- Company Name
- Artificial Labs
- Job Title
- Security Engineer
- Job Description
-
Job Title: Security Engineer
Role Summary: Design, implement, and maintain security infrastructure; conduct risk assessments, threat modeling, and vulnerability analyses; monitor alerts and coordinate incident responses; embed security into product lifecycle; ensure compliance with regulatory standards.
Expectations: Apply cloud-native security best practices primarily on AWS; develop automated tooling to showcase attacks or enhancements; collaborate across engineering, SRE, and product teams; stay current with security trends and technologies; uphold regulatory and industry standards such as GDPR, Cyber Essentials+, ISO 27001.
Key Responsibilities
- Design, deploy, and maintain secure architecture, including audits, assessments, and compliance controls.
- Monitor security alerts, investigate incidents, and coordinate timely response with internal and external stakeholders.
- Conduct vulnerability assessments, threat modeling (e.g., STRIDE, MITRE ATT&CK), and risk mitigation activities.
- Automate security workflows, develop scripts/tooling to analyze and demonstrate attacks.
- Guide cross‑functional teams to integrate security into development and operations.
- Educate staff on security best practices and threat awareness.
- Participate in compliance processes, ensuring adherence to GDPR, Cyber Essentials+, ISO 27001 and related standards.
Required Skills
- 3+ years in a security‑focused role, preferably in tech or fintech.
- Cloud‑native security expertise with AWS (VPC, IAM, KMS, Security Hub, GuardDuty, etc.).
- Strong understanding of networking, cryptography, authentication, authorization, and secure coding principles.
- Hands‑on experience with security tools: firewalls, IDS/IPS, SIEM, vulnerability scanners.
- Ability to write software/scripts (Python, Go, Bash) to automate security tasks and demonstrate attacks.
- Knowledge of threat modeling frameworks (STRIDE, MITRE ATT&CK).
- Familiarity with regulatory frameworks: GDPR, Cyber Essentials+, ISO 27001, etc.
- Excellent problem‑solving, communication, and collaboration skills in a distributed environment.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (equivalent work experience accepted).
- Relevant certifications preferred: CISSP, CISM, CEH, or AWS Security Specialty.