Job Introduction
Cyber Security Engineer
Here at BPP (part of Lyceum Education Group) our Product & Technology department are constantly working to push the limits on innovation and delivery, to create excellence in technical services for our students, clients and learners.
We are now looking for an experienced Security Engineer to join the team and provide crucial vulnerability management. You will be deployed in Cloud environments, and responsible for the design and implementation of secure coding practices.
What if you read the description and don't meet every single requirement? We encourage you to apply anyway - we value diverse backgrounds and are committed to inclusivity!
Why work for BPP?
We know that work is just one part of your life. That is why we offer a thoughtfully designed benefits package that supports your wellbeing, flexibility and personal priorities, alongside your career growth. Whether it is time to recharge, support for your health, or opportunities to develop, we want you to feel supported every step of the way.
Full details of our benefits can be found here: BPP Benefits
What you’ll be doing
In this role you will work cross-functionally with Platform, Engineering and Product teams and ensure that security is embedded into the software development lifecycle
As such, you will be responsible for:
- Secure Coding: Conducting secure code reviews and assist in identifying common vulnerabilities (e.g., XSS, CSRF, injection). And collaborating with developers to implement secure coding standards.
- Cloud Security: You will support the configuration of secure settings across our Cloud Infrastructure, and monitor compliance and misconfigurations. Alongside developers you will enforce security policies across the SDLC and support secure architecture for cloud-native and hybrid systems.
- Vulnerability Management: Including patching and remediation co-ordination you'll conduct regular vulnerability assessments and scans, use risk based analysis to identify and prioritise issues for remediation.
- Communication & Collaboration: Work cross-functionally across Platform, IT and Compliance teams and help to lead workshops or knowledge sharing sessions for staff and engineers.
What we’re looking for
To be successful in this role you will need to have a proven track record in the following areas:
- 2–5 years of experience in cloud or application security.
- Familiarity with common vulnerabilities and tools
- Experience in secure SDLC practices and CI/CD pipeline security.
- Proficiency in one or more programming languages (e.g., Python, Java, JavaScript).
- Hands-on experience with IAM tools and practices.
- Knowledge of cloud platforms (AWS preferred).
- Strong communication skills and ability to work in cross-functional teams.
How will this process work?
The interview process for this position will consist of the following stages:
- Competency style interview
- Technical interview
- Final interview
Please note that the successful candidate will be required to undergo BASIC DBS check
As a Disability Confident employer, BPP is committed to providing reasonable adjustments throughout the interview process. Candidates are encouraged to share any adjustment requirements ahead of interview so these can be considered and accommodated.
BPP (part of Lyceum Education Group) actively promotes equality of opportunity for all with the right mix of talent, skills and potential, and welcomes applications from a wide range of candidates. BPP will select candidates for interview based on their skills, qualifications and experience. Please note that for those posts that are exempt from the Rehabilitation of Offenders Act 1974, the successful candidate will be required to undertake a DBS check in addition to BPP undertaking any necessary online searches. This is deemed appropriate and necessary from a safeguarding perspective, and in line with BPP safer recruitment practices
BPP reserves the right to amend or withdraw this advertisement at any time prior to the closing date, should we receive a high volume of applications or if business needs change.
