Jobs
>
Welwyn Garden City

    Senior Security Engineer - Welwyn Garden City, Hertfordshire, United Kingdom - Tesco

    Tesco
    Tesco Welwyn Garden City, Hertfordshire, United Kingdom

    Found in: Jooble UK O L C2 - 5 days ago

    Tesco background
    Description


    Senior Security Engineer - transform the way security is delivered within our engineering & product teams...About the Security Engineering teamWe are 15+ and growing team that supports Tesco technology and software development teams across cloud and other cutting-edge technologies at scale.

    We have a new role as the security engineer for our security engineering team based in the UK. The software development teams are responsible for their own security, so we act differently than a traditional security team. We are team of security partners, not security police... and we go as far as calling ourselves as Security Partners, not Security Architects or Consultants.

    Our software engineering teams have tremendous freedom in their work and the corresponding responsibility to do the right thing for our customers.

    Instead of controlling our engineering teams with process and security gates, we enable them to innovate by providing security guidance to make right decisions for Tesco.

    The good news is that our engineering teams are (usually) willing partners in doing better security, more efficiently and earlier in the process.

    We'd like you to help us scale out and represent ourselves for the wider engineering domains.
    Tesco has fully embraced DevOps and agile methodologies to develop our enterprise APIs, services and cloud capabilities.

    Our 100+ delivery teams have loads of Docker, Kubernetes and microservices galore across Azure and AWS, so our security approach must work with elastic, here today, gone tomorrow infrastructure.

    Our security approaches should be event driven, real-time and effective.

    Weekly scans are so 2010.The roleThis role is about transforming the way security is delivered within our engineering teams, specifically our online and customer focused engineering teams.

    As our software and enterprise APIs continue the move to the cloud, we have different security challenges, and you'll help teams navigate that change successfully.

    The boundary between infrastructure and application has virtually disappeared and being secure means support through the entire SDLC – from the ideas phase into threat modelling during design, during development then through to production and ops.

    Developing strong security partnerships for Tesco TechnologySecurity partnerships are about transforming the way security is delivered within our technology domains and software engineering teams, your part to play as a security partner is to actively champion positive security change within your product teams.

    On a day-to-day basis:Provide engineering and product teams with direction and guidance for all security matters. There is a whole security organisation to back you up, so that is not as scary as it sounds.
    Help product teams deliver new business features securely while balancing and clearly articulating technical and business risk.
    Be expected to drive the deployment/integration of security capabilities into engineering teams within the product domain.

    Drive security initiatives such as developing security requirements, threat modelling, strengthening application security, vulnerability reduction, etc., with the engineering teams.

    Reducing friction is paramount and we are all about fast feedback within existing workflows, not adding another console for a developer to check.

    Support teams in a collaborative manner in matters of mobile application, web application, cloud and data security, with threat modelling, risk treatment and security advice across all security domains.

    If you can raise a PR to resolve fix a security issue, do so.
    Facilitate risk remediation but also challenge decisions and status-quo.
    Facilitate in assurance activities like penetration testing, purple testing, app assurance.
    Build quarterly/monthly roadmaps for security activities and plan them.
    Be an evangelist for security, take part in strengthening Tesco's internal policies and standards.

    Longer-term, the nature of the role also means you are expected to identify new problem spaces, propose fixes, engage across disciplines.

    In other words, we want you to innovate and will give you the room to do so.

    If you can think of ways to do security, faster, more 3 accurately, with greater consistency and at scale while minimizing friction, you'll be supported all the way.


    Ideally, you will bring the following:

    Solid security experience across common security domains – the technology might have changed, but most of the security challenges have not.

    A thorough understanding of modern application development practices so that security capabilities can be introduced and embedded while minimising developer friction.

    Excellent interpersonal, facilitation, and leadership skills along with effective communication (both written and verbal) skills.
    Be able to provide security guidance to engineering teams throughout the product development lifecycle.
    Be able to develop threat models, attack trees, and embed security by design in product engineering effort.
    Good understanding of web technologies, REST APIs, micro services, modern application development, and mobile apps.
    Good understanding of software architecture, dev-sec-ops, and network security.
    Experience in browser security or mobile app security is desirable.
    Good understanding of industry standards such as OWASP ASVS, OWASP Top-10, CIS benchmarks.
    Hands-on experience with complex Azure and AWS architectures with an emphasis on containerised workloads.
    Command-line/API experience is highly desirable as security automation is a strategic priority.
    Some coding experience in something is always a plus - Java, HTML, JavaScript.

    You do not need to "be a developer" but you do need to understand the implications of security on engineering velocity.

    Knowledge of and experience with PCI-DSS will be desirable.
    A minimum of 5 years of experience in security engineering or closely related areas.
    Bachelor's degree in Computer Science / Information Systems or Engineering discipline.

    Azure or AWS cloud security certifications (preferred).About TescoOur vision at Tesco is to become every customer's favourite place to shop, at home, in town, or on the move, anywhere in the world.

    Our continuous drive for the best tools and technologies helps us to deliver this vision. We're driving innovation and transforming our technology solutions to become one of the world's leading retailers.

    We need people who share our ambition to deliver for our customers:
    passionate and confident people willing to take the initiative and drive us forwards.

    In return we offer an exciting environment in a world class technology department, an excellent benefits package, and amazing career development opportunities.

    If that sounds exciting, then we'd love to hear from youPlease reach out , or apply here.

  • Bennett and Game Recruitment LTD

    Security Engineer

    Found in: SonicJobs Direct Apply UK - 4 days ago


    Bennett and Game Recruitment LTD St. Albans, United Kingdom Full time

    Security Service & Reactive Engineer required for our client, a leading business who design, install and maintain Fire & Security systems. · Security Engineer Position Remuneration · £32,000 - £38,000 DOE · Paid door to door · 25 days + 8BH (1 Day Extra Per Annum To 30 Days & a F ...

  • Maticmind S.p.A

    Security Engineer

    Found in: Jooble UK O C2 - 3 days ago


    Maticmind S.p.A United Kingdom

    Cerchiamo un Security Engineer per il nostro team di Roma. · Il/La candidato/a Il profilo ha maturato un'esperienza di almeno cinque anni, in contesti complessi ed articolati, di delivery di progetti e gestione di piattaforme di sicurezza di rete con particolare riguardo alle te ...

  • Xact Placements Ltd

    Security Presales Engineer

    Found in: SonicJobs Direct Apply UK - 3 days ago


    Xact Placements Ltd Hitchin, United Kingdom Full time

    Security Pre-Sales Engineer · Overview:As a Pre-Sales Engineer, you will play a critical role in driving sales success by providing technical expertise and support throughout the pre-sales process. You will collaborate closely with the sales team to understand customer requiremen ...

  • Gruppo SCAI

    Cyber Security Engineer

    Found in: Jooble UK O C2 - 3 days ago


    Gruppo SCAI United Kingdom

    SCAI Partners, società del GRUPPO SCAI focalizzata nella Consulenza Manageriale, in ottica di potenziamento del Business Service Line Cyber Security, sta cercando una risorsa con il ruolo di Cyber Security Engineer | Identity and Access Management Specialist. · La risorsa sarà ...

  • Mainstay Facilities

    Fire and Security Engineer

    Found in: SonicJobs Direct Apply UK - 5 days ago


    Mainstay Facilities Bedford, United Kingdom Full time

    Job title : Fire and Security Engineer · Contract type: Permanent · Location: Bedfordshire · Salary: Up to £35,000 · Our client is currently looking for a Fire & Security Engineer to join them at a single site in Bedfordshire. · As the new Fire & Security Engineer, you will repo ...

  • Tesco

    Senior Security Engineer

    Found in: Appcast UK C C2 - 4 days ago


    Tesco Welwyn Garden City, United Kingdom

    Senior Security Engineer - transform the way security is delivered within our engineering & product teams... · About the Security Engineering team · We are 15+ and growing team that supports Tesco technology and software development teams across cloud and other cutting-edge techn ...

  • Tesco

    Senior Security Engineer

    Found in: Ziprecruiter UK C2 - 4 days ago


    Tesco Welwyn Garden City, United Kingdom

    Job Description · Senior Security Engineer - transform the way security is delivered within our engineering & product teams... · About the Security Engineering team · We are 15+ and growing team that supports Tesco technology and software development teams across cloud and other ...

  • Construction Recruitment Services

    Fire And Security Engineer

    Found in: Click to Hired UK C2 - 1 day ago


    Construction Recruitment Services Welwyn Hatfield, Hertfordshire, United Kingdom Permanent, Full time

    Fire and Security Engineers wanted · Our client are an established & very successful Fire and Security company based in Hertfordshire, due to a number of contracts recently won they are looking for x2 Fire and Security engineers based in the Hertfordshire area. · Personal Specifi ...

  • Via Resource

    Cyber Security Engineer

    Found in: Ziprecruiter UK C2 - 4 days ago


    Via Resource Hertfordshire, United Kingdom

    Job Description · We are collaborating with a global client seeking to onboard a few Cyber Security Engineers to their expanding in-house Information Security team. · This is a senior technical security role focused on transforming the way security is delivered within their engi ...

  • Corecruitment International

    Fire & Security Engineer - Bedford

    Found in: SonicJobs Direct Apply UK - 6 days ago


    Corecruitment International Bedford, United Kingdom Full time

    The Role: Fire & Security Engineer · Salary: Up to £37,000 pa + call out available · Location: Bedford · Sector: Facilities Management · About the role: · An exciting new opportunity has landed for a Fire & Security Engineer working with a well-known facilities management comp ...

  • EDSB Ltd

    Fire & Security Service Engineer

    Found in: SonicJobs Direct Apply UK - 4 days ago


    EDSB Ltd London, United Kingdom Full time

    EDSB Compliance Solutions are national providers of Fire & Security, Electrical, Mechanical and Building Services. From Design and Specification through to Installation and Maintenance, our focus is to deliver compliance, alongside an unbeatable level of service. · We work nation ...

  • EDSB Ltd

    Fire & Security Service Engineer

    Found in: SonicJobs Direct Apply UK - 4 days ago


    EDSB Ltd London, United Kingdom Full time

    EDSB Compliance Solutions are national providers of Fire & Security, Electrical, Mechanical and Building Services. From Design and Specification through to Installation and Maintenance, our focus is to deliver compliance, alongside an unbeatable level of service. · We work nation ...

  • EDSB Ltd

    Fire & Security Service Engineer

    Found in: SonicJobs Direct Apply UK - 4 days ago


    EDSB Ltd Cambridge, United Kingdom Full time

    EDSB Compliance Solutions are national providers of Fire & Security, Electrical, Mechanical and Building Services. From Design and Specification through to Installation and Maintenance, our focus is to deliver compliance, alongside an unbeatable level of service. · We work nation ...

  • Construction Recruitment Services

    Fire and Security Senior Engineer

    Found in: Jooble UK O C2 - 16 hours ago


    Construction Recruitment Services Welwyn Hatfield, Hertfordshire, United Kingdom

    Fire and Security Engineers wanted · Our client are an established & very successful Fire and Security company based in Hertfordshire, due to a number of contracts recently won they are looking for x2 Fire and Security engineers based in the Hertfordshire area. · * You will have ...

  • H&K Fire Engineering

    Fire and Security Installation Engineer

    Found in: SonicJobs Direct Apply UK - 1 day ago


    H&K Fire Engineering London, United Kingdom Full time

    Summary of Role · You will oversee the installation and integration of security systems for our client, delivering a high-quality service to our customers. · What you will be doing · System Design: Collaborate with clients and project managers to design security systems tailored ...

  • Energy Jobline CVL

    Fire & Security Engineer's Required (Permanent)

    Found in: Jooble UK O C2 - 16 hours ago


    Energy Jobline CVL Welwyn Garden City, Hertfordshire, United Kingdom

    Fire and Security Engineers wanted · Our client are an established & very successful Fire and Security company based in Hertfordshire, due to a number of contracts recently won they are looking for x2 Fire and Security engineers based in the Hertfordshire area. · * You will hav ...

  • Hunter Mason Consulting

    Service & Maintenance Engineer Fire & Security Systems

    Found in: SonicJobs Direct Apply UK - 4 days ago


    Hunter Mason Consulting London, United Kingdom Full time

    Service & Maintenance Engineer – Fire & Security Systems · Harlow HQ, London Sites · £35,000 - £45,000 · 8:00am – 5:00pm · Information on the role · Maintain integrated electronic Fire & Security Systems in various Locations, Primarily East & West London · Carry out small work ...

  • Cedar Recruitment

    Controls Manager

    Found in: SonicJobs Direct Apply UK - 6 days ago


    Cedar Recruitment Welwyn Garden City, United Kingdom Full time

    Job Title: Controls Manager · Location: Hertfordshire (Hybrid) · Salary: Up to £75,000 · About Us: Our client is a leading global retailer committed to delivering exceptional experiences to their customers while ensuring the highest standards of integrity and compliance. Their de ...

  • Secure and Recruit Ltd

    Fire And Security Engineer

    Found in: Click to Hired UK C2 - 6 days ago


    Secure and Recruit Ltd Stevenage, United Kingdom Permanent, Full time

    Fire and Security Engineer · * Basic salary up to £55k · * Travel paid at overtime rates minutes 1 hour · * 25 days holiday, rising with service Plus BH's · * £250 per week standby rate · * Half of the call out rate paid (between £200 to £300) · * Private Healthcare · * Commissio ...

  • CBS Butler

    Engineer - Security

    Found in: Jooble UK O C2 - 5 days ago


    CBS Butler Stevenage, Hertfordshire, United Kingdom

    Salary: Up to GBP55,000 per annum + bonus · Security clearance will be required for this role. · You will be experience to a 3rd Line Support level, and have experience with both BAU and projects across Wintel, Storage and Database technologies. · Windows Servers and MS Exchan ...