Enable job alerts via email!

Security Engineer

IAG Loyalty

London

On-site

GBP 45,000 - 85,000

Full time

14 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Security Engineer to join their dynamic platform security engineering team. This role offers a unique opportunity to contribute to a security-first culture while enhancing and automating security processes in a cloud-native environment. You will leverage your development or engineering background to implement robust security controls and tooling, ensuring compliance and high performance in a fast-paced setting. If you thrive in a collaborative atmosphere and are passionate about continuous improvement in information security, this position is perfect for you.

Qualifications

  • Strong technical background with experience in scripting or automation.
  • Proven track record in DevOps or engineering roles with cloud expertise.

Responsibilities

  • Secure and enhance the platform, focusing on automation and security practices.
  • Collaborate with teams to design secure-by-default patterns and respond to incidents.

Skills

Scripting
Automation
DevOps
Cloud Platforms (AWS)
Infrastructure as Code (Terraform)
Incident Response
Vulnerability Management
Agile Methodologies

Tools

CNAPP Product

Job description

Who we are

We're the people behind the global loyalty currency, Avios, and home to three ambitious, growing businesses; IAG Loyalty, BA Holidays and The Wine Flyer. Each business has its own goals and strategy, but collectively we create brilliant experiences for our global customers.

We're on a truly exciting journey of growth and transformation - we're going places! This is where you come in.

The Opportunity

IAG Loyalty is rapidly evolving into a Platform as a Service business, and we are looking for a Security Engineer to join our platform security engineering team. This is an exciting opportunity for someone with a background in development or engineering who has a passion for building robust security controls and innovative tooling.

You'll thrive in a cloud-native environment, where adaptability and a hands-on approach are essential. Your experience working in a continuous delivery ecosystem will be key, as our platform is constantly evolving to meet the demands of high-speed innovation and rapid technological change.

What you'll get up to

In this role, you'll take a proactive approach to securing and enhancing our platform, focusing on driving automation and developing secure-by-default practices that empower our teams to deliver safely and efficiently. Your work will contribute to building a security-first culture, ensuring continuous improvement while maintaining the platform's security, compliance, and high performance in a fast-changing environment.

The ideal candidate will have development or engineering experience and a strong interest in developing security controls and tooling. They will thrive in a cloud-native environment and have a proven track record of working in a continuous delivery ecosystem, where high rates of technology change are the norm. You will deliver security engineering projects to enhance and automate our processes, maintain and improve existing tools like our CNAPP product, and work closely with product teams to design secure-by-default patterns.

Additionally, you will provide expert advice on cloud security and DevSecOps, helping the engineering community adopt best practices. You'll also collaborate with the IAG Group SOC to monitor and respond to incidents, assist teams in prioritizing and resolving security issues, and build integrations to track and measure our security program's performance.

Furthermore, you'll play an active role in our 24x7 on-call security incident response rota (post-probation).

What we need from you
  1. Strong technical background with experience in scripting or automation (e.g., Python, Bash)
  2. Proven track record in DevOps or engineering roles, with expertise in cloud platforms (e.g., AWS) and Infrastructure as Code (e.g., Terraform)
  3. Knowledge of incident response processes, vulnerability management, and incident triage
  4. Experience implementing security controls and maintaining security tools
  5. Familiarity with agile methodologies in fast-paced environments
  6. Calm, evidence-based decision-maker in high-pressure situations
  7. Innovative, with a focus on practical, cost-effective solutions
  8. Committed to continuous learning and improvement in Information Security

We might not be right for you if:
  1. You only want to focus on your to-do list; we're a small, high-performing team, we help each other to succeed.
  2. You value perfection over fast iteration and progress; IAG Loyalty moves fast, we learn and iterate as we go; our environment isn't right for everyone.
  3. You're looking to create but not build; this is an end-to-end role, you need to be comfortable owning your space, from ideation through to delivery and review.

If you think you have what it takes but don't meet every single point above, please do still apply. We'd love to chat and see if you could be a great fit.

Equity, Diversity and Inclusion at IAG Loyalty

Our vision, 'to create the world's most rewarding experiences,' applies not only to our customers but for our colleagues too. It's about taking belonging seriously, actively fostering a culture where everyone feels welcomed and valued by embracing diverse identities, personal histories, and perspectives.

This commitment makes IAG Loyalty a rewarding place to work and enhances our ability to solve complex problems, drive innovation, and better serve our customers and communities.

Please let us know if we can make any reasonable adjustments to support your interview process with us.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.