At a Glance
- Tasks: Manage vulnerability tools and automate processes to enhance security.
- Company: Join Starling, the UK's leading digital bank revolutionising how we manage money.
- Benefits: Enjoy hybrid working, 33 days holiday, and perks like private medical insurance and wellness discounts.
- Why this job: Be part of a dynamic team driving innovation in fintech with a supportive culture.
- Qualifications: Strong engineering background, cloud experience, and proficiency in programming languages required.
- Other info: We value diverse backgrounds and encourage applicants who may not meet every requirement.
The predicted salary is between 43200 - 72000 £ per year.
Starling is the UK’s first and leading digital bank on a mission to fix banking! We built a new kind of bank because we knew technology had the power to help people save, spend and manage their money in a new and transformative way. We’re a fully licensed UK bank with the culture and spirit of a fast-moving, disruptive tech company. We employ more than 3,000 people across our London, Southampton, Cardiff and Manchester offices. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech.
We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be; innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture; you will find support in your team and from across the business. The way to thrive and shine within Starling is to be a self-driven individual and take full ownership of everything around you: from building things, designing, discovering, to sharing knowledge with your colleagues and ensuring all processes are efficient and productive to deliver the best possible results for our customers.
Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness.
Hybrid Working
We have a Hybrid approach to working here at Starling - our preference is that you’re located within a commutable distance of one of our offices so that we can interact and collaborate in person. In Technology, we’re asking that you attend the office a minimum of 1 day per week.
About the Role
We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage existing vulnerability management-specific tooling and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with various technical teams.
Responsibilities
- Develop and maintain vulnerability management tooling and solutions
- Implement automation to remove manual processes and increase efficiency
- Work with internal remediators to prioritise vulnerability management activities
- Process vulnerability data to provide reports, insights and metrics that aid in the risk-based approach to vulnerability management
- Develop integrations for internal and external tools to capture data relevant to the vulnerability remediation process (e.g. by interacting with APIs)
- Ensure compliance with relevant security standards, frameworks, and regulations
- Stay up to date with the latest trends and developments in vulnerability management, security standards, and regulations
Requirements
- Strong engineering and automation background with a keen interest in Vulnerability Management
- Strong technical knowledge, including:
- Cloud Experience (AWS, GCP)
- Kubernetes and Container experience
- Infrastructure as code (Terraform)
- Dashboard creation, front-end experience
Good to have
- Practical experience in one or more of the Vulnerability Management fields would be desirable but not essential: Endpoint Vulnerability Scanning, Vulnerability Intelligence, AppSec Vulnerability Management, Vulnerability Management of cloud native workloads, External Attack Surface Management
- Familiar with TypeScript/Vue.js
- Open source scanning tool such as Trivy or similar
- SQL database design and optimisation
Interview process
Interviewing is a two-way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general, you can expect the below, following a chat with one of our Talent Team:
- Introductory video call - ~45 minutes
- Technical video interview - ~1.5 hours
- Final Interview ~45 minutes
Benefits
- 33 days holiday (including public holidays, which you can take when it works best for you)
- An extra day’s holiday for your birthday
- Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off
- 16 hours paid volunteering time a year
- Salary sacrifice, company enhanced pension scheme
- Life insurance at 4x your salary & group income protection
- Private Medical Insurance with VitalityHealth including mental health support and cancer care
- Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton
- Generous family-friendly policies
- Incentives refer a friend scheme
- Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks
- Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing
About us
You may be put off applying for a role because you don't tick every box. Forget that! While we can’t accommodate every flexible working request, we’re always open to discussion. So, if you’re excited about working with us, but aren’t sure if you’re 100% there yet, get in touch anyway. We’re on a mission to radically reshape banking – and that starts with our brilliant team. Whatever came before, we’re proud to bring together people of all backgrounds and experiences who love working together to solve problems. Starling Bank is an equal opportunity employer, and we’re proud of our ongoing efforts to foster diversity & inclusion in the workplace.
Information Security Engineer - Vulnerability Management employer: Starling Bank
Contact Detail:
Starling Bank Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Engineer - Vulnerability Management
✨Tip Number 1
Familiarise yourself with the latest trends in vulnerability management and security standards. This will not only help you understand the role better but also allow you to engage in meaningful conversations during the interview process.
✨Tip Number 2
Showcase your automation skills by discussing any relevant projects or experiences where you've implemented CI/CD processes. Be prepared to explain how these experiences can benefit Starling's vulnerability management efforts.
✨Tip Number 3
Prepare questions that reflect your curiosity about Starling's culture and the Cyber Security team. This demonstrates your interest in collaboration and innovation, which are key values for the company.
✨Tip Number 4
If you have experience with cloud technologies like AWS or GCP, be ready to discuss specific examples of how you've used these platforms in vulnerability management. This will highlight your technical knowledge and relevance to the role.
We think you need these skills to ace Information Security Engineer - Vulnerability Management
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the role of a Vulnerability Management Engineer. Focus on your engineering background, automation skills, and any specific tools or technologies mentioned in the job description.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and vulnerability management. Mention how your values align with Starling's core values, such as 'Do The Right Thing' and 'Aim For Greatness'.
Showcase Relevant Projects: If you have worked on projects related to vulnerability management, cloud technologies, or automation, be sure to include these in your application. Describe your role and the impact of your contributions.
Prepare for the Interview: Research common interview questions for cybersecurity roles and prepare thoughtful responses. Be ready to discuss your technical knowledge and experiences, and think of questions to ask about Starling's culture and the team you'll be working with.
How to prepare for a job interview at Starling Bank
✨Understand the Company Culture
Before your interview, take some time to research Starling's culture and values. They emphasise innovation, collaboration, and ownership, so be prepared to discuss how you embody these traits in your work.
✨Showcase Your Technical Skills
As a Vulnerability Management Engineer, you'll need a strong technical background. Be ready to discuss your experience with cloud technologies, automation, and programming languages. Prepare examples of how you've used these skills in past roles.
✨Prepare Questions
Interviews are a two-way street! Prepare thoughtful questions about the team, projects, and company direction. This shows your interest and helps you gauge if Starling is the right fit for you.
✨Demonstrate Problem-Solving Abilities
Be ready to discuss specific challenges you've faced in vulnerability management and how you approached solving them. Highlight your ability to think critically and adapt to new technologies, as this aligns with Starling's mission to innovate.