At a Glance
- Tasks: Manage security posture and protect applications from external threats.
- Company: Join a recognised 'Best Company to Work For' with a focus on meaningful work.
- Benefits: Enjoy remote work options, 3 weeks paid time off, and health benefits.
- Why this job: Be part of a great culture with work/life balance and opportunities for growth.
- Qualifications: 3+ years in penetration testing and knowledge of security vulnerabilities required.
- Other info: Background check required for all candidates before hiring.
The predicted salary is between 36000 - 60000 £ per year.
Our mission is simple: we want to set people free to do meaningful work. People love our software—and it turns out that people love working here too. We have been recognised as a "Best Company to Work For," and we are proud of our team for receiving awards for workplace effectiveness and flexibility.
As our Security Engineer, you will be responsible for managing our security posture as well as keeping our application safe from external threats. Our ideal Security Engineer will be able to manage IT-related security issues, such as firewall management, HIDS/HIPS configuration, log monitoring, and audit compliance (SOC II). You will ensure that our software application is both manually and automatically pentested for security vulnerabilities (including Red Team and Blue Team exercises), and be a decision-maker in all things security management—able to "pull the plug" on a feature, application, or other business function if it presents a significant risk to the company.
You will:
- Conduct penetration tests against web applications infrastructure
- Validate security on new hardware and software infrastructure
- Assist front-line company representatives with security questions
- Manage firewall rules and internal pentesting
- Manage SOC II controls and external pentesting
- Manage priorities through backlog management system (Jira)
What You Need to Get the Job Done:
- 3+ years experience performing penetration testing (against web applications)
- Experience securing cloud-based infrastructures and solutions
- Previous experience working on an information security team
- Advanced knowledge of common security vulnerabilities (OWASP) and best practices
- Familiarity with SOC II controls and how to review them
- Experience in other technical roles (SysAdmin, Helpdesk, etc.)
- Strong understanding of Linux server environments
- Experience with Kanban and Agile DevOps workflows
- A good attitude and willingness to learn—you'll be with great people.
What Will Make Us REALLY Love You:
- You have a degree in CS, IT, or a similar field
- CISSP, Security+, or other security-related or Linux or cloud-related certifications
- Previous scripting experience (Python, Perl, Ruby, or PHP)
- You possess strong time prioritisation skills
- You are proactive and look for ways to continuously increase efficiency
- We can see that you have a measured demeanor that assumes the best of people and respects co-workers.
- Real-world examples of demonstrated technical leadership
What You'll Love About Us:
- Great Company Culture. Utah Business Best Companies to Work For (2020 & 2021) and the Sloan Award for Business Excellence in Workplace Effectiveness and Flexibility (2020 & 2021)
- Work that Stays at Work. Genuine work/life balance served here!
- Rest and Relaxation. 3 weeks paid time off, 11 paid holidays, and we pay you to go on vacation (ask us about this!)
- Health Benefits. Medical with HSA and FSA options, dental, and vision
- Prepare for the Future. 401(k) with company match
- Financial Peace University. Take the class, get reimbursed, get a bonus
An Equal Opportunity Employer--M/F/D/V Because our team members are trusted to handle sensitive information, we require all candidates who receive and accept employment offers to complete a background check before being hired.
IT Security Engineer employer: Scenthound LLC
Contact Detail:
Scenthound LLC Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Security Engineer
✨Tip Number 1
Familiarise yourself with the latest security vulnerabilities, especially those listed in the OWASP Top Ten. Being able to discuss these vulnerabilities and how they relate to our software will show your expertise and readiness for the role.
✨Tip Number 2
Engage with the IT security community by attending webinars or local meetups. Networking with professionals in the field can provide insights into current trends and challenges, which you can bring up during your discussions with us.
✨Tip Number 3
Brush up on your knowledge of SOC II controls and be prepared to discuss how you would approach compliance in a practical scenario. This will demonstrate your understanding of the regulatory landscape we operate in.
✨Tip Number 4
Showcase your experience with penetration testing by preparing real-world examples of past projects. Be ready to explain your methodologies and the outcomes, as this will highlight your hands-on skills and problem-solving abilities.
We think you need these skills to ace IT Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in IT security, particularly in penetration testing and managing security postures. Use keywords from the job description to demonstrate that you meet their specific requirements.
Craft a Strong Cover Letter: In your cover letter, express your passion for IT security and how your skills align with the company's mission. Mention any relevant certifications and your experience with SOC II controls, as well as your proactive approach to security management.
Showcase Technical Skills: Include specific examples of your technical skills, such as your experience with firewall management, cloud-based infrastructures, and familiarity with OWASP vulnerabilities. This will help illustrate your capability to handle the responsibilities outlined in the job description.
Prepare for Potential Questions: Anticipate questions related to your experience with penetration testing and security management. Be ready to discuss real-world scenarios where you've demonstrated technical leadership or made critical security decisions.
How to prepare for a job interview at Scenthound LLC
✨Showcase Your Technical Skills
Be prepared to discuss your experience with penetration testing and securing cloud-based infrastructures. Bring specific examples of past projects where you successfully identified and mitigated security vulnerabilities.
✨Understand the Company Culture
Familiarise yourself with the company's values and culture, especially their emphasis on work/life balance and teamwork. Be ready to explain how your personal values align with theirs.
✨Demonstrate Problem-Solving Abilities
Prepare to discuss scenarios where you've had to make tough decisions regarding security risks. Highlight your ability to assess situations and take decisive action, as this role requires a strong decision-making capability.
✨Ask Insightful Questions
Prepare thoughtful questions about the company's security practices, team dynamics, and future projects. This shows your genuine interest in the role and helps you gauge if it's the right fit for you.