About Us
The Financial Times is one of the world’s leading news organisations, globally recognised for its authority, integrity and accuracy, with a mission to deliver quality information and services worldwide. At the FT, curiosity thrives and ambitious thinking is rewarded. Here, you’re given the chance to reach millions, create work that matters and deliver impartial journalism in a polarised world. In our warm, collaborative culture, you’ll connect with a diverse community of experts who support your growth, career aspirations and wellbeing Your future at the FT will be filled with opportunities that challenge and inspire you. With no fixed path, you’ll discover new skills and forge a career that can take you anywhere. Build a newsworthy career at the FT.
Our Commitment to Diversity, Equity and Inclusion
We believe in the power of unique perspectives and want all voices in our organisation to be heard, respected and valued. A supportive workplace is one where employees feel they can be themselves and operate to their full potential. We are committed to removing barriers for everyone, with a focus on addressing those faced by underrepresented groups.
The Role Overview
We’re looking for a Senior Cyber Security Engineer to help mature application and cloud security across the FT’s cloud-native, AWS-hosted technology estate. This role has an approximate 50/50 focus across application security and cloud security, working closely with product, platform and engineering teams to make secure delivery easier by default.
You’ll shape and improve developer-friendly guardrails across GitHub-based CI/CD pipelines, AWS environments and infrastructure-as-code workflows. This includes improving SAST, software composition analysis, secret scanning, IaC scanning, vulnerability management and AWS misconfiguration management so that findings are actionable, low-noise and owned by the right teams.
Day to day, you’ll run practical threat-modelling sessions, review application and cloud designs, improve security playbooks, support vulnerability and misconfiguration remediation, and build automation that reduces toil. We’re looking for someone who has demonstrably improved security outcomes in real engineering environments, not just someone with theoretical knowledge of tools or frameworks.
Depending on team structure, you may also mentor or line-manage one or two security engineers, while remaining hands-on and close to the technical work.
What you’ll bring to the role
Application and cloud security experience: practical experience across both application security and cloud security, ideally in AWS-hosted, cloud-native environments.
Developer-friendly security mindset: you know how to work with engineers, explain risk clearly and design controls that help teams move securely without unnecessary friction.
Vulnerability management at scale: experience improving how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and advisories are identified, prioritised, owned and remediated across engineering teams.
Cloud misconfiguration & vulnerability management: experience identifying and reducing infrastructure-as-code and AWS vulnerabilities & misconfigurations at scale through pragmatic guardrails, tooling and clear remediation paths.
Threat modelling: confidence running lightweight, practical threat-modelling sessions that lead to useful engineering decisions and risk reduction.
CI/CD and code security: hands-on experience with security tooling such as SAST, software composition analysis, secret scanning and IaC scanning.
Automation mindset: ability to write scripts or small tools, ideally in Python, to reduce toil, improve visibility and surface meaningful risk.
Security leadership: ability to mentor other security engineers and influence engineers across the wider organisation. Depending on team structure, this may include line management.
AI security awareness: experience of leveraging AI to improve and scale appsec and cloud sec controls would be useful, but is not essential.
Key Responsibilities
Improve application security guardrails Tune and evolve SAST, software composition analysis, secret scanning and related controls so they are actionable, low-noise and useful to engineering teams.
Improve cloud and IaC security guardrails Help identify, prioritise and reduce AWS and infrastructure-as-code misconfigurations and vulnerabilities at scale.
Drive vulnerability management Improve how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and third-party advisories are triaged, prioritised and remediated.
Drive cloud misconfiguration management Help teams understand, own and remediate cloud security issues using pragmatic, developer-friendly workflows.
Run practical threat modelling Facilitate lightweight threat-modelling sessions for new products, features, services and architectural changes.
Build automation and tooling Create or improve scripts, integrations, dashboards and workflows that reduce manual effort and make risk easier to understand.
Support secure architecture decisions Provide application and cloud security input into design reviews, AWS architecture decisions and larger technical changes.
Partner with engineering teams Work closely with product, platform and software engineering teams to embed security into design, delivery and operational practices.
Support incidents and lessons learned Provide application and cloud security expertise during incidents and feed lessons learned back into patterns, tooling and guidance.
Mentor others Coach security engineers and engineering teams on practical security approaches. Depending on team structure, this may include line management of one or two security engineers.
Required Experience, Essential:
- Strong practical experience in application security and cloud security, ideally with a balanced focus across both.
- Hands-on AWS security experience, including common misconfiguration patterns and practical remediation approaches.
- Experience improving vulnerability management across engineering teams, including prioritisation, ownership, remediation tracking and noise reduction.
- Experience in improving cloud or IaC misconfiguration management at scale in a developer-friendly way.
- Experience integrating, tuning or improving security tooling in CI/CD workflows, such as SAST, software composition analysis, secret scanning or IaC scanning.
- Experience running practical threat-modelling sessions that influence design, delivery or remediation decisions.
- Ability to write scripts or small tools, ideally in Python, to automate security workflows or improve visibility.
- Strong communication and collaboration skills, with the ability to influence engineers and technical leaders without relying on gatekeeping.
- Evidence of improving application security, cloud security or vulnerability management practices in a real engineering environment.
- Familiarity with Agile or Scrum ways of working.
Desirable
- Experience with leveraging AI for AppSec and CloudSec.
- AWS Certified Security – Speciality or equivalent practical AWS security experience.
- Terraform or CloudFormation expertise.
- Incident-management or incident-response experience.
- Experience with Splunk or similar logging/SIEM platforms.
- Experience with security metrics, dashboards or reporting that helped drive measurable risk reduction.
- Experience mentoring or line-managing security engineers.
What’s in it for You?
Our benefits vary by location but we are committed to providing best-in-class perks across all our offices. These include generous annual leave, medical cover, inclusive parental leave packages, subsidised gym memberships and opportunities to give back to the community. Full details of our benefits are available here .
We currently operate a hybrid model which requires staff to work onsite 50% of the time, subject to role requirements & regular review. While flexible working requests will be considered, not all patterns are suitable for all roles. We believe this balanced approach supports flexibility and protects our culture, making collaboration and communication easier, building stronger relationships and team cohesion, and supporting peer learning. We reserve discretion on reasonable notice to change this approach either generally or for specific individuals or teams.
Accessibility
We are a disability confident employer and Valuable 500 signatory.
Please let us know if you require any reasonable adjustments/personalisation as part of the application process or to enable you to attend an interview. If you would like to discuss your requirements or have any questions, email View email address on job-boards.eu.greenhouse.io and a member of our team will be happy to help.
Further information
At the FT, we embrace innovation and the use of technology and appreciate that individuals may leverage AI tools as part of their job application process. Whilst we are happy for you to use AI to assist with your application, it is essential that all information provided is authentic and accurately represents your skills, experience, and qualifications.
Candidates should be aware that the use of AI throughout the application process may be monitored to ensure a fair and transparent hiring process for all.
- £66k - £87k per annumEstimated...interviews actively and aim to fill this role as soon as we find someone suitable. THE OPPORTUNITY We're looking for a senior Security Engineer to own security at Apollo Research from end to end. You'll be the first dedicated security hire at Apollo. Security at Apollo...Senior
- £95k - £139k per annumEstimated...asset managers representing over $40 trillion in AUM. For more information, please visit . The Role We are hiring a Senior Security Engineer to lead our security risk management and governance work. This is a senior individual-contributor role for someone who...SeniorFull-timeShift work
- £68k - £88k per annumEstimated...As a founding member of the Security Operations team in EMEA, you will... ...time difference requires an engineer who can operate independently,... ...online. You will serve as the senior-most security engineering point... ...frameworks (NIST IR Lifecycle, Cyber Kill Chain, MITRE ATT&CK) to...SeniorVisa supportOn-siteImmediate startMonday to FridayShift work
- ...Senior Cyber Detection and Response Engineer (London, UK) Summary of Position As a critical technology provider to around 100 of the world's leading financial institutions, Pirum’s security posture is a commercial asset as much as a risk management function. Our customers...SeniorHybrid workingImmediate start
- £69k - £93k per annumEstimated...MPC) technology – the gold standard in secure custody. Copper’s multi-award winning custody... ...processes. Role Purpose As a Senior Security Engineer , you will play a key role in... ...practices to ensure robust defence against cyber threats. SaaS Security: Experience...SeniorHybrid working1 day/week
- £44k - £57k per annumEstimated...Senior ICT & Security Design Engineer - London RED are an expanding international M&E consultancy, with a proven track record in low energy design, focused on providing excellent design solutions to clients. Through our market leading technical expertise, we enable...SeniorTraineeshipHybrid workingOn-site
- £121k - £160k per annumEstimated...Senior IT Security Engineer – Windows, Automation, Endpoint Security London – Hybrid Industry Leading Compensation Quant Capital is partnered with a leading trading firm looking to hire a Senior IT Security Engineer to strengthen its global security posture. This...SeniorHybrid working
- £64k - £82k per annumEstimated...drives our ambition to deliver high quality returns for our investors. Your future role within QRT QRT is hiring a Senior Product Security Engineer to protect diverse tech systems across cloud, business apps, and core infrastructure. In this role, you’ll drive...SeniorHybrid working
- £99k - £128k per annumEstimated...technology to the military in months, not years. We're seeking a Senior Product Security engineer to develop novel security tooling, discover vulnerabilities... ...Requirements Experience with UK Ministry of Defence Cyber Security Model, including UK Government Security...SeniorFull-timeImmediate start
- £54k - £72k per annumEstimated...transactions. You will operate the Product Security programe for Blockchain.com’s internally-... ...Consumer, OTC and MRE lines. This is a senior, hands-on role: you’ll design and run the... ...the security debt lifecycle for product engineering teams, and architect the automated...SeniorFull-timeApprenticeshipOn-siteRemoteFlexible hours
- £81k - £105k per annumEstimated...devastating diseases. We have built a world-leading drug design engine comprising AI models that are capable of working across... ...solve all disease with the help of AI. Your impact As a Senior AI Security Engineer at Isomorphic Labs, you will operate at the absolute...SeniorHybrid workingOn-site1 day/week
- £210k - £278k per annumEstimated...Disagree Transparently. Encourage Independent Decision-Making. Build Dream Teams. Who You Are: Galaxy is seeking a Senior Product Security Engineer with an expertise in securing micro services and cloud applications, and with a thorough understanding of product and...Senior
£75k - £85k per annum
Senior IT Security Analyst required to act as a senior technical contributor within a global cyber security team, owning selected cyber security domains end-to-end and driving practical... ...risk. The role combines analyst and engineering responsibilities across security tools, vulnerability...SeniorHybrid workingOn-siteRemote£90k - £100k per annum
...Organisations rely on us to establish trust, through sharing their security maturity and visualising the risks posed by their supply... ...for Risk Ledger and our customers. This role: As our Senior SecOps Engineer you’ll be playing a critical part in maintaining and...SeniorLong-term contractTemporaryHybrid workingOn-siteImmediate startWork from home- £85k - £114k per annumEstimated...We are seeking a Senior Cloud Security Architect to join our dynamic team in London. This role is ideal for a seasoned professional with a passion for designing secure cloud solutions and driving innovation. You will play a pivotal role in shaping our cloud security strategy...Senior
- Company: ROBERT HALF Job Type: ContractSenior
- £80k - £103k per annumEstimated...portfolio of travel brands and businesses, including Tripadvisor, Viator, and TheFork. We are looking for an experienced Senior Application Security Engineer to join our growing team at Tripadvisor Experiences. In this role, you will take a lead position in securing the...SeniorPermanentFull-timeRemoteFlexible hours
- £76k - £99k per annumEstimated...., Finland, India, Singapore, Canada, and Ireland. Come join us! Location: Remote, within UK About the Role As a Senior Cloud Security Engineer you’ll be working to improve the security of AlphaSense’s cloud environments as part of the cloud security team. The team...SeniorRemote
£70k per annum
...We’re looking for a Senior Application Security Engineer to join our expanding Information Security team. If you are a hands‑on AppSec expert who enjoys working deep in the SDLC, partnering with talented engineers and building security into fast‑moving delivery pipelines, this...SeniorLong-term contractOn-siteRemoteFlexible hoursShift work- £86k - £115k per annumEstimated...where your expertise in cloud security will directly influence the future... ...at JPMorgan Chase. As a Senior Cloud Security Architect, you’... ...collaborate with top cybersecurity and engineering talent, solving complex... ...matter expert for IT Risk and Cyber domains. You will collaborate...SeniorLong-term contract
- £50k - £66k per annumEstimated...growth, we are looking for an experienced Senior Penetration Tester with solid experience of... ...development. This gives access to CREST, Cyber Scheme exams, online platforms such as Hack... ...Deliver and lead high quality offensive security assessments (web application, API and infrastructure...SeniorFull-timeHybrid workingOn-siteFlexible hours
- £79k - £105k per annumEstimated...you’ll be joining an established team, working with talented cyber security professionals to ensure our services are designed, developed and... ...and infrastructure penetration tests. Collaborating with engineering teams to facilitate secure development, including: Reviewing...Senior16 hoursFull-timeHybrid workingOn-siteFlexible hours
- £69k - £91k per annumEstimated...knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate... ...focused on European Union and United Kingdom information security and financial services regulation to help scale compliance for...SeniorHybrid working
- £54k - £72k per annumEstimated...empowers you to excel. Our Offensive Security professionals are on a mission to make the... ..., hardware devices, employees via social engineering, organizations via red teaming, and more.... ...team, One Kroll. What you’ll do As a Senior Consultant, you will report to a...SeniorApprenticeshipRemote
- £90k - £120k per annumEstimated...and keep customers coming back. Stay secure – Establishing the security, governance and... ...modernisation programmes to detection engineering, posture management, threat hunting, and... ...tools such as Wiz. We're looking for a Senior Security Engineer with deep, hands-on experience...SeniorLong-term contractRemoteFlexible hours
- £49k - £63k per annumEstimated...information and IT risks across Aggreko's global estate, ensuring robust security governance and compliance. Power without pause. Heating,... ...communities who rely on us for decades. What you'll do as Senior Cyber Security Analyst: Identify, analyse, and influence the...SeniorPermanentFull-timeRemote
- £85k - £113k per annumEstimated...Thanks to continued growth we are now seeking a Senior Cyber Security Consultant to join our Digital Risks Protect Advisory team in London. This is a unique opportunity that requires a highly motivated and diligent client-facing individual to join a highly successful team....SeniorLong-term contractHybrid workingOn-siteRemoteFlexible hours
- £57k - £73k per annumEstimated...Senior Consultant, Red Team Operator, Offensive Security, UK In a world of disruption and increasingly complex business... ...realistic attack paths and improve cyber resilience. We are looking to... ...incident response team, detection engineering team, threat intelligence team,...SeniorHybrid workingRemoteProbationary period
- £58k - £75k per annumEstimatedSenior Cyber Security Analyst We are Lightsource bp – and we're on a mission to become a global leader in onshore renewables, anchored... ...certification (one or more of the following): ~Azure Security Engineer (AZ-500) ~Certified Information Systems Security...SeniorLong-term contractPermanent
- £41k - £53k per annumEstimated...We are looking for a Cyber Security Engineer to join Team OB in our Support Office. As a Cyber Security Engineer at OB you will be protecting the company through strong IT security principles and implementing industry stand best practices. Working with and being the first...Hybrid workingOn-siteWork from homeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cyber Security Engineer. Be the first to apply!
- principal information security engineer London
- security engineer London
- network security engineer cisco checkpoint London
- security service engineer London
- security systems engineer London
- cloud network security engineer London
- security engineering manager London
- cyber software engineer London
- remote security engineer London
- cloud security engineer London
