Principal Security Engineer (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Principal Security Engineer (Fintech): Designing and implementing an automated, secure software development toolchain for a cloud-native retirement platform with an accent on AI security posture, IaC security, and CI/CD integration. Focus on building invisible security automation, mentoring engineers on a security-first mindset, and managing cloud governance across AWS, Azure, and GCP.
Location: Hybrid (London or Krakow)
Company
Financial technology business transforming retirement, savings, and financial wellbeing through a cloud-native digital platform.
What you will do
- Architect and lead the end-to-end secure software development toolchain and the platform's AI security posture.
- Integrate SAST, DAST, and SCA tools directly into CI/CD pipelines to catch vulnerabilities before staging.
- Oversee Cloud Security Posture Management (CSPM) across AWS, Azure, and GCP to ensure ISO and SOC2 compliance.
- Mentor software engineers to foster a "Security-First" mindset through workshops and code reviews.
- Own the security toolchain, including Wiz, source code management security (GitHub), and edge security.
- Develop automated remediation playbooks and contribute to threat modeling and architecture reviews.
Requirements
- Deep expertise in Kubernetes security (e.g., Wiz, OPA Gatekeeper).
- Mastery of Terraform or CloudFormation with a focus on automated linting and policy-as-code.
- Advanced experience with GitLab CI, GitHub Actions, or Jenkins.
- Proficiency in Python, Go, or Bash for building custom security tooling.
- Hands-on experience with security tools like Wiz, Snyk, or SonarQube.
- Must be based in or able to work from London or Krakow (Hybrid).
Culture & Benefits
- 25 days’ holiday per year, increasing with length of service.
- £500 annual training budget for professional development.
- Extensive private healthcare, including dental, eyecare, and EAP.
- Enhanced sick leave (three months’ pay per year).
- Enhanced maternity (6 months fully paid) and paternity (3 weeks fully paid) leave.
- Fully-paid five-week sabbatical after five years of employment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →