Security Engineer

StackOne

London

Hybrid

NOK 1,141,000 - 1,648,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Share options (EMI)
Lunch budget London office
Private health insurance

Job summary

StackOne, the integration infrastructure for AI agents, seeks a Security Engineer to own cloud and product security posture as we scale. You will secure the AWS and Cloudflare estate, harden the secure SDLC, run pen testing end‑to‑end, and threat‑model features powering connectors and agent execution paths.

You’ll work hands‑on in a DevSecOps heavy role, writing production code and embedding security across CI/CD, multi‑tenant APIs, and incident response.

Qualifications

  • Hands-on AWS security: IAM, KMS, networking, secrets, GuardDuty/Security Hub.
  • Fluent coding in TS/Python/Go for production code.
  • Application security fluency: OWASP Top 10, threat modeling, code reviews.
  • Experience securing a B2B SaaS multi-tenant prod environment.

Responsibilities

  • Own the secure SDLC: drive SAST, dependency scanning, secrets detection, and PR blocking across every repository.
  • Harden AWS and Cloudflare estate: IAM, secrets, network segmentation, KMS, WAF, GuardDuty, zero-trust patterns.
  • Run end-to-end pen testing engagements with AI-driven scanners and researchers; drive fixes and retest.
  • Threat-model product features before shipping: Auth provider, multi-tenant APIs, connector executions, and agent paths.
  • Build detection and response around credential and authentication flows with observability to close incidents quickly.
  • Partner with engineering for architecture reviews and security‑embedded code reviews.

Skills

AWS security
TypeScript
Python
Go
Application security
B2B SaaS multi-tenant
DevSecOps
Infrastructure as code

Tools

AWS CDK
Terraform
Cloudflare

Job description

About StackOne

StackOne is the integration infrastructure for AI agents. Backed by GV and Workday Ventures ($24M raised), we make it possible for any AI agent — whether our customers build it into their product or buy it off the shelf — to take real action across the enterprise stack. Our platform gives agents 430+ connectors and 26,000+ pre-built actions, an AI connector builder for everything not covered yet, and the production layer agents actually need: semantic tool discovery that cuts token use by up to 80%, managed authentication and per-action permissions, the most accurate prompt injection defense on the market, and end-to-end observability.

Join us on our fast trajectory to build the future of agentic integrations.

About the role

We’re looking for a Security Engineer to be a key hire on our Engineering team and own our cloud and product security posture as we scale. You’ll work across our AWS and Cloudflare estate, harden our secure SDLC, run pen testing efforts end-to-end, and threat-model the features powering our connectors, OAuth flows, and agent execution paths.

It’s a hands‑on, DevSecOps‑heavy role: you write code, ship tooling, and embed security into how engineers work every day. You’ll report directly to the CTO and have broad scope across the platform (from CI/CD pipelines to multi‑tenant APIs to incident response on authentication flows).

Responsibilities
  • Own the secure SDLC: drive SAST, dependency scanning, secrets detection, and PR‑blocking standards across every repository.

  • Harden our AWS and Cloudflare estate: IAM, secrets, network segmentation, KMS, WAF, GuardDuty, and zero‑trust patterns.

  • Run pen testing end‑to‑end: scope and coordinate engagements with both AI‑driven scanners and human researchers, then drive findings through fix and retest.

  • Threat‑model product features before they ship, new Auth provider, expanded multi‑tenant APIs, connector executions, agent tool‑calling paths etc.

  • Build detection and response capability around credential and authentication flows, with observability that closes incidents fast.

  • Partner with engineering to raise the bar day‑to‑day: architecture reviews, written standards, and security embedded in code review.

  • Use LLMs and agents to accelerate security workflows (triage, code review, evidence gathering) with guardrails you trust and help secure and monitor the (code/application/device) fleet.

  • Support compliance work where it intersects security engineering: SOC 2, ISO 27001, customer security reviews, and pen test responses.

What we’re looking for
  • 3+ years in security engineering with hands‑on AWS security: IAM, KMS, networking, secrets, GuardDuty / Security Hub.

  • Strong coding ability in TypeScript or Python or Go comfortable shipping production code, not just configs and scripts.

  • Application security fluency: OWASP Top 10, threat modeling, and code‑level reviews on real systems.

  • Experience securing a B2B SaaS multi‑tenant production environment.

  • Comfort owning end‑to‑end work: scope, ship, measure. You don’t wait for a queue.

  • Clear communication with engineers, product, and non‑technical stakeholders.

  • Bias toward automating security checks instead of running manual checklists.

  • (Preferred) IaC fluency in AWS CDK or Terraform , comfortable reviewing infrastructure code for security misconfigs and writing custom scanning rules.

  • (Preferred) Experience with Aikido, Drata, Cloudflare Workers, or pen testing in a compliance‑mature environment.

Our Stack

We’re pragmatic about tooling. Today’s stack includes:

  • Cloud & infra: AWS (ECS, RDS, Lambda, KMS, GuardDuty, Security Hub, Inspector), Cloudflare (Workers, WAF, Zero Trust)

  • IaC: AWS CDK, Terraform

  • Security tooling: Aikido (SAST, DAST, container scanning, pen testing), 1Password, GitHub (org‑level enforcement, Advanced Security)

  • Compliance & ops: Drata, Iru, EasyLlama

  • Observability & IR: Datadog, Sentry, Logfire, Incident.io

  • Languages: TypeScript (Node.js), Python

Benefits
  • Meaningful share options (EMI) - share in the company’s success as we grow

  • 25 days holiday + 1 additional day per year of tenure

  • Private health insurance - including dental & optical

  • £15/day lunch budget when working from our London office, up to £120/month

  • £1,000 for your home office set up + £500/year top‑up

  • Annual team offsite to sunny spots (last ones were in Spain and Portugal)

  • Join one of Europe’s fastest‑growing startups

  • Work with a veteran team of ex‑employees of Google, Microsoft, Oracle, Coinbase, JP Morgan and more

  • Health, fitness and gift card discounts

  • Cycle2Work and Electric Cars scheme

  • Hybrid working friendly - typically 2 days/week in our London office. We’re open to discussing flexible arrangements—please share any preferences in your application

We believe diversity drives innovation. We encourage individuals from all backgrounds to apply. As an equal‑opportunity employer, we celebrate diversity and are committed to creating an inclusive environment for all employees.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Consultant
Senior Security Consultant

10x Banking • London

Hybrid
NOK 1,141,000 - 1,521,000
Remote-enabled working
Private health insurance
Pension scheme
+2
Cloud & App Security Engineer — Hybrid + Share Options
Cloud & App Security Engineer — Hybrid + Share Options

StackOne • London

Hybrid
NOK 1,141,000 - 1,648,000
Share options (EMI)
Lunch budget London office
Private health insurance
Security Engineer
Security Engineer

Apolloresearch • London

Hybrid
NOK 1,822,000 - 2,379,000
Competitive salary & equity
Flexible work hours
Unlimited vacation & sick leave
+2
Senior Cloud Engineer (Multiple)
Senior Cloud Engineer (Multiple)

Cloudscaler • London

On-site
NOK 883,000 - 1,199,000
Discretionary bonus
Discretionary security clearance bonus
Discretionary utilisation bonus
+10
Senior Forward Deployed Engineer
Senior Forward Deployed Engineer

Scope AI • London

On-site
NOK 1,522,000 - 1,903,000
Visa sponsorship
MacBook laptop
Equity in scope
+6
Security Engineer
Security Engineer

COL Limited • London

On-site
NOK 1,827,000 - 2,385,000
Unlimited vacation
Relocation and visa support
Comprehensive health insurance
+1
Security Platform Engineer
Security Platform Engineer

Assessit • Stavanger

On-site
NOK 900,000 - 1,200,000
Forward Deployed Engineer (Product)
Forward Deployed Engineer (Product)

Apolloresearch • London

On-site
NOK 2,079,000 - 2,715,000
Flexible work hours
Unlimited vacation
Relocation support & visa sponsorship
Principal Cloud Engineer (Multiple)
Principal Cloud Engineer (Multiple)

Cloudscaler • London

On-site
NOK 1,199,000 - 1,640,000
Discretionary bonus
Discretionary security clearance bonus
25 days’ annual leave
+2
Full-stack Software Engineer (Product)
Full-stack Software Engineer (Product)

COL Limited • London

On-site
NOK 1,890,000 - 2,474,000
Equity
Flexible hours
Unlimited vacation
+3