At a Glance
- Tasks: Manage security posture and protect applications from external threats.
- Company: Join a forward-thinking tech company focused on security innovation.
- Benefits: Competitive salary, flexible hours, and opportunities for professional growth.
- Other info: Collaborative team environment with a focus on learning and development.
- Why this job: Make a real impact by safeguarding vital applications and infrastructure.
- Qualifications: 3+ years in penetration testing and strong knowledge of security vulnerabilities.
The predicted salary is between 50000 - 60000 £ per year.
As our Security Engineer, you will be responsible for managing our security posture as well as keeping our application safe from external threats. Our ideal Security Engineer will be able to manage IT-related security issues, such as firewall management, HIDS/HIPS configuration, log monitoring, and audit compliance (SOC II). You will ensure that our software application is both manually and automatically pentested for security vulnerabilities (both Red Team and Blue Team exercises), and be a decision maker in all things security management - able to "pull the plug" on a feature, application, or other business function if it represents a significant risk to the company.
You will:
- Conduct penetration tests against web applications infrastructure
- Validate security on new hardware and software infrastructure
- Assist front-line company representatives with security questions
- Manage firewall rules and internal pentesting
- Manage SOC II controls and external pentesting
- Manage priorities through backlog management system (Jira)
What You Need to Get the Job Done:
- 3+ years experience performing penetration testing (against web applications)
- Experience securing cloud-based infrastructures and solutions
- Previous experience working on an information security team
- Advanced knowledge of common security vulnerabilities (OWASP) and best practices
- Familiarity with SOC II controls and how to review them
- Experience in other technical roles (SysAdmin, Helpdesk, etc.)
- Strong understanding of Linux server environments
- Experience with Kanban and Agile DevOps workflows
- A good attitude and willingness to learn - you will be with great people.
IT Security Engineer in City of Westminster employer: Xsolla
Contact Detail:
Xsolla Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Security Engineer in City of Westminster
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. We all know that sometimes it’s not just what you know, but who you know that can land you that IT Security Engineer role.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your penetration testing projects or any security-related work you've done. We love seeing practical examples of your expertise, so don’t hold back!
✨Tip Number 3
Prepare for those interviews! Brush up on your knowledge of OWASP vulnerabilities and SOC II controls. We want to see that you can talk the talk and walk the walk when it comes to security management.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we’re always on the lookout for passionate candidates who are ready to make a difference in our security posture.
We think you need these skills to ace IT Security Engineer in City of Westminster
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with penetration testing and security management. We want to see how your skills align with the job description, so don’t be shy about showcasing your relevant projects and achievements!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about IT security and how your background makes you the perfect fit for our team. Keep it engaging and personal – we love to see your personality come through!
Showcase Your Technical Skills: When filling out your application, make sure to mention your experience with firewalls, SOC II controls, and any cloud-based solutions you've worked with. We’re looking for someone who can hit the ground running, so let us know what you bring to the table!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about us and what we do!
How to prepare for a job interview at Xsolla
✨Know Your Security Fundamentals
Make sure you brush up on your knowledge of common security vulnerabilities, especially those listed in the OWASP Top Ten. Being able to discuss these vulnerabilities and how they apply to web applications will show that you’re not just familiar with the theory but can also apply it practically.
✨Demonstrate Your Hands-On Experience
Prepare to share specific examples from your past roles where you conducted penetration tests or managed firewall rules. Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easy for the interviewer to see your impact.
✨Familiarise Yourself with SOC II Controls
Since SOC II compliance is a key part of the role, take some time to understand what these controls entail. Be ready to discuss how you’ve managed or reviewed these controls in previous positions, as this will demonstrate your readiness for the responsibilities of the job.
✨Show Your Team Spirit
This role requires collaboration with various teams, so be prepared to talk about how you’ve worked with others in the past. Highlight your experience in Agile DevOps workflows and how you’ve contributed to team success, as a good attitude and willingness to learn are highly valued.