Senior Security Engineer
Change Grow Live · £63K–£67K/yr
Hospitals and Health Care · 1,001-5,000 employees
About the role
The Senior Security Engineer will design and improve security controls across cloud and hybrid infrastructure while leading incident response and vulnerability management efforts. They will also act as a technical authority to strengthen threat detection and ensure alignment with security standards like ISO 27001.
What they look for
Requirements
Candidates must have senior-level experience in security engineering with strong expertise in cloud platforms like Azure and AWS. Proficiency in scripting, identity management, and incident investigation is essential, along with the ability to influence technical decision-making.
Benefits
Full description
Overview
Senior Security Engineer
Digital & Information Technology | Full Time
Protect the technology behind life-changing services.
Cyber security at Change Grow Live is about more than protecting systems.
It protects the digital services thousands of colleagues rely on to support people across the UK.
We’re looking for a Senior Security Engineer to join our Cloud, Infrastructure and Security team and help shape the next stage of our cyber security capability.
You’ll design modern security controls across Microsoft Azure, Microsoft 365, AWS and hybrid infrastructure—combining hands-on engineering with the influence to strengthen architecture, standards and technical decision-making across Digital & IT.
This isn’t a role where you simply respond to risk.
You’ll help us stay ahead of it.
The impact you’ll make
You’ll be a senior technical authority for security, helping ensure our platforms, applications and services remain secure, resilient and aligned with organisational priorities.
From strengthening cloud architecture to leading the response to complex incidents, you’ll focus on the areas that present the greatest risk and opportunity.
You’ll:
- Design and improve security controls across Azure, AWS and Microsoft 365.
- Lead incident response, vulnerability management and remediation activity.
- Strengthen threat detection through SIEM, EDR, NDR and proactive threat hunting.
- Embed secure-by-design and Zero Trust principles across technical projects.
- Improve identity, access governance, endpoint, network and infrastructure security.
- Support continued alignment with Cyber Essentials Plus, ISO 27001 and the Cyber Assessment Framework.
You’ll also develop playbooks and technical standards, support audit and governance activity, evaluate new security technologies and use scripting and automation to make our security operations faster and more effective.
Why this opportunity?
You’ll join a national organisation that is investing in modern technology and strengthening its cyber security maturity.
You’ll have genuine influence over our security architecture, tooling and technical direction—while working with cloud platforms and services that have a clear social purpose.
This is an opportunity to build stronger defences, develop the capability of others and shape security improvements that will last.
Where you’ll work
Location: This is a hybrid role, and your contractual base will be the Change Grow Live office closest to your home.
You’ll work remotely for part of the week, with office attendance required when needed. The role will also involve occasional travel to Change Grow Live locations across the UK, including overnight stays where necessary.
Contract: Permanent
Hours: Full time, 37.5 hours per week.
Due to the nature of cyber security operations, occasional out-of-hours support may be required in response to significant incidents or business needs.
Please note: Full-time hours at Change Grow Live are 37.5 hours per week. For part-time roles, the salary and any associated payments will be pro rata based on contracted hours.
Responsibilities
What you’ll bring
You’re an experienced security engineer who can move confidently between strategy and delivery.
You’ll be comfortable investigating a complex incident, reviewing a solution design and explaining technical risk to colleagues from different disciplines.
You’ll bring:
- Senior-level experience in security engineering or security operations.
- Strong cloud security expertise across Azure, Microsoft 365 and AWS.
- Deep knowledge of identity and access management, Zero Trust, encryption and endpoint security.
- Hands-on experience with SIEM, EDR, NDR and vulnerability-management tooling.
- Strong scripting and automation skills using PowerShell, Bash or Python.
- Experience leading incident investigations across production environments.
- Strong knowledge of networking, firewalls, VPNs and hybrid infrastructure.
- The ability to influence decisions, mentor engineers and translate complexity into clear action.
Professional certifications such as Azure Security Engineer, Microsoft Cybersecurity Architect, AWS Security Specialty, CISSP, CCSP or CompTIA Security+ would be valuable. Experience with Terraform, ARM, Bicep, SOC operations or threat intelligence would also be welcomed.
What we’ll give you
You’ll join a collaborative Digital & IT function where your expertise will be valued and your professional development supported.
You’ll also receive:
- 25 days’ annual leave plus bank holidays, increasing to 30 days with service.
- A paid Wellness Hour every week.
- Access to our Wellness Hub and Employee Assistance Programme.
- A contributory pension scheme.
- Learning, development and career opportunities.
- Employee discounts across shopping, cinema, holidays and more.
- Our Refer a Friend Scheme.
Our values—Be open. Be compassionate. Be bold.—guide everything we do. If they reflect the way you work, we’d love to hear from you.
When completing your application, show us how your technical expertise, security leadership and approach to continuous improvement align with the essential requirements of the role.
A note about using AI in your application
AI can be a really helpful tool when putting together your application, and we're happy for you to use it. However, what we're most interested in is you.
We want to understand your experiences, achievements and strengths, so please make sure your application reflects your own story and clearly shows how you meet the essential criteria and the impact you've made in previous roles.
There's no need to write in a particular style. The strongest applications are those that are authentic, specific and clearly demonstrate your skills, experience and potential. We look forward to learning more about you.
We reserve the right to close this opportunity early if we receive a high number of applications, so we encourage you to apply as soon as possible.
This opportunity may be eligible for visa sponsorship. Applicants must already have the right to work in the UK at the time of application.
Please note that we are not accepting applications from recruitment agencies for this vacancy. Direct applications only.
Salary Range (pro rata if part time)
CGL points 55 to 58 (£62,849.32 - £66,528.65) ILW / OLW /Fringe
N/A - Outside London Weighting Area Closing Date
9/8/2026 If you have any questions on this opportunity that you would like to talk through please contact us using the below details:
Joshua Bridgens | josh.bridgens@cgl.org.uk | 07771115801
This post is subject to a Disclosure and Barring Service (DBS) Scheme check at a basic level.