Overview
In this role you protect critical trading, research and corporate technology environments within a fast-paced hedge fund. You will work across infrastructure, cloud, applications, endpoints and software engineering teams to mature security capabilities that enable business operations. The position offers broad ownership, high visibility, and opportunities to shape security across multiple domains. You’ll tackle complex security challenges and partner with engineering to embed security throughout the SDLC and CI/CD pipelines.
Pay / Benefits
- competitive compensation
- bonus
- benefits package
Responsibilities
- Protect Windows and Linux environments across corporate and production infrastructure
- Enhance endpoint security controls, monitoring, detection and response
- Design, implement, and maintain cloud security controls across Azure and other clouds
- Embed security in the Software Development Life Cycle with software engineers
- Lead application security initiatives including secure code reviews, threat modelling and remediation
- Build and improve DevSecOps capabilities within CI/CD pipelines
- Lead vulnerability management activities including scanning, prioritisation, risk assessment and remediation tracking
- Support incident response investigations and security monitoring
- Develop security automation to improve operational efficiency and reduce risk
- Contribute to security architecture reviews and technology assessments
- Collaborate with engineering, infrastructure, quant and investment technology teams to integrate security into critical systems
Key requirements
- Strong hands-on experience securing Windows and Linux environments
- Experience with endpoint security technologies including EDR/XDR
- Knowledge of cloud security principles, ideally in Azure
- Experience with application security testing and secure development practices
- Strong understanding of vulnerability management frameworks and tooling
- Experience implementing security controls within CI/CD pipelines
- Knowledge of DevSecOps principles and security automation
- Familiarity with authentication, identity management, network security, and encryption technologies
- Experience investigating security incidents and responding to threats
- Strong scripting or automation skills (Python, PowerShell, Bash, or similar)
- cross-functional collaboration
- ownership
- proactive problem solving
- Windows and Linux security
- EDR/XDR platforms
- Azure cloud security
…
