ENSEK Logo

ENSEK

Senior Cyber Security Engineer

Posted Yesterday
Be an Early Applicant
In-Office or Remote
Hiring Remotely in London, Greater London, England
Senior level
In-Office or Remote
Hiring Remotely in London, Greater London, England
Senior level
Design and implement security for a cloud-native B2B SaaS platform. Responsibilities include cloud and Kubernetes security, threat modeling, application and infrastructure hardening, vulnerability management, detection and incident response, security automation, and compliance assurance. The role partners with Engineering, SRE, Risk, Product, Legal, and InfoSec teams to embed secure-by-design practices, automate controls through infrastructure as code and CI/CD, and improve security metrics, detection capabilities, and regulatory readiness.
The summary above was generated by AI
About ENSEK
ENSEK builds the cloud‑native SaaS software that’s transforming how energy retailers operate, innovate and manage at scale. We help retailers lower operating costs, improve billing accuracy for consumers, and enhance customer experience through automation and AI‑driven insight, all underpinned by modern, cloud‑native architecture.

ENSEK is at an exciting inflection point as we scale at pace towards new international horizons. If you’re driven by solving complex, real‑world problems and want to protect resilient, cloud‑native platforms that accelerate the global energy transition, you’ll feel right at home with us.

About the role

As a Senior Cyber Security Engineer you will embed security into the DNA of our B2B SaaS platform. You’ll partner with Engineering, SRE, Risk and Product to build security into every part of our product lifecycle, enabling high‑velocity delivery without ever compromising trust or resilience.

This is a hands‑on, high‑impact role. You’ll influence architecture, automate security controls, strengthen detection & response, and drive a measurable uplift in our security posture. You’ll define our standards, lead threat modelling, and champion secure‑by‑design practices across an engineering organisation that’s modernising rapidly and ready for your expertise.

Key responsibilities:
  • Security architecture & design: Collaborate with engineering and platform teams to design secure solutions, perform threat modelling and review designs for cloud, container and service‑based architectures.

  • Cloud security: Define and enforce secure configurations, network segmentation, identity and access controls for public cloud (primarily AWS).

  • Application & infrastructure hardening: Implement secure coding practices, vulnerability management, secrets management and runtime protections for services and CI/CD pipelines.

  • Detection & response: Build and maintain monitoring, logging and alerting for security events; lead incident response and post‑incident reviews to drive remediation and lessons learned.

  • Incident Management: Support ENSEK’s 24/7 Incident Management processes to ensure security and stability for clients.

  • Automation & tooling: Automate security checks, policy enforcement and remediation using IaC, CI/CD integrations and custom tooling where appropriate.

  • Compliance & assurance: Work with Risk, Legal and InfoSec to embed controls that support regulatory, privacy and contractual requirements across new territories.

Key outcomes:
  • Measurable risk reduction: Clear evidence of reduced exposure through vulnerability metrics, patch timelines and remediation actions.

  • Robust detection capability: High‑fidelity alerts and shortened MTTD/MTTR for security incidents with thorough RCA and preventative measures.

  • Secure-by‑design practices adopted: Engineering teams consistently apply threat modelling, secure coding and automated security gates.

  • Compliance readiness: Security controls aligned with regulatory and contractual requirements for current and new markets.

Experience required:
  • 5+ years’ experience in cyber security within cloud‑native environments, DevOps or platform engineering contexts.

  • Strong cloud security knowledge: Practical experience securing AWS services, IAM, networking, KMS/secrets and managed services.

  • Container and orchestration security: Experience securing Kubernetes and related tooling (runtime protection, admission controllers, image scanning).

  • Detection and monitoring: Hands‑on with logging, metrics and tracing for security use cases.

  • Infrastructure as Code & automation: Proficient with Terraform/CloudFormation and CI/CD integration to enforce policy and automate remediations.

  • Security Tooling: Hands on experience with Secure Web Gateways, IDP, IDS, EDR, SAST, DAST, WAF technologies.

  • Scripting & development skills: Comfortable writing automation and tools in Python, Go, Bash or similar languages.

Company benefits
  • 25 days’ holiday + bank holidays

  • Option to buy or sell 5 extra annual leave days per year

  • Vitality Health Insurance, including private healthcare, virtual GP access and mental‑health support

  • Pension with 5% matched contribution

  • Regular team‑wide and company‑wide events

  • 2 volunteering days per year

  • Remote‑first working environment (within the UK) with offices in London and Nottingham

Similar Jobs

3 Days Ago
In-Office or Remote
2 Locations
Senior level
Senior level
Retail • Software
Design, implement and improve security tools and platforms across cloud, SaaS and enterprise environments. Evaluate and adopt new and AI-enabled security technologies, support observability and telemetry, lead technical incident investigations, ensure compliance with security architecture and governance, and influence stakeholders to embed security best practices.
Top Skills: Ai-Enabled Security ToolsCloud-Native Security TechnologiesMonitoringObservabilitySaas SecuritySecurity ToolingSIEMTelemetry
5 Hours Ago
Remote or Hybrid
Senior level
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Build high-fidelity prototypes and interactive experiences across web, mobile, and TV platforms. Develop internal tools, Figma plugins, shared frameworks, APIs, and AI-powered utilities that improve design workflows. Collaborate with designers, engineers, product managers, and researchers, integrate live or simulated data, iterate based on feedback, and mentor other design engineers. The role emphasizes front-end engineering, interaction design, rapid experimentation, emerging technologies, and streaming media experiences.
Top Skills: Adobe Creative SuiteAntigravityApacheAugmentAWSAzureClaude CodeCloudflareCodexContentfulCSSCursorFigmaFigma ApiFigma PluginsFirebaseGCPGitGitGraphQLHTMLJavaScriptLightningjsMixpanelNext.JsNode.jsProgressive Web AppsReactReact NativeSwiftSwiftuiTypescriptVercelXcode
9 Hours Ago
Remote or Hybrid
United Kingdom
Senior level
Senior level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Lead strategic identity security engagements across EMEA, advising executive stakeholders on risk, regulation, governance, access controls, and operational priorities. Shape complex sales opportunities, define identity roadmaps, facilitate executive workshops, align business and technical teams, and translate identity programs into measurable outcomes. The role requires influencing C-level decisions, working through ambiguity, partnering with sales and delivery teams, and representing SailPoint at industry events.
Top Skills: Cloud SecurityIdentity And Access Management (Iam)Identity Security

What you need to know about the Manchester Tech Scene

Home to a £5 billion digital ecosystem, including MediaCity, which consists of major players like the BBC, ITV and Ericsson, Manchester is one of the U.K.'s top digital tech hubs, at the forefront of advancements in film, television and emerging sectors like as e-sports, while also fostering a community of professionals dedicated to pushing creative and technological boundaries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account