Category: Engineering
Location: Bengaluru, KA
India
Bengaluru, KA, India
Tesco Bengaluru: We are a multi-disciplinary team creating a sustainable competitive advantage for Tesco by standardising processes, delivering cost savings, enabling agility, providing cutting-edge technological solutions and empowering our colleagues to do ever more for our customers. With cross-functional expertise in Global Business Services and Retail Technology & Engineering, a wide network of teams and strong governance we reduce complexity thereby offering high quality services for our customers. Tesco Bengaluru, established in 2004 to enable standardisation and build centralised capabilities and competencies, makes the experience better for our millions of customers worldwide and simpler for over 4,40,000 colleagues.
Important Notice:
On behalf of Tesco Bengaluru, we must caution all job seekers and educational institutions that Tesco Bengaluru does not authorise any third parties to release employment offers or conduct recruitment drives via a third party. Hence, beware of inauthentic and fraudulent job offers or recruitment drives from any individuals or websites purporting to represent Tesco. Further, Tesco Bengaluru does not charge any fee or other emoluments for any reason (including without limitation, visa fees) or seek compensation from educational institutions to participate in recruitment events.
Accordingly, please check the authenticity of any such offers before acting on them and where acted upon, you do so at your own risk. Tesco Bengaluru shall neither be responsible for honouring or making good the promises made by fraudulent third parties, nor for any monetary or any other loss incurred by the aggrieved individual or educational institution.
In the event that you come across any fraudulent activities in the name of Tesco Bengaluru, please feel free report the incident at recruitment_compliance_india@tesco.com
About the Security Engineering team
We are 15+ and growing team that supports Tesco technology and software development teams across cloud and other cutting-edge technologies at scale. We have a new role to lead security partnership to drive and oversee security initiatives for an engineering domain. Tesco technology comprises of several domains and over 120 teams developing software who are responsible for their own security, so we act differently than a traditional security team. We’re team of security partners, not security police.. and we go as far as calling ourselves as Security Partners, not Security Architects or Consultants.
Security Engineering team is part of Security & Capability group that offers the enterprise with various security solutions and capabilities.
Our software engineering teams have tremendous freedom in their work and the corresponding responsibility to do the right thing for our customers. Instead of controlling our engineering teams with process and security gates, we enable them to innovate by providing security guidance to make right decisions for Tesco. The good news is that our engineering teams are (usually) willing partners in doing better security, more efficiently and earlier in the process. We want you to help us scale out and represent ourselves for the wider engineering domain.
Tesco has fully embraced Devops and agile methodologies to develop our enterprise APIs, services, and cloud capabilities. Our 100+ delivery teams have loads of Docker, Kubernetes and microservices galore across Azure and AWS, so our security approach must work with elastic, here today, gone tomorrow infrastructure. Our security approaches should be event-driven, real-time and effective. Weekly scans are so 2010.
The Role:
As the Lead Security Partner, you will build and lead a team of security partners and
engineers assigned to an engineering domain. You will engage with the tech director and
leadership to drive security partnership and all initiatives top-down. You have higher sphere of influence. You understand the threat landscape and the business appetite to make the right decisions. You possess the required diversity of experience and the depth of knowledge.
Developing strong security partnerships for Tesco Technology
These roles are about transforming the way security is delivered to our technology domains and software engineering teams. As our software and enterprise APIs continue to move to cloud, we have different security challenges, and this role is to help teams navigate that change successfully. The boundary between infrastructure and application has virtually disappeared and being secure means supporting through the entire SDLC – from threat modelling during design, to development, then through production and ops.
Job accountabilities:
As the lead partner, you will
As the manager, you will
Longer-term, the nature of the role also means you are expected to identify new problem
spaces, propose solutions and engage across disciplines. In other words, we want you to
innovate and will give you the room to do so. If you can think of ways to do security, faster,
more accurately, with greater consistency and at scale while minimizing friction, you’ll be
supported all the way.
What the role isn’t…
You won’t be selecting and deploying commercial endpoint solutions, building SOC (Security Operations Centre) or other capabilities. We have engineering and operational teams for all those sorts of things. We have a security architecture framework to work within, but you won’t get told how to perform the role, it’s yours to shape in whatever way works best for your product and engineering stakeholders.
You will need:
To excel in this position, we expect you to have the following