Senior Security Engineer

Copello Global
Iver, UK
5 days ago
Apply on www.cv-library.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
£70,000.0 - £90,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Software System Penetration Testing Microsoft Azure C Sharp (Programming Language) Cloud Computing Code Review Cyber Security Continuous Integration Identity and Access Management Intrusion Detection and Prevention Key Management
+12 more
Open Web Application Security Systems Development Life Cycle Software Engineering Software Vulnerability Management Software Security Kubernetes Splunk Devsecops Security Orchestration, Automation & Response Static Application Security Testing Vulnerability Analysis Dynamic Application Security Testing

Job description

I’m recruiting for a Senior Software Cybersecurity Engineer to join a high-profile technology organisation, working across Application Security, Cloud, Kubernetes and DevSecOps., You’ll work closely with software engineering teams to embed security throughout the SDLC, identify vulnerabilities and improve secure-by-design practices., * Threat modelling, risk assessments & security architecture reviews

  • Cloud & Kubernetes/container security
  • Security code reviews and secure-by-design guidance
  • Implementing SAST, DAST, SCA, SBOM & Secret Scanning
  • Driving vulnerability management and remediation
  • Vulnerability triage, validation & PoC development
  • IAM and key management
  • Security incident response & root-cause analysis
  • Detection engineering and security automation
  • Developing security standards, processes and technical runbooks

Requirements

  • 7+ years’ Cybersecurity / AppSec / Security Engineering experience
  • Strong Cloud & Kubernetes security experience
  • Proven DevSecOps / CI/CD security experience
  • Strong knowledge of SAST, DAST, SCA & vulnerability management
  • Threat modelling experience - STRIDE / PASTA
  • Hands-on development experience with Go and/or C#
  • Strong understanding of OWASP, NIST, ISO 27001 & CIS
  • Experience with AWS, Azure or GCP

Desirable: vulnerability research, exploit development, penetration testing, Splunk/OSQuery, AI/ML security and security certifications.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.cv-library.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

Videos

See all

Related articles

See all