- Company Name
- PeopleGenius
- Job Title
- Senior Security Engineer
- Job Description
-
**Job Title**
Senior Security Engineer
**Role Summary**
Lead the implementation of Group cybersecurity strategy within the UK, coordinating between Group Security, outsourced partners, and UK subsidiaries. Own UK technical approvals, risk assessments, incident escalation, and delivery of security projects and operations.
**Expectations**
- UK resident, DBS and credit checked; remote working with on‑site visits once or twice a month.
- Flexible work schedule to accommodate global partner time zones.
- Demonstrated career progression and willingness to lead and influence security initiatives.
**Key Responsibilities**
- Maintain and optimise VPN, firewall, endpoint, and application security for remote laptop estate and SaaS solutions.
- Manage patch, vulnerability, and configuration processes; perform regular control effectiveness checks.
- Execute identity and access management solutions (OKTA/Entra IDAM) and device automation.
- Deliver cloud application security, WAF defence, and cloud platform risk assessments (Prisma Cloud, Palo Alto).
- Lead incident response, threat monitoring, and post‑incident investigations.
- Perform technical approvals, impact assessments, and project‑specific security deliverables.
- Provide governance, compliance, and continuous improvement support (SOC 2, ISO 27001, CIS benchmarks).
**Required Skills**
- Hands‑on experience with Palo Alto (Cortex ERD, Global Protect, Prisma Cloud), Nucleus vulnerability management, Airlocker, Trend Micro, Abnormal Email Security.
- Strong knowledge of SAST/DAST, Pen Testing, and security metrics.
- Expertise in remote work security, endpoint, VPN, and firewall administration.
- Proficiency in identity and access management (OKTA/Entra).
- Analytical problem‑solving, communication, and stakeholder management.
- Experience delivering security projects across multiple UK subsidiaries.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security or related field preferred.
- Relevant certifications (CISSP, CCSP, CEH, GCIH, or equivalent).
- Knowledge of UK regulatory compliance (FCA, GDPR) and cyber‑security frameworks.