Senior Security Engineer in London

Senior Security Engineer in London

London Full-Time 48000 - 84000 € / year (est.) No home office possible
Flo Health Inc.

At a Glance

  • Tasks: Join our dynamic team as a Senior Security Engineer, safeguarding user data and enhancing security measures.
  • Company: Flo is the world’s leading health app, revolutionising female health with over 75 million monthly users.
  • Benefits: Enjoy competitive salary, flexible working options, generous leave policies, and a 5-week paid sabbatical.
  • Other info: We embrace diversity and encourage applicants from all backgrounds to apply.
  • Why this job: Be part of a mission-driven team that values innovation, collaboration, and making a real impact on health.
  • Qualifications: 7+ years in information security, hands-on AWS experience, and proficiency in coding and vulnerability management.

The predicted salary is between 48000 - 84000 € per year.

Flo is the world’s #1 health app on a mission to build a better future for female health. Your role as the Security Engineer will be pivotal in supporting Flo Health’s overall security posture. Working alongside our small but powerful Security team, you will help protect our applications and infrastructure by managing vulnerabilities, responding to incidents, and implementing security measures at scale. You’ll also contribute to developing custom tooling and embedding security best practices into our product lifecycle to ensure we stay ahead of emerging threats.

What you will do:

  • Developing regular touchpoints with key stakeholders.
  • Manage Vulnerabilities: Triage newly discovered vulnerabilities, investigate potential risks, verify that fixes are effective, and drive remediation efforts across teams.
  • Implement Security Measures: Support teams by configuring WAF rules, setting rate limits, and deploying additional controls to protect our environment.
  • Develop Custom Security Tooling: Contribute to the creation and maintenance of in-house tools that enhance our security capabilities and automation.
  • Product Security Support: Assist in security assessments, threat modeling, and penetration testing, working closely with the Product Security team.
  • Secure Development Lifecycle: Help implement and improve security gates within the SDLC.
  • Adapt & Collaborate: Be prepared to dive into any emerging security challenges.
  • Investigate and triage security alerts, manage security incidents.
  • Gather, curate and communicate threat intelligence.
  • Support and advise business stakeholders in relation to cyber security issues.
  • Generate reports for both technical and non-technical staff and stakeholders.

What you bring:

  • At least 7 years of experience in the information security field.
  • Hands-on experience with AWS (or similar cloud platforms) and Cloudflare.
  • Infrastructure as Code: Proficiency with Terraform or similar IaC tools.
  • Vulnerability Knowledge: Solid understanding of common vulnerability classes and the OWASP Top 10.
  • Coding & Scripting: Proficient in reading code (e.g., Python, Scala) and using Git for version control of code and configuration changes.
  • Familiarity with iOS or Android security.
  • Experience of industry-standard SIEM and vulnerability scanning tools.

Nice to have:

  • Experience of supporting audits such as ISO27001.
  • Experience of working with security risk management frameworks such as ISO31000.
  • Knowledge of security control frameworks such as CIS, NIST800-53 and ISO27001.

How we work:

We’re a mission-led, product-driven team. We move fast, stay focused and take ownership – from brief to build to impact. Debate is encouraged. Decisions are shared. We care about craft, ship with purpose, and always raise the bar. You’ll be working with people who take their work seriously, not themselves. It takes commitment, resilience, and the drive to keep going when things get tough. Because better health outcomes are worth it.

What you’ll get:

  • Competitive salary and annual reviews.
  • Opportunity to participate in Flo’s performance incentive scheme.
  • Paid holiday, sick leave, and female health leave.
  • Enhanced parental leave and pay for maternity, paternity, same-sex and adoptive parents.
  • Accelerated professional growth through world-changing work and learning support.
  • Flexible office + home working, up to 2 months a year working abroad.
  • 5-week fully paid sabbatical at 5-year Floversary.
  • Flo Premium for friends & family, plus more health, pension and wellbeing perks.

Diversity, equity and inclusion:

Our strength is in our differences. At Flo, hiring is based on merit, skill and what you bring to the role – nothing else. We’re proud to be an equal opportunity employer, and we welcome applicants from all backgrounds, communities and identities.

Senior Security Engineer in London employer: Flo Health Inc.

At Flo Health, we pride ourselves on being a mission-driven employer that values innovation and collaboration. As a Senior Security Engineer, you'll be part of a dynamic team dedicated to enhancing the security of our leading health app, with opportunities for professional growth and a flexible work environment that includes the option to work abroad. Our commitment to diversity, equity, and inclusion ensures that every voice is heard, making Flo an exceptional place to build a meaningful career in the heart of London.

Flo Health Inc.

Contact Detail:

Flo Health Inc. Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Engineer in London

Tip Number 1

Familiarise yourself with the latest trends in cloud security, especially around AWS and Cloudflare, as these are crucial for the role. Being able to discuss recent developments or case studies during your interview can demonstrate your proactive approach and expertise.

Tip Number 2

Engage with the security community by attending relevant meetups or webinars. Networking with professionals in the field can provide insights into best practices and emerging threats, which you can bring up in discussions with our team.

Tip Number 3

Prepare to showcase your experience with Infrastructure as Code tools like Terraform. Consider creating a small project that demonstrates your ability to implement security measures through IaC, as this practical knowledge will be highly valued.

Tip Number 4

Brush up on your coding skills, particularly in Python or Scala, as being proficient in reading and understanding code is essential for this position. You might even want to solve some coding challenges to sharpen your skills before the interview.

We think you need these skills to ace Senior Security Engineer in London

Vulnerability Management
Incident Response
Web Application Firewall (WAF) Configuration
Cloud Security (AWS or similar)
Infrastructure as Code (Terraform or similar)
Understanding of OWASP Top 10
Penetration Testing

Some tips for your application 🫡

Tailor Your CV:Make sure your CV highlights relevant experience in information security, particularly focusing on your hands-on experience with AWS, Cloudflare, and Infrastructure as Code tools like Terraform. Use specific examples to demonstrate your skills in managing vulnerabilities and implementing security measures.

Craft a Compelling Cover Letter:In your cover letter, express your passion for digital health and how your background aligns with Flo's mission. Mention your experience with security assessments, threat modelling, and penetration testing, and explain how you can contribute to the team’s goals.

Showcase Your Technical Skills:Include a section in your application that lists your technical skills, such as coding in Python or Scala, familiarity with iOS or Android security, and experience with SIEM and vulnerability scanning tools. This will help the hiring team quickly see your qualifications.

Highlight Soft Skills:Flo values flexibility and collaboration. In your application, mention instances where you've successfully adapted to emerging challenges or worked closely with stakeholders. This will show that you can thrive in their dynamic environment.

How to prepare for a job interview at Flo Health Inc.

Showcase Your Experience

With at least 7 years in the information security field, be ready to discuss specific projects or challenges you've faced. Highlight your hands-on experience with AWS and Cloudflare, as well as your proficiency with Terraform or similar tools.

Understand Vulnerabilities

Familiarise yourself with common vulnerability classes and the OWASP Top 10. Be prepared to discuss how you've triaged vulnerabilities in the past and the steps you took to remediate them effectively.

Demonstrate Coding Skills

Since coding and scripting are essential for this role, brush up on your Python or Scala skills. Be ready to explain how you've used Git for version control and how it has helped in your previous roles.

Emphasise Collaboration

Flo values a collaborative environment, so share examples of how you've worked with cross-functional teams. Discuss how you’ve adapted to emerging security challenges and contributed to a secure development lifecycle.