Roku Logo

Roku

Senior Security Operations Engineer

Reposted 4 Days Ago
Be an Early Applicant
In-Office
Manchester, Greater Manchester, England
Senior level
In-Office
Manchester, Greater Manchester, England
Senior level
The Senior Security Engineer will design, implement, and manage Roku's security systems and controls, handle incident responses, and mentor junior staff.
The summary above was generated by AI
Teamwork makes the stream work.
Roku is changing how the world watches TV

Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.

From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.


About The Team

The Roku trust engineering team is a close knit group of professionals with a passion for information security.Our mission is to protect our customers, partners, devices, services, infrastructure, and data. We work collaboratively, sharing insights and expertise to stay ahead of the curve. Join us, and you’ll be part of a dynamic team that thrives on challenges and celebrates victories together.


About The Role

As a senior security engineer in the Trust engineering team, you will be involved in supporting the design, implementation and management of Roku’s end to end security systems and controls impacting a global user base.

Key responsibilities will include the development of security controls, the management and maintenance of SIEM/SOAR tooling and threat intelligence platforms, technical incident response, vulnerability management, risk assessment and the mentoring of more junior staff.

You will collaborate with teams both within Trust engineering and the wider organisation in order to support, develop and influence strong security practices and postures across the organisation. 

 

What You Will Be Doing

 Trust Information Security Operations

  • Supporting the design and implementation of information security systems  and frameworks including threat prevention, detection and mitigation tools.
  • Manage, maintain and optimize security information and event management (SIEM) platforms and associated security infrastructure.
  • Detect and respond to information security incidents, support development and management of detection rules and reporting, leas technical aspects of incident investigation and response.
  • Vulnerability management, analysis, oversee the vulnerability management lifecycle and reporting, support prioritization and advise relevant stakeholders on vulnerability status and postures.
  • Security controls, identify risks in new and existing projects and environments and support the implementation of necessary security controls to meet business needs.
  • Design and implement security orchestration, automation and response (SOAR) playbooks and procedures in order to improve response times and ensure consistent approach to incidents.
  • Provide mentorship and support to junior engineers and analysts, act as escalation point for complex issues.
  • Support in testing and evaluation of security products and solutions.
  • Support the development and management of the security operations centre (SOC) function as it is built up and developed into the future.
  • Raise awareness of security policies and best practices across the organisation. And continue to contribute to ongoing development of best practices, procedures and security training across the organisation.

We Are Excited If You Have
  • Deep understanding of SIEM, EDR, cloud security services (e.g., AWS GuardDuty), and various security technologies. 
  • Significant experience in automation and development of automated playbooks and associated processes in security orchestration, automation and response (SOAR) environments. The creation of incident response plans and leading incident response efforts when required.
  • Threat intelligence, knowledge of  tactics, techniques, and procedures (TTPs) utilised by threat actors and how to generate and deploy mitigation strategies. 
  • Experience in the administration and management of identity and access management solutions (ex AD, EntraID, Okta etc)
  • Vulnerability management, monitoring, reporting and engagement with necessary stakeholders to ensure timely remediation.
  • Can demonstrate strong understanding of network security principles and encryption technologies.
  • Demonstrate experience in scoping and co-ordination of penetration testing engagements and associated triage and mitigation dependent upon findings.
  • Experience of the secure software development lifecycle (S-SDLC) and security requirements.
  • Experience of security change management processes and procedures.
  • Demonstrate experience of risk assessment and advisory capabilities on both internal systems and products/solutions from third party vendors (SaaS, AI etc).
  • Experience in contributing to the development, implementation and management of security policies and procedures.
  • Strong knowledge of security frameworks and industry best practices – such as ISO 270001, NIST, PCI-DSS and others.
  • Strong analytical and problem solving capabilities.
  • Demonstrate experience of effective communication and collaborative skills to work across diverse cross-functional teams including development, IT, Legal, Governance and Risk etc.
  • Demonstrate experience in mentoring and the development of more junior staff members with and engineering an SOC environment.
#LI-AM3
Accommodations

Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to [email protected].

 Our Hybrid Work Approach

Roku fosters an inclusive and collaborative environment where teams work in the office Monday through Thursday. Fridays are flexible for remote work except for employees whose roles are required to be in the office five days a week or employees who are in offices with a five day in office policy.

 Benefits

Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.

 The Roku Culture

Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We're independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you'll be part of a company that's changing how the world watches TV. 

We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn't real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002. 

To learn more about Roku, our global footprint, and how we've grown, visit https://www.weareroku.com/factsheet.

By providing your information, you acknowledge that you want Roku to contact you about job roles, that you have read Roku's Applicant Privacy Notice, and understand that Roku will use your information as described in that notice. If you do not wish to receive any communications from Roku regarding this role or similar roles in the future, you may unsubscribe here at any time.

Top Skills

AWS
Edr
Encryption Technologies
Identity And Access Management
Security Frameworks
Security Policies
SIEM
Soar

Similar Jobs

4 Days Ago
In-Office
Cambridge, Cambridgeshire, England, GBR
Senior level
Senior level
News + Entertainment
As a Senior Security Engineer, you will design and implement security systems, manage SIEM/SOAR tools, handle incident response, and mentor junior staff.
Top Skills: Aws GuarddutyEdrEntraidIdentity And Access Management Solutions (AdOkta)SIEMSoar
5 Hours Ago
In-Office
London, Greater London, England, GBR
Mid level
Mid level
Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
The Escrow Business Compliance Analyst manages client onboarding for escrow deals, ensures compliance with KYC regulations, and oversees transaction setup and documentation.
7 Hours Ago
Hybrid
London, Greater London, England, GBR
Mid level
Mid level
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
The role involves developing microservices primarily in Golang, maintaining code quality, deploying applications, and collaborating with team members in a hybrid work environment.
Top Skills: Ci/CdGoHelmK8SPythonSQL

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account