Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Cyber Security Engineer

£42.8 - £49.3 per hourEstimated

About Us

The Financial Times is one of the world’s leading news organisations, globally recognised for its authority, integrity and accuracy, with a mission to deliver quality information and services worldwide. At the FT, curiosity thrives and ambitious thinking is rewarded. Here, you’re given the chance to reach millions, create work that matters and deliver impartial journalism in a polarised world. In our warm, collaborative culture, you’ll connect with a diverse community of experts who support your growth, career aspirations and wellbeing Your future at the FT will be filled with opportunities that challenge and inspire you. With no fixed path, you’ll discover new skills and forge a career that can take you anywhere. Build a newsworthy career at the FT.

Our Commitment to Diversity, Equity and Inclusion

We believe in the power of unique perspectives and want all voices in our organisation to be heard, respected and valued. A supportive workplace is one where employees feel they can be themselves and operate to their full potential. We are committed to removing barriers for everyone, with a focus on addressing those faced by underrepresented groups.

The Role Overview

We’re looking for a Senior Cyber Security Engineer to help mature application and cloud security across the FT’s cloud-native, AWS-hosted technology estate. This role has an approximate 50/50 focus across application security and cloud security, working closely with product, platform and engineering teams to make secure delivery easier by default.

You’ll shape and improve developer-friendly guardrails across GitHub-based CI/CD pipelines, AWS environments and infrastructure-as-code workflows. This includes improving SAST, software composition analysis, secret scanning, IaC scanning, vulnerability management and AWS misconfiguration management so that findings are actionable, low-noise and owned by the right teams.

Day to day, you’ll run practical threat-modelling sessions, review application and cloud designs, improve security playbooks, support vulnerability and misconfiguration remediation, and build automation that reduces toil. We’re looking for someone who has demonstrably improved security outcomes in real engineering environments, not just someone with theoretical knowledge of tools or frameworks.

Depending on team structure, you may also mentor or line-manage one or two security engineers, while remaining hands-on and close to the technical work.

What you’ll bring to the role

Application and cloud security experience: practical experience across both application security and cloud security, ideally in AWS-hosted, cloud-native environments.

Developer-friendly security mindset: you know how to work with engineers, explain risk clearly and design controls that help teams move securely without unnecessary friction.

Vulnerability management at scale: experience improving how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and advisories are identified, prioritised, owned and remediated across engineering teams.

Cloud misconfiguration & vulnerability management: experience identifying and reducing infrastructure-as-code and AWS vulnerabilities & misconfigurations at scale through pragmatic guardrails, tooling and clear remediation paths.

Threat modelling: confidence running lightweight, practical threat-modelling sessions that lead to useful engineering decisions and risk reduction.

CI/CD and code security: hands-on experience with security tooling such as SAST, software composition analysis, secret scanning and IaC scanning.

Automation mindset: ability to write scripts or small tools, ideally in Python, to reduce toil, improve visibility and surface meaningful risk.

Security leadership: ability to mentor other security engineers and influence engineers across the wider organisation. Depending on team structure, this may include line management.

AI security awareness: experience of leveraging AI to improve and scale appsec and cloud sec controls would be useful, but is not essential.

Key Responsibilities

Improve application security guardrails Tune and evolve SAST, software composition analysis, secret scanning and related controls so they are actionable, low-noise and useful to engineering teams.

Improve cloud and IaC security guardrails Help identify, prioritise and reduce AWS and infrastructure-as-code misconfigurations and vulnerabilities at scale.

Drive vulnerability management Improve how application vulnerabilities, dependency risks, bug bounty findings, penetration test findings and third-party advisories are triaged, prioritised and remediated.

Drive cloud misconfiguration management Help teams understand, own and remediate cloud security issues using pragmatic, developer-friendly workflows.

Run practical threat modelling Facilitate lightweight threat-modelling sessions for new products, features, services and architectural changes.

Build automation and tooling Create or improve scripts, integrations, dashboards and workflows that reduce manual effort and make risk easier to understand.

Support secure architecture decisions Provide application and cloud security input into design reviews, AWS architecture decisions and larger technical changes.

Partner with engineering teams Work closely with product, platform and software engineering teams to embed security into design, delivery and operational practices.

Support incidents and lessons learned Provide application and cloud security expertise during incidents and feed lessons learned back into patterns, tooling and guidance.

Mentor others Coach security engineers and engineering teams on practical security approaches. Depending on team structure, this may include line management of one or two security engineers.

Required Experience, Essential: 

  • Strong practical experience in application security and cloud security, ideally with a balanced focus across both.
  • Hands-on AWS security experience, including common misconfiguration patterns and practical remediation approaches.
  • Experience improving vulnerability management across engineering teams, including prioritisation, ownership, remediation tracking and noise reduction.
  • Experience in improving cloud or IaC misconfiguration management at scale in a developer-friendly way.
  • Experience integrating, tuning or improving security tooling in CI/CD workflows, such as SAST, software composition analysis, secret scanning or IaC scanning.
  • Experience running practical threat-modelling sessions that influence design, delivery or remediation decisions.
  • Ability to write scripts or small tools, ideally in Python, to automate security workflows or improve visibility.
  • Strong communication and collaboration skills, with the ability to influence engineers and technical leaders without relying on gatekeeping.
  • Evidence of improving application security, cloud security or vulnerability management practices in a real engineering environment.
  • Familiarity with Agile or Scrum ways of working.

Desirable

  • Experience with leveraging AI for AppSec and CloudSec.
  • AWS Certified Security – Speciality or equivalent practical AWS security experience.
  • Terraform or CloudFormation expertise.
  • Incident-management or incident-response experience.
  • Experience with Splunk or similar logging/SIEM platforms.
  • Experience with security metrics, dashboards or reporting that helped drive measurable risk reduction.
  • Experience mentoring or line-managing security engineers.

 

What’s in it for You?

Our benefits vary by location but we are committed to providing best-in-class perks across all our offices. These include generous annual leave, medical cover, inclusive parental leave packages, subsidised gym memberships and opportunities to give back to the community. Full details of our benefits are available  here .

We currently operate a hybrid model which requires staff to work onsite 50% of the time, subject to role requirements & regular review. While flexible working requests will be considered, not all patterns are suitable for all roles. We believe this balanced approach supports flexibility and protects our culture, making collaboration and communication easier, building stronger relationships and team cohesion, and supporting peer learning.  We reserve discretion on reasonable notice to change this approach either generally or for specific individuals or teams. 

 

Accessibility

We are a disability confident employer and Valuable 500 signatory.

Please let us know if you require any reasonable adjustments/personalisation as part of the application process or to enable you to attend an interview. If you would like to discuss your requirements or have any questions, email View email address on job-boards.eu.greenhouse.io and a member of our team will be happy to help.

Further information

At the FT, we embrace innovation and the use of technology and appreciate that individuals may leverage AI tools as part of their job application process. Whilst we are happy for you to use AI to assist with your application, it is essential that all information provided is authentic and accurately represents your skills, experience, and qualifications.

Candidates should be aware that the use of AI throughout the application process may be monitored to ensure a fair and transparent hiring process for all.

 

 

Vacancy posted 12 hours ago
Similar jobs that could be interesting for youBased on the Senior Cyber Security Engineer in London vacancy
  • £66k - £87k per annumEstimated
     ...interviews actively and aim to fill this role as soon as we find someone suitable.   THE OPPORTUNITY   We're looking for a senior Security Engineer to own security at Apollo Research from end to end. You'll be the first dedicated security hire at Apollo. Security at Apollo... 
    Senior

    apolloresearch

    London
    a month ago
  • £95k - £139k per annumEstimated
     ...asset managers representing over $40 trillion in AUM. For more information, please visit . The Role    We are hiring a Senior Security Engineer to lead our security risk management and governance work. This is a senior individual-contributor role for someone who... 
    Senior
    Full-time
    Shift work

    cmgx

    London
    a month ago
  • £68k - £88k per annumEstimated
     ...As a founding member of the Security Operations team in EMEA, you will...  ...time difference requires an engineer who can operate independently,...  ...online. You will serve as the senior-most security engineering point...  ...frameworks (NIST IR Lifecycle, Cyber Kill Chain, MITRE ATT&CK) to... 
    Senior
    Visa support
    On-site
    Immediate start
    Monday to Friday
    Shift work

    Roblox

    London
    a month ago
  •  ...Senior Cyber Detection and Response Engineer (London, UK) Summary of Position As a critical technology provider to around 100 of the world's leading financial institutions, Pirum’s security posture is a commercial asset as much as a risk management function. Our customers... 
    Senior
    Hybrid working
    Immediate start

    Pirum

    London
    11 days ago
  • £69k - £93k per annumEstimated
     ...MPC) technology – the gold standard in secure custody. Copper’s multi-award winning custody...  ...processes. Role Purpose As a Senior Security Engineer , you will play a key role in...  ...practices to ensure robust defence against cyber threats. SaaS Security: Experience... 
    Senior
    Hybrid working
    1 day/week

    Copper.co

    London
    21 days ago
  • £44k - £57k per annumEstimated
     ...Senior ICT & Security Design Engineer - London RED are an expanding international M&E consultancy, with a proven track record in low energy design, focused on providing excellent design solutions to clients. Through our market leading technical expertise, we enable... 
    Senior
    Traineeship
    Hybrid working
    On-site
    London
    more than 2 months ago
  • £121k - £160k per annumEstimated
     ...Senior IT Security Engineer – Windows, Automation, Endpoint Security London – Hybrid Industry Leading Compensation Quant Capital is partnered with a leading trading firm looking to hire a Senior IT Security Engineer to strengthen its global security posture. This... 
    Senior
    Hybrid working

    Quant Capital

    London
    more than 2 months ago
  • £64k - £82k per annumEstimated
     ...drives our ambition to deliver high quality returns for our investors.  Your future role within QRT QRT is hiring a Senior Product Security Engineer to protect diverse tech systems across cloud, business apps, and core infrastructure. In this role, you’ll drive... 
    Senior
    Hybrid working

    Qube Research & Technologies

    London
    12 hours ago
  • £99k - £128k per annumEstimated
     ...technology to the military in months, not years. We're seeking a Senior Product Security engineer to develop novel security tooling, discover vulnerabilities...  ...Requirements Experience with UK Ministry of Defence Cyber Security Model, including UK Government Security... 
    Senior
    Full-time
    Immediate start

    Anduril Industries

    London
    13 days ago
  • £54k - £72k per annumEstimated
     ...transactions. You will operate the Product Security programe for Blockchain.com’s internally-...  ...Consumer, OTC and MRE lines. This is a senior, hands-on role: you’ll design and run the...  ...the security debt lifecycle for product engineering teams, and architect the automated... 
    Senior
    Full-time
    Apprenticeship
    On-site
    Remote
    Flexible hours

    Blockchain.com

    London
    a month ago
  • £81k - £105k per annumEstimated
     ...devastating diseases. We have built a world-leading drug design engine comprising AI models that are capable of working across...  ...solve all disease with the help of AI.   Your impact  As a Senior AI Security Engineer at Isomorphic Labs, you will operate at the absolute... 
    Senior
    Hybrid working
    On-site
    1 day/week

    Isomorphic Labs

    London
    a month ago
  • £210k - £278k per annumEstimated
     ...Disagree Transparently. Encourage Independent Decision-Making. Build Dream Teams. Who You Are: Galaxy is seeking a Senior Product Security Engineer with an expertise in securing micro services and cloud applications, and with a thorough understanding of product and... 
    Senior

    Galaxy

    London
    a month ago
  • £75k - £85k per annum

    Senior IT Security Analyst required to act as a senior technical contributor within a global cyber security team, owning selected cyber security domains end-to-end and driving practical...  ...risk. The role combines analyst and engineering responsibilities across security tools, vulnerability... 
    Senior
    Hybrid working
    On-site
    Remote

    Prime Personnel

    London
    14 days ago
  • £90k - £100k per annum

     ...Organisations rely on us to establish trust, through sharing their security maturity and visualising the risks posed by their supply...  ...for Risk Ledger and our customers. This role: As our Senior SecOps Engineer you’ll be playing a critical part in maintaining and... 
    Senior
    Long-term contract
    Temporary
    Hybrid working
    On-site
    Immediate start
    Work from home

    Risk Ledger

    London
    13 days ago
  • £85k - £114k per annumEstimated
     ...We are seeking a Senior Cloud Security Architect to join our dynamic team in London. This role is ideal for a seasoned professional with a passion for designing secure cloud solutions and driving innovation. You will play a pivotal role in shaping our cloud security strategy... 
    Senior

    EPAM Systems

    London
    4 days ago
  • Company: ROBERT HALF Job Type: Contract
    Senior

    ROBERT HALF

    London
    a month ago
  • £80k - £103k per annumEstimated
     ...portfolio of travel brands and businesses, including Tripadvisor, Viator, and TheFork. We are looking for an experienced Senior Application Security Engineer to join our growing team at Tripadvisor Experiences. In this role, you will take a lead position in securing the... 
    Senior
    Permanent
    Full-time
    Remote
    Flexible hours

    Tripadvisor

    London
    12 hours ago
  • £76k - £99k per annumEstimated
     ...., Finland, India, Singapore, Canada, and Ireland. Come join us! Location: Remote, within UK About the Role As a Senior Cloud Security Engineer you’ll be working to improve the security of AlphaSense’s cloud environments as part of the cloud security team. The team... 
    Senior
    Remote

    AlphaSense

    London
    13 days ago
  • £70k per annum

     ...We’re looking for a Senior Application Security Engineer to join our expanding Information Security team. If you are a hands‑on AppSec expert who enjoys working deep in the SDLC, partnering with talented engineers and building security into fast‑moving delivery pipelines, this... 
    Senior
    Long-term contract
    On-site
    Remote
    Flexible hours
    Shift work

    Our Future Health

    London
    28 days ago
  • £86k - £115k per annumEstimated
     ...where your expertise in cloud security will directly influence the future...  ...at JPMorgan Chase. As a Senior Cloud Security Architect, you’...  ...collaborate with top cybersecurity and engineering talent, solving complex...  ...matter expert for IT Risk and Cyber domains. You will collaborate... 
    Senior
    Long-term contract

    JPMorgan Chase & Co.

    London
    a month ago
  • £50k - £66k per annumEstimated
     ...growth, we are looking for an experienced Senior Penetration Tester with solid experience of...  ...development. This gives access to CREST, Cyber Scheme exams, online platforms such as Hack...  ...Deliver and lead high quality offensive security assessments (web application, API and infrastructure... 
    Senior
    Full-time
    Hybrid working
    On-site
    Flexible hours

    Bridewell

    London
    7 days ago
  • £79k - £105k per annumEstimated
     ...you’ll be joining an established team, working with talented cyber security professionals to ensure our services are designed, developed and...  ...and infrastructure penetration tests. Collaborating with engineering teams to facilitate secure development, including: Reviewing... 
    Senior
    16 hours
    Full-time
    Hybrid working
    On-site
    Flexible hours

    Starling

    London
    28 days ago
  • £69k - £91k per annumEstimated
     ...knowledge.  Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate...  ...focused on European Union and United Kingdom information security and financial services regulation to help scale compliance for... 
    Senior
    Hybrid working

    SpaceXAI

    London
    5 days ago
  • £54k - £72k per annumEstimated
     ...empowers you to excel. Our Offensive Security professionals are on a mission to make the...  ..., hardware devices, employees via social engineering, organizations via red teaming, and more....  ...team, One Kroll. What you’ll do As a Senior Consultant, you will report to a... 
    Senior
    Apprenticeship
    Remote
    London
    more than 2 months ago
  • £90k - £120k per annumEstimated
     ...and keep customers coming back. Stay secure – Establishing the security, governance and...  ...modernisation programmes to detection engineering, posture management, threat hunting, and...  ...tools such as Wiz. We're looking for a Senior Security Engineer with deep, hands-on experience... 
    Senior
    Long-term contract
    Remote
    Flexible hours

    Beyond

    London
    28 days ago
  • £49k - £63k per annumEstimated
     ...information and IT risks across Aggreko's global estate, ensuring robust security governance and compliance. Power without pause. Heating,...  ...communities who rely on us for decades. What you'll do as Senior Cyber Security Analyst: Identify, analyse, and influence the... 
    Senior
    Permanent
    Full-time
    Remote
    Stratford, Greater London
    3 days ago
  • £85k - £113k per annumEstimated
     ...Thanks to continued growth we are now seeking a Senior Cyber Security Consultant to join our Digital Risks Protect Advisory team in London. This is a unique opportunity that requires a highly motivated and diligent client-facing individual to join a highly successful team.... 
    Senior
    Long-term contract
    Hybrid working
    On-site
    Remote
    Flexible hours

    Control Risks

    London
    28 days ago
  • £57k - £73k per annumEstimated
     ...Senior Consultant, Red Team Operator, Offensive Security, UK In a world of disruption and increasingly complex business...  ...realistic attack paths and improve cyber resilience. We are looking to...  ...incident response team, detection engineering team, threat intelligence team,... 
    Senior
    Hybrid working
    Remote
    Probationary period
    London
    more than 2 months ago
  • £58k - £75k per annumEstimated
    Senior Cyber Security Analyst We are Lightsource bp – and we're on a mission to become a global leader in onshore renewables, anchored...  ...certification (one or more of the following):  ~Azure Security Engineer (AZ-500)  ~Certified Information Systems Security... 
    Senior
    Long-term contract
    Permanent

    Lightsource BP Renewable Energy Investments Limited

    London
    a month ago
  • £41k - £53k per annumEstimated
     ...We are looking for a Cyber Security Engineer to join Team OB in our Support Office. As a Cyber Security Engineer at OB you will be protecting the company through strong IT security principles and implementing industry stand best practices. Working with and being the first... 
    Hybrid working
    On-site
    Work from home
    Flexible hours

    Oliver Bonas

    Chessington, Greater London
    more than 2 months ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Cyber Security Engineer. Be the first to apply!