Carbon3.ai
Security Engineer

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Security Engineer
We are seeking a Security Engineer to design, implement, and continuously improve security controls across our next-generation AI infrastructure and datacentre operations. This role focuses on protecting Kubernetes-based and cloud-native environments, securing our datacentre networking and infrastructure stack, strengthening security posture, identifying and mitigating risks, and enabling secure software delivery practices.
You will work closely with engineering, platform, and operations teams to integrate security into Era4's proprietary cloud infrastructure, datacentre networks, CI/CD pipelines, containerized workloads, GPU-accelerated compute, and AI/ML platforms. The successful candidate will combine hands-on technical expertise with a proactive approach to threat detection, vulnerability management, and security automation across our brownfield-to-modern bare metal and cloud infrastructure environments.
Key Responsibilities
Cloud & Infrastructure Security
- Design, implement, and maintain security standard and controls for on-prem Kubernetes.
- Review infrastructure architectures and perform security assessments to identify risks and recommend mitigations.
Application & DevSecOps Security
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
- Integrate security controls into CI/CD pipelines, including SAST, DAST, dependency scanning, container image scanning, and secrets detection.
- Partner with development teams to implement secure coding practices and remediate security findings.
- Conduct threat modelling and security reviews for new applications, services, and infrastructure changes.
Vulnerability & Risk Management
- Lead vulnerability identification, prioritisation, remediation, and reporting activities across infrastructure and applications.
Detection & Response
- Develop and maintain security monitoring, alerting, detection capabilities and incident response playbooks.
- Investigate security incidents, perform root cause analysis, and coordinate remediation activities.
Security Automation
- Build automation to improve security monitoring, compliance validation, vulnerability management, and incident response workflows.
- Leverage Infrastructure as Code and policy-as-code frameworks to enforce security standards at scale.
Required Qualifications & Experience
- Experience in Security Engineering, Cloud Security, DevSecOps, Infrastructure Security, or Datacentre Security.
- Hands-on experience with vulnerability management platforms and security assessment methodologies.
- Familiarity with CI/CD security controls, secure software development practices, and supply chain security.
- In-depth scripting and automation skills using Python, Bash, or similar languages.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Nice to have
- Experience securing AI/ML or GPU-based infrastructure, datacentre network security, firewalls, and network segmentation (Palo Alto firewalls, OpnSense, Nokia networking, or similar).
- Familiarity with compliance frameworks such as SOC 2, ISO 27001, NIST CSF, CIS Benchmarks, or PCI DSS.
- Experience with threat modelling, penetration testing, or red team engagements.
- Security certifications such as CISSP, GSEC, GCIH, GCIA, CCSK, CCSP, or relevant cloud security certifications.
Why Join Era4
You’ll be joining a mission-driven start-up building critical national infrastructure, where operational excellence directly enables growth. This role offers high visibility with leadership, real autonomy, and the chance to shape how a next-generation company operates at scale.
Diversity & Inclusion
Era4 is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location