Security Engineer

Portage Ventures GP Inc.

Greater London

On-site

GBP 120,000 - 180,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Intropic, a financial information and software company headquartered in London's Canary Wharf, seeks a senior security lead to own the security stack across cloud, endpoints, detection and response, compliance, IT, and AI agent safety. You will set priorities, you do the work, and you answer for the results, guiding engineers as the company grows.

This role involves hardening EKS, tuning detections, scoping pentests, and enabling safe access for coding agents with after-hours incident response

Qualifications

  • 3+ years security experience spanning multiple domains.
  • Advanced, hands-on knowledge of a wide range of AWS services (EC2, S3, GuardDuty, Lambda, ECS, EKS).
  • Practical experience with Kubernetes, ideally EKS.
  • Experience threat modelling web applications and responding to real security incidents.
  • Experience using AI agents in security tooling or workflows.
  • Understanding of SOC 2 and comfort with Git.
  • Working knowledge of Jamf and endpoint management.
  • Solid scripting ability in Python or Bash to automate tasks.

Responsibilities

  • Security Engineering - 60%: secure cloud infra, detect/respond, CI/CD security checks.
  • Secure AI agents and production generative AI systems; implement mitigations.
  • Establish automated patching and guard against threats across cloud.
  • GRC - 20%: own SOC 2, conduct annual web app pentest, automate evidence collection.
  • IT - 20%: onboarding/offboarding automation, manage endpoints with Jamf/Intune, access requests.

Skills

Security engineering
AWS expertise
Kubernetes (EKS)
Threat modelling
AI security
SOC 2 familiarity
Scripting Python/Bash
IT administration

Tools

Jamf
Intune
GitLab
Google Workspace
Drata

Job description

Who We Are

Intropic is a financial information and software company operating at the cutting edge of global capital markets. We pair modern technology (elastic cloud infrastructure and agentic AI systems) with deep market expertise to build information products that the world's most sophisticated financial institutions rely on every day. Our clients include hedge funds, proprietary trading firms, index fund managers, large asset managers, sovereign wealth funds, and investment banks, who use our products to generate alpha, manage risk, and make better decisions in fast-moving markets. We're best known for our Index Rebalance Forecast products, and we're now extending that edge into several other strategies. Headquartered in London's Canary Wharf and expanding globally, we're a team that moves fast, takes real ownership, and holds itself to a high standard of rigour and integrity.

The Role

You will own the entire security stack at Intropic. Cloud, endpoints, detection and response, compliance, IT, and the security of our growing AI agent usage all sit with you. You set the priorities, you do the work, and you answer for the results.

This suits someone senior who would enjoy the opportunity to lead security at a growing FinTech, rather than operating with small scope in a large team. On a given week you might harden an EKS cluster, tune a detection, scope a pentest, and work out how to give engineers safe access to coding agents. The AI security work in particular is a largely unsolved, very interesting problem, and you will define our approach to it. The role includes out-of-hours response to security alerts.

This is a senior role, suitable for someone with 3+ years of experience in security. It may be suitable for senior security engineers wishing to transition to a lead role if you have the required experience.

Responsibilities

Security Engineering - 60%

  • Engineer and manage the security of our cloud infrastructure across AWS and GCP, from individual EC2 instances to a large EKS microservice estate.

  • Run detection and response: triage alerts, expand coverage, and keep the tooling honest. If a true positive alert fires at 9pm and it matters, you are the person who handles it.

  • Threat model new products and services before they ship, and embed security checks directly into CI/CD.

  • Define what good looks like when it comes to the security of our external SaaS app integrations. This might look like building out an apporval workflow to approve new OAuth connections for our Google accounts.

  • Secure our use of AI agents (Claude Code, Codex, and similar) and our production generative AI systems, both client facing and internal. Work with each business unit to find mitigations that protect the company without slowing it down.

  • Establish an automated patching system for systems across every part of our cloud.

GRC - 20%

  • Own SOC 2. Run the yearly Type II audit, scope the annual web application pentest, and automate as much of the evidence collection in Drata as you can.

  • Evaluate where gaps exist in our security policies and build out new policies to fill those gaps.

IT - 20%

  • Assist with running onboarding and offboarding for joiners and leavers, building any automation that makes both fast and complete.

  • Assist with managing our fleet of roughly 100 endpoints through Jamf and Intune (about 90% macOS, 10% Windows).

  • Respond to colleagues' security and IT access questions, and resolve them quickly and courteously.

  • Own and manage our core SaaS estate, including Google Workspace and GitLab access, scripting away the repetitive parts.

Requirements
  • 3+ years security experience spanning multiple domains. You don’t have to have directly led a team before although it would be a plus.

  • Advanced, hands-on knowledge of a wide range of AWS services, including but not limited to EC2, S3, GuardDuty, Lambda, ECS, and EKS

  • Practical experience with Kubernetes, ideally EKS.

  • Experience threat modelling web applications and responding to real security incidents.

  • Experience using AI agents, in your own workflow or in security tooling.

  • Understanding of SOC 2 and comfort with Git.

  • Working knowledge of Jamf.

  • Solid scripting ability in Python or Bash, enough to automate a repetitive task and glue two systems together through their APIs

  • Willingness and interest in learning and upskilling in areas of security, IT, or GRC you have not encountered before.

  • Ability to pivot quickly between different domains while keeping a high attention to detail and courteousness to end-users.

Nice to Have
  • Experience of using both Jamf and InTune at a high level.

  • Experience securing microservice architectures or EKS clusters specifically.

  • Experience using AI agents for production security workflows.

  • Ability to use SQL for detection and incident investigation.

  • Having rolled out DAST or SAST in a production environment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Intropic • Greater London

On-site
GBP 110,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Intropic • City Of London

On-site
GBP 90,000 - 140,000
Junior Security Engineer
Junior Security Engineer

Intropic • City Of London

On-site
GBP 55,000 - 90,000
Senior Security Engineer - Contract
Senior Security Engineer - Contract

United States Digital Space LLC • Greater London

On-site
GBP 70,000 - 110,000
Senior Security Engineer
Senior Security Engineer

Natter • United Kingdom

On-site
GBP 90,000 - 130,000
Security Engineer (Corporate Security)
Security Engineer (Corporate Security)

Anthropic • York and North Yorkshire

On-site
GBP 120,000 - 180,000
Comprehensive health insurance
Dental and vision coverage
15–22 weeks parental leave
Lead Security Operations Engineer
Lead Security Operations Engineer

Jobtailor • Greater London

On-site
GBP 120,000 - 170,000
Senior Systems Support & Security Engineer
Senior Systems Support & Security Engineer

BMIE Recruitment • United Kingdom

On-site
GBP 80,000 - 110,000
Director, Security Engineering
Director, Security Engineering

Optimizely • Greater London

On-site
GBP 150,000 - 210,000
Engineering Manager, Security
Engineering Manager, Security

Insignis Cash • Greater London

Hybrid
GBP 120,000 - 180,000
25 days holiday
5% Pension contributions
Private medical insurance with Vitaliy
+5