Senior Security Engineer I @ Elsevier
Senior Security Engineer I @ Elsevier

Senior Security Engineer I @ Elsevier

Full-Time 43200 - 72000 £ / year (est.) No home office possible
C

At a Glance

  • Tasks: Conduct penetration tests on web and cloud environments to identify and mitigate vulnerabilities.
  • Company: Join Elsevier, a global leader in information analytics improving science and healthcare.
  • Benefits: Enjoy flexible hours, generous holiday allowance, health benefits, and extensive learning resources.
  • Why this job: Make a real impact on security practices while working in a supportive and innovative environment.
  • Qualifications: Experience in secure coding, penetration testing, and relevant certifications like CISSP or CISM required.
  • Other info: Work-life balance is prioritized with numerous wellbeing initiatives and volunteer opportunities.

The predicted salary is between 43200 - 72000 £ per year.

Elsevier

Elsevier is a global information analytics company that helps institutions and professionals progress science, advance healthcare and improve performance.

Are you a Penetration Tester looking to develop your career? Are you skilled in Penetration Testing in Web and Cloud environments?

About our Team

You as a Penetration Tester will join our Security Assurance team, a vital part of our larger security organization.

About the Role

This position you\’ll conduct comprehensive penetration tests on web and cloud environments, identify vulnerabilities, and implement effective mitigation strategies. You\’ll work closely with diverse teams across the organization to enhance our security posture.

Responsibilities:

  • Performing security defect mitigation testing and ensure documented results support remediation efforts.
  • Analyzing chronic incidents, abnormal usage, and attack patterns, and tune security telemetry for risk identification, including misuse, fraud, and theft of services.
  • Recommending improvements to tools, processes, and applications to optimize security posture, including identifying gaps and proposing solutions to enhance overall security effectiveness.
  • Developing and maintaining scripts to automate cybersecurity tasks and processes.
  • Contributing to the continuous improvement of the organization\’s security practices and policies.
  • Conducting and documenting comprehensive penetration testing (manual and automated) of software and technology across web and cloud environments, including static and dynamic code and system configuration security tests. Create detailed technical security assessment reports based on these tests.
  • Identifying and assessing vulnerability and exploitation risks, developing mitigation and detection methods.

Requirements:

  • Experience of secure coding practices applications security testing tools and techniques (SAST, DAST) and API Security testing.
  • Be able to understand cloud and networking, web-based content delivery platforms and filesystem operation, architecture, patching and security.
  • Be able to identify emerging threats, conduct risk assessments, and leverage security intelligence tools.
  • Possess CISSP, CISM, SANS, GIAC, CCH or related credential for ethical hacking /penetration tester certification, and/or security risk assessment certification.
  • Be excellent in oral and written communication skills and interpersonal skills.
  • Be able to use Python, Bash and/or other Scripting Languages and automation tools for Security testing and management.
  • Be able to propose, scope, conduct, report and remediate manual and Automation Testing.

Work in a way that works for you:

We promote a healthy work/life balance across the organisation. We offer an appealing working prospect for our people. With numerous wellbeing initiatives, shared parental leave, study assistance and sabbaticals, we will help you meet your immediate responsibilities and your long-term goals.

  • Working flexible hours – flexing the times when you work in the day to help you fit everything in and work when you are the most productive.

Working for you:

We know that your wellbeing and happiness are key to a long and successful career. These are some of the benefits we are delighted to offer:

  • Generous holiday allowance with the option to buy additional days.
  • Health screening, eye care vouchers and private medical benefits.
  • Life assurance.
  • Access to a competitive contributory pension scheme.
  • Save As You Earn share option scheme.
  • Travel Season ticket loan.
  • Electric Vehicle Scheme.
  • Maternity, paternity and shared parental leave.
  • Employee Assistance Programme.
  • Access to emergency care for both the elderly and children.
  • RECARES days, giving you time to support the charities and causes that matter to you.
  • Access to employee resource groups with dedicated time to volunteer.
  • Access to extensive learning and development resources.
  • Access to employee discounts scheme via Perks at Work.

About the Business:

A global leader in information and analytics, we help researchers and healthcare professionals advance science and improve health outcomes for the benefit of society. Building on our publishing heritage, we combine quality information and vast data sets with analytics to support visionary science and research, health education and interactive learning, as well as exceptional healthcare and clinical practice. At Elsevier, your work contributes to the world’s grand challenges and a more sustainable future. We harness innovative technologies to support science and healthcare to partner for a better world.

Elsevier is an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law. We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form: , or please contact 1-855-833-5120.

#J-18808-Ljbffr

Senior Security Engineer I @ Elsevier employer: Cyber Crime

At Elsevier, we pride ourselves on being an exceptional employer that values the well-being and professional growth of our employees. Our Security Assurance team fosters a collaborative work culture where you can thrive in your role as a Senior Security Engineer I, with access to extensive learning resources, flexible working hours, and generous benefits including health screening and a competitive pension scheme. Join us in making a meaningful impact on science and healthcare while enjoying a supportive environment that prioritizes work-life balance and personal development.
C

Contact Detail:

Cyber Crime Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Security Engineer I @ Elsevier

✨Tip Number 1

Familiarize yourself with the latest trends in penetration testing, especially in web and cloud environments. This will not only help you during interviews but also show your genuine interest in the role.

✨Tip Number 2

Network with current or former employees of Elsevier on platforms like LinkedIn. They can provide valuable insights about the company culture and the specific expectations for the Senior Security Engineer role.

✨Tip Number 3

Prepare to discuss your experience with security tools and techniques, particularly SAST, DAST, and API security testing. Be ready to share specific examples of how you've applied these in past roles.

✨Tip Number 4

Showcase your scripting skills in Python or Bash by discussing any relevant projects or automations you've developed. This practical knowledge is crucial for the role and will set you apart from other candidates.

We think you need these skills to ace Senior Security Engineer I @ Elsevier

Penetration Testing
Web Security
Cloud Security
Vulnerability Assessment
Secure Coding Practices
Application Security Testing (SAST, DAST)
API Security Testing
Risk Assessment
Security Intelligence Tools
CISSP Certification
CISM Certification
SANS Certification
GIAC Certification
Python Scripting
Bash Scripting
Automation Tools
Technical Reporting
Interpersonal Skills
Communication Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in penetration testing, secure coding practices, and familiarity with web and cloud environments. Use specific examples that demonstrate your skills and achievements in these areas.

Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Mention how your background aligns with Elsevier's mission and values, and provide examples of how you've contributed to security improvements in previous roles.

Showcase Technical Skills: Clearly outline your technical skills related to security testing tools (SAST, DAST), scripting languages (Python, Bash), and any relevant certifications (CISSP, CISM). This will help demonstrate your qualifications for the position.

Prepare for Behavioral Questions: Think about past experiences where you identified vulnerabilities or improved security measures. Be ready to discuss these situations in detail, focusing on your problem-solving approach and the impact of your actions.

How to prepare for a job interview at Cyber Crime

✨Showcase Your Technical Skills

Be prepared to discuss your experience with penetration testing, especially in web and cloud environments. Highlight specific tools and techniques you've used, such as SAST, DAST, and API security testing, to demonstrate your expertise.

✨Communicate Clearly

Since excellent oral and written communication skills are essential for this role, practice explaining complex security concepts in simple terms. This will help you convey your ideas effectively during the interview.

✨Demonstrate Problem-Solving Abilities

Prepare to discuss past incidents where you identified vulnerabilities and implemented mitigation strategies. Use the STAR method (Situation, Task, Action, Result) to structure your responses and showcase your analytical skills.

✨Understand the Company’s Security Posture

Research Elsevier's current security practices and challenges. Being knowledgeable about their security initiatives will show your genuine interest in the company and how you can contribute to enhancing their security posture.

Senior Security Engineer I @ Elsevier
Cyber Crime
C
  • Senior Security Engineer I @ Elsevier

    Full-Time
    43200 - 72000 £ / year (est.)

    Application deadline: 2027-03-28

  • C

    Cyber Crime

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>