Back to jobs
New

Senior Security Engineer - Detection & Response - EU/UK

Remote, UK

We are seeking a UK-based Staff Security Engineer to serve as a technical leader within our Security Operations and Response Team.

As a senior technical responder, you will lead our incident response program, proactively monitor Marqeta's environment for cyber threats, and serve as incident commander during security events of all severity levels. You will establish response methodologies aligned with the NIST Incident Response Lifecycle, maintain the cybersecurity incident response plan, and drive continuous improvement of our security operations.

This position requires extensive expertise in incident response, digital forensics, threat hunting, and security monitoring technologies. You will provide technical leadership across the organization, mentor team members, and participate in 24x7 on-call rotations.

The role reports to the Manager of Security Operations and Response.

This role can be performed remotely anywhere in the UK, or from our London, UK office. We'd love for you to join us!

The Impact You’ll Have

  • Proactively monitor Marqeta’s environment for cyber threat activity and manage day-to-day security alerts through timely analysis, triage, and appropriate response actions
  • Serve as incident commander during security events, directing investigation strategies and coordinating cross-functional response efforts
  • Execute incident response activities aligned with the NIST Incident Response Lifecycle to detect, contain, eradicate, recover, and learn from cybersecurity incidents
  • Contribute to the maintenance and improvement of the Cybersecurity Incident Response Plan (CIRP), playbooks, runbooks, and standard operating procedures to ensure consistent and effective response operations
  • Participate in 24x7x365 on-call rotations, providing skilled guidance during security incidents and contributing to thorough post-incident reviews
  • Research threat intelligence sources and contribute to hypothesis-driven threat hunting initiatives to uncover threats in corporate and production environments
  • Work closely with Security Engineering to tune security solutions, enhance detection capabilities, and leverage business knowledge to improve security monitoring
  • Design, develop, and maintain detection logic using a detections-as-code approach, collaborating with Security Solution Engineering to deploy detections through CI/CD pipelines into our SIEM and EDR platforms
  • Contribute to detection coverage mapped to MITRE ATT&CK framework, identifying gaps in visibility and supporting detection development prioritization based on threat intelligence and business risk
  • Coordinate with HR, law enforcement, response retainers, and cyber insurers as required, including support on cyber-crime financial fraud use cases
  • Support the development of less-experienced security team members through knowledge sharing, pair investigations, and leading by example
  • Partner with Fraud, Compliance, and Risk teams on security events involving payment systems, cardholder data, or regulatory reporting obligations under PCI DSS and related frameworks

Who You Are

  • 5+ years of hands-on experience in security operations with strong expertise in incident response, digital forensics, and threat hunting
  • Experience serving as an incident commander or leading incident response workstreams, with the ability to make sound decisions under pressure
  • Strong knowledge of the NIST Incident Response Lifecycle and experience contributing to incident response documentation and procedures
  • Proficiency with security monitoring and forensic tools including EDR, SIEM, and SOAR systems
  • Experience developing detections-as-code, including familiarity with version control, CI/CD pipelines, and detection testing frameworks
  • Working knowledge of MITRE ATT&CK and experience using it to assess detection coverage and map threat actor TTPs
  • Experience contributing to post-incident reviews and implementing security improvements based on lessons learned
  • Solid understanding of threat actor TTPs and ability to apply threat intelligence to enhance detection and response capabilities
  • Experience tuning security solutions and developing automation workflows to improve monitoring effectiveness and response efficiency
  • Working knowledge of AWS cloud services and securing cloud environments
  • Ability to effectively communicate with technical and non-technical stakeholders during security incidents and investigations
  • Experience in payment processing, fintech, or other highly regulated environments; familiarity with PCI DSS incident handling requirements a plus
  • Proven ability to work independently while demonstrating sound judgment about when to engage team members or escalate issues
  • Willingness to mentor and support the growth of junior security professionals in incident response techniques

Recruiter:

  • Louise Devlin

Typical Process

  • Application submission
  • Recruiter phone or video call
  • Hiring manager video call
  • Virtual "Onsite" consisting of 4-5, 45 min interviews
  • Offer!

Compensation & Benefits

  • Premium Private Medical and Dental coverage
  • Generous time off program with additional “Floating Holiday days”
  • Retirement savings program with company contribution
  • Equity in a publicly-traded company and an Employee Stock Purchase Program
  • Monthly stipend to support our remote work model
  • Annual development stipend to support our people's growth and development
  • Family-forming benefits and up to 20 weeks of Parental Leave
  • Wellbeing programs i.e. Modern Health, HealthKick and much more…

About Marqeta

Marqeta is on a mission to change the way money moves. We’re one of the earliest enablers of embedded finance, a market opportunity sized up in the trillions. Our card issuing platform provides unprecedented flexibility and control for companies to issue cards, authorize transactions, and manage payment operations in real time. Marqeta is powering the most well known brands in the new economy (Block, Cash App, Affirm, Instacart, Doordash, Uber, Walmart, etc). You don’t need to be a Payments expert to join the Marqeta Team, let us help you with that.  This is the opportunity of a lifetime to work with innovators around the world and unlock equitable financial access for all.


Marqeta’s Values

– Solve for the Customer: With a deep understanding of our customers' business and empathy for their needs, we deliver products and services that drive their success. Earning and keeping their trust guides everything we do.

– Do What's Right: Knowing businesses and livelihoods depend on us, we pursue solutions that disrupt responsibly and deliver high-quality results that our customers count on. We own our work from start to finish.

– Simplify and Innovate: We approach challenges with curiosity and take smart risks. Innovation comes from finding better, simpler ways to achieve extraordinary outcomes.

– Win as a Team: We succeed together by embracing diverse perspectives and pushing each other to raise the bar. We lead with humility and set aside hierarchy to work as a team.

– Make it Count: We drive forward with focus and agility. With a sense of urgency and purpose, we get the job done, and done right.


Equal Employment Opportunity, Accommodations and Privacy 

Marqeta is an equal opportunity employer committed to an inclusive workplace that fosters belonging. We do not discriminate based on race, color, religion, sex (including pregnancy, lactation, childbirth, or related medical conditions), veteran status or uniformed service member status, age, national origin or ancestry, citizenship or immigration status, physical or mental disability, gender identity, gender expression, sexual orientation, genetic information (including testing or characteristics) or any other characteristic protected by applicable law. We also consider qualified applicants with criminal histories, consistent with legal requirements. 

Marqeta endeavors to make reasonable accommodations for applicants with disabilities. If you are an individual with a disability and require a reasonable accommodation to submit this application, complete any pre-employment testing, or otherwise participate in the employee selection process, please submit this form with your specific accommodation request.

Personal data that is provided as part of the application and recruitment process is processed in accordance with the Applicant Privacy Notice. Additional information for California residents can be found here.  

 

Create a Job Alert

Interested in building your career at Marqeta? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
Select...
Select...
Select...
Select...
Select...

if applicable

if applicable


MQ - EEOC Voluntary Questions

At Marqeta, we strive to live our value of “Win as a Team,” where we seek various opinions and experiences as we build opportunities around equity, inclusion, and belonging. We ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. As set forth in Marqeta’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Any information that you do provide will be anonymized and reviewed, strictly in aggregate, to find ways to improve our recruiting processes. To learn more about our job applicant privacy policy, please visit our website.

We’re also providing additional information and resources as you complete the form:

  • Race & Ethnicity Definitions
  • Veteran Status: If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. 
    • A "disabled veteran"
    • A "recently separated veteran" 
    • An "active duty wartime or campaign badge veteran" 
    • An "Armed forces service medal veteran"
  • Disability Status: You are considered to have a disability if you have a physical or mental impairment or medical condition that substantially limits a major life activity, or if you have a history or record of such an impairment or medical condition.

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.

Select...
Select...
Select...
Select...
Select...
Select...
Select...