Security Engineer (Mid and Senior) (London)

Octopus Group
London
1 week ago
Create job alert

Help us use technology to make a big green dent in the universe! It’s a really exciting time in energy. Help us make a real impact on shaping a better, more sustainable future.

We are very excited to be building a small and efficient Cyber and Information Security team at Octopus Energy Group.

We're hiring for both Mid-Level and Senior Security Engineers. We are looking for ambitious, knowledgeable, and experienced Security Engineers to join our team, to grow with the rest of the company, and ensure we continue to do so in a secure and safe way.

You will be a key partner in defining what Security is at Octopus Energy Group. We will be shaping this team to provide a world class support service to our employees, building our way out of problems with engineering firepower and undertaking transformational organisational change.

You’ll play a crucial role in helping to secure our software development processes, securing our platform services, integrating security practices, and shaping a culture of security. This is a creative, and collaborative position that is a full-time member of a Cloud-First organisation. If you’re passionate about Cloud technologies and driving security by design, we encourage you to apply!

Specifically, we're looking for Security Engineers with at least2 yearsof relevant experience to help us improve security across the Octopus Energy Group. Senior Security Engineers should bring4+ years of relevant experience.

What you'll do:

  1. Build and maintain security tooling and infrastructure to improve our overall security posture
  2. Respond to security incidents and help improve incident processes
  3. Work with the wider Platform and application teams to ensure that our infrastructure, systems, and applications are secure
  4. Develop secure coding practices and provide guidance to development teams on application security best practices
  5. Keep up to date with the latest security trends and technologies related to application security, and evaluate their potential impact on our systems and data
  6. Develop and maintain security documentation related to application security, including policies, procedures, and guidelines

This is a varied role in a growing team. You’ll have the opportunity to get involved in other security-related projects and initiatives as needed. We encourage you to take on new challenges that align with your skills and interests, and to collaborate with other teams to drive improvements in security across our entire organisation.

What you'll have:

  • Excellent security and technology background
  • Strong understanding of web application security concepts, including OWASP Top 10 vulnerabilities, secure coding practices, and application security testing tools
  • Experience with security tools and technologies, such as web application firewalls (WAFs), and static and dynamic application security testing (SAST/DAST) tools
  • Experience in endpoint (e.g., EDR and ZTNA) and cloud (e.g., CSPM and CNAPP) security tooling
  • Experience with security SaaS solutions
  • Good AWS experience (or knowledge) and familiarity with various AWS security services (or familiarity with Azure and/or GCP with a willingness to learn AWS)
  • Strong analytical and problem-solving skills, with the ability to identify and mitigate security risks

A good candidate will have experience in at least some of the areas mentioned; we’re not expecting any candidate to be an expert in all areas!

What will help:

  • Security certifications (any of the well-known abbreviations)
  • Certifications from cloud providers’ certification paths
  • Security qualifications (e.g., apprenticeships or degrees)
  • Experience with preparing high-quality documentation
  • Experience using logging tools (whether this was a SIEM system or not) to generate alerts and reports
  • Knowledge of the MITRE ATT&CK framework

Why else you'll love it here

  • Wondering what the salary for this role is? Just ask us! On a call with one of our recruiters, it's something we always cover as we genuinely want to match your experience with the correct salary. We don't advertise because we have a degree of flexibility and want to find the right fit for you.
  • Octopus Energy Group has a unique culture. An organisation where people learn, decide, and build quicker. Where people work with autonomy, alongside a wide range of amazing co-owners, on projects that break new ground. We want your hard work to be rewarded with perks you actually care about! We were recently named theUK's top company to work for, and we ranked in thetop ten in the Sunday Times Best Places to Work 2024. Our Group CEO, Greg, has recordeda podcast about our cultureand how we empower our people. We’ve also been placed in thetop 10 companies for senior leadership.
  • Visit our UK perks hub -Octopus Employee Benefits

Our process usually takes up to 4 weeks, but we’ll always do our best to flex around what works for you. Along the way, you’ll chat with our recruitment team, and your Recruiter will help you throughout different stages. Got any questions? Drop us a message at and we’d love to help!

If this sounds like you, then we'd love to hear from you.

Are you ready for a career with us? We want to ensure you have all the tools and environment you need to unleash your potential. Need any specific accommodations? Let us know, and we'll do what we can to customise your interview process for comfort and maximum magic!

Studies show that some groups, like women, are less likely to apply unless they meet 100% of the requirements. If you like one of our jobs, we encourage you to apply—you might just be the candidate we hire. We value honesty, empathy, and diverse perspectives. We are an equal opportunity employer and do not discriminate based on protected attributes. Our commitment is to provide equal opportunities, an inclusive work environment, and fairness for everyone.


#J-18808-Ljbffr

Related Jobs

View all jobs

Security Engineer

Security Engineer - Hardware, Firmware, Virtualization, Secure Hardware And Foundational Techno[...] (London)

Security Engineer

Security Engineer

Security Engineer

Security Engineer

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Top 10 Mistakes Candidates Make When Applying for Cyber Security Jobs—And How to Avoid Them

Avoid the most common pitfalls when applying for cyber security jobs in the UK. Discover the top 10 mistakes candidates make—plus practical fixes, insider tips and curated resources that will help you secure your next infosec role. Introduction Whether it’s a Security-Operations Centre (SOC) in Canary Wharf or a fast-growing threat-intelligence start-up in Manchester, demand for cyber security talent continues to surge. Yet hiring managers on CyberSecurityJobs.tech still reject the majority of applications long before interview—usually for mistakes that can be fixed in minutes. We analysed recent vacancies, spoke with in-house recruiters and combed through the most-read guides on our site. Below is a definitive list of the ten most expensive mistakes we see, each paired with an actionable tip and a trusted resource for deeper reading. Bookmark this page before you press Apply.

Top 10 Best UK Universities for Cyber Security Degrees (2025 Guide)

Discover ten of the strongest UK universities for Cyber Security degrees in 2025. Compare entry requirements, course content, research strength and industry links to choose the right programme for you. Cyber Security has moved from IT back-room concern to critical national infrastructure. With growing threats from ransomware, state-sponsored attacks and supply-chain compromise, demand for well-trained cyber professionals has never been higher. The UK is home to a clutch of universities recognised globally for excellence in this field. Below, we profile ten institutions offering robust undergraduate or postgraduate cyber-security pathways. While league tables shift year on year, these universities have a consistent record of first-class teaching, research and industry collaboration.

How to Write a Winning Cover Letter for Cyber Security Jobs: Proven 4-Paragraph Structure

Learn how to craft the perfect cover letter for cyber security jobs with this proven 4-paragraph structure. Ideal for entry-level candidates, career switchers, and professionals looking to advance in the cyber security sector. When applying for a cyber security job, your cover letter is an essential component of your application. The cyber security industry is continuously evolving, and organisations are always seeking professionals who can protect their networks, systems, and data. Your cover letter provides an opportunity to demonstrate your technical expertise, your enthusiasm for cyber security, and your ability to contribute to the protection of sensitive information. Whether you're just entering the field, transitioning from another career, or looking to advance in cyber security, this article will guide you through a proven four-paragraph structure to create a compelling cover letter. We’ll provide sample lines and tips to help you stand out in the competitive cyber security job market.