Job Search and Career Advice Platform

Enable job alerts via email!

Lead Security Engineer

La Fosse Associates

Greater London

On-site

GBP 120,000 - 130,000

Full time

12 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading technology firm in Greater London seeks an InfoSec Lead to shape their security strategy from the ground up. This pivotal role involves collaborating with engineers to embed secure-by-design principles, managing security incidents, and overseeing compliance with standards. Ideal candidates will have strong cloud security experience and a background in SOC operations. The company offers a salary between £120k and £130k, along with opportunities for professional growth.

Qualifications

  • Strong engineering experience, preferably in cloud or application security.
  • Deep understanding of cloud-native environments and infrastructure-as-code.
  • Experienced in defining and implementing security policies and governance frameworks.

Responsibilities

  • Build and lead a security programme aligned with business and compliance goals.
  • Champion secure SDLC practices with DevOps and engineering teams.
  • Take ownership of security incidents and coordinate responses.
  • Oversee third-party penetration tests and security assessments.

Skills

Cloud security expertise
Incident response
SOC operations
Infrastructure-as-code knowledge
Job description
InfoSec Lead

Location: 1x Day London

Salary: £120k to £130k

We are partnering with a UK-based technology company specialising in secure, mission‑critical software platforms for government and defence. They’re looking to bring in the first Information Security hire who will own security across the board and will be joining at a pivotal point in the company’s growth where you will have the opportunity to shape and mature security strategy from the ground up.

Your future role

You will collaborate closely with engineers and developers to embed secure‑by‑design principles within their engineering culture while partnering with the business to ensure AI‑driven initiatives are implemented securely. You will work closely with compliance experts across the organisation to ensure alignment with ISO and NIST standards.

1. Security Strategy & Governance
  • Build and lead a security programme aligned with business and compliance goals.
  • Define and enforce company‑wide security policies and standards.
  • Identify risks, manage the risk register, and drive remediation.
  • Guide stakeholders (technical and non‑technical) on security risks, controls, and system design decisions.
2. Security Engineering & Secure Development
  • Champion secure SDLC practices with DevOps and engineering teams.
  • Lead security programmes across endpoints, cloud, and customer‑facing products.
  • Continuously improve security monitoring, tools, and incident readiness.
3. Incident Management & Operational Security
  • Take ownership of security incidents as the primary point of contact.
  • Coordinate response across internal teams, MSSP partners, and the SOC.
4. Assurance, Testing & Third‑Party Security
  • Oversee third‑party penetration tests and security assessments, track findings, and verify remediation.
Your Present Skillset
  • Strong engineering experience, preferably in cloud or application security.
  • Expertise in incident response, SOC operations, and working with MSSPs.
  • Deep understanding of cloud‑native environments and infrastructure‑as‑code.
  • Experienced in defining and implementing security policies and governance frameworks.
Nice to have
  • UK Security Clearance (SC or DV), active or previously held.
  • Preferred certifications: CISSP, CISM, or CISA.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.