Product Security Engineer
Listed on 2026-09-26
-
IT/Tech
Cybersecurity
An industry-leading quantitative investment firm is seeking a Product Security Engineer to join its growing Security team. This is a fantastic opportunity to work at the intersection of security, software engineering, and infrastructure within a highly technical, engineering-led environment.
You will partner closely with software engineers and infrastructure teams to embed security throughout the development lifecycle, helping secure cloud platforms, business applications, and core infrastructure that support a global technology-driven business.
The OpportunityAs a Product Security Engineer, you'll play a key role in improving the security posture of critical systems while enabling developers to move quickly and safely. You'll work across a broad technology stack, contribute to secure development practices, and gain exposure to large-scale, performance-sensitive environments.
Key Responsibilities- Partner with engineering teams to integrate security into the design, development, and deployment of systems
- Support the implementation and operation of security controls across cloud environments, business applications, and core infrastructure
- Contribute to secure software development practices and perform security reviews across modern programming languages including Python, C++, Rust, Go, and Java/Kotlin
- Conduct threat modelling, vulnerability assessments, and security code reviews
- Assist with the deployment and operation of security tooling such as SAST, DAST, and dependency scanning solutions
- Work with developers to identify, prioritise, and remediate security risks
- Assess third-party vendors and technology providers against internal security standards
- Help drive security awareness and share best practices across engineering teams
- Contribute to automation initiatives and security tooling development
- 3-5 years' experience in Product Security, Application Security, Security Engineering, Software Engineering, or a related field
- Strong understanding of secure coding principles and experience with at least one modern programming language such as Python, C++, Rust, Go, Kotlin, or Java
- Solid foundation in software development, infrastructure, or systems architecture
- Knowledge of common application, cloud, and infrastructure security risks and vulnerabilities
- Experience working with Windows and/or Linux environments
- Exposure to AWS and/or Azure cloud platforms
- Understanding of threat modelling, vulnerability management, and risk assessment methodologies
- Experience integrating security tools into CI/CD pipelines and software development workflows
- Passion for learning and developing within a fast-paced engineering environment
- Experience working with low-latency, distributed, or performance-sensitive systems
- Background in financial services, trading, or other regulated industries
- Experience building automation or security tooling
- Exposure to modern Dev Sec Ops practices
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).