At a Glance
- Tasks: Design and implement secure backend services using Java or Kotlin.
- Company: Join Anaplan, a leader in AI-infused business planning solutions.
- Benefits: Inclusive culture, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact on security for top global companies.
- Qualifications: Experience in Java/Kotlin and expertise in modern identity protocols.
- Other info: Collaborative environment with a focus on diversity and innovation.
The predicted salary is between 48000 - 72000 ÂŁ per year.
At Anaplan, we are a team of innovators focused on optimizing business decision‑making through our leading AI‑infused scenario planning and analysis platform so our customers can outpace their competition and the market. Our customers rank among the who’s who in the Fortune 50. Coca‑Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best‑in‑class platform.
You’ll join the Platform & AI Enablement team within our GPTO Engineering organization, as part of the Data Orchestration domain. The team is responsible for building core capabilities that power our data and AI infrastructure—enabling scalable, resilient, and intelligent systems to support enterprise‑scale Business Planning Software solutions.
We are looking for a Senior Security Engineer with deep experience in Java/Kotlin and a strong background in authentication, authorization, integrations, and secure platform architecture. You will design and build services that integrate with third‑party identity providers, manage multi‑tenant access patterns, enforce security controls, and contribute to the long‑term strategy of how our platform securely interacts with customers and external products. This role requires strong systems thinking, hands‑on engineering ability, and the experience to guide architectural decisions that keep our platform robust, trustworthy, and enterprise‑grade.
Your Impact- Design and implement secure backend services using Java or Kotlin, with a heavy focus on authentication, authorization, and cross‑system integrations.
- Lead the architecture for identity and access integrations, including OAuth2/OIDC, SCIM, SAML, mTLS, and certificate‑based access pattern.
- Define platform‑wide security patterns for multi‑tenant isolation, key lifecycle management, token issuance, secrets handling, and secure API‑to‑API communication.
- Own integrations with external identity providers such as Okta, Auth0, Ping, Azure Entra, and other enterprise IdPs.
- Develop and operate features for authorization using policy engines like Open Policy Agent (OPA) and Rego‑based policy evaluation.
- Collaborate with platform and infrastructure teams to ensure services integrate securely with mesh‑based architectures (e.g., Istio) and workload identity systems (SPIFFE/SPIRE).
- Contribute to the strategy around compliance and governance, including GDPR, data minimization, auditability, and least‑privilege design.
- Build high‑quality internal libraries and SDKs to make security integration and best practices accessible across engineering teams.
- Collaborate cross‑functionally with product, platform, SRE, and frontend engineers to deliver secure, seamless user flows.
- Participate in threat modeling and platform architecture sessions, helping shape how application code interacts with infrastructure security controls.
- Mentor and guide other engineers, promoting secure coding practices and elevating the maturity of the engineering organization.
- Experienced in backend development in Java or Kotlin.
- Proven expertise in OAuth2, OIDC, JWT, SAML, and modern identity protocols.
- Hands‑on experience integrating with enterprise identity providers (Okta, Auth0, Ping, Entra, ForgeRock, etc.).
- Strong knowledge of mTLS, certificate‑based auth, PKI, CA chains, CSR workflows, and certificate rotation.
- Experience with multi‑tenant architectures, isolation strategies, and developing secure APIs for B2B SaaS products.
- Solid understanding of Zero Trust principles, workload identity (e.g. SPIFFE/SPIRE), and secure service mesh patterns.
- Exposure to Open Policy Agent, Rego, and runtime authorization systems.
- Familiar with regulatory and compliance concerns such as GDPR, data residency, and audit logging requirements.
- Strong grasp of core engineering fundamentals: concurrency, resilient systems, distributed systems concepts, and performance tuning.
- Experience with API security: Personal Access Tokens, API keys, signature schemes, rate limiting, and revocation flows.
- Ability to work end‑to‑end across design, implementation, testing, and deployment.
- Experience working in international and distributed teams.
- Familiarity with cloud‑agnostic architectures.
- Exposure to observability tools and practices.
- Experience contributing to long‑term technology strategy.
Senior Security Engineer in Manchester employer: Anaplan
Contact Detail:
Anaplan Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Security Engineer in Manchester
✨Network Like a Pro
Get out there and connect with folks in the industry! Attend meetups, webinars, or even just grab a coffee with someone who works at Anaplan. Building relationships can open doors that a CV just can't.
✨Show Off Your Skills
When you get the chance to chat with recruiters or during interviews, don’t hold back! Share specific examples of your work, especially those that align with security engineering. Let them see how you can add value to their team.
✨Research the Company Culture
Dive into Anaplan’s values and culture before your interview. Knowing about their commitment to diversity and innovation will help you tailor your responses and show that you’re a great fit for their Winning Culture.
✨Follow Up with Flair
After your interview, send a thank-you note that highlights something specific from your conversation. It shows you’re genuinely interested and keeps you fresh in their minds. Plus, it’s a nice touch!
We think you need these skills to ace Senior Security Engineer in Manchester
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior Security Engineer role. Highlight your experience with Java/Kotlin and any relevant security protocols like OAuth2 or SAML. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for security engineering and how you can contribute to our Winning Culture. Let us know why you're excited about the opportunity at Anaplan and how you can help our customers succeed.
Showcase Your Projects: If you've worked on any projects related to secure platform architecture or identity integrations, make sure to mention them. We love seeing real-world examples of your work that demonstrate your expertise and problem-solving skills.
Apply Through Our Website: Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows us you're serious about joining our team!
How to prepare for a job interview at Anaplan
✨Know Your Tech Inside Out
Make sure you’re well-versed in Java and Kotlin, as well as the security protocols mentioned in the job description like OAuth2, OIDC, and SAML. Brush up on your knowledge of multi-tenant architectures and secure API practices, as these will likely come up during technical discussions.
✨Showcase Your Problem-Solving Skills
Prepare to discuss specific challenges you've faced in previous roles, especially those related to security architecture and integrations with identity providers. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your impact.
✨Understand Anaplan's Winning Culture
Familiarise yourself with Anaplan’s values and their commitment to diversity and innovation. Be ready to share how your personal values align with theirs and how you can contribute to their Winning Culture, especially in terms of collaboration and celebrating successes.
✨Ask Insightful Questions
Prepare thoughtful questions that demonstrate your interest in the role and the company. Inquire about their approach to compliance and governance or how they envision the future of their security architecture. This shows you’re not just interested in the job, but also in the company’s long-term vision.