Software Security Engineer
1 Days Old
Software Security Engineer
Department: Tech - Security
Employment Type: Permanent - Full Time
Location: Oxford, UK
Reporting To: Head of Information Security
Description
We are looking for a Security Engineer to join our Information Security team at our Oxford headquarters. You will be working across software engineering, modelling, and data science bringing your full self, including your security knowledge and expertise to the business.
As a Security Engineer at Aurora Energy Research, you will enable our colleagues to improve our secure software development lifecycle, ensure secure operational practices, and support compliance. You have a curious mindset, thrive in collaboration, and are passionate about new technology. You are solution oriented and focus on getting smart ideas into the hands of your colleagues. You enjoy working simultaneously on various initiatives and moving between teams.
You will become part of a top-notch information security team who love solving difficult problems. By joining our Information Security team, you will be part of something big and meaningful: help protect our brand and our company so that we can continue to provide vital support to the global energy transformation.
Key Responsibilities
- Cultivate security culture. Work with product and engineering colleagues, be the security champion that strives to prioritize sustainable controls and drives real risk reduction outcomes.
- Build secure products. Ensure security is considered throughout the product and software development life cycle. Provide security best practice, build security design patterns, complete security architecture reviews, threat models and risk assessments. Help solve engineering problems by implementing technical controls to mitigate risk.
- Ensure we are deploying solutions into a secure environment. Ensure we build solutions in alignment with our control requirements. Support on-going business-as-usual and champion vulnerability management. Provide internal security consultancy and lead on audit engagements, risk activities and project initiatives. Work closely with colleagues to ensure effective technology risk management.
- Work together. Collaborate and work with product and engineering teams. Help to solve problems and not just calling out issues. Take ownership of operational duties. Operate across the business to create alignment with security objectives.
- Ensure security thought leadership. Keep up on security best practice and be a continuous learner. Guide and define our security policies, procedures, and standards end-to-end, be recognized as a point of escalation and subject matter expert for software and data risk.
What we are looking for
- Degree in a computer science related subject or comparable working experience related to the role.
- Working knowledge of best-practices for securing micro-service architectures.
- Working knowledge of modern secure SDLC practices with a focus on embedding security into CI/CD pipelines.
- Working experience of the above concepts in the context of at least one major public cloud provider (AWS, GCP, or Azure).
- Understanding of global security standards (like SOC2 or ISO 27001) and regulatory requirements and experience in maintaining compliance with these.
- A desire to teach others and share knowledge. We want you to coach other team members on secure coding practices, design principles, and implementation patterns.
- Comfortable in uncharted waters. We are building something new. Things change quickly. We need you to learn technologies and patterns quickly.
- Ability to see the long term. We don’t want you to sacrifice the future for the present.
- Clarity of thought. We operate quickly and efficiently, and we value people who are economical with their time and clear with their opinions.
Desirable qualifications, capabilities, and skills:
- Experience in a software engineering role, ideally with focus on security.
- Working knowledge of offensive security, Application and Infrastructure penetration testing (OWASP top 10, OWASP ASVS).
- Understanding of security vulnerabilities and remediation options in codebases & containers.
- Working knowledge of methods for authentication and authorization (ODIC, OAuth 2, FIDO 2, etc)
What we offer
- Private Medical Insurance
- Dental Insurance
- Parental Support
- Salary-Exchange Pension
- Employee Assistance Programme (EAP)
- Local Oxford Discounts
- Cycle-to-work Scheme
- Flu Jabs
The Company is committed to the principle that no employee or job applicant shall receive unfavourable treatment on grounds of age, disability, gender reassignment, race, religion or belief, sex, sexual orientation, marriage or civil partnership, pregnancy and maternity.
The successful candidate would start as soon as possible. The team will review applications as they are received. Salary will be competitive with experience.
To apply, please submit your Résumé / CV, a personal summary, your salary expectations and please inform us of your notice period.
#LI-OD1
- Location:
- Oxford, England, United Kingdom
- Salary:
- £125,000 - £150,000
- Job Type:
- FullTime
- Category:
- IT & Technology
We found some similar jobs based on your search
-
New Today
Software Security Engineer
-
Oxford
-
not provided
- IT
Working with a scaling business in Oxford to recruit a permanent Software Security Engineer to join the Information Security team. This is a newly created role working across software engineering, modelling and data science teams. The role will enable the business to improve their SDLC processes through creating robust and resilient...
Apply -
-
New Today
Software Security Engineer
-
Oxford
-
not provided
This is a newly created role working across software engineering, modelling and data science teams. This is a role to enable the business to improve their SDLC processes through creating robust and resilient security operations. It is a permanent role with hybrid wor...
More Details -
-
New Yesterday
Software Development Engineer, AWS Security
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Software Development Engineer, AWS Security Job ID: 2846684 | AWS EMEA SARL (Germany Branch) - H13 Join us to drive high-impact innovation that secures our cloud by building solutions that enable an ecosystem of services to protect against sophistic...
More Details -
-
1 Days Old
Senior Principal Software Engineer - Email Security (London)
-
London
Social network you want to login/join with: Senior Principal Software Engineer - Email Security, London col-narrow-left Client: Mimecast Location: London, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-r...
More Details -
-
1 Days Old
Senior Principal Software Engineer - Email Security (London)
-
Highbury, Greater London
Principal/Senior Principal Software Engineer Email Security The driving force behind our award-winning Email Security Product at Mimecast Dive into the forefront of innovation with our Email Security engineering team. Our pioneering Email Securit...
More Details -
-
1 Days Old
Security Software Engineer
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Social network you want to login/join with: This is a general track for security-focused engineering in every team at Canonical, across all levels of seniority. Apply here if you are already an exceptional security-focused software engineer. Most pro...
More Details -