Security Engineer (Gamedev)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Engineer (Cybersecurity): Managing security audits, compliance, and operational security for game development platform services with an accent on ISO 27001, SOC 2, and cloud infrastructure. Focus on implementing SIEM tooling, coordinating penetration tests, and embedding security into CI/CD pipelines.
Location: Hybrid in Brighton, UK (requires 3 days onsite each week)
Company
The Rocket Science Group specializes in multiplayer, co-development, platform services, and live operations for console, PC, and mobile titles.
What you will do
- Lead internal and external security audits (ISO 27001, SOC 2, GDPR) and evolve the Information Security Management System (ISMS).
- Monitor and improve security posture across cloud environments (AWS, Azure, or GCP), focusing on IAM, network controls, and storage security.
- Manage penetration testing and vulnerability assessments, coordinating with third-party providers and driving remediation.
- Implement and tune SIEM tooling to detect threats, conduct log analysis, and lead incident response activities.
- Collaborate with DevOps to embed security into CI/CD pipelines (DevSecOps) and align configurations with CIS Benchmarks.
- Promote a security-aware culture through training, phishing simulations, and regular KPI reporting.
Requirements
- 4–5 years of experience in information security or security engineering.
- Demonstrable experience with frameworks such as ISO 27001, SOC 2, GDPR, Cyber Essentials Plus, or NIST CSF.
- Hands-on experience with cloud security in AWS, Azure, or GCP.
- Working knowledge of SIEM platforms, security alert triage, and networking fundamentals (TCP/IP, DNS, TLS, VPNs).
- Experience scoping and managing penetration tests and remediating identified findings.
- Must be based in or be able to work hybrid in Brighton, UK.
Nice to have
- Certifications such as CISSP, CISM, CEH, or AWS Security Specialty.
- Experience with DevSecOps tools like Snyk, Trivy, SonarQube, or GitHub Advanced Security.
- Scripting proficiency in Python, Bash, or PowerShell for security automation.
- Experience in SaaS, fintech, or other regulated industry environments.
Culture & Benefits
- Private pension via salary sacrifice and optional private medical, dental, and vision coverage.
- Annual research credit and biannual reviews to support professional growth.
- Flexible working environment with a strict "no crunch" policy to ensure work-life balance.
- Family-friendly policies including 6 weeks of Maternity, Paternity, and Adoption leave.
- Office perks: weekly team lunches, snacks, and a fully equipped team lounge with consoles and games.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →