2 months ago
London, United KingdomStaff+
Responsibilities
- Design and build security observability capabilities across systems, infrastructure, and applications.
- Develop automated control monitoring, evidence collection, and continuous testing solutions.
- Partner with engineering, data, and technology teams to embed security controls into products and platforms.
- Improve security event monitoring, exposure management, and alerting capabilities.
- Conduct security reviews of new products, services, and technology initiatives.
- Build security metrics and reporting to support decision-making.
- Evolve security policies, standards, and technical guardrails through automation and measurable outcomes.
- Contribute to access governance and security control assurance for human and non-human identities.
- Act as a technical leader and trusted security advisor across the technology organization.
Requirements
- Strong background in security engineering, information security, governance, risk, or compliance.
- Experience building security controls and automated security solutions in modern cloud environments.
- Knowledge of SIEM, vulnerability management, data protection, endpoint security, or exposure management platforms.
- Experience with APIs, automation, scripting, and infrastructure-as-code technologies.
- Familiarity with Azure, AWS, or GCP cloud platforms.
- Understanding of ISO 27001, SOC 2, and CIS Controls.
- Experience operating in regulated environments and working with security and data protection requirements.
- Strong communication skills and the ability to influence technical and non-technical stakeholders.
