Security Engineering Lead

THG

Manchester

On-site

GBP 90,000 - 130,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

THG Ingenuity in Manchester is seeking a Security Engineering Lead to own our security tooling and lead a small team of 3–4 engineers. You will shape the technical direction, stay hands-on, and ensure tooling is managed as code across CI/CD pipelines.

You will drive automation across detection and response, apply AI to security workflows, and collaborate with SOC, AppSec, and auditors, representing security engineering to external partners.

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • CISSP, CISM, or equivalent certifications preferred.
  • Experience securing cloud environments (AWS, GCP, Azure).
  • Substantial IaC experience (Terraform) managing tooling declaratively.
  • Experience securing CI/CD pipelines, ideally GitHub Actions.
  • Hands-on security engineering across SIEM/SOAR, IAM, DLP, EDR.
  • Ability to communicate risk to technical and non-technical audiences.

Responsibilities

  • Lead design, implementation, and operation of security tooling as code.
  • Manage a team of 3–4 security engineers and support their development.
  • Advance automation across detection, response, and access tooling.
  • Define a technical roadmap for security tooling aligned with priorities.
  • Apply AI to strengthen detection, triage, and automation.
  • Lead incident response engineering and participate in on-call.
  • Collaborate with SOC, GRC, AppSec, and external partners.

Skills

Security engineering
SIEM/SOAR
Zero Trust access
IAM
DLP
EDR
Cloud security
IaC (Terraform)
GitHub Actions
AI in security
Communication

Education

Bachelor's degree in Computer Science or Information Security

Tools

Terraform
GitHub
GCP/AWS/Azure tools

Job description

Security Engineering Lead Location: Based onsite at our HQ in Manchester (WA15 0AF) Reports to: Deputy Chief Security Officer Team: Leads a team of 3 to 4 Security Engineers Type: Permanent, full-time About the Role: We are seeking a Security Engineering Lead to take ownership of our security tooling and lead a dedicated team of engineers. You will set the technical direction for the function, manage and develop the team, and remain hands-on to make sound decisions on architecture and design. Our security tooling is managed entirely as Infrastructure as Code, so the role demands fluency in repositories, pipelines, and security platforms. Candidates who can apply AI to practical effect are highly desirable. The role partners closely with the wider security function, engineering, and the business, and engages directly with external parties, including vendors, auditors, and partners.

Key Responsibilities
  • Lead a team of 3 to 4 security engineers, setting standards, overseeing delivery, and supporting their development.
  • Own the design, implementation, and operation of our security tooling, managed entirely as code.
  • Advance automation across detection, response, and access tooling to reduce manual effort and improve consistency.
  • Define the technical roadmap for security tooling and keep it aligned with engineering and business priorities.
  • Apply AI to strengthen detection, triage, and automation to improve team effectiveness.
  • Lead the engineering aspects of incident response and manage escalations for the tooling your team owns; participate in an on-call and out-of-hours rota.
  • Collaborate with other security teams (SOC, GRC, AppSec, vulnerability management) and with platform and engineering teams to embed security from the outset.
  • Represent security engineering to external stakeholders, including vendors, auditors, and partners.
Security Stack
  • Detection and response: SIEM, SOAR, EDR
  • Network and web: Secure Web Gateway (SWG), DLP
  • Access: Zero Trust Access, IAM
  • Cloud: AWS, GCP, Azure
  • Email: Secure Email Gateway
  • Pipelines: GitHub (CI/CD security, secrets, supply-chain controls)
Essential Skills And Experience
  • Experience in security engineering or related roles.
  • Strong hands-on experience across several areas, such as SIEM/SOAR, Zero Trust access, IAM, DLP, and EDR.
  • Experience securing cloud environments such as AWS, GCP, or Azure.
  • Skilled in planning, designing, and implementing enterprise-level security solutions.
  • Substantial Infrastructure as Code experience (e.g., Terraform) managing security tooling declaratively and under version control.
  • Experience securing CI/CD pipelines, ideally GitHub, including Actions, secrets management, and supply-chain security.
  • Practical experience applying AI within security workflows or tooling.
  • A demonstrable record of working across teams, both within security and alongside engineering and external stakeholders.
  • A clear communicator, able to convey technical risk to both engineering and non-technical audiences.
  • Knowledge of industry best practice and frameworks such as ISO 27001, IEC 62443, NIST Cyber Security Framework, CIS Critical Security Controls, and MITRE ATT&CK.
  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • Certifications such as CISSP, CISM, or similar.
Desirable
  • Experience leading or line-managing a security team.
  • Scripting or development experience (Python, Go, or similar) for automation.
  • Experience in a regulated or e-commerce environment, including PCI DSS and Cyber Essentials Plus.
  • Detection engineering or threat-hunting experience.
  • Container and Kubernetes security experience.
  • Experience presenting to and reporting to senior leadership.
  • Further cloud security certifications, such as AWS, GCP, or Azure security specialties.

THG Ingenuity is proud to be a Disability Confident Committed employer. If you are invited to interview, please let us know if there are any reasonable adjustments we can make to the recruitment process that will enable you to perform to the best of your ability. THG Ingenuity is committed to creating a diverse & inclusive environment and welcomes applications from all sections of the community.

  • Experience in security engineering or related roles.
  • Strong hands-on experience across several areas, such as SIEM/SOAR, Zero Trust access, IAM, DLP, and EDR.
  • Experience securing cloud environments such as AWS, GCP, or Azure.
  • Skilled in planning, designing, and implementing enterprise-level security solutions.
  • Substantial Infrastructure as Code experience (e.g., Terraform) managing security tooling declaratively and under version control.
  • Experience securing CI/CD pipelines, ideally GitHub, including Actions, secrets management, and supply-chain security.
  • Practical experience applying AI within security workflows or tooling.
  • A demonstrable record of working across teams, both within security and alongside engineering and external stakeholders.
  • A clear communicator, able to convey technical risk to both engineering and non-technical audiences.
  • Knowledge of industry best practice and frameworks such as ISO 27001, IEC 62443, NIST Cyber Security Framework, CIS Critical Security Controls, and MITRE ATT&CK.
  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • Certifications such as CISSP, CISM, or similar., Experience leading or line-managing a security team.
  • Scripting or development experience (Python, Go, or similar) for automation.
  • Experience in a regulated or e-commerce environment, including PCI DSS and Cyber Essentials Plus.
  • Detection engineering or threat-hunting experience.
  • Container and Kubernetes security experience.
  • Experience presenting to and reporting to senior leadership.
  • Further cloud security certifications, such as AWS, GCP, or Azure security specialties.
    THG Ingenuity is proud to be a Disability Confident Committed employer. If you are invited to interview, please let us know if there are any reasonable adjustments we can make to the recruitment process that will enable you to perform to the best of your ability.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineering Lead
Security Engineering Lead

THG Ingenuity • Manchester

On-site
GBP 75,000 - 95,000
Lead Security Engineer
Lead Security Engineer

Eeze • Greater London

Hybrid
GBP 80,000 - 100,000
26 days paid holiday
Hybrid Working
Pension and Life Assurance
+2
Lead Cyber Security Engineer
Lead Cyber Security Engineer

SThree • Glasgow

Hybrid
GBP 60,000 - 85,000
Hybrid working model
28 days holiday allowance
Private healthcare
Cyber Security Lead
Cyber Security Lead

Chambers & Partners • Greater London

Hybrid
GBP 90,000 - 130,000
Lead Security Engineer
Lead Security Engineer

Made Tech Limited • Bristol

On-site
GBP 75,000 - 90,000
30 days Holiday
Flexible Working Hours
Flexible Parental Leave
+2
Lead Security Engineer
Lead Security Engineer

Ocho People • Belfast City District

Hybrid
GBP 90,000 - 120,000
Share options
Hybrid/Remote Belfast
35 days annual leave inc stats
+2
Senior Security Engineer
Senior Security Engineer

Made Tech Limited • Bristol

On-site
GBP 55,000 - 75,000
30 days Holiday
Flexible Working Hours
Flexible Parental Leave
+2
Lead Security Engineer
Lead Security Engineer

Winston Fox • Greater London

On-site
GBP 70,000 - 95,000
Lead IT Security Engineer
Lead IT Security Engineer

V.Group • Glasgow

On-site
GBP 70,000 - 110,000
Lead Software Security Engineer
Lead Software Security Engineer

United States Digital Space LLC • Greater London

Hybrid
GBP 120,000 - 150,000
Pension scheme
Generous holiday allowance
Ongoing learning and professional development