Senior Security Engineer (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Security Engineer (Cybersecurity): Strengthening security posture through the design and implementation of security controls, identity services, and cloud security solutions for institutional digital asset infrastructure with an accent on IAM and AWS security. Focus on automating security tasks, hardening systems according to CIS/STIG standards, and managing vulnerabilities across cloud and endpoint platforms.
Location: Hybrid in London, UK
Company
provides institutional digital asset infrastructure focusing on secure custody, collateral management, and prime services using Multi-Party Computation (MPC) technology.
What you will do
- Design and maintain IAM solutions including Microsoft Entra ID, Entra Identity Governance, and AWS IAM Identity Centre.
- Benchmark and remediate security configurations across cloud and endpoint platforms against CIS, STIG, and SOC2 standards.
- Own the administration and lifecycle management of security platforms across cloud, endpoint, identity, and network domains.
- Lead vulnerability management across infrastructure and SaaS applications using Wiz, Microsoft Defender, and ArmorCode.
- Develop automation scripts using PowerShell, Python, and Bash, and implement IaC solutions with Terraform.
- Act as a technical security advisor to stakeholders, providing guidance on architecture and regulatory compliance.
Requirements
- Extensive experience administering Microsoft Entra ID (Conditional Access, PIM, Identity Protection).
- Strong expertise in securing AWS environments using IAM, Security Hub, GuardDuty, and KMS.
- Proficiency with the Microsoft security stack, including Defender XDR, Sentinel, Purview, and Intune.
- Demonstrated ability to automate security tasks using PowerShell, Bash, and Python.
- Experience in system hardening (CIS/STIG) and securing SaaS platforms through SSO and SCIM.
- Knowledge of network perimeter security including WAF, ZTNA, and DNS security solutions.
Nice to have
- Experience managing Secure Web Gateways like Zscaler, iBoss, or Netskope.
- Experience with binary execution control solutions such as AppLocker, Defender Application Control, or Santa.
Culture & Benefits
- Minimum 35 days of paid time off per year, with additional days for length of service.
- Comprehensive medical insurance covering dental, optical, audiology, and mental health.
- Life insurance and enhanced employer matching pension contributions.
- Hybrid working model blending office collaboration with flexible remote work.
- 24/7 Employee Assistance Programme (EAP) and a strong focus on diversity and inclusion.
Hiring process
- Initial screening call with the Talent Acquisition team.
- Virtual technical interview via Microsoft Teams focusing on problem-solving and experience.
- In-person interview focused on team dynamics, collaboration, and final technical alignment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →