At a Glance
- Tasks: Lead security initiatives and engineer robust solutions to protect the business.
- Company: Global organisation seeking a dynamic Lead Security Engineer.
- Benefits: Competitive salary, comprehensive benefits, and performance bonuses.
- Why this job: Join a high-calibre team and make a real impact on security posture.
- Qualifications: Experience in security engineering, offensive security background, and cloud fluency.
- Other info: Opportunity for hands-on work with cutting-edge technologies and career growth.
The predicted salary is between 90000 - 95000 £ per year.
Salary: £90,000 – £95,000 + Comprehensive Benefits & Bonus
We are currently representing a global organisation in their search for a strong Lead Security Engineer to join their team. This is an appointment for a technical authority who has "miles in the tank"—someone who finds high-level "security architecture" a touch too abstract and would rather prove a vulnerability with a PoC than write a policy about it. This is a position for a practitioner who can walk into a "blank sheet" situation and pragmatically engineer security into the heart of a business.
The Opportunity 🎯 Joining a high-calibre team as a primary technical lead, you will occupy a high-impact Individual Contributor role (approx. 70% hands-on). While the business has a solid foundation in enterprise tooling, they are looking for you to bring the "adversary mindset" needed to anticipate exposures before they happen. You will act as the bridge between complex technical risk and real-world remediation, working directly with highly motivated engineering teams to move the needle on the organisation's security posture.
What You Will Be Doing:
- Adversary Tradecraft: Identify attack primitives across identity and network perimeters. You won’t just report a risk; you will produce the PoC attack sequences to prove it.
- Blank-Sheet Threat Modelling: Pragmatically model complex business workflows from scratch. You’ll identify required controls and document them with a focus on "minimal friction" for developers.
- Technical Deep Dives: Conduct tactical design and implementation reviews for emerging technologies. This includes deep-diving into application updates and modifications to AWS/Azure identity configurations.
- Automation & Orchestration: Fully embrace an AI-first mindset. You will identify and act upon opportunities to automate analysis and administrative tasks using agentic technology and scripting (Python, Go, or PowerShell).
- Stakeholder Partnership: Work directly with technology teams to ensure security isn’t a blocker. You’ll negotiate remediation strategies that are technically sound and commercially viable.
What You Will Bring:
- Deep Engineering Roots: A fundamental understanding of system internals. We are looking for someone who can discuss the nuances of memory dumps, malware persistence, and cloud-native exploits in detail.
- Offensive Pedigree: You likely come from a Red Team or Lead Pentesting background. Hands-on certifications (e.g., OSCP, CREST) are highly valued by the team.
- Identity & Cloud Fluency: Deep conceptual and practical understanding of AWS/Azure identity platforms, specifically modern authorisation flows (OAuth 2.0 and OIDC).
- Pragmatism: You understand that security exists to enable the business. You can translate complex technical findings into clear, actionable advice for non-security stakeholders.
If you are a technical "black belt" ready to take on a high-impact individual contributor role in a global organisation, apply now!
Lead Security Engineer in Manchester employer: TopTek Talent
Contact Detail:
TopTek Talent Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Lead Security Engineer in Manchester
✨Tip Number 1
Network like a pro! Attend industry meetups, conferences, or even local tech events. You never know who might be looking for a Lead Security Engineer just like you, and a friendly chat can go a long way.
✨Tip Number 2
Show off your skills! Create a portfolio of your work, including any proof of concepts (PoCs) you've developed. This will not only demonstrate your technical prowess but also give potential employers a taste of what you can bring to the table.
✨Tip Number 3
Don’t shy away from reaching out directly! If you see a company you’re keen on, drop them a message on LinkedIn or their careers page. Express your interest in the Lead Security Engineer role and share a bit about your background.
✨Tip Number 4
Apply through our website! We’ve got a streamlined process that makes it easy for you to showcase your skills and experience. Plus, it shows you’re serious about joining our team!
We think you need these skills to ace Lead Security Engineer in Manchester
Some tips for your application 🫡
Show Your Hands-On Experience: When you're writing your application, make sure to highlight your practical experience. We want to see how you've tackled real-world security challenges, so share specific examples of your work with PoCs or threat modelling.
Speak Our Language: Use the terminology from the job description in your application. This shows us that you understand the role and can communicate effectively about security concepts like adversary tradecraft and cloud fluency.
Be Pragmatic: We love a candidate who understands that security is about enabling the business. In your application, explain how you've balanced security needs with business objectives, making it clear that you can provide actionable advice to non-technical stakeholders.
Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity. We can’t wait to see what you bring to the table!
How to prepare for a job interview at TopTek Talent
✨Know Your Stuff
Make sure you brush up on your technical knowledge, especially around security architecture and vulnerability proof of concepts. Be ready to discuss specific examples from your past experiences where you've identified risks and implemented solutions.
✨Show Your Adversary Mindset
Prepare to demonstrate your understanding of attack primitives and how you would approach threat modelling from scratch. Think about real-world scenarios where you’ve had to anticipate exposures and be ready to share those insights during the interview.
✨Communicate Clearly
Practice translating complex technical jargon into simple terms. You’ll need to show that you can effectively communicate with non-technical stakeholders, so think of examples where you’ve successfully done this in the past.
✨Embrace Automation
Be prepared to discuss how you’ve used automation in your previous roles. Highlight any experience with scripting languages like Python or PowerShell, and think of ways you could apply an AI-first mindset to improve security processes in the new role.