Enable job alerts via email!

Senior Platform Engineer

TN United Kingdom

London

On-site

GBP 60,000 - 100,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is looking for a seasoned Platform Security & Observability Senior Engineer to enhance their security posture and ensure operational excellence. This pivotal role involves designing and managing security architectures for cloud environments, securing CI/CD pipelines, and conducting penetration testing to identify vulnerabilities. With a focus on innovation and collaboration, you will work in a modern office space in Central London, contributing to a team that values diversity and equal opportunity. If you are passionate about embedding security in tech solutions and want to make a significant impact, this role offers an exciting opportunity to shape the future of financial services.

Benefits

Stock Options
Private Medical Insurance
Enhanced Maternity and Paternity Leave
Modern Office Space
Free Gym
Subsidised Lunch
Deliveroo Allowance
Monthly Masseuse
Team Socials
Sports Club Membership

Qualifications

  • Extensive experience in cloud security and securing CI/CD pipelines.
  • Proficient in scripting with Python, TypeScript, or C# for automation.
  • Strong background in application security practices including SAST and DAST.

Responsibilities

  • Design and manage security architectures for cloud environments.
  • Conduct penetration testing and manage vulnerability assessments.
  • Develop and maintain CI/CD pipelines using GitOps principles.

Skills

Cloud Security
CI/CD Processes
Application Security
Containerization
Coding
Site Reliability
Systems Architecture
Security Testing
Problem-Solving
Communication Skills

Education

AWS Professional Certification
AWS Certified Security Specialist Certification

Tools

Jenkins
Terraform
CloudFormation
Pulumi
Datadog
AWS Secrets Manager

Job description

Social network you want to login/join with:

YouLend is the preferred global embedded financing platform for many of the world’s leading e-commerce sites, tech companies and payment services providers such as Amazon, eBay, Shopify, Mollie, Dojo, Paysafe, Just Eat Takeaway and Takepayments. Our software platform and APIs enable our partners to offer flexible financing products, in their desired branding, to their merchant base. With YouLend's AI-driven credit risk assessment solutions, more merchants and SMEs than ever can receive fast, flexible and affordable funding. We operate in 9+ geographies across the UK, EU and the US.

We believe that the future of financial services will be delivered by customer-oriented tech companies that embed financing in their customer journeys, and we are building the solutions that will power that future.

The Role:

We are seeking a seasoned Platform Security & Observability Senior Engineer to join our IT Security team. This role is crucial in enhancing our security posture and ensuring operational excellence across our platforms. The ideal candidate will possess a comprehensive skill set in cloud security, CI/CD processes, application security, containerization, coding, site reliability, systems architecture, and security testing.

Requirements
  • Design, implement, and manage security architectures for cloud-based environments, focusing on identity and access management, privileged access management, and secrets management.
  • Develop, secure, and maintain CI/CD pipelines using GitOps principles and tools such as Jenkins or other continuous deployment services.
  • Apply best practices in static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), pre-commit container scanning, and shift-left approaches to ensure early detection of vulnerabilities.
  • Conduct penetration testing to identify and address security vulnerabilities within the system.
  • Manage vulnerability identification, assessment, and remediation processes across all stages of software development.
  • Secure Kubernetes clusters and manage Docker container security to protect against unauthorized access and threats.
  • Write and maintain scripts for automation across various languages including Python, TypeScript, or C#.
  • Utilize infrastructure as code (IaC) tools such as Terraform, CloudFormation, or Pulumi to manage and provision resources securely and efficiently.
  • Design and implement monitoring solutions and alerting mechanisms using Datadog to detect and respond to security incidents and system anomalies promptly.
  • Re-architect and develop on-call systems to enhance response capabilities and operational reliability.
  • Establish and manage service catalogues and service delivery processes to streamline IT operations.
  • Set up and maintain Service Level Objectives (SLOs) and Service Level Agreements (SLAs) to ensure consistent and reliable service delivery.
  • Maintain impeccable documentation standards, contribute to corporate knowledge sharing via blogs or presentations, and engage in regular show-and-tell sessions to disseminate information and best practices.
  • AWS Professional certification or equivalent practical experience.
  • AWS Certified Security Specialist certification or equivalent experience.
  • Extensive experience in managing AWS Secrets Manager and implementing robust access controls.
  • Proven expertise in securing CI/CD pipelines and integrating security practices in DevOps processes.
  • Strong background in application security, including SAST, DAST, and container security practices.
  • Hands-on experience with Kubernetes and Docker, focusing on securing containerized environments.
  • Proficient in scripting and automation with languages such as Python, TypeScript, or C#.
  • Experience with infrastructure as code (IaC) using tools like Terraform, CloudFormation, or Pulumi.
  • Demonstrable skills in creating effective monitoring and alerting systems using Datadog for maintaining platform reliability and security.
  • Experience in architecting and developing on-call systems.
  • Experience setting up service catalogues and delivering IT services effectively.
  • Proven ability to develop and maintain Internal Business SLOs and SLAs.
  • Experienced in conducting penetration testing and vulnerability management.
  • Excellent record of maintaining documentation, writing technical blogs, and performing knowledge sharing and show-and-tell sessions.
  • Excellent problem-solving skills and the ability to work independently as well as collaboratively.
  • Strong communication skills and the capability to articulate complex security issues to stakeholders.
  • A proactive approach to security that integrates innovative solutions to prevent and mitigate risks.

We offer a comprehensive benefits package that includes:

  • Stock Options
  • Private Medical insurance via Vitality
  • EAP with Health Assured
  • Enhanced Maternity and Paternity Leave
  • Modern and sophisticated office space in Central London
  • Free Gym in office building in Holborn
  • Subsidised Lunch via Feedr
  • Deliveroo Allowance if working late in office
  • Monthly in office Masseuse
  • Team and Company Socials
  • Football Power League / Squash Club

At YouLend, we champion diversity and embrace equal opportunity employment practices. Our hiring, transfer, and promotion decisions are exclusively based on qualifications, merit, and business requirements, free from any discrimination based on race, gender, age, disability, religion, nationality, or any other protected basis under applicable law.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.