Senior Security Engineer in Cambridge
Senior Security Engineer

Senior Security Engineer in Cambridge

Cambridge Full-Time 43200 - 72000 £ / year (est.) No home office possible
Go Premium
Roku

At a Glance

  • Tasks: Join a dynamic team to enhance security for millions of TV streamers worldwide.
  • Company: Roku, the leading TV streaming platform, is revolutionising how we watch TV.
  • Benefits: Enjoy flexible remote work, competitive pay, and comprehensive health benefits.
  • Why this job: Make a real impact in a fast-paced environment while protecting user data.
  • Qualifications: Experience in security consulting, DevSecOps, and programming skills required.
  • Other info: Collaborative culture with excellent career growth opportunities.

The predicted salary is between 43200 - 72000 £ per year.

Roku is changing how the world watches TV. Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we have set our sights on powering every television in the world. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.

The Roku trust engineering team is a close-knit group of professionals with a passion for information security. Our mission is to protect our customers, partners, devices, services, infrastructure, and data. We work collaboratively, sharing insights and expertise to stay ahead of the curve. Join us, and you’ll be part of a dynamic team that thrives on challenges and celebrates victories together.

As a Senior Security Engineer on the Trust Cloud team, your role involves evaluating, architecting, designing, and implementing end-to-end security controls to impact the global user base. A key focus is on developing automated, scalable security solutions to enhance efficiency and protect Roku. This position requires a broad breadth of security expertise across all disciplines of security, including networking, DevSecOps, security tooling implementation, policy and procedure, risk evaluation, etc.

What You Will Be Doing:

  • Conducting enterprise, network, and application level security reviews.
  • Conducting threat modelling for infrastructure, platform, and application initiatives.
  • Planning and overseeing execution of security initiatives and projects.
  • Partnering with infrastructure, platform, and application teams to embed security into application architectures and deployment workflows as part of a robust Secure Software Development Lifecycle (SSDLC).
  • Improving IAM policies, network configurations, DNS security, and cloud resource management practices.
  • Designing and implementing integrations with third-party security platforms to automate vulnerability management, secure secret handling, and cloud posture monitoring, ensuring findings are actionable and seamlessly integrated into engineering workflows.
  • Responding to security incidents to triage, contain, remediate, and report.
  • Leveraging AI to accelerate your learning and enhance your work products.
  • Driving security initiatives end-to-end — from identifying risks to delivering solutions — with high autonomy in a fast-moving environment.
  • Automating vulnerability detection, misconfiguration checks, and compliance validation across cloud and containerised environments.
  • Creating reusable security automation modules, templates, and patterns for engineering teams to adopt.

We’re Excited If You Have:

  • Experience doing security consulting and have balanced experience doing hands-on implementation.
  • Experience supporting/leading DevSecOps initiatives and assisting teams in utilising and onboarding onto DSO platforms.
  • Designing, building, operating, and maintaining DSO platforms through IaC.
  • Offensive cyber operations such as application, system, and network level penetration testing.
  • Software Engineering experience with at least one general purpose programming language (ex. Python, Golang, C, Rust, etc.).
  • Developed and/or implemented data tagging, data catalogs, or other data protection related activities.
  • Experience designing and administering enterprise identity and access management solutions at scale (ex: AD, EntraID, Okta, etc.).
  • Experience securely running and operating web applications, web services, and service-oriented architecture in production environments.
  • A proven track record of deploying and operating Kubernetes clusters in production.
  • Experience deploying and operating infrastructure in multiple cloud providers (AWS, GCP, Azure).
  • Fleet administration of Linux workstations and servers.
  • Defensive cyber operations such as operating a SEIM, managing a SOC, or leading cyber investigations.

Our Hybrid Work Approach:

Roku fosters an inclusive and collaborative environment where teams work in the office Monday through Thursday. Fridays are flexible for remote work except for employees whose roles are required to be in the office five days a week or employees who are in offices with a five day in office policy.

Benefits:

Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It’s important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.

Accommodations:

Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to.

The Roku Culture:

Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We’re independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you’ll be part of a company that’s changing how the world watches TV. We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn’t real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002.

Senior Security Engineer in Cambridge employer: Roku

At Roku, we pride ourselves on fostering a collaborative and inclusive work environment where every team member is empowered to make impactful contributions from day one. Our commitment to employee growth is evident through our diverse benefits package, which includes mental health support, flexible working arrangements, and opportunities for professional development. Join us in our mission to revolutionise the way the world experiences television, while enjoying a culture that values innovation, teamwork, and a sense of humour.
Roku

Contact Detail:

Roku Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Security Engineer in Cambridge

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works at Roku. You never know who might have the inside scoop on job openings!

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repo showcasing your projects, especially those related to security engineering. This gives potential employers a taste of what you can do and sets you apart from the crowd.

✨Tip Number 3

Prepare for interviews by brushing up on common security scenarios and challenges. Practice articulating your thought process when tackling security issues. Remember, they want to see how you think and solve problems!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of the Roku team. Let’s make it happen!

We think you need these skills to ace Senior Security Engineer in Cambridge

Security Consulting
DevSecOps
Infrastructure as Code (IaC)
Penetration Testing
Software Engineering
Identity and Access Management (IAM)
Cloud Security
Kubernetes
Multi-Cloud Infrastructure Management
Linux Administration
Security Information and Event Management (SIEM)
Cyber Investigations
Threat Modelling
Vulnerability Management Automation
Secure Software Development Lifecycle (SSDLC)

Some tips for your application 🫡

Show Your Passion for Security: When you're writing your application, let your enthusiasm for information security shine through. We want to see that you’re not just ticking boxes but genuinely excited about protecting users and data.

Tailor Your Experience: Make sure to highlight your relevant experience in security consulting, DevSecOps, and any hands-on implementation you've done. We love seeing how your background aligns with the role, so don’t hold back!

Be Clear and Concise: Keep your application straightforward and to the point. We appreciate clarity, so avoid jargon unless it’s necessary. Remember, we want to understand your skills and experiences without wading through fluff.

Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!

How to prepare for a job interview at Roku

✨Know Your Security Stuff

Make sure you brush up on your security knowledge, especially around DevSecOps and cloud security. Be ready to discuss specific tools and methodologies you've used in past roles, as well as any hands-on experience with penetration testing or vulnerability management.

✨Showcase Your Team Spirit

Roku values teamwork, so be prepared to share examples of how you've collaborated with others in previous projects. Highlight instances where you’ve partnered with different teams to embed security into their workflows, demonstrating your ability to work well in a close-knit environment.

✨Prepare for Technical Questions

Expect technical questions that dive deep into your experience with IAM solutions, Kubernetes, and cloud infrastructure. Practise explaining complex concepts in simple terms, as this will show your ability to communicate effectively with both technical and non-technical stakeholders.

✨Emphasise Your Problem-Solving Skills

Roku is all about problem-solving, so come prepared with examples of challenges you've faced in security engineering and how you overcame them. Discuss your approach to identifying risks and delivering solutions, showcasing your autonomy and initiative in fast-paced environments.

Senior Security Engineer in Cambridge
Roku
Location: Cambridge
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>