Managing Engineer - Security (hybrid)

Allstate Allstate · Insurance · Belfast, United Kingdom +1

Allstate is seeking a Managing Security Engineer to lead a team responsible for designing, building, and operating enterprise security controls as software products. This hands-on leadership role involves setting technical direction, guiding architecture, coaching engineers, and ensuring the delivery of high-quality, secure software integrated into the SDLC and enterprise platforms. The role requires strong technical expertise in software engineering, distributed systems, cloud environments, and API development, along with people leadership and agile execution skills. Experience in security engineering domains like application security, cloud security, or DevSecOps is desirable.

What you'd actually do

  1. Lead and manage an engineering team delivering security controls as software products, including hiring, onboarding, coaching, performance management, and career development
  2. Set technical direction for the team and drive high-quality execution across design, implementation, deployment, and production support of security controls
  3. Serve as a hands-on technical leader by contributing to architecture and design reviews, guiding technical decisions, performing code reviews, and supporting critical-path implementation as needed
  4. Own operational outcomes for the team’s products in production, including reliability, performance, and continuous improvement through feedback and learning loops
  5. Partner with Digital Product Managers, platform teams, and engineering stakeholders to effect alignment across roadmaps, priorities, and delivery plans spanning multiple product portfolios

Skills

Required

  • Minimum of 5 years of professional software engineering experience, including hands on production coding in modern languages (e.g., Java, JavaScript, Python) and ownership of production systems delivering measurable reliability, performance, or security outcomes
  • A minimum of 2 years' experience leading engineers through hands on technical guidance, including architecture reviews, design decisions, and code reviews
  • Proven background in building and operating scalable, distributed systems in cloud environments, including microservices-based architectures
  • Track record of designing, evolving, and integrating APIs and backend services, with attention to reliability, scalability, and security considerations
  • Practical application of modern engineering practices such as test-driven development, paired programming, CI/CD pipelines, and operational feedback loops including monitoring and observability
  • Experience operating within agile delivery environments, partnering closely with Digital Product Managers and engineering stakeholders to deliver outcomes

Nice to have

  • Demonstrated depth in security engineering domains such as application security, cloud security, DevSecOps, or secure software development practices
  • Practical experience designing or operating security controls embedded into CI/CD pipelines, developer workflows, or shared platform services
  • Proven ability to influence technical decisions beyond the immediate team, driving adoption of secure patterns, standards, or reusable capabilities across product areas
  • Experience mentoring senior engineers and emerging technical leaders, with a focus on raising engineering quality and long-term team capability
  • Strong organizational awareness and the ability to navigate cross-team dependencies while maintaining delivery momentum and technical integrity
  • Exposure to cloud-native and containerized environments (e.g., Kubernetes, Docker, AWS and/or Azure) and the security considerations that accompany them
  • Familiarity with security metrics and operational signals (e.g., control adoption, reliability, incident reduction) used to evaluate engineering and security outcomes
  • Strong mindset of balancing delivery velocity, security rigor, and developer experience, making thoughtful tradeoffs appropriate to context
  • Demonstrated commitment to building solutions that balance robust security guarantees with an excellent developer experience, without compromising one for the other

What the JD emphasized

  • legal right to work in the UK
  • Minimum of 5 years of professional software engineering experience
  • A minimum of 2 years' experience leading engineers