> Markdown version of [/jobs/ext/2264501-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/2264501-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineer - **Company:** Intercom, Inc. - **Location:** London, UK - **Salary:** £62,000.0 - £102,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Software as a Service, Cloud Computing, Cloud Computing Security, Computer Programming, Programming Tools, Distributed Systems, Identity and Access Management, Software Tools, Security Assertion Markup Language (SAML), Secure Coding, Software Engineering, Data Logging, Large Language Models, Software Security - **Published:** August 27, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5856705578 ## About the Role * Proven application security, product security, or security engineering experience within a SaaS environment. * Strong software engineering skills with experience designing, building, and operating production systems. * Deep understanding of modern application security threats, secure software development practices, and threat modelling. * Experience designing, building, or securing authentication, authorization, identity, or enterprise security capabilities. * Experience conducting architecture reviews and security assessments for complex systems. * Hands-on security incident response experience, including leading investigations and remediation efforts. * Strong programming skills and experience building tools, automation, or developer-focused solutions. * Comfortable using modern AI-assisted development tools to improve productivity and engineering effectiveness. * Ability to communicate security concepts clearly and collaborate effectively with engineering teams. * A pragmatic approach to balancing security, customer impact, and engineering velocity. * Bonus: Experience building or owning authentication, SAML/SSO, identity, or access management capabilities. * Bonus: Experience securing AI-powered products or familiarity with security considerations for large language models, agentic systems, retrieval-based architectures, or AI tool integrations. * Bonus: Experience building security automation or security-focused platform capabilities at scale. * Bonus: Familiarity with cloud security, infrastructure security, or distributed systems. * Bonus: Experience working across both large-scale SaaS environments and high-growth companies. ## Description * Own and engineer tier-zero security capabilities that help our customers securely deploy and manage Fin. * Design, build, and evolve customer-facing security features, including authentication, SAML/SSO, permissions systems, audit and activity logging, malicious URL scanning, and other enterprise security controls. * Partner with engineering teams throughout the software development lifecycle to build secure products and services. * Perform architecture reviews, threat modelling exercises, and security assessments for new features and systems. * Build security tooling, automation, and developer-facing building blocks that make secure development easier and more scalable. * Contribute to secure development standards, guidance, and best practices across Fin. * Lead application security initiatives across the software development lifecycle, helping teams identify and address security risks early. * Participate in a shared on-call rotation and lead security incident response, investigation, and remediation efforts. * Drive security initiatives from problem definition through design, implementation, and measurable outcomes. * Partner with teams building AI-powered products to assess and mitigate emerging security risks. * Help shape our AI-first approach to security, including AI-powered detection, red-team automation, continuous monitoring, and emerging defensive capabilities. * Support the secure adoption of AI-assisted software development tools and engineering workflows. Technologies: * AI * Claude Code * Cloud * Support * SAML * Security * Windows ## About Intercom [Company profile](https://www.wearedevelopers.com/companies/4167-intercom) ### More Jobs at Intercom - [Senior Data Scientist - Product Analytics](https://www.wearedevelopers.com/jobs/ext/2264185-senior-data-scientist-product-analytics) - [Forward Deployed Software Engineer](https://www.wearedevelopers.com/jobs/ext/2264259-forward-deployed-software-engineer) - [Senior Data Scientist](https://www.wearedevelopers.com/jobs/ext/2264260-senior-data-scientist) - [Senior Full Stack Engineer - Team Web](https://www.wearedevelopers.com/jobs/ext/2264258-senior-full-stack-engineer-team-web) - [Application Security Engineer](https://www.wearedevelopers.com/jobs/ext/2243665-application-security-engineer) ## Related Videos - [ Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together](https://www.wearedevelopers.com/videos/422-secure-code-superstars-empowering-developers-and-surpassing-security-challenges-together) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Build Delightful Mobile Experiences with Kotlin, Realm, and Atlas Device Sync](https://www.wearedevelopers.com/videos/694-build-delightful-mobile-experiences-with-kotlin-realm-and-atlas-device-sync) - [How GitHub secures open source](https://www.wearedevelopers.com/videos/1450-how-github-secures-open-source) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift)