application, be sure to showcase your hands-on experience with tools like Microsoft Defender for Cloud and Azure Policy. We love seeing specific examples of how you've implemented security measures in past roles.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It helps us keep track of applications and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at NatWest Group
✨Know Your Azure Inside Out
Make sure you brush up on your Azure knowledge before the interview. Familiarise yourself with Microsoft Defender for Cloud, Microsoft Sentinel, and how they integrate into security operations. Being able to discuss specific examples of how you've used these tools will show that you're not just familiar with them, but that you can apply them effectively.
✨Showcase Your DevSecOps Mindset
Prepare to talk about your experience with embedding security into engineering workflows. Think of concrete examples where you've implemented secure-by-design patterns or automated controls in CI/CD pipelines. This will demonstrate your proactive approach to security and your ability to work collaboratively with engineering teams.
✨Communicate Like a Pro
Since you'll need to explain technical concepts to non-technical stakeholders, practice simplifying complex ideas. Prepare a few scenarios where you've successfully communicated security issues or solutions to different audiences. This will highlight your strong stakeholder management skills, which are crucial for this role.
✨Be Ready for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world situations. Think about past incidents you've managed, particularly around vulnerability management and incident response. Be ready to discuss your thought process and the outcomes of your actions, as this will showcase your hands-on experience and decision-making abilities.