> Markdown version of [/jobs/ext/2838542-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/2838542-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** Primer - **Location:** UK (Remote available) - **Experience:** Expert - **Salary:** £57,965.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cloud Computing, Intrusion Detection and Prevention, Software Security, Cyber Threat Analysis - **Published:** September 11, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5877268020 ## About the Role * Working experience in product or application security: you've done security reviews or threat modelling and can spot the risks that matter * The ability to read and write code, not just review it. You're comfortable building small tools and automation rather than only filing findings * Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly * The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer * Clear communication with engineers who aren't security specialists, since most of your impact lands through their work Nice to have: * Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them * Background in payments, fintech, or another regulated, high-stakes domain * Interest in areas like supply chain security, detection engineering, or AI security * It's remote-first and high autonomy. You'll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable * You'll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role. ## Description Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform. Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, we're building the payments layer the world's best companies rely on. Watch our showcase > Read up on our $100m Series C Learn more about our culture > You'll be joining the ProdSec/AppSec team to help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. You'd be the second hire, and the person that function finally gets to share the work with. This is a hands-on delivery role, and a genuinely formative one. You'll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. You'll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end. Security at Primer sits close to the engineering teams it protects rather than off to one side, so you'll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function that's only now scaling. * Running security reviews and threat modelling on features and systems across Primer's product, and turning findings into clear, actionable guidance for the teams shipping them * Independently planning and delivering your own security projects, from initial design through to rollout * Building tooling and automation that makes future reviews faster and cheaper to run * Coordinating penetration testing and tracking remediation through to closure * Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows * Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM * Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for * Working alongside Cloud, Infra, and GRC on the security aspects of their projects ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)