Cyber Security Engineer

2 months ago


Welwyn Garden City, United Kingdom Tesco Full time
About the role

In this role, we are seeking a hands-on security engineer passionate about system hardening and secure configuration. This is across a large and diverse estate of technology assets, both on-prem and in public cloud, from workstations, to servers and containers. The security engineer will need to collaborate with security, infrastructure, and software development teams across Tesco to reduce the attack surface, and develop new hardened systems, baselines, images, and configuration. These should meet the needs of the business for usability as well as the appropriate level of security. 

You will be responsible for

Responsible for the design, development and implementation of system hardening and secure configuration across the organisation. This includes analysis of existing configuration and baselines, determining appropriate controls and benchmarks, and the creation of new and revisions to existing images and configuration. You will also be responsible for tracking the compliance of systems across Tesco through monitoring and auditing. Findings from this will need to be shared effectively with teams so the attack surface is minimised. This role may also involve you contributing to the building or buying of solutions to support these processes, along with the implementation, tuning and support required for those solutions.

You will need

Key Skills and Experience:

⢠Experience hardening technology systems

⢠Strong knowledge of either Windows system or Linux system internals

⢠Experience automating deployments and IaC (e.g. through use of automation tools such as Ansible, Chef or Puppet)

⢠Experience designing and building security systems

⢠Knowledge of hardening & compliance frameworks or guidelines (e.g. NIST, CIS, Microsoft)

⢠Ability to work independently and collaboratively across cyber security, infrastructure, and software development teams

⢠A broad understanding of security concepts; an interest and passion for cyber security

Desirable Skills and Experience:

⢠Experience working with containers, cloud infrastructure, cloud security and APIs

⢠Working knowledge of at least one programming language, including scripting languages such as Python or PowerShell

⢠Experience of creating and deploying configuration baselines (e.g. InTune Security Baselines, GPOs, Cookbooks)

⢠Experience developing and implementing attack surface reduction rules and application control rules

⢠Experience using the Cyber Kill Chain or Mitre ATT&CK Framework

Desirable Certifications

⢠One or more from: GIAC. Where appropriate other industry relevant certifications will be considered.

Whatâs in it for you
  • Annual bonus scheme
  • Holiday starting at 25 days plus a personal day (plus 8 Bank holidays)
  • On-site state of the art gym at our Welwyn Campus with discounted âGympassâ membership & free health checks via Nuffield Health
  • Retirement savings plan - save between 4% and 7.5% and Tesco will match your contribution
  • Life Assurance - 5 x contractual pay
  • Share Schemes â Join our âBuy As You Earnâ & âSave As You Earnâ share schemes after 3 months service
  • Colleague Clubcard (including a 2nd card for a family member) after 3 months service
  • Colleague Discounts:
    • 10% increasing to 15% after every pay day for a four day period, off most purchases at Tesco
    • 10% off One Stop
    • 10% off pay monthly & SIM only deals with Tesco Mobile
    • 20% off all F&F purchases
    • 20% off car, pet and home insurance at Tesco bank. T&Câs apply
    • 25% off Tesco Café
    • 50% off complete glasses purchases & free eye tests (other offers available) at Vision Express
    • 50% off health checks at Tesco Pharmacy
  • An exclusive deals and discounts website saving you money on everyday purchases, treats for the family, eating out and utility bills for the home
  • Cycle to work scheme
  • Shuttle Bus Service to/from Welwyn Garden City Station to Welwyn Campus
  • Opportunities to get on - take advantage of our ongoing learning opportunities and award-winning training, to help you achieve the job and career you want
  • Our Employee Assistance Programme helps you deal with lifeâs challenges
  • Financial wellness - Tesco has partnered with experts to help you make the most of your money
  • Get involved in a range of fundraising activities with our long-term charity partners


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe are seeking a highly skilled Cyber Security Engineer to join our team at Tesco, a leading technology company dedicated to Application Security.As a Cyber Security Engineer, you will play a critical role in protecting Tesco against security risks, with influence to implement innovative measures to minimize exposures and vulnerabilities.You...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Technology Full time

    Job DescriptionJob Title: Application Security EngineerAbout the Role:We are seeking a highly skilled Application Security Engineer to join our Cyber Security Team at Tesco Technology. As a key member of our team, you will play a crucial role in protecting our organization's systems, services, and data from cyber threats.About the Team:Our Cyber Security...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Technology Full time

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team at Tesco Technology. As a key member of our Cyber Security Team, you will play a vital role in protecting our organization's systems, services, and data from cyber threats.Key Responsibilities:Develop and implement security processes and procedures to ensure the...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Technology Full time

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team at Tesco Technology. As a key member of our Cyber Security Team, you will play a vital role in protecting our organization's systems, services, and data from cyber threats.Key Responsibilities:Develop and implement security processes and procedures to ensure the...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Technology Full time

    About the RoleWe are seeking a highly skilled Application Security Engineer to join our team at Tesco Technology. As a key member of our cyber security team, you will play a major role in protecting our organization against security risks and implementing innovative measures to minimize exposures and vulnerabilities.Key ResponsibilitiesIdentify gaps in...

  • Cyber Security

    2 months ago


    Welwyn Garden City, United Kingdom Tesco Full time

    About the roleAs a Cyber Security - Detection and Prevention Engineer, you will be responsible for developing and/or implementing the cyber security defence tooling and platforms, either to prevent security incidents, or to enable a faster and more effective detection and response capability to them. You will be required to analyse and gain insight from...

  • Security Engineer

    3 weeks ago


    Welwyn Garden City, United Kingdom Locke and McCloud Full time

    Security EngineerWe are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach.Key ResponsibilitiesLead our vulnerability management program,...

  • Security Engineer

    3 weeks ago


    Welwyn Garden City, United Kingdom Locke and McCloud Full time

    Security EngineerWe are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach.Key ResponsibilitiesLead our vulnerability management program, focusing on...

  • Security Engineer

    1 month ago


    Welwyn Garden City, United Kingdom Locke and McCloud Full time

    Security EngineerWe are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach.Key ResponsibilitiesLead our vulnerability management program, focusing on...

  • Security Engineer

    3 weeks ago


    Welwyn Garden City, United Kingdom Locke and McCloud Full time

    Security EngineerWe are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach.Key ResponsibilitiesLead our vulnerability management program, focusing on...

  • Security Engineer

    1 week ago


    Welwyn Garden City, United Kingdom Locke and McCloud Full time

    Security Engineer We are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach. Key Responsibilities Lead our vulnerability management program,...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe're seeking a seasoned Senior Manager, Product Security to join our team at Tesco. As a key member of our Product team, you will be responsible for driving the product vision, strategy, and long-term roadmap for our security products.You will work closely with peers and senior stakeholders to set the future direction of your product as part...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe're seeking a seasoned Senior Manager, Product Security to join our team at Tesco. As a key member of our Product team, you will be responsible for driving the product vision, strategy, and long-term roadmap for our security products.You will work closely with peers and senior stakeholders to set the future direction of your product as part...

  • Security Analyst III

    2 months ago


    Welwyn Garden City, United Kingdom Tesco Full time

    About the roleThis role is for a senior security analyst responsible for Cyber Threat Intelligence. This involves the collection, triage and dissemination to cyber security operational and engineering teams, the wider group, and security and technology leadership.  This includes the ongoing research of cyber threats and associated tactics, techniques, and...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe are seeking a highly skilled Senior Product Manager to join our Cyber Security team at Tesco. As a key member of our team, you will be responsible for delivering value to internal customers and driving business growth within the area of cyber security.Key ResponsibilitiesEvolving and driving the product vision, strategy, and long-term...


  • Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full time

    About the RoleWe are seeking a highly skilled Senior Product Manager to join our Cyber Security team at Tesco. As a key member of our team, you will be responsible for delivering value to internal customers and driving business growth within the area of cyber security.Key ResponsibilitiesEvolving and driving the product vision, strategy, and long-term...

  • Security Engineer

    3 weeks ago


    Welwyn Garden City, UK, Hertfordshire, United Kingdom Locke and McCloud Full time

    Security EngineerWe are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach.Key ResponsibilitiesLead our vulnerability management program,...

  • Security Engineer

    3 weeks ago


    Welwyn Garden City, Hertfordshire, United Kingdom Locke and McCloud Full time

    Security Engineer We are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach. Key Responsibilities Lead our vulnerability management program,...

  • Security Engineer

    2 weeks ago


    Welwyn Garden City, Hertfordshire, United Kingdom Locke and McCloud Full time

    Security Engineer We are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Security is integral to our operations and culture, and we're looking for a teammate who shares our commitment to a security-first approach. Key Responsibilities Lead our vulnerability management program,...

  • Security Engineer

    3 weeks ago


    Welwyn Garden City, Hertfordshire, United Kingdom Locke and McCloud Full time

    We are seeking a skilled Security Engineer to embed robust security measures across our AWS environment and DevSecOps lifecycle. Provide expert security guidance to engineering and product teams, ensuring secure development and deployment of new features. Coordinate assurance activities like penetration testing and application security validation. ...