Senior Security Engineer - Cloud-First Hedge Fund Scale-Up (London)

Winston Fox
Greater London, UK
13 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Active Directory Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Identity and Access Management Python (Programming Language) Network Security Performance Tuning Windows PowerShell Cloud Services
+10 more
Zero Trust Network Access Web Application Security Security Information and Event Management Systems Integration Software Vulnerability Management Data Logging Scripting Cloud Platform System Firewalls (Computer Science) Network Server

Job description

Senior Security Engineer sought by a fast-growing Multi-Strategy Hedge Fund business. This is a relatively Greenfield environment in a world-class business which is scaling quickly, with extensive opportunities for interesting, cutting-edge projects.

Our client is a relatively recent Hedge Fund start-up, now managing $5BN+ requiring someone who can work well with both the business as well as with MSPs, operate with a high degree of accountability, able to manage multiple concurrent projects efficiently and flexibility, whilst also collaborating effectively with a global team across multiple time zones. The ideal candidate is a strong technologist with a generalist mindset-comfortable wearing multiple hats, adapting quickly, and delivering in a high-pressure environment. An especially interesting feature of this opportunity is that they have various MSPs carrying out the standard project work, therefore this team take on the most challenging and strategic projects!

This is a broad and generalist Security Specialist role as part of a Core Infrastructure Engineering team, blending hands-on Security Engineering - Monitoring, Detection, Vulnerability Management and Hardening - with Secure-by-Design partnership across the team, working closely with the business as well as with an MSP who undertake the more generic project work and support. The role therefore requires a broad skillset spanning SIEM/EDR, Identity & EndPoint Security, Cloud Security (AWS and/or Azure), Vulnerability Management, SOC 2 and NIST Controls, and Automation using Python/PowerShell/IaC.

Key responsibilities include the design, implementation and tuning of Security Monitoring, Detection and Response capabilities (SIEM/EDR), integrating commercial tools and developing custom detections where needed. You will also own Vulnerability Management; administering and optimising Endpoint and Network Security Controls; Implementing and maintaining hardening standards across Endpoints, Servers and Cloud workloads; and developing Automation for Security Operations and Infrastructure. All while partnering with Network, Cloud Platform and other teams to embed Security into Architecture and Platform Engineering decisions. You will also own the Cloud Security posture across AWS and/or Azure, including IAM, Guardrails, Logging, and secure configuration of Core Services, while developing Automation for Security Operations and Infrastructure.

Requirements

  • 7+ years in Security Engineering, Security Operations or a similar Infrastructure role, ideally within Financial Services.
  • Hands-on SIEM/EDR experience: alert triage, investigation, tuning and detection logic.
  • Strong understanding of identity and endpoint security: Conditional Access, Entra ID / Active Directory security controls, Teleport, device compliance/posture management.
  • Experience with Cloud Security across AWS and/or Azure: IAM, guardrails, logging and secure configuration.
  • Practical Vulnerability Management experience: scanning, risk-based prioritisation and remediation tracking.
  • Working knowledge of Network Security Principles: Firewalls, segmentation, ZTNA/secure web gateway.
  • Solid understanding of SOC 2 and NIST controls, evidence and audit support.
  • Scripting/automation skills: Python and/or PowerShell, plus familiarity with Infrastructure-as-Code.
  • Certifications such as CISSP, CISM, AZ-500, SC-300/SC-400, or equivalent preferred.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all