Capco

Principal Security Engineer

Capco London, England, United Kingdom

Financial Services · 5,001-10,000 employees

3 h ago
security Principal (10+ yrs) Full-time United Kingdom
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

You will lead the design and implementation of secure systems across cloud and on-premise platforms while embedding security-by-design principles into the SDLC. Additionally, you will champion secure development practices, integrate automated security tooling, and manage vulnerability assessments and security audits.

What they look for

Security engineering Cloud security AWS Azure GCP Secure coding Endpoint protection SIEM IAM Python Bash PowerShell Go Zero Trust Architecture DevSecOps Vulnerability assessment

Requirements

The role requires strong hands-on experience with security ecosystems like Palo Alto or Microsoft and deep expertise in cloud security platforms. Candidates should also possess proficiency in security automation scripting and familiarity with industry frameworks such as ISO 27001, NIST, and OWASP.

Benefits

Discretionary bonus Competitive pension Health insurance Life insurance Critical illness cover Mental health support Maternity leave Adoption leave Shared parental leave Backup care sessions Annual leave Training Online GP services Wellhub Travel insurance Tastecard Season ticket loans Cycle to work Dental insurance

Full description

Principal Security Engineer

Location: London (Hybrid) | Practice Area: Technology & Engineering | Type: Permanent

Lead advanced security engineering initiatives that safeguard the future of digital finance

The Role

As a Principal Security Engineer at Capco, you’ll lead the design and implementation of secure systems and processes across cloud and on-premise platforms. You’ll collaborate closely with engineering and client teams to embed security-by-design principles throughout the SDLC, integrate automated security tooling, and ensure resilience against evolving cyber threats. You’ll also use approved AI tools and AI-enabled workflows where appropriate to improve the speed, quality and effectiveness of security engineering, while maintaining human judgement, responsible AI guardrails and appropriate review and escalation.

What You’ll Do

• Design and implement enterprise-wide security controls and frameworks, using approved AI and automation where appropriate to improve security outcomes

• Embed security controls into CI/CD pipelines (SAST, SCA, DAST, container scanning) and enable secure SDLC practices

• Collaborate across teams to champion secure development practices and responsible use of AI-enabled security workflows

• Lead vulnerability assessments, code reviews and security audits across infrastructure and applications, maintaining appropriate human review, audit trails and escalation pathways

• Develop and evolve security standards, engineering patterns and data protection strategies

What We’re Looking For

• Strong hands-on experience with Palo Alto, Microsoft or similar security ecosystems

• Deep understanding of cloud security for AWS, Azure or GCP platforms

• Proven expertise in secure coding, endpoint protection, SIEM and IAM

• Familiarity with frameworks and standards such as ISO 27001, NIST and OWASP, alongside an understanding of responsible AI, security guardrails and human-in-the-loop controls

• Proficiency in Python, Bash, PowerShell or Go for security automation and tool development, with experience implementing Zero Trust Architecture solutions

Bonus Points For

• Certifications such as CISSP, CSSLP or cloud-specific credentials

• Experience building or integrating AI-enabled security tooling, automation and responsible AI guardrails

• Experience mentoring engineering teams and driving security awareness

• Advanced knowledge of DevSecOps tools and practices

• Exposure to financial services security and regulatory requirements, with a passion for staying current with cyber trends and emerging threat landscapes

Why Join Capco

• Deliver high-impact technology solutions for Tier 1 financial institutions

• Work in a collaborative, flat, and entrepreneurial consulting culture

• Access continuous learning, training, and industry certifications

• Be part of a team shaping the future of digital financial services

• Help shape the future of digital transformation across FS & Energy.

Benefits

We offer a competitive, people-first benefits package designed to support every aspect of your life:

  • Core Benefits: Discretionary bonus, competitive pension, health insurance, life insurance and critical illness cover.
  • Mental Health: Easy access to CareFirst, Unmind, Aviva consultations, and in-house first aiders.
  • Family-Friendly: Maternity, adoption, shared parental leave, plus paid leave for sickness, pregnancy loss, fertility treatment, menopause, and bereavement.
  • Family Care: Eight complimentary backup care sessions for emergency childcare or elder care.
  • Holiday Flexibility: Five weeks of annual leave with the option to buy or sell holiday days based on your needs.
  • Continuous Learning: Your growth, your way—minimum 40 hours of training annually through workshops, certifications, and e-learning. You'll also be assigned a Business Coach from Day One to support your professional development.
  • Healthcare Access: Convenient online GP services.
  • Extra Perks: Wellhub (Gympass), travel insurance, Tastecard, season ticket loans, Cycle to Work, and dental insurance.

Inclusion at Capco

We're committed to making our recruitment process accessible and straightforward for everyone. If you need any adjustments at any stage, just let us know—we'll be happy to help. We value each person's unique perspective and contribution. At Capco, we believe that being yourself is your greatest strength. Our #BeYourselfAtWork culture encourages individuality and collaboration—a mindset that shapes how we work with clients and each other every day.

#LI-DNI

Similar roles