At a Glance
- Tasks: Lead threat modelling and secure design reviews while integrating security tools in CI/CD.
- Company: Join a dynamic team focused on enhancing security in the financial services sector.
- Benefits: Enjoy a competitive salary, flexible remote work, and a collaborative environment.
- Why this job: Make a real impact by solving security challenges in a fast-paced industry.
- Qualifications: Must have hands-on AppSec experience and knowledge of GCP or Azure security.
- Other info: This role is perfect for engineers who love to code and deliver tangible results.
The predicted salary is between 48000 - 72000 £ per year.
Job Title:
Cyber Security Engineer – MUST HAVE INSURANCE EXPERIENCE
Department:
Cyber Security
Reports To:
Head of Security Architecture & Engineering
Salary: £600 Per Day Inside IR35
Location: Central London (3 days per week on site, 2 days per week remote)
The Role
We\’re looking for a hands-on Application Security Engineer with a strong engineering mindset and a background in financial services, insurance, or fintech . You\’ll be embedded with product and engineering teams, driving secure development practices and owning security controls across our SDLC and cloud-native platforms.
This is a technical role , not for architects or managers – you\’ll be writing code, integrating tools, running threat modelling sessions, and solving real-world security problems.
What You\’ll Do
- Lead threat modelling , secure design reviews, and AppSec assessments.
- Integrate and automate SAST, DAST, SCA , and container scanning in CI/CD.
- Triage and drive remediation of vulnerabilities across cloud and app layers.
- Deliver security controls via code (Terraform, YAML, scripting).
- Support and improve cloud security posture (GCP/Azure).
- Run internal pen testing and security assessments.
- Build and manage a Security Champions network.
- Be a visible, vocal SME on all things AppSec.
What You\’ll Bring
- Strong hands-on experience in AppSec with a background in software engineering or DevOps .
- Deep knowledge of GCP (preferred) or Azure security.
- Experience with Kubernetes , container security, and cloud infra.
- Proficiency in IaC (Terraform), scripting (Python, etc.), and CI/CD pipelines.
- Excellent communication skills – clear, concise, and credible with engineers.
- Exposure to regulated environments (FS, insurance, fintech) is a big plus.
Not for You If…
You\’re an architect, people manager, or hands-off strategist. This is for engineers who deliver .
Eames Consulting is acting as an Employment Business in relation to this vacancy. #J-18808-Ljbffr
Cyber Security Engineer *INSURANCE EXPERIENCED* employer: OU Health
Contact Detail:
OU Health Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Engineer *INSURANCE EXPERIENCED*
✨Tip Number 1
Make sure to highlight your hands-on experience in application security and software engineering during any networking opportunities. Engage with professionals in the insurance and fintech sectors, as they can provide valuable insights and potentially refer you to open positions.
✨Tip Number 2
Familiarise yourself with the specific security tools and practices mentioned in the job description, such as SAST, DAST, and Terraform. Being able to discuss these tools confidently in conversations will demonstrate your technical expertise and commitment to the role.
✨Tip Number 3
Join relevant online communities or forums focused on cyber security and insurance. Engaging in discussions and sharing your knowledge can help you build a network of contacts who may know about job openings or can offer advice on landing a role like this.
✨Tip Number 4
Consider attending industry conferences or meetups related to cyber security and insurance. These events are great for meeting potential employers and showcasing your passion for the field, which can set you apart from other candidates.
We think you need these skills to ace Cyber Security Engineer *INSURANCE EXPERIENCED*
Some tips for your application 🫡
Highlight Relevant Experience: Make sure to emphasise your experience in the insurance sector. Detail specific projects or roles where you applied your cyber security skills within financial services, insurance, or fintech.
Showcase Technical Skills: Clearly outline your technical abilities, especially in areas like AppSec, cloud security (GCP/Azure), and scripting languages. Mention any relevant tools you've integrated or automated in CI/CD processes.
Tailor Your CV: Customise your CV to reflect the job description closely. Use keywords from the job listing, such as 'threat modelling', 'secure design reviews', and 'vulnerabilities remediation' to pass through any applicant tracking systems.
Craft a Strong Cover Letter: Write a compelling cover letter that connects your background to the role. Discuss your passion for cyber security and how your hands-on experience makes you a perfect fit for this position.
How to prepare for a job interview at OU Health
✨Showcase Your Technical Skills
Be prepared to discuss your hands-on experience with application security and software engineering. Highlight specific projects where you've integrated security practices into the SDLC, and be ready to demonstrate your coding skills, especially in Terraform and Python.
✨Understand the Insurance Sector
Since the role requires insurance experience, brush up on the unique security challenges faced in the financial services sector. Be ready to discuss how your background in insurance or fintech has shaped your approach to security.
✨Communicate Clearly
Excellent communication skills are crucial for this role. Practice explaining complex security concepts in a clear and concise manner, as you'll need to collaborate with product and engineering teams effectively.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving abilities in real-world security situations. Think of examples where you've led threat modelling sessions or triaged vulnerabilities, and be ready to walk the interviewer through your thought process.