587,360open jobs
26,166companies
82,433added this week
Browse all
Salary
$23k – $54k per year (Estimated)
Location
Remote/Hybrid (India)
Seniority
Senior
Employment
Full-Time
Overview
Company
Impact
Profile match
IRIS Software Group is a British company founded in 1978 that supplies accounting, payroll and education software. Its products file a large share of British tax returns and pay millions of employees each month. The company serves accountancy practices, schools and small businesses across the country.

About IRIS

IRIS Software Group is one of the UK's largest privately held software companies, trusted by 100,000+ businesses, schools and accountancy firms to keep their operations running. Our software pays 1 in 6 UK employees, supports over 12,000 schools, and is relied on by 91 of the top 100 UK accountancy firms.

We're a Great Place to Work® certified employer, recognised for our commitment to well-being, inclusion and development - and we're growing fast.

Hello Eveyone,

I am writing this Job Post to brief about the job opportunity with IRIS KPO Resourcing Pvt Ltd (IRIS Software Group) for Senior information security Engineer - Vulnerability Management

Please find the job description and specifications for your references,

Please share your interest for the job opportunity with your updated resume.

Shift timing : UK Business Hours (2:00 PM - 11:00 PM IST)

Web Link :https://www.iris.co.uk/

Location : Remote (Work From Home)

One way (Drop) Transport will be provided for the women colleagues.

Employment Type : Full-Time | Permanent

Desired Candidate

You bring a strong technical background in application security, vulnerability management or software engineering, with a clear understanding of how vulnerabilities arise and how they should be remediated. Practical experience with security tooling such as SAST, DAST, SCA and secrets scanning matters here, ideally integrated into modern CI/CD environments. Just as valuable is the judgement to assess vulnerabilities in context, weighing exploitability, internet exposure, asset criticality, available exploits and compensating controls rather than taking scanner output at face value. You are also comfortable with software supply chain security, including frameworks such as SLSA, dependency security and secure build pipelines.

Your background includes a solid grounding in public cloud security, particularly across AWS and/or Azure. You recognise the vulnerabilities that recur in cloud environments, from overly permissive identities and exposed services to insecure storage, vulnerable workloads and configuration drift.

What you will do

  • Own the end-to-end vulnerability management lifecycle across our products and supporting technology, from identification and validation through prioritisation, remediation tracking, risk acceptance and reporting.
  • Triage and validate findings from multiple sources, including SAST, DAST, SCA, secrets scanning, penetration testing and web application scanning.
  • Work closely with Engineering and Product teams to drive remediation of vulnerabilities, helping teams understand technical risk, agree appropriate remediation actions and meet defined remediation timelines.
  • Partner with teams responsible for integrating security tooling into our CI/CD pipelines, helping improve the quality, coverage and effectiveness of that tooling.
  • Develop and continuously improve risk-based vulnerability prioritisation, considering exploitability, asset exposure, business criticality, threat intelligence and compensating controls rather than relying solely on scanner severity.
  • Identify recurring vulnerability patterns and root causes, working with engineering teams to reduce systemic weaknesses rather than repeatedly fixing individual findings.
  • Continuously improve vulnerability management processes, dashboards and workflows, bringing strong technical ownership and ideas for making the programme more scalable and effective.
  • Support the security review of software supply chain risks, including dependency management, build pipeline security and relevant secure software development practices.
  • Review and validate findings from cloud security and CSPM platforms, helping Infrastructure and Engineering teams prioritise and remediate cloud vulnerabilities and configuration weaknesses.
  • Research emerging cloud threats, vulnerabilities and misconfiguration patterns and recommend appropriate mitigations.
  • Support the implementation and improvement of cloud security controls and security baselines where required.

Why You’ll Love Working Here

  • Impact: Your work will influence millions globally.

  • Growth: Continuous learning and career development opportunities.

  • Belonging: A culture that celebrates diversity and empowers every individual.

Ready to Apply?

Click Apply - we’re excited to learn about your unique perspective and experience. If you need adjustments during the process, let us know. We’re committed to making this opportunity accessible to everyone.

What to expect from our hiring process

Our process is designed to be fair, transparent and straightforward. Stages vary depending on the role - more senior positions may involve additional steps, and some areas include role-specific assessments such as a technical test or case study - but typically you can expect:

  • Application review - we assess your experience and potential

  • Initial call - a short conversation to learn about you and share more about the role

  • Skills assessment - tailored to the position, e.g. case study, coding challenge or portfolio review

  • Final interview - meet the team and explore how you'll make an IMPACT at IRIS

We'll always walk you through the specific stages at the start of the process so you can prepare with confidence.

If you need any adjustments or accommodations during the process, let us know, we’re committed to making this experience accessible for everyone.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
587,360 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$20k – $58k per year (Estimated) • In office • Full-Time • 8+ years exp • Master's Degree • Bengaluru
JavaScript
TypeScript
C#
C#
.NET
Databases
MySQL
ElasticSearch
Frontend
Angular
DevOps
GCP
Kibana
Logstash
Azure
CI/CD
AWS
Management
Agile
Apply
$23k – $55k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Pune
Python
Python
Flask
FastAPI
Django
Django REST Framework
Databases
PostgreSQL
Redis
RabbitMQ
Apache Kafka
Frontend
GraphQL
DevOps
Rest API
GCP
OpenShift
Azure
CI/CD
AWS
Docker
Analytics
ETL/ELT
Apply
$27k – $62k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Hyderabad
AI/ML
AWS Bedrock
AWS Bedrock AgentCore
DevOps
Terraform
GCP
CloudFormation
CI/CD
AWS
Kubernetes
Amazon EKS
AWS Lambda
Amazon EC2
FinOps
AIOps
Amazon S3
IAM
Apply
$18k – $52k per year (Estimated) • In office • Full-Time • 4+ years exp • Noida
Python
SQL
AI/ML
Prompt Engineering
AI Agents
LLM
RAG
Tool Use
DevOps
Azure
Git
AWS
Docker
FinOps
Apply
$40k – $83k per year (Estimated) • In office • 12+ years exp • Bengaluru
Python
Go
AI/ML
Red Teaming
DevOps
Terraform
CloudFormation
CI/CD
AWS
Kubernetes
Platform Engineering
IAM
Cybersecurity
Zero Trust
Apply
$31k – $57k per year (Estimated) • In office • Full-Time
DevOps
SLI/SLO/SLA
Analytics
Microsoft Excel
Apply
$31k – $57k per year (Estimated) • In office • Full-Time
DevOps
SLI/SLO/SLA
Analytics
Microsoft Excel
Apply
$38k – $82k per year (Estimated) • Remote • Full-Time
Apply
$74k – $168k per year (Estimated) • In office • Full-Time • 8+ years exp
PowerShell
DevOps
Terraform
Azure DevOps
Azure
Windows Server
Bicep
Hyper-V
Cybersecurity
Zscaler
Microsoft Entra ID
Apply
$44k – $117k per year (Estimated) • In office • Full-Time • Bachelor's Degree
DevOps
SLI/SLO/SLA
Apply
See all jobs
This is one of many
587,360 more open roles from verified company boards, updated every day.