Engineer II (Security Engineer)

Condé Nast
Charing Cross, United Kingdom
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Charing Cross, United Kingdom

Tech stack

Microsoft Windows
Microsoft Active Directory
Amazon Web Services (AWS)
Data analysis
Cloud Computing
Cloud Computing Security
CompTIA Security+
Computer Security
Software Design Documents
Linux
Identity and Access Management
Python
Network Security
PCI Data Security Standards
Ping (Networking Utility)
Powershell
Security Information and Event Management
Software Vulnerability Management
Okta
Cyberark
Software Security
Cyber Threat Analysis
Terraform
Splunk

Job description

Condé Nast is a global media company producing the highest quality content with a footprint of more than 1 billion consumers in 32 territories through print, digital, video and social platforms. The company's portfolio includes many of the world's most respected and influential media properties including Vogue, Vanity Fair, Glamour, Self, GQ, The New Yorker, Condé Nast Traveler/Traveller, Allure, AD, Bon Appétit and Wired, among others. Job Description Location: London, GB Condé Nast is a global media company, home to iconic brands including Vogue , GQ , Glamour , CN Traveller , Vanity Fair , Wired , The World of Interiors , House & Garden and Tatler , among many others. We are headquartered in New York and London and operate in 32 markets worldwide, with a footprint of more than 1 billion consumers across print, digital, video and social platforms. Condé Nast thrives on collaboration, and our teams come together in the office four days a week (Monday - Thursday). We value diversity of background, views and cultures. We celebrate people for their personal qualities, skills and contributions, recognising the power our brands have to influence and shape culture. The Role Condé Nast is looking for a Security Engineer to join our global Cyber Security team. The role sits within the Security Engineering team, reporting to the Senior Security Architecture Manager. The Cyber Security Team underpins Conde Nast's security posture, delivering information security and cyber risk management, security operations and the global SOC, security architecture, application security, and security engineering. This role supports the team with the day to day administration, maintenance and tuning of our security tools as part of regular BAU activities. The successful candidate must have worked with a diverse range of security tools in the past within medium to large organisations. The Security Engineering team is tasked with the deployment and lifecycle management of security technologies across our global infrastructure. A primary focus of this role is ensuring the health, performance, and optimization of our defensive stack. The ideal candidate brings a proven track record in managing SIEM, XDR/EDR, and Vulnerability Management ecosystems as well as other detection and response tooling, required by Security Operations. Beyond routine maintenance and tuning, you will lead control-validation exercises and testing protocols to verify alert efficacy and ensure our defensive solutions are performing against real-world threat indicators. What will you be doing?

  • Develop, enhance, and maintain Conde Nast's security tooling in close collaboration with the Security Architecture team.
  • Administer, maintain and continuously improve core security platforms, including SIEM (InsightIDR/Splunk), Endpoint Detection and Response, and Vulnerability Management solutions.
  • Develop and refine SOC use cases to deliver high-quality, actionable alerts and improve threat detection and response.
  • Define, create and tune detection rules, automating response actions within tooling.
  • Troubleshoot technical issues when they arise, working with vendor support teams.
  • Implement new technical security controls and tooling across regions to address identified security gaps, working closely with technology stakeholders.
  • Support the design and implementation of new security solutions, contributing to low-level design and ensuring alignment with approved security solution architectures
  • Work with regional teams to ensure compliance with centrally defined security policies, partnering with architecture to remediate gaps where required
  • Carry out security testing of tooling to ensure our tools are providing effective detection and response capabilities.
  • Support the SOC team, when requested, with incident response investigations.
  • Support the engineering team with the management of PAM tooling when required.

Requirements

  • 5+ years' experience in cyber security, ideally working within a senior role.
  • Strong background in security engineering and enterprise security tooling.
  • Expertise in at least three areas: Security Engineering, Network Security, Identity Access Management, Privileged Access Management, Security Testing
  • Experience with SIEM and log management platforms (e.g. InsightIDR, Splunk)
  • Experience administering Vulnerability Management platforms (e.g. Rapid7)
  • Experience with Detection & Response technologies (NDR, EDR, XDR)
  • Strong knowledge of Windows, Linux, networking, Active Directory, and AWS
  • Understanding of NIST and PCI-DSS frameworks
  • Experience implementing, configuring, and tuning security tools
  • Proficiency with Python / PowerShell for task automation and Terraform for codifying and auditing cloud security controls
  • Excellent written and verbal communication skills

Desirable

  • Experience with CyberArk Privilege Cloud and enterprise IAM platforms (Okta, Ping)
  • Experience with Secure Cloud Analytics / Cloud NDR
  • Security certifications (CISSP, Security+, AWS Security, AWS Solutions Architect)
  • Networking certifications (CCNA, CCNP, Network+)

Benefits & conditions

Does this sound like you? Please upload your CV and cover letter/portfolio, which highlights why you'd love to take on this role and why you're a great match for what we're looking for. We value the time and effort behind every application. All submissions are reviewed by a member of our talent team - we don't use AI-assisted technology to review applications. What benefits do we offer?

  • 25 days holiday (plus bank holidays) and extra days of annual leave if you move house or want to volunteer.
  • You'll have access to a competitive pension scheme, Bupa Private Healthcare, Season ticket loans and eye tests.
  • We offer a range of tools to support your wellbeing, including core hours, 10 remote days (from home or a country with a Condé Nast office location), access to our Employee Assistance Programme, corporate gym membership and cycle to work scheme.
  • We're a dog friendly office, plus you'll enjoy discounts and magazine subscriptions, keeping you up to date with all things Condé Nast.
  • We encourage personal and professional growth through the Condé Nast Learning Hub where you'll find an extensive portfolio of learning courses and training, available in local languages.
  • Our Employee Resource Groups provide a platform for employees to identify shared objectives, exchange ideas, and work on community priorities for our global workforce.

About the company

Condé Nast Germany - ein Medienunternehmen, das mit starken Marken wie Vogue, Glamour, GQ und AD als Heritage für Luxus und Lifestyle steht. Mit unseren global führenden Medienmarken setzen wir auf Qualitätsjournalismus und hochwertigen Content. Für unsere Kunden, Partner, Leser und Follower kreieren wir täglich neue einzigartige Markenerlebnisse über alle Touchpoints hinweg.

Weil große Marken von Menschen geschaffen und geprägt werden, stehen unsere 300 MitarbeiterInnen in Deutschland immer im Mittelpunkt - Menschen mit Leidenschaft, Mut und Unternehmergeist!

Apply for this position