Talent.com
Made Tech
Lead Security EngineerMade Tech • London, England, UK
Lead Security Engineer

Lead Security Engineer

Made Tech • London, England, UK
11 days ago
Salary
£75,000.00 yearly
Job type
  • Full-time
  • Part-time
Job description
Made Tech helps UK government and public sector organisations build better digital services and security is central to that mission. As a Lead Security Engineer in our Cyber practice youll be the most senior security engineering voice on client engagements setting technical direction for how organisations design build and defend secure systems. Youll work across complex government programmes where the stakes are real: services that affect citizens systems that hold sensitive data and teams that need to move quickly without cutting corners.
This isnt a role where you sit at the edge of delivery reviewing outputs. Youll be embedded in multidisciplinary teams shaping how security is engineered into everyday work from threat modelling and architecture at design time to hardened monitored systems in production. Youll build trusted relationships with client engineering leads platform teams and senior stakeholders translating between deep technical decisions and the trade-offs senior leaders need to understand. Youll bring the judgement to know when a heavyweight security architecture is warranted and when a lighter-weight faster-moving approach serves the engagement better.

At Lead level your impact extends beyond the immediate team. Youll establish security engineering standards and reference architectures across engagements grow the technical capability of the people around you colleagues and client engineers alike and contribute to how Made Techs Cyber practice develops as a community. If youd rather build the paved road than police the off-road who treat security as an engineering discipline rather than a compliance exercise and who cares about leaving client teams genuinely stronger than you found them this role is for you.



Key Responsibilities


  • Own end-to-end technical security architecture across engagements. Design secure-by-default reference architectures set patterns for identity network and data protection and maintain living technical standards feeding directly into how teams build not just how theyre audited.
  • Lead vulnerability remediation as an engineering programme. Define the prioritisation framework drawing on EPSS KEV CVSS and asset criticality set remediation SLAs own the risk-acceptance register and drive fixes directly into delivery backlogs alongside product teams. Report programme KPIs (MTTR by severity backlog age coverage recurrence rate) to senior stakeholders.
  • Drive security into the teams normal engineering rhythm. Embed threat modelling secure code review SAST SCA dependency policy and container scanning into design and delivery cycles building the tooling and automation that make this the default not a specialist handover at the end of a sprint.
  • Navigate UK government security standards with confidence as an engineer not a paperwork exercise. Design systems and controls that satisfy the NCSC Cyber Assessment Framework GovAssure Cyber Essentials and HMG Security Policy Framework applying them proportionately across engagements as guardrails that enable safe delivery not barriers to it. Engage with government security communities and coordinate with departmental technical teams.
  • Communicate security risk in terms that drive engineering decisions. Report system posture remediation programme performance and architectural risk to senior client stakeholders tailoring the frame for the audience and structuring reports around the decisions the reader needs to make not just the findings.
  • Set the standard for incident response and detection engineering. Build and drive adoption of detection alerting and IR tooling across engagements own the IR-to-vulnerability-management feedback loop and coordinate cross-team exercises including known-exploited-vulnerability scramble drills.
  • Grow the people around you. Mentor colleagues across the practice and at client organisations pair on complex or unfamiliar engineering problems and create structured development opportunities including for client engineers who may not yet have strong security habits.

  • Contribute to Made Techs Cyber practice beyond delivery. Shape practice standards contribute to hiring and technical calibration build and share expertise externally and help grow a security engineering community that raises capability across the organisation.

Skills Knowledge & Expertise


Essential
  • Deep hands-on experience designing and building secure cloud architectures (AWS Azure or GCP) at scale including IAM network segmentation and data protection patterns.
  • Proven track record embedding security tooling and automation into CI/CD pipelines and engineering workflows across multiple teams.
  • Strong proficiency in at least one programming/scripting language used to build production-grade security tooling (not just scripts).
DesirableThe following would strengthen your application. We dont expect every candidate to bring all of these.
Certifications
  • OSCP OSWE or equivalent offensive security credential
  • AWS/Azure/GCP security specialty certification
  • CKS (Certified Kubernetes Security Specialist)
Capabilities and experience
  • Experience establishing and operating vulnerability remediation programmes at organisational scale including risk-based prioritisation using EPSS KEV and asset criticality and driving fixes across multiple delivery teams.
  • Evidence of designing systems that satisfy UK government security frameworks GovAssure CAF Cyber Essentials HMG Security Policy Framework in a complex multi-supplier or multi-team environment as an architect rather than an assessor.
  • Experience conducting or coordinating technical security reviews and penetration testing in UK public sector contexts including remediating findings and briefing senior technical stakeholders.
  • Working knowledge of exposure management beyond CVE-only approaches incorporating misconfiguration identity exposure and attack-path analysis using cloud-native tooling (AWS Inspector GuardDuty Security Hub or equivalents).
  • Experience securing software supply chains SBOM generation dependency provenance artifact signing and integrating this into build pipelines rather than a standalone assurance process.
  • Experience building or shaping security engineering capability within a consultancy programme delivery or multi-client environment including growing technical skills in colleagues and client teams.
  • Evidence of acting as a trusted technical adviser to senior client stakeholders anchoring recommendations on engineering outcomes challenging briefs constructively and making security value visible through what gets shipped.
  • Experience setting team ways of working in iterative delivery environments establishing retrospective cadences collaborative problem-solving norms and pairing practices that spread security knowledge across the team.
Tooling and practice familiarity
  • Deep familiarity with structured threat modelling approaches STRIDE MITRE ATT&CK attack trees and experience embedding these into agile delivery ceremonies.
  • Experience integrating SAST SCA dependency scanning and container security tooling into CI/CD pipelines as part of a shift-left security approach including building custom tooling where off-the-shelf doesnt fit.

Made Tech sponsors attainment of recognised cyber certifications for staff in scope. If you dont yet hold the listed credentials but are actively working toward them or can demonstrate equivalent capability through your experience wed still welcome your application.


Job Benefits


We are always listening to our growing teams and evolving the benefits available to our people. As we scale as do our benefits and we are scaling quickly. Weve recently introduced a flexible benefit platform which includes a Smart Tech scheme Cycle to work scheme and an individual benefits allowance which you can invest in a Health care cash plan or Pension plan. Were also big on connection and have an optional social and wellbeing calendar of events for all employees to join should they choose to.Here are some of our most popular benefits listed below:

30 days Holiday - we offer 30 days of paid annual leaveFlexible Working Hours - we are flexible with what hours you workFlexible Parental Leave - we offer flexible parental leave optionsRemote Working - we offer part time remote working for all our staffPaid counselling - we offer paid counselling as well as financial and legal advice

At this point we hope youre feeling excited about Made Tech and the job opportunity. Get in touch with our
talent team if youd like an informal chat about the role and your suitability before applying. We are hiring for this role directly so will not respond to any CVs sent via external recruitment agencies.

SC Eligibility
An increasing number of our customers are specifying a minimum of SC (security check) clearance in order to work on their projects. As a result were looking for all successful candidates for this role to have eligibility.
Eligibility for SC requires 5 years UK residency and 5 year employment history (or back to full-time education). Please note that if at any point during the interview process it is apparent that you may not be eligible for SC we wont be able to progress your application and we will contact you to let you know why.

Support in applyingIf you need this job description in another format or other support in applying please email .
We believe we can use tech to make public services better. We also believe this can happen best when our own team represents the society that actually uses the services we work on. Were collectively continuing to grow a culture that is happy healthy safe and inspiring for people of all backgrounds and experiences so we encourage people from underrepresented groups to apply for roles with us.
When you apply well put you in touch with a member of our talent team who can help with any needs or adjustments we may need to make to help with your application. Weve put together this blog as a resource to share more about reasonable adjustments and some examples of what this could include. We also welcome any feedback on how we can improve the experience for future candidates.

Working hours: Our standard hours are Monday to Friday but the nature of this role means some work outside normal hours may be required for example during release and change windows planned maintenance or to align with client operating hours. This is occasional rather than routine and well always give as much notice as we can and agree it with you in advance wherever possible.







Required Experience:

IC


Employment Type : Full-Time
Experience: years
Vacancy: 1
Yearly Salary Salary: 75000 - 90000
Create a job alert for this search

Lead Security Engineer • London, England, UK

Similar jobs

Security Engineering Director — Lead Secure-by-Design Platform

MonzoGreater London, England, United Kingdom
Full-time

Monzo is looking for a Security Engineering Lead to drive their secure-by-design mandate and lead a high-performing team.This role requires proven leadership in engineering organizations of 30-50 p... Show more

 • Promoted

Security Engineer

TechnologyOneGreater London, England, GB
Full-time

You play a critical part in maintaining the integrity of our systems and the trust of our customers.Reporting to the Detection and Response Lead, this is a hands‑on role that blends technical depth... Show more

 • Promoted

Security Engineer

Campbell North Ltd.City Of London, England, GB
Full-time

If you thrive on pursuing threats, delving into forensic details, writing effective detection logic, and automating repetitive tasks, this role could be a perfect match for you.In this position, yo... Show more

 • Promoted • New!

Lead Security Engineer

Wave TalentGreater London, England, GB
Full-time

This range is provided by Wave Talent.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.B2B SaaS / Procurement & Spend Control.Series A, backed by... Show more

 • Promoted

Principal Security Engineer, SDO AppSec EMEA

AmazonGreater London, England, United Kingdom
Full-time

As a Principal Security Engineer in the Appstar organization, you lead application security reviews across complex systems, identify and advise on critical security risks, and mentor the broader se... Show more

 • Promoted

Lead Offensive Security Engineer – Remote

EngineersOfAIGreater London, England, GB
Remote
Full-time

EngineersOfAI is seeking a talented individual to join their Offensive Security team in London or Cardiff, with remote options available.You will lead projects, simulate real-world attacks, and wor... Show more

 • Promoted

Senior Security Engineer: Secure Products & Infra

YotoGreater London, England, GB
Full-time

Yoto in London is seeking a Security Engineer to help build secure products and infrastructure across every part of Yoto.You’ll partner with engineering, product, Legal and Data to design and imple... Show more

 • Promoted

Security Engineer

United Talent AgencyGreater London, England, GB
Full-time

UTA seeks a Security Engineer to help build and strengthen our security operations programs—safeguarding our brand, our people, and our digital assets.In this role, you will design and implement se... Show more

 • Promoted

Security Engineer

United Talent Agency LLCGreater London, England, GB
Full-time

UTA seeks a Security Engineer to help build and strengthen our security operations programs—safeguarding our brand, our people, and our digital assets.In this role, you will design and implement se... Show more

 • Promoted

Lead Security Engineer: Cloud, SIEM & DevSecOps Leader

Understanding RecruitmentGreater London, England, GB
Full-time

Understanding Recruitment is seeking a Lead Security Engineer in London.This hands-on leadership role will own security across cloud, applications, network and data, working with the CIO to shape s... Show more

 • Promoted

Senior Security Engineer

ThreddGreater London, England, GB
Full-time

Are you an experienced Security Engineer who enjoys sharing knowledge as much as solving complex technical challenges?.Would you like to use your expertise to mentor the next generation of security... Show more

 • Promoted

Senior Security Engineer | Lead Threat & Risk

Taylor James ResourcingGreater London, England, GB
Full-time

A leading IT recruitment agency is seeking a Senior Security Engineer to manage security systems in the London office.The successful candidate will have at least 5 years of experience in security l... Show more

 • Promoted

Senior Security Engineer — Proactive Security Lead (Remote)

Capital Markets GatewayGreater London, England, GB
Remote
Full-time

Capital Markets Gateway LLC (CMG) is seeking a Senior Security Engineer to own security risk management, threat modeling, and governance initiatives.You will report to the CISO and drive cross‑prog... Show more

 • Promoted

Security Engineer

Radley JamesGreater London, England, GB
Full-time

A newly launched, technology-driven hedge fund is looking for a Security Engineer to help build its security function from the ground up.This is a genuine greenfield opportunity where you'll have s... Show more

 • Promoted

Security Lead Commissioning Engineer

Kemp Recruitment LtdGreater London, England, GB
Full-time

Role: Security Lead Commissioning Engineer.Salary: £47,000 DOE + Door to Door + Van (personal use permitted @ 40p per mile).Location: London & Surrounding Areas.Shift: 40 hours per week (08:00-16:0... Show more

 • Promoted

Lead Application Security Engineer

IntercomGreater London, England, GB
Full-time

Intercom is seeking a Security Engineer to enhance tier-zero security capabilities for its AI Customer Agent, Fin.Responsibilities include designing security features, conducting architecture revie... Show more

 • Promoted

Hybrid Senior Security Operations Engineer — Lead & Mentor

La FosseLondon, England, GB
Full-time

A leading recruitment company is seeking a Cyber Security Engineer to join their team in London.This role involves managing security initiatives, mentoring junior staff, and enhancing the overall s... Show more

 • Promoted

Security Engineer

HubSpotGreater London, England, GB
Full-time

Job Overview: We are seeking a Security Engineer with expertise in implementing and troubleshooting security tools to enhance and support our security infrastructure.This role focuses on evaluating... Show more

 • Promoted

Lead Cyber Security Engineer

DGH RecruitmentCity Of London, England, GB
Full-time

Location: London, England, United Kingdom.Direct message the job poster from DGH Recruitment.Implement security architecture of the firm related to transition to cloud (e.Azure, Teams/O365 and iMan... Show more

 • Promoted

Lead Security Engineer

SSR Contract & TechnicalGreater London, England, GB
Full-time

Lead Security Systems Engineer – Bedfordshire/Berkshire/Surrey.We are seeking an experienced Security Engineer.In this role, you’ll be responsible for installing a range of security systems, includ... Show more