Senior Security Engineer

ASSA ABLOY Group
Olney, United Kingdom
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Olney, United Kingdom

Tech stack

Amazon Web Services (AWS)
iOS
Azure
Bash
C Sharp (Programming Language)
Cloud Computing
Computer Security
Linux
DevOps
Linux on Embedded Systems
Mobile Application Software
Information Systems Security Architecture Professional
Open Web Application Security
Powershell
Systems Development Life Cycle
Software Engineering
Cloudformation
Kubernetes
Bicep
Patch Management
Terraform

Job description

Do you have the ability to become the subject matter expert in implementation of security throughout the software delivery life cycle and a drive to grow your skills in a collaborative environment? Became a part of the ASSA ABLOY Global Solutions Key and Asset Management business unit and enjoy a culture that empowers you to build a career you can be proud of., As a Senior Security Engineer you will be responsible for evolving the software development lifecycle to support a secure-by-default design that incorporates robust cyber security risk analysis and resolution. Reporting to the DevOps Lead, you'll help define security testing requirements, implement policy-as-code solutions, and integrate threat detection and gating into CI/CD pipelines to ensure secure and reliable software delivery. This role is currently completely remote from the UK.

You would also:

  • Attest the cyber security posture across a wide range of areas including Embedded devices, Cloud infrastructure, and Mobile applications, while continuously deepening your understanding of our product platforms to tailor security strategies effectively.
  • Implement and maintain Security Posture Management in line with best practices across multiple areas.
  • Assist in fostering a security-first culture across development teams and the SDLC.
  • Lead the implementation of remediation efforts for identified risks and vulnerabilities, including patch management.
  • Collaborate on threat modeling exercises within development and DevOps teams.

Requirements

  • Has knowledge of cyber security architecture within cloud provider environments such as AWS and/or Azure. Knowledge of Kubernetes is also a bonus.
  • Brings specialist security hardening knowledge in one or more areas including embedded Linux, iOS/Android mobile, cloud environments.
  • Possesses strong general software engineering skills, ideally in C# and Linux toolchains, Bash scripting and PowerShell.
  • Has hands-on experience with IaC tools such as Terraform, CloudFormation, or Bicep.
  • Is familiar with relevant software and infrastructure security compliance frameworks and guidelines, e.g. OWASP, CVE and others.

Benefits & conditions

We're passionate about providing amazing opportunities and benefits, so you can continue and progress a lifelong career with us - here's what we have to offer:

  • 25 days holiday + bank holidays.
  • Ex-gratia day for Christmas Eve.
  • Access to an online benefits portal.
  • ASSA ABLOY Family Brand discount (Yale).
  • 3 x Annual salary life cover.
  • Company Pension scheme standard 5%.
  • Annual discretionary bonus.
  • Access to Employee Care scheme.

About the company

We are the ASSA ABLOY Group Our people have made us the global leader in access solutions. In return, we open doors for them wherever they go. With nearly 63,000 colleagues in more than 70 different countries, we help billions of people experience a more open world. Our innovations make all sorts of spaces - physical and virtual - safer, more secure, and easier to access. As an employer, we value results - not titles, or backgrounds. We empower our people to build their career around their aspirations and our ambitions - supporting them with regular feedback, training, and development opportunities. Our colleagues think broadly about where they can make the most impact, and we encourage them to grow their role locally, regionally, or even internationally. As we welcome new people on board, it's important to us to have diverse, inclusive teams, and we value different perspectives and experiences.

Apply for this position