
Senior Security Engineer
- London
- Permanent
- Full-time
- Lead the management, administration and support of our SIEM platform and incident response environment, including general infrastructure and system administration.
- On-board, maintain and manage security log sources for our SIEM platform, including agent and policy deployment and creating ingest pipelines.
- Collaborate with security analysts to improve effectiveness of threat detection through creation and tuning of detection rules.
- Design, implement and optimise preventative security controls, working in partnership with our risk analysts to prioritise areas of focus.
- Conduct security architecture reviews, supporting the design and implementation of controls into key business and technology driven projects.
- Evaluate new security tools and technologies, including AI driven solutions, and recommend strategic security improvements.
- Support the design of security controls into our games and back end infrastructure.
- Explore and experiment with automation and AI to optimise our processes and enhance our preventative and detective capabilities.
- Collaborate across our IT and Digital teams to provide security expertise, advice and hands on support to improve security across both our enterprise and online platforms.
- Provide guidance and technical support to all security team members, contributing to a culture of continuous learning and curiosity.
- High availability of security platforms
- Cost effectiveness of security platforms
- Time to complete security enhancements
- Efficacy of Cyber Security team processes
- Customer satisfaction / usability (Security didn't make things harder or less usable)
- # of Critical or High-risk security vulnerabilities found in penetration tests.
- Experience in a hands-on SIEM/SOC Engineering or Security Engineering role or have gained similar experience through other adjacent roles.
- Capabilities working with Security Information and Event Management (SIEM) or Security Analytics platforms. Specific experience with Elastic Security is highly desirable.
- Microsoft Defender, Sentinel, Purview, M365 E5 and Entra Suite experience.
- Competency working with Google Cloud Platform (GCP) or similar Cloud infrastructure platforms and cloud security knowledge.
- Comfortable with scripting and programming languages, for example Python, Javascript, Bash, Powershell.
- Use of DevOps tooling, for example GitLab, Terraform, Ansible, Puppet, Docker/K8s.
- Understanding of common security frameworks, for example SABSA and NIST CSF.
- Willingness to learning and understanding new technologies quickly.
- Ability to converse effectively across technology domains to include identity and access management, network security, infrastructure, databases, cryptography and virtualisation.
- Ability to communicate complex technical concepts in simple diagrams, blueprints and solution definitions.
- Proactive and autonomous - identifying where to focus effort.
- Clear and influential communication skills, both verbal and written.
- Effective working within distributed global teams.
- Ability to create detailed and well-organised documentation.
- Focus on customer satisfaction.
- Focus on business outcomes and a positive delivery attitude.
- Some international travel may be required
- An interest in emerging technologies or technical innovations.
- A focus on self-development and career progression.
- An interest in the gaming industry is a plus