Senior Corporate Security Engineer

Deliveroo
London, UK
2 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services Apple Mac Systems Software as a Service Cloud Computing Cloud Computing Security Cyber Security Information Leak Prevention Linux Identity and Access Management Intrusion Detection and Prevention Network Security
+13 more
Role-Based Access Control Anti-Phishing Zero Trust Network Access Security Information and Event Management Software Vulnerability Management Data Logging Okta Information Technology Build Tools CIS Benchmarks Terraform Api Management Docker

Job description

Deliveroo is now part of DoorDash, bringing together teams with even greater reach, scale, and ambition. Depending on your role, you may collaborate with teammates, systems, and leaders across DoorDash and Wolt. Together, we’re unlocking new possibilities as one global team.About the RoleAs a Senior Corporate Security Engineer, you will lead the design and operation of security controls that protect our internal networks, workforce identities, endpoints and corporate systems. You will be working globally with security teams across US, EU and APAC, delivering against our goals and objectives - reducing risk and maturing controls.As a Senior, you will operate with a high degree of autonomy. You will define technical direction, make architectural decisions, and deliver complex security initiatives end-to-end. You will be expected to balance risk reduction with usability, ensuring controls are robust without impeding employee productivity.This role focuses on Identity and Access Management (IAM), Endpoint security (EDR), Network Security, logging and detection engineering, and secure SaaS enablement. You will work closely with IT, Legal, Privacy, Engineering and business stakeholders to embed security as a default practice across the organisation.Security controls will be aligned to recognised frameworks such as the CIS Critical Security Controls and the NIST Cybersecurity Framework (CSF).Key ResponsibilitiesArchitecture & Control Implementation: Design, deploy, and maintain core corporate security controls, including phishing-resistant MFA, Just-In-Time (JIT) access, strict role-based access control (RBAC), zero-trust architectures, device and identity bound proofing and modern network isolation.Tooling Ownership: Serve as the technical owner for a broad suite of corporate security systems, managing deployments, configurations, and API integrations for tools across the corporate environment.Technical Leadership: Lead and implement the technical strategy for Endpoint

Requirements

Device trust, Data Loss Prevention, Intellectual property storage, and SaaS application security. Alongside wider corporate security technical controls.Automation & Engineering: Write scripts and build tools to automate security workflows, incident response tasks, and audit evidence collection for compliance.Cross-Functional Collaboration: Work with IT and business operations to integrate security tools into everyday workflows. Guide non-security teams to adopt secure baselines (e.g., CIS Benchmarks) as standard practice.Mentorship: Mentor junior and mid-level engineers, explain technical concepts clearly to non-technical staff, and help improve the team’s engineering standards.Minimum QualificationsBachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.5+ years’ experience in Security Engineering, Corporate Security, Detection & Response, or a related field.Hands-on experience administering IAM platforms (e.g. Okta, GoogleWorkspace).Deep hands-on experience with GoogleWorkspace productsPractical hands-on experience with Cloud platforms (e.g AWS, GCP)Relevant and practical experience with Infrastructure-as-code (e.g Terraform)Practical experience securing macOS, Windows and Linux endpoints using MDM and EDR/XDR tooling.Experience operating SIEM and/or SOAR platforms and tuning detection logic.Experience with vulnerability management and patch governance.Ability to write production-quality automation scripts.Demonstrated experience leading cross-functional technical initiatives.Experience with SASE or Zero Trust Network Access platforms.Hands on experience deploying applications into K8 and Docker environmentsData Loss Prevention (DLP) and SaaS security governance.Advanced detection engineering or SOAR playbook development.Experience supporting ISO 27001 or SOC 2 audits.Diversity, Equity and Inclusion At Deliveroo, we know that a great workplace reflects the world around us and that true diversity and inclusion make us stronger, more creative, and better at what we do. We’re committed to fostering an environment where everyone can do their best work and feel they belong.We believe in equality of opportunity and welcome candidates from all backgrounds regardless of age, gender, ethnicity, disability, sexual orientation, gender identity, socio-economic background, religion, or belief.If you have a disability or long-term health condition and need support to apply for one of our roles, or require any reasonable adjustments during the recruitment process, you’ll have the opportunity to let us know once you’ve submitted your application. We’ll share details on how to request support so we can ensure you have a fair and equitable experience.If you’re excited about making a real impact in a fast-moving marketplace and growing your career alongside ambitious, supportive teams, we’d love to hear from you! #J-18808-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Loading talks and stories from around this role…