Senior Infosec Engineer
About the role
We are looking for a Senior Information Security Engineer with deep Linux expertise and a strong background in vulnerability remediation, penetration testing, network security and system hardening. The role involves developing, implementing, and maintaining system hardening standards across diverse Linux distributions; performing ongoing validation to ensure sustained security efficacy; creating, managing and maintaining the security analytics platform on Elasticsearch and building kibana dashboards, and keeping alerting accurate and actionable; contributing to, executing, and troubleshooting shell scripts and ansible playbooks; automating repetitive security tasks using Python, Bash or Rust; conceptualising and building bespoke security tooling and products to address Infosec requirements, moving beyond the limitations of commercial software offerings; conducting penetration tests across web applications, mobile apps, and infrastructure; identifying, validating, and tracking vulnerabilities at scale; working with engineering teams to drive timely remediation; analysing network traffic, application logs, SSH logs, and auditd events to detect anomalies and support incident investigations; participating in on-call rotation for security incident triage and response on Linux-based infrastructure; working with application protocols and REST APIs to identify security weaknesses; managing Nginx configurations from a security standpoint; analysing and assisting with WAF rule tuning on Akamai or Cloudflare; presenting security findings and risk posture clearly to technical teams, stakeholders, and leadership.
Candidates will join an innovative team pushing engineering boundaries. Depending on the domains associated with this job, you will be expected to design clean APIs, write automated test cases, and participate in peer code reviews. We value developers who focus on performance optimization, fast load times, and simple, maintainable architectures.