Hiring.Camp

Application Security Engineer

Umusic

·

Yesterday

Location
GBR-4PS, United Kingdom
Type
Full-time
Department
Engineering
Experience
1+ years
Source
Workday

Description

Music is Universal
 
It’s the passionate and dedicated team at Universal Music who help make us the world’s leading music company. From A&R to finance, legal to digital, sales to marketing, Universal Music is the place to grow and develop your career within a truly commercial and innovative business that leads in everything it does.

Everyone is welcome to apply for our roles, and we are determined to ensure that no applicant or employee receives less favourable treatment because of gender, race, disability, sexual orientation, religion, belief, age, marital status, background, pregnancy, or caring responsibilities. We also recognise the importance of diversity of thought within our teams and are fully committed to embracing the talents of people with autism, dyslexia, ADHD, and other forms of neurocognitive variation.

We will always seek to make appropriate adjustments to recruitment, workplaces, and work processes to be fully inclusive to people with different needs and working styles. If you need us to make any reasonable adjustments for you from application onwards, including alternatives to the online form or to disclose a neurocognitive condition, please email [email protected].

Job Summary:

We are UMG, the Universal Music Group. We are the world’s leading music company. In everything we do, we are committed to artistry, innovation and entrepreneurship. We own and operate a broad array of businesses engaged in recorded music, music publishing, merchandising, and audiovisual content in more than 60 countries. We identify and develop recording artists and songwriters, and we produce, distribute and promote the most critically acclaimed and commercially successful music to delight and entertain fans around the world.

We are currently seeking a highly skilled vulnerability engineer to join our Vulnerability Management program. They will drive resolution of all identified IT vulnerabilities in a global enterprise to ensure the smooth and efficient ongoing operation of the UMG Global infrastructure. A high level of diverse technical skills for troubleshooting and problem analysis is required, along with the ability to clearly communicate the results of problem analysis to business stakeholders, IT support teams, and network providers to resolve operational issues quickly and effectively. This position requires established and proven experience in a global environment. In addition to having strong technical skills, you must be comfortable in effectively communicating with business end users, technical IT teams, business partners, network providers, and business process outsourced vendors, all while being sensitive to a wide diversity of cultural and technical backgrounds in a global business environment.

Job Functions:

  • Demonstrate ability to anticipate security issues, identify emerging risks, and take initiative in vulnerability remediation without constant supervision. A track record of proactively addressing vulnerabilities and improving security processes is essential.

  • Prioritize and classify vulnerabilities based on risk impact, system criticality, and business context.

  • Drive resolution of identified vulnerabilities within 60 days of identification.

  • Administer and maintain the Veritas eDiscovery platform, ensuring its availability, security and proper configuration.

  • Administer and maintain Cortex XDR for endpoint detection and response.

  • Ensure compliance with data retention policies and assist legal and compliance teams with data retrieval and analysis requests.

  • Work with internal customers, teammates and 3rd party providers to ensure operational security of the cloud and server infrastructure.

  • Maintain high quality process and procedure documentation.

  • Maintain & enhance knowledge of key technologies and risks.

  • Communicate risk and remediation requirements clearly to both technical and non-technical stakeholders, including leadership and external auditors.

  • Automate the vulnerability reporting and remediation processes to improve efficiency and reduce manual intervention.

  • Participate in incident response activities related to vulnerability exploitation and provide remediation guidance.

  • Participate in on-call rotation to respond to critical security alerts and events. Work out of standard business hours will occasionally be required.

Job Requirements:

  • 3+ years of hands-on experience in vulnerability management, remediation, or related cybersecurity roles.

  • 1-2 years of experience administering and maintaining Veritas eDiscovery platforms, including troubleshooting, upgrades and ensuring compliance with data retention requirements.

  • Experience with common vulnerability assessment tools (e.g., Nessus, Qualys, Tenable, OpenVAS).

  • Knowledge of patch management processes and tools.

  • Must possess strong people skills and the ability to be both diplomatic and firm.

  • Experience in highly available 24x7x365 production environment.

  • Fluency in operating system administration and tools including: Microsoft, Mac OS X, Linux, Python, Powershell, etc.

  • Proven experience with Amazon AWS and Microsoft Azure (Google Compute a plus) in an enterprise setting.

  • Manage time well in a high-interrupt operational environment. Handle the details of several technical tasks simultaneously.

  • Familiarity with VMware Tanzu CloudHealth.

  • Appropriate professional certifications.

Education:

  • Bachelor’s Degree in Computer Science or Engineering or closely related field or comparable education and experience.

  • Certifications such as CISSP, CISA, Security+

  • ITIL Foundation Certification strongly desired.

Just So You Know…

The company presents this job description as a guide to the major areas and duties for which the jobholder is accountable. However, the business operates in an environment that demands change and the jobholder's specific responsibilities and activities will vary and develop. Therefore, the job description should be seen as indicative and not as a permanent, definitive, and exhaustive statement.


Job Category:

Universal Music Group

Skills

PythonAWSAzureLinuxVMwareCybersecurityComplianceMerchandisingITILCISSP

Similar Jobs

30

Application Security Engineer

Canopytax · South Jordan Utah +1 · Remote

Yesterday

Application Security Engineer

AssetMark is · Atlanta, United States of America · Hybrid

2 days ago

Application Security Engineer

USA - Current Open Positions · USA-TN NVL 1234 Martin St, United States of America

1 week ago

Application Security Engineer

INTAPP · Portugal Remote · Remote

1 week ago

Application Security Engineer

Heartflowinc · San Francisco, California · Hybrid

1 week ago

Application Security Engineer

Zocdoc · USA Remote +1 · Remote

1 week ago

Application Security Engineer

Leidos · 5612 Ashburn VA, United States of America

1 week ago

Engineer, Application Security

Cboe is always looking for · Chicago HQ OPO, United States of America · Hybrid

1 week ago

Application Security Engineer

Interact Software · Manila, PH

1 week ago

Application Security Engineer

MicroStrategy · Tysons Corner, VIRGINIA, United States · Onsite

1 week ago

Application Security Engineer

Leidos · 5612 Ashburn VA, United States of America

1 week ago

Application Security Engineer

Figure · Remote · Remote

1 week ago

Application Security Engineer

MicroStrategy · Tysons Corner, VIRGINIA, United States · Onsite

2 weeks ago

Application Security Engineer

Juara It Solutions · Chennai

2 weeks ago

Application Security Engineer

Alaan · Bengaluru, India

3 weeks ago

Application Security Engineer

Cdk · India - Hyderabad

3 weeks ago

Application Security Engineer

PandaDoc · Remote (Europe) · Remote

3 weeks ago

Application Security Engineer

Booz Allen Hamilton · USA, MD, Fort Meade (6910 Cooper Ave), United States of America

3 weeks ago

Application Security Engineer

Regions · Hoover, AL - Riverchase Operations Center (Birmingham, AL), United States of America +3

3 weeks ago

Application Security Engineer

Intermedia Intelligent Communications · Portugal · Remote

3 weeks ago

Application Security Engineer

Cisco · USA-RESEARCH TRIANGLE PARK, United States of America +1 · Hybrid

3 weeks ago

Application Security Engineer

Oneleet · US · Remote

3 weeks ago

Application Security Engineer

Jobskeyconsultancy · Hyderabad · Hybrid, Onsite

4 weeks ago

Application Security Engineer

Wrike · Estonia - Remote · Remote

4 weeks ago

Application Security Engineer

Wrike · Nicosia · Remote

4 weeks ago

Application Security Engineer

Rockstargames · Leeds, England, United Kingdom · Onsite

4 weeks ago

Application Security Engineer

Intercom · London, England +1

4 weeks ago

Application Security Engineer

MicroStrategy · Tysons Corner, VIRGINIA, United States · Onsite

1 month ago

Application Security Engineer

Intercom · Dublin, Ireland

1 month ago

Application Security Engineer

Bugcrowd · Remote - Brazil +1 · Remote

1 month ago
Application Security Engineer at Umusic | Hiring.Camp