Apto Solutions
Pembroke Road, Clifton, Bristol BS8 3BA, UK
Who this is for
An early-career engineering role inside Operate, our managed service. Security or observability background — either is welcome.
You have been working for eighteen months to three years in a hands-on technical role — a platform team, a SOC or security engineering team, an MSP or MSSP, an infrastructure or DevOps team, a vendor’s support or professional services desk — and you are looking for your first move. You have had your hands on something that runs in production and matters to somebody. You want to go deeper, faster, in a smaller business where the work you do is seen. This is not a graduate scheme and it is not a helpdesk. It is a real engineering seat with real customers, real supervision and a clear path up.
The Role
This is a hands-on engineering role inside Operate, our managed service. You will help run customer telemetry platforms day to day, improve them, and contribute to the platform that lets us run them well. You will do this as part of a small engineering pool, with a senior engineer checking your work before it reaches a customer and a line manager who is accountable for your development.
Operate has two shapes and you will work in both.
Operate Core is always-on. It is continuous ownership of a customer’s platform — health, ingestion, data quality, alerting, upgrades, capacity. There is no handover and no final deliverable. The platform is ours to keep healthy for as long as the customer is ours. Success is measured in the absence of surprises and in the platform being demonstrably better in six months than it is today.
Operate Attach is sprint-based improvement. A customer has a defined problem — noisy alerts, a data source that will not normalise, ingest costs running away, a detection gap, a migration — and we take a scoped block of work and fix it. Attach has a start, a shape and an end. It sits on top of Core, for the same customers, with the same engineers.
Alongside that you will take a share of professional services delivery: shorter, project-shaped engagements that are usually how a customer first meets us.
What You’ll do
Everything below is done with supervision at first and with increasing independence as you show you can carry it. We will be explicit with you about where that line is and how it moves.
Day-to-day health of customer platforms.
Ingestion pipelines, data quality, alerting, licensing and capacity, upgrades and patching. You will start by owning a slice of a named customer estate, and you will be expected to notice problems before the customer does.
Incident and problem work.
Triage, diagnosis and resolution — and then the harder part, which is the root cause and the permanent fix so it does not come back.
Content and configuration.
Detections, dashboards, parsers, normalisation, alert rules, pipeline routing — built properly, peer reviewed, version controlled, documented.
Attach sprints and PS work.
Taking a defined piece of a scoped improvement, delivering it, and being able to show what changed.
Automation.
If you do something manually three times, we expect you to want to automate the fourth. Most of our platform tooling started as an engineer being annoyed by something.
Documentation and runbooks.
Your own, to a standard, every time. Undocumented work is unfinished work.
What this role is NOT
Being clear about this matters as much as the role definition itself.
It is not a SOC analyst seat.
You are not sitting in a queue triaging alerts against someone else’s runbook. You help build and run the platform that the analysts depend on.
It is not a service desk or first-line support role.
You will talk to customers about technical matters, but the work is engineering, not ticket handling.
It is not a data science role.
We work with very large volumes of machine data, but the work is systems and operations engineering, not modelling or statistics. Python and dashboards are not the same thing as running a platform.
It is not a graduate scheme.
We paused our graduate hire to open this role instead, because we want someone who has already spent time in a production environment and knows what it feels like when something breaks at an awkward hour.
It is not a project role with a finish line.
Core has no end date. If what you enjoy is shipping a thing and walking away, you will find the continuous half of this job frustrating.
Who we are looking for
We are indifferent to whether your background is security or observability. Either one is a good starting point, and the interesting work at Apto sits where the two meet — the same telemetry usually has to serve both a security question and an operational one. What we need is depth in one and genuine curiosity about the other
Experience we’re looking for
Roughly eighteen months to three years in a hands-on technical role. We care much more about what you have actually done than about the number of months attached to it, and we know that at this stage most of what you have done was somebody else’s decision. That is fine. We are looking for the shape of it.
You have had your hands on a telemetry, SIEM, observability or monitoring platform that was running in production — not only in a course or a home lab. You have onboarded a data source, tuned an alert, applied an upgrade, or been the person who had to work out why the data stopped arriving.
You have carried something over time rather than only delivering a task and moving on — a set of alerts you looked after, a customer estate you knew well, an on-call rotation, a service that was yours to keep healthy.
You are comfortable in Linux, in at least one query language, and you have written scripts that did something useful. Python is what we mostly use; anything credible is a fine starting point.
You have automated or fixed something real and you can show it. A script, a repo, a before-and-after number, a description concrete enough for us to ask sensible questions about.
You can write. A clear runbook, a readable incident note, a straight message to a customer. This is a customer-facing role.
You have worked in at least one of our vendor families — Splunk, Cribl, Sentinel, Grafana, Datadog, Elastic, Prometheus, OpenTelemetry — or a close analogue. The specific product is negotiable. Real exposure is not.
If you meet most of this and not all of it, apply anyway and tell us which parts you do not have. We would rather read an honest gap than a padded CV.
The platform work – why this is interesting
Most managed service jobs are the same job with a different logo on the ticketing system. This one is not, because we are building our own platform underneath the service and you will work on it. We have replaced a vendor-licensed telemetry backend with an open-source stack we run ourselves. A base platform (secret ;-)) On top of that sits multi-vendor collection — the pattern that lets us onboard a Splunk, a Cribl or a Sentinel customer without rebuilding it from scratch each time. Beyond that, the vendors are all shipping AI and agentic layers — MCP servers, agentic investigation, cross-vendor gateways — and we already have that work live with a customer. You will get early, hands-on exposure to it while most of the industry is still writing slide decks about it.
07/09/2026
Full time
Who this is for
An early-career engineering role inside Operate, our managed service. Security or observability background — either is welcome.
You have been working for eighteen months to three years in a hands-on technical role — a platform team, a SOC or security engineering team, an MSP or MSSP, an infrastructure or DevOps team, a vendor’s support or professional services desk — and you are looking for your first move. You have had your hands on something that runs in production and matters to somebody. You want to go deeper, faster, in a smaller business where the work you do is seen. This is not a graduate scheme and it is not a helpdesk. It is a real engineering seat with real customers, real supervision and a clear path up.
The Role
This is a hands-on engineering role inside Operate, our managed service. You will help run customer telemetry platforms day to day, improve them, and contribute to the platform that lets us run them well. You will do this as part of a small engineering pool, with a senior engineer checking your work before it reaches a customer and a line manager who is accountable for your development.
Operate has two shapes and you will work in both.
Operate Core is always-on. It is continuous ownership of a customer’s platform — health, ingestion, data quality, alerting, upgrades, capacity. There is no handover and no final deliverable. The platform is ours to keep healthy for as long as the customer is ours. Success is measured in the absence of surprises and in the platform being demonstrably better in six months than it is today.
Operate Attach is sprint-based improvement. A customer has a defined problem — noisy alerts, a data source that will not normalise, ingest costs running away, a detection gap, a migration — and we take a scoped block of work and fix it. Attach has a start, a shape and an end. It sits on top of Core, for the same customers, with the same engineers.
Alongside that you will take a share of professional services delivery: shorter, project-shaped engagements that are usually how a customer first meets us.
What You’ll do
Everything below is done with supervision at first and with increasing independence as you show you can carry it. We will be explicit with you about where that line is and how it moves.
Day-to-day health of customer platforms.
Ingestion pipelines, data quality, alerting, licensing and capacity, upgrades and patching. You will start by owning a slice of a named customer estate, and you will be expected to notice problems before the customer does.
Incident and problem work.
Triage, diagnosis and resolution — and then the harder part, which is the root cause and the permanent fix so it does not come back.
Content and configuration.
Detections, dashboards, parsers, normalisation, alert rules, pipeline routing — built properly, peer reviewed, version controlled, documented.
Attach sprints and PS work.
Taking a defined piece of a scoped improvement, delivering it, and being able to show what changed.
Automation.
If you do something manually three times, we expect you to want to automate the fourth. Most of our platform tooling started as an engineer being annoyed by something.
Documentation and runbooks.
Your own, to a standard, every time. Undocumented work is unfinished work.
What this role is NOT
Being clear about this matters as much as the role definition itself.
It is not a SOC analyst seat.
You are not sitting in a queue triaging alerts against someone else’s runbook. You help build and run the platform that the analysts depend on.
It is not a service desk or first-line support role.
You will talk to customers about technical matters, but the work is engineering, not ticket handling.
It is not a data science role.
We work with very large volumes of machine data, but the work is systems and operations engineering, not modelling or statistics. Python and dashboards are not the same thing as running a platform.
It is not a graduate scheme.
We paused our graduate hire to open this role instead, because we want someone who has already spent time in a production environment and knows what it feels like when something breaks at an awkward hour.
It is not a project role with a finish line.
Core has no end date. If what you enjoy is shipping a thing and walking away, you will find the continuous half of this job frustrating.
Who we are looking for
We are indifferent to whether your background is security or observability. Either one is a good starting point, and the interesting work at Apto sits where the two meet — the same telemetry usually has to serve both a security question and an operational one. What we need is depth in one and genuine curiosity about the other
Experience we’re looking for
Roughly eighteen months to three years in a hands-on technical role. We care much more about what you have actually done than about the number of months attached to it, and we know that at this stage most of what you have done was somebody else’s decision. That is fine. We are looking for the shape of it.
You have had your hands on a telemetry, SIEM, observability or monitoring platform that was running in production — not only in a course or a home lab. You have onboarded a data source, tuned an alert, applied an upgrade, or been the person who had to work out why the data stopped arriving.
You have carried something over time rather than only delivering a task and moving on — a set of alerts you looked after, a customer estate you knew well, an on-call rotation, a service that was yours to keep healthy.
You are comfortable in Linux, in at least one query language, and you have written scripts that did something useful. Python is what we mostly use; anything credible is a fine starting point.
You have automated or fixed something real and you can show it. A script, a repo, a before-and-after number, a description concrete enough for us to ask sensible questions about.
You can write. A clear runbook, a readable incident note, a straight message to a customer. This is a customer-facing role.
You have worked in at least one of our vendor families — Splunk, Cribl, Sentinel, Grafana, Datadog, Elastic, Prometheus, OpenTelemetry — or a close analogue. The specific product is negotiable. Real exposure is not.
If you meet most of this and not all of it, apply anyway and tell us which parts you do not have. We would rather read an honest gap than a padded CV.
The platform work – why this is interesting
Most managed service jobs are the same job with a different logo on the ticketing system. This one is not, because we are building our own platform underneath the service and you will work on it. We have replaced a vendor-licensed telemetry backend with an open-source stack we run ourselves. A base platform (secret ;-)) On top of that sits multi-vendor collection — the pattern that lets us onboard a Splunk, a Cribl or a Sentinel customer without rebuilding it from scratch each time. Beyond that, the vendors are all shipping AI and agentic layers — MCP servers, agentic investigation, cross-vendor gateways — and we already have that work live with a customer. You will get early, hands-on exposure to it while most of the industry is still writing slide decks about it.
Tier 1 Investment bank based in Canary Wharf. Role - C# Developer - Desktop Applications Duration - 6 months with likely extension Rate - 416 p/d (inside IR35) Location - Hybrid / Canary Wharf Tech Stack C# WPF Winforms Javascript SQL Oracle Tasks Tasks range from understanding business requirements, designing application structures, business data analysis, programming WPF (Windows Presentation Foundation) applications in Visual C#.NET on both Oracle and SQL Server database, testing with users, implementation through Development, Quality Assurance (QA), Production and Disaster Recovery environments. Supporting users and writing operation documents including User Helps (manuals) will also be required. As well as application development, this role will also include all aspects of system constructions and support for existing programmes which are written as WinForms (C#.NET) applications. Also, applications written in other languages like MS VBA for Excel and Access, MS VB and MS Excel Macros will also be required. Additional Tasks Defining Database objects required in systems to connect with SQL and Oracle Database Administrators in both London and New York. Providing script for database inquiry languages, i.e., T-SQL (SQL Server) and PL/SQL (Oracle) to perform data analysis based on requirements from business parties. Setting up a system distribution method to Citrix and application servers for both Web and Window applications. Troubleshooting systems in an event of failure and implementing necessary solutions by checking Windows Operating System, Internet Information Server and any other relevant environments where the applications are running. In some case this role will act to liaise with other application support team staff. Following the existing team programming policy to keep a common development style to be shared in team members. Updating versions of MS .Net Framework and MS Visual .NET platform to include any necessary changes of existing systems running in Production. Liaising with the relevant support teams such as other Development sections, Technical Support, Network and Infrastructure and DBA where Business users experience system problems. Assessing the impact of data processing loads on SQL and Oracle database and, when appropriate, finding alternative approaches. Rolling out changes with a coordination of Release manager. It is important to maintain the change history of applications GCS is acting as an Employment Business in relation to this vacancy.
22/09/2026
Contractor
Tier 1 Investment bank based in Canary Wharf. Role - C# Developer - Desktop Applications Duration - 6 months with likely extension Rate - 416 p/d (inside IR35) Location - Hybrid / Canary Wharf Tech Stack C# WPF Winforms Javascript SQL Oracle Tasks Tasks range from understanding business requirements, designing application structures, business data analysis, programming WPF (Windows Presentation Foundation) applications in Visual C#.NET on both Oracle and SQL Server database, testing with users, implementation through Development, Quality Assurance (QA), Production and Disaster Recovery environments. Supporting users and writing operation documents including User Helps (manuals) will also be required. As well as application development, this role will also include all aspects of system constructions and support for existing programmes which are written as WinForms (C#.NET) applications. Also, applications written in other languages like MS VBA for Excel and Access, MS VB and MS Excel Macros will also be required. Additional Tasks Defining Database objects required in systems to connect with SQL and Oracle Database Administrators in both London and New York. Providing script for database inquiry languages, i.e., T-SQL (SQL Server) and PL/SQL (Oracle) to perform data analysis based on requirements from business parties. Setting up a system distribution method to Citrix and application servers for both Web and Window applications. Troubleshooting systems in an event of failure and implementing necessary solutions by checking Windows Operating System, Internet Information Server and any other relevant environments where the applications are running. In some case this role will act to liaise with other application support team staff. Following the existing team programming policy to keep a common development style to be shared in team members. Updating versions of MS .Net Framework and MS Visual .NET platform to include any necessary changes of existing systems running in Production. Liaising with the relevant support teams such as other Development sections, Technical Support, Network and Infrastructure and DBA where Business users experience system problems. Assessing the impact of data processing loads on SQL and Oracle database and, when appropriate, finding alternative approaches. Rolling out changes with a coordination of Release manager. It is important to maintain the change history of applications GCS is acting as an Employment Business in relation to this vacancy.
Senior Agile Delivery Manager Based at client locations, working remotely, or based in our Godalming or Milton Keynes offices. Salary up to 75,000 plus excellent company benefits. About Us Triad Group Plc is an award-winning digital, data, and solutions consultancy with over 35 years' experience primarily serving the UK public sector and central government. We deliver high-quality solutions that make a real difference to users, citizens and consumers. At Triad, collaboration thrives, knowledge is shared, and every voice matters. Our close-knit, supportive culture ensures you're valued from day one. Whether working with cutting-edge tech or shaping strategy for national-scale projects, you'll be trusted, challenged, and empowered to grow. We nurture learning through communities of practice and encourage creativity, autonomy, and innovation. If you're passionate about solving meaningful problems with smart and passionate people, Triad could be the place for you. Glassdoor score of 4.7 96% of our staff would recommend Triad to a friend 100% CEO approval See for yourself some of the work that makes us all so proud: Helping law enforcement with secure intelligence systems that keep the UK safe Supporting the UK's national meteorological service in leveraging supercomputers for next-level weather forecasting Assisting the British government department that is responsible for the safety of consumer products, with systems to track unsafe products Powering systems that help the government monitor and reduce greenhouse gas emissions from commercial transport Role Summary We're looking for an exceptional Senior Delivery Manager who brings more than just technical know-how. At the heart of this role lies a strong foundation in Agile Project and Delivery Management, paired with inspirational leadership, sharp commercial instincts, and a solid understanding of procurement processes. You'll have a proven track record of delivering innovative, customer-focused solutions-particularly in mission-critical, public-facing systems within Cloud-based environments. Equally important are your communication and presentation skills. You'll lead and energise a team of 5-10 professionals, guiding them through complex challenges while fostering a culture of collaboration and continuous improvement. Your ability to see the bigger picture, fill organisational gaps, and adapt quickly to change will be key to your success. Key Responsibilities: Accountable for end-to-end technical delivery of government projects, ensuring compliance with the GDS Service Standard, leading service assessments, and managing supplier performance. Motivate, coach, and support teams of 5-10, nurturing talent and cultivating a collaborative, high-performing environment. Foster strong, transparent relationships with stakeholders at all levels, ensuring continuous alignment and shared goals. Encourage and lead the design and implementation of forward-thinking solutions that drive customer and business impact. Proactively identify, assess, and manage risks and issues, maintaining delivery momentum and safeguarding outcomes. Use sound commercial judgement to manage scope, timelines, and resources, ensuring value-driven delivery. Support and execute procurement processes with clarity and efficiency, ensuring compliance and timely delivery of services or products. Stay attuned to evolving business requirements, flexing delivery approaches and stepping in where needed to bridge gaps. Lead the successful deployment of scalable, secure, and resilient systems in cloud environments, particularly in public-facing or mission-critical contexts Skills and Experience: Extensive experience delivering projects using Agile frameworks such as Scrum or Kanban, with a strong grasp of Agile principles and team dynamics. Proven success in leading cross-functional teams, offering mentorship and building cohesive units that thrive in high-pressure environments. Confident in engaging diverse stakeholder groups, ensuring buy-in, managing expectations, and translating business needs into actionable plans. Deep understanding of financial drivers, commercial models, and how to deliver results that align with both client and business objectives. Solid understanding of procurement processes, including vendor engagement and contract management within regulated environments. Skilled in managing uncertainty-anticipating issues before they arise and responding decisively when challenges emerge. Hands-on experience implementing cloud-native or cloud-hosted solutions, with knowledge of platforms like AWS, Azure, or GCP. Demonstrated ability to introduce and scale new ideas, tools, or processes that improve customer outcomes or delivery efficiency. Strong sense of organisational context and an adaptable approach to delivery that responds to shifting priorities and needs. Excellent interpersonal, written, and presentation skills-able to distill complex topics and influence a variety of audiences. Brings relevant domain knowledge to add context and depth to project work, accelerating delivery and insight. Nice to have: Background in leading or contributing to Discovery and Alpha phases, including user research, prototyping, and service design. Experience working within UK government digital frameworks and adherence to GDS service standards. Qualifications & Certifications: A degree or equivalent qualification related to the area you work in - Desirable Due to the nature of this position, you must be willing and eligible to achieve a minimum of SC clearance. To be eligible, you must have been a resident in the UK for a minimum of 5 years and have the right to work in the UK. Triad's Commitment to You As a growing and ambitious company, Triad prioritises your development and well-being: Continuous Training & Development: Access to top-rated Udemy Business courses. Work Environment: Collaborative, creative, and free from discrimination. Benefits: 25 days of annual leave, plus bank holidays. Matched pension contributions (5%). Private healthcare with Bupa Gym membership support or Lakeshore Fitness access. Perkbox membership. Cycle-to-work scheme. Other information If this role is of interest to you or you would like further information, please contact Ben Fowler or submit your application now! Triad is an equal opportunities employer and welcomes applications from all suitably qualified people regardless of sex, race, disability, age, sexual orientation, gender reassignment, religion, or belief. We are proud that our recruitment process has been recognised as inclusive and accessible to disabled people who meet the minimum criteria for any role. We are a signatory on the Tech Talent Charter that aims to bring industries and organisations together to drive greater inclusion and diversity in technology roles, in addition, as a Disability Confident Leader.
22/09/2026
Full time
Senior Agile Delivery Manager Based at client locations, working remotely, or based in our Godalming or Milton Keynes offices. Salary up to 75,000 plus excellent company benefits. About Us Triad Group Plc is an award-winning digital, data, and solutions consultancy with over 35 years' experience primarily serving the UK public sector and central government. We deliver high-quality solutions that make a real difference to users, citizens and consumers. At Triad, collaboration thrives, knowledge is shared, and every voice matters. Our close-knit, supportive culture ensures you're valued from day one. Whether working with cutting-edge tech or shaping strategy for national-scale projects, you'll be trusted, challenged, and empowered to grow. We nurture learning through communities of practice and encourage creativity, autonomy, and innovation. If you're passionate about solving meaningful problems with smart and passionate people, Triad could be the place for you. Glassdoor score of 4.7 96% of our staff would recommend Triad to a friend 100% CEO approval See for yourself some of the work that makes us all so proud: Helping law enforcement with secure intelligence systems that keep the UK safe Supporting the UK's national meteorological service in leveraging supercomputers for next-level weather forecasting Assisting the British government department that is responsible for the safety of consumer products, with systems to track unsafe products Powering systems that help the government monitor and reduce greenhouse gas emissions from commercial transport Role Summary We're looking for an exceptional Senior Delivery Manager who brings more than just technical know-how. At the heart of this role lies a strong foundation in Agile Project and Delivery Management, paired with inspirational leadership, sharp commercial instincts, and a solid understanding of procurement processes. You'll have a proven track record of delivering innovative, customer-focused solutions-particularly in mission-critical, public-facing systems within Cloud-based environments. Equally important are your communication and presentation skills. You'll lead and energise a team of 5-10 professionals, guiding them through complex challenges while fostering a culture of collaboration and continuous improvement. Your ability to see the bigger picture, fill organisational gaps, and adapt quickly to change will be key to your success. Key Responsibilities: Accountable for end-to-end technical delivery of government projects, ensuring compliance with the GDS Service Standard, leading service assessments, and managing supplier performance. Motivate, coach, and support teams of 5-10, nurturing talent and cultivating a collaborative, high-performing environment. Foster strong, transparent relationships with stakeholders at all levels, ensuring continuous alignment and shared goals. Encourage and lead the design and implementation of forward-thinking solutions that drive customer and business impact. Proactively identify, assess, and manage risks and issues, maintaining delivery momentum and safeguarding outcomes. Use sound commercial judgement to manage scope, timelines, and resources, ensuring value-driven delivery. Support and execute procurement processes with clarity and efficiency, ensuring compliance and timely delivery of services or products. Stay attuned to evolving business requirements, flexing delivery approaches and stepping in where needed to bridge gaps. Lead the successful deployment of scalable, secure, and resilient systems in cloud environments, particularly in public-facing or mission-critical contexts Skills and Experience: Extensive experience delivering projects using Agile frameworks such as Scrum or Kanban, with a strong grasp of Agile principles and team dynamics. Proven success in leading cross-functional teams, offering mentorship and building cohesive units that thrive in high-pressure environments. Confident in engaging diverse stakeholder groups, ensuring buy-in, managing expectations, and translating business needs into actionable plans. Deep understanding of financial drivers, commercial models, and how to deliver results that align with both client and business objectives. Solid understanding of procurement processes, including vendor engagement and contract management within regulated environments. Skilled in managing uncertainty-anticipating issues before they arise and responding decisively when challenges emerge. Hands-on experience implementing cloud-native or cloud-hosted solutions, with knowledge of platforms like AWS, Azure, or GCP. Demonstrated ability to introduce and scale new ideas, tools, or processes that improve customer outcomes or delivery efficiency. Strong sense of organisational context and an adaptable approach to delivery that responds to shifting priorities and needs. Excellent interpersonal, written, and presentation skills-able to distill complex topics and influence a variety of audiences. Brings relevant domain knowledge to add context and depth to project work, accelerating delivery and insight. Nice to have: Background in leading or contributing to Discovery and Alpha phases, including user research, prototyping, and service design. Experience working within UK government digital frameworks and adherence to GDS service standards. Qualifications & Certifications: A degree or equivalent qualification related to the area you work in - Desirable Due to the nature of this position, you must be willing and eligible to achieve a minimum of SC clearance. To be eligible, you must have been a resident in the UK for a minimum of 5 years and have the right to work in the UK. Triad's Commitment to You As a growing and ambitious company, Triad prioritises your development and well-being: Continuous Training & Development: Access to top-rated Udemy Business courses. Work Environment: Collaborative, creative, and free from discrimination. Benefits: 25 days of annual leave, plus bank holidays. Matched pension contributions (5%). Private healthcare with Bupa Gym membership support or Lakeshore Fitness access. Perkbox membership. Cycle-to-work scheme. Other information If this role is of interest to you or you would like further information, please contact Ben Fowler or submit your application now! Triad is an equal opportunities employer and welcomes applications from all suitably qualified people regardless of sex, race, disability, age, sexual orientation, gender reassignment, religion, or belief. We are proud that our recruitment process has been recognised as inclusive and accessible to disabled people who meet the minimum criteria for any role. We are a signatory on the Tech Talent Charter that aims to bring industries and organisations together to drive greater inclusion and diversity in technology roles, in addition, as a Disability Confident Leader.
Electronics Workshop Manager Aberdeen Up to £75,000 We're recruiting on behalf of a well-established electronics manufacturing and servicing business for an experienced Electronics Workshop Manager to lead their workshop function. This is a hands-on leadership role covering new build assembly, service, repair, quality control, and calibration, reporting directly to the Manufacturing & Servicing Manager. The Role You'll take full ownership of the Electronics Workshop, ensuring safe, compliant, and efficient delivery across production, service, and repair activities responsible for workshop standards, team performance, process control, cost management, and the ongoing development of people, systems, and working practices. What You'll Be Doing Directly manage a multidisciplinary team of assemblers, technicians, QC inspectors, calibration staff, and administrators Build accountability and drive performance standards and continuous improvement across the team Lead objective setting, performance reviews, and employee relations Manage training, competency frameworks, and career progression Manage the departmental budget and overtime requirements Coordinate activities across assembly, test, repair, QC, and calibration Plan and prioritise workload to meet production schedules and deadlines Monitor and report on KPIs including on-time delivery, right-first-time rate, and workshop utilisation Drive initiatives that reduce waste, improve efficiency, and lower costs Oversee compliance with build and test procedures against industry standards Own the inbound electronics QC function Manage non-conformance reporting, root cause analysis, and corrective actions Maintain high standards of housekeeping and ESD compliance What We're Looking For Strong leadership experience within electronics manufacturing, servicing, repair, calibration, or a comparable technical workshop environment Working knowledge of QHSE requirements, ESD control, risk assessment, quality systems, and root cause analysis Experience managing multidisciplinary technical teams and building performance/training frameworks Experience using KPIs, ERP/MRP systems, and workshop data to drive delivery and improvement Experience managing workshop resources, inventory, and operational budgets Solid understanding of electronics assembly, testing, inspection, calibration, service, and repair processes HNC/HND, Degree, or equivalent in Electronics Engineering, Electrical Engineering, or a related discipline Strong people-management, communication, and problem-solving skills Bright Purple is proud to be an equal opportunities employer. We partner with clients who share our commitment to diversity and inclusion across the industry.
22/09/2026
Full time
Electronics Workshop Manager Aberdeen Up to £75,000 We're recruiting on behalf of a well-established electronics manufacturing and servicing business for an experienced Electronics Workshop Manager to lead their workshop function. This is a hands-on leadership role covering new build assembly, service, repair, quality control, and calibration, reporting directly to the Manufacturing & Servicing Manager. The Role You'll take full ownership of the Electronics Workshop, ensuring safe, compliant, and efficient delivery across production, service, and repair activities responsible for workshop standards, team performance, process control, cost management, and the ongoing development of people, systems, and working practices. What You'll Be Doing Directly manage a multidisciplinary team of assemblers, technicians, QC inspectors, calibration staff, and administrators Build accountability and drive performance standards and continuous improvement across the team Lead objective setting, performance reviews, and employee relations Manage training, competency frameworks, and career progression Manage the departmental budget and overtime requirements Coordinate activities across assembly, test, repair, QC, and calibration Plan and prioritise workload to meet production schedules and deadlines Monitor and report on KPIs including on-time delivery, right-first-time rate, and workshop utilisation Drive initiatives that reduce waste, improve efficiency, and lower costs Oversee compliance with build and test procedures against industry standards Own the inbound electronics QC function Manage non-conformance reporting, root cause analysis, and corrective actions Maintain high standards of housekeeping and ESD compliance What We're Looking For Strong leadership experience within electronics manufacturing, servicing, repair, calibration, or a comparable technical workshop environment Working knowledge of QHSE requirements, ESD control, risk assessment, quality systems, and root cause analysis Experience managing multidisciplinary technical teams and building performance/training frameworks Experience using KPIs, ERP/MRP systems, and workshop data to drive delivery and improvement Experience managing workshop resources, inventory, and operational budgets Solid understanding of electronics assembly, testing, inspection, calibration, service, and repair processes HNC/HND, Degree, or equivalent in Electronics Engineering, Electrical Engineering, or a related discipline Strong people-management, communication, and problem-solving skills Bright Purple is proud to be an equal opportunities employer. We partner with clients who share our commitment to diversity and inclusion across the industry.
CMDB Manager - Manchester (Hybrid) £56,000 + Comprehensive Benefits Package About the Position Are you interested in creating order within complex IT landscapes, improving the integrity of technology data, and enabling smarter operational decisions? If so, this CMDB Manager opportunity offers the chance to make a tangible difference. As a newly established role, you will be instrumental in introducing and developing a new CMDB solution across the organisation. You'll lead the Configuration Management function, ensuring accurate and reliable configuration data is available to support service delivery, operational performance, compliance, and effective technology management. The Opportunity This position goes far beyond maintaining an existing CMDB. You'll play a pivotal role in building the organisation's Configuration Management capability from the outset. From defining governance and processes to encouraging adoption and delivering long-term value, you'll have the autonomy to shape how Configuration Management is Embedded across the IT function. Partnering with teams across Service Management, Infrastructure, Support, Change, and Asset Management, you'll become the recognised expert for Configuration Management and help establish it as a critical component of the wider ITSM framework. Key Responsibilities Oversee the deployment and ongoing development of a new CMDB platform. Design and maintain configuration models, CI structures, attributes, classifications, and service relationships. Serve as the primary owner of the CMDB product, managing integrations, configuration, and platform enhancements. Develop and implement Configuration Management standards, policies, controls, and governance practices. Introduce automation through discovery tools and data integrations to improve efficiency and data accuracy. Take responsibility for data quality management, audits, reconciliation activities, and life cycle controls for configuration items. Collaborate with Change, Incident, Problem, and Asset Management teams to ensure configuration data remains current and trustworthy. Establish strong relationships with technical teams while creating accountability among data owners and stakeholders. Deliver insightful reporting, KPI dashboards, and performance metrics to support decision-making at leadership level. Skills & Experience Required Experience within Configuration Management, IT Service Management, or IT Asset Management environments. Demonstrable success in implementing, enhancing, or governing CMDB capabilities. Strong knowledge of ITIL Configuration Management and its interaction with Change, Incident, and Problem Management processes. Hands-on experience with ITSM platforms such as ServiceNow, Ivanti, BMC Helix, or equivalent technologies. Excellent analytical, governance, and data management skills. Strong stakeholder engagement abilities, with experience driving adoption and influencing change across teams. Highly organised and detail-oriented, with the ability to balance operational requirements against broader strategic objectives. Why Join? This is a unique opportunity to take ownership of a Configuration Management function from day one. You'll be empowered to define best practice, influence strategic technology initiatives, and build a capability that delivers measurable value across the organisation for years to come. Guidant, Carbon60, Lorien & SRG - The Impellam Group Portfolio are acting as an Employment Business in relation to this vacancy.
22/09/2026
Full time
CMDB Manager - Manchester (Hybrid) £56,000 + Comprehensive Benefits Package About the Position Are you interested in creating order within complex IT landscapes, improving the integrity of technology data, and enabling smarter operational decisions? If so, this CMDB Manager opportunity offers the chance to make a tangible difference. As a newly established role, you will be instrumental in introducing and developing a new CMDB solution across the organisation. You'll lead the Configuration Management function, ensuring accurate and reliable configuration data is available to support service delivery, operational performance, compliance, and effective technology management. The Opportunity This position goes far beyond maintaining an existing CMDB. You'll play a pivotal role in building the organisation's Configuration Management capability from the outset. From defining governance and processes to encouraging adoption and delivering long-term value, you'll have the autonomy to shape how Configuration Management is Embedded across the IT function. Partnering with teams across Service Management, Infrastructure, Support, Change, and Asset Management, you'll become the recognised expert for Configuration Management and help establish it as a critical component of the wider ITSM framework. Key Responsibilities Oversee the deployment and ongoing development of a new CMDB platform. Design and maintain configuration models, CI structures, attributes, classifications, and service relationships. Serve as the primary owner of the CMDB product, managing integrations, configuration, and platform enhancements. Develop and implement Configuration Management standards, policies, controls, and governance practices. Introduce automation through discovery tools and data integrations to improve efficiency and data accuracy. Take responsibility for data quality management, audits, reconciliation activities, and life cycle controls for configuration items. Collaborate with Change, Incident, Problem, and Asset Management teams to ensure configuration data remains current and trustworthy. Establish strong relationships with technical teams while creating accountability among data owners and stakeholders. Deliver insightful reporting, KPI dashboards, and performance metrics to support decision-making at leadership level. Skills & Experience Required Experience within Configuration Management, IT Service Management, or IT Asset Management environments. Demonstrable success in implementing, enhancing, or governing CMDB capabilities. Strong knowledge of ITIL Configuration Management and its interaction with Change, Incident, and Problem Management processes. Hands-on experience with ITSM platforms such as ServiceNow, Ivanti, BMC Helix, or equivalent technologies. Excellent analytical, governance, and data management skills. Strong stakeholder engagement abilities, with experience driving adoption and influencing change across teams. Highly organised and detail-oriented, with the ability to balance operational requirements against broader strategic objectives. Why Join? This is a unique opportunity to take ownership of a Configuration Management function from day one. You'll be empowered to define best practice, influence strategic technology initiatives, and build a capability that delivers measurable value across the organisation for years to come. Guidant, Carbon60, Lorien & SRG - The Impellam Group Portfolio are acting as an Employment Business in relation to this vacancy.
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - As a Security Engineer at Engine, you'll be working on helping to keep our infrastructure secure and compliant and our staff safe and productive. You'll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It's a very varied role with lots of close interaction with the infrastructure, security engineering, cross-cutting and compliance teams. We are looking for an experienced Senior level GCP Security Engineer to join our established Security Engineering team, working closely with Information Security, Infrastructure and the various Engine Technology teams to make sure security is at the heart of all our technical processes. As our subject matter expert, you will take ownership of engineering the security foundations of our Google Cloud Platform environment. This is a hands-on role for a specialist with a proven track record of designing, building, and automating security controls specifically for GCP, including hardened GKE clusters. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech. As a GCP Security Engineer, you will: Collaborate with stakeholders to define our Google Cloud security architecture (cloud identity, runtime security, security posture) Design, document, build and maintain a secure and scalable infrastructure on GCP using Infrastructure as Code Be part of the team responsible for safeguarding our systems, applications and data by ensuring secure user access, authentication and authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have created across our technology teams Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you have an innate passion for security and care enough to find elegant solutions to difficult problems, we'd love to hear from you. What skills are essential: Mature understanding of cloud security architecture, with deep expertise in GCP and a proven track record Experience creating a GCP landing zone, configuring services such as organisation policies and VPC Service Controls A deep understanding of GCP IAM and its limitations Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure on GCP (including GKE, Compute Engine, Shared VPC and Cloud SQL) Expertise in Kubernetes, securing clusters (GKE) and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts for automation in Python, Go and other languages while contributing to open-source tools so we can utilise them In-depth knowledge of security principles, technologies, best practices, and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, MITRE ATT&CK Framework and social engineering tactics) The ability to identify potential threats, attack vectors and vulnerabilities in systems and applications The ability to document security requirements from various stakeholders Excellent problem-solving, communication and active listening skills with an innate passion for security The ability to identify security gaps and create solutions to minimise risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing and switching concepts (TCP/IP, BGP, VPNs), security controls (firewalls, WAFs, IDS/IPS), and practical experience designing hybrid connectivity between GCP and on-premise environments Experience with data-residency and regulated-workload controls such as Assured Workloads and Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS / 3DS Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes, and an understanding of integrating security into the software development lifecycle Experience performing secure code reviews and security approvals, including the use of static and dynamic application security testing (SAST / DAST) tools Experience in cryptography management and enhancements Relevant security certifications such as ISC2 CC, CISSP, CCSP, CISM, AWS Security Specialty or GCP Professional Cloud Security Engineer The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Microservice-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process: Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test . click apply for full job details
22/09/2026
Full time
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - As a Security Engineer at Engine, you'll be working on helping to keep our infrastructure secure and compliant and our staff safe and productive. You'll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It's a very varied role with lots of close interaction with the infrastructure, security engineering, cross-cutting and compliance teams. We are looking for an experienced Senior level GCP Security Engineer to join our established Security Engineering team, working closely with Information Security, Infrastructure and the various Engine Technology teams to make sure security is at the heart of all our technical processes. As our subject matter expert, you will take ownership of engineering the security foundations of our Google Cloud Platform environment. This is a hands-on role for a specialist with a proven track record of designing, building, and automating security controls specifically for GCP, including hardened GKE clusters. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech. As a GCP Security Engineer, you will: Collaborate with stakeholders to define our Google Cloud security architecture (cloud identity, runtime security, security posture) Design, document, build and maintain a secure and scalable infrastructure on GCP using Infrastructure as Code Be part of the team responsible for safeguarding our systems, applications and data by ensuring secure user access, authentication and authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have created across our technology teams Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you have an innate passion for security and care enough to find elegant solutions to difficult problems, we'd love to hear from you. What skills are essential: Mature understanding of cloud security architecture, with deep expertise in GCP and a proven track record Experience creating a GCP landing zone, configuring services such as organisation policies and VPC Service Controls A deep understanding of GCP IAM and its limitations Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure on GCP (including GKE, Compute Engine, Shared VPC and Cloud SQL) Expertise in Kubernetes, securing clusters (GKE) and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts for automation in Python, Go and other languages while contributing to open-source tools so we can utilise them In-depth knowledge of security principles, technologies, best practices, and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, MITRE ATT&CK Framework and social engineering tactics) The ability to identify potential threats, attack vectors and vulnerabilities in systems and applications The ability to document security requirements from various stakeholders Excellent problem-solving, communication and active listening skills with an innate passion for security The ability to identify security gaps and create solutions to minimise risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing and switching concepts (TCP/IP, BGP, VPNs), security controls (firewalls, WAFs, IDS/IPS), and practical experience designing hybrid connectivity between GCP and on-premise environments Experience with data-residency and regulated-workload controls such as Assured Workloads and Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS / 3DS Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes, and an understanding of integrating security into the software development lifecycle Experience performing secure code reviews and security approvals, including the use of static and dynamic application security testing (SAST / DAST) tools Experience in cryptography management and enhancements Relevant security certifications such as ISC2 CC, CISSP, CCSP, CISM, AWS Security Specialty or GCP Professional Cloud Security Engineer The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Microservice-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process: Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test . click apply for full job details
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - We're looking for a Staff Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on - across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear more from the team in our latest Blog or our case studies with Women in Tech. As a Staff Infrastructure Engineer, you will: Design, document, build and maintain scalable infrastructure on GCP Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness Embrace automation and be reluctant for manual implementation Build systems with security by design as a core foundation Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS Design and operate key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including support for cryptographic key ceremonies Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance Write clear technical documentation and host training sessions for the team Demonstrate knowledge of new technologies and changes in the industry Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine - our approach, tooling, automation and architecture Lead by example in your contributions, setting a high technical bar for others to aim for Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you care enough to find elegant solutions to difficult technical problems, we'd love to hear from you. As a Staff Infrastructure Engineer you will bring the below experience or knowledge: Proven GCP multi-region disaster recovery experience Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise's resource hierarchy Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls Experience writing clean, modular Terraform code Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience with observability tooling - Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana) Experience setting up Google Workspace / Google Cloud Identity Experience with automation using a scripting language like Python or Go Experience implementing CI/CD pipelines An understanding of RESTful API and event-driven concepts Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models Ideally you also have: Experience with Zero Trust security (mTLS, SSO) Experience with AWS Comfortable with bash and either Golang, Java or Python development Understanding of database monitoring, analysis, disaster recovery and performance tuning Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc.) and preferably experience designing and establishing connectivity between GCP and on-premise locations Awareness/ability to leverage Claude Skills during development The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Container-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1.5 hours Final interview with our CTO / deputy CTO - 45 minutes Benefits 33 days holiday (including public holidays, which you can take when it works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Incentives refer a friend scheme Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Engine by Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent . click apply for full job details
22/09/2026
Full time
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - We're looking for a Staff Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on - across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear more from the team in our latest Blog or our case studies with Women in Tech. As a Staff Infrastructure Engineer, you will: Design, document, build and maintain scalable infrastructure on GCP Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness Embrace automation and be reluctant for manual implementation Build systems with security by design as a core foundation Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS Design and operate key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including support for cryptographic key ceremonies Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance Write clear technical documentation and host training sessions for the team Demonstrate knowledge of new technologies and changes in the industry Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine - our approach, tooling, automation and architecture Lead by example in your contributions, setting a high technical bar for others to aim for Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you care enough to find elegant solutions to difficult technical problems, we'd love to hear from you. As a Staff Infrastructure Engineer you will bring the below experience or knowledge: Proven GCP multi-region disaster recovery experience Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise's resource hierarchy Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls Experience writing clean, modular Terraform code Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience with observability tooling - Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana) Experience setting up Google Workspace / Google Cloud Identity Experience with automation using a scripting language like Python or Go Experience implementing CI/CD pipelines An understanding of RESTful API and event-driven concepts Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models Ideally you also have: Experience with Zero Trust security (mTLS, SSO) Experience with AWS Comfortable with bash and either Golang, Java or Python development Understanding of database monitoring, analysis, disaster recovery and performance tuning Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc.) and preferably experience designing and establishing connectivity between GCP and on-premise locations Awareness/ability to leverage Claude Skills during development The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Container-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1.5 hours Final interview with our CTO / deputy CTO - 45 minutes Benefits 33 days holiday (including public holidays, which you can take when it works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Incentives refer a friend scheme Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Engine by Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent . click apply for full job details
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - As a Security Engineer at Engine, you'll be working on helping to keep our infrastructure secure and compliant and our staff safe and productive. You'll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It's a very varied role with lots of close interaction with the infrastructure, security engineering, cross-cutting and compliance teams. We are looking for an experienced Senior / Staff level GCP Security Engineer to join our established Security Engineering team, working closely with Information Security, Infrastructure and the various Engine Technology teams to make sure security is at the heart of all our technical processes. As our subject matter expert, you will take ownership of engineering the security foundations of our Google Cloud Platform environment. This is a hands-on role for a specialist with a proven track record of designing, building, and automating security controls specifically for GCP, including hardened GKE clusters. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech. As a GCP Security Engineer, you will: Collaborate with stakeholders to define our Google Cloud security architecture (cloud identity, runtime security, security posture) Design, document, build and maintain a secure and scalable infrastructure on GCP using Infrastructure as Code Be part of the team responsible for safeguarding our systems, applications and data by ensuring secure user access, authentication and authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have created across our technology teams Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you have an innate passion for security and care enough to find elegant solutions to difficult problems, we'd love to hear from you. What skills are essential: Mature understanding of cloud security architecture, with deep expertise in GCP and a proven track record Experience creating a GCP landing zone, configuring services such as organisation policies and VPC Service Controls A deep understanding of GCP IAM and its limitations Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure on GCP (including GKE, Compute Engine, Shared VPC and Cloud SQL) Expertise in Kubernetes, securing clusters (GKE) and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts for automation in Python, Go and other languages while contributing to open-source tools so we can utilise them In-depth knowledge of security principles, technologies, best practices, and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, MITRE ATT&CK Framework and social engineering tactics) The ability to identify potential threats, attack vectors and vulnerabilities in systems and applications The ability to document security requirements from various stakeholders Excellent problem-solving, communication and active listening skills with an innate passion for security The ability to identify security gaps and create solutions to minimise risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing and switching concepts (TCP/IP, BGP, VPNs), security controls (firewalls, WAFs, IDS/IPS), and practical experience designing hybrid connectivity between GCP and on-premise environments Experience with data-residency and regulated-workload controls such as Assured Workloads and Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS / 3DS Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes, and an understanding of integrating security into the software development lifecycle Experience performing secure code reviews and security approvals, including the use of static and dynamic application security testing (SAST / DAST) tools Experience in cryptography management and enhancements Relevant security certifications such as ISC2 CC, CISSP, CCSP, CISM, AWS Security Specialty or GCP Professional Cloud Security Engineer The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Microservice-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process: Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test . click apply for full job details
22/09/2026
Full time
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - As a Security Engineer at Engine, you'll be working on helping to keep our infrastructure secure and compliant and our staff safe and productive. You'll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It's a very varied role with lots of close interaction with the infrastructure, security engineering, cross-cutting and compliance teams. We are looking for an experienced Senior / Staff level GCP Security Engineer to join our established Security Engineering team, working closely with Information Security, Infrastructure and the various Engine Technology teams to make sure security is at the heart of all our technical processes. As our subject matter expert, you will take ownership of engineering the security foundations of our Google Cloud Platform environment. This is a hands-on role for a specialist with a proven track record of designing, building, and automating security controls specifically for GCP, including hardened GKE clusters. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech. As a GCP Security Engineer, you will: Collaborate with stakeholders to define our Google Cloud security architecture (cloud identity, runtime security, security posture) Design, document, build and maintain a secure and scalable infrastructure on GCP using Infrastructure as Code Be part of the team responsible for safeguarding our systems, applications and data by ensuring secure user access, authentication and authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have created across our technology teams Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you have an innate passion for security and care enough to find elegant solutions to difficult problems, we'd love to hear from you. What skills are essential: Mature understanding of cloud security architecture, with deep expertise in GCP and a proven track record Experience creating a GCP landing zone, configuring services such as organisation policies and VPC Service Controls A deep understanding of GCP IAM and its limitations Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure on GCP (including GKE, Compute Engine, Shared VPC and Cloud SQL) Expertise in Kubernetes, securing clusters (GKE) and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts for automation in Python, Go and other languages while contributing to open-source tools so we can utilise them In-depth knowledge of security principles, technologies, best practices, and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, MITRE ATT&CK Framework and social engineering tactics) The ability to identify potential threats, attack vectors and vulnerabilities in systems and applications The ability to document security requirements from various stakeholders Excellent problem-solving, communication and active listening skills with an innate passion for security The ability to identify security gaps and create solutions to minimise risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing and switching concepts (TCP/IP, BGP, VPNs), security controls (firewalls, WAFs, IDS/IPS), and practical experience designing hybrid connectivity between GCP and on-premise environments Experience with data-residency and regulated-workload controls such as Assured Workloads and Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS / 3DS Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes, and an understanding of integrating security into the software development lifecycle Experience performing secure code reviews and security approvals, including the use of static and dynamic application security testing (SAST / DAST) tools Experience in cryptography management and enhancements Relevant security certifications such as ISC2 CC, CISSP, CCSP, CISM, AWS Security Specialty or GCP Professional Cloud Security Engineer The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Microservice-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process: Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test . click apply for full job details
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - We're looking for a Senior Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on - across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear more from the team in our latest Blog or our case studies with Women in Tech. As a Senior Infrastructure Engineer, you will: Design, document, build and maintain scalable infrastructure on GCP Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness Embrace automation and be reluctant for manual implementation Build systems with security by design as a core foundation Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS Design and operate key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including support for cryptographic key ceremonies Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance Write clear technical documentation and host training sessions for the team Demonstrate knowledge of new technologies and changes in the industry Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine - our approach, tooling, automation and architecture Lead by example in your contributions, setting a high technical bar for others to aim for Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you care enough to find elegant solutions to difficult technical problems, we'd love to hear from you. As a Senior Infrastructure Engineer you will bring the below experience or knowledge: Proven GCP multi-region disaster recovery experience Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise's resource hierarchy Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls Experience writing clean, modular Terraform code Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience with observability tooling - Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana) Experience setting up Google Workspace / Google Cloud Identity Experience with automation using a scripting language like Python or Go Experience implementing CI/CD pipelines An understanding of RESTful API and event-driven concepts Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models Ideally you also have: Experience with Zero Trust security (mTLS, SSO) Experience with AWS Comfortable with bash and either Golang, Java or Python development Understanding of database monitoring, analysis, disaster recovery and performance tuning Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc.) and preferably experience designing and establishing connectivity between GCP and on-premise locations Awareness/ability to leverage Claude Skills during development The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Container-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1.5 hours Final interview with our CTO / deputy CTO - 45 minutes Benefits 33 days holiday (including public holidays, which you can take when it works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Incentives refer a friend scheme Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Engine by Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent . click apply for full job details
22/09/2026
Full time
Description At Engine by Starling , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - We're looking for a Senior Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on - across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear more from the team in our latest Blog or our case studies with Women in Tech. As a Senior Infrastructure Engineer, you will: Design, document, build and maintain scalable infrastructure on GCP Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness Embrace automation and be reluctant for manual implementation Build systems with security by design as a core foundation Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS Design and operate key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including support for cryptographic key ceremonies Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance Write clear technical documentation and host training sessions for the team Demonstrate knowledge of new technologies and changes in the industry Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine - our approach, tooling, automation and architecture Lead by example in your contributions, setting a high technical bar for others to aim for Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you care enough to find elegant solutions to difficult technical problems, we'd love to hear from you. As a Senior Infrastructure Engineer you will bring the below experience or knowledge: Proven GCP multi-region disaster recovery experience Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise's resource hierarchy Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls Experience writing clean, modular Terraform code Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience with observability tooling - Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana) Experience setting up Google Workspace / Google Cloud Identity Experience with automation using a scripting language like Python or Go Experience implementing CI/CD pipelines An understanding of RESTful API and event-driven concepts Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models Ideally you also have: Experience with Zero Trust security (mTLS, SSO) Experience with AWS Comfortable with bash and either Golang, Java or Python development Understanding of database monitoring, analysis, disaster recovery and performance tuning Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc.) and preferably experience designing and establishing connectivity between GCP and on-premise locations Awareness/ability to leverage Claude Skills during development The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Container-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1.5 hours Final interview with our CTO / deputy CTO - 45 minutes Benefits 33 days holiday (including public holidays, which you can take when it works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Incentives refer a friend scheme Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Engine by Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent . click apply for full job details
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
22/09/2026
Full time
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
22/09/2026
Full time
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
With 80 million passengers passing through our airport each year, it takes hundreds of systems, platforms and networks to keep our airport running smoothly, 24 hours a day, 365 days a year. Join us, and you'll thrive on the buzz of providing the technology, data, cyber and digital capabilities that run all the services you'd expect to see in a city, and more. Tech at Heathrow isn't typical. The scale and non-stop nature of our airport make it truly unique. Our Data, Digital and Technology team are leading the way in innovations that will make our airport more efficient, resilient and competitive in an increasingly digital marketplace, as well as keeping Heathrow safe and secure. Every day will test your skills and give you the opportunity to make your mark. We're constantly looking for new ways to help Heathrow transform and grow, responding to the changing needs of passengers, colleagues and partner businesses. It means the chance to work on a huge variety of inspiring projects and to develop in lots of exciting directions. Our team covers technology, cyber defence, data and digital, offering one-of-a-kind careers you won't find anywhere else. Job Overview Join Heathrow as an IT Disaster Recovery Lead and play a pivotal role in safeguarding the resilience of our critical systems. You will be part of a collaborative technology environment, working closely with cybersecurity, IT services, and business continuity teams to ensure Heathrow remains operational under all circumstances. Your work will directly contribute to maintaining service continuity for millions of passengers and supporting the airport's strategic objectives. In this role, you will lead the design, implementation, and continuous improvement of disaster recovery strategies across our IT landscape. Success means ensuring that recovery plans are robust, tested, and aligned with business priorities, minimising downtime and protecting essential services. You will influence key stakeholders, drive compliance with regulatory requirements, and embed a culture of resilience across the organisation. Principal Accountabilities Developing and maintaining comprehensive IT disaster recovery plans aligned with Heathrow's business continuity framework. Coordinating with cybersecurity, IT services, and business continuity teams to identify risks and implement mitigation strategies. Leading regular disaster recovery testing exercises and reporting on outcomes to senior stakeholders. Ensuring compliance with industry standards and regulatory requirements for IT resilience. Providing expert guidance and training to internal teams on disaster recovery best practices. Driving continuous improvement initiatives to enhance recovery capabilities and reduce operational risk. Qualifications, Skills and Experience Proven experience in IT disaster recovery planning and execution within complex organisations. Strong understanding of business continuity principles and IT infrastructure. Excellent stakeholder management and communication skills. Ability to lead cross-functional teams and manage multiple priorities. Knowledge of relevant regulatory and compliance requirements. Analytical mindset with strong problem-solving skills. Ideally, you'll have the following Experience in the aviation or transport sector. Familiarity with cloud-based recovery solutions and emerging technologies. Professional certifications such as CBCI, ITIL, or ISO 22301. About us There's something so special about working at the world's most iconic airport. Its sights. Its sounds. Its constant air of excitement. Heathrow is an amazing backdrop to a career filled with unique opportunities. Every day, you'll discover a world full of fresh possibilities and end the day buzzing with stories to tell, as you encounter people from all cultures, nationalities and experiences. A world full of pride for what we do and no end of exciting career prospects to explore. It brings out the best in all of us. And inspires everyone to deliver on our ambitious plans. Together, we're working to welcome millions more passengers while ensuring aviation can continue to be a force for good by leading global efforts in sustainability. Join us on that journey and we'll help you achieve your ambitions too. Supporting you to learn, encouraging you to be yourself, backing you to achieve more than you might ever have imagined. Because there's no place like Heathrow. Our rewards We offer competitive salaries and excellent benefits that will support you now and in the future. As well as performance-based annual bonuses and our longer-term Share in Success Bonus plans, we also offer generous annual leave allowances and market-leading pensions. With family friendly policies, access to private health insurance and a wide range of wellbeing tools, we'll support you to be at your best inside and outside work. And of course, we'll provide varied learning and development opportunities too. Here you'll find everything you need for a fulfilling career journey that can take you in exciting directions. Working Location Our Hybrid working approach offers the opportunity for colleagues in some roles to work from home for an average of two days a week, providing the flexibility to work in an agile way whilst ensuring we deliver for the operational needs of Heathrow. Working arrangements vary from team to team and will be confirmed during the recruitment process. You'll need to be based in the UK and within a commutable distance to Heathrow. Sustainable Travel to work Heathrow's Sustainable Travel Guide sets out easy and sustainable travel options that everyone can access. Equal Opportunities As an equal opportunities employer, we encourage applications from all. We believe that diverse talent makes us stronger - not least because we welcome passengers from all corners of the globe, every single day. Heathrow is an accessible place to work. With five diversity networks, we champion inclusivity and celebrate individuality.
22/09/2026
Full time
With 80 million passengers passing through our airport each year, it takes hundreds of systems, platforms and networks to keep our airport running smoothly, 24 hours a day, 365 days a year. Join us, and you'll thrive on the buzz of providing the technology, data, cyber and digital capabilities that run all the services you'd expect to see in a city, and more. Tech at Heathrow isn't typical. The scale and non-stop nature of our airport make it truly unique. Our Data, Digital and Technology team are leading the way in innovations that will make our airport more efficient, resilient and competitive in an increasingly digital marketplace, as well as keeping Heathrow safe and secure. Every day will test your skills and give you the opportunity to make your mark. We're constantly looking for new ways to help Heathrow transform and grow, responding to the changing needs of passengers, colleagues and partner businesses. It means the chance to work on a huge variety of inspiring projects and to develop in lots of exciting directions. Our team covers technology, cyber defence, data and digital, offering one-of-a-kind careers you won't find anywhere else. Job Overview Join Heathrow as an IT Disaster Recovery Lead and play a pivotal role in safeguarding the resilience of our critical systems. You will be part of a collaborative technology environment, working closely with cybersecurity, IT services, and business continuity teams to ensure Heathrow remains operational under all circumstances. Your work will directly contribute to maintaining service continuity for millions of passengers and supporting the airport's strategic objectives. In this role, you will lead the design, implementation, and continuous improvement of disaster recovery strategies across our IT landscape. Success means ensuring that recovery plans are robust, tested, and aligned with business priorities, minimising downtime and protecting essential services. You will influence key stakeholders, drive compliance with regulatory requirements, and embed a culture of resilience across the organisation. Principal Accountabilities Developing and maintaining comprehensive IT disaster recovery plans aligned with Heathrow's business continuity framework. Coordinating with cybersecurity, IT services, and business continuity teams to identify risks and implement mitigation strategies. Leading regular disaster recovery testing exercises and reporting on outcomes to senior stakeholders. Ensuring compliance with industry standards and regulatory requirements for IT resilience. Providing expert guidance and training to internal teams on disaster recovery best practices. Driving continuous improvement initiatives to enhance recovery capabilities and reduce operational risk. Qualifications, Skills and Experience Proven experience in IT disaster recovery planning and execution within complex organisations. Strong understanding of business continuity principles and IT infrastructure. Excellent stakeholder management and communication skills. Ability to lead cross-functional teams and manage multiple priorities. Knowledge of relevant regulatory and compliance requirements. Analytical mindset with strong problem-solving skills. Ideally, you'll have the following Experience in the aviation or transport sector. Familiarity with cloud-based recovery solutions and emerging technologies. Professional certifications such as CBCI, ITIL, or ISO 22301. About us There's something so special about working at the world's most iconic airport. Its sights. Its sounds. Its constant air of excitement. Heathrow is an amazing backdrop to a career filled with unique opportunities. Every day, you'll discover a world full of fresh possibilities and end the day buzzing with stories to tell, as you encounter people from all cultures, nationalities and experiences. A world full of pride for what we do and no end of exciting career prospects to explore. It brings out the best in all of us. And inspires everyone to deliver on our ambitious plans. Together, we're working to welcome millions more passengers while ensuring aviation can continue to be a force for good by leading global efforts in sustainability. Join us on that journey and we'll help you achieve your ambitions too. Supporting you to learn, encouraging you to be yourself, backing you to achieve more than you might ever have imagined. Because there's no place like Heathrow. Our rewards We offer competitive salaries and excellent benefits that will support you now and in the future. As well as performance-based annual bonuses and our longer-term Share in Success Bonus plans, we also offer generous annual leave allowances and market-leading pensions. With family friendly policies, access to private health insurance and a wide range of wellbeing tools, we'll support you to be at your best inside and outside work. And of course, we'll provide varied learning and development opportunities too. Here you'll find everything you need for a fulfilling career journey that can take you in exciting directions. Working Location Our Hybrid working approach offers the opportunity for colleagues in some roles to work from home for an average of two days a week, providing the flexibility to work in an agile way whilst ensuring we deliver for the operational needs of Heathrow. Working arrangements vary from team to team and will be confirmed during the recruitment process. You'll need to be based in the UK and within a commutable distance to Heathrow. Sustainable Travel to work Heathrow's Sustainable Travel Guide sets out easy and sustainable travel options that everyone can access. Equal Opportunities As an equal opportunities employer, we encourage applications from all. We believe that diverse talent makes us stronger - not least because we welcome passengers from all corners of the globe, every single day. Heathrow is an accessible place to work. With five diversity networks, we champion inclusivity and celebrate individuality.
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
22/09/2026
Full time
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
22/09/2026
Full time
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
22/09/2026
Full time
Pay of £57,946 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. Please note this role requires you to pass Security Check clearance. DWP. Digital with Purpose. We're looking for an experienced Security and Fraud Risk Manager to help shape public services that are secure by design, resilient to fraud and error, and trusted by the people who rely on them. DWP is the UK's largest government department. We help people into work and make payments worth over £195bn a year that support millions of people across the country. This is an influential advisory role at the heart of service design and delivery. You'll act as a trusted expert on fraud, error and security risk, helping teams across Universal Credit and Working Age Services make informed decisions about how services are designed, delivered and improved. Colleagues will come to you for expert advice when developing new services, changing existing processes, introducing new technology or responding to emerging threats. Drawing on your expertise, you'll identify risks, assess vulnerabilities and recommend practical solutions that protect public money, safeguard citizens and support the delivery of effective public services. The scale of what we do is extraordinary, and the impact of your work will be felt across services used by millions of people every day. We'd love you to join us. To be eligible for this role, you must hold one of the following qualifications: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Governance, Risk and Compliance Professional (GRCP) Or an equivalent security qualification What skills, knowledge and experience will you need? Experience of using security and/or fraud and error strategies, principles and threat assessment approaches to identify, assess and respond to risks. Ability to use threat intelligence or emerging risk information to inform decisions, prioritise activity and support secure or fraud-resilient outcomes. Demonstrable knowledge and practical experience of risk management, including risk identification, assessment, mitigation, response, control monitoring and reporting. Practical experience and understanding of relevant policy and criminal law, including areas such as Nexus, Non-Repudiation and PACE. Practical experience of influencing and negotiating with senior stakeholders, translating business needs and strategic objectives into effective security, fraud and risk solutions. Experience of working with digital delivery teams and an understanding of Agile delivery methodologies. Delivering World-Class Protections You'll work closely with senior leaders, product teams, operational colleagues, security specialists and delivery teams as a trusted adviser on fraud, error and security risk. Teams will look to you for expert guidance when designing services, changing processes or addressing emerging threats. You'll help them understand risks, evaluate options and make informed decisions that balance effective service delivery with strong security and fraud controls. Using your expertise in fraud prevention, citizen identity, risk management and secure design, you'll analyse complex technical, operational and business information and turn it into clear, practical advice. You'll recommend solutions that help teams strengthen controls, reduce vulnerabilities and build services that are secure, resilient and trusted by the public. Your work will help protect public money, safeguard citizens from identity theft and ensure that fraud, error and security risks are identified, understood and managed effectively across Universal Credit and Working Age Services. We're looking for someone with strong analytical skills, sound judgement and the confidence to challenge constructively, influence decisions and build trusted relationships with a wide range of stakeholders. Depending on your experience, support will be available to work towards the Certified in Risk and Information Systems Control (CRISC) qualification. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Birmingham, Leeds, Manchester or Newcastle, whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and some time collaborating face to face in a hub. Pay: We offer competitive pay of £57,946. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%. Holidays: A generous leave package starting at 26 days after one year days rising to 31 days over time. You can also take up to 3 extra days off a month on flexi-time. You'll also get all the usual public holidays. We have a broad benefits package built around your work-life balance which includes: Flexible working including flexible hours and flex-friendly policies Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Sports and social activities Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. There'll be full instructions when you click through. Interview: a single stage interview online. CLICK APPLY for more information and to start your application.
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
22/09/2026
Full time
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
22/09/2026
Full time
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
22/09/2026
Full time
Job Title: Senior Software Engineer Pay up to £80,664 plus 28.97% employer pension contributions, hybrid working, flexible hours, and great work life balance. DWP. Digital with Purpose. Do you want to work on code that counts? We're looking for talented Senior Software Engineers to help shape the future of digital services within the UK's largest government department. You'll work in collaborative, multidisciplinary teams to design and deliver secure, resilient and scalable solutions. Working with technologies including AWS, Kubernetes, Java, microservices and CI/CD, you'll help build and improve platforms that support critical public services at scale. We champion engineering excellence, clean code, automation and continuous improvement. Whether you're influencing technical direction, mentoring others or driving best practice, you'll have the opportunity to help deliver services that work for millions people and transform how government works. Build great software. Solve meaningful problems. Make a difference at scale. What skills, knowledge and experience will you need? Proven experience designing and assuring scalable, resilient and secure technology solutions, ensuring architectural decisions align with organisational strategy, standards and business outcomes. Demonstrated ability to lead within multidisciplinary agile teams, collaborating with engineers, product managers, delivery professionals and senior stakeholders to shape technical direction and delivery. Strong knowledge of cloud-native architectures, including AWS, containerisation technologies such as Docker and Kubernetes, and infrastructure-as-code approaches using Terraform or CloudFormation. Experience designing complex distributed systems, defining architectural patterns, and ensuring solutions are maintainable, interoperable and fit for long-term organisational needs. Understanding of modern software development lifecycles, CI/CD pipelines, automated testing and DevOps principles, ensuring architecture enables efficient and reliable delivery. Proven ability to embed security, accessibility, performance and operational resilience into architectural designs, ensuring services meet governance, compliance and user needs. You and your role Our Senior Software Engineers provide technical leadership, mentor engineers, and champion engineering best practice across DWP Digital. Working in multi-disciplinary agile teams alongside architects, designers, researchers, analysts and testers, you'll design, build and support secure, reliable digital services used by millions of people. You'll help modernise large-scale systems, transforming legacy platforms into resilient, scalable cloud-based architectures. With the freedom to influence technical decisions, you'll play a key role in shaping the future of engineering across one of the UK's largest government departments. Alongside hands-on engineering, you'll share expertise, grow capability and support the development of others across our engineering community. You'll also work with modern cloud technologies, including AWS, Kubernetes and infrastructure-as-code tooling, helping to build and operate cloud-based services that are scalable, resilient and designed for the future. This is an opportunity to solve complex technical challenges, influence technical strategy, and build services that help people access support more quickly and easily. We'll support your development through coaching, mentoring, professional learning and a thriving engineering community. Details. Wages. Perks. Location: You'll join us in one of our brilliant digital hubs in Blackpool, Birmingham, Leeds, Manchester, Newcastle or Sheffield whichever is most convenient for you. Hybrid Working: We work a hybrid model - you'll spend some time working at home and 60% collaborating face to face in a hub. Pay: Pay for this role is from £57,946 to £80,664. The maximum salary for the grade is £68,205 plus a Digital Allowance of up to £12,459 per annum for exceptional candidates, subject to our assessment of capability at interview. Pension: You'll get a brilliant civil service pension with employer contributions worth 28.97%, worth up to £16,786 per year. We have a broad benefits package built around your work-life balance which includes: Time off volunteering and charitable giving Bring your authentic self to work with 'I Can Be Me in DWP' Discounts and savings on shopping, fun days out and more Interest-free loans to buy a bike or a season ticket, so it's even easier for you to get to work and start making a difference Professional development, coaching, mentoring and career progression opportunities. And we have an award-winning environment and culture: DWP have been recognised as 2024 Diversity Employer of the Year at the Computing Women in Tech Excellence awards Diverse and Inclusive Leadership at Digital Leaders Awards 2024 Commended as Best Place to Work in Digital category in the Computing Digital Technology Leaders awards 2025 Recognised as one of the Best Public Sector Employers at 2025 Women In Tech Employer Awards Process: We know your time is valuable, so our application and selection process is just two stages: Apply: complete your application on Civil Service Jobs. Interview: A single stage interview online. CLICK APPLY for more information and to start your application
Description At , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - We're looking for a Staff Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on - across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear more from the team in our latest Blog or our case studies with Women in Tech. As a Staff Infrastructure Engineer, you will: Design, document, build and maintain scalable infrastructure on GCP Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness Embrace automation and be reluctant for manual implementation Build systems with security by design as a core foundation Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS Design and operate key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including support for cryptographic key ceremonies Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance Write clear technical documentation and host training sessions for the team Demonstrate knowledge of new technologies and changes in the industry Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine - our approach, tooling, automation and architecture Lead by example in your contributions, setting a high technical bar for others to aim for Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you care enough to find elegant solutions to difficult technical problems, we'd love to hear from you. As a Staff Infrastructure Engineer you will bring the below experience or knowledge: Proven GCP multi-region disaster recovery experience Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise's resource hierarchy Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls Experience writing clean, modular Terraform code Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience with observability tooling - Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana) Experience setting up Google Workspace / Google Cloud Identity Experience with automation using a scripting language like Python or Go Experience implementing CI/CD pipelines An understanding of RESTful API and event-driven concepts Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models Ideally you also have: Experience with Zero Trust security (mTLS, SSO) Experience with AWS Comfortable with bash and either Golang, Java or Python development Understanding of database monitoring, analysis, disaster recovery and performance tuning Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc.) and preferably experience designing and establishing connectivity between GCP and on-premise locations Awareness/ability to leverage Claude Skills during development The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Container-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1.5 hours Final interview with our CTO / deputy CTO - 45 minutes Benefits 33 days holiday (including public holidays, which you can take when it works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Incentives refer a friend scheme Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Engine by Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application . click apply for full job details
22/09/2026
Full time
Description At , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - We're looking for a Staff Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on - across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear more from the team in our latest Blog or our case studies with Women in Tech. As a Staff Infrastructure Engineer, you will: Design, document, build and maintain scalable infrastructure on GCP Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness Embrace automation and be reluctant for manual implementation Build systems with security by design as a core foundation Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS Design and operate key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including support for cryptographic key ceremonies Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance Write clear technical documentation and host training sessions for the team Demonstrate knowledge of new technologies and changes in the industry Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine - our approach, tooling, automation and architecture Lead by example in your contributions, setting a high technical bar for others to aim for Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you care enough to find elegant solutions to difficult technical problems, we'd love to hear from you. As a Staff Infrastructure Engineer you will bring the below experience or knowledge: Proven GCP multi-region disaster recovery experience Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise's resource hierarchy Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls Experience writing clean, modular Terraform code Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience with observability tooling - Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana) Experience setting up Google Workspace / Google Cloud Identity Experience with automation using a scripting language like Python or Go Experience implementing CI/CD pipelines An understanding of RESTful API and event-driven concepts Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models Ideally you also have: Experience with Zero Trust security (mTLS, SSO) Experience with AWS Comfortable with bash and either Golang, Java or Python development Understanding of database monitoring, analysis, disaster recovery and performance tuning Understanding of networking and routing concepts (TCP/IP, VLANs, VPNs, BGP, etc.) and preferably experience designing and establishing connectivity between GCP and on-premise locations Awareness/ability to leverage Claude Skills during development The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Container-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1.5 hours Final interview with our CTO / deputy CTO - 45 minutes Benefits 33 days holiday (including public holidays, which you can take when it works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Incentives refer a friend scheme Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Engine by Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Engine by Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application . click apply for full job details
Description At , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - As a Security Engineer at Engine, you'll be working on helping to keep our infrastructure secure and compliant and our staff safe and productive. You'll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It's a very varied role with lots of close interaction with the infrastructure, security engineering, cross-cutting and compliance teams. We are looking for an experienced Senior level GCP Security Engineer to join our established Security Engineering team, working closely with Information Security, Infrastructure and the various Engine Technology teams to make sure security is at the heart of all our technical processes. As our subject matter expert, you will take ownership of engineering the security foundations of our Google Cloud Platform environment. This is a hands-on role for a specialist with a proven track record of designing, building, and automating security controls specifically for GCP, including hardened GKE clusters. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech. As a GCP Security Engineer, you will: Collaborate with stakeholders to define our Google Cloud security architecture (cloud identity, runtime security, security posture) Design, document, build and maintain a secure and scalable infrastructure on GCP using Infrastructure as Code Be part of the team responsible for safeguarding our systems, applications and data by ensuring secure user access, authentication and authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have created across our technology teams Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you have an innate passion for security and care enough to find elegant solutions to difficult problems, we'd love to hear from you. What skills are essential: Mature understanding of cloud security architecture, with deep expertise in GCP and a proven track record Experience creating a GCP landing zone, configuring services such as organisation policies and VPC Service Controls A deep understanding of GCP IAM and its limitations Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure on GCP (including GKE, Compute Engine, Shared VPC and Cloud SQL) Expertise in Kubernetes, securing clusters (GKE) and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts for automation in Python, Go and other languages while contributing to open-source tools so we can utilise them In-depth knowledge of security principles, technologies, best practices, and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, MITRE ATT&CK Framework and social engineering tactics) The ability to identify potential threats, attack vectors and vulnerabilities in systems and applications The ability to document security requirements from various stakeholders Excellent problem-solving, communication and active listening skills with an innate passion for security The ability to identify security gaps and create solutions to minimise risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing and switching concepts (TCP/IP, BGP, VPNs), security controls (firewalls, WAFs, IDS/IPS), and practical experience designing hybrid connectivity between GCP and on-premise environments Experience with data-residency and regulated-workload controls such as Assured Workloads and Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS / 3DS Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes, and an understanding of integrating security into the software development lifecycle Experience performing secure code reviews and security approvals, including the use of static and dynamic application security testing (SAST / DAST) tools Experience in cryptography management and enhancements Relevant security certifications such as ISC2 CC, CISSP, CCSP, CISM, AWS Security Specialty or GCP Professional Cloud Security Engineer The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Microservice-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process: Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1 . click apply for full job details
22/09/2026
Full time
Description At , we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success. Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Engine is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, and discovering to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. About Engineering at Engine by Starling - As a Security Engineer at Engine, you'll be working on helping to keep our infrastructure secure and compliant and our staff safe and productive. You'll be working on projects covering identity and access management, cloud and network security, vulnerability management, security monitoring, security hardening, compliance reviews, and more. It's a very varied role with lots of close interaction with the infrastructure, security engineering, cross-cutting and compliance teams. We are looking for an experienced Senior level GCP Security Engineer to join our established Security Engineering team, working closely with Information Security, Infrastructure and the various Engine Technology teams to make sure security is at the heart of all our technical processes. As our subject matter expert, you will take ownership of engineering the security foundations of our Google Cloud Platform environment. This is a hands-on role for a specialist with a proven track record of designing, building, and automating security controls specifically for GCP, including hardened GKE clusters. Engine by Starling engineers are excited about helping us deliver new features, regardless of what their primary tech stack may be. Hear from the team in our latest Blog or our case studies with Women in Tech. As a GCP Security Engineer, you will: Collaborate with stakeholders to define our Google Cloud security architecture (cloud identity, runtime security, security posture) Design, document, build and maintain a secure and scalable infrastructure on GCP using Infrastructure as Code Be part of the team responsible for safeguarding our systems, applications and data by ensuring secure user access, authentication and authorisation mechanisms are in place Engineer and automate technical controls within GCP to ensure and demonstrate continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have created across our technology teams Requirements We're open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. If you have an innate passion for security and care enough to find elegant solutions to difficult problems, we'd love to hear from you. What skills are essential: Mature understanding of cloud security architecture, with deep expertise in GCP and a proven track record Experience creating a GCP landing zone, configuring services such as organisation policies and VPC Service Controls A deep understanding of GCP IAM and its limitations Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure on GCP (including GKE, Compute Engine, Shared VPC and Cloud SQL) Expertise in Kubernetes, securing clusters (GKE) and meshes (Cilium is preferable), networking best practices and RBAC implementation (CKA, CKS qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management on GCP - Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager - including cryptographic key ceremonies Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD Experience configuring and utilising cloud-native security logging, monitoring and detection services Strong programming skills - in security we write our own scripts for automation in Python, Go and other languages while contributing to open-source tools so we can utilise them In-depth knowledge of security principles, technologies, best practices, and threat detection and mitigation strategies Knowledge of common attack vectors and methodologies (OWASP Top 10, MITRE ATT&CK Framework and social engineering tactics) The ability to identify potential threats, attack vectors and vulnerabilities in systems and applications The ability to document security requirements from various stakeholders Excellent problem-solving, communication and active listening skills with an innate passion for security The ability to identify security gaps and create solutions to minimise risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing and switching concepts (TCP/IP, BGP, VPNs), security controls (firewalls, WAFs, IDS/IPS), and practical experience designing hybrid connectivity between GCP and on-premise environments Experience with data-residency and regulated-workload controls such as Assured Workloads and Access Transparency, relevant to deploying per-market for different banks' regulators Hands-on experience taking a company through security and compliance frameworks like NIST, SOC 2, ISO 27001 and PCI DSS Experience automating security controls and compliance checks against standards and frameworks including SOC 2, ISO 27001 and PCI DSS / 3DS Container security knowledge including container image provenance (e.g. Sigstore, Notary) with an in-depth knowledge of container runtimes, and an understanding of integrating security into the software development lifecycle Experience performing secure code reviews and security approvals, including the use of static and dynamic application security testing (SAST / DAST) tools Experience in cryptography management and enhancements Relevant security certifications such as ISC2 CC, CISSP, CCSP, CISM, AWS Security Specialty or GCP Professional Cloud Security Engineer The main part of our tech stack is listed below. We don't ask that you have experience in all of it, but if you do, that's great! Java, which makes up the majority of our backend codebase GCP and AWS - we're cloud-native Microservice-based architecture Kubernetes (GKE on GCP, EKS on AWS) TeamCity for CI/CD (with multiple production releases per day) Terraform and Grafana RDS and CloudSQL for PostgreSQL Our Interview Process: Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team: Initial interview with an Engineer - 45 minutes Take-home technical test, to be discussed in the next interview Technical interview with some Engineers - 1 . click apply for full job details