- Страна
- Великобритания
Откликайтесь
на вакансии с ИИ

Cyber Security Engineer
Престижный мировой бренд, сильный социальный пакет (включая Work From Anywhere) и работа с современным стеком технологий. Высокая оценка обусловлена балансом между интересными задачами и стабильностью крупной медиа-группы.
Сложность вакансии
Роль требует глубоких знаний как в инженерии (разработка, CI/CD), так и в безопасности (криптография, пентестинг). Необходимость аудита кода и работы с AWS на экспертном уровне делает позицию сложной и ответственной.
Анализ зарплаты
Зарплата для Cyber Security Engineer в Лондоне сильно зависит от опыта. Указанный диапазон соответствует рыночным стандартам для специалистов среднего и старшего звена в финансовом и медиа-секторах Великобритании.
Сопроводительное письмо
I am writing to express my strong interest in the Cyber Security Engineer position at The Economist Group. With a solid background in software engineering and a deep specialization in cloud security, particularly within AWS environments, I am confident in my ability to strengthen the security posture of your diverse business units. My experience in conducting penetration tests, auditing embedded code, and implementing secure CI/CD pipelines aligns perfectly with your requirement for a proactive engineer who can bridge the gap between development and security.
Throughout my career, I have focused on automating security measures and developing robust threat models to stay ahead of evolving attack vectors. I am particularly drawn to this role because of The Economist's reputation for analytical rigour and integrity. I am eager to apply my technical expertise in cryptography, vulnerability management, and secure architecture design to protect the platforms that deliver critical insights to millions of subscribers worldwide.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в theeconomistgroup уже сейчас
Присоединяйтесь к команде The Economist Group и защищайте цифровое будущее одного из самых влиятельных изданий мира!
Описание вакансии
Who we are
We are an organisation that exists to drive progress. That's the “red thread” that connects everyone at The Economist Group (TEG). Our businesses share a devotion to innovation, independence and rigour in their fields of expertise. We empower people to understand and tackle the critical challenges and changes facing the world. Our analytical rigour, global expertise and evidence-based insights enable individuals and organisations to make sense of these shifts and chart a course through them.
We deliver analysis and insights in many formats to subscribers and clients in 170 countries through our four businesses, The Economist, Economist Impact, Economist Intelligence and Economist Education, which uphold our global reputation for excellence and integrity.
This role is the collective glue that holds the information security program together.
We are looking for a highly motivated engineer responsible for designing, implementing, managing, monitoring and upgrading an organization's cybersecurity measures. At The Economist Group we have four business units specialized in editorial publications, impact think-tank, data forecasting, and distributed professional education. Our web and mobile applications allow customers to get the latest critical insights which drive global decisions. As a Cybersecurity Engineer for The Economist Group you will be expected to protect organizational systems and networks from cyber threats by responding to security breaches, testing and identifying vulnerabilities and communicating their security findings to managerial-level executives in an organization.
What You’ll Do
Responsibilities:
- Support teams to implement, identify and advance security at the Economist
- Conduct pen tests and risk assessments to prioritize threats and compare mitigation strategies.
- Work with Economist teams, external suppliers and engage with the customer to develop new policies, design processes / procedures and develop technical designs to drive remediation.
- Help to design a secure connected architecture.
- Assist engineering teams in developing secure systems
- Audit embedded code to identify security vulnerabilities and develop solutions
- Lead security engineering initiatives and serve as a point of contact
- Develop the security baselines and documentation as per required
- Work with monitoring and ensure logs are forwarded to the SIEM capability
- Assess vulnerabilities and implement solutions and strategies that mitigate those risks
- Identify, implement, and automate cybersecurity measures and best practices
- Coordinating incident response across the organization to respond to threats and security breaches
- Upgrade security solutions, research new attack vectors and develop threat models
- Performing security control audits and coordinating with other teams within the organization to implement the outcomes of security controls
Skills:
- Cloud Security and Development (AWS a prerequisite)
- Understanding and experience with CICD and secure CICD best practices (CircleCI)
- Vulnerability Mgmt tooling (code scanning, IaC)
- Security expertise in cryptography and exploit development
- Strong investigative and analytical problem solving skills.
- Experience with secure architecture design. Strong communication skills, both written and spoken.
- Penetration testing experience.
- Proficient in software development, auditing code and features.
- Experience with SQL and API development best practices is a plus.
Qualifications:
- Bachelor's or Master's degree in Computer Science, Cyber Security, or a related field or proof of exceptional skills in related fields, with practical software engineering experience.
- Previous proven experience in Cyber Security
- In-depth knowledge of security frameworks (NIST, ISO 27001, CIS Controls).
- AWS specific certifications such as: AWS Certified Security - Specialty, or AWS Certified Developer are a plus.
- Industry certifications, such as: CISSP, CISM, or CISA, are a plus.
#LI-Hybrid
Working Arrangements
The majority of our roles operate on a hybrid working pattern, with 3+ days office attendance required.
AI usage for your application
We are an innovative organisation that encourages the use of technology. We recognise that candidates may utilise AI tools to support with their job application process. However, it is essential that all information you provide truthfully and accurately reflects your own experience, skills, and qualifications.
What we offer
Our benefits package is designed to support your wellbeing, growth, and work-life balance. It includes a highly competitive pension or 401(k) plan, private health insurance, and 24/7 access to counselling and wellbeing resources through our Employee Assistance Program.
We also offer a range of lifestyle benefits, including our Work From Anywhere program, which allows you to work from any location where you have the legal right to do so for up to 25 days per year. In addition, we provide generous annual and parental leave, as well as dedicated days off for volunteering and even for moving home.
You will also be given free access to all The Economist content, including an online subscription, our range of apps, podcasts and more.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- AWS
- ISO 27001
- SQL
- CI/CD
- CircleCI
- NIST
- Vulnerability Management
- Cryptography
- Penetration Testing
- SIEM
- API Development
- IaC
- CIS Controls
Возможные вопросы на собеседовании
Проверка практического опыта работы с основным облачным провайдером компании.
Опишите ваш опыт настройки AWS Security Hub и GuardDuty для мониторинга угроз в мульти-аккаунтной среде.
Вакансия требует навыков аудита кода и разработки.
Какие наиболее критические уязвимости вы находили при аудите встроенного кода (embedded code) и как предлагали их устранить?
Компания использует CircleCI и стремится к автоматизации безопасности.
Как бы вы интегрировали инструменты сканирования IaC (Infrastructure as Code) в существующий пайплайн CircleCI, не замедляя процесс разработки?
Роль предполагает взаимодействие с руководством.
Как вы объясните технически сложное нарушение безопасности топ-менеджменту, не имеющему глубоких знаний в ИТ?
Проверка знаний стандартов, упомянутых в вакансии.
Каким образом вы применяли контроли CIS или фреймворк NIST для разработки базовых планов безопасности (security baselines)?
Похожие вакансии
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
Исследователь безопасности Android
Эксперт по защите периметра (WAF)
DevOps-инженер/ИБ (devops engineer, information security)
Application Security Еngineer (AppSec)
Инженер по сетевой безопасности
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- Великобритания