Company:
Nationwide Building Society
Location: London
Closing Date: 08/11/2024
Hours: Full Time
Type: Permanent
Job Requirements / Description
Because we're not like a bank. We're not like other financial services companies either. As a Senior Security Engineer here, you'll sit within CTO, assisting a wide range of delivery teams in engineering secure solutions and protecting our member's money and data.
We believe security is a systemic concern; therefore, security problems should be solved by a systemic approach (take a look at our tenets here if you are interested to learn more about our vision). We will have regular forums in which we consult with other security engineers within the team, looking at the problems from each of our specialities' perspectives.
At Nationwide we offer hybrid working wherever possible. More rewarding relationships are supported through our hybrid approach, bringing colleagues together across our UK wide estate, whilst also supporting generous access to home working. We value our time in the office to solve problems, to learn, and to feel connected.
For this job you'll spend at least two days per week, or if part time you'll spend 40% of your working time, at one of our offices. You can also find out more about our approach to hybrid working here .
This role can be based out of either our Swindon, Nationwide House office or our London, Threadneedle Street office. We'll also consider candidates who wish to be based at our Glasgow office or our Manchester hub as secondary options, with the view you'll be available for ad/hoc visits to our Swindon and London offices.
As a senior security engineer, you will work cross-functionally to assess risk and help deliver countermeasures that protect our member's data. You will work will engineering teams to create solutions that solve or remediate security problems. This will involve a range of activities, including (but not limited to) threat modelling, selection and configuration of DevSecOps tools, high-level and detailed security designs.
We are looking for a Senior Security Engineer with experience in design and implementing cloud native applications in the cloud.
Threat modelling, design and implementing security controls in the cloud environment (AWS or Azure)
Design and implementing cloud native and hybrid solutions in major public cloud platforms.
Understanding of cryptographic primitives and protocols and their implementations in the cloud environment
Programming with at least one modern language, an appreciation of software development lifecycle, software delivery methodologies and experience with industry-standard tools and methods for delivering software in an enterprise environment (version control, CI/CD pipeline, etc.)
Docker, K8s, AWS Lambda) and their security implications
Web Application Firewalls)
Experience with API gateway and Service Mesh and their security implications (i.e., Degree in computer science or related field
Professional certifications in AWS or Azure
It’s also about being clear, precise, and using language that we and, importantly, our customers and members can understand.
Push for better - This is about aiming high and constantly looking for better in how we work together and serve our customers and members.
So, it’s a good idea to call out your most relevant experience on your application to give yourself the best chance.
A personal pension – if you put in 7% of your salary, we’ll top up by a further 16%
~ Life assurance worth 8x your salary
~ A great selection of additional benefits through our salary sacrifice scheme
~ Access to an annual performance related bonus
~ Access to training to help you develop and progress your career
~ 25 days holiday, pro rata
Share this job
Nationwide Building Society
Useful Links