Security Engineer
3 days ago
Security Engineer - (EXTEND) Join to apply for the Security Engineer - (EXTEND) role at BBC. This role is advertised as part of our BBC Extend programme for disabled people. To apply you should identify as deaf, disabled or neurodivergent and must meet either the definition of disability in the Equality Act (2010) or the Disability Discrimination Act (1995) if applying in Northern Ireland. You’re broadly defined as disabled under both acts if you have a physical or mental impairment that has a substantial and long‑term negative or adverse effect on your ability to do normal daily activities. BBC is fully committed to providing workplace adjustments to help eliminate barriers that disabled people face. If you are successful in applying for this role and require workplace adjustments, we will work with you to get your adjustments in place. Job band: C. Contract type: Permanent, Full‑time. Department: Product Group - Enablement - Engineering Enablement. Location: London, Cardiff, Salford, Newcastle, Glasgow - Hybrid. Proposed salary range: 50,000-55,000. Purpose of the Role Join DevX and Tooling to make Developer Experience safer and faster. You’ll build secure‑by‑default tooling, templates and pipeline checks that fit engineers’ day‑to‑day, run key GitHub security capabilities at scale, and surface meaningful signals that show impact. Your work reduces friction while strengthening the BBC’s Secure SDLC. Why Join the Team Work where security meets usability. In DevX and Tooling you’ll ship guardrails that developers adopt, prove impact with real usage data, and collaborate with peers who value clear thinking over theatre. You’ll have autonomy, tight feedback loops and the chance to raise the security bar across hundreds of teams. Your Key Responsibilities And Impact Operate GitHub Advanced Security at scale – CodeQL code scanning, secret scanning and push protection with sensible policies and triage flows. Own Dependabot strategy – safe update policies, grouping/auto‑merge where appropriate, PR hygiene and actionable alerting. Integrate security automation into CI/CD – gating checks in GitHub Actions or equivalents with auditable exceptions. Build reusable secure templates, libraries and policy‑as‑code guardrails for services, pipelines and Infrastructure as Code. Support threat modelling and design reviews; translate outcomes into repeatable checks and templates. Contribute to DevX tools and services with high‑quality code, tests, docs and reviews; instrument controls to surface useful signals. Integrate with monitoring and incident tooling; participate in incident response for DevX services when required. Essential Criteria Your Skills and Experience GitHub Advanced Security at scale – administer CodeQL, secret scanning and push protection; set org/repo policies and triage workflows developers will use. Dependabot expertise – design update and alerting strategy to keep dependencies fresh without churn. CI/CD security automation – integrate and tune gating checks; manage exceptions with auditability. Software supply chain security – SBOM generation/verification, artefact signing and provenance; pragmatic CVE triage. Secure coding in at least two of Node.js, Python, Java, with rigorous reviews focused on auth, input handling and error handling; produce reusable secure templates. Hands on Experience building, deploying and running solutions on AWS. Desired But Not Required IaC and cloud hardening – Terraform/CloudFormation security, policy‑as‑code and secure defaults for IAM, networking and secrets. SLSA or similar supply‑chain frameworks; build system hardening and release hygiene. AI‑assisted developer tooling (e.g. GitHub Copilot, code assistants/agents) – understand risks like prompt injection, data exfiltration and insecure suggestions; design guardrails, policies and CI/CD checks. Developer‑centred security UX – paved roads, reusable templates and docs that reduce friction and false positives. Incident response for developer tooling – runbooks, tabletop exercises and security‑focused post‑incident reviews. Before your start date, you may need to disclose any unspent convictions or police charges, in line with our Contracts of Employment policy. This allows us to discuss any support you may need and assess any risks. Failure to disclose may result in the withdrawal of your offer. Seniority Level Mid‑Senior level Employment Type Full‑time Job Function Information Technology Industries Broadcast Media Production and Distribution #J-18808-Ljbffr
-
Security Commissioning Engineer
1 week ago
Salford, United Kingdom 4way Recruitment Full timeJob DescriptionSecurity Commissioning Engineer - £40,000 basic + Door to Door travel + 25 Days Holiday + Call Out Location: ManchesterSalary: £40,000OTE: £50,000 +Industry: Security / CommissioningABOUTThis company has developed extensive industry knowledge and expertise in fire and security systems over more than three decades. With a network of fully...
-
Security Engineer
7 days ago
Salford, Salford, United Kingdom BBC Full timeJOB DETAILSJOB BAND: CCONTRACT TYPE: Permanent, Full-timeDEPARTMENT: Product Group - Enablement - Engineering EnablementLOCATION: London, Cardiff, Salford, Newcastle, Glasgow - HybridPROPOSED SALARY RANGE: 50,000-55,000We're happy to discuss flexible working. If you'd like to, please indicate your preference in the application – though there's no...
-
Security Cleared Software Engineer
7 days ago
Salford, United Kingdom IN4.0 TALENT LIMITED Full time**SOFTWARE TO CHANGE THE WORLD**Software Engineer - Manchester/Hybrid - National Security - £50,000 - £80,000** Our client is a prominent technology and engineering company that work on some of the best and most interesting tech projects around, supporting National Security, Defence, and Public/Private sector. If you want to work on the cutting edge of...
-
Security Engineer
5 days ago
Salford, United Kingdom The Bbc Full timeJoin DevX and Tooling to make Developer Experience safer and faster. You'll build secure-by-default tooling, templates and pipeline checks that fit engineers' day-to-day, run key GitHub security capabilities at scale, and surface meaningful signals that show impact. Your work reduces friction while strengthening the BBC's Secure SDLC. Responsibilities...
-
Senior Information Security Engineer
2 weeks ago
Salford, United Kingdom AJ BELL BUSINESS SOLUTIONS LIMITED Full timeOverview To support the Chief Information Security Officer in managing and reporting the Information Security Risks faced by Technology Services (TS) in delivering AJ Bells systems and services. This role is responsible for playing a lead role in designing and implementing improvement to the Cybersecurity risk management tools, systems, and processes. Key to...
-
Senior Information Security Engineer
2 weeks ago
Salford, United Kingdom AJ BELL BUSINESS SOLUTIONS LIMITED Full timeTo support the Chief Information Security Officer in managing and reporting the Information Security Risks faced by Technology Services (TS) in delivering AJ Bells systems and services. This role is responsible for playing a lead role in designing and implementing improvement to the Cybersecurity risk management tools, systems, and processes. Key to this is...
-
Cyber Security Engineer
2 weeks ago
Salford, United Kingdom Searchability Full time**Cyber Security Engineer SC cleared -SIEM / Azure Sentinel/ EDR/AV/Snort/ Wireshark /TCPdump** **BRAND NEW OPPORTUNITY WITHIN A MICROSOFT PARTNER BASED IN THE HEART OF MANCHESTER** - Hybrid Working - Competitive Salary up to £65k plus benefits and bonuses - SIEM / Azure Sentinel/ EDR/AV/Snort/ Wireshark /TCPdump - Experience with vulnerability scanners...
-
Security Engineer
3 days ago
Salford, United Kingdom BBC Full timeA leading broadcasting company is seeking a Security Engineer to enhance Developer Experience through secure tooling and practices. You will operate GitHub Advanced Security at scale, integrate automation into CI/CD pipelines, and contribute to security initiatives across various teams. The ideal candidate should have robust experience with secure coding...
-
Fire Alarm Service
7 days ago
Salford, United Kingdom Protec Fire and Security Group Full timeJoin to apply for the Fire Alarm Service & Commissioning Engineer role at Protec Fire and Security Group1 day ago Be among the first 25 applicantsJoin to apply for the Fire Alarm Service & Commissioning Engineer role at Protec Fire and Security GroupProtec Fire and Security Group provided pay rangeThis range is provided by Protec Fire and Security Group....
-
Application Engineer
1 week ago
Salford, United Kingdom MARLOWE FIRE & SECURITY LIMITED Full time**Application Engineer - Salford** As acquisitions are ongoing, the development of standard offerings may evolve, we would see this position heavily involved in the business analysis for alignment of these solutions across the group, this may involve some travel and overnight stays. The business currently supports several Microsoft Access database...