Lead Security Engineer

Posted 14 Days Ago
Be an Early Applicant
2 Locations
In-Office or Remote
Senior level
Information Technology
The Role
Lead Security Engineer responsible for directing security engineering and testing across platforms and services, defining testing methodology and tools, performing penetration testing and secure code assessment, embedding security in CI/CD pipelines, threat modelling, and mentoring junior engineers while liaising with stakeholders and customers. Role requires defence experience and an active security clearance.
Summary Generated by Built In
Join Kainos and Shape the Future 

At Kainos, we’re problem solvers, innovators, and collaborators - driven by a shared mission to create real impact. Whether we’re transforming digital services for millions, delivering cutting-edge Workday solutions, or pushing the boundaries of technology, we do it together.

We believe in a people-first culture, where your ideas are valued, your growth is supported, and your contributions truly make a difference. Here, you’ll be part of a diverse, ambitious team that celebrates creativity and collaboration.

Ready to make your mark? Join us and be part of something bigger.

MAIN PURPOSE OF THE ROLE & RESPONSIBILITIES IN THE BUSINESS:
As a Lead Security Engineer (Consultant) in Kainos, you will be responsible for leading our security engineering and security testing efforts across Kainos Platforms and Services. They will set direction on our security testing methodology, engagement scoping, outputs and tool/technology selections, whilst developing our more junior security engineers accordingly.
They’ll work with agile delivery teams to develop good security practices throughout the software development journey. As a technical leader in the team, you will share knowledge and help educate our customers and Kainos team members on good security practices.
You’ll manage, coach and develop a small number of staff, with a focus on managing employee performance and assisting in their career development. You’ll also provide direction and leadership for your team as you solve challenging problems together.
MINIMUM (ESSENTIAL) REQUIREMENTS
• Expertise in securing Web Applications and Cloud Platforms (e.g. AWS/Azure).

• Experience in Defence Sector

• Current, Active Security Clearance
• Expertise of testing software and infrastructure security using existing manual or automated security tools, e.g. perform and document penetration tests on web-based applications, networks and computer systems.
• Expertise in assessing software and infrastructure source code from a security standpoint.
• Expertise in Continuous Security, Continuous Integration and Continuous Delivery techniques
• Knowledge of international security standards and regulations such as NCSC, NIST, CIS, PCI, GDPR, OWASP ASVS, HIPPA, SOC2 etc.
• Knowledge of typical cyber security attack vectors (e.g. OWASP Top 10, SQL, XSS, XXE, MITM etc.) and can articulate threats and risk via threat modelling exercises/workshops
• Excellent communication skills, with the ability to convey security complexities to audiences of various technical abilities.
• We are passionate about developing people – a demonstrated ability in managing, mentoring and coaching members of your team and wider community is important
• Good programming or scripting experience across Windows/Linux/MacOS
• Stays up to date with new threats and attack types.
DESIRABLE
• Penetration testing qualifications (e.g. OSCP, CREST, TIGER or equivalent)
• Experience of working with the external penetration test companies to translate report findings into actionable tasks.
• Experience with security tools (e.g. Burp Suite, OWASP-ZAP, NMAP, Nessus, Kali, Metasploit etc.)
• Knowledge about main cyber security areas (e.g. OSINT, network scanning, enumeration, sniffing, session hijacking, social engineering, firewalls, honeypots, IDS/IPS/WAF/AV/DLP, Cryptography/PKI,IoTthreats, trojans/viruses/worms/backdoors/ransomware, etc.)
• Active participation in knowledge sharing activities, both within the team and at a wider level
• Active in the security community – conference speaking, active sharing of knowledge externally
• Experience of working in an Agile environment

Embracing our differences   

At Kainos, we believe in the power of diversity, equity and inclusion. We are committed to building a team that is as diverse as the world we live in, where everyone is valued, respected, and given an equal chance to thrive.   We actively seek out talented people from all backgrounds, regardless of age, race, ethnicity, gender, sexual orientation, religion, disability, or any other characteristic that makes them who they are.   We also believe every candidate deserves a level playing field. 

Our friendly talent acquisition team is here to support you every step of the way, so if you require any accommodations or adjustments, we encourage you to reach out. 

We understand that everyone's journey is different, and by having a private conversation we can ensure that our recruitment process is tailored to your needs.


Skills Required

  • Expertise in securing web applications and cloud platforms (e.g., AWS/Azure)
  • Experience in Defence Sector
  • Current, Active Security Clearance
  • Expertise testing software and infrastructure security (manual and automated penetration testing)
  • Expertise assessing software and infrastructure source code from a security standpoint
  • Expertise in Continuous Security, Continuous Integration and Continuous Delivery techniques
  • Knowledge of international security standards and regulations (NCSC, NIST, CIS, PCI, GDPR, OWASP ASVS, HIPAA, SOC2)
  • Knowledge of typical cybersecurity attack vectors (OWASP Top 10, SQL, XSS, XXE, MITM) and threat modelling
  • Excellent communication skills to convey security complexities to varied technical audiences
  • Demonstrated ability in managing, mentoring and coaching team members
  • Good programming or scripting experience across Windows, Linux and MacOS
  • Keeping up to date with new threats and attack types
  • Penetration testing qualifications (e.g., OSCP, CREST, TIGER or equivalent)
  • Experience working with external penetration test companies to translate findings into actionable tasks
  • Experience with security tools (Burp Suite, OWASP-ZAP, Nmap, Nessus, Kali, Metasploit)
  • Active participation in knowledge sharing and security community activities (conference speaking, external sharing)
  • Experience of working in an Agile environment

Kainos Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Kainos and has not been reviewed or approved by Kainos.

  • Healthcare Strength Private healthcare, access to trained counsellors/EAP, and broader wellbeing initiatives are prominently offered across regions. Company materials frame support across emotional, physical, social, career and financial wellbeing, with UK references to Bupa coverage.
  • Leave & Time Off Breadth Hybrid/flexible hours, generous vacation packages, and parental leave are emphasized in careers materials. Some regions also highlight volunteering time and flexibility that support work–life balance.
  • Equity Value & Accessibility Annual share awards and employee share plans (e.g., free shares, Sharesave) are widely promoted, with cash equivalents where plans aren’t available. These programs broaden ownership participation beyond base pay.

Kainos Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Belfast
2,999 Employees
Year Founded: 1986

What We Do

At Kainos we use technology to solve real problems for our customers, overcome big challenges for businesses, and make people’s lives easier. We build strong relationships with our customers and go beyond to change the way they work today and the impact they have tomorrow. Our two specialist business areas, Digital Services and the Workday Practice, work globally for clients across healthcare, commercial and the public sector to make the world a little bit better, day by day.

Similar Jobs

CrowdStrike Logo CrowdStrike

Senior Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
United Kingdom
11000 Employees

Halter Logo Halter

'The Returners' Talent Pool

Greentech • Hardware • Internet of Things • Machine Learning • Software • Business Intelligence • Agriculture
In-Office or Remote
8 Locations
350 Employees

Samsara Logo Samsara

Consultant

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
UK
4000 Employees

Samsara Logo Samsara

Senior Security Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
UK
4000 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account