Jobs
>
London

    Principal Engineer, Product Security - London, United Kingdom - Cyber Crime

    Default job background
    Description

    Recursion

    Dive into Recursion's innovative approach to decoding biology. Join our mission, explore the future of TechBio, and be part of the revolution. Discover more

    View company page

    Your work will change lives. Including your own.

    Recursion is a clinical-stage biotechnology company decoding biology by integrating technological innovations across biology, chemistry, automation, data science and engineering to radically improve the lives of patients and industrialize drug discovery. Our team is working to solve some of the hardest, most meaningful problems facing human health today. Come join us in our mission to decode biology to radically improve lives, while doing the most impactful work of your life.

    The Impact You'll Make

    • Develop and lead the implementation of the product security strategy (combination of web, mobile, API, cloud , infrastructure and container security) and framework to protect against current and emerging security threats
    • Conduct threat modeling, risk assessments, and security reviews of products at various stages of the development lifecycle with a focus on shifting left
    • Design and implement secure coding practices, encryption standards, and security testing methodologies in collaboration with development/ML teams and ensure our products are secure, resilient and trustworthy
    • Serve as a subject matter expert on product security, providing education, guidance and mentorship to engineering teams and stakeholders across the organization
    • Help integrate ML models (first and third-party) securely into our product ecosystem.
    • Evaluate and implement security tools and technologies to improve the security posture of our products
    • Stay updated on the latest security trends including ML-specific threats, vulnerabilities, and technologies to continuously refine and enhance product security measures.
    • Detect security policy violations and drive security outcomes
    • Scale security without slowing down the business objectives
    • Develop and maintain security documentation, including security requirements, guidelines, and incident response plans
    • Perform security assessments, code reviews, and penetration testing to simulate real-world cyber attacks
    • Lead security incident response efforts, including investigation, mitigation, and the development of preventative measures.
    • Collaborate with stakeholders across the organization to ensure compliance with evolving AI security and other regulatory and industry security standards.

    The Team You'll Join

    You will join a growing Information Security team at Recursion, focused on enabling Recursion to decode biology by providing world class technology services that are designed and fit for purpose. You'll collaborate with your teammates and across departments to agree on what the most important challenges and capabilities are, then figure out how to get us there.

    The Experience You'll Need

    • Bachelor's or Master's degree in Computer Science, Information Security, or a related field.
    • You will join a growing Information Security team at Recursion, focused on enabling Recursion to decode biology by providing world class technology services that are designed and fit for purpose. You'll collaborate with your teammates and across departments to agree on what the most important challenges and capabilities are, then figure out how to get us there.
    • A minimum of 10 years of experience in product security, application security, or a related field, with a proven track record of securing complex products.
    • Deep understanding of security principles, threats, and countermeasures as they relate to product design and development.
    • Expertise in one or more programming languages (e.g., Java, C++, Python) and experience with secure coding practices.
    • Familiarity with security standards and frameworks (e.g., OWASP, NIST, ISO/IEC 27001)
    • Experience with various hacking tools and penetration testing frameworks (e.g., Metasploit, Burp Suite, Nmap, Wireshark).
    • Expertise in web application security testing, including OWASP Top Ten vulnerabilities. Proficiency in assessing web applications for common vulnerabilities like SQL injection, XSS, CSRF, and more
    • Experience with modern security tools and techniques for vulnerability scanning, penetration testing, and encryption.
    • Proficiency in exploiting vulnerabilities to gain unauthorized access and assess the impact of attacks and understanding of vulnerability scoring systems (e.g., CVSS) to prioritize findings.
    • Excellent communication and leadership skills, capable of driving security initiatives and influencing change across multiple teams and disciplines.
    • Relevant security certifications (e.g., CISSP, OSCP, GWAPT) are highly desirable.

    #LI-EP1

    The Values That We Hope You Share:

    • We Care: We care about our drug candidates, our Recursionauts, their families, each other, our communities, the patients we aim to serve and their loved ones. We also care about our work.
    • We Learn: Learning from the diverse perspectives of our fellow Recursionauts, and from failure, is an essential part of how we make progress.
    • We Deliver: We are unapologetic that our expectations for delivery are extraordinarily high. There is urgency to our existence: we sprint at maximum engagement, making time and space to recover.
    • Act Boldly with Integrity: No company changes the world or reinvents an industry without being bold. It must be balanced; not by timidity, but by doing the right thing even when no one is looking.
    • We are One Recursion: We operate with a 'company first, team second' mentality. Our success comes from working as one interdisciplinary team.

    Recursion spends time and energy connecting every aspect of work to these values. They aren't static, but regularly discussed and questioned because we make decisions rooted in those values in our day-to-day work. You can read more about our values and how we live them every day here .

    More About Recursion

    Recursion is a clinical stage TechBio company leading the space by decoding biology to industrialize drug discovery. Enabling its mission is the Recursion OS, a platform built across diverse technologies that continuously expands one of the world's largest proprietary biological and chemical datasets. Recursion leverages sophisticated machine-learning algorithms to distill from its dataset a collection of trillions of searchable relationships across biology and chemistry unconstrained by human bias. By commanding massive experimental scale — up to millions of wet lab experiments weekly — and massive computational scale — owning and operating one of the most powerful supercomputers in the world, Recursion is uniting technology, biology and chemistry to advance the future of medicine.

    Recursion is headquartered inSalt Lake City, where it is a founding member ofBioHive , the Utah life sciences industry collective. Recursion also has offices in London, Toronto, Montreal and the San Francisco Bay Area. Learn more at , or connect onX (formerly Twitter) andLinkedIn .

    Recursion is an Equal Opportunity Employer that values diversity and inclusion. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected under applicable federal, state, local, or provincial human rights legislation.

    Explore more InfoSec / Cybersecurity career opportunities

    Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

    #J-18808-Ljbffr


  • SITA London, United Kingdom

    **Overview**: · **Product Security Officer*** · - As · - **Product Security Officer**, you will have opportunities to take risks, challenge the status quo and shape the future for the greater good. You will be accountable for supporting the SITA product management community in en ...


  • JPMorgan Chase Bank, N.A. London, United Kingdom

    JPMorgan Chase & Co. has expanded its consumer business and we have launched a new digital retail bank in the UK. We are offering consumers a completely new banking experience. Under the Chase brand, the bank provides products and features tailored to meet the needs of customers ...


  • INTERIM PROFESSIONALS LIMITED London, United Kingdom

    My client is a Central Government Department engaging in an ambitious Change Programme to release an impressive target of efficiencies through better ways of working. Importantly, the programme of work does not have a primary target of cost savings but moreoverto improve process, ...


  • Sevier security management London, United Kingdom

    Full Job Description · A great opportunity to join a team working within the Film and Television industry. We're looking for smart and professional operatives, with both day and night shifts available. · You will be required to work within the major UK studios and on locations · ...


  • Pinkerton London, United Kingdom

    We are as invested in your career as you are. · As you navigate through these uncertain times, know that Pinkerton has been a stable, thriving corporation for over 170 years. As recognized leaders around the globe in the corporate risk management industry, you can rest assured th ...


  • JPMorgan Chase Bank, N.A. London, United Kingdom

    Trading Services & Capital Controllers partner with other JPMC functions, including Business Managers, Basel Measurement & Analytics (BM&A) within Global Operations, Product Team, LOB Product Controllers to establish control and governance best practices and accountability for th ...


  • JPMorgan Chase Bank, N.A. London, United Kingdom

    This is a unique opportunity to work in a cross-asset OTC derivatives environment with exposure to all types of derivatives from vanilla to complex products. Individuals will be given the opportunity to learn new skills or build upon existing knowledge within all aspect of valuat ...


  • Citi London, United Kingdom

    **Purpose**: · Execution Services represents the markets related businesses within Securities Services and currently comprises of Securities Financing (Agency Securities Lending & Collateral Management Services) & Foreign Exchange. · The Global Securities Financing Product Head, ...

  • Chase

    Product Security Lead

    2 hours ago


    Chase London, United Kingdom Permanent

    Job Identification · Job Category Cybersecurity · Business Unit Corporate Sector · Posting Date 05/03/2024, 10:17 · Locations LONDON, LONDON, United Kingdom · Job Schedule Full time · Job Shift Day · JOB DESCRIPTION · Product Security Lead · This is an excellent opportuni ...


  • Chase London, United Kingdom Permanent

    Job Identification · Job Category Security Engineering · Business Unit Corporate Sector · Posting Date 22/03/2024, 12:10 · Locations 25 Bank Street, Canary Wharf, London, Greater London, E14 5JP, GB · Job Schedule Full time · Job Shift Day · JOB DESCRIPTION · Product Secur ...


  • Entrust Corporation United Kingdom

    Product Security Engineer page is loaded · Product Security Engineer · Apply locations United Kingdom - Cambridge (nCipher) United Kingdom - Field (nCipher) time type Full time posted on Posted Yesterday job requisition id R002906 Career Growth, Flexibility and Collaboration ...


  • Nomadgao United Kingdom

    Mar 24, Databricks is hiring a remote Sr. Product Security Engineer. The Product Security Team's mission is to Left-shift SDLC (Security Development Lifecycle) processes for ALL code written in Databricks (for Customer Use or Supporting Customer internally) to reduce the likeliho ...


  • Databricks Inc. United Kingdom

    The Product Security Team's mission is to Left-shift SDLC (Security Development Lifecycle) processes for ALL code written in Databricks (for Customer Use or Supporting Customer internally) to reduce the likelihood of introducing new vulnerabilities in production and minimize the ...


  • BAE Systems United Kingdom

    Job title: Product Security Engineer · Location: Warton. We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Salary: £45,326 - £52,426 dependent on skills and experience What you'll be doing: A ...


  • BAE Systems (New) United Kingdom

    Job Title Graduate Submarines Product Security Engineer · BAE Systems do offer a range of hybrid and flexible working arrangements, however it is expected on our Graduate Programme you will be required to attend your site approximately3-4 days per week. The hybrid working arrang ...


  • Atlas Recruitment Group United Kingdom

    1 week ago Be among the first 25 applicants · Save this job with your existing LinkedIn profile, or create a new one. Save this job with your existing LinkedIn profile, or create a new one. · Your job seeking activity is only visible to you. Email Welcome back · Sign in to sa ...


  • Omega Resource Group Stevenage, United Kingdom Full time

    Job Title: Product Cyber Security Officer · Location: Bristol UK – Hybrid ( 1-2 days office work - felxible) · Pay Range/details: up to £55k + bonus, pension and more. · Contract Type: Permanent Full-time · Our client, a global leading manufacturer at the forefront of weapons sy ...


  • Jefferson Frank Frimley, United Kingdom

    My client working within the aerospace and defence space are currently hiring for a Product Security Analyst Engineer. · 12 Month Contract - Inside IR35 - Hybrid: 3 Days on site in Frimley (Surrey) - 1 Stage Interview · MUST have ACTIVE and TRANSFERABLE SC Clearance · Role & Resp ...


  • Iceberg Cyber Security England, United Kingdom Full time

    Are you leaving the forces or have an interest in working within a Global British Defense organization? · I have an exciting opportunity for you to provide advice on product security, encompassing both cyber and physical aspects, and to identify potential risks. This role involv ...


  • Salt London, United Kingdom

    Senior Application Security Engineer · We are looking for an information security professional to lead my clients application security program. · As a Senior Application Security Engineer, you'll partner with product teams to help improve the security posture and design of both ...