Job Search and Career Advice Platform

Enable job alerts via email!

Cloud Security Engineer

Thought Machine Group Limited

United Kingdom

On-site

GBP 60,000 - 80,000

Full time

2 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading fintech company in the United Kingdom is looking for a Security Engineer to provide expertise in application and cloud security. The role involves designing preventive controls, developing security tooling, and collaborating with engineering teams on security strategy. Ideal candidates will have experience with containerized applications, cloud security, and various programming languages. The company values diversity and encourages applications from candidates of all backgrounds.

Qualifications

  • Familiarity with CI/CD frameworks and infrastructure automation.
  • Knowledge of cloud security, operations, and automation.
  • Experience with coding for security tool integration.
  • Strong communication skills for team collaboration.

Responsibilities

  • Provide security guidance to engineering teams.
  • Develop threat models and mitigation strategies.
  • Design cloud-native preventive and detective controls.
  • Build automation for security auditing.
  • Contribute to security tooling and overall strategy.

Skills

Containerised applications
Cloud networking architecture
Security threat modelling
Distributed systems
Kubernetes security
Go
Python
Security tools automation
Git
AWS
GCP
Job description
Overview

Thought Machine's mission is bold - to properly and permanently rid the world's banks of legacy technology. To achieve this, we have developed the foundations of modern banking through core and payments technology which run natively in the cloud. We have grown rapidly in the past few years, with more than 550 individuals across offices in London, New York, Singapore and Sydney. We have raised more than $500m in funding and are valued at $2.7bn. Our investors include Molten Ventures, Eurazeo, Intesa Sanpaolo, Temasek, Nyca Partners, JPMorgan Chase Strategic Investments, Standard Chartered Ventures, and more. Global Finance Magazine named us one of the world\'s most innovative fintechs, and the Financial Times recognised us as one of Europe\'s fastest-growing companies in 2023 and 2024.

The Security Engineering Team

The Security Engineering team is cross-functional and made up of diverse people who bring their own unique expertise in either (or both) application security and infrastructure (cloud) security. We allow team members to move from project to project, subject to skills, experience, and interests. Each team member brings their own expertise to bear in ways that are collaborative and designed to find the best solutions to complex problems. The team covers the following areas, and individuals contribute to any of them based on their own expertise:

  • Designs and reviews to build a secure product and platform
  • Threat modelling to identify relevant areas of focus
  • Define the best in class protective and detective security controls
  • Development of security tooling and automation
  • Implement and maintain cutting-edge tools and measures

A large part of the Thought Machine security function is greenfield; we are building the bank of tomorrow with cutting edge technology. To achieve this we need innovative thinking to create security solutions in our products and our infrastructure. We look for people who think outside the box, and outside of traditional silos to find unique solutions and approaches to security that lead the industry.

Duties
  • Provide security expertise and mentorship to Thought Machine engineering teams through the stages of planning, design, and testing of new solutions.
  • Co-develop threat models with engineering teams that identify relevant threats and relevant strategies for mitigation
  • Design and build cloud native preventative and detective controls that operate at scale
  • Build and maintain automation to actively audit and assess infrastructure-as-code and in-place infrastructure
  • Develop (in code) security tooling, contribute to third-party security products, and develop updates for existing tooling that is in use in our environment
  • Work with cloud engineering and operations teams to develop tooling that maintains our secure operating state in production
  • Perform security reviews and security testing
  • Contribute to the overall security strategy, security tooling selection and creation
  • Operate collaboratively with other Thought Machine teams with trust and influence
Requirements

Essential

  • Familiarity with building and deploying containerised applications in public cloud using CI/CD frameworks and infrastructure automation
  • Knowledge of cloud networking architecture, cloud operations, security, automation and orchestration
  • Familiarity with performing security threat modelling and design reviews
  • Knowledge of security in distributed systems
  • Familiarity with good security practices with containers and Kubernetes
  • Experience with languages such as Go, Python, or other modern programming languages
  • Coding experience in the creation, automation, and integration of security tools
  • Experience in version control systems such as Git
  • Experience with designing, developing, and maintaining security in public cloud environments such as AWS and GCP
  • Strong interpersonal and communication skills to support collaboration with other personnel and teams

Desirable

  • Existing experience building and operating distributed systems at scale
  • Awareness and experience with "well-architected" cloud security frameworks or CSA-CCM
  • Contributions to the security community (public research, blogging, presentations, etc)
  • Experience in performing web application penetration testing and security tooling
  • Experience developing tools and interacting with cloud provider APIs.

We actively hire candidates who demonstrate technical excellence in their field and welcome people of all ages and backgrounds, providing everyone with equal access to professional development. You are encouraged to apply even if your experience doesn\'t accurately match the job description. We also encourage applications from those with different abilities, including candidates with ADHD, autism, dyslexia or dyspraxia.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.