# Security Engineer

[Marex](https://gurify.com/jobs?q=Marex) · London, United Kingdom · Posted today

[Security](https://gurify.com/jobs/security)

[Apply on the original posting → (opens in a new tab)](https://marex.breezy.hr/p/c440218ba72501-security-engineer)

## Job description

Security Engineer
Company: Marex
Location: London, GB
Type: FULL_TIME

### About Marex

Marex Group plc (NASDAQ: MRX) is a diversified global financial services platform providing essential liquidity, market access and infrastructure services to clients across energy, commodities and financial markets. The group provides comprehensive breadth and depth of coverage across four core services: clearing, agency and execution, market making, and hedging and investment solutions. It has a leading franchise in many major metals, energy and agricultural products, with access to 60 exchanges. The group provides access to the world’s major commodity markets, covering a broad range of clients that include some of the largest commodity producers, consumers and traders, banks, hedge funds and asset managers. With more than 40 offices worldwide, the group has over 3,000 employees across Europe, Asia and the Americas.

### For more information visit https://www.marex.com/

### Vacancy Number: VN3168

### Department description

Marex has unique access across markets with significant share globally both on and off exchange. The depth of knowledge amongst its teams and divisions provides its customers with clear advantage, and its technology-led service provides access to all major exchanges, order-flow management via screen, voice and DMA, plus award-winning data, insights and analytics.

The Technology Department delivers differentiation, scalability and security for the business. Technology provides digital tools, software services and infrastructure globally to all business groups. Software development and support teams work in agile ‘streams’ aligned to specific business areas. Our other teams work enterprise-wide to provide critical services including our global service desk, network and system infrastructure, IT operations, security, enterprise architecture and design.

The Information Security team reports to the CISO and is responsible for protecting Marex data and assets, as well as providing security advice. The team is relatively small; therefore, its members have a chance to experience various areas of security.

### Role Summary

The Security Engineer will work within the Cyber Security team, reporting to the Cyber Security Manager, and will be responsible for engineering, administering, and continually improving security capabilities across the Marex Group, with a primary focus on Identity Protection, Privileged Access Management, and associated access control environments.

The role will support the secure management of privileged accounts, access workflows, credential rotation, platform onboarding, incident response, control monitoring, and operational governance relating to privileged access. In addition, the role will contribute to broader identity security capabilities, including secrets management, certificate and PKI-related controls, and the improvement of identity-related security processes.

Beyond its core identity and PAM responsibilities, the role will support wider cyber security engineering activities, including security platform operations, automation, tooling enhancements, threat detection improvements, and response to security incidents as business and security priorities evolve.

### Responsibilities

### Role specific:

- Engineer security products to be production ready.
- Configure security toolset and controls to identify anomalies, potential incidents, network intrusions, and malware events, etc., ensuring confidentiality, integrity, and availability of Marex’s critical systems
- Find gaps in architecture, define objective and areas of improvement, engineer products to fit the gaps for an effective Threat detection and response.
- Developing and documenting cyber security standards and procedures
- Collaborates with technology teams for incident handling, patching disciplines, and system hardening frameworks
- Collaborates with the Information Technology team on deployment, operation, and continual improvements of security solutions
- Automation of tasks and creation of analytical tools
- Keeping up to date with security news and trends
- Threat Intelligence and Hunting
- Responding and investigating security incidents and exceptions
- Providing relevant KPI and KRI metrics.

### All staff:

- Ensuring compliance with the company’s regulatory requirements under the FCA, NFA, AMF, AFM, MAS.
- Adhere to the operational risk framework for your role ensuring that all regulatory or company determined parameters are complied with.
- Role model for demonstrating highest level standards of integrity and conduct and reflecting Company Values.
- At all times complying with the FCA’s Code of Conduct
- To ensure that you are fully aware of and adhere to internal policies that relate to you, your role or any other activities for which you have any level of responsibility
- To report any breaches of policy to Compliance and/ or your supervisor as required
- To escalate risk events immediately
- To provide input to risk management processes, as required.

### Competencies, Skills, Experience & Qualifications:

### Skills and Experience:

### Essential:

- A minimum of 5 years’ experience in Information Security.
- Comprehensive knowledge of identity security and access control technologies, including Entra ID, Identity Protection, Privileged Access Management, Secrets Management, Key Management, PKI, and Certificate Management.
- Strong hands-on experience administering and supporting Privileged Access Management solution (tools such as CyberArk or equivalent), including account onboarding, safes, platforms, policies, credential rotation, session management, access workflows, operational troubleshooting, and control monitoring.
- Strong hands-on experience with Windows, Linux, cloud platforms, databases, directory services, and service accounts from an identity security perspective.
- Experience around Secrets & Key management tools such as Hashicorp vault or Conjour or equivalent.
- Strong experience around PKI management tools such as Venafi or Digicert or equivalent.
- Experience with Identity & privileged access governance, least privilege, break-glass processes, access reviews, privileged account lifecycle management, and audit evidence production.
- Experience producing operational metrics, control reporting, and audit evidence for identity - PAM, Secrets Management controls.
- Knowledge of security processes such as vulnerability management, penetration testing, incident response, and security control assurance.
- Knowledge of security standards and frameworks such as CIS and NIST.
- Experience supporting or improving security platforms, automation, tooling integrations, detection capabilities, or operational security processes.
- Excellent communication skills, with the ability to engage effectively with technical teams, control owners, auditors, and wider business stakeholders.

** Candidates with less than 5 years’ experience will still be considered

### Competencies:

- A collaborative team player, approachable, self-efficient and influences a positive work environment
- Demonstrates curiosity
- Resilient in a challenging, fast-paced environment
- Ability to take a high level of responsibility in a fast pace and high-volume environment
- Excels at building relationships, networking and influencing others
- Strategic collaborator with insight and agility, able to anticipate future challenges, ensuring operational effectiveness

### Conduct Rules, You must:

- Act with integrity
- Act with due skill, care and diligence
- Be open and cooperative with the FCA, the PRA and other regulators
- Pay due regard to the interests of customers and treat them fairly
- Observe proper standard of market conduct
- Act to deliver good outcomes for retail customers

### Company Values

Be collaborative - by working together across the organisation, we foster teamwork, can better respond to challenges and successfully deliver for our clients

Act with integrity - we pride ourselves on our honesty and high ethical standards. We apply these values when working with all our clients, colleagues and other stakeholders

Be adaptable and entrepreneurial - we embrace change as markets evolve to constantly increase our efficiency and create innovative solutions for our clients. We are interested in the world around us and inquisitive about understanding the challenges and opportunities our clients face.

Be respectful – how we treat each other, and our clients says everything about who we are. We always act respectfully and treat people fairly in everything we do.

Nurture talent – we aim to grow our own talent and make Marex the place ambitious, hardworking and talented people choose to build their career. This means giving and taking stretch opportunities, taking risks, and committing to career development and support – for ourselves, and our teams.

Marex is fully committed to being an inclusive employer and providing an inclusive and accessible recruitment process for all. We will provide reasonable adjustments to remove any disadvantage to you being considered for this role. We value the differences that a diverse workforce brings to the company. We welcome applications from candidates returning to the workforce. Also, Marex is committed to avoiding circumstances in which the appearance or possibility of conflicts of interest may exist within the hiring process.

If you would like to receive any information in a different way or would like us to do anything differently to help you, please include it in your application.

**Live in Marex’s hiring system.** Read from the company's own applicant tracking system, not reposted from a job board — so it's a real, open requisition rather than an ad that outlived the role.

We remove it as soon as it disappears at source.

## More jobs like this

- CO [Security Engineer](https://gurify.com/job/security-engineer-at-conduct-9df3f32ca234) Conduct · London, United Kingdom · last week
- IN [Senior Infrastructure and Cloud Security Engineer (m/f/d)](https://gurify.com/job/senior-infrastructure-and-cloud-security-engineer-m-f-d-at-a564d8d2798e) Internationalcopyrightenterpriseservices · London · 5 days ago
- CO [Security Engineer](https://gurify.com/job/security-engineer-at-conduct-354c5d006329) Conduct · London, United Kingdom · last week
- IN [Senior Infrastructure and Cloud Security Engineer (m/f/d)](https://gurify.com/job/senior-infrastructure-and-cloud-security-engineer-m-f-d-at-3f7722b49cef) Internationalcopyrightenterpriseservices · London · 5 days ago
- HA [Senior Security Engineer, Detection and Response](https://gurify.com/job/senior-security-engineer-detection-and-response-at-hackerone-45f09130ce13) Hackerone · London · 2 weeks ago
- CO [Senior Cloud Native Security Engineer](https://gurify.com/job/senior-cloud-native-security-engineer-at-controlplane-1a80f4fea92c) Controlplane · London · last week

```json
{"@context":"https://schema.org/","@type":"JobPosting","title":"Security Engineer","description":"\u003Cp\u003ESecurity Engineer\u003Cbr /\u003ECompany: Marex\u003Cbr /\u003ELocation: London, GB\u003Cbr /\u003EType: FULL_TIME\u003C/p\u003E\u003Ch3\u003EAbout Marex\u003C/h3\u003E\u003Cp\u003EMarex Group plc (NASDAQ: MRX) is a diversified global financial services platform providing essential liquidity, market access and infrastructure services to clients across energy, commodities and financial markets. The group provides comprehensive breadth and depth of coverage across four core services: clearing, agency and execution, market making, and hedging and investment solutions. It has a leading franchise in many major metals, energy and agricultural products, with access to 60 exchanges. The group provides access to the world\u2019s major commodity markets, covering a broad range of clients that include some of the largest commodity producers, consumers and traders, banks, hedge funds and asset managers. With more than 40 offices worldwide, the group has over 3,000 employees across Europe, Asia and the Americas.\u003C/p\u003E\u003Ch3\u003EFor more information visit https://www.marex.com/\u003C/h3\u003E\u003Ch3\u003EVacancy Number: VN3168\u003C/h3\u003E\u003Ch3\u003EDepartment description\u003C/h3\u003E\u003Cp\u003EMarex has unique access across markets with significant share globally both on and off exchange. The depth of knowledge amongst its teams and divisions provides its customers with clear advantage, and its technology-led service provides access to all major exchanges, order-flow management via screen, voice and DMA, plus award-winning data, insights and analytics.\u003C/p\u003E\u003Cp\u003EThe Technology Department delivers differentiation, scalability and security for the business. Technology provides digital tools, software services and infrastructure globally to all business groups. Software development and support teams work in agile \u2018streams\u2019 aligned to specific business areas. Our other teams work enterprise-wide to provide critical services including our global service desk, network and system infrastructure, IT operations, security, enterprise architecture and design.\u003C/p\u003E\u003Cp\u003EThe Information Security team reports to the CISO and is responsible for protecting Marex data and assets, as well as providing security advice. The team is relatively small; therefore, its members have a chance to experience various areas of security.\u003C/p\u003E\u003Ch3\u003ERole Summary\u003C/h3\u003E\u003Cp\u003EThe Security Engineer will work within the Cyber Security team, reporting to the Cyber Security Manager, and will be responsible for engineering, administering, and continually improving security capabilities across the Marex Group, with a primary focus on Identity Protection, Privileged Access Management, and associated access control environments.\u003C/p\u003E\u003Cp\u003EThe role will support the secure management of privileged accounts, access workflows, credential rotation, platform onboarding, incident response, control monitoring, and operational governance relating to privileged access. In addition, the role will contribute to broader identity security capabilities, including secrets management, certificate and PKI-related controls, and the improvement of identity-related security processes.\u003C/p\u003E\u003Cp\u003EBeyond its core identity and PAM responsibilities, the role will support wider cyber security engineering activities, including security platform operations, automation, tooling enhancements, threat detection improvements, and response to security incidents as business and security priorities evolve.\u003C/p\u003E\u003Ch3\u003EResponsibilities\u003C/h3\u003E\u003Ch3\u003ERole specific:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EEngineer security products to be production ready.\u003C/li\u003E\u003Cli\u003EConfigure security toolset and controls to identify anomalies, potential incidents, network intrusions, and malware events, etc., ensuring confidentiality, integrity, and availability of Marex\u2019s critical systems\u003C/li\u003E\u003Cli\u003EFind gaps in architecture, define objective and areas of improvement, engineer products to fit the gaps for an effective Threat detection and response.\u003C/li\u003E\u003Cli\u003EDeveloping and documenting cyber security standards and procedures\u003C/li\u003E\u003Cli\u003ECollaborates with technology teams for incident handling, patching disciplines, and system hardening frameworks\u003C/li\u003E\u003Cli\u003ECollaborates with the Information Technology team on deployment, operation, and continual improvements of security solutions\u003C/li\u003E\u003Cli\u003EAutomation of tasks and creation of analytical tools\u003C/li\u003E\u003Cli\u003EKeeping up to date with security news and trends\u003C/li\u003E\u003Cli\u003EThreat Intelligence and Hunting\u003C/li\u003E\u003Cli\u003EResponding and investigating security incidents and exceptions\u003C/li\u003E\u003Cli\u003EProviding relevant KPI and KRI metrics.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EAll staff:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EEnsuring compliance with the company\u2019s regulatory requirements under the FCA, NFA, AMF, AFM, MAS.\u003C/li\u003E\u003Cli\u003EAdhere to the operational risk framework for your role ensuring that all regulatory or company determined parameters are complied with.\u003C/li\u003E\u003Cli\u003ERole model for demonstrating highest level standards of integrity and conduct and reflecting Company Values.\u003C/li\u003E\u003Cli\u003EAt all times complying with the FCA\u2019s Code of Conduct\u003C/li\u003E\u003Cli\u003ETo ensure that you are fully aware of and adhere to internal policies that relate to you, your role or any other activities for which you have any level of responsibility\u003C/li\u003E\u003Cli\u003ETo report any breaches of policy to Compliance and/ or your supervisor as required\u003C/li\u003E\u003Cli\u003ETo escalate risk events immediately\u003C/li\u003E\u003Cli\u003ETo provide input to risk management processes, as required.\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003ECompetencies, Skills, Experience \u0026amp; Qualifications:\u003C/h3\u003E\u003Ch3\u003ESkills and Experience:\u003C/h3\u003E\u003Ch3\u003EEssential:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EA minimum of 5 years\u2019 experience in Information Security.\u003C/li\u003E\u003Cli\u003EComprehensive knowledge of identity security and access control technologies, including Entra ID, Identity Protection, Privileged Access Management, Secrets Management, Key Management, PKI, and Certificate Management.\u003C/li\u003E\u003Cli\u003EStrong hands-on experience administering and supporting Privileged Access Management solution (tools such as CyberArk or equivalent), including account onboarding, safes, platforms, policies, credential rotation, session management, access workflows, operational troubleshooting, and control monitoring.\u003C/li\u003E\u003Cli\u003EStrong hands-on experience with Windows, Linux, cloud platforms, databases, directory services, and service accounts from an identity security perspective.\u003C/li\u003E\u003Cli\u003EExperience around Secrets \u0026amp; Key management tools such as Hashicorp vault or Conjour or equivalent.\u003C/li\u003E\u003Cli\u003EStrong experience around PKI management tools such as Venafi or Digicert or equivalent.\u003C/li\u003E\u003Cli\u003EExperience with Identity \u0026amp; privileged access governance, least privilege, break-glass processes, access reviews, privileged account lifecycle management, and audit evidence production.\u003C/li\u003E\u003Cli\u003EExperience producing operational metrics, control reporting, and audit evidence for identity - PAM, Secrets Management controls.\u003C/li\u003E\u003Cli\u003EKnowledge of security processes such as vulnerability management, penetration testing, incident response, and security control assurance.\u003C/li\u003E\u003Cli\u003EKnowledge of security standards and frameworks such as CIS and NIST.\u003C/li\u003E\u003Cli\u003EExperience supporting or improving security platforms, automation, tooling integrations, detection capabilities, or operational security processes.\u003C/li\u003E\u003Cli\u003EExcellent communication skills, with the ability to engage effectively with technical teams, control owners, auditors, and wider business stakeholders.\u003C/li\u003E\u003C/ul\u003E\u003Cp\u003E** Candidates with less than 5 years\u2019 experience will still be considered\u003C/p\u003E\u003Ch3\u003ECompetencies:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EA collaborative team player, approachable, self-efficient and influences a positive work environment\u003C/li\u003E\u003Cli\u003EDemonstrates curiosity\u003C/li\u003E\u003Cli\u003EResilient in a challenging, fast-paced environment\u003C/li\u003E\u003Cli\u003EAbility to take a high level of responsibility in a fast pace and high-volume environment\u003C/li\u003E\u003Cli\u003EExcels at building relationships, networking and influencing others\u003C/li\u003E\u003Cli\u003EStrategic collaborator with insight and agility, able to anticipate future challenges, ensuring operational effectiveness\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EConduct Rules, You must:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EAct with integrity\u003C/li\u003E\u003Cli\u003EAct with due skill, care and diligence\u003C/li\u003E\u003Cli\u003EBe open and cooperative with the FCA, the PRA and other regulators\u003C/li\u003E\u003Cli\u003EPay due regard to the interests of customers and treat them fairly\u003C/li\u003E\u003Cli\u003EObserve proper standard of market conduct\u003C/li\u003E\u003Cli\u003EAct to deliver good outcomes for retail customers\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003ECompany Values\u003C/h3\u003E\u003Cp\u003EBe collaborative - by working together across the organisation, we foster teamwork, can better respond to challenges and successfully deliver for our clients\u003C/p\u003E\u003Cp\u003EAct with integrity - we pride ourselves on our honesty and high ethical standards. We apply these values when working with all our clients, colleagues and other stakeholders\u003C/p\u003E\u003Cp\u003EBe adaptable and entrepreneurial - we embrace change as markets evolve to constantly increase our efficiency and create innovative solutions for our clients. We are interested in the world around us and inquisitive about understanding the challenges and opportunities our clients face.\u003C/p\u003E\u003Cp\u003EBe respectful \u2013 how we treat each other, and our clients says everything about who we are. We always act respectfully and treat people fairly in everything we do.\u003C/p\u003E\u003Cp\u003ENurture talent \u2013 we aim to grow our own talent and make Marex the place ambitious, hardworking and talented people choose to build their career. This means giving and taking stretch opportunities, taking risks, and committing to career development and support \u2013 for ourselves, and our teams.\u003C/p\u003E\u003Cp\u003EMarex is fully committed to being an inclusive employer and providing an inclusive and accessible recruitment process for all. We will provide reasonable adjustments to remove any disadvantage to you being considered for this role. We value the differences that a diverse workforce brings to the company. We welcome applications from candidates returning to the workforce. Also, Marex is committed to avoiding circumstances in which the appearance or possibility of conflicts of interest may exist within the hiring process.\u003C/p\u003E\u003Cp\u003EIf you would like to receive any information in a different way or would like us to do anything differently to help you, please include it in your application.\u003C/p\u003E","identifier":{"@type":"PropertyValue","name":"Gurify","value":"security-engineer-at-marex-a383676e7e6e"},"url":"https://gurify.com/job/security-engineer-at-marex-a383676e7e6e","datePosted":"2026-09-22","validThrough":"2026-11-06T23:59:59Z","hiringOrganization":{"@type":"Organization","name":"Marex","sameAs":"https://marex.breezy.hr"},"directApply":false,"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressCountry":"GB","addressLocality":"London"}}}
```

```json
{"@context":"https://schema.org/","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Jobs","item":"https://gurify.com/jobs"},{"@type":"ListItem","position":2,"name":"United Kingdom","item":"https://gurify.com/jobs/united-kingdom"},{"@type":"ListItem","position":3,"name":"Security Engineer","item":"https://gurify.com/job/security-engineer-at-marex-a383676e7e6e"}]}
```
