Security Engineer
Confirmed live in the last 24 hours
Locations
London, UK
Experience Level
Intern
Desired Skills
AWS
Requirements
- Good experience in at least some of the areas mentioned above (we're not expecting any candidate to be an expert in all areas)
- Excellent information security and technology background
- Strong understanding of web application security concepts, including OWASP Top 10 vulnerabilities, secure coding practices, and application security testing tools
- Experience with security tools and technologies, such as web application firewalls (WAFs), static and dynamic application security testing (SAST/DAST) tools, and vulnerability scanners
- Good AWS experience and familiarity with various AWS security services
- Knowledge of industry and regulatory security standards, such as ISO 27001, SOC2, and GDPR
- Strong analytical and problem-solving skills, with the ability to identify and mitigate security risks
- Prior experience in software development, demonstrating a strong foundation in programming principles and an understanding of secure coding practices
- Security certifications (any of the famous abbreviations)
- Certifications from cloud providers' certification paths
- Security qualifications (e.g. apprenticeships or degrees)
- Experience with preparing high quality documentation
- Experience using logging tools (whether this was a SIEM system or not) to generate alerts and reports
- Knowledge of the MITRE ATT&CK framework
Responsibilities
- Build and maintain security tooling and infrastructure to improve our overall security posture
- Monitor and respond to security incidents
- Work with the wider Platform and application teams to ensure that our infrastructure, systems, and applications are secure
- Develop secure coding practices and provide guidance to development teams on application security best practices
- Keep up to date with the latest security trends and technologies related to application security, and evaluate their potential impact on our systems and data
- Develop and maintain security documentation related to application security, including policies, procedures, and guidelines
Cloud-based renewable energy service
Company Overview
Octopus Energy is on a mission to transform energy globally, faster and cheaper than anyone imagined. They are are relentless in driving the smart grid technologies that'll deliver cheaper green electricity to fuel our homes, businesses, cars and heating.