Senior Security Engineer

2 months ago


England, United Kingdom Nationwide Building Society Full time

It's easy to misunderstand what Nationwide is like. Why? Because we're not like a bank. We're not like other financial services companies either. As a Senior Security Engineer here, you'll sit within CTO, assisting a wide range of delivery teams in engineering secure solutions and protecting our member's money and data.


We believe security is a systemic concern; therefore, security problems should be solved by a systemic approach (take a look at our tenets here if you are interested to learn more about our vision). We will have regular forums in which we consult with other security engineers within the team, looking at the problems from each of our specialities' perspectives.


At Nationwide we offer hybrid working wherever possible. More rewarding relationships are supported through our hybrid approach, bringing colleagues together across our UK wide estate, whilst also supporting generous access to home working. We value our time in the office to solve problems, to learn, and to feel connected.


For this job you'll spend at least two days per week, or if part time you'll spend 40% of your working time, at one of our offices. If your application is successful, your hiring manager will provide further details on how this works. You can also find out more about our approach to hybrid working here.


This role can be based out of either our Swindon, Nationwide House office or our London, Threadneedle Street office. We'll also consider candidates who wish to be based at our Glasgow office or our Manchester hub as secondary options, with the view you'll be available for ad/hoc visits to our Swindon and London offices.


What you'll be doing

As a senior security engineer, you will work cross-functionally to assess risk and help deliver countermeasures that protect our member's data. You will work will engineering teams to create solutions that solve or remediate security problems. This will involve a range of activities, including (but not limited to) threat modelling, selection and configuration of DevSecOps tools, high-level and detailed security designs.


About you

We are looking for a Senior Security Engineer with experience in design and implementing cloud native applications in the cloud.

You should have demonstrable experience in

  • Threat modelling, design and implementing security controls in the cloud environment (AWS or Azure)
  • Design and implementing cloud native and hybrid solutions in major public cloud platforms.
  • Understanding of cryptographic primitives and protocols and their implementations in the cloud environment
  • Programming with at least one modern language, an appreciation of software development lifecycle, software delivery methodologies and experience with industry-standard tools and methods for delivering software in an enterprise environment (version control, CI/CD pipeline, etc.)
  • Experience with Authentication and authorisation, Attribute-Based Access Control (ABAC), Role Based Access Control (RBAC))
  • Teamwork skills and resourcefulness with a proven sense of ownership and drive

It would also be beneficial if you have.

  • Containerisation and serverless technologies (i.e., Docker, K8s, AWS Lambda) and their security implications
  • Application perimeter defence (i.e., Web Application Firewalls)
  • Experience with API gateway and Service Mesh and their security implications (i.e., APIGEE, ISTIO…)
  • Degree in computer science or related field
  • Professional certifications in AWS or Azure

Our Customer First behaviours are all about putting customers and members at the heart of how we work together. You can strengthen your application by showing the behaviours that resonate with you, and how you might have already demonstrated these.

  • Say it straight - This is about being honest and direct with good intent and saying what needs to be said in the room. It’s also about being clear, precise, and using language that we and, importantly, our customers and members can understand.
  • Push for better - This is about aiming high and constantly looking for better in how we work together and serve our customers and members.
  • Get it done - This is about prioritising what will have the greatest impact, being decisive and taking accountability for delivering on the end-to-end outcome.

We know applying for jobs can sometimes feel like you’re sending an application into a black hole. We review each application individually. So, it’s a good idea to call out your most relevant experience on your application to give yourself the best chance.


The extras you'll get

There are all sorts of employee benefits available at Nationwide, including:

  • A personal pension – if you put in 7% of your salary, we’ll top up by a further 16%
  • Up to 2 days of paid volunteering a year
  • Life assurance worth 8x your salary
  • A great selection of additional benefits through our salary sacrifice scheme
  • Access to an annual performance related bonus
  • Access to training to help you develop and progress your career
  • Gympass – Access to a range of free and paid options for health and wellness.
  • 25 days holiday, pro rata


  • England, United Kingdom GCS Full time

    My client is a leading UK-based consulting and administration business and their Cyber Security division is growing and are seeking an experienced and dynamic Senior Cyber Security Engineer to join their team. This role is ideal for someone with experience in web application security, web application firewalls, vulnerability management, and penetration...


  • England, United Kingdom GCS Full time

    My client is a leading UK-based consulting and administration business and their Cyber Security division is growing and are seeking an experienced and dynamic Senior Cyber Security Engineer to join their team.This role is ideal for someone with experience in web application security, web application firewalls, vulnerability management, and penetration...


  • England,, UK, United Kingdom GCS Full time

    My client is a leading UK-based consulting and administration business and their Cyber Security division is growing and are seeking an experienced and dynamic Senior Cyber Security Engineer to join their team.This role is ideal for someone with experience in web application security, web application firewalls, vulnerability management, and penetration...


  • England, United Kingdom GCS Full time

    My client is a leading UK-based consulting and administration business and their Cyber Security division is growing and are seeking an experienced and dynamic Senior Cyber Security Engineer to join their team.This role is ideal for someone with experience in web application security, web application firewalls, vulnerability management, and penetration...


  • England, United Kingdom Custom Intelligent Security Full time €400

    Job Title: Security Service & Maintenance Engineer Location: Within easy reach of the M25 (Engineers based in Watford, Thurrock & Cambridge would be ideal) Job Type: Full-Time Key Responsibilities: Service, maintain, and repair security systems including CCTV, Access Control, and Intruder Alarms. Conduct routine maintenance and emergency...


  • England, United Kingdom GCS Full time

    My client is a leading UK-based consulting and administration business and their Cyber Security division is growing and are seeking an experienced and dynamic Senior Cyber Security Engineer to join their team. This role is ideal for someone with experience in web application security, web application firewalls, vulnerability management, and penetration...

  • Security Service

    5 days ago


    England, United Kingdom Custom Intelligent Security Full time €400

    Job Title: Security Service & Maintenance Engineer Location: Within easy reach of the M25 (Engineers based in Watford, Thurrock & Cambridge would be ideal) Job Type: Full-Time Key Responsibilities: Service, maintain, and repair security systems including CCTV, Access Control, and Intruder Alarms. Conduct routine maintenance and emergency call-outs as...


  • England, United Kingdom Nationwide Building Society Full time

    Because we're not like a bank. We're not like other financial services companies either. As a Senior Security Engineer here, you'll sit within CTO, assisting a wide range of delivery teams in engineering secure solutions and protecting our member's money and data. We believe security is a systemic concern; therefore, security problems should be solved by a...


  • England, United Kingdom Nationwide Building Society Full time

    Because we're not like a bank. We're not like other financial services companies either. As a Senior Security Engineer here, you'll sit within CTO, assisting a wide range of delivery teams in engineering secure solutions and protecting our member's money and data. We believe security is a systemic concern; therefore, security problems should be solved by a...


  • England, United Kingdom Nationwide Building Society Full time

    Because we're not like a bank. We're not like other financial services companies either. As a Senior Security Engineer here, you'll sit within CTO, assisting a wide range of delivery teams in engineering secure solutions and protecting our member's money and data. We believe security is a systemic concern; therefore, security problems should be solved by a...

  • Security Service

    1 week ago


    England, United Kingdom Custom Intelligent Security Full time

    Job Title: Security Service & Maintenance EngineerLocation: Within easy reach of the M25 (Engineers based in Watford, Thurrock & Cambridge would be ideal)Job Type: Full-TimeKey Responsibilities:Service, maintain, and repair security systems including CCTV, Access Control, and Intruder Alarms.Conduct routine maintenance and emergency call-outs as...

  • Security Service

    3 weeks ago


    England, United Kingdom Custom Intelligent Security Full time

    Job Title: Security Service & Maintenance EngineerLocation: Within easy reach of the M25 (Engineers based in Watford, Thurrock & Cambridge would be ideal)Job Type: Full-TimeKey Responsibilities:Service, maintain, and repair security systems including CCTV, Access Control, and Intruder Alarms.Conduct routine maintenance and emergency call-outs as...


  • England, United Kingdom Atlas Recruitment Group Ltd Full time €50,000 - €60,000

    Senior Cyber Security Engineer Location Available : Hybrid - 3 days a week on site This organisation is a globally leading defence and aerospace consultancy, looking for their next Senior Cyber Engineer to join the team. The team designs, builds, integrates and provides support to all the Submarine Platforms in the Royal Naval fleet. Building a risk...


  • England, United Kingdom Complete Security Recruitment Full time

    We are seeking experienced and competent fire and security engineers for our fast-growing family-owned business based in Portbury, Bristol. We are a NACOSS and NSI Fire Gold company and need engineers who have the skills, ambition, and enthusiasm to grow with the fast pace of the company. We offer a competitive salary, pension, and NHS top-up scheme, as well...


  • England, United Kingdom Iceberg Cyber Security Full time

    Would you like to spearhead the evolution of the digital landscape, driving innovation and excellence at a tier 1 financial organisation in the UK? This successful candidate has to be a security engineer who has experience securing AI models and systems. They must also understand how to design and implement security tooling and systems. The role: 70%...


  • England, United Kingdom Iceberg Cyber Security Full time

    Would you like to spearhead the evolution of the digital landscape, driving innovation and excellence at a tier 1 financial organisation in the UK? This successful candidate has to be a security engineer who has experience securing AI models and systems. They must also understand how to design and implement security tooling and systems.The role:70% focused...


  • England,, UK, United Kingdom Iceberg Cyber Security Full time

    Would you like to spearhead the evolution of the digital landscape, driving innovation and excellence at a tier 1 financial organisation in the UK? This successful candidate has to be a security engineer who has experience securing AI models and systems. They must also understand how to design and implement security tooling and systems.The role:70% focused...


  • England, United Kingdom Iceberg Cyber Security Full time

    Would you like to spearhead the evolution of the digital landscape, driving innovation and excellence at a tier 1 financial organisation in the UK? This successful candidate has to be a security engineer who has experience securing AI models and systems. They must also understand how to design and implement security tooling and systems.The role:70% focused...


  • Eastern England, United Kingdom GCS Full time

    My client is a leading UK-based consulting and administration business and their Cyber Security division is growing and are seeking an experienced and dynamic Senior Cyber Security Engineer to join their team.This role is ideal for someone with experience in web application security, web application firewalls, vulnerability management, and penetration...


  • England, United Kingdom Complete Security Recruitment Full time

    We are seeking experienced and competent fire and security engineers for our fast-growing family-owned business based in Portbury, Bristol. We are a NACOSS and NSI Fire Gold company and need engineers who have the skills, ambition, and enthusiasm to grow with the fast pace of the company. We offer a competitive salary, pension, and NHS top-up scheme, as...