Senior Security Engineer Our client is a fast-growing international entertainment business with a fully owned technology platform and teams across multiple markets. They operate a hybrid working model and have built a genuinely diverse, international team. This is a strong opportunity for a senior security professional to shape and lead the security function with real scope and executive backing. About the role This is a senior hire with real scope and executive backing. The successful candidate will define the security strategy, establish processes and tooling, and work closely with engineering, compliance, and data protection teams to build a robust security posture across a cloud-native entertainment technology platform. The role requires both technical depth and strategic thinking. You will be hands-on when needed but equally comfortable operating at a programme level driving security improvements across the organisation, influencing engineering teams, and ensuring the business stays ahead of an evolving threat landscape. What you will be doing Define and implement the cybersecurity strategy and roadmap for the business Establish and manage a vulnerability assessment programme end-to-end Coordinate penetration testing activities with external partners and implement findings Integrate security tooling into CI/CD pipelines including SAST and dependency scanning Create and maintain security policies, guidelines, and procedures aligned to industry best practice Work with compliance and data protection teams to meet regulatory requirements Perform threat modelling during the design phase of new features and systems Improve existing WAF and SIEM solutions, review alerts, and optimise protection Define cloud security baselines and best practices for AWS infrastructure Develop and implement a Security Incident Response Programme Assess and manage security risks from third-party vendors and integrations Build and deliver security awareness training across the engineering organisation Requirements
5+ years of experience in cybersecurity or information security roles
Proven track record of building security programmes, ideally as a first security hire or in a startup or scale-up environment
Strong understanding of application security principles and secure development practices · Hands-on experience with AWS security services and cloud security best practices
Working knowledge of security tools and technologies including SAST, SIEM, WAF, and vulnerability scanners
Solid understanding of compliance frameworks such as ISO 27001, PCI-DSS, and GDPR · Excellent communication skills with the ability to work cross-functionally across technical and non-technical teams
Security certifications such as CISSP, CEH, or OSCP · Scripting and automation skills in Python or Bash for security tooling
Experience with Infrastructure as Code security using Terraform or CloudFormation
Knowledge of container security across Docker and Kubernetes · Understanding of fraud prevention and detection mechanisms
All official Signify Technology emails end with @signify-tech.com. If you're unsure, check our Meet the Team page and verify any unsolicited payment requests by contacting info@signify-tech.com.