
Senior Staff Information Security Engineer
Posted Aug 3

Posted Aug 3
This is a fully remote position, open to applicants in United Kingdom.
• Define and enhance the security architecture within AWS and our colocation facilities.
• Create secure reference architectures, engineering standards, and reusable control frameworks.
• Offer technical leadership for significant infrastructure, platform, and product initiatives.
• Recognize systemic risks and drive practical, sustainable programs to mitigate them.
• Design and enhance security measures across cloud accounts, networks, identities, workloads, and shared services.
• Implement effective controls for identity and access management, segmentation, encryption, secrets, logging, monitoring, and workload protection.
• Develop preventive guardrails using infrastructure-as-code, policy-as-code, automation, and cloud-native security services.
• Enhance consistency across the enterprise, including cloud and on-premises infrastructure, as well as their interconnectivity.
• Engage early in the design phases of new products, platforms, services, and integrations.
• Lead threat modeling, security architecture evaluations, and technical risk assessments.
• Convert security risks into clear, actionable engineering recommendations.
• Assist teams in adopting secure-by-design principles via reusable patterns, tools, and documentation.
• Design and implement security tools, integrations, and automated controls.
• Integrate security capabilities into infrastructure provisioning, engineering workflows, and CI/CD pipelines.
• Utilize AI-assisted tools to enhance scripting, detection development, alert analysis, vulnerability triage, threat modeling, and technical documentation.
• Validate AI-generated outputs and ensure that AI tools are utilized with proper controls for confidentiality, accuracy, access, and human oversight.
• Provide technical guidance for vulnerability and exposure management across AWS and on-premises infrastructures.
• Identify recurring trends in incidents, penetration tests, vulnerabilities, and control evaluations.
• Serve as a senior technical escalation point during critical security incidents.
• Ensure that investigations and lessons learned lead to lasting architectural and engineering advancements.
• Lead intricate security initiatives that span multiple teams and planning cycles.
• Mentor security engineers and offer guidance to engineers in related teams.
• Elevate the standard of security architecture, automation, documentation, and technical decision-making.
• Clearly communicate security risks and recommendations to technical teams, product leaders, and senior stakeholders.
• Extensive experience in security engineering, infrastructure security, cloud security, security architecture, or platform engineering.
• In-depth, hands-on expertise in securing AWS environments.
• Strong understanding of AWS identity and access management, network design, account governance, encryption, logging, monitoring, secrets management, and workload protection.
• Experience in designing or securing on-premises, data center, or colocation-hosted infrastructures.
• Solid knowledge of enterprise networking, segmentation, firewalls, secure remote access, privileged administration, and hybrid connectivity.
• Experience with infrastructure-as-code, CI/CD security, containerized environments, and cloud-native platforms.
• Proven experience in designing and implementing automated security controls and engineering solutions.
• Proficiency in scripting or software development using Python, Go, or a similar language.
• Practical experience with AI-assisted tools to enhance security engineering and operational workflows.
• Experience in leading complex initiatives across various engineering, infrastructure, or product teams.
• Strong understanding of security architecture, threat modeling, vulnerability management, detection, and incident response.
• Ability to work independently, navigate ambiguity, and influence decisions among technical and leadership audiences.
• Annual bonus scheme based on individual and company performance.
• Annual salary ranging from £90,000 to £130,000 depending on experience.
• 25 days of holiday each year, in addition to bank holidays, plus one additional day for each year of service, with a maximum of 30 days.
• Workplace pension scheme.
• Private medical insurance after 30 days of employment.
• 7 hours per day, totaling 35 hours per week.
• A remote-first culture.
• Excellent work-life balance supported by our Flexi-time policy.
• Family-friendly policies including enhanced maternity and paternity pay as well as shared parental leave.
• Opportunities for development with an allocated company training budget.
• Bike2Work scheme.
• Lifeworks, an Employee Assistance Programme offering wellbeing, family, and financial support services, including assessments, resources, and one-on-one counseling sessions, as well as discounts on gyms, restaurants, high street retailers, and cinema tickets.
• Strong commitment to employee wellbeing, including mental health first aiders.
• Employee referral scheme with a generous financial reward.
• Bonusly colleague reward scheme.
Cloudiax
Cisco
Cisco
Skylight
Get handpicked remote jobs straight to your inbox weekly.