- Location
- London · London, England, United Kingdom
- Department
- Engineering
- Seniority
- Senior
- Source
- Greenhouse
Description
About ICE Services
ICE Services is a music technology company built by rightsholders, for rightsholders. We simplify the complexities of the music royalty chain through an innovative suite of licensing, processing, and copyright services, enabling our customers to accurately and efficiently compensate songwriters and composers for the use of their works.
A joint venture between PRS, STIM, and GEMA, ICE Services is the result of a big vision for the industry that harnesses years of combined experience in the multi-territory music market. Serving over 330,000 rightsholders and leveraging a copyright database comprising 55 million musical works, ICE Services’ operations touch 250+ territories to distribute more than €1bn in royalties per year, with a total of over €5bn distributed to date.
We’re based in the UK, Germany, and Sweden.
About the Role
As we build out the IT Security function, we have determined the need for a resource with a specific remit of securing the cloud infrastructure used, both across the production and corporate space. This will encompass both the application hosting environment and the backend support services.
The role will involve aiding in building out the Cloud Security pillar, developing all the processes along with any technology required to make the role a key part of the security strategy.
Key Responsibilities:
- Engaging with key stakeholders to understand the current state of cloud security, develop the strategy of integration with all teams ensuring security is considered with all projects.
- Perform gap analysis and identify risks across all cloud environments, drive improvements, document remediation steps, and aid in the reduction of risk
- Design and build secure cloud environments. Working alongside the engineering function this role will assist the team in building an environment that meets the needs to host the applications in a secure manner.
- Assess technologies for use across all systems, identify new tools to evaluate for use, build requirement documentation, criteria for success and preform the proof of concept assessment.
- Configuring the corporate cloud functions and the security of AzureAD using policies and tools, this will include all corporate functions such as email, application connections, and stand alone servers.
- Performing audit and benchmarking across the cloud environments to ensure optimal level of security controls are implemented (such as vulnerability management) and to help drive future initiatives.
- Prepare and enforce standards and guidelines for cloud security, including standard builds, configurations, and automation processes, in particular the use of Terraform.
- Drive particular focus on access controls across the environments and data within the cloud infrastructure.
- Monitor solutions for critical security events and build investigation and incident response plans, including aiding the configuration and use of logging and SIEM tools.
- Offer consultancy as an SME to all business units in relation to technical projects.
Requirements and Qualifications:
- Experience in design, documentation, and configuration of secure solutions for AWS and Azure cloud environments.
- Experience in designing configuring tools and technology to work within or alongside cloud environments.]
- Experience in designing and configuring third party security technologies within a cloud environment (ie, firewalls, IDS/IPS).
- Experience in design, documentation and configuration of Identity and Access Management solutions.
- Experience in securing cloud container environments.
- Working knowledge of cloud security standards including NIST, CIS, and ISO.
- Performed risk analysis and documented all risks and mitigating controls within cloud environments.
- Understanding of threat models and their application to aid in securing cloud environments.
- Act as a role model, engage with the promotion of a culture of good conduct and contribution to maintaining such a culture.
- Proactivity, transparency and clear accountability for the determination and management of security and risks.
- Fast learner and critical thinker with excellent skills in problem solving and presentation.
- Teamwork with peers and management.
- Exceptional communication skills, both written and oral.
What we offer:
- Competitive local benefits based on your location
- We promote flexible working regarding time and/or place
- Both mental and physical health initiatives
- Corporate pension scheme
- Comprehensive training and development opportunities
- Industry insider events, team socials and company events
- Enhanced holiday allowance
We welcome candidates from all backgrounds, regardless of age, disability, gender, gender identity, gender expression, race, religion or belief, sexual orientation, socioeconomic background, and any other protected characteristic.
We are committed to making all stages of our recruitment process accessible to candidates with disabilities. Please speak to our recruitment team and we will work with you to make reasonable adjustments to ensure you can perform at your best throughout your application.