Security Technical Lead

Job Description

Join us as a Security Technical Lead

  • Take on a new challenge and use your specialist knowledge to support the wider bank in building and operating secure services that protect both colleagues and customers
  • You’ll act as a subject matter expert in a security related field, making sure that the security implications of the backlog are understood in the right way, building security early into design
  • You’ll be joining an exciting and fast-paced area of the bank, where you can expect great exposure both for you and your work

What you'll do

As a Security Technical Lead, you’ll work at a domain level to understand and ensure robust security is continuously considered and incorporated at every stage, programme increment and feature team delivery throughout the development lifecycle and through to support.

You’ll collaborate with feature teams and participate in story refinement, sprint planning and retrospective sessions, establishing a culture of innovation and strategic thinking that makes sure that the bank has knowledge of, and opportunities to exploit, the latest developments in your area of specialism.

You’ll also be:

  • Making sure that decisions made are based on robust data, return on investment and value measures that demonstrate thoughtful and intelligent cost management
  • Encouraging the identification of ideas and driving the delivery of initiatives that will reduce cost and simplify the bank
  • Building and leveraging relationships with colleagues across the bank and third parties to make sure decisions made are commercially focused and create long term value for the bank

The skills you'll need

You’ll need experience and knowledge of technology security controls within the security technology specialism along with an understanding of Agile methodologies with experience of working in an Agile team.

You’ll also demonstrate:

  • Cyber security focused skills covering cloud and on-premise technologies

  • End-to-End threat modelling covering risk analysis, mitigations and alerting

  • Solution Designing and Security Architecture

  • Network, infrastructure and application security, solutions for encryption

  • Vulnerability Scanning, Incident and Event Management, and Identity and Access Management

  • Knowledge of Splunk, Microsoft Defender and Sentinel toolsets