At a Glance
- Tasks: Join us as a Security Engineer to safeguard F1's cloud infrastructure and tackle technical vulnerabilities.
- Company: Be part of the dynamic Formula 1 team, where innovation meets high-speed technology.
- Benefits: Enjoy flexible working options, competitive pay, and the thrill of working in a fast-paced environment.
- Why this job: Make an impact in a cutting-edge field while collaborating with top tech experts in motorsport.
- Qualifications: Bring your AWS expertise, DevSecOps knowledge, and passion for security to our team.
- Other info: This role offers a unique chance to work at the intersection of technology and sport.
The predicted salary is between 43200 - 72000 Β£ per year.
Our team of hundreds of skilled experts keep Formula 1 moving. Weβre on the lookout for a Security Engineer. Reporting to the Cyber Security Manager, the main purpose of this role is to support the development and management of security technologies across F1βs growing technology landscape. Main Duties & Responsibilities: * Assess and maintain high standards of security maturity across Formula 1βs cloud infrastructure * Focus on new and existing infrastructure, managing technical vulnerabilities, support continued system maintenance, and minimise technical debt * Ensure visibility and reporting of Cloud infrastructure against Formula 1βs compliance and security standards (such as ISO 27001 and CIS) * Main duties to be carried out include, but not limited to: * Vulnerability Management and reporting across Formula 1βs cloud environment(s), including: * Development of requirements, design, and implementation of cloud security tools (E.g. compliance and host security) * A key focus on threat detection and risks across cloud environments * Identification, remediation, and reporting of security vulnerabilities * Reporting on compliance to F1βs security standards * Support in the delivery and management of security design and architecture reviews * Working closely with Infrastructure teams on security design and control strategies to reduce risks * The definition and operation of secure development / operations (DevOps) practices, inc. code scanning, Kubernetes, container security. * System and device hardening policies and reporting * Technology focused threat assessments to identify threats/risks * Documentation of security requirements, patterns, and processes * Liaising closely with Formula 1βs cyber security, infrastructure, and digital teams on new and existing initiatives. About You: * Extensive hands-on experience with AWS cloud infrastructure β inc. AWS Security Services (CloudTrail, Guard Duty, WAF, IAM, Security Hub etc.) * Knowledge of CI/CD including DevSecOps patterns and principles * Infrastructure as code experience utilising Terraform * Knowledge of container technologies * Extensive experience with AWS Security Services & Governance and Information Security Best Practices * Experience with other enterprise cloud platforms e.g. Azure * Kubernetes experience * Identity & Access Management deployment and administration (e.g. Okta, Entra ID) * Web application security technologies β WAF, Bot Protection, DDOS Protection, etc. * Adaptable, passionate and a team-player Division: Technical
Security Engineer employer: F1
Contact Detail:
F1 Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Security Engineer
β¨Tip Number 1
Familiarise yourself with the specific AWS security services mentioned in the job description, such as CloudTrail and Guard Duty. Being able to discuss your hands-on experience with these tools during an interview will demonstrate your suitability for the role.
β¨Tip Number 2
Stay updated on the latest trends and best practices in cloud security, particularly around compliance standards like ISO 27001. This knowledge will not only help you in interviews but also show your commitment to maintaining high security standards.
β¨Tip Number 3
Network with professionals in the cybersecurity field, especially those who work with cloud technologies. Engaging in discussions or attending relevant events can provide insights and potentially lead to referrals within Formula 1.
β¨Tip Number 4
Prepare to discuss your experience with DevSecOps and Infrastructure as Code, particularly using Terraform. Be ready to share specific examples of how you've implemented these practices in previous roles to enhance security.
We think you need these skills to ace Security Engineer
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience with AWS cloud infrastructure and security services. Use specific examples that demonstrate your hands-on experience and knowledge of compliance standards like ISO 27001.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and how your skills align with the role. Mention your experience with DevSecOps and any specific projects where you managed vulnerabilities or implemented security tools.
Showcase Technical Skills: Clearly outline your technical skills related to the job description, such as your experience with Terraform, Kubernetes, and identity management systems. Use bullet points for clarity and impact.
Highlight Team Collaboration: Since the role involves working closely with various teams, include examples of past collaborations. Describe how you contributed to team projects, particularly in security design and architecture reviews.
How to prepare for a job interview at F1
β¨Showcase Your Cloud Expertise
Make sure to highlight your extensive hands-on experience with AWS cloud infrastructure and security services. Be prepared to discuss specific projects where you've implemented these technologies, as this will demonstrate your practical knowledge and problem-solving skills.
β¨Understand Compliance Standards
Familiarise yourself with compliance standards such as ISO 27001 and CIS. During the interview, be ready to explain how you have ensured compliance in previous roles and how you would approach it at Formula 1.
β¨Discuss Vulnerability Management
Prepare to talk about your experience with vulnerability management and reporting. Share examples of how you've identified, remediated, and reported security vulnerabilities in cloud environments, as this is a key responsibility for the role.
β¨Emphasise Team Collaboration
Since the role involves liaising closely with various teams, emphasise your ability to work collaboratively. Share experiences where you've successfully partnered with infrastructure or digital teams to enhance security measures or develop secure practices.