Contract Security Engineer

New Today

Overview

Join to apply for the Contract Security Engineer role at incident.io.

We’re looking for our first Security Engineer with a passion for application security who thrives when embedded within product teams. You’ll work side-by-side with engineers, helping us design and build secure systems from the ground up – not just swooping in at the end to run a checklist. You’ll spot potential vulnerabilities before they reach production, coach engineers on secure coding practices, and help shape a culture where security is second nature. You’ll collaborate heavily with the Infrastructure team to help us secure our infrastructure, CI/CD, and internal tooling.

What You’ll Be Doing

  • Partnering with product teams to design and review features with security in mind from day one.
  • Identifying and mitigating vulnerabilities through both white-box (code review, architecture analysis) and black-box (penetration testing, fuzzing) approaches.
  • Proactively finding security flaws in our applications, APIs, and infrastructure – and helping teams remediate them quickly.
  • Introducing pragmatic security tooling and automation to strengthen our defences without creating bottlenecks.
  • Championing secure coding practices and raising security awareness across the engineering organisation.
  • Collaborating on incident response and post-incident reviews when security issues arise.

What You Need To Be Successful

  • A track record of finding and remediating application security vulnerabilities, ideally demonstrated through in-depth security research, penetration testing, or red teaming.
  • Hands-on experience with white-box and black-box testing techniques and tools.
  • Familiarity with secure software development in modern web applications (React, Go, TypeScript, Postgres, or similar stacks).
  • Comfortable embedding within product teams and influencing design and implementation decisions.
  • Experience with cloud security in Google Cloud Platform (GCP Security Command Center is a plus).
  • A pragmatic approach – knowing where to focus for maximum risk reduction without slowing down delivery.

Seniority level

  • Entry level

Employment type

  • Full-time

Job function

  • Information Technology

Industries

  • Software Development

Location: London, England, United Kingdom

#J-18808-Ljbffr
Location:
London, England, United Kingdom
Salary:
£150,000 - £200,000
Job Type:
FullTime
Category:
IT & Technology

We found some similar jobs based on your search