Hybrid Infrastructure Security Engineer — Cloud & DevSecOps in Winchester
Hybrid Infrastructure Security Engineer — Cloud & DevSecOps

Hybrid Infrastructure Security Engineer — Cloud & DevSecOps in Winchester

Winchester Full-Time 60000 - 75000 £ / year (est.) No home office possible
Stryker Corporation

At a Glance

  • Tasks: Secure and innovate LCP's infrastructure with hands-on security engineering and policy management.
  • Company: Join an award-winning consultancy that values collaboration and personal growth.
  • Benefits: Enjoy hybrid working, professional development support, and a comprehensive wellbeing package.
  • Why this job: Be at the forefront of tech innovation while making a real impact on security.
  • Qualifications: Experience in information security methodologies and cloud infrastructure is essential.
  • Other info: Dynamic work environment with opportunities for career advancement and community involvement.

The predicted salary is between 60000 - 75000 £ per year.

Location - London or Winchester with hybrid working as per departmental requirements (currently a MINIMUM of 40% (2 days per week).

LCP is an award-winning actuarial and analytics consultancy providing market-leading capabilities and advice across pensions and financial services, energy, and health. We use powerful analytics fused with human expertise to shape a more positive future.

We have a great opportunity to join our Infrastructure team as a Security Engineer. This role is perfectly poised at the intersection of traditional Infrastructure Security operations and the future's promise of AI and automation. As a Security Engineer you will be 75% Hands-On and 25% Policy/Process management. As LCP embarks on this transformative journey, the Infrastructure Security Engineer will be pivotal in ensuring a blend of technological innovation with a deeply human touch. Beyond just problem-solving, this role offers the chosen candidates an opportunity for personal and professional growth. We're not just seeking individuals to join us; we're seeking visionaries who will evolve with us, taking ownership of their development and skills as the landscape of service support undergoes this exciting metamorphosis. The aim remains consistent: to uphold LCP's unwavering commitment to exceptional user experience across all locations.

What will you be doing?

  • Secure LCP's infrastructure, spanning multiple physical office (UK and Europe) and numerous Cloud subscriptions, through a balanced-risk approach.
  • Design and implement technical information security controls and countermeasures, ensuring alignment with the risks they are intended to mitigate.
  • Work with an outsourced Security Operations Centre (SOC), maintaining threat detection and response processes in conjunction with the InfoSec team to ensure its continued effectiveness.
  • Effectively operate established technical information security controls and countermeasures, ensuring adherence to policy and compliance requirements.
  • Deliver standardised security measures for cloud resource templates and configuration baselines, that enable approved teams to efficiently self-serve pre-configured resources.
  • Automate manual or repetitive tasks, improving the end-to-end efficiency of technical security measures.
  • Respond to new and emerging security threats and vulnerabilities, effectively engaging in cross-functional collaboration as needed.
  • Conduct security incident investigations, collaborating with technical and non-technical stakeholders as appropriate, with the aim of identifying root cause, threat vector utilised, scope of compromise and related remedial and preventative actions.
  • Implement and administer technical security tooling (Such as Defender for Cloud, Defender for End-Point, Nessus, etc), training others as required.
  • Optimise the cost of cloud-based security measures, ensuring they remain fit-for-purpose and right-sized as part of overall infrastructure efficiency.
  • Constantly maintain and develop awareness of emerging threats and vulnerabilities and the techniques used to mitigate them.
  • Emerging information security practices, standards and trends within a modern, increasingly cloud-based and Agile/DevOps oriented environment.
  • Coordinate with internal and external stakeholders.
  • Partner with InfoSec to deliver on key information security risk related initiatives, ensuring compliance to patching and vulnerability policies.
  • Partner with Product and Platform team members in respect of secure coding practices and security measures within the infrastructure resources they utilise.
  • Establish and cultivate relationships, being a trusted advisor and technical point of contact within the firm's engineering community.

What skills and experience are we looking for?

  • First-hand experience and knowledge of modern information security methodologies, techniques, and tooling, spanning both physical and cloud infrastructure.
  • Knowledge of key security standards/frameworks including ISO 27001, NIST, and CIS.
  • Experience of securing infrastructure within a DevOps organisation - including secure coding standards, automation and enterprise monitoring and reporting tools specifically within Microsoft Azure.
  • Demonstrable experience of security controls and countermeasures within IP based networks, WAN technologies, virtual server technologies and Microsoft Cloud on Windows and Linux.
  • Demonstrable experience working with DLP and EDR technologies such as Microsoft Defender.
  • Demonstrable first-hand experience with modern Security Information and Event Management (SIEM) solutions and related workflow automation (SOAR).
  • Ability to proactively own and coordinate resolving security issues, to ensure solutions continue to meet business needs.
  • Ability to break a problem down into its component parts to identify and diagnose root causes, troubleshooting and identify problems across different technology capabilities.
  • Strong planning and organisational skills, including the ability to coordinate several work streams simultaneously, while balancing priorities and quality.
  • Excellent communication skills with a capacity to present, discuss and explain issues coherently and logically, both in writing and orally.
  • Ability to balance conflicting and changing demands through prioritisation and pragmatism.

What's in it for you?

Take a look at our Glassdoor and Career stories pages to see why our people love being here! As well as joining a multi-award winning, fun, collaborative, people first organisation where your personal and professional skills will be developed to make you the best you can be, we offer an attractive benefits package designed to promote your overall wellbeing so that you are able to perform to your full potential both in and out of work. Currently our core benefits package includes:

  • Hybrid working (see top of the advert for details).
  • Professional study support (where applicable).
  • Access to our internal Wellbeing, LGBTQ+, Multicultural and Women's networks.
  • Life assurance.
  • Income protection.
  • Enhanced maternity/paternity/adoption and shared parental leave.
  • 26 days annual leave (pro-rata for part-time working) plus bank holidays (most of which can be taken flexibly!) with options to buy & sell holiday.
  • Private medical insurance.
  • Discounted gym memberships, critical illness and dental insurance through our flexible benefits.
  • Eye care vouchers.
  • Cycle to work scheme.
  • Digital GP services.
  • Competitive pension scheme.
  • Discretionary bonus scheme.
  • High street discounts.
  • Season ticket loans.
  • Volunteering opportunities.
  • Electric vehicle salary sacrifice scheme (qualifying period applies).

And much more! We continuously strive to build an inclusive workplace where all forms of diversity are valued, including age, background, disability, gender, gender identity, gender expression, race, religion or sexual orientation.

LCP is committed to making our opportunities accessible to all and would welcome you getting in touch to let us know if an adjustment can be made to help with your application. This may be extra time for assessments, pre-interview site visits, interview structure or questions, or asking us about building accessibility. Whatever it may be, please get in touch via our dedicated email address - [email protected] to discuss how we can support you with your application.

Hybrid Infrastructure Security Engineer — Cloud & DevSecOps in Winchester employer: Stryker Corporation

LCP is an exceptional employer that prioritises personal and professional growth within a collaborative and inclusive work culture. With hybrid working options in vibrant locations like London and Winchester, employees benefit from a comprehensive wellbeing package, including generous leave, professional development support, and access to diverse networks. Join us to be part of a forward-thinking team that values innovation and empowers you to shape your career while making a meaningful impact.
Stryker Corporation

Contact Detail:

Stryker Corporation Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Hybrid Infrastructure Security Engineer — Cloud & DevSecOps in Winchester

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their values and how they align with your own. This will help you tailor your responses and show that you're genuinely interested in being part of their team.

Tip Number 3

Practice makes perfect! Conduct mock interviews with friends or use online platforms to get comfortable with common questions. The more you practice, the more confident you'll feel when it’s time to shine.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who take the initiative to engage directly with us.

We think you need these skills to ace Hybrid Infrastructure Security Engineer — Cloud & DevSecOps in Winchester

Information Security Methodologies
Cloud Security
ISO 27001
NIST
CIS
Secure Coding Standards
Automation
Microsoft Azure
Security Controls and Countermeasures
DLP Technologies
EDR Technologies
SIEM Solutions
Workflow Automation (SOAR)
Problem-Solving Skills
Planning and Organisational Skills
Communication Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the role of Hybrid Infrastructure Security Engineer. Highlight your experience with cloud security, DevSecOps, and any relevant tools you've used. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about infrastructure security and how you can contribute to our team. Be sure to mention any specific projects or experiences that relate to the job description.

Showcase Your Problem-Solving Skills: In your application, don’t just list your skills—show us how you've used them to solve real-world problems. We love candidates who can break down complex issues and come up with effective solutions, so share some examples!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at LCP!

How to prepare for a job interview at Stryker Corporation

Know Your Tech Inside Out

Make sure you’re well-versed in the latest information security methodologies and tools, especially those relevant to cloud infrastructure and DevSecOps. Brush up on your knowledge of ISO 27001, NIST, and CIS standards, as these are likely to come up during your chat.

Showcase Your Problem-Solving Skills

Be prepared to discuss specific examples where you've identified and resolved security issues. Break down complex problems into manageable parts and explain your thought process clearly. This will demonstrate your analytical skills and ability to troubleshoot effectively.

Communicate Clearly and Confidently

Practice articulating your thoughts on security concepts and practices. You’ll need to explain technical details to both technical and non-technical stakeholders, so being able to communicate clearly is key. Consider doing mock interviews with friends or colleagues to refine your delivery.

Emphasise Collaboration and Adaptability

Highlight your experience working in cross-functional teams and your ability to adapt to changing demands. The role involves partnering with various teams, so showcasing your teamwork skills and flexibility will set you apart from other candidates.

Hybrid Infrastructure Security Engineer — Cloud & DevSecOps in Winchester
Stryker Corporation
Location: Winchester

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>