Senior Red Team Operator, Starling Bank

Salary not provided
AWS
GCP
macOS
Java
Go
Kotlin
Windows
Mid and Senior level
London

1-5 days a week in office

Starling Bank

Mobile-first bank offering personal, joint and business accounts

Job no longer available

Starling Bank

Mobile-first bank offering personal, joint and business accounts

1001+ employees

FintechB2CB2BBankingPersonal financeLendingCredit cardsFinancial Services

Job no longer available

Salary not provided
AWS
GCP
macOS
Java
Go
Kotlin
Windows
Mid and Senior level
London

1-5 days a week in office

1001+ employees

FintechB2CB2BBankingPersonal financeLendingCredit cardsFinancial Services

Company mission

Anne Boden founded Starling with a clear goal: to build a bank that would help you manage your money, all from one app. Their vision is to give everyone clarity and control over their money so they have the opportunity to enjoy a healthy financial life.

Role

Who you are

  • 3+ years of experience in offensive security roles such as red teaming or malware dev
  • Relevant industry certification (e.g. CCSAS, CRTL, OSMR, OSEP, CCT, or similar)
  • Ability to work to defined rules of engagement and to show strong discipline and steady judgement, working both independently or as part of a team
  • Experience with executing end to end red and purple team engagements using standard C2 frameworks (Mythic or CobaltStrike)
  • Familiarity with the cyber risks faced by Starling Bank and other financial institutions
  • In-depth understanding of network and operating system fundamentals with Windows and MacOS
  • Big picture understanding and experience with cloud technology such as AWS & GCP
  • Familiarity with modern software engineering paradigms (CI/CD, Infra as Code)

Desirable

  • Experience in payload development and offensive R&D for Windows or MacOS
  • Experience in Social Engineering such as phishing, physical break-in or vishing
  • Software engineering expertise (Java, Kotlin, Go…) or reverse engineering expertise
  • Experience and enthusiasm for blogging and speaking both internally to educate our staff and potentially externally

What the job involves

  • Designing and executing red/purple team operations against the Bank, including end to end kill chain - scoping, planning, execution and reporting
  • Emulate read-world cyber threats to test the organisation's defences and response capabilities
  • Dedicated research time to identify vulnerabilities and build exploits that can be leveraged during assessments
  • Actively work with the team to continuously develop the methodology and internal capability to enhance in-house capabilities.
  • Working along with other teams post engagement to actively remediate the vulnerabilities and improve the overall security posture of the organisation
  • Engage in continuous learning and professional development, keeping up to date with current trends
  • Operations will emulate real threat actors and target cutting edge technology in Starling Bank’s platform as well as ranging across the endpoint estate
  • You will use emerging threat intelligence to inform and develop effective attacks
  • You will be an early member of the team and have the opportunity to shape the development and growth of the team

Salary benchmarks

Otta's take

Xav Kearney headshot

Xav Kearney

CTO of Otta

Starling started life focused on consumer banking, they have since found most of their success by competing in the business banking space. They’ve caught up with Tide and beaten the likes of Monzo and Revolut to a more complete offering for businesses.

This progress resulted in them receiving a £100m grant in April 2019 from a body created to boost competition in SME banking, which they're using to accelerate building a full suite of digital banking products: intelligent forecasting tools, and digitally-enabled relationship management functions as well as lending products.

As well as continuing to expand in the UK, they’re expanding in Europe. They’re imminently launching an international bank in Dublin, which will allow Starling to offer its current account across the European Union after Brexit.

Banking for small businesses has historically been ignored even though the experience is poor. Starling is in tune with knowing what their customers want, and they continue to build out their range of third-party products within its banking app thanks to support from its open API. They currently have 11 integrations, including Xero, but that figure continues to grow.

Insights

Top investors

Many candidates hear
back within 2 weeks

43% female employees

40% employee growth in 12 months

Company

Funding (last 2 of 11 rounds)

Apr 2022

$168.2m

LATE VC

Jun 2021

$45.1m

LATE VC

Total funding: $1.1bn

Company benefits

  • 25 days holiday (plus take your public holiday allowance whenever works best for you)
  • An extra day’s holiday for your birthday
  • Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off!
  • 16 hours paid volunteering time a year
  • Salary sacrifice, company enhanced pension scheme
  • Life insurance at 4x your salary & group income protection
  • Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton
  • Generous family-friendly policies
  • Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks
  • Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing
  • Incentives refer a friend scheme

Company values

  • Do the right thing
  • Listen
  • Aim for greatness
  • Own it
  • Keep it simple

Company HQ

Spitalfields, London, UK

Founders

Anne Boden

(Founder)

Held senior roles in finance over a 30 year career, including COO for AIB and Head of EMEA for RBS.

Diversity & Inclusion at Starling Bank

Manuela Torrijos-Simon (Group Financial Controller)

  • In the spirit of Aiming for Greatness and Doing the Right Thing, we want to be the bank with the best approach to Diversity and Inclusion
  • The Always Open Forum at Starling empowers employees to come together and own their areas of interest, supporting their agenda both internally and externally
  • The forum creates a safe space for conversations about all Diversity and Inclusion topics, with the spotlight currently on 3 focus areas; Race and Ethnicity, LGBTQ+ and Mental Health.
  • We’re about to launch a new group to support Disability, and all of these teams help bring Starlings together to improve our workplace

Share this job

View 16 more jobs at Starling Bank