Senior Systems Engineer

Company: Wellington Management
Apply for the Senior Systems Engineer
Location: London
Job Description:

Overview

In this Lead Security Engineer role, you help minimize Wellington’s attack surface by leading vulnerability Management, cloud configuration assessments, and threat-intelligence-driven initiatives. You will partner with Security, Development, and CI/CD teams to embed a security mindset across the software lifecycle and accelerate fixes with automation. You’ll shape an internal hardening program aligned to CIS Controls and active cyber threats, while staying current on evolving risks. This is a hands-on, cross-functional role that combines security engineering with policy, process, and threat intel guidance to protect critical systems.

Pay / Benefits

  • hybrid work model (4 days in office, 1 day remote)
  • equal opportunity employer
  • opportunity to contribute to security policy and standards

Responsibilities

  • Perform assessments and communicate exploitation likelihood and impact of vulnerabilities and misconfigurations to determine mitigations.
  • Leverage CNAPP technology to guide application custodians on remediation.
  • Act as security liaison between Information Security and Development to secure the software development lifecycle.
  • Assess Wellington CI/CD pipeline to provide secure coding recommendations.
  • Lead urgent vulnerability responses and assist with Cyber Defense as needed.
  • Automate workflows and data assessments using scripting and AI to shorten output timelines.
  • Develop and mature an internal security hardening and baselines program aligned with CIS Controls and active threats.
  • Stay up to date with current cyber threats and map industry threats to the attack surface.
  • Review internal and open-source threat intelligence for recently disclosed vulnerabilities at risk of introduction.
  • Collaborate with Third-Party Risk to assess exposure of vendors to critical vulnerabilities.
  • Contribute to team and firmwide documentation and policies as SME.

Key requirements

  • BS degree in Information Systems/related discipline or equivalent IT work experience
  • Experience developing new processes for evolving attack surfaces
  • Excellent oral and written communication across diverse technical teams
  • Ability to work with global teams and mentor junior members
  • curiosity
  • self-motivation
  • questioning attitude
  • WIZ CNAPP and Qualys vulnerability management
  • Vulnerability assessment tools and prioritization using CVE, CVSS, EPSS
  • Knowledge of common attack types (DDoS, SQLi, XSS)

…

Posted: October 5th, 2026