Senior Security Engineer
Listed on 2026-07-20
-
IT/Tech
Cybersecurity
Team: Security Engineering (Information Security Office)
Experience: Expert
Reporting to: Senior Security Engineering Manager
Sponsorship: Unfortunately we are unable to offer sponsorship for this role.
Top 3 qualities for this role: Collaborative, Integrity and Problem‑Solving Oriented
Where you’ll work:
Depending on the needs of your business area, we expect hub based people to be in the office at least once a week and to go to OVO Connection events in‑person.
You’ll be assigned to the closest one of our three hub offices, Bristol, Glasgow, or London; unless your role requires field‑based work. Each hub has accessible spaces to park your laptop, is designed to inspire people, help them connect and bring big ideas to life.
Everyone belongs at OVO
At OVO, we are on a mission to solve one of humanity's biggest challenges, the climate crisis. And we know it takes all of us to change the world. That's why we need diverse people from all abilities, gender identities, ethnicities, ages, sexual orientations, life experiences and backgrounds to join us.
Team working for the planet
Everything we do here spins around Plan Zero. So, naturally, the team you’ll be joining plays a gigantic role in making that happen. Here’s how:
We’re hiring creators, challengers and coaches. Every role puts people at the heart of our information security strategy and uses technology and operational processes to build a resilient and performant business. The Path to Zero is paved with well‑informed risk and reward decisions!
This role in a nutshell:
As an application security specialist, your primary responsibility will be to ensure the security of software applications. You will work closely with development teams to develop and implement secure coding practices and guidelines. You will also conduct security assessments to identify vulnerabilities in existing applications and recommend mitigations. Additionally, you will perform code reviews to ensure that new code adheres to security best practices.
Your key outcomes will be:
- You are an engineer with a growth mindset who seeks to broaden your soft and technology skills.
- You are passionate about developing products that will positively impact our mission to deliver Plan Zero.
- You love working in teams collaborating and knowledge sharing to build features that impact customers.
- You are motivated by owning products, from inception to continuous improvement.
- You value test automation as a key part of your role as a security engineer.
- You love building scalable, resilient solutions.
Systems: experience building integrations, workflows, actionable insights and operating models based on the following technologies and platforms would be advantageous (we are not expecting candidates to have experience in all these platforms):
- Cloud Native Application Protection and Cloud Security Posture Management (Wiz).
- Application Security Posture Management (Wiz Code).
- Web Application Firewall and related technologies (Cloudflare).
- GCP, AWS and Azure native security and compliance monitoring.
- SaaS discovery, event monitoring and security posture management.
- Endpoint, Cloud and Identity Detection and Response.
- Issue and Project Tracking (Jira).
- Cyber Asset and Attack Surface Management.
- Infrastructure Vulnerability Scanning.
You’ll be a successful Security Engineer here at OVO if you…
- Are a creator:
You're a hands‑on Senior Engineer who takes a user‑centered design approach to build and administer automated security verification workflows; you lead by example, leveraging APIs and policy agents to pull and/or aggregate data from various sources, combining sources to enrich and inform GRC. - Are a challenger: you embrace failure and do not shy away from difficult conversations in order to drive business and cyber risk strategy and security architecture alignment. You are a champion for clarity about boundaries of responsibility for security work.
- Are a coach: you inspire your team and provide examples, practical support and approaches to integrate with the business to educate, advise and influence activities with cyber risk implications. You help innovate and instigate change to manage risk.
Let’s talk about what’s in it for you
W…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: