Senior Security Engineer
Who are Beeks Group?
Cloud computing is crucial to Capital Markets and finance.
Beeks Group is a leading managed cloud provider exclusively within this fast-moving sector. Our Infrastructure-as-a-Service model is optimised for low-latency private cloud compute, connectivity and analytics, providing the flexibility to deploy and connect to exchanges, trading venues and public cloud for a true hybrid cloud experience.
Founded in 2011, Beeks Group is listed on the London Stock Exchange (LSE: BKS) and has enjoyed continued growth each year. Beeks Group now employs over 100 team members across the globe.
We have a fantastic opportunity for a Server Infrastructure Lead to join us at our unique Head Office in Renfrew which includes our state-of-the-art gym with weekly circuit training, a personal trainer and yoga classes as well as the Beeks Bar or weekly masseuse to help you unwind!
This role will offer the right candidates the opportunity to not only become a shareholder in the business as we shape the business through a transformational stage of its evolution.
About the role
The Senior Security Engineer will work in our head office based in Braehead, Glasgow. The role will involve working closely with the wider technology teams to enhance Beeks cyber maturity. Furthermore, it provides the opportunity to lead the implementation and management of various security technologies to adequately manage cyber risk.
Responsibilities
- Collaborating with the CISO to enhance the Beeks information security strategy.
- Developing new security capabilities to support delivery and ensure that the tools and approaches used are effective.
- Responsible for building out our security incident management, breach response processes and playbooks.
- Leading the assessment of security events and the investigation of security incidents to protect Beeks and customer assets.
- Responsible for designing and developing SIEM security use cases.
- Responsible for designing and implementing security standards and secure configurations.
- Responsible for our proactive vulnerability scanning ensuring that all known vulnerabilities are addressed in line with policy.
- Actively manage and monitor relevant threat intelligence feeds and where required assess, analyse and act including disseminating relevant intelligence in a timely manner to appropriate stakeholders.
- Responsible for working with Beeks development teams to implement secure development practices.
- Responsible for planning and co-ordinating internal and third-party led security tests, assessments and audits of our information security information security policies, procedures, and systems.
- Responsible for identifying, assessing, managing, remediating, and tracking information security risks through our risk management framework and ensuring key risks are reported to the CISO.
- Perform regular internal security audits aligned to ISO27001 requirements.
- Establish a security awareness training programme aligned to internal security policies.
- Supporting our sales team by providing timely, accurate, and credible information security input to customer proposals, RFI and tender responses including directly engaging with our customers to clarify or challenge their requirements plus calling out any key assumptions and risks.
- Comfortable engaging with senior Customer and Beeks stakeholders to discuss security related matters including acting as an escalation point for any security issues.
Essential skills
- Ability to work in a small high performing team, collaborating with other technical resources whilst aligning to the business technology and security strategy.
- An experienced security engineer with the ability to quickly learn, adapt and use different technologies, including but not limited to Cloud platforms and protective monitoring.
- Strong technical knowledge and experience with SIEM, SOAR, IDPS, DDoS, Malware Protection, Vulnerability Management, and Application Security tooling, etc.
- Expert knowledge of Information Security frameworks, supporting processes and toolsets.
- Experience designing and leading the execution of cyber security exercises involving stakeholders across the business.
- Ability to breakdown and solve complex problems across multiple domains and successfully lead the recovery of major and / or complex security incidents.
- Knowledge and experience of threat hunting and problem-solving through the application of log data and the identification of patterns or trends.
Desirable Skills
- Sound understanding on ISO27001 and SOC2 frameworks.
- Experience of working in a SOC environment.
- Microsoft 365 Defender / Azure security experience. (SC-200, MS-500, AZ-500 certifications are beneficial).
- Corporate infrastructure experience (VPS/VMWare/Windows).
- 5 years hands-on experience as a security engineer or similar working with tools such as SIEM, vulnerability management, application security etc.
- Can demonstrate configuration and tuning of security tools including experience of responding to major incidents.
Experience / Requirements
- 5 years hands-on experience as a security engineer or similar working with tools such as SIEM, vulnerability management, application security etc.
- Can demonstrate configuration and tuning of security tools including experience of responding to major incidents.
What we offer:
Financial:
- A competitive salary
- Share option scheme – an opportunity to have a tangible financial stake in the work that you do.
- Pension
- Flexible Work Hours.
- Life cover (4 x salary)
- Training Allowance
Lifestyle:
- A very casual work environment.
- 33 days annual leave (including 8 bank holidays)
- Hybrid working pattern home/office (an average of 3 days a week in the office for local candidates)
Health:
- Private Health Insurance including dental.
- On-site gym and PT Sessions
- Weekly yoga session
- On-site massage therapist
- Free fruit
Recruitment Process
- 15-20min Screening Call
- ~1hr Technical Interview
- Offer issued and start date agreed
We are an Equal opportunity employer.
Applicants must have the right to work in the UK
- Department
- IT OPS
- Locations
- Glasgow Office
- Remote status
- Hybrid Remote
- Employment type
- Full-time
Glasgow Office
Employee Benefits
-
A unique and rewarding share options scheme
-
Flexible work schedule
-
Hybrid working - 2 days at home / 3 days in the office
-
Private healthcare (including dental)
-
Group life cover (4 x salary)
-
Company pension scheme
-
Generous training budget
-
Employee referral scheme
-
Onsite gym with PT and yoga sessions weekly
-
Weekly massages
About Beeks Group
Our purpose
Beeks help companies build, connect and analyse in the financial markets.
Our purpose is to provide a global, rapid deployment service using secure, scalable environments optimised for capital markets and financial services, without the need for long-term contracts or commitments.
Our vision is to empower our clients to work with speed and agility, no matter the size of their business.
Senior Security Engineer
Loading application form
Already working at Beeks Group?
Let’s recruit together and find your next colleague.