At a Glance
- Tasks: Join our Cyber Security team to enhance and maintain security tools.
- Company: Be part of Condé Nast, a global media leader with iconic brands.
- Benefits: Enjoy 25 days holiday, private healthcare, and remote work options.
- Other info: Dynamic workplace with opportunities for personal and professional growth.
- Why this job: Make a real impact in cyber security while working with top-notch technology.
- Qualifications: 5+ years in cyber security with expertise in security engineering and tools.
The predicted salary is between 36000 - 60000 £ per year.
Condé Nast is a global media company producing the highest quality content with a footprint of more than 1 billion consumers in 32 territories through print, digital, video and social platforms. The company’s portfolio includes many of the world’s most respected and influential media properties including Vogue, Vanity Fair, Glamour, Self, GQ, The New Yorker, Condé Nast Traveler/Traveller, Allure, AD, Bon Appétit and Wired, among others.
Location: London, GB
Condé Nast thrives on collaboration, and our teams come together in the office four days a week (Monday - Thursday). We value diversity of background, views and cultures. We celebrate people for their personal qualities, skills and contributions, recognising the power our brands have to influence and shape culture.
The RoleCondé Nast is looking for a Security Engineer to join our global Cyber Security team. The role sits within the Security Engineering team, reporting to the Senior Security Architecture Manager. The Cyber Security Team underpins Conde Nast’s security posture, delivering information security and cyber risk management, security operations and the global SOC, security architecture, application security, and security engineering.
This role supports the team with the day to day administration, maintenance and tuning of our security tools as part of regular BAU activities. The successful candidate must have worked with a diverse range of security tools in the past within medium to large organisations. The Security Engineering team is tasked with the deployment and lifecycle management of security technologies across our global infrastructure. A primary focus of this role is ensuring the health, performance, and optimization of our defensive stack. The ideal candidate brings a proven track record in managing SIEM, XDR/EDR, and Vulnerability Management ecosystems as well as other detection and response tooling, required by Security Operations. Beyond routine maintenance and tuning, you will lead control-validation exercises and testing protocols to verify alert efficacy and ensure our defensive solutions are performing against real-world threat indicators.
- Develop, enhance, and maintain Conde Nast’s security tooling in close collaboration with the Security Architecture team.
- Administer, maintain and continuously improve core security platforms, including SIEM (InsightIDR/Splunk), Endpoint Detection and Response, and Vulnerability Management solutions.
- Develop and refine SOC use cases to deliver high-quality, actionable alerts and improve threat detection and response.
- Define, create and tune detection rules, automating response actions within tooling.
- Troubleshoot technical issues when they arise, working with vendor support teams.
- Implement new technical security controls and tooling across regions to address identified security gaps, working closely with technology stakeholders.
- Support the design and implementation of new security solutions, contributing to low-level design and ensuring alignment with approved security solution architectures.
- Work with regional teams to ensure compliance with centrally defined security policies, partnering with architecture to remediate gaps where required.
- Carry out security testing of tooling to ensure our tools are providing effective detection and response capabilities.
- Support the SOC team, when requested, with incident response investigations.
- Support the engineering team with the management of PAM tooling when required.
- 5+ years’ experience in cyber security, ideally working within a senior role.
- Strong background in security engineering and enterprise security tooling.
- Expertise in at least three areas: Security Engineering, Network Security, Identity Access Management, Privileged Access Management, Security Testing.
- Experience with SIEM and log management platforms (e.g. InsightIDR, Splunk).
- Experience administering Vulnerability Management platforms (e.g. Rapid7).
- Experience with Detection & Response technologies (NDR, EDR, XDR).
- Strong knowledge of Windows, Linux, networking, Active Directory, and AWS.
- Understanding of NIST and PCI-DSS frameworks.
- Experience implementing, configuring, and tuning security tools.
- Proficiency with Python / PowerShell for task automation and Terraform for codifying and auditing cloud security controls.
- Excellent written and verbal communication skills.
- Experience with CyberArk Privilege Cloud and enterprise IAM platforms (Okta, Ping).
- Experience with Secure Cloud Analytics / Cloud NDR.
- Security certifications (CISSP, Security+, AWS Security, AWS Solutions Architect).
- Networking certifications (CCNA, CCNP, Network+).
Please upload your CV and cover letter/portfolio, which highlights why you’d love to take on this role and why you’re a great match for what we’re looking for. We value the time and effort behind every application. All submissions are reviewed by a member of our talent team - we don’t use AI-assisted technology to review applications.
- 25 days holiday (plus bank holidays) and extra days of annual leave if you move house or want to volunteer.
- You’ll have access to a competitive pension scheme, Bupa Private Healthcare, Season ticket loans and eye tests.
- We offer a range of tools to support your wellbeing, including core hours, 10 remote days (from home or a country with a Condé Nast office location), access to our Employee Assistance Programme, corporate gym membership and cycle to work scheme.
- We’re a dog friendly office, plus you’ll enjoy discounts and magazine subscriptions, keeping you up to date with all things Condé Nast.
- We encourage personal and professional growth through the Condé Nast Learning Hub where you’ll find an extensive portfolio of learning courses and training, available in local languages.
- Our Employee Resource Groups provide a platform for employees to identify shared objectives, exchange ideas, and work on community priorities for our global workforce.
Condé Nast is an equal opportunity employer. We evaluate qualified applicants without regard to race, colour, religion, gender, sexual orientation, gender identity, national origin, disability, veteran status, age, marital status and other legally protected characteristics.
Engineer II (Security Engineer) employer: Conde Nast
Condé Nast is an exceptional employer, offering a vibrant work culture that thrives on collaboration and diversity. With a strong commitment to employee growth through the Condé Nast Learning Hub and a range of benefits including generous holiday allowances, private healthcare, and a dog-friendly office, employees are empowered to excel in their roles while enjoying a balanced lifestyle in the heart of London.
StudySmarter Expert Advice🤫
We think this is how you could land Engineer II (Security Engineer)
✨Tip Number 1
Network like a pro! Reach out to current or former employees at Condé Nast on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Prepare for the interview by researching Condé Nast’s recent projects and security initiatives. Show us that you’re not just another candidate; you’re genuinely interested in what we do and how you can contribute.
✨Tip Number 3
Practice your technical skills! Be ready to discuss your experience with SIEM, EDR, and vulnerability management tools. We want to see how you’ve tackled real-world challenges in your previous roles.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by our talent team. Plus, it shows you’re serious about joining the Condé Nast family.
We think you need these skills to ace Engineer II (Security Engineer)
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Security Engineer role. Highlight your experience with security tools and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Share why you're excited about joining Condé Nast and how your background makes you a great fit for our Cyber Security team. Be genuine and let your personality come through.
Showcase Your Technical Skills:Don’t forget to mention your expertise in SIEM, EDR/XDR, and Vulnerability Management. We love seeing specific examples of how you've used these tools in past roles, so be detailed!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you're serious about joining our team!
How to prepare for a job interview at Conde Nast
✨Know Your Tools Inside Out
Make sure you’re well-versed in the security tools mentioned in the job description, like SIEM and EDR platforms. Be ready to discuss your hands-on experience with these tools, including any specific challenges you've faced and how you overcame them.
✨Showcase Your Problem-Solving Skills
Prepare examples of how you've tackled technical issues in the past. Think about times when you had to troubleshoot or optimise security systems, and be ready to explain your thought process and the outcomes.
✨Understand the Company’s Security Posture
Research Condé Nast’s approach to cyber security and their key brands. This will help you tailor your answers to align with their values and demonstrate your genuine interest in contributing to their security efforts.
✨Communicate Clearly and Confidently
Practice articulating your thoughts on complex security concepts in a straightforward manner. The interviewers will appreciate clear communication, especially when discussing technical topics, so make sure you can explain your ideas without jargon.