Capital on Tap Logo

Capital on Tap

Security Engineer

Posted 2 Days Ago
Be an Early Applicant
London, Greater London, England
Mid level
London, Greater London, England
Mid level
The Security Engineer will oversee security monitoring, incident management, and enhancement of alerting capabilities. Responsibilities include managing SIEM, reducing false positives, and adhering to security playbooks during incidents. The role requires experience with the Microsoft security stack and cloud security, along with effective communication and problem-solving skills.
The summary above was generated by AI

We’re Capital on Tap 👋
💳 Capital on Tap was founded with the mission to help small business owners and make their lives easier. Today, we provide an all-in-one business credit card & spend management platform that helps business owners save time and money. Capital on Tap proudly serves over 200,000 businesses across the world and our goal is to help 1 million small businesses by 2030.

Why Join Us?
We empower you to be innovative and solve complex problems. Take ownership, make an impact, and thrive in our scaling and agile environment.

🏡🏢This is a Hybrid role, the Security team work from our London (Shoreditch) Offices 1-2 days per week.

The IT Security Team at Capital on Tap

The Security and Data Protection team make up 6 (after this position is filled) well experienced colleagues, who all work together on their common goal of building and maintaining a modern cyber security function, continuously evaluating and improving on the current posture. Current key projects include improving our SOC capabilities, modernizing our Vulnerability Management programme, and introducing an Application Security function to Capital on Tap.

What You’ll Be Doing
As Security Engineer, you will play a vital role in ensuring our security monitoring and alerting capabilities are functioning effectively.

Responsibilities include management of the SIEM and SOC, identifying and implementing new log sources and use cases, reducing false positive rates and noise of existing alerts, building out and following security playbooks on real-time incidents. 

  • Experience with the Microsoft security stack
  • Ability to manage and respond to security incidents effectively
  • Communication and presentation skills, tailored to the correct audiences 
  • A strong understanding of securing cloud technologies
  • Continual learner, staying updated on emerging threats, technologies and trends
  • Loves to solve problems, capable of making decisions under pressure
  • Understanding of ISO27001/NIST/SOC2 frameworks

We’re Looking For 🔎
This position is ideal for a skilled SOC Analyst or Security Incident Responder interested in transitioning into a Security Engineering function and broadening their skillset. 

Required skills:

  • Experience with the Microsoft security stack, with specific focus on the following technologies: Defender for Endpoint, Defender for Identity, Defender for Cloud, Sentinel, Entra, Azure Policy, 
  • Experience working within the Security Incident Response Lifecycle,Create and review plans and playbooks
  • Reviewing and ingesting new log sources into a SIEM
  • Working alongside a SOC to ensure alerts are managed effectively
  • Responding to security alerts and incidents
  • Carrying out post mortems and implementing lessons learned
  • Experience working with and securing cloud native technologies
  • Experience designing, building and maintaining security tooling
  • Experience with ‘defence in depth’ and ‘zero trust’ methodologies to cyber security
  • An understanding of running vulnerability management tools and contextualising the results

Nice to have skills:

  • An interest in feeding into the Cyber Security Strategy
  • An understanding of Cybersecurity frameworks and compliance
  • Understanding of network security technologies and protocols
  • Ability to work collaboratively and independently depending on the current project

Diversity & Inclusion 🌈
We welcome, consider and encourage applications from anyone who shares our commitment to inclusivity. Join us in creating a space where authenticity thrives, and everyone can do their best work.

Great Work Deserves Great Perks
We try not to take ourselves too seriously (all the time) so we make sure our office is decked out with a pool table, arcade machine, beer tap, and a couple of office dogs thrown in for good measure. Check out our benefits:

🏥 Private Healthcare including dental and opticians services through Vitality
✈️ Worldwide travel insurance through Vitality
🎁 Anniversary Rewards (£250, £500, £750, 4-week fully paid sabbatical)
👛 Salary Sacrifice Pension Scheme up to 7% match
🏖️ 28 days holiday (plus bank holidays)
📖 Annual Learning and Wellbeing Budget
👪 Enhanced Parental Leave
🚲 Cycle to Work Scheme
🚂 Season Ticket Loan
💬 6 free therapy sessions per year
🐶 Dog Friendly Offices
🍫 Free drinks and snacks in our offices

Check out more of our benefits, values and mission here.

Interview Process 🤝
🤝First stage: 30 minute intro and values call with Talent Partner (Video call)
🤝Second stage: 60 minute CV overview and technical discussion with Team Manager (Video call)
🤝Final stage: 45 minute technical discussion and team fit check with Head of Department (In person)

Other Info

👍Check out our ‘Top Tips’ for interviewing.
✔️Keep updated on new job opportunities by following us on Linkedin.
📧Email [email protected] if you have any questions.

Excited to work here? Apply!
If you’d like to progress your career within our fast growing, profitable fintech then click apply and we will aim to get back to you within 3 working days (during busy periods this could take up to 5 working days.)

Top Skills

Azure
Defender
Microsoft

Capital on Tap London, England Office

7th Floor, The Tea Bldg, 56 Shoreditch High St, London, United Kingdom, E1 6JJ

Similar Jobs

Be an Early Applicant
2 Days Ago
London, Greater London, England, GBR
2,800 Employees
Junior
2,800 Employees
Junior
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
The Security Engineer II will enhance Samsara’s enterprise security program by building and managing security infrastructure and collaborating with engineers across the team. This role involves overseeing security toolsets, documenting processes, mentoring junior staff, and driving initiatives that safeguard enterprise environments from threats.
Be an Early Applicant
2 Days Ago
Bournemouth, Dorset, England, GBR
Hybrid
289,097 Employees
Senior level
289,097 Employees
Senior level
Financial Services
As a Lead Security Engineer, you will create and implement security solutions, develop high-quality production code, and utilize automation for deploying security software in a corporate environment, all while enhancing team culture.
Be an Early Applicant
2 Days Ago
London, Greater London, England, GBR
Hybrid
55,000 Employees
Senior level
55,000 Employees
Senior level
Fintech • Machine Learning • Payments • Software • Financial Services
As a Senior Cyber Security Engineer at Capital One, you will focus on the Configuration Compliance program, optimizing and maintaining security standards across cloud and on-premise assets. Your role includes automating processes, conducting security assessments, and collaborating with international teams to protect customer data.

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account