onsite
Security Engineer - Standard Life plc
Security Engineer
Security Engineer focused on protecting retirement savings infrastructure using Python, AWS, and advanced penetration testing techniques to identify and remediate vulnerabilities while ensuring compliance and resilience.
About the role
Key Responsibilities
- Design, implement, and maintain secure cloud and on‑premise infrastructure using AWS services.
- Conduct regular penetration tests, vulnerability assessments, and threat modeling to safeguard critical data.
- Collaborate with development and operations teams to embed security controls into CI/CD pipelines (DevSecOps).
- Respond to security incidents, perform root‑cause analysis, and recommend remediation actions.
- Develop and enforce security policies, standards, and best practices across the organization.
Requirements
- Proven experience as a Security Engineer or similar role in a regulated financial environment.
- Strong scripting skills in Python and familiarity with AWS security services (IAM, KMS, GuardDuty, Security Hub).
- Hands‑on experience with penetration testing tools (Metasploit, Burp Suite, Nmap) and vulnerability scanners.
- Knowledge of network security, encryption, and secure architecture design.
- Excellent communication skills and ability to work cross‑functionally in a fast‑paced setting.
Skills
pythonawspenetration testingnetwork security