The role
We are looking for an Information Security Engineer for our Security Tooling & Automation team.
The position is to be part of the security engineering team responsible for the security and privacy of our players and our business. We are responsible for making sure our products and platforms are built with security by design and default. Our vision is to enable the organisation to build secure products and services, by providing them integrated, flexible and scalable security solutions.
This role follows a hybrid approach to working, allowing you to combine working from home with working in our modern offices. These discussions are between you and your manager to find the best pattern for you both! We will kit you out to work from home but know that working as a team is what makes us great and spending quality time together is essential for keeping us mission-aligned.
This is an opportunity to have real impact on the company and the security discipline.
What You'll Do:
-
Work as part of a team of information security engineers, with a high degree of freedom to design and build best-in-class offerings within the Security Engineering discipline
-
Support the squad lead in delivering the roadmap by implementing and operating tooling & solutions that leverage DevSecOps and automation principles that can be consumed by teams within the organisation
-
Configure and maintain application and platform security tooling (logging and security data ingestion platform, application and infrastructure vulnerability management scanning and reporting platforms
-
Perform host reviews in line with known standards (e.g. CIS) and deploy scripts / automations checks to enable security audits.
-
Automate secure configuration as part of IaC frameworks and embed Cloud Security Posture management controls in the overall DevOps pipelines.
-
Identify threats and vulnerabilities and present findings within a structured risk assessment framework.
-
Become a member of the 24/7 on-call rota team.
Who You Are:
-
Computer Science background or similar
-
Professional experience in backend, web application or full-stack development
-
Professional experience in security engineering or similar security discipline
-
Demonstrable experience of DevSecOps and Agile principles.
-
Enthusiastic about security, ideally with participation in Open Source Communities
-
All around team player, fast self-learning individual, problem solver
-
Real world technical hands-on experience designing and deploying complex solutions.
-
Excellent engineering mindset
What's in it for you?
-
25 days of annual leave;
-
Sharesave scheme;
-
„Flexible Benefits” of your choice;
-
Private health insurance (includes dental insurance and health assessments);
-
Free parking;
-
Thousands of courses online through ‘Udemy';
-
Working from home options.