Security Engineer (Offensive & Defensive Engineering)
Job Description
[Up to c. £300k Comp Package (or equivalent) | Hybrid Working]
Role Overview
We’re partnering with a leading global trading firm known for its engineering-first culture and highly collaborative environment. This role sits within a small, high-calibre security team responsible for safeguarding a complex, performance-driven technology ecosystem that spans trading systems, research infrastructure, and corporate platforms. This is a hands-on security engineering position with broad scope - covering everything from building preventative controls to responding to real-world threats and advising engineers across the business. The environment rewards pragmatic thinking over rigid process, with a strong emphasis on understanding trade-offs and applying security in a way that supports, rather than blocks, innovation...
Key Responsibilities
- Design and implement security controls that protect systems, users, and data across the organisation
- Partner with engineering and infrastructure teams to embed security into systems and workflows
- Investigate security events and contribute to incident response efforts where required
- Provide practical guidance to teams on secure design, implementation, and operational practices
- Build internal tools and automation to improve detection, response, and overall security posture
- Contribute to firm-wide initiatives that raise awareness and improve day-to-day security behaviours
- Evaluate new threats, vulnerabilities, and attack techniques, translating them into meaningful actions
- Support threat modelling exercises and help teams make informed, risk-based decisions
- Continuously refine security approaches to balance risk, usability, and performance
What You’ll Bring…
- 3-7 years’ experience in security engineering, infrastructure security, or a related technical field
- Strong scripting or programming capability (Python or similar), with an emphasis on automation
- Experience managing code and configurations using version control systems
- Solid understanding of core security concepts including threat modelling, attack vectors, and defensive controls
- Ability to assess risk pragmatically and explain security decisions in context
- Hands-on mindset - comfortable building tools, not just recommending solutions
- Awareness of the evolving threat landscape and ability to separate signal from noise
- Good personal security practices and the ability to articulate and justify them
- (Preferred) Experience working in engineering-led environments where security is embedded rather than siloed
...
Apply for this role
All fields marked with * are required.