Tech Stack
JavaKotlinTypeScript
About the role
- Partner with engineering teams to design and review secure technical solutions.
- Dive deep into authentication, encryption, and partner integration security topics.
- Triage and resolve issues identified through the bug bounty program.
- Guide developers on secure coding practices and help fix identified vulnerabilities.
- Support GRC and DevOps teams with automation and security controls in CI/CD pipelines.
- Plan, prioritise, and own the Application Security roadmap.
- Drive long-term security initiatives balancing automation, compliance, and access needs.
- Report to the Head of Security Engineering and collaborate with Engineering, DevOps, GRC, and Product teams.
Requirements
- Strong communication skills and a pragmatic approach to security.
- Experience working closely with developers and product teams.
- Proficiency in at least one server-side language (Kotlin or TypeScript preferred).
- Expertise in code review and dynamic testing to identify security flaws.
- Deep understanding of security libraries, controls, and common vulnerabilities.
- Subject matter expertise in at least one technical area of application security.
- Passion for learning and solving unfamiliar or complex problems creatively.
- Ability to approach problems with honesty, curiosity, and clarity.
- (Bonus) Java or Kotlin proficiency, particularly securing JVM-based applications.
- (Bonus) Knowledge of PCI DSS, GDPR, or PSD2 and their application to application security.
- (Bonus) Experience supporting compliance efforts such as audits, segmentation, or access controls.
- Must be eligible to work in the listed locations; employer cannot offer visa sponsorship for this role.
- Your own Pleo card (no more out-of-pocket spending!)
- Lunch is on us for your work days – enjoy catered meals or receive a lunch allowance based on your local office 🍜
- Comprehensive private healthcare – depending on your location, coverage options include Vitality, Alan or Médis
- We offer 25 days of holiday + your public holidays
- For our team, we offer both hybrid and fully remote working options
- Option to purchase 5 additional days of holiday through a salary sacrifice
- Access to free mental health and well-being support via MyndUp
- Paid parental leave
ATS Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
KotlinTypeScriptJavacode reviewdynamic testingsecurity librariessecurity controlsvulnerabilitiesapplication securityCI/CD
Soft skills
communication skillspragmatic approachproblem-solvingcuriosityclarityhonestycollaborationprioritizationguidancepassion for learning