Application Security Engineer in London

Application Security Engineer in London

London Full-Time 50000 - 65000 £ / year (est.) No working from home possible
Universal Music

At a Glance

  • Tasks: Join our team to tackle IT vulnerabilities and enhance security in a global music company.
  • Company: Universal Music Group, the world's leading music company with a focus on innovation.
  • Benefits: Inclusive culture, diverse teams, and opportunities for career growth in a creative environment.
  • Other info: Dynamic work environment with a commitment to diversity and inclusion.
  • Why this job: Make a real impact in the music industry while developing your cybersecurity skills.
  • Qualifications: 3+ years in vulnerability management and strong communication skills required.

The predicted salary is between 50000 - 65000 £ per year.

Music is Universal
It’s the passionate and dedicated team at Universal Music who help make us the world’s leading music company. From A&R to finance, legal to digital, sales to marketing, Universal Music is the place to grow and develop your career within a truly commercial and innovative business that leads in everything it does.

Everyone is welcome to apply for our roles, and we are determined to ensure that no applicant or employee receives less favourable treatment because of gender, race, disability, sexual orientation, religion, belief, age, marital status, background, pregnancy, or caring responsibilities. We also recognise the importance of diversity of thought within our teams and are fully committed to embracing the talents of people with autism, dyslexia, ADHD, and other forms of neurocognitive variation.

We will always seek to make appropriate adjustments to recruitment, workplaces, and work processes to be fully inclusive to people with different needs and working styles. If you need us to make any reasonable adjustments for you from application onwards, including alternatives to the online form or to disclose a neurocognitive condition, please email UniversalMusicCareers@umusic.com.

Job Summary:

We are UMG, the Universal Music Group. We are the world’s leading music company. In everything we do, we are committed to artistry, innovation and entrepreneurship. We own and operate a broad array of businesses engaged in recorded music, music publishing, merchandising, and audiovisual content in more than 60 countries. We identify and develop recording artists and songwriters, and we produce, distribute and promote the most critically acclaimed and commercially successful music to delight and entertain fans around the world.

We are currently seeking a highly skilled vulnerability engineer to join our Vulnerability Management program. They will drive resolution of all identified IT vulnerabilities in a global enterprise to ensure the smooth and efficient ongoing operation of the UMG Global infrastructure. A high level of diverse technical skills for troubleshooting and problem analysis is required, along with the ability to clearly communicate the results of problem analysis to business stakeholders, IT support teams, and network providers to resolve operational issues quickly and effectively. This position requires established and proven experience in a global environment. In addition to having strong technical skills, you must be comfortable in effectively communicating with business end users, technical IT teams, business partners, network providers, and business process outsourced vendors, all while being sensitive to a wide diversity of cultural and technical backgrounds in a global business environment.

Job Functions:

  • Demonstrate ability to anticipate security issues, identify emerging risks, and take initiative in vulnerability remediation without constant supervision. A track record of proactively addressing vulnerabilities and improving security processes is essential.

  • Prioritize and classify vulnerabilities based on risk impact, system criticality, and business context.

  • Drive resolution of identified vulnerabilities within 60 days of identification.

  • Administer and maintain the Veritas eDiscovery platform, ensuring its availability, security and proper configuration.

  • Administer and maintain Cortex XDR for endpoint detection and response.

  • Ensure compliance with data retention policies and assist legal and compliance teams with data retrieval and analysis requests.

  • Work with internal customers, teammates and 3rd party providers to ensure operational security of the cloud and server infrastructure.

  • Maintain high quality process and procedure documentation.

  • Maintain & enhance knowledge of key technologies and risks.

  • Communicate risk and remediation requirements clearly to both technical and non-technical stakeholders, including leadership and external auditors.

  • Automate the vulnerability reporting and remediation processes to improve efficiency and reduce manual intervention.

  • Participate in incident response activities related to vulnerability exploitation and provide remediation guidance.

  • Participate in on-call rotation to respond to critical security alerts and events. Work out of standard business hours will occasionally be required.

Job Requirements:

  • 3+ years of hands-on experience in vulnerability management, remediation, or related cybersecurity roles.

  • 1-2 years of experience administering and maintaining Veritas eDiscovery platforms, including troubleshooting, upgrades and ensuring compliance with data retention requirements.

  • Experience with common vulnerability assessment tools (e.g., Nessus, Qualys, Tenable, OpenVAS).

  • Knowledge of patch management processes and tools.

  • Must possess strong people skills and the ability to be both diplomatic and firm.

  • Experience in highly available 24x7x365 production environment.

  • Fluency in operating system administration and tools including: Microsoft, Mac OS X, Linux, Python, Powershell, etc.

  • Proven experience with Amazon AWS and Microsoft Azure (Google Compute a plus) in an enterprise setting.

  • Manage time well in a high-interrupt operational environment. Handle the details of several technical tasks simultaneously.

  • Familiarity with VMware Tanzu CloudHealth.

  • Appropriate professional certifications.

Education:

  • Bachelor’s Degree in Computer Science or Engineering or closely related field or comparable education and experience.

  • Certifications such as CISSP, CISA, Security+

  • ITIL Foundation Certification strongly desired.

Just So You Know…

The company presents this job description as a guide to the major areas and duties for which the jobholder is accountable. However, the business operates in an environment that demands change and the jobholder's specific responsibilities and activities will vary and develop. Therefore, the job description should be seen as indicative and not as a permanent, definitive, and exhaustive statement.

Job Category:

Universal Music Group

Application Security Engineer in London employer: Universal Music

Universal Music Group UK is an exceptional employer that fosters a vibrant and inclusive work culture, where creativity and collaboration thrive. With a strong commitment to employee growth, we offer comprehensive benefits including a generous pension scheme, private medical insurance, and opportunities for professional development. Located in the heart of the UK's music industry, our team is dedicated to shaping culture and empowering artists, making it a truly rewarding place to build your career.

Universal Music

Contact Details:

Universal Music Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Application Security Engineer in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Universal Music, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Universal Music

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Universal Music. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Application Security Engineer in London

Communication Skills
Problem-Solving Skills
Flexibility
Adaptability
Organizational Skills
Teamwork
Compassion

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Universal Music insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Universal Music that you’re committed to staying ahead in the game.

How to prepare for a job interview at Universal Music

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Universal Music to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Universal Music.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.