Carbon3.ai Logo

Carbon3.ai

Security Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United Kingdom
Senior level
Remote
Hiring Remotely in United Kingdom
Senior level
Design, implement, and improve security controls across Kubernetes, cloud-native, and datacentre infrastructure. Secure networks and firewalls, integrate DevSecOps controls into CI/CD, lead vulnerability management, build detection/response capabilities, automate security workflows, and support incident response and threat hunting for GPU-accelerated and AI/ML platforms.
The summary above was generated by AI

Era4 develops, owns and operates AI infrastructure across the UK, powered by renewable energy. Converting legacy industrial and energy sites into modern data-centre facilities, Era4 is combining brownfield regeneration opportunities with cleaner, efficient, scalable compute capacity for healthcare, research, finance, enterprise, and public-sector organisations


Must have the ability to achieve Security Clearance. (Won't be an immediate request but within the next 12 months). 


Role Summary:

We are seeking a Security Engineer to design, implement, and continuously improve security controls across our next-generation AI infrastructure and datacentre operations. This role focuses on protecting Kubernetes-based and cloud-native environments, securing our datacentre networking and infrastructure stack, strengthening security posture, identifying and mitigating risks, and enabling secure software delivery practices.

 

You will work closely with engineering, platform, and operations teams to integrate security into Era4's proprietary cloud infrastructure, datacentre networks, CI/CD pipelines, containerized workloads, GPU-accelerated compute, and AI/ML platforms. The successful candidate will combine hands-on technical expertise with a proactive approach to threat detection, vulnerability management, and security automation across our brownfield-to-modern bare metal and cloud infrastructure environments.

 

Key Responsibilities:

 Cloud & Infrastructure Security:

  • Design, implement, and maintain security standard and controls for Kubernetes, Era4's proprietary cloud infrastructure.
  • Secure datacenter perimeter and internal networks using Palo Alto, OpnSense, and Nokia networking platforms.
  • Review infrastructure architectures and perform security assessments to identify risks and recommend mitigations.

 

Application & DevSecOps Security:

  • Integrate security controls into CI/CD pipelines, including SAST, DAST, dependency scanning, container image scanning, and secrets detection.
  • Partner with development teams to implement secure coding practices and remediate security findings.
  • Conduct threat modelling and security reviews for new applications, services, and infrastructure changes.

 

Vulnerability & Risk Management:

  • Lead vulnerability identification, prioritization, remediation, and reporting activities across infrastructure and applications.
  • Develop processes for continuous security assessment and compliance monitoring.
  • Track security metrics and drive remediation efforts with engineering teams.

 

Detection & Response:

  • Develop and maintain security monitoring, alerting, detection capabilities and  incident response playbooks.
  • Investigate security incidents, perform root cause analysis, and coordinate remediation activities.
  • Support threat hunting and proactive identification of suspicious activity across cloud and Kubernetes environments.

 

Security Automation:

  • Build automation to improve security monitoring, compliance validation, vulnerability management, and incident response workflows.
  • Leverage Infrastructure as Code and policy-as-code frameworks to enforce security standards at scale.
  • Integrate security tooling into existing operational and engineering workflows.

 

Required Qualifications & Experience:

  • In depth experience in Security Engineering, Cloud Security, DevSecOps, Infrastructure Security, or Datacentre Security.
  • Expert knowledge of cloud security principles and experience securing Kubernetes environment , container security, workload protection, and cloud-native security tooling.
  • Hands-on experience with datacentre network security, firewalls, and network segmentation (Palo Alto firewalls, OpnSense, Nokia networking, or similar).
  • Familiarity with CI/CD security controls, secure software development practices, and supply chain security.
  • Experience with SIEM, logging, monitoring, and security analytics platforms.
  • Hands-on experience with vulnerability management platforms and security assessment methodologies.
  • Scripting and automation skills using Python, Bash, or similar languages.
  • Experience implementing security controls using Infrastructure as Code (Terraform, Ansible, or similar)

 

Nice to Have:

  • Experience securing AI/ML or GPU-based infrastructure.
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, NIST CSF, CIS Benchmarks, or PCI DSS.
  • Experience with threat modelling, penetration testing, or red team engagements.
  • Security certifications such as CISSP, GSEC, GCIH, GCIA, CCSK, CCSP, or relevant cloud security certifications.


Why Join Era4:

You’ll be joining a mission-driven start-up building critical national infrastructure, where operational excellence directly enables growth. This role offers high visibility with leadership, real autonomy, and the chance to shape how a next-generation company operates at scale.


Diversity & Inclusion

Era4 is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. 

Similar Jobs

2 Days Ago
Easy Apply
In-Office or Remote
United Kingdom
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Design, maintain, and extend abuse detection and prevention systems for GitLab's SaaS platform. Serve as a core maintainer of a Ruby on Rails monolith, build anomaly detection and agentic AI mitigations, automate abuse response, collaborate with peer engineering and security teams, and produce runbooks and operational documentation.
Top Skills: Agentic AiAWSGitlabGoogle Cloud Platform (Gcp)Large Language Models (Llms)RubyRuby On RailsSaaS
Yesterday
In-Office or Remote
United Kingdom
Junior
Junior
Retail • Sports
Support threat intelligence, incident analysis/response, penetration test coordination, vulnerability scanning and remediation tracking, security tool administration, dashboard maintenance, and adherence to security policies while learning and developing cybersecurity skills.
Top Skills: AzureBurp SuiteDhcpDnsGCPLinuxMetasploitNmapOwasp Top 10PowershellPythonRoutingSIEMSwitchingTcp/IpVulnerability ScannersWindowsWireshark
Yesterday
Remote
United Kingdom
Mid level
Mid level
Natural Language Processing • Software
Design, automate, and maintain security controls, detection, and remediation systems; evaluate security technologies; perform risk assessments and threat models; partner with engineering for secure development; lead incident response and support compliance (SOC 2, ISO 27001); manage bug bounty and vulnerability disclosure programs.
Top Skills: AWSAzureBashCrowdstrikeCtiEdrGCPGoHashicorp VaultKubernetesLog ManagementObsidianPythonSastSIEMSoar

What you need to know about the Belfast Tech Scene

If asked to name the birthplace of the RMS Titanic, you might not say Belfast. Similarly, if asked to name Europe's leading destination for foreign direct investment in new software development, Belfast might not come to mind. Yet, both are true. The city has emerged as a tech powerhouse, recently ranked among the best in the U.K. for tech careers — especially for software developers. It also leads the U.K. with the highest percentage of software development jobs advertised.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account