Back to search
Apache Associates Linkedin · Posted 3d ago

SecOps Engineer

United Kingdom

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

We’re working with an innovative Financial Services company that is looking to appoint an experienced SecOps Engineer to join its security-focused engineering function in London.


This is a hands-on role for someone who sits comfortably at the intersection of Security Operations, DevOps, infrastructure and software engineering. You’ll play a key role in securing the organisation’s data centre infrastructure and cloud environment, with a strong focus on automation, Infrastructure as Code (IaC) and modern security practices.


The ideal candidate will be technically curious and comfortable getting into the detail – whether that means writing scripts, modifying open-source security tooling, improving Terraform deployments or developing solutions in Python or Go.


What You’ll Be Doing


  • Systems Hardening: Configure and script phishing-resistant MFA, undertake port and configuration scanning, and continuously improve the security posture of infrastructure.
  • Security Tooling: Customise and extend open-source security tools, typically using Python or Go, to meet specific security and deployment requirements.
  • Vulnerability Management: Help develop and implement a robust vulnerability and penetration-testing programme.
  • Data Security & Governance: Protect data at rest and in transit through encryption, database security and the implementation of a formal data classification framework.
  • Disaster Recovery: Maintain and improve the organisation’s Disaster Recovery playbook and participate in tabletop exercises.
  • Network Security: Strengthen network egress controls, DNS security and the overall security of critical network infrastructure.
  • Backup & Archival: Design and implement robust backup and archival solutions across on-premise and cloud environments.
  • Configuration & Asset Management: Help establish effective asset and configuration management capabilities.
  • Infrastructure as Code: Use Terraform and similar technologies to securely build, rebuild and manage infrastructure environments.
  • Automation & Development: Develop scripts, modules and security tooling to automate and improve SecOps processes.


No two days are likely to be the same. You could find yourself:


  • Joining the daily SecOps scrum.
  • Working with technology leaders to architect an improved cloud and archival solution.
  • Updating Terraform code to securely rebuild parts of a non-production environment.
  • Writing a Go module to implement an authentication plugin.
  • Evaluating a new secure database authentication mechanism.
  • Investigating vulnerabilities or strengthening network and infrastructure controls.


You’ll ideally have:


  • 5+ years’ experience across DevOps, SecOps, Cloud Security or a similar environment.
  • Strong practical experience securing infrastructure across cloud and/or data centre environments.
  • Good knowledge of firewalls, routers and critical network infrastructure.
  • Experience with at least one Intrusion Detection product.
  • Strong understanding of Infrastructure as Code, ideally with Terraform.
  • Experience with modern CI/CD tooling, such as Git, Jenkins and Jira.
  • Excellent Linux administration and troubleshooting skills.
  • A strong understanding of file systems and infrastructure architecture.
  • Experience with observability and logging platforms such as ELK / Elastic Stack.
  • Strong scripting or programming capability in at least one language – ideally Python, Go or Bash.
  • Working knowledge of SQL and S3/cloud storage.
  • A security-first mindset combined with the ability to work hands-on with engineering and infrastructure teams.
  • A degree in Computer Science, Mathematics, Engineering or a related technical discipline would be advantageous.


Desirable Experience


It would be particularly useful if you also have:

  • Experience working with front or middle-office trading and risk systems.
  • Knowledge of enterprise storage systems.
  • Experience developing or contributing to technical blogs, publications or open-source projects.
  • Experience working within highly regulated or security-conscious environments.


Please note: This role requires someone in the office 4 days per week in the City of London.


Why Apply?

This is an opportunity to join an organisation where SecOps is treated as an engineering discipline, rather than simply a monitoring function.


You’ll have the opportunity to work across cloud, infrastructure, automation, security tooling and software development, with genuine scope to influence how security is designed and implemented across the technology estate.

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search