Senior Security Engineer developing a security control embedded in product squads at Our Future Health. Focus on hands-on coding and broader security engineering across the organization.
Responsibilities
Developing our TRE airlock as part of a squad, specifically the ‘airlock checks engine’ and the security checks that will run within this.
Supporting our product managers with shaping our airlock roadmap, ensuring security items are included alongside non-security features.
Contributing to developing our airlock policy specifying how to handle the findings from airlock checks.
Leveraging in-house knowledge to enrich and enhance our SOC capabilities.
Overseeing and supporting the operation of our various security tools, including Microsoft Defender and Microsoft Purview suites and Entra ID (previously AAD) for IAM, Identity Governance and Privileged Identity Management.
Providing guidance and a level of oversight for vulnerability management and triage work.
Documenting security processes and security tool low-level design/configuration.
Contributing to the development of security service delivery and operation documentation.
Assisting tech teams with integrating their systems and services with security services and tools.
Supporting the cloud security and application security engineers and wider security team with their various responsibilities, including achieving and maintaining ISO 27001 certification and threat modelling activities.
Requirements
Proficiency in writing Python and ideally KQL.
Comfortable working with Infrastructure as Code, ideally with knowledge of Terraform.
Experience working directly with software engineering best practices: source control, unit testing, code reviews, design documentation, excellent debugging, troubleshooting skills.
Experience with Azure (ideally), AWS or GCP, Docker, Kubernetes, and Helm.
Experience of operationally managing software components once live, including; observability, logging, metrics, error reporting, debugging and live incident management.
Experience with Microsoft Sentinel, Microsoft’s Defender and Purview suites and Microsoft Entra.
Experience of SOAR tooling and automating security capabilities and operations.
Experience in Threat Modelling.
Ability to communicate with stakeholders and audiences outside your own team.
Exposure to Agile working.
Experience working in/with cross-functional teams consisting of engineers, product, UX and non-technical stakeholders.
Desire to be part of a small fast-paced security team.
Activity Security Representative providing multi - disciplined security support for a customer’s facility at GDIT. Role involves ensuring security protocols and maintaining documentation for classified materials.
Cybersecurity Engineer enhancing enterprise security posture at GDIT. Designing secure identity controls and managing authentication solutions for Microsoft environments.
Information Security Officer developing risk management systems and collaborating with stakeholders for a tech company. Working on information assets and engineering teams in a hybrid working environment.
Security Lead managing GSA cloud applications security architecture. Collaborating with teams to ensure compliance with federal security standards and best practices.
Security Officer providing safety and security services in East Valley locations for Banner Health. Involves emergency response, patrols, alarm monitoring, and writing reports.
Security Engineer contributing to security initiatives for incident management platform at Rootly. Collaborating cross - functionally to ensure reliable and scalable security solutions.
Lead Senior Information System Security Manager (ISSM) for Boeing's cybersecurity programs. Focus on implementing compliance for DFARS/NIST and managing a large portfolio for CUI.
Técnico de Segurança do Trabalho supporting Segurança, Meio Ambiente e Saúde in submarinas operations for Petrobras in Macaé/RJ. Contribuir para ambientes de trabalho seguros e cumprimento de normas.
Senior Information Security Analyst focused on Blue Team/CSIRT at PagBank. Engaging in cybersecurity incident response and advanced security solutions support.
Information Security Engineer supporting vulnerability management efforts at PagBank. Collaborating with teams to enhance financial services security and compliance.