Security Engineer
London, United Kingdom
Fnality International
Here at Fnality, we are powering the future of finance, together: combining best in class technology with free-flowing creativity, and expertise that can make business better for everyone. There are no precedents for what we’re doing. With you on our side, we’ll be setting new ones every day.
In a complex world, we are here to bring clarity and make positive change.
Working at Fnality
Be your best: We have a supportive culture that helps to bring the best out of each and every single one of our employees.
Feel free to explore: Bring your new ideas and help us to solve problems together. By joining a community of experts, you will get opportunities that do not exist elsewhere, as well as learn a wide range of different skills than you would learn only after many years in the usual financial circles. We place a big emphasis on fostering individual freedom and creativity in the workplace, so feel free to explore new directions and specialisms.
Be part of something bigger: We will support you by fostering an open, honest culture, that embraces diversity practices, inclusivity and enables wellbeing. Feel part of something bigger while being yourself.
Feel empowered: We want you to feel empowered. The nature of our business can help make this a reality. We have the stability and experience of a large financial company, so you will have plenty of momentum behind you. We also have the agility, speed and innovation of a start-up, so if you are willing to be flexible, the future is limitless.
Position Summary
The Security Engineer role will play a key role in the strategic design, hands-on delivery, and oversight of workstreams relating to the security of the Cloud Platform, DevSecOps work, Security of Endpoints and Virtual Networks as well as the Fnality Payment System. As the SME, this person will be tasked with ensuring the security of the Fnality group, leading cyber related projects, managing pen testing engagements, train junior members of the team and ensuring the day-to-day security requirements of the business.
Role & Responsibilities
- Develop and deliver security requirements for Fnality’s Platform, DevOps, Security and Infrastructure requirements
- Secure and support Fnality highly resilient and scalable technology products and platforms to customers
- Ensure coverage of security tooling is complete to give complete visibility across the estate with regards to vulnerabilities, incidents, alerts and that the SIEM is properly configured
- Ensure vulnerabilities across endpoint and product are with in tolerance
- Ensure Cyber security training is fit for purpose and engaging
- Respond to and manage security incidents
- Help the Group CISO shape the cyber strategy
- Ensure Security is baked into everything we do and ensure we are always keeping pace and leading the way
Skills & Experience
- Experience working as a Security Engineer for a fintech startup
- Experience of successfully delivering secure, large-scale projects as cloud solutions
- Experience managing best practice standards, such as ISO27001 and NIST
- Experience maintaining vulnerability detection tooling, email security gateways, EDR solutions and SIEM technology
- Experience in red teaming / pen testing advantageous
- Experience in securing the development of DevOps pipelines
- Experience with containerisation and orchestration technologies (Docker, Kubernetes, Helm)
- Knowledge of scripting languages to support automation
- Strong understanding of network and security concepts
- Experience working with the M365 platform and tooling; including but not limited to Vulnerability Management, Intune MDM, Azure AD, and Azure Sentinel
- Experience working with the AWS platform and tooling; including but not limited to AWS Security Hub, Inspector, Guard Duty, WAF and CloudHSM
- Experience working to Cyber Essentials guidelines, and Cyber Essentials Plus verification
- Strategic, forward-thinking approach with a passion for innovation and change
- Willingness to get involved with a multitude of work and changing priorities in a fast-paced, ambiguous environment
- Comfortable working with limited resources and tight deadlines
- Attention to detail
- Ability to see the bigger picture
Ideally you will have (desirable but not essential)
- Experience in a Security Engineering role adhering to regulatory compliance and information security management frameworks (e.g. IS027001, NIST, etc) and as of late had chances to flex your competency, ideally in an agile, fast growing scale-up
- Possess one or more the following certifications: Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), System Security Certified Practitioner (SSCP)
- An understanding of financial services and relevant regulations and laws.
- Knowledge of and/or interest in blockchain, security operations, financial services back-office processes, systems and products
- Interest in offensive security
- Good understanding (Distributed) Public Key Infrastructure
Why should you join Fnality?
We employ curious individuals who thrive working in a fast paced and constantly changing environment, who work best when empowered to drive their own work, and who are not afraid to fail fast and learn quicker.
You will be an analytical thinker who is able to look at tasks and understand the most efficient way to achieve the desired outcome. You will be vigilantly outcomes-focussed and fully agile in your approach to working. You will have an insatiable desire to learn, adept at picking up new challenges and giving anything a go. You will want to deliver as much as learn and you will understand how important the power of the team is.
A bit more about us
Digital transformation is changing our lives, work and businesses. While other sectors evolve, however, financial markets remain slow, fragmented and siloed. What the world needs now is a future-facing financial system for the digital age.
At Fnality, we have been speaking – and listening – to the real users of today’s financial systems. From businesses to banks, there is a clear, collective ambition for a simpler, faster, safer and more resilient payment system; one that can move and settle money quickly and efficiently, with minimised risk and much more transparency.
Fnality Global Payments
We are building a network of new payment systems that will enable tokenised, peer-to-peer markets.
Fnality Global Payments (FnGP) will comprise a series of national systems, each regulated in its home jurisdiction. We call each of these a Fnality Payment System (FnPS).
In each payment system, a Fnality settlement asset will act as the settlement/payment asset for any Payment (P), Delivery v, Payment (DvP) or payment vs. payment (PvP) need.
FnGP are underpinned by Distributed Ledger Technology (DLT). The nature of DLT is such that it enables FnGP to:
- Operate a true peer-to-peer market
- Allow for immediate settlement
- Interoperate across business platforms and jurisdictions
The key benefits of the above are:
- Reduced counter-party and credit risk
- Reduced operational risk
- Efficient liquidity management
- An ability to move resources from risk mitigation to business growth
Eligibility
This role is a UK based role and you must be eligible to work in the UK. Please note we cannot sponsor visas for this role.
How will we use the information about you?
We will use your personal information to process your application, to enable us to assess your suitability for a role and for other legitimate business purposes such as improving our sites and talent management practices. We may share your data with third parties to achieve these purposes. We will not use or share your information for marketing purposes.
We will take appropriate security measures to safeguard your information in accordance with data protection legislation.
If you would like further information about how your information may be processed by us, please contact us at privacy@fnality.org.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Automation AWS Azure Blockchain CCSP CISO CISSP Cloud Compliance DevOps DevSecOps Docker EDR Finance FinTech Helm ISO 27001 Kubernetes NIST Offensive security Pentesting Privacy Red team Scripting Sentinel SIEM SSCP Strategy Vulnerabilities Vulnerability management
Perks/benefits: Career development Flex hours Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.