About the job
Join AJ Bell as a Senior Information Security Engineer, where you will play a pivotal role in supporting the Chief Information Security Officer (CISO) in overseeing and reporting on information security risks throughout our Technology Services. In this dynamic role, you will lead the design, implementation, and continuous enhancement of enterprise security solutions, driving innovation, automation, and seamless integration across our technology landscape.
Key Responsibilities:
Oversee the delivery and ongoing management of cutting-edge enterprise security solutions across Endpoint, Cloud, Network, DevOps, and Security Monitoring.
Design and implement robust infrastructure controls that align with industry best practices.
Research, evaluate, and deploy new enterprise security tools and platforms.
Facilitate the adoption of new technologies, ensuring effective transition and realization of value.
Lead and coordinate patch management efforts across internal systems and hardware.
Advise on server hardening enhancements in collaboration with Infrastructure and Service Delivery teams.
Provide support for audits, regulatory reviews, and due diligence initiatives.
Deliver security guidance on projects and change initiatives to uphold AJ Bell’s security integrity.
Act as a liaison between the CISO function and Infrastructure teams.
Contribute to the ongoing improvement of cybersecurity risk management processes.
Technical Expertise:
Demonstrable experience in deploying enterprise security platforms.
Solid understanding of security risk management tools and methodologies.
Extensive knowledge of security solutions, including SIEM, PAM, IGA, email/web gateways, and endpoint protection.
Experience with firewall technologies is highly desirable.
Familiarity with cloud security standards and solutions is a plus.
Strong grasp of core IT and networking principles.
Awareness of the current threat landscape and emerging attack vectors.
Experience & Qualifications:
Experience working within recognized frameworks such as ISO27001, NIST, or similar.
Significant background in IT security.
Experience in the financial services or e-commerce sector is preferred.
CISSP certification (achieved or in progress) is desirable.

