wagey.ggwagey.gg
30,244  jobs30,244  jobs
Browse Tech JobsCompaniesFeaturesPricingFAQs
Log InGet Started Free
Jobs(30,244)/Security Engineer Role(367)/cmgx (2) - Senior Security Engineer
cmgx

cmgx - Senior Security Engineer

Remote - London$83k - $83k+ Equity1w ago
RemoteSeniorEMEABankingFintechSecurity EngineerRisk ManagementGovernanceDocumentationAzureBashPythonCircomPhoenix

Requirements

• Have 6+ years of hands-on security experience, with real depth in security risk management: threat modeling, risk assessments, and security design and architecture review. • Have run governance, risk, and compliance work in practice, including audit and customer due-diligence support (SOC 2 or similar), and made it operational rather than just documented. • Have thrived in a startup or other small, fast-paced environment, owning large, ambiguous initiatives end-to-end with little scaffolding and shipping them. • Have working breadth across the control landscape: cloud security, supply-chain and vulnerability management, endpoint and identity, and detection and response. • Are genuinely technical: comfortable in cloud environments (Azure preferred), CI/CD, and at least one scripting language (e.g. Python, Bash, PowerShell), so your controls hold up in engineering reality. • Lead with empathy and influence, and distill complex security concepts into clear, actionable guidance for technical and non-technical audiences alike. • Thrive navigating ambiguity and make sound, risk-based calls with incomplete information. • Work effectively in a remote-first setup: most of the team is remote, with a small London in-office presence, so you communicate crisply and operate well asynchronously. • Navigate an organization to get things done you know who to pull in for information or alignment, and you drive that alignment without formal authority. • Have banking, fintech, or other regulated industry experience. • Use AI tooling fluently in your own day-to-day work and are eager to integrate it into security workflows as a force multiplier. • Have a bias toward automating repeatable security work — scripting, tooling, and process — to scale your impact. • Be familiar with AI and agentic security risks (prompt injection, data poisoning, model and agent governance). • Have experience mapping security frameworks (NIST CSF, ISO 27001, OWASP, NIST AI RMF). • Have hands-on exposure to detection and response, red-team, or pen-test work. • Have experience with our stack: Azure / Entra ID, GitHub Enterprise Cloud (GHAS, Actions, Dependabot), Sentinel, Zscaler, Intune, Vanta, and the Atlassian suite. • Hold relevant certifications (e.g. CISSP, CRISC, OSCP) — valued but not required. • We innovate with purpose • We focus on outcomes vs. output • We believe diverse and inclusive teams fuel innovation • We are humble yet candid • We do right by the customer

Responsibilities

• Security Risk Management • Lead threat modeling across products, infrastructure, and new initiatives, identifying and prioritizing risks, attack surfaces, and vulnerabilities. • Conduct security risk assessments and translate findings into pragmatic, risk-based remediation prioritized by impact and blast radius. • Run security design and architecture reviews, partnering with Engineering and DevOps to reduce risk through secure design and simplicity, not just added controls. • Governance, Risk & Compliance • Partner on customer due-diligence (DDQ) and SOC 2 Type II evidence gathering, keeping compliance sustainable rather than fire-drilled. • Build repeatable security workflows that embed controls into existing engineering processes instead of creating parallel ones. • Develop and maintain clear, role-relevant security policies, standards, and procedures, and drive consensus without direct authority. • Security Controls and Technical Program Execution • Understand and implement controls for supply-chain risk and vulnerability management, including CI/CD enforcement and dependency hygiene, and build vulnerability triage workflows that score real risk by exploitability, reachability, and compensating controls rather than raw CVSS. • Harden and secure our cloud environment (Azure), partnering with platform engineering on secure configuration, reviewing and remediating vulnerabilities, identity and network controls, posture management, and logging and detection. • Strengthen endpoint and identity controls across a global, remote workforce: least privilege, phishing-resistant MFA, and privileged access controls. • Support detection and response, partnering with our DFIR and MDR relationships and helping mature toward a proactive posture. • Address AI security risks (prompt injection, data poisoning, model and agent governance) and help keep AI controls ahead of adoption. • Cross-functional Leadership and Program Ownership • Take ownership of large, loosely defined initiatives and drive them from problem framing to operationalized program. • Work closely with senior leadership across the firm, bringing structure to ambiguity and sequencing work against risk. • Surface risk early, challenge assumptions, and communicate clearly to both technical teams and senior stakeholders.

Benefits

• Unlimited PTO (28 days including bank holidays + unlimited additional paid leave) • Comprehensive benefits program managed by Globalization Partners • Premium life and income protection • Top private medical and dental insurance • Employee Assistance Program (EAP) • Pension contributions • Hybrid work environment (initially remote until office setup is complete) • Education reimbursement • Continuous learning opportunities • Employee referral bonus

Apply in one click

Upload My Resume

Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT

Apply in One Click
Apply in One Click

Similar roles

clearbankclearbank - Security Engineer1w ago
·London Office - Hybrid
In OfficeEMEABankingFintechSecurity EngineerExcelLearning & DevelopmentAzure.NETKubernetesTerraformGovernance
DataDomeDataDome - Senior Security Engineer1mo ago
·Remote - France·€200/hour/year
RemoteEMEASeniorSoftwareLogisticsSecurity EngineerRisk ManagementGovernanceClose
menlosecuritymenlosecurity - Senior Security Engineer4mo ago
·Bracknell, Berkshire, United Kingdom - Hybrid·Equity
In OfficeEMEASeniorCybersecuritySoftwareSecurity EngineerRisk ManagementGoogle WorkspaceGovernance
airappsairapps - Security Engineer3mo ago
·London, London Metropolitain Area, UK·€61k - €76k/year
In OfficeEMEAMidCybersecurityCloud ComputingSecurity EngineerBashPythonAWSGCPAzure
mazehqmazehq - Security Engineer (Internal)1mo ago
·Remote - (Europe)·€100k - €130k/year + Equity
RemoteEMEASeniorCybersecurityCloud ComputingSecurity EngineerBashPythonTeam LeadershipAWSTerraform
LedgerLedger - Senior Security Operations Engineer1mo ago
·Paris, France, Metropolitan
In OfficeEMEASeniorCloud ComputingSoftwareSecurity EngineerDocumentationAWSKubernetesBashSplunk
Brunswick GroupBrunswick Group - Security Engineer1mo ago
·London, England, United Kingdom
In OfficeEMEASeniorCybersecurityCloud ComputingSecurity EngineerMicrosoft 365AzureClaudeCircomACCA
light-inclight-inc - Bank Connectivity Engineer1mo ago
·London, England, United Kingdom·Equity
In OfficeEMEAMidBankingFintechSecurity EngineerProduct MarketingKotlinJavaPythonGo
arqarq - Security Engineer, Senior1w ago
·London·Equity
In OfficeEMEASeniorBankingFintechSecurity EngineerAWSKubernetesGoogle WorkspaceCloudflareDue DiligenceDatadog

Browse more by category

Show 367 moreSecurity EngineerShow 765 moreRisk ManagementShow 1,523 moreGovernanceShow 4,736 moreDocumentationShow 1,176 moreAzureShow 321 moreBashShow 4,673 morePythonShow 53 moreCircomShow 117 morePhoenix
Privacy·Terms··Contact·FAQ·Wagey on X