Senior Security Engineer

1 month ago


London, UK, United Kingdom Nationwide Building Society Part time

It's easy to misunderstand what Nationwide is like. Why? Because we're not like a bank. We're not like other financial services companies either. As a Senior Security Engineer here, you'll sit within CTO, assisting a wide range of delivery teams in engineering secure solutions and protecting our member's money and data.


We believe security is a systemic concern; therefore, security problems should be solved by a systemic approach (take a look at our tenets here if you are interested to learn more about our vision). We will have regular forums in which we consult with other security engineers within the team, looking at the problems from each of our specialities' perspectives.


At Nationwide we offer hybrid working wherever possible. More rewarding relationships are supported through our hybrid approach, bringing colleagues together across our UK wide estate, whilst also supporting generous access to home working. We value our time in the office to solve problems, to learn, and to feel connected.


For this job you'll spend at least two days per week, or if part time you'll spend 40% of your working time, at one of our offices. If your application is successful, your hiring manager will provide further details on how this works. You can also find out more about our approach to hybrid working here.


This role can be based out of either our Swindon, Nationwide House office or our London, Threadneedle Street office.


What you'll be doing

As a senior security engineer, you will work cross-functionally to assess risk and help deliver countermeasures that protect our member's data. You will work will engineering teams to create solutions that solve or remediate security problems. This will involve a range of activities, including (but not limited to) threat modelling, selection and configuration of DevSecOps tools, high-level and detailed security designs.


About you

We are looking for a Senior Security Engineer with experience in design and implementing cloud native applications in the cloud.

You should have demonstrable experience in

  • Threat modelling, design and implementing security controls in the cloud environment (AWS or Azure)
  • Design and implementing cloud native and hybrid solutions in major public cloud platforms.
  • Understanding of cryptographic primitives and protocols and their implementations in the cloud environment
  • Programming with at least one modern language, an appreciation of software development lifecycle, software delivery methodologies and experience with industry-standard tools and methods for delivering software in an enterprise environment (version control, CI/CD pipeline, etc.)
  • Experience with Authentication and authorisation, Attribute-Based Access Control (ABAC), Role Based Access Control (RBAC))
  • Teamwork skills and resourcefulness with a proven sense of ownership and drive

It would also be beneficial if you have.

  • Containerisation and serverless technologies (i.e., Docker, K8s, AWS Lambda) and their security implications
  • Application perimeter defence (i.e., Web Application Firewalls)
  • Experience with API gateway and Service Mesh and their security implications (i.e., APIGEE, ISTIO…)
  • Degree in computer science or related field
  • Professional certifications in AWS or Azure

Our Customer First behaviours are all about putting customers and members at the heart of how we work together. You can strengthen your application by showing the behaviours that resonate with you, and how you might have already demonstrated these.

  • Say it straight - This is about being honest and direct with good intent and saying what needs to be said in the room. It’s also about being clear, precise, and using language that we and, importantly, our customers and members can understand.
  • Push for better - This is about aiming high and constantly looking for better in how we work together and serve our customers and members.
  • Get it done - This is about prioritising what will have the greatest impact, being decisive and taking accountability for delivering on the end-to-end outcome.

We know applying for jobs can sometimes feel like you’re sending an application into a black hole. We review each application individually. So, it’s a good idea to call out your most relevant experience on your application to give yourself the best chance.


The extras you'll get

There are all sorts of employee benefits available at Nationwide, including:

  • A personal pension – if you put in 7% of your salary, we’ll top up by a further 16%
  • Up to 2 days of paid volunteering a year
  • Life assurance worth 8x your salary
  • A great selection of additional benefits through our salary sacrifice scheme
  • Access to an annual performance related bonus
  • Access to training to help you develop and progress your career
  • Gympass – Access to a range of free and paid options for health and wellness.
  • 25 days holiday, pro rata


  • London,, UK, United Kingdom Iceberg Cyber Security Full time

    Working in the financial industry is one of the most rewarding markets where a passionate technologist can develop into the elite when it comes to Cyber Security. I am representing an organisation that is known for having a high technical bar when hiring. They really look for problem solvers, engineers who can communicate and articulate well and are able to...


  • London,, UK, United Kingdom Iceberg Cyber Security Full time

    Working in the financial industry is one of the most rewarding markets where a passionate technologist can develop into the elite when it comes to Cyber Security. I am representing an organisation that is known for having a high technical bar when hiring. They really look for problem solvers, engineers who can communicate and articulate well and are able to...


  • London,, UK, United Kingdom Xcede Full time

    Senior Security Engineer (UK-based, Perm (Hybrid)) is required by a leading financial trading organisation. The firm is currently experiencing a period of expansion and is looking to appoint a senior Security technologist to join the team in London. The role is a blend of security engineering (design-build) and SecOPs (operations-mitigation) ostensibly...


  • London,, UK, United Kingdom acre security Full time

    Are you passionate about shaping the future of security solutions? Do you thrive in an environment that values innovation and teamwork? If so, acre security is the place for you! Join us in making the world a safer place, one innovation at a time.Position: IT Security Technical LeadLocation: London, UKA Bit About UsAt acre, we're not just creating...

  • Security Engineer

    1 month ago


    London, UK, UK, United Kingdom Iceberg Cyber Security Full time

    I'm working with a dynamic multi-strategy hedge fund in London who are looking to push the boundaries of their security team. This role has engineering at its core and is perfect for someone who is hands-on and wears multiple security hats as they are constantly upgrading, replacing and implementing their legacy tools and platforms.The role will see you...

  • Security Engineer

    4 weeks ago


    London, UK, UK, United Kingdom Iceberg Cyber Security Full time

    I'm working with a dynamic multi-strategy hedge fund in London who are looking to push the boundaries of their security team. This role has engineering at its core and is perfect for someone who is hands-on and wears multiple security hats as they are constantly upgrading, replacing and implementing their legacy tools and platforms.The role will see you...


  • London,, UK, United Kingdom Cognitive Group | Part of the Focus Cloud Group Full time

    Senior Security Engineer Initial 6 month contract - Outside IR35 Hybrid working in London Sentinel, Azure, IAC, SecOps Job SummaryWe are seeking a highly skilled and experienced Senior Security Engineer to join a dynamic team. The ideal candidate will have a strong background in Sentinel, Infrastructure as Code (IAC), and Security Operations (SecOps). Key...


  • London,, UK, United Kingdom Cognitive Group | Part of the Focus Cloud Group Full time

    Senior Security Engineer Initial 6 month contract - Outside IR35 Hybrid working in London Sentinel, Azure, IAC, SecOps Job SummaryWe are seeking a highly skilled and experienced Senior Security Engineer to join a dynamic team. The ideal candidate will have a strong background in Sentinel, Infrastructure as Code (IAC), and Security Operations (SecOps). Key...


  • London, UK, United Kingdom eFinancialCareers Global Full time

    As the essential space for financial services and tech careers, we believe everyone should have access to life-changing opportunities, regardless of background. Therefore, we welcome diversity in applicants for all our roles. THE OPPORTUNITY We are seeking a skilled and experienced Senior Security Engineer to join our dynamic team at eFinancialcareers. The...


  • London,, UK, United Kingdom La Fosse Full time

    Senior Application Security Engineer - London - FS - up to £150,000 + BonusLa Fosse has partnered with a leading FS organization to hire a Senior Application Security Engineer. You will form part of the Security team, working closely with Software and Platform Engineering teams, advising on security best practices across the SDLC. The ideal candidate will...


  • London,, UK, United Kingdom Caspian One Full time

    Job Title: Senior Network Security EngineerLocation: London (In office, could be flexibility depending on the situation) Salary and Benefits:Over £100k + Bonus and BenefitsOur client, a prominent fintech firm, is seeking a Senior Network Security Engineer to join their team and play a pivotal role in ensuring the security of their network...


  • London,, UK, United Kingdom Harrington Starr Full time

    Senior Application Security Engineer, strategy, stakeholder conversations, thought leader, proactive, identity management, consulting, influencing, forward thinking, autonomy, code review, audits, pen testing, application reviewsA fantastic opportunity has arisen for a skilled Senior Application Security Engineer with excellent communication skills to join a...


  • London,, UK, United Kingdom The MWek Company Full time

    Leading Law PracticeSenior Network & Security Engineer £60k - £90kCannon Street (Hybrid)The Senior Network and Security Engineer will be responsible for designing, implementing, and managing the network infrastructure and security systems. The ideal candidate will have extensive experience with Cisco Campus Networking, Cisco Nexus, Palo Alto Networks,...


  • London,, UK, United Kingdom Sportradar Full time

    Join Our Team as a Senior Security Engineer at Sportradar! Are you ready to elevate your career in one of the fastest-growing sectors in the digital sports environment? At Sportradar, we provide a platform for you to gain international recognition for your expertise while working alongside industry leaders. This is more than just a job – it's an...

  • Security Engineer

    1 month ago


    London,, UK, United Kingdom Tria Full time

    Senior Security Engineer Circa £85,000 + 20% Bonus + 20% PensionCentral London – HybridYou will be joining a prestigious, family-run financial organisation who are on a large-scale digital transformation journey. The company itself is made up of around 500 heads, so you will have great exposure to different areas of the business whilst making a huge...

  • Security Engineer

    4 weeks ago


    London,, UK, United Kingdom TRIA Full time

    Senior Security Engineer Circa £85,000 + 20% Bonus + 20% PensionCentral London – HybridYou will be joining a prestigious, family-run financial organisation who are on a large-scale digital transformation journey. The company itself is made up of around 500 heads, so you will have great exposure to different areas of the business whilst making a huge...


  • London,, UK, United Kingdom Kinetech Full time

    Senior IT Security EngineerRemote with 1-2 days in London per quarter as needed. 6-12 months, to £75,000 per annumExperienced IT Security Engineer required to bolster the Info Sec team, specifically to translate risks and threats into clear guidance of what that means to the Infrastructure, Technical Delivery and Application teams, in terms of impact and...


  • London,, UK, United Kingdom Kinetech Full time

    Senior IT Security EngineerRemote with 1-2 days in London per quarter as needed. 6-12 months, to £75,000 per annumExperienced IT Security Engineer required to bolster the Info Sec team, specifically to translate risks and threats into clear guidance of what that means to the Infrastructure, Technical Delivery and Application teams, in terms of impact and...

  • Security Engineer

    2 weeks ago


    London,, UK, United Kingdom TRIA Full time

    Senior Security Engineer +/- £85,000 + 20% Bonus + 20% PensionCentral London – HybridYou will be joining a prestigious, family-run financial organisation who are on a large-scale digital transformation journey. The company itself is made up of around 500 heads, so you will have great exposure to different areas of the business whilst making a huge impact...


  • London,, UK, United Kingdom acre security Full time

    Are you passionate about shaping the future of security solutions? Do you thrive in an environment that values innovation and teamwork? If so, acre security is the place for you! Join us in making the world a safer place, one innovation at a time.Position: Engineering Technical LeadLocation: London, UK.A Bit About Us: At acre, we're not just creating...