At a Glance
- Tasks: Design and implement security controls for a cutting-edge AI platform.
- Company: Join Complexio, a pioneering venture in enterprise AI with a global team.
- Benefits: Competitive salary, flexible work environment, and opportunities for professional growth.
- Why this job: Make a real impact on data security in a rapidly scaling tech company.
- Qualifications: Strong Python skills and experience with authentication and authorization concepts.
- Other info: High-autonomy role with collaborative culture and significant career advancement potential.
The predicted salary is between 48000 - 84000 £ per year.
Complexio is the intelligence layer for enterprise AI. Our platform builds a connected understanding of how businesses actually operate - across people, processes, and systems. Our Event Knowledge Graph ingests structured and unstructured data to create a living map of how an organisation truly works - every task, interaction, and dependency. Built on this foundation, our Automated Automations Engine discovers, designs, and executes workflows autonomously, while Stevie, our conversational AI assistant, gives teams a natural way to interact with enterprise data and processes. Complexio is a joint venture between Hafnia and SÃmbolo, backed by leading maritime partners including Marfin Management, C Transport Maritime, Trans Sea Transport, and BW Epic Kosan. We started in maritime and are now scaling rapidly across industries. We are a global team working on one of the hardest problems in enterprise tech: building AI that truly understands how businesses work, and acts on it. If that sounds like your kind of challenge, read on.
The role: We are looking for a Platform Security Engineer (Senior+) to join our Product Security domain. This role exists because the scope and importance of our work has outgrown the capacity of a single person. Our platform underpins multiple products and handles sensitive, high-value data. At its core sits a large, graph-based data store that powers downstream systems. Building and securing access to that data, correctly and pragmatically, is critical to the company. This is a hands-on engineering role. You will design, build, and ship production-grade security and privacy controls, not just define policies or review designs from the sidelines.
What you'll be working on:
- Designing and implementing authentication and authorization for a large, graph-based database (hundreds of thousands of nodes)
- Building and evolving secure OAuth-based AuthN/AuthZ flows, including token handling, permission models, and enforcement
- Making concrete improvements to production security posture
- Auditing, understanding, and improving data flows and data-privacy controls, ensuring sensitive data does not end up where it shouldn't
- Acting as a security and privacy gatekeeper in reviews - asking hard questions and requiring changes when needed
- Improving and maintaining supply-chain security, including SAST, SCA, container scanning, and CI/CD hardening
This role is intentionally broad. You will not be a single-domain specialist, and you will not be shielded from complexity.
What success looks like:
- Shipped meaningful, production-level security improvements
- Taken ownership of parts of the AuthN/AuthZ model and implementation
- Developed a solid mental model of our data flows and privacy risks
- Earned trust across teams as someone who can say "this is not okay" - and explain why, with facts
- Reduced risk in practical ways, not through security theatre
How you'll work:
This is a high-autonomy role. You are expected to scope problems yourself when needed. You will collaborate closely with engineers across the company, not operate as a silo. Disagreement is normal - decisions should be backed by reasoning, data, and threat modeling, not ego. Blocking a release on security or privacy grounds is possible when warranted, with clear escalation paths. If you see a problem, even outside your direct domain, you are expected to help fix it.
What we're looking for:
Required:- Strong proficiency in Python (our primary language)
- Deep understanding of authentication and authorization concepts, including OAuth, JWTs, permission models, and secure token handling
- Experience designing and securing non-trivial data systems
- Ability to reason about risk, trade-offs, and real-world constraints
- A track record of shipping real security improvements, not just writing policy
- Experience with graph databases, ideally Neo4j or similar
- Experience with CI/CD and supply-chain security (SAST, SCA, container scanning, pipeline hardening)
- Experience with Go or Rust
- Some familiarity with frontend or React (not required, but useful for end-to-end thinking)
What this role is not:
- Not a policy-only or advisory role
- Not a role with pre-defined, perfectly scoped tasks
- Not about chasing tools without understanding the problems they solve
- Not security theatre
If you need everything spelled out, or prefer to avoid ambiguity, this role will be frustrating.
Seniority & growth: This role is intentionally levelled as Senior+. We are open to hiring at different seniority levels if the fit is right. Titles matter less than ownership, judgment, and impact.
Why join: You'll work on core platform security problems that directly affect how data is accessed, protected, and trusted. You'll have real influence, real responsibility, and the space to do things properly, without losing sight of pragmatism.
Platform Security Engineer employer: Complexio
Contact Detail:
Complexio Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Platform Security Engineer
✨Tip Number 1
Network like a pro! Attend industry meetups, webinars, or conferences related to platform security. Chat with folks in the field, share your passion for AI and security, and don’t be shy about mentioning your interest in Complexio. You never know who might have a lead!
✨Tip Number 2
Show off your skills! Create a GitHub repository showcasing your projects, especially those involving Python, OAuth, or graph databases. This is your chance to demonstrate your hands-on experience and problem-solving abilities, which are key for a role like Platform Security Engineer.
✨Tip Number 3
Prepare for interviews by brushing up on real-world scenarios. Think about how you would handle security challenges, like improving data privacy controls or securing OAuth flows. Be ready to discuss your thought process and decision-making, as this will show you’re not just about theory but practical solutions.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining Complexio and being part of our mission to tackle complex enterprise tech challenges.
We think you need these skills to ace Platform Security Engineer
Some tips for your application 🫡
Show Your Passion for Security: When writing your application, let us see your enthusiasm for platform security! Share specific examples of projects or challenges you've tackled that relate to authentication, authorization, or data privacy. We want to know what drives you in this field!
Be Clear and Concise: Keep your application straightforward and to the point. Use clear language to describe your experience and skills, especially around Python and security concepts like OAuth and JWTs. We appreciate a well-structured application that makes it easy for us to see your qualifications.
Highlight Real-World Impact: Don’t just list your skills; show us how you've made a difference in previous roles. Talk about the security improvements you've implemented and how they reduced risk or enhanced data protection. We love seeing tangible results from your work!
Tailor Your Application: Make sure to customise your application for the Platform Security Engineer role. Reference specific aspects of our job description and explain how your background aligns with our needs. Applying through our website is the best way to ensure we see your tailored application!
How to prepare for a job interview at Complexio
✨Know Your Stuff
Make sure you brush up on your Python skills and have a solid understanding of authentication and authorisation concepts, especially OAuth and JWTs. Be ready to discuss how you've designed and secured data systems in the past.
✨Show Your Problem-Solving Skills
Prepare to talk about real-world scenarios where you've shipped security improvements. They want to see that you can reason about risk and make practical decisions, so have examples ready that demonstrate your thought process.
✨Understand the Company’s Needs
Familiarise yourself with Complexio's platform and its focus on enterprise AI. Think about how your experience aligns with their mission of building secure, graph-based data systems and be prepared to share your insights on improving security posture.
✨Be Ready for Technical Questions
Expect some tough questions during the interview. They might ask you to explain your approach to securing data flows or how you would handle specific security challenges. Stay calm, think critically, and back your answers with facts.