A bit about the role
Working within Allwyn's Enterprise Security team, you will be responsible for ensuring the design and delivery of secure solutions. This will be achieved by producing both high level and low level security designs for multiple high security impact workstreams across a large programme of work, ensuring that designs are fit for purpose, as well as compliant with security policies, standards, and patterns. This role will also involve providing direct support to Technology Solution Architects, Project Managers, Business Analysts, and other key stakeholders, from production of Technical Design documents, through to securedelivery of solutions into production.
What you'll be doing
- Provide specialist security support, working as part of a project team and the assigned Technology Solution Architects to ensure that security is designed into solutions early in the project lifecycle, whilst ensuring the drivers of cost, pace and quality are maintained.
- Support security triage of solutions to assist projects with identifying resource requirements considering availability, project timescales, and required skillset.
- Conduct security risk assessments of solutions using industry standard threat modelling techniques.
- Production of security designs for high security impact workstreams across Allwyn, detailing security requirements based on the output of risk assessments and security patterns.
- Support the assessment and communication of any identified security risks and non compliance to policies and standards to programme stakeholders and service owners.
- Undertake security design governance activities and take on board feedback to update design artefacts as required.
- Produce test plans and scopes for both functional security and penetration testing, whilst supporting both internal and external test resources, e.g. pen test teams.
What experience we're looking for Must Have:
- Experience of providing security support to enterprise level projects.
- Knowledge and experience with the application of threat modelling techniques, e.g. STRIDE, DREAD, MITRE ATT&CK, etc.
- Ability to apply a structured approach to the production of security requirements in a design, which exhibits both quality and compliance to standards.
- Knowledge and experience across a wide range of technologies across Infrastructure, Networks, Systems, Database, and Applications.
- Solid understanding across different security domains including identity & access management, cryptography, endpoint security, network security, application security, security logging and monitoring, and vulnerability management.
- Experience of working with external parties to produce security test plans and support testing, e.g. penetration testing.
- Excellent understanding of cloud security architecture and principles across IaaS, PaaS, and SaaS.
- Strong knowledge of industry standards such as CIS, ISO 27000, PCI-DSS, and NIST, and how they can be effectively used to positively influence designs and the delivery of secure solutions.
- Experience of accurately communicating risks to stakeholders in relation to security control gaps identified throughout all stages of a project and assist with arriving at an agreed risk position.
- Excellent written, presentational and communication skills.
Nice to Have:
- Experience of working within a complex and sizeable Release Management model, within a technical delivery team.
- Experience with Agile tools such as Confluence and Jira.
- Experience in gambling/gaming platforms, including online casinos, sports betting, and/or iGaming. Alternatively, exposure to regulated environments (e.g., finance, healthcare, gaming, or similar) preferred.
- Experience of applying different IT delivery methodologies, such as Agile, Scrum, Lean and Waterfall.
- CISSP certification.
Benefits
- Company Bonus Scheme
- Matched pension contributions up to 8.5%
- 26 days annual leave + 2 Life Days (and bank holidays)
- Single Private Health Cover
- Complimentary Private Medical
- Income Protection
- Flexible Benefits - EV Scheme, Money Coach, Will Writing, Mortgage Advice, Dental and Eye Care Schemes.
- Enhanced Family Leave (Maternity, Paternity, Adoption)
- Wellness Allowance £500
- Employee Assistance Programme
- Discounted Health Assessments
- Volunteering Days
- Matched Funding
We are a Disability Confident Leader which means we've taken proactive steps to ensure our workplace is accessible and inclusive for disabled and neurodivergent colleagues and candidates. As part of this we offer an interview to disabled applicants who meet the essential requirements of the job.