Jobgether
Principal Security Engineer

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Principal Security Engineer
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Security Engineer based in United Kingdom.
As a Principal Security Engineer, you will take hands-on ownership of security implementation across a global, always-on digital asset trading environment. You will design, deploy and operate security controls across cloud, on-premises infrastructure and critical production systems. The role combines cloud security, identity and access management, key protection, CI/CD security, incident response and security automation. You will work closely with Infrastructure and Engineering teams to embed effective security controls directly into systems and development workflows. With a strong focus on practical execution, you will write code, configure systems and solve complex security challenges rather than focus on policy or people management. The environment is technically demanding and fast-moving, with resilience, low latency and risk discipline at its core. You will have significant autonomy and the opportunity to make an immediate impact on the security of critical trading infrastructure.
Accountabilities
- Implement, operate and continuously improve security controls across multi-cloud environments, primarily AWS and Azure, with exposure to GCP and AliCloud, as well as on-premises infrastructure.
- Own the implementation of identity and access management strategies, designing secure, scalable and practical models for identities, permissions and privileged access.
- Design and operate key management and custody security controls, including HSMs, secrets management and secure handling of sensitive cryptographic keys used in trading operations.
- Harden GitLab CI/CD pipelines and integrate security controls throughout the software development and delivery lifecycle.
- Configure and maintain corporate security technologies, including endpoint protection, mobile device management, Jamf, DLP and identity management platforms.
- Respond to security incidents by triaging alerts, investigating threats, containing incidents and driving remediation through to completion.
- Conduct security assessments across infrastructure and applications to identify vulnerabilities, weaknesses and opportunities for improvement.
- Automate security operations, including detection, alerting, monitoring and response processes.
- Partner closely with Infrastructure teams to embed security into cloud provisioning, infrastructure configuration and operational workflows.
- Identify opportunities to improve security resilience while minimizing unnecessary friction for engineers and other technical stakeholders.
- Own security problems end-to-end, from identifying risks and designing solutions through implementation, testing and ongoing operation.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Requirements
- 8+ years of hands-on experience in security engineering, security operations or a closely related technical security discipline.
- Deep expertise in identity and access management, including practical experience designing and implementing IAM across cloud environments.
- Strong, well-developed opinions on IAM architecture, access models, permissions and identity security, backed by hands-on implementation experience.
- Strong working knowledge of cloud security controls across multiple providers, particularly AWS and Azure.
- Experience securing CI/CD platforms and software delivery pipelines, with GitLab experience preferred.
- Familiarity with corporate IT security technologies such as Jamf, endpoint protection, DLP, SSO and identity providers.
- Strong Linux skills and confidence with scripting and automation using Python, Bash or similar languages.
- Experience with infrastructure-as-code technologies such as Terraform or Pulumi is an advantage.
- Ability to investigate security incidents, assess infrastructure and application risks, and implement practical remediation.
- Experience operating effectively in fast-paced, technically complex environments where security, resilience and availability are critical.
- Strong problem-solving and ownership mindset, with the ability to independently drive technical initiatives from identification through implementation.
- Clear communication skills and the ability to collaborate effectively with Infrastructure and Engineering teams.
- Experience in financial services, digital assets, cryptocurrency or other regulated environments is beneficial but not required.
- Demonstrated technical capability and practical experience are valued more highly than security certifications.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Benefits
- Direct ownership of security implementation across critical infrastructure.
- High-impact role within a small, highly technical security team.
- Significant autonomy and responsibility over security engineering initiatives.
- Opportunity to work closely with Infrastructure and Engineering teams and influence security architecture in practice.
- Exposure to low-latency trading infrastructure and complex digital asset technology.
- Opportunity to work on challenging security problems across multi-cloud and on-premises environments.
- Hands-on technical role focused on building, automating and operating security controls rather than policy administration or people management.
- Opportunity to make immediate, measurable contributions to security resilience and risk management.
- Fast-paced technical environment with direct exposure to senior leadership and business-critical security decisions.
How Jobgether Works
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location