About this role
About Marex
Marex Group plc (NASDAQ: MRX) is a diversified global financial services platform providing essential liquidity, market access and infrastructure services to clients across energy, commodities and financial markets. The group provides comprehensive breadth and depth of coverage across four core services: clearing, agency and execution, market making, and hedging and investment solutions. It has a leading franchise in many major metals, energy and agricultural products, with access to 60 exchanges. The group provides access to the world’s major commodity markets, covering a broad range of clients that include some of the largest commodity producers, consumers and traders, banks, hedge funds and asset managers. With more than 40 offices worldwide, the group has over 3,000 employees across Europe, Asia and the Americas.
For more information visit https://www.marex.com/
Vacancy Number: VN3168
Department description
Marex has unique access across markets with significant share globally both on and off exchange. The depth of knowledge amongst its teams and divisions provides its customers with clear advantage, and its technology-led service provides access to all major exchanges, order-flow management via screen, voice and DMA, plus award-winning data, insights and analytics.
The Technology Department delivers differentiation, scalability and security for the business. Reporting to the CEO, Technology provides digital tools, software services and infrastructure globally to all business groups. Software development and support teams work in agile ‘streams’ aligned to specific business areas. Our other teams work enterprise-wide to provide critical services including our global service desk, network and system infrastructure, IT operations, security, enterprise architecture and design.
The Information Security team reports to the CISO and is responsible for protecting Marex data and assets, as well as providing security advice. The team is relatively small; therefore, its members have a chance to experience various areas of security.
Role Summary
The Security Engineer will work within the Cyber Security team, reporting to the Cyber Security Manager, and will be responsible for engineering, administering, and continually improving security capabilities across the Marex Group, with a primary focus on Identity Protection, Privileged Access Management, and associated access control environments.
The role will support the secure management of privileged accounts, access workflows, credential rotation, platform onboarding, incident response, control monitoring, and operational governance relating to privileged access. In addition, the role will contribute to broader identity security capabilities, including secrets management, certificate and PKI-related controls, and the improvement of identity-related security processes.
Beyond its core identity and PAM responsibilities, the role will support wider cyber security engineering activities, including security platform operations, automation, tooling enhancements, threat detection improvements, and response to security incidents as business and security priorities evolve.
Responsibilities
Role specific:
- Engineer security products to be production ready.
- Configure security toolset and controls to identify anomalies, potential incidents, network intrusions, and malware events, etc., ensuring confidentiality, integrity, and availability of Marex’s critical systems
- Find gaps in architecture, define objective and areas of improvement, engineer products to fit the gaps for an effective Threat detection and response.
- Developing and documenting cyber security standards and procedures
- Collaborates with technology teams for incident handling, patching disciplines, and system hardening frameworks
- Collaborates with the Information Technology team on deployment, operation, and continual improvements of security solutions
- Automation of tasks and creation of analytical tools
- Keeping up to date with security news and trends
- Threat Intelligence and Hunting
- Responding and investigating security incidents and exceptions
- Providing relevant KPI and KRI metrics.
All staff:
- Ensuring compliance with the company’s regulatory requirements under the FCA, NFA, AMF, AFM, MAS.
- Adhere to the operational risk framework for your role ensuring that all regulatory or company determined parameters are complied with.
- Role model for demonstrating highest level standards of integrity and conduct and reflecting Company Values.
- At all times complying with the FCA’s Code of Conduct
- To ensure that you are fully aware of and adhere to internal policies that relate to you, your role or any other activities for which you have any level of responsibility
- To report any breaches of policy to Compliance and/ or your supervisor as required
- To escalate risk events immediately
- To provide input to risk management processes, as required.
Competencies, Skills, Experience & Qualifications:
Skills and Experience:
Essential:
- A minimum of 5 years’ experience in Information Security.
- Comprehensive knowledge of identity security and access control technologies, including Entra ID, Identity Protection, Privileged Access Management, Secrets Management, Key Management, PKI, and Certificate Management.
- Strong hands-on experience administering and supporting Privileged Access Management solution (tools such as CyberArk or equivalent), including account onboarding, safes, platforms, policies, credential rotation, session management, access workflows, operational troubleshooting, and control monitoring.
- Strong hands-on experience with Windows, Linux, cloud platforms, databases, directory services, and service accounts from an identity security perspective.
- Experience around Secrets & Key management tools such as Hashicorp vault or Conjour or equivalent.
- Strong experience around PKI management tools such as Venafi or Digicert or equivalent.
- Experience with Identity & privileged access governance, least privilege, break-glass processes, access reviews, privileged account lifecycle management, and audit evidence production.
- Experience producing operational metrics, control reporting, and audit evidence for identity - PAM, Secrets Management controls.
- Knowledge of security processes such as vulnerability management, penetration testing, incident response, and security control assurance.
- Knowledge of security standards and frameworks such as CIS and NIST.
- Experience supporting or improving security platforms, automation, tooling integrations, detection capabilities, or operational security processes.
- Excellent communication skills, with the ability to engage effectively with technical teams, control owners, auditors, and wider business stakeholders.
** Candidates with less than 5 years’ experience will still be considered
Competencies:
- A collaborative team player, approachable, self-efficient and influences a positive work environment
- Demonstrates curiosity
- Resilient in a challenging, fast-paced environment
- Ability to take a high level of responsibility in a fast pace and high-volume environment
- Excels at building relationships, networking and influencing others
- Strategic collaborator with insight and agility, able to anticipate future challenges, ensuring operational effectiveness
Conduct Rules , You must:
- Act with integrity
- Act with due skill, care and diligence
- Be open and cooperative with the FCA, the PRA and other regulators
- Pay due regard to the interests of customers and treat them fairly
- Observe proper standard of market conduct
- Act to deliver good outcomes for retail customers
Company Values
Be collaborative - by working together across the organisation, we foster teamwork, can better respond to challenges and successfully deliver for our clients
Act with integrity - we pride ourselves on our honesty and high ethical standards. We apply these values when working with all our clients, colleagues and other stakeholders
Be adaptable and entrepreneurial - we embrace change as markets evolve to constantly increase our efficiency and create innovative solutions for our clients. We are interested in the world around us and inquisitive about understanding the challenges and opportunities our clients face.
Be respectful – how we treat each other, and our clients says everything about who we are. We always act respectfully and treat people fairly in everything we do.
Nurture talent – we aim to grow our own talent and make Marex the place ambitious, hardworking and talented people choose to build their career. This means giving and taking stretch opportunities, taking risks, and committing to career development and support – for ourselves, and our teams.
Marex is fully committed to being an inclusive employer and providing an inclusive and accessible recruitment process for all. We will provide reasonable adjustments to remove any disadvantage to you being considered for this role. We value the differences that a diverse workforce brings to the company. We welcome applications from candidates returning to the workforce. Also, Marex is committed to avoiding circumstances in which the appearance or possibility of conflicts of interest may exist within the hiring process.
If you would like to receive any information in a different way or would like us to do anything differently to help you, please include it in your application.