At a Glance
- Tasks: Drive security practices and strengthen compliance across engineering and business teams.
- Company: Join a culture-first tech company pioneering AI-powered integration solutions.
- Benefits: Flexible remote work, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact on security in a fast-scaling, innovative environment.
- Qualifications: 4+ years in security or related roles, with hands-on experience in SaaS environments.
- Other info: Dynamic team culture with a focus on collaboration and continuous learning.
The predicted salary is between 36000 - 60000 £ per year.
We're a culture-first organisation and put our people at the forefront of everything we do. We believe that a great working environment leads to a happy and productive team which is why we offer our staff the flexibility to work remotely or from our beautiful office in Fitzrovia, Central London.
Xiatech is the pioneer of Xfuze, the world's first AI-powered composable Integration, Data Management, Analytics and Orchestration Platform that innovatively connects systems, creates a single view of data and delivers actionable insights in one cloud-native, SaaS solution. Business, technology and data teams use Xfuze to shorten time-to-insights, accelerate digital transformation, and extend the value of their legacy technology investments.
The Role
We are looking for a proactive Information Security Engineer to join our Engineering organisation, reporting directly to the CTO/CISO and working closely on a day to day basis with our DevOps team. As an Information Security Engineer at Xiatech, you will be responsible for driving our security framework and take ownership of implementing best-in-class security practices, strengthening compliance programs, and embedding a culture of security across both our engineering and business teams. This is an exciting opportunity to have a direct impact on security at Xiatech. We're scaling fast, and this is your opportunity to directly shape the security posture of a company that's pushing boundaries in technology and innovation.
This role will be pivotal in strengthening Xiatech's information security framework, driving governance, and ensuring compliance across systems, third parties, and staff awareness initiatives.
Key Responsibilities
- Monitoring & Incident Response: Detect, investigate, and respond to security alerts, including malware, phishing, and unauthorized access.
- Vulnerability Management: Run scans, analyse results, and work with IT to remediate system and application vulnerabilities.
- Security Tools: Manage and optimise firewalls, endpoint protection, and intrusion detection/prevention systems.
- Access Control: Oversee user provisioning, reviews, and enforcement of least-privilege principles.
- Cloud & DevOps Security: Embed security into CI/CD pipelines and cloud-based SaaS environments.
- Device Management: Ensure endpoint compliance using company tools (ManageEngine, SentinelOne) and manage device lifecycle.
- Audit & Evidence: Maintain records of audits, incidents, and vulnerability reports for compliance and certification requirements.
- Control Implementation: Support the rollout and monitoring of ISO 27001 controls.
- Policies & Awareness: Help refine security policies and deliver staff training and awareness initiatives.
- Stakeholder Collaboration: Work with Sales, Legal, and IT teams to provide accurate, security-related input and documentation, participate in RFPs, security questionnaires, etc.
Your Knowledge & Experience
- Must have 4+ years in a security role, or have recently moved to a security role after experience in support, devops or a similar role.
- Handsāon experience in information security, ideally within a SaaS or productāled environment, working closely with the engineering teams.
- Proven success leading or supporting ISO 27001 and/or SOC 2 Type I/II compliance programs.
- Strong knowledge of information security principles, best practices, and standards (e.g., ISO 27001, NIST).
- Strong practical knowledge of cloud security, access management, secrets handling, and incident response.
- Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent work experience).
- Professional certifications such as CISA, CISM, CISSP or similar credentials are preferred (not mandatory ā training will be offered if needed).
- Thrives both as a selfāstarter who can take ownership and as a collaborative partner driving success with our team.
- Worked with DevOps, Support and Engineering teams to embed security best practices into CI/CD pipelines.
- Monitoring and alerting ā ideally Grafana, Halo ITSM.
- Any of the following tools and platforms: SonarCloud, Appcheck, OneTrust/Tugboat, Github, Chronicle.
Your Personality
- Energetic & driven
- Resilient
- Insightful
- Creative
- Sound judgement
- Analytical
- Capacity to learn
If you would like the opportunity to join a disruptive UKābased Software as a Service organisation who believe in using the latest leadingāedge technology to drive business growth and customer differentiation and success, please enquire now by emailing abbi@xiatech.co.uk.
If you receive an offer of employment, this will be conditional upon satisfactory completion of a right to work and identity check, a reference check and a basic criminal record check for any unspent convictions.
Xiatech is proud to be an equal opportunity employer and prohibits discrimination and harassment of any kind.
Information Security Engineer in London employer: Xiatech
Contact Detail:
Xiatech Recruiting Team
StudySmarter Expert Advice š¤«
We think this is how you could land Information Security Engineer in London
āØTip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
āØTip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects and contributions to security. This gives potential employers a taste of what you can bring to the table.
āØTip Number 3
Prepare for interviews by brushing up on common security scenarios and best practices. Practice articulating your thought process and problem-solving skills, as this is key in technical interviews.
āØTip Number 4
Donāt forget to apply through our website! Itās the best way to ensure your application gets seen by the right people. Plus, it shows youāre genuinely interested in joining our awesome team at Xiatech.
We think you need these skills to ace Information Security Engineer in London
Some tips for your application š«”
Tailor Your CV: Make sure your CV is tailored to the Information Security Engineer role. Highlight your relevant experience, especially in security frameworks and compliance programs, to show us youāre the perfect fit for our team.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to express your passion for information security and how your skills align with our culture-first approach. Let us know why you want to be part of Xiatech!
Showcase Your Technical Skills: Donāt forget to mention your hands-on experience with security tools and cloud environments. We love seeing practical knowledge, so include any relevant certifications or projects that demonstrate your expertise.
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep everything organised and ensures your application gets the attention it deserves!
How to prepare for a job interview at Xiatech
āØKnow Your Stuff
Make sure you brush up on your knowledge of information security principles, especially those relevant to ISO 27001 and NIST. Be ready to discuss your hands-on experience with security tools and practices, as well as any specific incidents you've managed in the past.
āØShow Your Collaborative Side
Since this role involves working closely with DevOps and engineering teams, be prepared to share examples of how you've successfully collaborated in the past. Highlight any experiences where you embedded security best practices into CI/CD pipelines or worked on compliance programs.
āØDemonstrate Your Problem-Solving Skills
Expect questions that assess your analytical and problem-solving abilities. Think of scenarios where you've had to detect and respond to security incidents, and be ready to explain your thought process and the steps you took to resolve the issues.
āØAsk Insightful Questions
Prepare a few thoughtful questions about Xiatech's security framework and culture. This shows your genuine interest in the role and helps you gauge if the company aligns with your values, especially their focus on a culture-first environment.