Job Description
Are you ready to defend the digital frontier? Apex Secure Systems is seeking a world-class Senior Information Security Engineer to join our elite threat defense team in London. In this pivotal role, you will architect robust security frameworks, lead incident response efforts, and ensure our infrastructure remains impervious to evolving cyber threats.
We offer a competitive salary, flexible working options, and a commitment to continuous learning in a high-growth environment. If you have a passion for cybersecurity and a track record of protecting critical assets, we want to hear from you.
Responsibilities
- Lead Incident Response: Spearhead the detection, containment, and eradication of cyber incidents and manage post-incident reviews to prevent recurrence.
- Threat Hunting & Analysis: Proactively identify vulnerabilities and threats within our network using SIEM tools and advanced threat intelligence.
- Security Architecture: Design, implement, and maintain security controls, including firewalls, IDS/IPS, and encryption protocols.
- Compliance & Governance: Ensure adherence to ISO 27001, GDPR, and other regulatory standards through regular audits and risk assessments.
- Team Leadership: Mentor junior security analysts and collaborate with development teams to integrate security into the software development lifecycle (DevSecOps).
- Penetration Testing: Oversee and conduct regular penetration testing and red team exercises to validate security controls.
Qualifications
- Experience: 5+ years of experience in Information Security, with at least 2 years in a senior engineering or leadership capacity.
- Certifications: CISSP, CISM, CEH, or equivalent certifications are highly preferred.
- Technical Skills: Proficiency in Python, Bash, or PowerShell for scripting; hands-on experience with SIEM platforms (e.g., Splunk, QRadar) and SOAR tools.
- Knowledge: Deep understanding of network protocols, cloud security (AWS/Azure/GCP), and endpoint protection.
- Communication: Exceptional ability to communicate complex security concepts to non-technical stakeholders and executive management.
- Education: Bachelor’s degree in Computer Science, Cybersecurity, or a related field.