At a Glance
- Tasks: Join our team to enhance security across Formula 1's cloud infrastructure and tackle technical vulnerabilities.
- Company: Be part of the dynamic world of Formula 1, where technology meets speed and innovation.
- Benefits: Enjoy a collaborative work environment with opportunities for growth and cutting-edge technology.
- Why this job: Make an impact in a high-stakes industry while working with passionate experts in cybersecurity.
- Qualifications: Hands-on experience with AWS, CI/CD, and container technologies is essential; adaptability is key.
- Other info: Work closely with cross-functional teams to drive security initiatives and best practices.
The predicted salary is between 48000 - 84000 Β£ per year.
Our team of hundreds of skilled experts keep Formula 1 moving. Weβre on the lookout for a Security Engineer to work with us! Reporting to the Cyber Security Manager, the main purpose of this role is to support the development and management of security technologies across F1βs growing technology landscape.
Main Duties & Responsibilities:
- Assess and maintain high standards of security maturity across Formula 1βs cloud infrastructure
- Focus on new and existing infrastructure, managing technical vulnerabilities, support continued system maintenance, and minimise technical debt
- Ensure visibility and reporting of Cloud infrastructure against Formula 1βs compliance and security standards (such as ISO 27001 and CIS)
- Main duties to be carried out include, but not limited to:
- Vulnerability Management and reporting across Formula 1βs cloud environment(s), including:
- Development of requirements, design, and implementation of cloud security tools (E.g. compliance and host security)
- A key focus on threat detection and risks across cloud environments
- Identification, remediation, and reporting of security vulnerabilities
- Reporting on compliance to F1βs security standards
- Support in the delivery and management of security design and architecture reviews
- Working closely with Infrastructure teams on security design and control strategies to reduce risks
- The definition and operation of secure development / operations (DevOps) practices, inc. code scanning, Kubernetes, container security.
- System and device hardening policies and reporting
- Technology focused threat assessments to identify threats/risks
- Documentation of security requirements, patterns, and processes
- Liaising closely with Formula 1βs cyber security, infrastructure, and digital teams on new and existing initiatives.
About You:
- Extensive hands-on experience with AWS cloud infrastructure β inc. AWS Security Services (CloudTrail, Guard Duty, WAF, IAM, Security Hub etc.)
- Knowledge of CI/CD including DevSecOps patterns and principles
- Infrastructure as code experience utilising Terraform
- Knowledge of container technologies
- Extensive experience with AWS Security Services & Governance and Information Security Best Practices
- Experience with other enterprise cloud platforms e.g. Azure
- Kubernetes experience
- Identity & Access Management deployment and administration (e.g. Okta, Entra ID)
- Web application security technologies β WAF, Bot Protection, DDOS Protection, etc.
- Adaptable, passionate and a team-player
Division:
Technical
#J-18808-Ljbffr
Security Engineer employer: Motorsport Network
Contact Detail:
Motorsport Network Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Security Engineer
β¨Tip Number 1
Familiarise yourself with the specific AWS security services mentioned in the job description, such as CloudTrail and Guard Duty. Being able to discuss your hands-on experience with these tools during an interview will demonstrate your suitability for the role.
β¨Tip Number 2
Showcase your knowledge of compliance standards like ISO 27001 and CIS. Prepare examples of how you've previously ensured compliance in your past roles, as this will highlight your understanding of security maturity and risk management.
β¨Tip Number 3
Network with professionals in the cybersecurity field, especially those who work with cloud technologies. Engaging with industry experts can provide insights into the latest trends and challenges, which you can reference in your discussions with us.
β¨Tip Number 4
Prepare to discuss your experience with DevSecOps and Infrastructure as Code, particularly using Terraform. Being able to articulate how you've implemented these practices in previous projects will set you apart from other candidates.
We think you need these skills to ace Security Engineer
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience with AWS cloud infrastructure and security services. Use specific examples that demonstrate your hands-on experience and knowledge of compliance standards like ISO 27001.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and how your skills align with the role. Mention your experience with vulnerability management and your ability to work closely with infrastructure teams.
Showcase Technical Skills: Clearly outline your technical skills related to CI/CD, DevSecOps, and Infrastructure as Code using Terraform. Provide examples of how you've implemented these in previous roles to enhance security.
Highlight Team Collaboration: Emphasise your ability to work as part of a team. Mention any past experiences where you collaborated with cross-functional teams on security design and architecture reviews, showcasing your adaptability and teamwork.
How to prepare for a job interview at Motorsport Network
β¨Showcase Your Cloud Expertise
Make sure to highlight your extensive hands-on experience with AWS cloud infrastructure during the interview. Be prepared to discuss specific AWS Security Services you've worked with, such as CloudTrail and Guard Duty, and how you've implemented them in past projects.
β¨Demonstrate Your Understanding of Security Standards
Familiarise yourself with compliance standards like ISO 27001 and CIS. Be ready to explain how you have ensured compliance in previous roles, particularly in relation to vulnerability management and reporting within cloud environments.
β¨Discuss Your DevSecOps Knowledge
Since the role involves CI/CD and DevSecOps principles, be prepared to discuss your experience with these methodologies. Share examples of how you've integrated security into the development lifecycle and any tools you've used for code scanning and container security.
β¨Prepare for Technical Scenarios
Expect to face technical questions or scenarios related to threat detection and risk management in cloud environments. Brush up on your knowledge of secure development practices and be ready to provide insights on how you would approach identifying and remediating security vulnerabilities.