> Markdown version of [/jobs/ext/3315695-security-engineer](https://www.wearedevelopers.com/jobs/ext/3315695-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Marex - **Location:** London, UK - **Experience:** Expert - **Contract:** Franchise - **Skills:** Microsoft Windows, Business Analytics Applications, Software System Penetration Testing, Cloud Computing, Cyber Security, Databases, Linux, Identity and Access Management, Intrusion Detection and Prevention, Key Management, Public Key Infrastructure, Session Management, Systems Integration, Software Vulnerability Management, SSL Certificate Management, Cyberark, Cyber Threat Analysis, Information Technology, Hashicorp, BIG-IP Advanced Firewall Manager (AFM) - **Published:** September 22, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=5877f27cce42cfe1 ## About the Role Essential: * A minimum of 5 years' experience in Information Security. * Comprehensive knowledge of identity security and access control technologies, including Entra ID, Identity Protection, Privileged Access Management, Secrets Management, Key Management, PKI, and Certificate Management. * Strong hands-on experience administering and supporting Privileged Access Management solution (tools such as CyberArk or equivalent), including account onboarding, safes, platforms, policies, credential rotation, session management, access workflows, operational troubleshooting, and control monitoring. * Strong hands-on experience with Windows, Linux, cloud platforms, databases, directory services, and service accounts from an identity security perspective. * Experience around Secrets & Key management tools such as Hashicorp vault or Conjour or equivalent. * Strong experience around PKI management tools such as Venafi or Digicert or equivalent. * Experience with Identity & privileged access governance, least privilege, break-glass processes, access reviews, privileged account lifecycle management, and audit evidence production. * Experience producing operational metrics, control reporting, and audit evidence for identity - PAM, Secrets Management controls. * Knowledge of security processes such as vulnerability management, penetration testing, incident response, and security control assurance. * Knowledge of security standards and frameworks such as CIS and NIST. * Experience supporting or improving security platforms, automation, tooling integrations, detection capabilities, or operational security processes. * Excellent communication skills, with the ability to engage effectively with technical teams, control owners, auditors, and wider business stakeholders. ** Candidates with less than 5 years' experience will still be considered, * A collaborative team player, approachable, self-efficient and influences a positive work environment * Demonstrates curiosity * Resilient in a challenging, fast-paced environment * Ability to take a high level of responsibility in a fast pace and high-volume environment * Excels at building relationships, networking and influencing others * Strategic collaborator with insight and agility, able to anticipate future challenges, ensuring operational effectiveness Conduct Rules, You must: * Act with integrity * Act with due skill, care and diligence * Be open and cooperative with the FCA, the PRA and other regulators * Pay due regard to the interests of customers and treat them fairly * Observe proper standard of market conduct * Act to deliver good outcomes for retail customers Company Values Be collaborative - by working together across the organisation, we foster teamwork, can better respond to challenges and successfully deliver for our clients Act with integrity - we pride ourselves on our honesty and high ethical standards. We apply these values when working with all our clients, colleagues and other stakeholders Be adaptable and entrepreneurial - we embrace change as markets evolve to constantly increase our efficiency and create innovative solutions for our clients. We are interested in the world around us and inquisitive about understanding the challenges and opportunities our clients face. Be respectful - how we treat each other, and our clients says everything about who we are. We always act respectfully and treat people fairly in everything we do. ## Description The Security Engineer will work within the Cyber Security team, reporting to the Cyber Security Manager, and will be responsible for engineering, administering, and continually improving security capabilities across the Marex Group, with a primary focus on Identity Protection, Privileged Access Management, and associated access control environments. The role will support the secure management of privileged accounts, access workflows, credential rotation, platform onboarding, incident response, control monitoring, and operational governance relating to privileged access. In addition, the role will contribute to broader identity security capabilities, including secrets management, certificate and PKI-related controls, and the improvement of identity-related security processes. Beyond its core identity and PAM responsibilities, the role will support wider cyber security engineering activities, including security platform operations, automation, tooling enhancements, threat detection improvements, and response to security incidents as business and security priorities evolve. Responsibilities Role specific: * Engineer security products to be production ready. * Configure security toolset and controls to identify anomalies, potential incidents, network intrusions, and malware events, etc., ensuring confidentiality, integrity, and availability of Marex's critical systems * Find gaps in architecture, define objective and areas of improvement, engineer products to fit the gaps for an effective Threat detection and response. * Developing and documenting cyber security standards and procedures * Collaborates with technology teams for incident handling, patching disciplines, and system hardening frameworks * Collaborates with the Information Technology team on deployment, operation, and continual improvements of security solutions * Automation of tasks and creation of analytical tools * Keeping up to date with security news and trends * Threat Intelligence and Hunting * Responding and investigating security incidents and exceptions * Providing relevant KPI and KRI metrics. All staff: * Ensuring compliance with the company's regulatory requirements under the FCA, NFA, AMF, AFM, MAS. * Adhere to the operational risk framework for your role ensuring that all regulatory or company determined parameters are complied with. * Role model for demonstrating highest level standards of integrity and conduct and reflecting Company Values. * At all times complying with the FCA's Code of Conduct * To ensure that you are fully aware of and adhere to internal policies that relate to you, your role or any other activities for which you have any level of responsibility * To report any breaches of policy to Compliance and/ or your supervisor as required * To escalate risk events immediately * To provide input to risk management processes, as required. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Great DevEx and Regulatory Compliance - Possible?](https://www.wearedevelopers.com/videos/1426-great-devex-and-regulatory-compliance-possible) - [Securing Secrets in the GitOps era](https://www.wearedevelopers.com/videos/546-securing-secrets-in-the-gitops-era) ## Related Articles - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [UK Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/326-uk-business-culture-and-etiquette) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london) - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk)