Infrastructure-as-code and GitOps (Terraform, Ansible, Helm)
Deep understanding of authentication, authorization, and secrets management (OIDC/OAuth, Azure AD/Entra ID, vault, Keycloak) and of access control models
Nice to Haves
Security of AI agents and LLM applications (delegated access, tool-use authorization, prompt injection)
Hands-on experience with Kubernetes, Linux, and containerized environments, including network policies
Strong grasp of network security controls: firewalls, WAFs, segmentation, TLS termination, and egress filtering
A structured approach to threat modeling and risk assessment, and the ability to explain risk clearly to any audience
Experience in financial services or another regulated environment
What You'll Be Doing
Define and own the target security architecture for internal applications and platforms
Lead the design of the security policy engine for scoped time-bound system and data access
Work with IAM, Infosec, Security Operations, and Infrastructure teams for monitoring and auditing controls
Perks and Benefits
Competitive holiday entitlements
Pension/401k
Life and long-term disability coverage
Enhanced parental leave
Flexible working arrangements
Professional development opportunities
Two annual 'Mankind' days of paid leave for community volunteering
Additional benefits based on location such as private medical coverage, discounted gym membership, and pet insurance