Building a better world with better data.
Senior Security Engineer
Location
United Kingdom
Posted
3 days ago
Salary
0
Seniority
Senior
Job Description
Senior Security Engineer
Prolific
• You’ll help secure Prolific’s applications end-to-end, from hands-on testing and code review to threat modelling and CI/CD security. • You’ll partner closely with engineers to identify and fix vulnerabilities, build and tune security tooling, and embed secure development practices across the SDLC. • This includes running penetration tests, improving detection coverage, and staying ahead of emerging threats to continuously strengthen our security posture.
Job Requirements
- Several years in application/product security and a background in software engineering
- Strong knowledge of OWASP Top 10 (Web & API) and modern attack paths (e.g. auth flaws, SSRF, injection, business logic abuse, supply chain)
- Experience working with complex, large-scale systems and modern architectures
- Hands-on security testing experience (especially Burp Suite) across web apps and APIs
- Python for security tooling, automation, or custom detection (Django a plus)
- Experience implementing and tuning SAST, SCA, DAST, and secret scanning in CI/CD
- Practical threat modelling experience, including leading lightweight sessions
- Strong collaboration skills, able to clearly explain issues and drive remediation
- Builder mindset, you automate wherever possible
- Experience with Django, Vue.js, MongoDB, GCP
- Security champions or bug bounty programmes
- Supply chain security (SCA, SBOMs, dependency review)
- IaC security (e.g. Terraform, policy-as-code)
- Hands-on certifications (OSCP, GWAPT, BSCP)
- Experience in scaling environments building out security practices
Benefits
- Competitive salary
- Benefits, perks, and compensation extras
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Manager, Security GRC – Compliance Onboarding, Readiness
HubSpotSince launching in 2006, HubSpot has emerged as the force behind the industry-leading inbound marketing and sales platform. Among other accolades, HubSpot is al
• Lead, develop, and mentor a talented sub-team of GRC professionals. • Personally conduct high-impact control walkthroughs, draft complex process narratives, design baseline control mappings for new architectures, and directly test critical systems. • Manage and scale compliance onboarding intake process by partnering early with Product, Engineering, and FinOps. • Personally lead and oversee rigorous internal testing of HubSpot’s highest-risk controls. • Build out and monitor key control health indicators (OKIs/PKIs).
• Lead technical security conversations with customer-side security teams, including security officers, CISOs, and IT stakeholders, to address concerns and validate Wrike’s security capabilities • Support Sales teams by proactively identifying and resolving security-related objections that may impact deal progression • Help drive business growth by promoting Wrike’s premium security features, such as Wrike Lock and data residency offerings, and demonstrating how they align with customer needs • Contribute to larger deal sizes by positioning security as a strategic part of the customer’s buying decision • Complete security questionnaires, RFPs, and customer security portal assessments with speed and accuracy • Use internal AI tools and knowledge bases to deliver high-quality, consistent responses to technical security inquiries • Quickly learn and follow internal security workflows and processes to ensure a smooth experience for internal stakeholders and customers • Partner closely with the core Security team to stay aligned on product updates, vulnerabilities, and roadmap developments • Collaborate with Sales and Customer Success teams through regular follow-ups and ongoing support before and after the sale • Share customer feedback and recurring security needs with Product and Security teams to help shape future security improvements • Contribute to process improvements that enhance how Wrike manages security inquiries and customer interactions
• Lead technical security conversations with customer-side security teams, including security officers, CISOs, and IT stakeholders, to address concerns and validate Wrike’s security capabilities • Support Sales teams by proactively identifying and resolving security-related objections that may impact deal progression • Help drive business growth by promoting Wrike’s premium security features, such as Wrike Lock and data residency offerings, and demonstrating how they align with customer needs • Contribute to larger deal sizes by positioning security as a strategic part of the customer’s buying decision • Complete security questionnaires, RFPs, and customer security portal assessments with speed and accuracy • Use internal AI tools and knowledge bases to deliver high-quality, consistent responses to technical security inquiries • Quickly learn and follow internal security workflows and processes to ensure a smooth experience for internal stakeholders and customers • Partner closely with the core Security team to stay aligned on product updates, vulnerabilities, and roadmap developments • Collaborate with Sales and Customer Success teams through regular follow-ups and ongoing support before and after the sale • Share customer feedback and recurring security needs with Product and Security teams to help shape future security improvements • Contribute to process improvements that enhance how Wrike manages security inquiries and customer interactions
Cyber Security Engineer Associate
Community Health Systems Professional Services CorporationCommunity Health Systems is one of the nation's leading healthcare providers. With healthcare delivery systems in 36 distinct markets across 14 states, CHS operates 69 affiliated hospitals with more than 10,000 beds and approximately 1,000 other sites of care, including physician practices, urgent care centers, freestanding emergency departments, imaging centers, cancer centers, and ambulatory surgery centers.
Role Description The Cyber Solutions Engineering department within the Cybersecurity Risk Management organization ensures successful delivery and operations of critical security controls across the CHS Enterprise. As an Associate Cyber Security Engineer and IAM Analyst in the Identity Services team, you will work closely with various departments including but not limited to Internal Audit, Risk Management, and other IT teams to create and operationalize functional and scalable Identity and Access Management policies, guidelines, standards, procedures, and processes. Analyzing, improving, and automating current processes for granting and removing access based on the principles of least privilege is a key function of the role. - Implement, document, and assist in the maintenance of Role-Based Access Control (RBAC) for account provisioning. - Prioritize tasks and ensure that issues are fully resolved in a timely manner. - Implement, perform, and document Periodic Access Reviews for enterprise applications and systems. - Work with departments and key stakeholders to create and maintain role-based access controls for user accounts. - Identify problems or inefficiencies in current processes and suggest modifications. - Ensure audit requests for information are conducted and completed as required by the IAM program and regulatory requirements. - Create easily understood, useful documentation for processes and solutions to be used by team members and end users. Qualifications - H.S. Diploma or GED required - Associate Degree or Bachelor's Degree in Cyber Security, Computer Science, Information Systems (or other related field) or equivalent work experience preferred - 1-2 years Cyber Security, Technology or other related experience required Requirements - Provided support to end users in a corporate information technology or cyber security environment. Knowledge, Skills and Abilities - Strong problem solving and troubleshooting abilities. - Effective communication of technical concepts to a non-technical audience. - Good written and verbal communication skills. - Good time management and prioritization capabilities. - Motivation for growth and self-improvement. - Ability and desire to do thorough, high-quality work. Technologies - ServiceNow - Active Directory - SailPoint - Health Management Systems - Identity Management - Experience working in a Windows environment - Familiarity with Microsoft / Google office suites Licenses and Certifications - Security+, GSEC, SSCP, or an ITIL Certifications preferred


