At a Glance
- Tasks: Investigate security incidents and proactively monitor for cyber threats in a dynamic environment.
- Company: Join Marqeta, a leading fintech company with a commitment to innovation and inclusivity.
- Benefits: Enjoy premium medical coverage, generous time off, equity options, and remote work support.
- Other info: Opportunity for career growth and mentorship in a collaborative culture.
- Why this job: Make a real impact in cybersecurity while developing your skills in a supportive team.
- Qualifications: 5+ years in security operations with expertise in incident response and threat hunting.
The predicted salary is between 60000 - 80000 £ per year.
We are seeking a UK‑based Senior Security Engineer to join our Security Operations and Response Team as a senior individual contributor. In this role, you will investigate and respond to security incidents across Marqeta’s environment, proactively monitor for cyber threats, and serve as incident commander during security events of varying severity. You will contribute to the development and improvement of response methodologies aligned with the NIST Incident Response Lifecycle and help maintain cybersecurity incident response documentation. This position requires strong expertise in incident response, digital forensics, threat hunting, and security monitoring technologies. You will collaborate across teams, contribute to detection engineering efforts, and participate in 24x7 on‑call rotations. The role reports to the Manager of Security Operations and Response. This role can be performed remotely anywhere in the UK, or from our London, UK office.
The Impact You’ll Have
- Proactively monitor Marqeta’s environment for cyber threat activity and manage day‑to‑day security alerts through timely analysis, triage, and appropriate response actions.
- Serve as incident commander during security events, directing investigation strategies and coordinating cross‑functional response efforts.
- Execute incident response activities aligned with the NIST Incident Response Lifecycle to detect, contain, eradicate, recover, and learn from cybersecurity incidents.
- Contribute to the maintenance and improvement of the Cybersecurity Incident Response Plan (CIRP), playbooks, runbooks, and standard operating procedures to ensure consistent and effective response operations.
- Participate in 24x7x365 on‑call rotations, providing skilled guidance during security incidents and contributing to thorough post‑incident reviews.
- Research threat intelligence sources and contribute to hypothesis‑driven threat hunting initiatives to uncover threats in corporate and production environments.
- Work closely with Security Engineering to tune security solutions, enhance detection capabilities, and leverage business knowledge to improve security monitoring.
- Design, develop, and maintain detection logic using a detections‑as‑code approach, collaborating with Security Solution Engineering to deploy detections through CI/CD pipelines into our SIEM and EDR platforms.
- Contribute to detection coverage mapped to MITRE ATT&CK framework, identifying gaps in visibility and supporting detection development prioritization based on threat intelligence and business risk.
- Coordinate with HR, law enforcement, response retainers, and cyber insurers as required, including support on cyber‑crime financial fraud use cases.
- Support the development of less‑experienced security team members through knowledge sharing, pair investigations, and leading by example.
- Partner with Fraud, Compliance, and Risk teams on security events involving payment systems, cardholder data, or regulatory reporting obligations under PCI DSS and related frameworks.
Who You Are
- 5+ years of hands‑on experience in security operations with strong expertise in incident response, digital forensics, and threat hunting.
- Experience serving as an incident commander or leading incident response workstreams, with the ability to make sound decisions under pressure.
- Strong knowledge of the NIST Incident Response Lifecycle and experience contributing to incident response documentation and procedures.
- Proficiency with security monitoring and forensic tools including EDR, SIEM, and SOAR systems.
- Experience developing detections‑as‑code, including familiarity with version control, CI/CD pipelines, and detection testing frameworks.
- Working knowledge of MITRE ATT&CK and experience using it to assess detection coverage and map threat actor TTPs.
- Experience contributing to post‑incident reviews and implementing security improvements based on lessons learned.
- Solid understanding of threat actor TTPs and ability to apply threat intelligence to enhance detection and response capabilities.
- Experience tuning security solutions and developing automation workflows to improve monitoring effectiveness and response efficiency.
- Working knowledge of AWS cloud services and securing cloud environments.
- Ability to effectively communicate with technical and non‑technical stakeholders during security incidents and investigations.
- Experience in payment processing, fintech, or other highly regulated environments; familiarity with PCI DSS incident handling requirements a plus.
- Proven ability to work independently while demonstrating sound judgment about when to engage team members or elevate issues.
- Willingness to mentor and support the growth of junior security professionals in incident response techniques.
Compensation & Benefits
- Premium Private Medical and Dental coverage.
- Generous time off program with additional ‘Floating Holiday days’.
- Retirement savings program with company contribution.
- Equity in a publicly‑traded company and an Employee Stock Purchase Program.
- Monthly stipend to support our remote work model.
- Annual development stipend to support our people’s growth and development.
- Family‑forming benefits and up to 20 weeks of Parental Leave.
- Wellbeing programs i.e. Modern Health, HealthKick and much more…
Equal Employment Opportunity, Accommodations and Privacy
Marqeta is an equal opportunity employer committed to an inclusive workplace that fosters belonging. We do not discriminate based on race, color, religion, sex (including pregnancy, lactation, childbirth, or related medical conditions), veteran status or uniformed service member status, age, national origin or ancestry, citizenship or immigration status, physical or mental disability, gender identity, gender expression, sexual orientation, genetic information (including testing or characteristics) or any other characteristic protected by applicable law. We also consider qualified applicants with criminal histories, consistent with legal requirements. Marqeta endeavors to make reasonable accommodations for applicants with disabilities. If you are an individual with a disability and require a reasonable accommodation to submit this application, complete any pre‑employment testing, or otherwise participate in the employee selection process, please submit this form with your specific accommodation request. Personal data that is provided as part of the application and recruitment process is processed in accordance with the Applicant Privacy Notice.
Senior Security Engineer - Detection & Response - EU/UK employer: Marqeta
Marqeta is an exceptional employer that prioritises employee well-being and professional growth, offering premium private medical and dental coverage, generous time off, and a supportive remote work model. With a strong commitment to inclusivity and mentorship, employees are encouraged to develop their skills in a dynamic environment while contributing to meaningful cybersecurity initiatives. The London office provides a collaborative atmosphere where innovative ideas thrive, making it an ideal place for passionate security professionals to advance their careers.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Security Engineer - Detection & Response - EU/UK
✨Tip Number 1
Network like a pro! Reach out to your connections in the cybersecurity field, attend industry meetups, and engage in online forums. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your incident response projects, threat hunting techniques, and any cool detection engineering work you've done. This will give potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on the NIST Incident Response Lifecycle and familiarising yourself with the MITRE ATT&CK framework. Be ready to discuss how you've applied these in real-world scenarios during your previous roles.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who take that extra step to connect with us directly.
We think you need these skills to ace Senior Security Engineer - Detection & Response - EU/UK
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Senior Security Engineer role. Highlight your experience in incident response, digital forensics, and threat hunting. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a perfect fit for our team. Don't forget to mention any relevant projects or achievements!
Showcase Your Technical Skills:Be sure to include specific tools and technologies you've worked with, like EDR, SIEM, and CI/CD pipelines. We love seeing candidates who can demonstrate their hands-on experience and technical prowess in their applications.
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you're genuinely interested in joining our team at StudySmarter!
How to prepare for a job interview at Marqeta
✨Know Your NIST Inside Out
Make sure you’re well-versed in the NIST Incident Response Lifecycle. Be ready to discuss how you've applied it in past roles, especially during high-pressure situations. This will show that you can effectively lead incident response efforts.
✨Showcase Your Technical Skills
Prepare to talk about your experience with security monitoring tools like EDR and SIEM systems. Bring examples of how you've developed detections-as-code and contributed to CI/CD pipelines. This will demonstrate your hands-on expertise and technical prowess.
✨Be Ready for Scenario Questions
Expect scenario-based questions where you’ll need to outline your approach to handling security incidents. Think through your decision-making process and how you coordinate with cross-functional teams. This will highlight your leadership and communication skills.
✨Highlight Your Mentorship Experience
If you’ve mentored junior team members, be sure to mention it! Discuss how you’ve shared knowledge and supported their growth in incident response techniques. This shows that you’re not just a skilled engineer but also a team player who values collaboration.