At a Glance
- Tasks: Respond to security incidents and improve security operations through automation.
- Company: Join Zepz, a mission-driven tech company transforming cross-border finance.
- Benefits: Enjoy unlimited leave, great healthcare, and tailored perks for your lifestyle.
- Other info: Be part of a diverse team dedicated to continuous improvement and high performance.
- Why this job: Make a real impact in a fast-paced environment while supporting global communities.
- Qualifications: Experience in incident response, vulnerability management, and automation skills required.
The predicted salary is between 60000 - 80000 £ per year.
At Zepz, we're all about breaking down barriers for our customers and our teammates. Our purpose is deeply personal; we provide a lifeline and deliver opportunities to cross-border communities that need it most through cutting-edge finance and tech. Zepz is the power behind WorldRemit and Sendwave, driven by the mission to celebrate the incredible impact migrants have, both at home and abroad.
We look for mission-driven builders who thrive in a fast-paced environment connected to a true purpose. We’re an always developing team of experts that enjoy problem-solving and bring clarity to tough challenges. At Zepz, we are Relentless Learners, always seeking feedback, and Responsible Owners, treating company resources like your own. We depend on Transparent Communicators who keep the team aligned through open, honest talk.
Our Core Commitments — What We Live By
- Integrity: We always do the right thing. It’s simple, but it’s the foundation of everything we build for our customers and each other.
- Outcomes: We work for our customers. Their success and prosperity are the results we focus on delivering.
- Velocity: We are fast! We maintain high energy levels and make smart decisions quickly, keeping us nimble and ahead of the curve.
Perks of Joining Our Team
We believe in empowering colleagues because we genuinely trust our team. Our culture is founded on this high trust, which naturally encourages the high ownership that drives us to meet our shared high expectations and deliver high performance. Our remote-first culture means you have the flexibility to work in your employing country wherever you feel the most focused and productive. This freedom comes with wonderful tailored, location-specific perks designed to support your whole life, not just your work. Think unlimited annual leave, great healthcare benefits, and employee discounts. We want you to thrive and focus entirely on making your biggest impact! In turn, we expect you to bring high ownership and commitment to your work.
About the role and team
As we scale our security function to support our two payment brands and future acquisitions, we need to ensure security operations are set up to scale. We are looking for a person with expertise in incident response and vulnerability management who is interested in automation to help scale security operations and take the capability to the next level. We have a close-knit highly competent team who you’ll be joining, working alongside them to run phishing campaigns, manage security incidents through our SIEM, and contribute to purple team exercises alongside our internal red team capability.
What you will own:
- Respond to security incidents in a timely and effective manner.
- Investigate security incidents to identify root causes and prevent future incidents.
- Communicate with stakeholders throughout the incident response process.
- Create run books for common scenarios to improve consistency and prepare for automation.
- Review tooling and processes and automate wherever possible leaning on the ability of the SIEM to integrate to 3rd party APIs and follow workflow to enrich data as well as automatically close some incidents.
- Manage threat and vulnerability management.
- Keep abreast of emerging threats & vulnerabilities.
- Own the vulnerability reporting services and manage vulnerability team remediation metrics building relationships and influencing remediation outcomes through robust processes including reporting and risk management.
- Improve stakeholder collaboration & influence.
- Partner with engineering, operations, and business teams to foster a security-first culture.
- Improve security education and awareness campaigns by leading multi-disciplinary and multi-media messaging campaigns.
- Strive for continuous improvement.
- Stay updated with the latest developments in security operations and incident response.
Technical skills:
- Good security fundamentals e.g. networking, authentication, operating systems, cloud, encryption.
- Experience responding to incidents including EuC, public cloud server infrastructure and containerised environments.
- Experience of scripting and automation.
- Experience with SIEM and EDR tools.
- Familiarity with Infrastructure as Code tools (e.g., Terraform, CloudFormation).
- Familiarity with cyber security frameworks e.g. NIST.
Our global team of 800+ people is spread across six continents. We aspire to hire the best mix of people from former Olympians to YouTube influencers and we speak over twenty languages. This incredible diversity isn't a bonus; it's the engine that lets us serve the world.
Ready to Apply? Let’s Go.
Senior Security Engineer employer: Zepz
Zepz is an exceptional employer that champions innovation and inclusivity, offering a dynamic work culture where diverse perspectives are valued. Employees benefit from extensive growth opportunities within a global network, working collaboratively to enhance financial access across 50 countries. With a commitment to compliance and customer experience, Zepz empowers its team members to make a meaningful impact in the FinCrime sector while enjoying a supportive and fast-paced environment.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Security Engineer
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Zepz, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Zepz
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Zepz. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Senior Security Engineer
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Zepz insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Zepz that you’re committed to staying ahead in the game.
How to prepare for a job interview at Zepz
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Zepz to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Zepz.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.