Infrastructure Security Engineer
Blockchain.com · London, United Kingdom
About The Role
Join our team as a Senior Infrastructure Security Engineer, where you will play a critical role in building and providing tooling that monitors our entire stack. You will lead technical discussions with engineering teams and influence the overall architecture of our platform. Your day-to-day work will focus on proactive threat actor identification and in-depth investigation of security issues. You will design, build, and implement security controls, automation, and processes across product, platform, and infrastructure environments. Additionally, you will collaborate with the SRE and engineering teams to integrate security into CI/CD pipelines, deployment workflows, and cloud-native architectures. - Design, build, and implement security controls, automation, and processes across product, platform, and infrastructure environments. - Collaborate with the SRE and engineering teams to integrate security into CI/CD pipelines, deployment workflows, and cloud-native architectures. - Identify operational and technical security gaps, propose solutions, and drive engineering initiatives to close them. - Familiarity with some of the following: Cloudflare (DDoS protection, WAF), OSS SIEM tools (Splunk, Elastic, etc), Incident management platforms (e.g. , PagerDuty) - Strong analytical and problem-solving skills, with a bias toward automation over manual workflows - Hands-on experience implementing security controls and automation within cloud environments, GCP or AWS are preferred - Ability to collaborate closely with engineering teams and translate security requirements into practical, scalable solutions - Familiarity with at least one of the following CI/CD systems (Github Actions, Concourse, CircleCI) - Curiosity, ownership, and a drive to continuously improve the security posture of complex systems - 4+ years of experience in security engineering, platform security, or DevSecOps roles - Familiarity with maintaining HIDS systems (Wazuh preferred) - Proficiency in modern scripting, automation and infrastructure as code e.g. Python, Bash, Go, Terraform, or similar - Knowledge of security standards and governance frameworks (e.g., CIS Benchmarks, NIST, SOC2, ISO 27001, PCI DSS) and how to operationalize them - Experience securing consumer-facing web and iOS / Android applications - Hands-on experience with building and maintaining a SIEM comprised of open-source and hosted components - Experience designing policies and administering Vault & other Hashicorp products - Experience managing security vendors
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring