Developing our TRE airlock as part of a squad, specifically the ‘airlock checks engine’ and the security checks that will run within this.
Supporting our product managers with shaping our airlock roadmap, ensuring security items are included alongside non-security features.
Contributing to developing our airlock policy specifying how to handle the findings from airlock checks.
Leveraging in-house knowledge to enrich and enhance our SOC capabilities.
Overseeing and supporting the operation of our various security tools, including Microsoft Defender and Microsoft Purview suites and Entra ID (previously AAD) for IAM, Identity Governance and Privileged Identity Management.
Providing guidance and a level of oversight for vulnerability management and triage work.
Documenting security processes and security tool low-level design/configuration.
Contributing to the development of security service delivery and operation documentation.
Assisting tech teams with integrating their systems and services with security services and tools.
Supporting the cloud security and application security engineers and wider security team with their various responsibilities, including achieving and maintaining ISO 27001 certification and threat modelling activities.
Requirements
Proficiency in writing Python and ideally KQL.
Comfortable working with Infrastructure as Code, ideally with knowledge of Terraform.
Experience working directly with software engineering best practices: source control, unit testing, code reviews, design documentation, excellent debugging, troubleshooting skills.
Experience with Azure (ideally), AWS or GCP, Docker, Kubernetes, and Helm.
Experience of operationally managing software components once live, including; observability, logging, metrics, error reporting, debugging and live incident management.
Experience with Microsoft Sentinel, Microsoft’s Defender and Purview suites and Microsoft Entra.
Experience of SOAR tooling and automating security capabilities and operations.
Experience in Threat Modelling.
Ability to communicate with stakeholders and audiences outside your own team.
Exposure to Agile working.
Experience working in/with cross-functional teams consisting of engineers, product, UX and non-technical stakeholders.
Desire to be part of a small fast-paced security team.