Rodeo
Get started

Baillie Gifford

Security Engineer

City of Edinburgh
Posted about 18 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Security Engineer

Department

TSD Information Security-BG-UK

Overview of Department

Purpose of Role

As a Security Engineer at Baillie Gifford, you will be a key member of the Security Engineering team, responsible for building, integrating and maintaining the security capabilities that protect our systems, data and people.

Security Engineering bridges security and technology, creating secure-by-default platforms and controls that enable teams across the organisation to operate securely while continuing to move quickly. The team works closely with Infrastructure, Cloud, Development, DevOps and other security teams to embed security earlier in the technology lifecycle and reduce reliance on manual security processes.

In this role, you will take a hands-on approach to engineering and improving security capabilities across cloud, identity, endpoint, vulnerability management and the wider security technology estate. You will develop integrations, tooling and automation that improve security outcomes while simplifying how security is consumed by other teams.

You will help mature and optimise existing security investments rather than simply introducing new technology, ensuring our platforms are effectively integrated and aligned with business risk. The role offers opportunities to broaden your experience, working across areas such as security architecture, threat modelling, development, continuous control validation and emerging technologies including AI.

Responsibilities

  • Design, build, configure and maintain security platforms and protective controls across our technology environment, including XDR, SIEM, SOAR, cloud security and vulnerability management capabilities.
  • Develop security tooling, integrations and automation using APIs, scripting, SOAR and other engineering approaches, turning repetitive or manual processes into scalable and self-service capabilities where appropriate.
  • Support and improve identity security, privileged access and secrets management capabilities, including their integration across infrastructure and applications.
  • Support the firm to adopt AI securely by understanding emerging risks, contributing to practical guardrails and exploring ways AI can improve how we build, automate and deliver security.
  • Work closely with Core Platform teams to embed security earlier in project and development lifecycles, developing secure-by-default patterns, guardrails and security controls that can be adopted consistently.
  • Support and improve our cloud security posture and the integration of security testing and controls into CI/CD and development workflows.
  • Contribute to security architecture, technical design reviews and threat modelling, providing practical security guidance that helps technology teams understand risk and implement proportionate solutions.
  • Develop and maintain security orchestration, platform integrations and data flows that support security operations and incident response. Provide specialist engineering support during incidents where required.
  • Test and continuously validate security controls through configuration testing, attack simulation and Threat Informed Defence, using the results to improve preventative and detective controls.
  • Produce and maintain clear technical documentation for security platforms, integrations, architecture and engineered solutions.
  • Continually develop your expertise across security engineering, cloud, identity, application security and other emerging technologies, sharing knowledge and new approaches with the wider team.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

What success looks like

  • You build a strong understanding of our environment and use it to make proportionate, risk-based engineering decisions.
  • Security solutions are reliable, maintainable and effective for the teams that use them.
  • Manual effort and unnecessary complexity are reduced through effective automation and simplification.
  • Technology teams receive clear, practical security engineering advice that helps them understand and manage risk.
  • Our existing security capabilities continue to mature as you broaden your knowledge across different security domains.

Your knowledge and experience

  • You will have practical experience working within Cybersecurity, Infrastructure, Cloud Engineering, Identity & Access Management, DevOps, or a closely related technical discipline.

  • You will bring strong knowledge and practical engineering experience across several of the following areas, with solid technical foundations and the ability to learn and develop across different security domains:

    • Security engineering and architecture principles, vulnerability management, security testing and control validation.
    • Cloud security, particularly Microsoft Azure, alongside a good understanding of Windows and/or Linux environments and enterprise networking.
    • Identity and access management, privileged access, secrets management and associated access-control technologies.
    • Security platforms, including, Endpoint and XDR technologies, particularly CrowdStrike, as well as experience with SIEM, SOAR and other security platforms.
    • Automation and integration skills including scripting or development using PowerShell, Python, Bash or similar, API-based integrations and Infrastructure as Code and configuration automation technologies such as Terraform.
    • CI/CD pipelines, version control and approaches for integrating security controls and testing into development and deployment workflows.
    • An understanding of AI technologies, emerging security risks and appropriate guardrails and how these can be applied to support the firm’s secure adoption of AI and improve security engineering, automation and development.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

The Type of Candidate We’re Looking For

  • You are a practical and curious engineer who enjoys understanding how things work, solving technical problems and building security solutions that help others work securely.
  • You are comfortable learning and applying your experience to unfamiliar technologies and problems.
  • You take a pragmatic approach to security and work well with others across technology.
  • You can understand what teams are trying to achieve, identify the security risks that matter and turn them into practical solutions.
  • You naturally look for opportunities to simplify, automate and improve how things are done.
  • You communicate clearly, exercise good technical judgement and are comfortable challenging existing approaches when you see a better way of doing something.
  • You are motivated to keep developing your skills and enjoy sharing your knowledge and ideas with a wider team.

Critical Skills

  • Data literacy
  • Digital effectiveness (incl. AI)
  • Improvement mindset
  • Systems thinking
  • Team working

Closing Date

October 21, 2026

Additional Information

Should you choose to use AI tools to support your application, we ask that you do this thoughtfully. We encourage you to ensure your application reflects your own voice, experience, and motivations. We value authenticity and want to understand your individual strengths and perspectives.

At Baillie Gifford, we are committed to fostering an inclusive and respectful culture in which each of our colleagues can thrive and develop. We believe that our clients are best served by a diverse workforce with the experiences, ideas and perspectives that this brings.

If you are currently working at Baillie Gifford as an employee or contractor please apply to this job from the firm's Workday internal career site.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

City of Edinburgh, Scotland, United Kingdom

Sign up to applySee more jobs like this