Senior Security Engineer; AI & DevSecOps
Listed on 2026-06-10
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing, AI Engineer (Applied/Software)
Location: Greater London
Senior Security Engineer (AI & Dev Ops) The Role
Reports to:
Head of Cybersecurity
Location:
WeWork Waterloo - Hybrid
Compensation: $ (Base) + Company Performance Bonus (20%) + Share Options + US iProov Benefits
The role was created specifically to provide the technical security depth that will allow us to accelerate our adoption of agentic AI, equipping developers and data scientists building our biometric products with the tools and workflows to use AI safely and will work as the direct counterpart to our GRC-focused Info Sec Manager, owning the engineering and implementation side of our security posture across cloud infrastructure, developer workflows, AI systems, and our core security toolstack.
This is a role for someone who has built and shipped software or infrastructure and brings that experience into a security context.
- Architect and deploy the secure technical framework that governs the security controls for how our developers and scientists use agentic AI, including AI coding assistants, autonomous agents, and LLM-integrated tooling. Given that these systems can autonomously access data, execute code, and interact with external services, the guardrails you design will need to address a substantially broader attack surface than traditional AI tooling, and must hold up in a context where the underlying data is among the most sensitive we handle.
- Be the primary technical security voice in decisions around the use and deployment of externally developed AI, ensuring the right controls are in place from the onset.
- Continuously mature automated security controls into CI/CD pipelines and infrastructure-as-code deployments, championing the Dev Sec Ops culture across a large engineering organisation.
- Take hands‑on ownership of our core security technology stack, including Wiz, Crowd Strike, Google Sec Ops, and Tailscale, ensuring these platforms are correctly configured, tuned, and integrated.
- Drive continuous technical delivery of strategic security initiatives, systematically identifying, triaging, and closing gaps across our cloud environments, internal networks, and developer workflows.
- Provide technical oversight of the security of the data pipelines feeding our internal AI systems and, critically, the permissions and access boundaries of agentic AI systems reaching out into other environments, enforcing the principle of least privilege, maintaining audit trails, and ensuring sensitive data and code integrity is handled with the rigour required.
- Complement the work of our existing biometric and product focused Red Team by owning security coverage of the Dev Sec Ops surface, the build pipeline, internal toolchain, cloud environments and developer infrastructure.
- Act as the primary technical security partner to our GRC-focused Info Sec Manager, translating governance and compliance mandates into concrete, automated engineering controls.
- Represent the technical security function in external audits. This includes presenting evidence of controls, articulating the security posture of our cloud and AI environments to auditors, and working closely with the Info Sec Manager to ensure the technical substance behind our compliance position is clearly and credibly communicated.
- A foundational background in software engineering or Dev Ops before moving into a dedicated security role: you understand how code is written, tested, and deployed, and that experience is central to how you approach security problems.
- Proven, hands‑on experience securing modern cloud infrastructure and containerised environments, with a solid understanding of infrastructure-as-code principles and the security implications of how infrastructure is defined and provisioned.
- Proficiency in deploying and administering enterprise security platforms, ideally with direct experience managing tools spanning CNAPP, EDR, SIEM, and zero-trust networking.
- A heavy and active user of AI in both professional and personal contexts, including agentic AI tools and coding assistants, with a grounded understanding of the evolving AI threat landscape, including model supply chain risks, prompt…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: