
Information Security Engineer
- Stoke-on-Trent
- Permanent
- Full-time
- Experience in Information Security engineering, with a focus on API integration and secure coding.
- Strong practical knowledge of Python, Java, and PowerShell.
- Solid understanding and experience with CI/CD pipelines.
- Experience with security technologies and automation principles such as Ansible and Puppet.
- Experience with container security such as Docker and Kubernetes, within Cloud environments including AWS, Azure ad GCP.
- Knowledge of secure coding practices and common vulnerabilities such as OWASP Top 10.
- Experience with application integration methodologies.
- Deep knowledge of ITIL principles and IT Security governance frameworks ISO 27001, NIST, PCI DSS, CIS Controls and benchmarks.
- Complete understanding and practical security implementation experience in Microsoft and Linux OS including RHEL7,8,9, CentOS 6, 7 and Ubuntu 22.04, 24.04.
- High attention to detail, excellent documentation skills and ability to work to deadlines.
- Developing and maintaining secure code for automation scripts and application integrations using Python, Java, and PowerShell.
- Designing and implementing security automation solutions to streamline security operations.
- Maintaining and improving internally built systems.
- Implementing and managing various Security tools.
- Participating in Security Engineering projects.
- Undertaking security related investigations.
- Liaising with stakeholders to ensure that external documents are completed safely and that Information Security requirements are complied with.
- Creating and updating technical documentation.
- Performing daily routine security checks and audits.
- Staying up to date with new and emerging threats and escalating any of interest to appropriate teams for further evaluation.