LexisNexis Risk Solutions is seeking a Senior Security Engineer I to lead security engineering for an EU project at our Farringdon site. You will combine ISO 27001 control work with expertise in Endpoint Detection and Response, vulnerability and compliance tools, and security monitoring via Qualys and SIEM platforms. Responsibilities include defining security requirements for new development, supporting the business, and validating production changes for ISO certifications. The ideal candidate has strong communication, solid networking and security knowledge, and holds relevant security certifications. To apply, tailor your CV to quantify improvements, show cross functional impact, and highlight EU project experience; emphasize onsite capability and clear metrics.
Are you interested in leading security engineering for an EU project?
Do you have hands-on ISO-27001 and security tool experience?
About the Business:
LexisNexis Risk Solutions is the essential partner in the assessment of risk. Within our Insurance vertical, we provide customers with solutions and decision tools that combine public and industry specific content with advanced technology and analytics to assist them in evaluating and predicting risk and enhancing operational efficiency. Our insurance risk solutions help drive better data-driven decisions across the insurance policy lifecycle all while reducing risk. You can learn more about LexisNexis Risk at the link below. https://risk.lexisnexis.com/insurance</a>
About our Team:
We are expanding our Information Security team presence into the European Union. This is an opportunity to become a key member of our team, supporting our commercial business lines. With a large part of the Intellectual Property (IP) technology team residing in Farringdon, this will strengthen the collaboration between Information Security and Technology, especially as IP focuses on modernization of their AI products with new features and functions to enrich the users' experience.
About the Role:
The Senior Security Engineer will conduct research, design, and engineering tasks for a dedicated project in the European Union. This role requires the ability to identify, investigate, and resolve ISO-27001 security controls, along with hands-on expertise in Endpoint Detection & Response and Vulnerability and Compliance Management tools.
Responsibilities:
Monitor and Respond to Security Tools:
Review and analyse outputs from Qualys, or equivalent, vulnerability and compliance scans.
Actively monitor and respond to alerts from our SIEM (Security Information and Event Management) platform.
Monitor and react to activity from Antivirus and EDR (Endpoint Detection and Response) tools.
Security Requirements & Support:
Define and document security requirements for new development efforts.
Provide support to Commercial team members to ensure security is considered in product planning and delivery.
Change Validation:
Perform production security validation of infrastructure, application, and network changes to ensure they meet internal policies and standards.
Compliance & Auditing:
Extract and compile audit evidence for internal Security Plans and support external ISO audits and certifications.
Collaboration & Other Duties:
Work cross-functionally with IT, DevOps, and business teams to drive security improvements.
Perform other duties as required.
Requirements:
Experience in information security or security operations, typically demonstrated over several years.
Practical experience with security tools, including Qualys, SIEM platforms (such as Splunk or Sentinel), and antivirus/endpoint detection and response (AV/EDR) solutions.
Solid understanding of network security, infrastructure hardening, and secure application development principles.
Familiarity with compliance frameworks, such as ISO 27001.
Ability to communicate security risks and recommendations clearly to both technical and non-technical audiences, in writing and verbally.
Strong analytical and problem-solving skills.
Preferred Qualifications
Security certifications (e.g., Security+, CEH, GSEC, CISSP) or active pursuit of such credentials.
Experience supporting audits and preparing evidence for compliance and certification processes.
Experience collaborating with cross-functional development or product teams.
Working for you:
We know that your wellbeing and happiness are key to a long and successful career. These are some of the benefits we are delighted to offer:
● Health Benefits: Comprehensive, multi-carrier program for medical, dental and vision benefits
● Retirement Benefits: 401(k) with match and an Employee Share Purchase Plan
● Wellbeing: Wellness platform with incentives, Headspace app subscription, Employee Assistance and Time-off Programs
● Short-and-Long Term Disability, Life and Accidental Death Insurance, Critical Illness, and Hospital Indemnity
● Family Benefits, including bonding and family care leaves, adoption and surrogacy benefits
● Health Savings, Health Care, Dependent Care and Commuter Spending Accounts
● In addition to annual Paid Time Off, we offer up to two days of paid leave each to participate in Employee Resource Groups and to volunteer with your charity of choice.
We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.
Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here.
Please read our Candidate Privacy Policy.
We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.
USA Job Seekers: