Security Engineer (Product Security)

Searchability

City Of London

Remote

GBP 80,000 - 90,000

Full time

14 days+
Application generator

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Excellent benefits

Job summary

Searchability is seeking a Security Engineer (Product Security) in London. This remote-first role involves embedding security across the software development lifecycle, triaging vulnerabilities, and working with developers to remediate findings.

You will review unfamiliar code, monitor security tooling and CI/CD pipelines, and contribute to AI-assisted security workflows to improve automation and secure design. This is a hands-on, highly technical position with impact across products.

Qualifications

  • 3–5 years hands-on Product Security or DevSecOps experience.
  • Strong understanding of application vulnerabilities and real-world risk.
  • Experience reviewing source code and security tool findings.
  • Worked with software engineers to remediate security issues.
  • Hands-on experience with SAST, DAST, SCA in CI/CD.
  • Knowledge of threat modelling and secure software development.
  • Some coding/scripting to understand code and automate.
  • Independent, ownership, openness to feedback.
  • Desirable: offensive security experience and AI tooling in security.

Responsibilities

  • Investigate and triage vulnerabilities, assess exploitability and risk.
  • Review unfamiliar source code with developers on remediation.
  • Monitor security tooling and CI/CD pipelines; troubleshoot failures.
  • Use SAST, DAST, SCA to support secure development.
  • Conduct threat modelling and secure design reviews for new features.
  • Validate fixes and identify root causes to reduce recurrences.
  • Use AI agents for code review and triage.
  • Improve security automation, tooling and developer workflows.
  • Support cloud, container, Kubernetes and software supply-chain security.
  • Work independently within a small team and share ideas.

Skills

SAST
DAST
SCA
CI/CD Security
Threat Modelling
Secure SDLC
Code Review
Automation
Cloud Security
Kubernetes
Python
PowerShell
C#
.NET

Job description

Security Engineer (Product Security)

Salary: £80,000 – £90,000 + Excellent Benefits
Location: London (Remote-first with occasional travel to the office)
Employment: Full Time, Permanent

This is an opportunity to join a high-growth, PE-backed cybersecurity software company where security isn’t simply a support function – it’s at the heart of the product itself.

Trusted by Government, Defence, Financial Services and Critical National Infrastructure organisations worldwide, the business develops market-leading technology that protects organisations from advanced file-based cyber threats.

We’re looking for a hands‑on Security Engineer who enjoys getting into the detail of vulnerabilities, understanding how applications behave and working directly with developers to make software more secure.

This isn’t a traditional vulnerability management, SOC or governance position.

Instead, you’ll join a small Security Engineering team where you’ll investigate security findings, assess real‑world exploitability and risk, monitor security tooling and help engineering teams remediate issues effectively.

If you’re happiest opening unfamiliar code, understanding why a vulnerability matters and solving security problems alongside developers rather than simply raising tickets, this could be a great fit.

The Role

You’ll join a small, high‑impact Security Engineering team, working closely with Product and Engineering to embed security throughout the software development lifecycle.

Your initial focus will include vulnerability triage and monitoring security tooling pipelines, investigating findings from automated tools and understanding their practical risk.

You’ll also work with AI‑assisted security workflows used for code review and triage, with the opportunity to help improve the agents and automation already in place.

This is a hands‑on role where you will be trusted to investigate problems independently, work collaboratively with developers and proactively suggest improvements.

Key Responsibilities
  • Investigate and triage application and product security vulnerabilities, assessing practical exploitability and business risk.
  • Review unfamiliar source code to understand security findings and work with developers on remediation.
  • Monitor and troubleshoot security tooling and CI/CD pipelines, investigating failures and root causes.
  • Use SAST, DAST, SCA and other automated security tooling to support secure software development.
  • Conduct threat modelling and secure design reviews for new features, services and architecture changes.
  • Validate fixes and identify root causes to reduce recurring vulnerabilities.
  • Use AI agents and AI‑assisted tooling to support code review, vulnerability triage and security analysis.
  • Contribute to improving security automation, tooling and developer workflows.
  • Support cloud, container, Kubernetes and software supply‑chain security where relevant.
  • Work independently within a small team, proactively identifying improvements and sharing ideas.
What We’re Looking For

You’ll probably be a great fit if you’ve:

  • Around 3-5 years of hands‑on Product Security, Application Security, DevSecOps or closely related Security Engineering experience.
  • A strong practical understanding of application vulnerabilities and how to assess their real‑world risk.
  • Experience reviewing source code and interpreting findings from security tools.
  • Worked directly with software engineers to prioritise and remediate security issues.
  • Hands‑on experience with SAST, DAST, SCA or similar security tooling within CI/CD environments.
  • Practical knowledge of threat modelling and secure software development.
  • Enough coding or scripting knowledge to understand unfamiliar code and contribute to automation.
  • The confidence to work independently, take ownership and remain open to learning and feedback.
  • Highly Desirable
  • Penetration testing or offensive security experience, particularly if you want to move into defensive Product Security.
  • Experience using AI or agentic AI within security engineering, code review or vulnerability triage.
  • Experience securing LLMs, AI agents, MCP or other AI‑enabled systems.
  • Cloud, container or Kubernetes security experience, plus exposure to C#, .NET, Python, Bash or PowerShell.
This Role Probably Isn’t For You If…
  • Your experience is primarily GRC, audit, compliance or policy.
  • Your background is traditional vulnerability management focused mainly on running scanners, raising tickets and chasing remediation.
  • Your experience is predominantly SOC, detection or infrastructure security without meaningful application security exposure.
  • You’re looking for a management‑heavy role rather than remaining technically hands‑on.
  • You prefer purely offensive security and don’t want to move towards defensive Product Security.

Key Skills: Security Engineer, Product Security Engineer, Application Security Engineer, DevSecOps Engineer, Product Security, Application Security, Vulnerability Analysis, Secure SDLC, Threat Modelling, SAST, DAST, SCA, CI/CD Security, AI Security, Security Automation, Penetration Testing, Cloud Security, Cyber Security.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Product Security Engineer
Senior Product Security Engineer

Formula. • Greater London

Hybrid
GBP 108,000 - 132,000
Equity
Private healthcare
Pension
+1
Software Security Engineer
Software Security Engineer

Data Science Festival • Greater London

On-site
GBP 90,000 - 150,000
Hybrid working model
Pension scheme
Generous holiday allowance
Senior Security Engineer
Senior Security Engineer

Data Science Festival • Greater London

On-site
GBP 100,000 - 135,000
Generous holiday allowance
Pension scheme
Ongoing learning and professional development
+2
Lead Software Security Engineer
Lead Software Security Engineer

United States Digital Space LLC • Greater London

Hybrid
GBP 135,000 - 165,000
Pension scheme
Generous holiday allowance
Ongoing learning and professional development
Product Security Engineer
Product Security Engineer

Arrows • Greater London

Hybrid
GBP 100,000 - 140,000
Sponsorship can be considered
Two-stage interview process
Product Security Engineer
Product Security Engineer

Selby Jennings • Greater London

On-site
GBP 70,000 - 110,000
Hospitality
Security Engineer - Product
Security Engineer - Product

United States Digital Space LLC • Greater London

On-site
GBP 90,000 - 150,000
Security Engineer
Security Engineer

Fruition Group • England

On-site
GBP 70,000 - 110,000
Product Security Engineer
Product Security Engineer

SRT Marine Systems plc • West of England

On-site
GBP 70,000 - 110,000
Highly Competitive Salary and benefits
25 days annual leave rising to 28
Development opportunities
Security Engineer
Security Engineer

GBV Ltd • Preston

On-site
GBP 54,000 - 66,000
Bonus
Benefits