Rodeo
Get started

Referment

Lead Cybersecurity Engineer (39B9D58)

London
Posted about 23 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

About the Role

Referment is working with a fast-growing UK wealth technology company whose digital investment platform serves financial advisers and their clients in a regulated financial services environment. Security is central to how the business operates, and it is now investing further in the people who keep its cloud and IT infrastructure secure.

As Lead Cybersecurity Engineer, you'll play a critical role in designing, implementing and continuously improving the security of the company's cloud and IT estate. This is a hands-on technical role focused on securing cloud infrastructure and user endpoints. Working closely with the Head of IT Infrastructure, you'll translate security strategy and policies into scalable, automated technical controls that support secure-by-design principles and regulatory compliance.

You'll implement and maintain cloud security controls across the Google Cloud Platform environment, covering identity, networking, data protection and workload security — including capabilities such as IAM, VPC Service Controls, Identity-Aware Proxy and Security Command Center. You'll embed security into CI/CD pipelines through IaC validation, vulnerability scanning, secret detection and compliance checks, and develop Infrastructure as Code using Terraform.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

You'll also secure and manage Microsoft 365, Entra ID and Intune environments using MFA, Conditional Access, PIM, device compliance and least-privilege access, and drive Zero Trust principles across cloud infrastructure, corporate systems, endpoints and identity platforms. Supporting and optimising MDR/EDR technologies, maintaining vulnerability management processes and acting as a technical escalation point during security incidents are all part of the remit.

You'll work with engineering teams to embed security by design into application development, perform security architecture reviews, threat modelling and technical risk assessments, and support cybersecurity certification, compliance and audit requirements including SOC 2 and ISO 27001.

What We're Looking For

  • 5-8+ years in cloud security engineering or infrastructure security
  • Experience implementing and managing identity and access management solutions, including SSO, MFA and privileged access controls
  • Vulnerability management across cloud infrastructure, servers and endpoints
  • Understanding of SOC 2 and/or ISO 27001 controls, audits and compliance processes
  • Networking, cloud and IT infrastructure security knowledge, including Zero Trust and cloud security architecture
  • MDR/EDR and cloud monitoring experience
  • Email security, phishing protection and user security awareness

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Also Valuable

  • FinTech or financial services experience
  • Strong hands-on GCP security experience, and Microsoft 365, Entra ID and Intune security
  • Exposure to container security, GKE and Cloud Run
  • Automation with Python, PowerShell or Bash
  • Certifications such as CISSP, CISM or Google Professional Cloud Security Engineer

This Could Suit

A hands-on cloud security engineer who is ready to own the security posture of a growing platform — someone who enjoys building automated controls rather than only operating them, and who wants to work closely with infrastructure and engineering teams in a regulated fintech setting.

Role Details

This is a permanent, hybrid role with up to two remote days per week; the remainder of the week is spent in the central London office. The company is unable to offer visa sponsorship for this position.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

London, England, United Kingdom

Sign up to applySee more jobs like this