Principal / Lead Software Engineer

Experian Information Solutions, Inc.
Derby, United Kingdom
2 days ago

Role details

Contract type
Permanent contract
Employment type
Part-time / full-time
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
£ 55K

Job location

Remote
Derby, United Kingdom

Tech stack

C
Microsoft Windows
Microsoft Active Directory
API
Artificial Intelligence
Amazon Web Services (AWS)
Software System Penetration Testing
Bash
C Sharp (Programming Language)
Unix
C++
Cloud Computing Security
Cloud Storage
Computer Programming
Databases
Data Warehousing
Relational Databases
File Systems
Middleware
Embedded Software
Field-Programmable Gate Array (FPGA)
Storage Area Network (SAN)
Python
Mainframes
Network Architecture
Node.js
Open Source Intelligence
Powershell
Cloud Services
Phishing
Red Team (Cyber Security)
Ruby
SharePoint
Software Engineering
Transmission Control Protocol (TCP)
TypeScript
Amazon Connect
Scripting (Bash/Python/Go/Ruby)
Mitre Att&ck
Firewalls (Computer Science)
GWAPT
Kubernetes
Information Technology
Cybercrime
GraphQL
Operational Systems
Programming Languages

Job description

Experian's Offensive Security team charges itself with improving the organisation's security posture through clarifying risk and verifying the efficacy of our technical, people, physical and process controls from an attacker perspective. The team perform regular Adversary Simulation (Red Team) testing and a range of Ad-Hoc and Tactical Assessments based on changes to the threat landscape and organisational needs.

To succeed in this role, you have breadth and depth of knowledge in security. This knowledge will include operating systems, networking and protocols, firewalls, databases, and middleware applications. Additionally, you will have expertise in forensics, scripting and programming, vulnerabilities, and the usage of GenAI / social engineering techniques.

This is a Hybrid, Nottingham or London based role (40% in office) reporting to the Head of Offensive Security.

Responsibilities

  • Collaborate with other teams within the Cyber Fusion Centre and the wider organisation. This ensures that we understand and articulate Cyber Risks in a threat-informed manner. The ultimate goal is to contribute to the successful defense of the organisation.
  • Support Offensive Security's engagement at multiple organizational levels, from senior leaders to technical analysts to help improve risk understanding and verify the efficacy of remediation/mitigative actions.
  • Participate in performing physical exploitation, network exploitation and social engineering assessments against authorized targets.
  • Use CyberThreat Intelligence, Offensive Security Research, previous Adversary Simulation (Red Team) findings and internal risk intelligence to develop test cases demonstrating TTP effectiveness against Experian's control environment.
  • Research and stay up to date with the latest cyber threats, attack vectors and attacker methodologies.
  • Develop scripts, tools and methodologies to increase Offensive Security's capabilities and educate other team members around automation and AI.
  • Use MITRE ATT&CK Framework and other structured attack analysis tools to describe and classify attacker methodology and significance.

Qualifications

What your core background is

  • Background in offensive security and adversary simulation.
  • Detailed knowledge of global cyber threats and the procedures used by cyber adversaries.
  • Two or more of the following skills:
  • Network penetration testing and manipulation of network infrastructure
  • Web application penetration testing assessments
  • Email, phone, or physical social-engineering assessments
  • Development, extension, or modifying of exploits, shecode or exploit tools
  • Covert physical intrusion
  • Cloud security or penetration testing (any major provider)
  • AI Red Teaming/Testing and usage of Agentic AI for automation.
  • Industry certifications such as OSCP, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN or equivalent experience., Senior GraphQL Engineer (GraphQL Federation) to design, build and scale high-performance GraphQL APIs in a modern TypeScript/Node.js stack, deployed to Kubernetes in a cloud-native environment. This is an ideal contract for a GraphQL specialist who loves clean schemas,...

Requirements

  • Proficient in attacker tooling, including post-exploitation frameworks and tooling.
  • Proficient in any of following programming languages (C, C++, C#, Python, PowerShell, Bash, or Ruby)
  • Proficient in Social Engineering techniques across OSINT, phishing, vishing and impersonation.
  • Knowledge of current cloud attack methodologies and mitigations.
  • Experience of Windows Operating System architecture and internals and use thereof in an enterprise environment.
  • Core Information Technology concepts such as TCP/IP networking, Windows & Active Directory, Unix/Linux, Mainframe, Cloud Service Providers, Relational Databases, Data Warehouses, and filesystems
  • Knowledge of IT technologies and methods to secure them i.e. databases, SharePoint, storage area networks and cloud-based storage., FPGA Engineer (Graduate - Senior) A brilliant opportunity to join an innovative team building high-integrity, security-critical FPGA solutions. Whether youre a recent graduate building foundations or a seasoned engineer leading architecture and verification, youll work..., Amazon Connect Senior Engineer Travel: Ability to travel up to 30% Location: Remote UK Are you a cloud-based Customer Experience Software Engineer with experience in the implementation of AWS Cloud contact center solutions. with a solid understanding of application..., Job Title: Penetration Tester (CHECK Team Member) Location: UK (Hybrid / Remote) Experience: 1-3 years Eligibility: UK National (must be eligible for security clearance) About the Role: We're looking for a Penetration Tester (CHECK Team Member) to join our growing..., Job Description Structural Integrity Engineer (FEA) - Submarines Full Time / Part Time 5 Days On-Site Derby As a structural integrity engineer, you will be engaging primarily in structural integrity assessments including primary strength, fatigue, fatigue crack growth...

Benefits & conditions

  • Great compensation package and discretionary bonus plan
  • Core benefits include pension, bupa healthcare, sharesave scheme and more
  • 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here, Senior Design Engineer - Submarines Derby Full Time/ On-site Up to £74,000 + Benefits + Bonus We have an exciting opportunity for a Senior Design Engineer to join Rolls-Royce Submarines in Derby. What we offer We provide excellent development, a competitive salary and...

About the company

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money. We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn ., Principal Integrity Engineer (PSSR) CCGT Background Risktec Solutions is an established, independent and specialist risk management consulting and training company, and is part of the TV Rheinland Group. We assist clients in major hazard industries including oil and gas,..., Halian | Managed Services, Recruitment Agency & Contract Staffing Our client is hiring experienced Senior Site Reliability Engineers in the UK or Germany to join a global engineering team supporting a high-availability, Java-based platform used by customers worldwide. This role is for true SREs - not DevOps engineers. If your passion is...

Apply for this position