drjobs Security Engineer

Security Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

London - UK

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

About the role:

The team was founded initially to be responsible for the protect function of the NIST cyber security framework.
We continuously reevaluate how we can deliver the most impact to the business meaning the teams responsibilities develop over time.

In the Security Platform team you will be working to advance our service offerings which focus on:

  • Providing a runtime platform for security services

  • Vulnerability management for all platform teams

  • Ensuring compliance of our digital assets and proving this to auditors

  • Other exciting security domains

How we work

We operate on a strong belief in automation programmatic implementation and reusable design. Were looking for people who can step back and think holistically about the ecosystem while also following through to implement designs effectively.

As Wise grows security infrastructure becomes more critical. Our teams must focus on scaling our infrastructure to ensure Wise provides a secure platform for our continuously growing customer base. We need to sustain this growth by iterating on our services with a focus on availability security and ease of use.

Were looking for an engineer with relevant experience who can analyze complex requirements and deliver simple solutions to help our teams achieve our mission with speed and confidence.

What will you be working on

We own multiple security domains with different stakeholders and varying levels of technological depth. Priorities shift based on business needs but engineers in our team typically focus on one or two of the following:

1. Vulnerability Management and Cloud Security Posture Management

  • Maintain and enhance our Vulnerability Management Program ensuring effective use across platform engineering teams.

  • Develop and maintain a Cloud Security Posture Management (CSPM) Program.

2. Data Loss Prevention (DLP) program

  • Develop and support a company wide adoption of a DLP program

  • Implement components of it as well as collaborate with other teams on their implementations

3. System and endpoint hardening

  • Provide and maintain hardened base images.

  • Establish guidelines and processes for system and endpoint hardening.

4. Compliance evidencing

  • Develop automations and processes to enhance accuracy and efficiency in providing security and configuration evidence to auditors.

5. Infrastructure security

  • Maintain and improve our security cluster a dedicated Kubernetes cluster in AWS that hosts security tools and applications ensuring compliance.

  • Conduct infrastructure threat modeling to identify and mitigate security risks.

  • Maintain firewalls and connection filters to ensure secure network configurations.

What do you need

We are looking for a cloud or GRC engineer with experience or a strong interest in cyber security. If you are a cyber security engineer with a strong interest in cloud engineering we also want to hear from you!
We understand that candidates may not be experts in every domain listed above. If you have experience in some of these areas and are eager to learn more we want to hear from you!

Core skills & qualities:

  • Ability to collaborate with teams and external stakeholders communicating technical topics clearly.

  • Capability to break down initiatives into digestible subtasks and milestones.

  • Ability to take ownership of projects and propose wellreasoned solutions.

  • Basic understanding of cloud concepts and cloud resource use cases.

  • Experience in cyber security domains or a strong interest in learning such as:

    • Vulnerability management

    • Securing data at rest/in transit

    • Risk management and compliance

  • Programming experience (e.g. Java Golang Python). Ability to showcase previous projects is a plus.

  • Familiarity with Unix systems.

  • Understanding of networking protocols (e.g. IP TCP HTTP).

Nice to have:

  • Experience with Kubernetes and containerization (e.g. Docker).

  • Cloud experience (AWS or similar platforms).

  • Cyber security project experience.

  • Sysadmin background.

  • Experience with vulnerability scanning and management.

  • Infrastructure as code (e.g. Terraform).

  • Experience with version control systems (e.g. GitHub).

Interested Find out more:

Employment Type

Full-time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.