11 дней назад
Senior Engineer, Software Security (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Engineer, Software Security (AI) (Application Security/Cloud): Defining secure architecture, development standards, vulnerability management, and security testing for backend services, cloud platforms, and CI/CD pipelines with an accent on threat modelling, cloud security, and AI-assisted attack simulation. Focus on building scalable defences across APIs, networks, data, identity, and production infrastructure without slowing engineering delivery.
Location: London, England, United Kingdom; full-time in the London office five days a week. Occasional home working is allowed for personal needs, but this is not a hybrid role. Candidates should live within a 60-minute commute of the office.
Company
is a London-founded technology company building phones, audio products, and an operating system used by millions of people across more than 40 markets.
What you will do
- Own the security lifecycle and secure architecture for backend services, cloud platforms, and CI/CD pipelines from design through live operations.
- Define secure development standards and integrate SAST, DAST, and SBOM tooling into the software delivery process.
- Manage vulnerabilities end to end, including discovery, triage, prioritization, and driving remediation with engineering teams.
- Design penetration testing and fuzzing strategies, and build security tools that engineers can run independently.
- Deliver API security, WAFs, gateways, runtime defenses, and encryption for data in transit and at rest.
- Lead threat modelling and partner with mobile, OS, desktop, privacy, and legal teams on client security and global regulatory requirements, including emerging AI technologies.
Requirements
- 6+ years of application security experience, including designing security architecture for commercial products and managing production security posture.
- Deep threat modelling expertise, with the ability to define company-wide methodologies.
- Hands-on cloud security experience across AWS, GCP, Azure, and other hyperscalers.
- Strong command of secure SDLC practices, including SAST, DAST, and SBOM, with sound vulnerability prioritization judgment.
- Experience applying AI or LLMs to security through threat simulation, defense testing, and countermeasure development.
- Solid cryptography and identity fundamentals, including TLS, OAuth 2.0, SSO, and token management, plus production-quality coding in Python, Go, Java, and C++.
Culture & Benefits
- Work primarily from the London Kings Cross and Farringdon offices.
- Occasional home working is available for personal needs.
- Collaborate across backend, cloud, data, mobile, OS, desktop, privacy, and legal functions.
- Build security foundations for products used by millions of people worldwide.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →