Security Engineer

Security Engineer

Posted 2 weeks ago by LA International Computer Consultants Ltd

£530 Per day
Inside
Hybrid
City of London, UK

Summary: The Security Engineer role involves designing and implementing cyber security strategies and controls within GCP and Azure environments. The position requires collaboration with various teams to create engineering guardrails and patterns that guide users in meeting security requirements. The contractor will also be responsible for user acceptance testing and ensuring governance for engineering patterns. This is a hybrid role based in London for a duration of six months.

Key Responsibilities:

  • Creating formats for security control guidance for users.
  • Engineering guardrails to help users identify strategic solutions for their use cases.
  • Documenting engineering patterns for security controls across various technologies and environments.
  • Collaborating with Product Owners and Engineering Leads to identify unique use cases.
  • Populating engineering patterns with feature team engineers.
  • Conducting user acceptance testing for initial engineering patterns.
  • Ensuring proper governance for each engineering pattern.
  • Initiating maintenance review cycles for completed documents.
  • Publishing completed engineering patterns in the Group Security Reference Architecture.

Key Skills:

  • Experience with Engineering Guardrails and Engineering Patterns for CSO controlled security technologies.
  • Ability to develop Engineering Guardrail and Pattern Templates.
  • Experience in creating user acceptance testing templates.
  • Proficiency in uploading finished templates to GSRA SharePoint.
  • Strong communication, negotiation, and client-facing skills.
  • Proactive approach in guiding customers through decision-making processes.

Salary (Rate): £530 per day

City: City of London

Country: UK

Working Arrangements: hybrid

IR35 Status: inside IR35

Seniority Level: Mid-Level

Industry: IT

Detailed Description From Employer:

Job title: Security Engineer
Hybrid - 3 days in London
Duration of assignment: 6 months

Role description:
Cyber Security Designs, Strategies, and Security Patterns, data security and compliance by implementing GCP, Azure security best practices, managing IAM roles and permissions, GCP, Azure environments by implementing robust security controls, encryption, and access management policies

Key responsibilities:

-Each team that owns a security control has been responsible for creating the format they use to guide the consumers of that control
1. Engineering Guardrails that help security control users identify the strategic solution to meet their use case and map to the appropriate engineering pattern
a. Depending on the type of security control, the security control users would know the use case they need to meet, the technology they are using, and the environment it's needed it.

2.Engineering Patterns tell the security control users how to use the required control on the technology/platform they are using and for each environment/datacentre. Many of the engineering patterns will be the same regardless of the technology/platform or environment/datacentre. But when those variables do impact HOW a user onboards a given security control, patterns specific to their overall use case is required.
Each technology that is used to meet security use cases will have engineering patterns documented.
Engineering patterns will be mapped to an engineering guardrail
There will be an engineering pattern for each variation that is needed to meet known use cases. For example, if different steps are required to onboard the security control on different technologies, platforms, environments, or datacentres, unique patterns will be written for each known combination resulting in needing to follow different steps.
LBG GSRA and AccSec Teams agree on prioritised list of Technologies that need to have Engineering Patterns generated
Contractor will work with relevant Product Owner and Engineering Leads to identify each unique use case that requires an engineering pattern
Contractor will work with feature team's engineers to populate the engineering pattern for each unique use case
Initial engineering patterns will go through user acceptance testing to ensure the intended audience is able to use the document as expected
LBG GSRA and AccSec Teams will work with contractor to ensure proper governance is achieved for each engineering pattern
The maintenance review cycle will be initiated from the date the document completed governance assurance.
Completed engineering pattern will be added to applicable engineering guardrail and published in the Group Security Reference Architecture

Key skills/knowledge/experience:

-Both the Engineering Guardrails and the Engineering Patterns are needed for most, if not all, CSO controlled security technologies. The Accelerated Security Workstream and Group Security Reference Architecture team will work with the contractor to prioritise the order the technologies are documented.

-Developing Engineering Guardrail Template
-Developing Engineering Pattern Template
-User acceptance testing templates
-Test and learn of templates
-Upload finished templates to GSRA SharePoint

Person specification: ie, negotiating, client facing, communication, assertive, team leading/team member skills, supportive. Excellent communication skills is a must and should be willing to stretch to fulfil any complex customer requirements. Must be proactive in guiding and helping the customer in their decision-making process

LA International is a HMG approved ICT Recruitment and Project Solutions Consultancy, operating globally from the largest single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds.

Award Winning LA International, winner of the Recruiter Awards for Excellence, Best IT Recruitment Company, Best Public Sector Recruitment Company and overall Gold Award winner, has now secured the most prestigious business award that any business can receive, The Queens Award for Enterprise: International Trade, for the second consecutive period.