At a Glance
- Tasks: Lead security initiatives and enhance our cyber defense strategies.
- Company: Join Tesco, a leading retailer transforming technology for millions of customers.
- Benefits: Enjoy 25+ days of holiday, annual bonuses, and exclusive discounts.
- Why this job: Be part of a dynamic team that empowers innovation and prioritizes security.
- Qualifications: Strong communication skills and experience in web technologies and cloud security required.
- Other info: Opportunity to influence security practices across diverse engineering teams.
The predicted salary is between 48000 - 72000 £ per year.
About the role As a Senior Cyber Security Partner, you build and/or implement security tools and platforms that enhance our information security prevention, detection, and response capabilities. Your goal is to protect our customers, suppliers, colleagues, networks, systems, applications and information from cyber-attacks. You excel at improving security outcomes faster and at reduced cost for our businesses in teams with a mixed range of skills from hands-on through to architecture. You are the subject matter expert and lead initiatives that drive fast and consistent response through automation. In order to be successful, you will be aligned as the Security Partner for selected verticals under the engineering domain. About our Security Partnering team We are 15 and growing team that supports Tesco technology and software development teams across cloud and other cutting edge technologies at scale. We have a new role to lead security partnerships to drive and oversee security initiatives for an engineering domain. Tesco technology comprises of several domains and over 120 teams developing software who are responsible for their own security, so we act differently than a traditional security team. We’re team of security partners, not security police. We go as far as calling ourselves as Security Partners, not Security Architects or Consultants. Security Partnering team is part of Security & Capability group that offers the enterprise with various security solutions and capabilities. Our software engineering teams have tremendous freedom in their work and the corresponding responsibility to do the right thing for our customers. Instead of controlling our engineering teams with process and security gates, we enable them to innovate by providing security guidance to make right decisions for Tesco. The good news is that our engineering teams are (usually) willing partners in doing better security, more efficiently and earlier in the process. We want you to help us scale out and represent ourselves for the wider engineering domain. Tesco has fully embraced devops and agile methodologies to develop our enterprise APIs, services and cloud capabilities. Our 100 delivery teams have loads of Docker, Kubernetes and microservices galore across Azure and AWS, so our security approach must work with elastic, here today, gone tomorrow infrastructure. Our security approaches should be eventdriven, real-time and effective. Weekly scans are so 2010. You will be responsible for Build a good understanding of the aligned verticals, the technology architecture, the criteria and constraints, the security posture and technical debts. Understand the threat landscape and take a risk-based approach on security. Drive security initiatives such as developing security requirements, threat modelling, strengthening application security, vulnerability reduction, etc., across that product areas. Review architecture and design for security problems, indulge in enabling software development teams to use security capabilities and tooling provided by Tesco. Be ready to review critical code, build pipelines, deployment methods, etc and assist teams in doing better security overall. Apply security and privacy principles in your daily job. Facilitate risk remediation but also challenge decisions and status-quo. Facilitate in assurance activities like penetration testing, purple testing, app assurance. Build quarterly/monthly roadmaps for security activities and plan them with stakeholders. Be an evangelist for security, take part in strengthening Tesco‘s internal policies and standards. You will need Strong written and verbal communication skills. Strong problem solving, analysis and computational skills. Drive tactical vs. strategic decision making. Be an advocate for change. Work experience in customer-facing solutions, web technologies, payment systems, content delivery networks, REST APIs, micro services, modern application development. Understand every-growing threat landscape and identify business risks. Good understanding of public cloud services and various architecture patterns. Good understanding of software, network and infrastructure security. Deeper understanding of application security and DevSecOps (the shift-left culture) General security principles, privacy principles, industry standards such as NIST, ISO27001, CIS, MITRE framework. Preferred Azure or AWS cloud security certifications What’s in it for you Package Description We offer excellent benefits that help make Tesco a great place to work. These include but aren’t limited to: An annual bonus scheme which you can achieve up to 20% of base salary Colleague Clubcard (including a 2nd card for a family member) after 6 months service with 10% off most purchases at Tesco Holiday starting at 25 days plus a personal day A retirement savings plan – 4%-7.5% contribution rate Life Assurance – 5 x contractual pay Buy As You Earn Scheme Save As You Earn Scheme Deals & Discounts through Tesco including Tesco Mobile & Tesco Bank Deals and Discounts through many other external businesses About us Our vision here at Tesco is to become every customer‘s favourite way to shop, whether they are at home, out shopping, on the move, anywhere in the world. We want our customers to be inspired and whatever they are looking for, we’re finding bigger and better ways to provide it. Everything is underpinned by our continuous drive for the best tools and technology to deliver our vision. We’re driving innovation and transforming our Technology to become the world’s leading retailer. We need people who share our ambition to deliver for our customers; Passionate and confident people willing to take the initiative and drive us forwards. In return we offer excitement, a great team, an excellent benefit package, and significant career development opportunities. Joining us means playing a part in defining; building and launching an ambitious roadmap of digital products that could affect the lives of millions of people over the years to come. If that sounds exciting then we‘d love to hear from you.
Senior Cyber Security Partner employer: Tesco Technology
Contact Detail:
Tesco Technology Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Cyber Security Partner
✨Tip Number 1
Familiarize yourself with Tesco's technology stack, especially in cloud services like Azure and AWS. Understanding the specific tools and platforms we use will help you demonstrate your ability to integrate security measures effectively.
✨Tip Number 2
Showcase your experience with DevSecOps practices. Highlight any past projects where you successfully implemented security measures early in the development process, as this aligns with our shift-left culture.
✨Tip Number 3
Prepare to discuss how you've driven security initiatives in previous roles. Be ready to share examples of how you've improved security outcomes through automation or innovative solutions, as this is a key aspect of the role.
✨Tip Number 4
Emphasize your communication skills and ability to work collaboratively with engineering teams. We value security partners who can guide and enable teams rather than control them, so be prepared to discuss how you've fostered such relationships.
We think you need these skills to ace Senior Cyber Security Partner
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in cyber security, particularly in areas like application security, DevSecOps, and cloud security. Use keywords from the job description to demonstrate your alignment with the role.
Craft a Compelling Cover Letter: In your cover letter, emphasize your problem-solving skills and experience with security initiatives. Discuss how you can contribute to Tesco's mission of enhancing security outcomes and enabling innovation within engineering teams.
Showcase Communication Skills: Since strong written and verbal communication skills are essential for this role, ensure that your application materials are clear, concise, and free of jargon. Provide examples of how you've effectively communicated complex security concepts in previous roles.
Highlight Relevant Certifications: If you have any certifications related to Azure or AWS cloud security, make sure to mention them prominently in your application. This will demonstrate your commitment to staying current in the ever-evolving threat landscape.
How to prepare for a job interview at Tesco Technology
✨Understand the Role and Responsibilities
Make sure you have a clear understanding of the Senior Cyber Security Partner role. Familiarize yourself with the specific security tools and platforms mentioned in the job description, and be prepared to discuss how your experience aligns with these responsibilities.
✨Showcase Your Communication Skills
Since strong written and verbal communication skills are essential for this position, practice articulating your thoughts clearly. Be ready to explain complex security concepts in a way that is understandable to non-technical stakeholders.
✨Demonstrate Your Problem-Solving Abilities
Prepare examples from your past experiences where you successfully identified security risks and implemented effective solutions. Highlight your analytical skills and how they contributed to improving security outcomes.
✨Be an Advocate for Change
The role requires someone who can challenge the status quo and drive security initiatives. Think of instances where you have successfully advocated for change in your previous roles, and be ready to share those stories during the interview.