Security Engineer (Product Security)

Aircall

Greater London

On-site

GBP 60,000 - 80,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary package
Work-life balance
Fast-learning environment
Multicultural team atmosphere

Job summary

A leading technology firm in Greater London is looking for a Security Engineer, Product Security to enhance secure product development processes. You will collaborate with engineering teams to identify early security risks, conduct threat modelling, and improve overall security practices. Ideal candidates have 2–5 years in Product Security, a strong grasp of web application security fundamentals, and experience with automated security tools. This position offers significant growth opportunities within a diverse and inclusive environment.

Qualifications

  • 2–5 years of experience in Product Security or software engineering with a security focus.
  • Strong understanding of common vulnerability classes like OWASP Top 10.
  • Experience performing security reviews and threat modelling for software systems.

Responsibilities

  • Partner with engineering teams to identify security risks early.
  • Perform threat modelling for new features and major changes.
  • Identify and remediate common vulnerabilities across services.

Skills

Web application and API security fundamentals
Threat modelling
Security reviews
Cross-functional communication

Tools

SAST/DAST tools
Python
Go
Java
JavaScript/TypeScript

Job description

Overview

Aircall is a unicorn, AI-powered customer communications platform used by 22,000+ companies worldwide to drive revenue, resolve issues faster, and scale customer-facing teams. We’re redefining customer communications by bringing voice, SMS, WhatsApp, and AI together into one seamless workspace.

Our momentum comes from a simple idea: help teams work smarter, not harder. Aircall’s AI Voice Agent automates routine calls, AI Assist streamlines post-call work, and AI Assist Pro delivers real-time guidance so people can do their best work. The result is higher revenue, faster resolutions, and teams that scale with confidence.

Aircall is headquartered in Paris, our European HQ, with a strong North American presence anchored in Seattle, our North American HQ, and teams across Madrid, London, Berlin, San Francisco, New York City, Sydney, and Mexico City. We’ve built a product customers love and a business that’s scaling quickly, backed by world-class investors and driven by rapid AI innovation across multiple product lines.

At Aircall, you’ll join a company in motion. We’re ambitious, product-driven, and execution-focused, with visible impact, fast decisions, and real growth.

How we work at Aircall

We’re customer-obsessed, data-driven, and focused on delivering meaningful outcomes. We value ownership, continuous learning, and thoughtful speed. If you thrive in a collaborative, fast-moving environment where trust and impact matter, you’ll feel at home here.

About the role

As a Security Engineer, Product Security, you will help Aircall build and ship secure products by working closely with engineering teams and product managers to identify risk early, reduce vulnerabilities, and improve security quality across the software development lifecycle. You’ll support secure-by-design practices and help ensure security is integrated into how teams design, build, test, and release software.

In this role, you’ll be hands-on across threat modelling, vulnerability detection and remediation, and security testing. You will partner with engineers to make security practical and actionable — helping teams move quickly while raising the security bar. You\'ll also have a strong bias to leveraging AI to scale.

Key Responsibilities
  • Partner with engineering teams to review designs and implementation plans, identifying security risks early and recommending mitigations.
  • Perform threat modelling for new features and major changes, helping teams document risks, assumptions, and security controls.
  • Identify and help remediate common vulnerability classes across services and APIs (e.g., auth/authz, injection, data exposure, logic flaws).
  • Triage and support remediation of vulnerabilities identified through SAST/DAST tools, internal testing, or third-party findings.
  • Conduct security testing and validation, including targeted manual testing for high-risk areas.
  • Help improve secure development practices by creating reusable guidance, checklists, and secure patterns for engineering teams.
  • Contribute to security tooling and automation that improves coverage, reduces false positives, and streamlines security reviews.
  • Assist with product security incidents by supporting investigation, impact analysis, and follow-up remediation.
  • Communicate security risks clearly and pragmatically, helping teams prioritize effectively and ship safely.
  • Document learnings and contribute to evolving product security processes and standards.
Requirements
  • 2–5 years of experience in Product Security, Application Security, or software engineering with a strong security focus.
  • Strong understanding of web application and API security fundamentals and common vulnerability classes (OWASP Top 10).
  • Experience performing security reviews, threat modelling, or secure architecture assessments for software systems.
  • Familiarity with security testing tools and practices (SAST/DAST, dependency scanning, fuzzing, manual testing).
  • Comfort reading and reviewing production code in at least one language (e.g., Python, Go, Java, JavaScript/TypeScript).
  • Exposure to automated or AI-assisted security tools or workflows, and interest in applying them to improve developer experience and security outcomes.
  • Ability to work cross-functionally with engineering teams and communicate findings in a constructive, actionable way.
  • Proven ability to drive remediation efforts and follow through on risk reduction outcomes.
Nice-to-have
  • Experience with cloud-native architectures (AWS/GCP/Azure), microservices, Kubernetes, service-to-service authentication, and secrets management.
  • Experience tuning security tools to reduce noise and improve signal (e.g., improving rules, baselines, or pipelines).
  • Familiarity with secure SDLC practices and security champions programs.
  • Exposure to bug bounty/vulnerability disclosure or working with external researchers.
  • Experience improving internal security automation or developer workflows (including using AI-assisted tooling).

Why join us?

🚀 Key moment to join Aircall in terms of growth and opportunities

💆♀️ Our people matter, work-life balance is important at Aircall

📚 Fast-learning environment, entrepreneurial and strong team spirit

🌍 45+ Nationalities: cosmopolite & multi-cultural mindset

💶 Competitive salary package & benefits

DE&I Statement:

At Aircall, we believe diversity, equity and inclusion – irrespective of origins, identity, background and orientations – are core to our journey.

We pride ourselves on promoting active inclusion within our business to foster a strong sense of belonging for all. We’re working to create a place filled with diverse people who can enrich and learn from one another. We’re committed to ensuring that everyone not only has a seat at the table but is valued and respected at it by providing equal opportunities to develop and thrive.

We are strongly committed to hiring a diverse and multicultural team and we encourage applications from traditionally underrepresented backgrounds.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Data Engineer - Real time analytics
Senior Data Engineer - Real time analytics

Jackalope Digital LLC • Greater London

Hybrid
GBP 70,000 - 110,000
Health coverage
Lunch
Commuting benefits
+1
Strategic Partner Account Manager UKI & Nordics
Strategic Partner Account Manager UKI & Nordics

Aircall.io, Inc. • Greater London

Hybrid
GBP 90,000 - 120,000
Partnership Intern - UKI & Nordics
Partnership Intern - UKI & Nordics

Aircall • Greater London

Hybrid
GBP 18,000 - 24,000
Strategic Partner Account Manager UKI & Nordics
Strategic Partner Account Manager UKI & Nordics

Aircall • Greater London

Hybrid
GBP 90,000 - 120,000
Global HR Ops & Payroll Manager
Global HR Ops & Payroll Manager

Aircall • Greater London

On-site
GBP 110,000 - 150,000
Global HR Ops & Payroll Manager
Global HR Ops & Payroll Manager

Embedded Shishya • Greater London

On-site
GBP 110,000 - 150,000
Competitive salary package
Security Engineering Lead
Security Engineering Lead

United States Digital Space LLC • Greater London

On-site
GBP 120,000 - 150,000
Equity in an early-stage tech company
25 days holiday plus local public hols
Apple hardware
+4
Managing Director North / UKI
Managing Director North / UKI

Jackalope Digital LLC • Greater London

Hybrid
GBP 180,000 - 240,000
Staff Business Systems Analyst - GTM Systems
Staff Business Systems Analyst - GTM Systems

Aircall.io, Inc. • Greater London

On-site
GBP 90,000 - 120,000
Security Lead
Security Lead

Taktile • Greater London

On-site
GBP 110,000 - 190,000
Equity
Self-development budget
Home office setup
+1