Senior Cyber Security Engineer at ENSEK | Nottingham, GBR | Rezi

Senior Cyber Security Engineer at ENSEK

Senior Cyber Security Engineer

ENSEK · Nottingham, GBR

1 months ago

Senior Cyber Security Engineer

ENSEK · Nottingham, GBR

2 months ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

As a Senior Cyber Security Engineer, you will embed security into the B2B SaaS platform by partnering with Engineering, SRE, Risk, and Product teams. This hands-on role involves influencing architecture, automating security controls, strengthening detection and response, defining standards, leading threat modeling, and championing secure-by-design practices.

Responsibilities

  • Collaborate with engineering and platform teams to design secure solutions, perform threat modeling, and review designs for cloud, container, and service-based architectures.
  • Define and enforce secure configurations, network segmentation, and identity and access controls for public cloud (primarily AWS).
  • Implement secure coding practices, vulnerability management, secrets management, and runtime protections for services and CI/CD pipelines.
  • Build and maintain monitoring, logging, and alerting for security events; lead incident response and post-incident reviews.
  • Support ENSEK’s 24/7 Incident Management processes to ensure security and stability for clients.
  • Automate security checks, policy enforcement, and remediation using IaC, CI/CD integrations, and custom tooling.
  • Work with Risk, Legal, and InfoSec to embed controls that support regulatory, privacy, and contractual requirements.

Requirements

  • 5+ years’ experience in cyber security within cloud-native environments, DevOps, or platform engineering contexts.
  • Practical experience securing AWS services, IAM, networking, KMS/secrets, and managed services.
  • Experience securing Kubernetes and related tooling (runtime protection, admission controllers, image scanning).
  • Hands-on experience with logging, metrics, and tracing for security use cases.
  • Proficient with Terraform/CloudFormation and CI/CD integration to enforce policy and automate remediations.
  • Hands-on experience with Secure Web Gateways, IDP, IDS, EDR, SAST, DAST, WAF technologies.
  • Comfortable writing automation and tools in Python, Go, Bash, or similar languages.

Skills

  • Cloud Security
  • AWS
  • IAM
  • Networking
  • KMS
  • Secrets Management
  • Kubernetes Security
  • Runtime Protection
  • Admission Controllers
  • Image Scanning
  • Logging
  • Metrics
  • Tracing
  • Terraform
  • CloudFormation
  • CI/CD
  • Secure Web Gateways
  • IDP
  • IDS
  • EDR
  • SAST
  • DAST
  • WAF
  • Python
  • Go
  • Bash
  • Threat Modeling
  • Secure Coding
  • Vulnerability Management
  • Incident Response
  • Automation
  • Infrastructure as Code (IaC)

Location

  • Remote (within the UK)

Work Type

  • Remote-first
  • Full-time

Experience Level

  • Senior

Benefits

  • 25 days’ holiday + bank holidays
  • Option to buy or sell 5 extra annual leave days per year
  • Vitality Health Insurance, including private healthcare, virtual GP access and mental-health support
  • Pension with 5% matched contribution
  • Regular team-wide and company-wide events
  • 2 volunteering days per year

About the Company

  • ENSEK builds cloud-native SaaS software transforming how energy retailers operate, innovate, and manage at scale.
  • ENSEK helps retailers lower operating costs, improve billing accuracy for consumers, and enhance customer experience through automation and AI-driven insight.
  • The company operates with a modern, cloud-native architecture and is scaling towards new international horizons.
  • ENSEK is looking for individuals driven by solving complex, real-world problems who want to protect resilient, cloud-native platforms accelerating the global energy transition.