Carbon3.ai Logo

Carbon3.ai

Platform Security Engineer

Posted 2 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United Kingdom
Entry level
Remote
Hiring Remotely in United Kingdom
Entry level
Designs and improves security controls across cloud, Kubernetes, on-premises, CI/CD, containerized, and AI/ML environments. Responsibilities include infrastructure hardening, IAM and secrets management, threat modeling, vulnerability management, security monitoring, incident response, compliance validation, and security automation. The role partners with engineering and platform teams to embed DevSecOps practices, secure software delivery, and infrastructure-as-code security controls.
The summary above was generated by AI

Era4 develops, owns and operates AI infrastructure across the UK, powered by renewable energy. Converting legacy industrial and energy sites into modern data-centre facilities, Era4 is combining brownfield regeneration opportunities with cleaner, efficient, scalable compute capacity for healthcare, research, finance, enterprise, and public-sector organisations


We are seeking a Platform Security Engineer to design, implement, and continuously improve security controls across our cloud infrastructure, applications, and development lifecycle. This role focuses on protecting Kubernetes-based and cloud-native environments, strengthening security posture, identifying and mitigating risks, and enabling secure software delivery practices.

 

You will work closely with engineering, platform, and operations teams to integrate security into cloud infrastructure, CI/CD pipelines, containerized workloads, and AI/ML platforms. The successful candidate will combine hands-on technical expertise with a proactive approach to threat detection, vulnerability management, and security automation.


Key Responsibilities:


Cloud & Infrastructure Security:

  • Design, implement, and maintain security controls for Kubernetes, cloud infrastructure, and workloads.
  • Develop and enforce security standards, policies, and hardening baselines for cloud and on-premises environments.
  • Review infrastructure architectures and perform security assessments to identify risks and recommend mitigations.
  • Manage identity and access controls, including RBAC, IAM, secrets management, and privileged access.
  • Conduct threat modelling and security reviews for new applications, services, and infrastructure changes.
  • Integrate security controls into CI/CD pipelines, including SAST, DAST, dependency scanning, container image scanning, and secrets detection.

 

Vulnerability & Risk Management:

  • Lead vulnerability identification, prioritization, remediation, and reporting activities across infrastructure and applications.
  • Develop processes for continuous security assessment and compliance monitoring.
  • Track security metrics and drive remediation efforts with engineering teams.

 

Detection & Response:

  • Develop and maintain security monitoring, alerting, and detection capabilities.
  • Investigate security incidents, perform root cause analysis, and coordinate remediation activities.
  • Create and maintain incident response playbooks and procedures.

 

Security Automation:

  • Build automation to improve security monitoring, compliance validation, vulnerability management, and incident response workflows.
  • Leverage Infrastructure as Code and policy-as-code frameworks to enforce security standards at scale.

 

Required Qualifications & Experience:

  • Expertise in Security Engineering, Cloud Security, DevSecOps, or Infrastructure Security.
  • In depth knowledge of cloud security principles and experience securing Kubernetes environments.
  • Experience with container security, workload protection, and cloud-native security tooling.
  • Hands-on experience with vulnerability management platforms and security assessment methodologies.
  • Familiarity with CI/CD security controls, secure software development practices, and supply chain security.
  • Experience with SIEM, logging, monitoring, and security analytics platforms.
  • Strong scripting and automation skills using Python, Bash, or similar languages.

 

Preferred Qualifications:

  • Experience securing AI/ML or GPU-based infrastructure.
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, NIST CSF, CIS Benchmarks, or PCI DSS.
  • Experience with threat modelling, penetration testing, or red team engagements.


Why Join Era4:

You’ll be joining a mission-driven start-up building critical national infrastructure, where operational excellence directly enables growth. This role offers high visibility with leadership, real autonomy, and the chance to shape how a next-generation company operates at scale.


Diversity & Inclusion

Era4 is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. 

HQ

Carbon3.ai Tonbridge and Malling, England Office

Tonbridge and Malling, United Kingdom

Similar Jobs

8 Days Ago
Easy Apply
Remote
United Kingdom
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Own and evolve GitLab’s authorization systems across its Ruby on Rails monolith and next-generation Rust policy engine. Design fine-grained permissions for users, tokens, roles, and AI agents; secure GraphQL and REST APIs; lead feature-flagged rollouts and migrations; improve performance and reliability; and collaborate across authentication, platform, AI, and modular-service teams in a distributed asynchronous environment.
Top Skills: CedarGoGraphQLGrpcProtocol BuffersRestRubyRuby On RailsRustYamlZanzibar-Style Authorization
25 Days Ago
Remote
GBR
Mid level
Mid level
Information Technology • Professional Services • Software • Cybersecurity
Administer and maintain endpoint security platforms (Tanium & SentinelOne), deploy and manage Tanium modules, monitor performance, build dashboards and reports, perform audits and compliance checks, troubleshoot endpoint visibility/patching/deployments, integrate endpoint tools with IT/security systems, and provide training and support.
Top Skills: LinuxmacOSPowershellPythonSentinel OneTaniumTanium AssetTanium ComplyTanium DeployTanium PatchTanium Threat ResponseWindows
One Month Ago
Remote
United Kingdom
Senior level
Senior level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Own administration, configuration, and lifecycle management of security tooling. Improve detection quality and reduce false positives, enforce change control and governance, maintain MITRE ATT&CK mapping and coverage analysis, and drive continuous optimisation of security tooling across enterprise, cloud, and network environments.
Top Skills: EdrMitre Att&CkNdrSecurity Posture ToolingSIEM

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account