Job Description
The Opportunity:
Apex Secure Systems is seeking a visionary Senior Security Engineer to lead our advanced threat detection and mitigation efforts. In this pivotal role, you will architect and maintain robust security frameworks that protect our enterprise assets and client data against evolving cyber threats. If you are passionate about Zero Trust architecture and have a track record of securing complex environments, we want to hear from you.
Why Join Us?
• Work with state-of-the-art technology in a highly regulated industry.
• Competitive compensation and comprehensive benefits package.
• Flexible hybrid working model based in the heart of London.
• Professional development budget for certifications and training.
Responsibilities
- Design, implement, and maintain a comprehensive Zero Trust security architecture across cloud and on-premise environments.
- Lead incident response investigations and coordinate with cross-functional teams to remediate security breaches and vulnerabilities.
- Conduct regular security assessments, penetration testing, and vulnerability scans to identify and mitigate risks proactively.
- Monitor security systems and analyze threat intelligence to detect anomalous behavior and potential threats in real-time.
- Develop and enforce security policies, standards, and procedures in alignment with ISO 27001 and GDPR compliance.
- Collaborate with software development teams to integrate security best practices into the DevSecOps pipeline.
Qualifications
- 5+ years of experience in Information Security, with at least 2 years in a Senior or Lead Engineering role.
- Strong knowledge of Zero Trust principles, SIEM tools (e.g., Splunk, Elastic), and firewalls (e.g., Fortinet, Palo Alto).
- Experience with cloud security platforms (AWS, Azure, or GCP) and container security (Kubernetes).
- Professional certifications such as CISSP, CISM, CEH, or CRISC are highly preferred.
- Proficiency in scripting and automation using Python, Bash, or PowerShell.
- Excellent communication skills with the ability to articulate complex security concepts to non-technical stakeholders.