Security Automation Engineer
Job Description
[Up to c. £225k Comp Package | Office-Led Working - 3 Remote Days Per Month]
Role Overview
We’re representing a highly successful quantitative research and technology organisation looking to expand a specialist Security Automation Engineering team responsible for building first-party security products across one of the most complex technology environments in the market. Sitting firmly between software engineering and cyber security, the team develops its own platforms and automation rather than relying predominantly on off-the-shelf tooling, with current and upcoming work spanning CSIRT and case-management capabilities, threat intelligence, automated security testing, threat hunting, incident response and a broader integrated security platform incorporating AI-led triage and prioritisation. This is fundamentally a software-engineering role within Security, with a strong emphasis on production-quality Python, engineering discipline and solving difficult security problems through well-designed software...
Key Responsibilities
- Design, build and maintain first-party security products and automation primarily using Python
- Develop capabilities across incident and case management, threat intelligence, automated security testing, threat hunting and response
- Contribute to a wider integrated security platform incorporating AI-assisted triage, enrichment and prioritisation
- Build reliable integrations across security platforms, cloud services and internal systems using APIs and event-driven workflows
- Own software through design, testing, deployment, monitoring and ongoing production support
- Develop and improve CI/CD, infrastructure automation and deployment workflows using modern engineering practices
- Partner with CSIRT, Detection Engineering and wider security teams to translate operational problems into scalable technical solutions
- Contribute to architectural decisions, code reviews and engineering standards across a small, highly collaborative team
What You’ll Bring...
- Typically around 4-10 years of professional software-engineering experience, ideally building production systems, internal platforms or technically demanding backend services
- Strong programming fundamentals and hands-on Python development skills, with evidence of building substantial production software rather than primarily scripting or configuration work
- Experience designing maintainable software using sound approaches to testing, APIs, system design, reliability and production ownership
- Exposure to cloud, infrastructure or platform technologies such as AWS, Azure, Linux, containers, CI/CD or Infrastructure-as-Code
- An interest in defensive security and the ability to understand technical problems across areas such as incident response, threat intelligence, detection, security testing or automation
- Evidence of working effectively within complex or highly customised technology environments where standard off-the-shelf approaches are not always sufficient
- Previous experience building security-focused software, internal security platforms, SOAR capabilities or automation used by CSIRT, SOC, Detection Engineering or threat-intelligence teams
- (Preferred) Experience with technologies such as Terraform, Ansible, Jenkins, ArgoCD, Elastic Security, Microsoft Defender XDR or AWS security services
...
Apply for this role
All fields marked with * are required.