Staff Security Engineer
You will set the technical direction for security across DigitalZone's platform, from application and cloud security to the payment and identity flows at the core of the business. This is the most senior individual-contributor security role: you own the hardest problems, do the hands-on work, and raise the bar for the whole engineering org. You can read the code, build the tooling, and fix the issue, not just file it.
What you'll do:
- Design and mature the secure SDLC, to support engineers in prioritising and remediating findings:
- Application Security: Leverage deterministic and LLM assisted automation to identify and remediate vulnerabilities across code developed within DigitalZone.
- Supply Chain Security: Design and implement solutions to mitigate the risks of vulnerable and compromised 3rd party dependencies. Including, the verification of feature and release integrity.
- Infrastructure & Cloud Security: Integrate scalable solutions to identify and patch vulnerabilities across the container and cloud infrastructure delivery process, including scanning, signing, admission control and runtime security.
- Run vulnerability management and coordinate penetration tests, and defining and tracking key vulnerability metrics.
- Define secure-by-design patterns and success criteria for authentication and authorization, cloud networking, secrets management, and IAM.
- Act as the primary liaison between customers and security vendors, driving alignment on security findings, remediation priorities, risk acceptance decisions, and strategic security outcomes.
Get remote technology | full-time jobs like this by email
10 hand-picked jobs, one email a day. No spam, unsubscribe anytime.
Similar for you
Get 10 hand-picked remote jobs like this one in your inbox every morning. One email a day, matched to what you browse. No spam, one-click unsubscribe.
No thanks β continue to the application β