At a Glance
- Tasks: Secure cloud platforms and design innovative cyber security solutions for vital public services.
- Company: Join Social Security Scotland, a key player in public service delivery.
- Benefits: Enjoy flexible working, competitive salary, and a supportive environment.
- Other info: Be part of a diverse team committed to equality and inclusion.
- Why this job: Make a real difference by protecting essential services with cutting-edge security measures.
- Qualifications: Experience in cloud security and a passion for cyber defence are essential.
The predicted salary is between 55000 - 65000 £ per year.
Social Security Scotland is seeking a Senior Cyber Security Engineer to help secure the cloud platforms that deliver vital public services. This is a key role in a cloud‑first organisation, working to ensure solutions are secure by design, resilient, and compliant.
The Senior Cyber Security Engineer leads the design, implementation, and assurance of cyber security controls across cloud platforms, applications, and infrastructure. You will translate security policy and risk into practical cloud security solutions, working closely with Architecture, Cloud Engineering, DevOps, and Product teams. Acting as a technical authority, you will provide hands-on expertise, assurance, and risk-based guidance, embedding security throughout the delivery lifecycle.
Responsibilities
- The Cyber Security Engineer builds, develops, and configures tooling and processes to be secure. They build tooling to support pre-commit, Continuous Integration, Continuous Deployment through to production.
- They have experience of operating systems, Networking, PKI and Cloud Security tools. They build Secure Configuration Management using Infrastructure as Code.
- Identify, design and develop cyber security solutions across a wide variety of applications and infrastructure.
- Lead the implementation of cyber security policy and standards.
- Provide senior cyber security consultancy services (from risk assessments and audits to strategy development) across a variety of technology projects.
- Engage with the Technology Architecture team and support the design of technology solutions and architecture for a variety of projects and programmes.
- Engage with a broad range of internal and external stakeholders, providing cyber security assurance and managing the change process for the implementation of cyber security strategy, standards and solutions.
Main Duties
- Design and deliver secure cloud architectures across IaaS, PaaS, and SaaS environments, embedding security controls aligned to organisational policy and industry best practice.
- Lead the implementation of cyber security standards and controls across cloud platforms, influencing delivery teams and ensuring security is built in from the outset.
- Provide senior cyber security consultancy, including cloud risk assessments, threat modelling, architecture reviews, audits, and contribution to cyber strategy.
- Work closely with Architecture teams to shape secure target architectures and ensure security requirements are reflected in technical designs.
- Lead and enhance cloud security operations, including but not limited to identity and access management, vulnerability management, logging, monitoring, and incident response.
- Design and implement automated security controls and assurance, including policy as code, secure configuration baselines, and continuous compliance.
- Translate security requirements into engineering level guidance, supporting developers and engineers to remediate issues and adopt secure coding and deployment practices.
- Engage with internal and external stakeholders, providing security assurance, clear risk articulation, and support for change associated with security improvements.
- Act as a technical mentor, championing cloud security best practice and supporting the development of engineers and security practitioners.
- Design, review, and implement secure cloud infrastructure using Infrastructure as Code (IaC) tooling, embedding security controls, configuration standards, and policy as code into automated deployment pipelines (e.g. Terraform, CloudFormation), and providing assurance that environments are secure, consistent, and resilient.
Qualifications
Essential Experience
- Experience implementing cloud native security controls such as IAM, encryption, key management, logging, and monitoring.
- Experience embedding security across the full delivery lifecycle, from early design through to live operations.
- Experience creating or implementing automated security controls and assurance, e.g. policy as code, configuration compliance, or security monitoring rules utilising IaC Tooling.
How to Apply
Apply online, you must provide a CV and Supporting Statement (of no more than 750 words) which provides evidence of how you meet the experience and behaviours listed in the Success Profiles above.
Artificial Intelligence (AI) tools can be used to support your application, but all statements and examples provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, and presented as your own) applications will be withdrawn and internal candidates may be subject to disciplinary action.
Expected Timeline (subject to change): Sift – week commencing 1st June 2026; Interview – week commencing 15th June 2026.
Location: In Person in either Dundee or Glasgow.
Security Checks: Successful candidates must complete the Baseline Personnel Security Standard (BPSS), before they can be appointed.
Equality Statement: Social Security Scotland are committed to equality and inclusion, and we aim to recruit a diverse workforce that reflects the population of our nation.
If you have specific questions about the role you are applying for, please contact us.
Senior Cyber Security Engineer in Glasgow employer: Scottish Government
Contact Detail:
Scottish Government Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Cyber Security Engineer in Glasgow
✨Tip Number 1
Network like a pro! Reach out to folks in the cyber security field, especially those already working at Social Security Scotland. A friendly chat can give you insider info and maybe even a referral!
✨Tip Number 2
Prepare for that interview! Brush up on your cloud security knowledge and be ready to discuss how you've implemented security controls in past roles. We want to see your hands-on experience shine through.
✨Tip Number 3
Show off your passion for cyber security! Share examples of how you've kept up with industry trends or contributed to security projects. This will help us see your commitment to the field.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're serious about joining our team!
We think you need these skills to ace Senior Cyber Security Engineer in Glasgow
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior Cyber Security Engineer role. Highlight your experience with cloud security, risk assessments, and any relevant tools you've used. We want to see how your skills align with what we're looking for!
Craft a Compelling Supporting Statement: Your supporting statement is your chance to shine! Use it to showcase specific examples of your experience that match the Success Profiles. Be clear and concise, and remember to keep it under 750 words. We love a good story!
Be Honest About Your Experience: While AI tools can help you out, make sure everything you include in your application is genuine and from your own experience. We value authenticity, and any hint of plagiarism could lead to your application being withdrawn. Keep it real!
Apply Through Our Website: Don't forget to apply through our website! It's the easiest way for us to receive your application and ensures you're following the correct process. Plus, we can't wait to see what you bring to the table!
How to prepare for a job interview at Scottish Government
✨Know Your Cloud Security Inside Out
Make sure you brush up on your knowledge of cloud security controls like IAM, encryption, and logging. Be ready to discuss how you've implemented these in past roles, as this will show your practical experience and understanding of the job requirements.
✨Showcase Your Problem-Solving Skills
Prepare to share specific examples of how you've tackled security challenges in previous projects. Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easier for interviewers to see your thought process and impact.
✨Engage with Stakeholders
Since this role involves working closely with various teams, think about times when you've successfully collaborated with others. Be ready to discuss how you’ve communicated complex security concepts to non-technical stakeholders, as this is crucial for the position.
✨Demonstrate Your Leadership Qualities
As a Senior Cyber Security Engineer, you'll need to lead and mentor others. Prepare to talk about your leadership style and provide examples of how you've guided teams or individuals in adopting best practices in cyber security.