What you will do
- Design, build, and implement security controls, automation, and processes across product, platform, and infrastructure environments.
- Identify operational and technical security gaps, propose solutions, and drive engineering initiatives to close them.
- Collaborate with SRE and engineering teams to integrate security into CI/CD pipelines, deployment workflows, and cloud‑native architectures.
- Build automated tooling and services to enforce secure configurations, detect misconfigurations, and support continuous compliance.
- Assist in threat modeling, design reviews, and architectural assessments for new and existing systems.
- Contribute to internal security documentation, best practices, and developer guidance.
- Participate in security incident response when engineering expertise or automation support is needed.
What you will need
- 4+ years of experience in security engineering, platform security, or DevSecOps roles.
- Hands‑on experience implementing security controls and automation within cloud environments; GCP or AWS preferred.
- Proficiency in modern scripting, automation, and infrastructure‑as‑code tools such as Python, Bash, Go, Terraform, or similar.
- Ability to collaborate closely with engineering teams and translate security requirements into practical, scalable solutions.
- Strong analytical and problem‑solving skills with a bias toward automation over manual workflows.
- Curiosity, ownership, and a drive to continuously improve the security posture of complex systems.
- Familiarity with Cloudflare (DDoS protection, WAF), OSS SIEM tools (Splunk, Elastic, etc.), incident‑management platforms (Incident.io, PagerDuty), and at least one CI/CD system (GitHub Actions, Concourse, CircleCI).
- Experience maintaining HIDS systems (Wazuh preferred).
Nice to have
- Knowledge of security standards and governance frameworks (CIS Benchmarks, NIST, SOC2, ISO 27001, PCI DSS) and how to operationalize them.
- Hands‑on experience with building and maintaining a SIEM comprised of open‑source and hosted components.
- Experience securing consumer‑facing web and iOS / Android applications.
- Experience designing policies and administering Vault and other HashiCorp products.
- Experience managing security vendors.
Compensation & Perks
- Full‑time salary based on experience and meaningful equity.
- Role based in London office with mandatory in‑office presence four days per week.
- Up to 20 days of remote work per year under Work from Anywhere Policy.
- Unlimited vacation policy.
- Apple equipment.
- Flexible work culture.
- Opportunity to build career at a rapidly expanding global technology company.
Equal Opportunity
Blockchain is committed to diversity and inclusion and is an equal opportunity employer. Discrimination and harassment of any kind based on race, religion, color, national origin, gender, gender expression, sex, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law is prohibited. Decisions are based solely on qualifications, merit and business needs. If you have any data privacy questions, you may contact our Data Protection Officer at dpo@blockchain.com.