Principal Information Security Engineer

Company: AJ Bell
Apply for the Principal Information Security Engineer
Location: London
Job Description:

Overview

As Principal Information Security Engineer you will provide technical leadership to the security engineering team, guiding design validation and safe delivery of security solutions. You’ll ensure BAU and project work meet high standards and align with security strategy, while connecting strategy to operational outcomes. You will partner with Architecture and Operations to strengthen enterprise security, scale controls, and drive improvements. This role offers impact through hands-on leadership, robust governance, and shaping the tooling roadmap in a fast-paced, growth-focused environment.

Pay / Benefits

  • Competitive salary
  • 26 days holiday plus bank holidays
  • 7% pension with matched contributions
  • Discretionary bonus scheme
  • Share schemes including free shares
  • Health cash plan and private healthcare

Responsibilities

  • Serve as the primary technical escalation point for complex challenges and provide hands-on guidance
  • Oversee day-to-day security engineering execution and ensure SLAs are met
  • Ensure quality and consistency of engineering outputs across projects, tasks, and documentation
  • Support delivery of the security tooling roadmap, translating strategy into operational outcomes
  • Collaborate with Information Security Architecture to validate designs for robustness and scalability
  • Work with Information Security Operations to improve efficiency and integrate security controls
  • Provide technical leadership and mentoring to engineers to deliver secure, automated solutions

Key requirements

  • Experience implementing enterprise security platforms
  • Hands-on experience with Microsoft security stack
  • Experience managing diverse end-user compute environments (Windows, MacOS, Linux, mobile)
  • Knowledge of firewalls and cloud security solutions (advantageous)
  • Understanding of email/web gateways, PAM, IGA, SIEM, endpoint protection
  • Knowledge of information security risk management tools and techniques
  • Awareness of information security control standards and frameworks (ISO27001, NIST)
  • Experience with automation and scripting (desirable)
  • Experience in financial services or e-commerce security environments (preferred)
  • CISSP certification (attained or in progress)
  • Strong ownership and attention to detail
  • Ability to challenge approach and drive security improvements
  • Effective written and verbal communication
  • Enterprise security platforms
  • Microsoft security stack
  • Multi-OS and mobile compute security

Posted: September 14th, 2026