We are seeking an Information Security Engineer to help drive enterprise-level information security initiatives and embed information security across our operations. In this role, you will design, implement, and maintain robust security infrastructure and controls to protect the organization's computer networks, systems, and data from cyber threats. You will build and manage security tools, conduct vulnerability assessments, and respond to security incidents. You will also advise the business on cyber security matters. This is primarily a remote position, with occasional in-person responsibilities at our Bristol, UK office.
The Ideal Candidate
* Blends technical skills with business awareness
* Comfortable working across multiple areas of security and excited to learn more
* Has familiarity with compliance frameworks (PCI, GDPR) and protection frameworks (NIST, ISO 27001)
* Partners cross‑functionally to drive security, automation, and continuous improvement
* Communicates effectively across technical and non‑technical stakeholders
* Evangelises a proactive security culture organization‑wide
Key Responsibilities
System Design & Implementation
* Design and deploy secure, scalable and reliable security tools
Monitoring & Threat Detection
* Monitor systems for security incidents
* Analyze and troubleshoot alerts
* Tune alerting systems
Incident Response
* Respond to security incidents
* Conduct investigations and coordinate cross‑functional response
* Identify vulnerabilities and/or gaps in security posture
* Coordinate and track remediation of any identified issues
Vulnerability Management
* Perform regular vulnerability assessments
* Identify and remediate weaknessesImplement and maintain controls aligned with internal standards
Penetration Testing
* Coordinate the company’s penetration tests with internal and external stakeholders
* Identify, surface, and track issues with the relevant system owners
Automation & Scripting
* Develop scripts to automate security tasks and improve efficiency
* Identify processes where automation can be leveraged to create efficiencies
Security Awareness & Training
* Educate internal teams on security responsibilities, procedures, and controls
* Help select appropriate security training modules
* Track completion of training requirements
Cross‑Functional Collaboration & Enablement
* Contribute to creation and updates of security policies and procedures
* Engage with stakeholders across Engineering, Product, Legal, and HR to support security initiatives
* Support vendor risk and third‑party security assessment activities
Benefits
* Annual bonus scheme dependent on individual and company performance
* Annual salary of £50,000 – £60,000
* 25 days holiday each year plus bank holidays and one additional day after each year of service (up to a maximum of 30 days)
* Workplace pension scheme
* Private medical insurance (after 30 days of employment)
* 35 hours per week with 7 hours per day work schedule
* Remote‑first culture
* Great work‑life balance with a Flexi‑time policy
* Family‑friendly policies (enhanced maternity and paternity pay and shared parental leave)
* Allocated company training budget
* Bike 2 Work scheme
* Employee Assistance Programme providing wellbeing, family and financial support and counselling services
* Commitment to employee wellbeing, including mental health first‑aiders
* Employee referral scheme with generous financial reward
* Bonusly colleague reward scheme
Equal Opportunity
NMI is committed to providing equal employment opportunity for all persons regardless of race, colour, religion, sex, age, marital status, national origin, sexual orientation or sexual identity, genetic information, citizenship status (except those that do not have the legal right to be employed in the United States), disability, military service, service member, veteran status, or any other basis protected by applicable law.
Please note that all offers of employment are made subject to receipt of satisfactory background and financial checks.
#J-18808-Ljbffr