Senior Security Engineer
Intropic
Senior Security Engineer Overview
| Company Name | Intropic |
| Job Role | Senior Security Engineer |
| Qualifications | Not Specified |
| Category | IT Jobs |
| Job Type | Full Time |
| Location | London |
Intropic, a leading financial information and software company operating at the forefront of global capital markets, is seeking a Senior Security Engineer to join their team in London. The company specializes in leveraging modern technology such as elastic cloud infrastructure and advanced AI systems to develop information products relied upon by some of the world’s most sophisticated financial institutions, including hedge funds, asset managers, and investment banks. Headquartered in London’s Canary Wharf, Intropic values a fast-moving, ownership-driven culture with high standards of integrity and rigor.
Role Overview
The Senior Security Engineer will be responsible for managing and securing the entire security stack at Intropic. This includes cloud security, endpoint protection, detection and response systems, compliance, IT operations, and the security of AI agent deployments. The role requires setting priorities, executing security tasks, and being accountable for results, making it ideal for someone who enjoys leading security efforts in a growing FinTech environment rather than working within a small scope.
Weekly activities may involve hardening cloud clusters, tuning detection systems, conducting penetration tests, and designing secure access for engineers working with AI agents. The role also involves responding to security alerts outside of regular hours. Candidates should have at least three years of hands-on security experience across multiple domains.
Key Responsibilities
- Security Engineering (60%): Manage security across AWS and GCP, including EC2, S3, GuardDuty, Lambda, ECS, and EKS. Handle detection and response activities, triaging alerts, expanding coverage, and maintaining tooling integrity. Conduct threat modeling for new products, embed security into CI/CD pipelines, and secure integrations with external SaaS applications such as OAuth workflows. Secure AI systems used internally and externally, collaborating with business units to implement mitigations and automating patch management across cloud systems.
- Governance, Risk, and Compliance (GRC) (20%): Oversee SOC 2 compliance activities, including managing annual audits and penetration tests. Automate evidence collection processes and identify gaps in security policies, developing new policies as needed.
- IT Operations (20%): Support onboarding and offboarding processes through automation, manage approximately 100 endpoints using Jamf and Intune, and respond to security and IT access queries efficiently. Manage core SaaS platforms like Google Workspace and GitLab, automating routine tasks to streamline operations.
Candidate Requirements
- At least three years of practical security experience across various domains, with a focus on cloud security and incident response.
- Deep hands-on knowledge of AWS services such as EC2, S3, GuardDuty, Lambda, ECS, and EKS.
- Experience working with Kubernetes, especially Amazon EKS, including securing microservice architectures.
- Ability to perform threat modeling for web applications and respond to real security incidents effectively.
- Experience integrating AI agents into workflows or security tools.
- Understanding of SOC 2 standards and experience managing related audits.
- Familiarity with Git and scripting skills in Python or Bash for automation tasks.
- Willingness to learn new security, IT, or GRC topics and adapt quickly across different technical areas.
- Strong attention to detail, excellent communication skills, and a courteous approach to colleagues.
Preferred Skills
- Experience with device management platforms like Jamf and Intune at a high level.
- Experience securing microservice architectures or EKS clusters specifically.
- Experience using AI agents for security workflows in production environments.
- Ability to use SQL for detection and incident investigation.
- Experience deploying DAST or SAST tools in production environments.
Intropic offers a unique opportunity to lead security initiatives within a dynamic, innovative company. The role involves working with cutting-edge technology, including cloud infrastructure, AI security, and automation, in a collaborative environment that emphasizes ownership and high standards.
Note: The job listing does not specify any information regarding visa sponsorship or work authorization. This role is not explicitly marked as eligible for sponsorship.
Degree Requirement: Not Specified
Visa Sponsorship May be
To apply for this job please visit jobs.lever.co.