Security Engineer - Product Security
Security Engineer - Product Security

Security Engineer - Product Security

Full-Time 36000 - 60000 £ / year (est.) No home office possible
Aircall

At a Glance

  • Tasks: Help build secure products by collaborating with engineering teams and improving security practices.
  • Company: Join Aircall, a fast-growing AI-powered customer communications platform.
  • Benefits: Enjoy competitive salary, work-life balance, and a multicultural environment.
  • Why this job: Make a real impact in product security while leveraging cutting-edge AI technologies.
  • Qualifications: 2-5 years in Product Security or software engineering with a strong security focus.
  • Other info: Be part of a diverse team and thrive in a fast-learning, entrepreneurial culture.

The predicted salary is between 36000 - 60000 £ per year.

Aircall is a unicorn, AI-powered customer communications platform used by 22,000+ companies worldwide to drive revenue, resolve issues faster, and scale customer-facing teams. We’re redefining customer communications by bringing voice, SMS, WhatsApp, and AI together into one seamless workspace.

As a Security Engineer, Product Security, you will help Aircall build and ship secure products by working closely with engineering teams and product managers to identify risk early, reduce vulnerabilities, and improve security quality across the software development lifecycle. You’ll support secure-by-design practices and help ensure security is integrated into how teams design, build, test, and release software. In this role, you’ll be hands-on across threat modelling, vulnerability detection and remediation, and security testing.

Key Responsibilities:

  • Partner with engineering teams to review designs and implementation plans, identifying security risks early and recommending mitigations.
  • Perform threat modelling for new features and major changes, helping teams document risks, assumptions, and security controls.
  • Identify and help remediate common vulnerability classes across services and APIs (e.g., auth/authz, injection, data exposure, logic flaws).
  • Triage and support remediation of vulnerabilities identified through SAST/DAST tools, internal testing, or third-party findings.
  • Conduct security testing and validation, including targeted manual testing for high-risk areas.
  • Help improve secure development practices by creating reusable guidance, checklists, and secure patterns for engineering teams.
  • Contribute to security tooling and automation that improves coverage, reduces false positives, and streamlines security reviews.
  • Assist with product security incidents by supporting investigation, impact analysis, and follow-up remediation.
  • Communicate security risks clearly and pragmatically, helping teams prioritize effectively and ship safely.
  • Document learnings and contribute to evolving product security processes and standards.

Requirements:

  • 2–5 years of experience in Product Security, Application Security, or software engineering with a strong security focus.
  • Strong understanding of web application and API security fundamentals and common vulnerability classes (OWASP Top 10).
  • Experience performing security reviews, threat modelling, or secure architecture assessments for software systems.
  • Familiarity with security testing tools and practices (SAST/DAST, dependency scanning, fuzzing, manual testing).
  • Comfort reading and reviewing production code in at least one language (e.g., Python, Go, Java, JavaScript/TypeScript).
  • Exposure to automated or AI-assisted security tools or workflows, and interest in applying them to improve developer experience and security outcomes.
  • Ability to work cross-functionally with engineering teams and communicate findings in a constructive, actionable way.
  • Proven ability to drive remediation efforts and follow through on risk reduction outcomes.

Nice-to-have:

  • Experience with cloud-native architectures (AWS/GCP/Azure), microservices, Kubernetes, service-to-service authentication, and secrets management.
  • Experience tuning security tools to reduce noise and improve signal (e.g., improving rules, baselines, or pipelines).
  • Familiarity with secure SDLC practices and security champions programs.
  • Exposure to bug bounty/vulnerability disclosure or working with external researchers.
  • Experience improving internal security automation or developer workflows (including using AI-assisted tooling).

Why join us?

  • Key moment to join Aircall in terms of growth and opportunities.
  • Our people matter, work-life balance is important at Aircall.
  • Fast-learning environment, entrepreneurial and strong team spirit.
  • 45+ Nationalities: cosmopolite & multi-cultural mindset.
  • Competitive salary package & benefits.

DE&I Statement: At Aircall, we believe diversity, equity and inclusion – irrespective of origins, identity, background and orientations – are core to our journey. We pride ourselves on promoting active inclusion within our business to foster a strong sense of belonging for all.

Security Engineer - Product Security employer: Aircall

Aircall is an exceptional employer that prioritises work-life balance and fosters a collaborative, fast-paced environment where innovation thrives. With a commitment to employee growth and a diverse, multicultural workforce, Aircall offers competitive salaries and benefits, making it an ideal place for those looking to make a meaningful impact in the tech industry. Join us in redefining customer communications while enjoying a supportive culture that values ownership and continuous learning.
Aircall

Contact Detail:

Aircall Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Security Engineer - Product Security

✨Tip Number 1

Network like a pro! Reach out to current employees at Aircall on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing a role in product security.

✨Tip Number 2

Prepare for the interview by brushing up on your technical skills. Make sure you can discuss common vulnerabilities and how to mitigate them, as well as your experience with security tools. We want to see your passion for security!

✨Tip Number 3

Showcase your problem-solving skills during interviews. Be ready to tackle hypothetical scenarios related to security risks and demonstrate how you'd approach them. This is your chance to shine!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Aircall team.

We think you need these skills to ace Security Engineer - Product Security

Product Security
Application Security
Web Application Security
API Security
Threat Modelling
Vulnerability Detection
Security Testing
SAST/DAST Tools
Manual Testing
Secure Development Practices
Cloud-native Architectures
Microservices
Kubernetes
Communication Skills
Cross-functional Collaboration

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Security Engineer role. Highlight your experience in product security and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how you can contribute to our mission at Aircall. Keep it concise but impactful, and don’t forget to show your personality!

Showcase Your Technical Skills: We love seeing technical skills in action! If you've worked with security testing tools or have experience in threat modelling, make sure to include specific examples. This will help us understand your hands-on experience and how you can hit the ground running.

Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you get all the updates directly from us. Plus, it’s super easy!

How to prepare for a job interview at Aircall

✨Know Your Stuff

Make sure you brush up on your knowledge of web application and API security fundamentals, especially the OWASP Top 10. Be ready to discuss how you've applied this knowledge in past roles, as it shows you're not just familiar with the concepts but can also implement them effectively.

✨Showcase Your Experience

Prepare specific examples from your previous work where you've performed security reviews or threat modelling. Highlight any hands-on experience with security testing tools like SAST/DAST, and be ready to explain how you’ve used them to identify and remediate vulnerabilities.

✨Communicate Clearly

Aircall values clear communication, so practice articulating complex security concepts in a straightforward manner. Think about how you would explain security risks and mitigation strategies to non-technical team members, as this will demonstrate your ability to work cross-functionally.

✨Embrace AI and Automation

Since Aircall is keen on leveraging AI for security, be prepared to discuss any experience you have with automated security tools or workflows. Share your thoughts on how AI can enhance security practices and improve developer experience, showing that you’re aligned with their innovative approach.

Security Engineer - Product Security
Aircall

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>