Overview
In this role you will strengthen the global security posture for a leading trading firm. You’ll operate within a high‑performing engineering group, owning security decisions and building scalable controls across Windows, endpoint security, automation, vulnerability management and platform hardening. The position blends hands‑on engineering with advisory duties to mitigate threats proactively. You’ll work in a fast‑moving, technically demanding environment where you provide clarity and sound judgment to wider IT teams. This is a mission‑critical opportunity to shape security controls at scale while collaborating across global IT functions.
Responsibilities
- Design and implement security controls across Windows platforms
- Drive vulnerability management initiatives and close remediation at scale
- Build automation around configuration, monitoring and incident response
- Improve endpoint security across EDR, AV, patching and OS hardening
- Work with core infrastructure including AD / Entra ID, PKI and networking
- Monitor emerging threats and advise on technical risk
- Support global IT teams in a large distributed environment
Key requirements
- Strong Windows security engineering experience
- Solid understanding of host-based controls: application control, firewalling, logging, encryption
- Hands-on experience with EDR, endpoint protection, scanning and patching
- Background in OS hardening, privileged access and security best practice
- Knowledge of common attack techniques and the controls that mitigate them
- Good grasp of Active Directory / Entra ID and PKI
- High-level PowerShell scripting skills
- Clear communicator who can influence, collaborate and take ownership
- Clear communication
- Influence and collaboration
- Ownership and accountability
- Windows security engineering
- EDR / endpoint protection
- Vulnerability management
…
