Security Engineer

Deutsche Bank AG
UK
16 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Java (Programming Language) Microsoft Windows Application Programming Interfaces (APIs) Amazon Web Services Amazon S3 Cloud Computing Cloud Computing Security Cyber Security Identity and Access Management Information Systems Security Architecture Professional Python (Programming Language)
+17 more
Network Security Systems Development Life Cycle Role-Based Access Control Azure Active Directory Zero Trust Network Access Security Information and Event Management AWS Cdk Data Logging Gitlab Microsoft InTune Gitlab-ci Information Technology AWS Fargate Microsoft Sentinel Terraform Devsecops Static Application Security Testing

Job description

You won’t be sitting in an ivory tower throwing policies over the fence. You will be embedded directly within our Platform team in a true DevSecOps capacity. Operating as a highly technical individual contributor, you will bridge the gap between product-led engineering and Corporate IT.

You will play a hands-on role in challenging the security architecture of production and corporate IT infrastructure.

In your first 6-12 months, you will design and implement our next-generation cloud security architecture across AWS and GCP, while helping to build and mature our internal SOC capabilities, including detection and response.

You will take ownership of Microsoft Sentinel, enhancing our SIEM/SOAR capabilities, and strengthen identity and access management through improved and automated RBAC across AWS, Microsoft Entra, and internal systems.

You will also drive a shift-left approach to security by embedding controls into GitLab CI/CD pipelines, including scanning, IaC reviews, and automated policy enforcement across the SDLC.

Our technology stack:

Cloud & Compute: AWS, ECS Fargate, Aurora, Lambda, GCP Data Lake: S3, DMS, Glue Security & Identity: Microsoft Defender (XDR), Microsoft Sentinel (SIEM/SOAR), Defender for Cloud (CSPM), Microsoft 365, Entra, Intune Cloud Security Tooling: GuardDuty, Security Hub, Inspector, Security Command Center Code & IaC: Python, Java, GitLab, AWS CDK, Terraform/CDK-TF Observability & Incident Management: AMP, Incident.io, * Actively contribute infrastructure-as-Code (AWS CDK, Terraform) for security risks prior to deployment

  • Implement best practice network security across AWS and GCP (IAM, VPCs, encryption, logging, monitoring)
  • Embed zero-trust policies across the estate

  • Actively challenge the security standards of production applications and infrastructure
  • Embed security controls into CI/CD pipelines (SAST, dependency scanning, container security)
  • Partner with engineering teams on secure architecture and deployment patterns
  • Support secure SDLC practices and pre-deployment security reviews

What we offer

  • Everyone owns a piece of the company - equity
  • Hybrid with 3 days a week in the office
  • 25 days’ holiday a year, plus 8 bank holidays
  • 2 paid volunteering days per year
  • One month paid sabbatical after 4 years
  • Employee loan
  • Free gym membership
  • Team wellness budget to be active together - set up a yoga class, a tennis lesson or go bouldering

Requirements

  • You are a security professional by trade, but a hacker by design. You have a strong track record in DevSecOps and cloud security engineering, with hands-on experience elevating the security posture of other organisations.
  • You are a strong Python developer. You know how to script automation, interact with APIs, and build security tooling from scratch.
  • You possess a rock-solid understanding of network security fundamentals and how they apply to modern, distributed cloud architectures.
  • You are comfortable owning both the build and run aspects of security-designing systems and responding to incidents.
  • You thrive in the dynamic, ambiguous, and fast-paced environment of a high-growth startup. You know how to balance rigorous security with engineering velocity.

About the company

We’re redefining consumer lending in the UK, and beyond. Using advanced AI and Open Banking data, we make fair, affordable personal finance available to more people. While traditional lenders rely almost entirely on credit scores, we look at the full financial picture - how much you spend, and what you can afford to repay to build a deeper, more accurate understanding of each customer’s unique financial situation.

And we’ve shown it works at scale. We’ve issued over £1.3bn in loans directly to customers while delivering market-leading credit performance - for every 10 defaults the industry expects, we see only 3. We also reached profitability just 2.5 years after launch.

Backed by £2bn+ of funding from top-tier investors including Citi, GSR Ventures, and Deutsche Bank, we’re recognised as one of Europe’s fastest-growing fintechs (Sifted, CNBC). Now, we’re expanding into new markets and product lines - and we’re looking for ambitious people who want to learn fast, take ownership, and grow with us.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:35 min

Defining a serverless architecture using AWS CDK

Raphael Manke Raphael Manke · World Congress 2023

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all