As a member of the Information Security Team, you will play a critical role in safeguarding our systems and data. This hands-on and collaborative role requires a balance of technical expertise, problem-solving, and a proactive mindset. You will work closely with cross-functional teams to embed security into our infrastructure, processes, and culture.
Requirements
- Design, implement, and maintain security controls across our cloud environments to ensure robust protection of systems and data.
- Oversee privileged access roles and maintain secure identity and access management practices.
- Monitor, maintain, and expand our use of access control (ABAC, RBAC, CA)to support scalable and secure operations.
- Manage and optimise security tools, including SIEM, EDR, and vulnerability management platforms, to enhance visibility and control.
- Integrate security tooling with monitoring and alerting platforms to ensure timely detection and response to potential threats.
- Continuously monitor, analyse, and respond to security events, conducting investigations and proactive threat hunting to reduce risk exposure.
- Participate in incident response planning and maintain forensic readiness to support effective and timely resolution of security incidents.
- Define and automate security processes to improve detection, response, and operational efficiency.
- Automate audit trails and evidence submission workflows to support compliance and reduce manual overhead.
- Develop reusable compliance artefacts and templates to support ongoing PCI DSS and ISO 27001 initiatives.
- Collaborate cross-functionally with engineering, DevOps, and operations teams to embed security best practices into daily workflows.
- Embed security checkpoints in the SDLC and change management processes to ensure secure development and deployment practices.
- Support compliance and risk assessments to help the organisation meet evolving regulatory and contractual obligations.
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan