At a Glance
- Tasks: Architect and deploy secure frameworks for AI and developer workflows.
- Company: Join iProov, a leader in biometric security with a collaborative culture.
- Benefits: Enjoy 25 days annual leave, growth shares, and flexible hybrid working.
- Other info: Be part of a diverse team committed to creating a safer world.
- Why this job: Make a real impact on AI security while working with cutting-edge technology.
- Qualifications: Experience in software engineering, cloud security, and AI tools required.
The predicted salary is between 70000 - 90000 £ per year.
The Role
Reports to: Head of Cybersecurity
Location: WeWork Waterloo - Hybrid
Compensation: $ (Base) + Company Performance Bonus (20%) + Share Options + US iProov Benefits
The role was created specifically to provide the technical security depth that will allow us to accelerate our adoption of agentic AI, equipping developers and data scientists building our biometric products with the tools and workflows to use AI safely and at pace. You will work as the direct counterpart to our GRC-focused InfoSec Manager, owning the engineering and implementation side of our security posture across cloud infrastructure, developer workflows, AI systems, and our core security toolstack. This is a role for someone who has built and shipped software or infrastructure and brings that experience into a security context.
How you can make an impact:
- Architect and deploy the secure technical framework that governs the security controls for how our developers and scientists use agentic AI, including AI coding assistants, autonomous agents, and LLM-integrated tooling.
- Be the primary technical security voice in decisions around the use and deployment of externally developed AI, ensuring the right controls are in place from the onset.
- Continuously mature automated security controls into CI/CD pipelines and infrastructure-as-code deployments, championing the DevSecOps culture across a large engineering organisation.
- Take hands-on ownership of our core security technology stack, including Wiz, CrowdStrike, Google SecOps, and Tailscale, ensuring these platforms are correctly configured, tuned, and integrated.
- Drive continuous technical delivery of strategic security initiatives, systematically identifying, triaging, and closing gaps across our cloud environments, internal networks, and developer workflows.
- Provide technical oversight of the security of the data pipelines feeding our internal AI systems and, critically, the permissions and access boundaries of agentic AI systems reaching out into other environments.
- Complement the work of our existing biometric and product focused Red Team by owning security coverage of the DevSecOps surface, the build pipeline, internal toolchain, cloud environments and developer infrastructure.
- Act as the primary technical security partner to our GRC-focused InfoSec Manager, translating governance and compliance mandates into concrete, automated engineering controls.
- Represent the technical security function in external audits.
What we would like to see from you:
- A foundational background in software engineering or DevOps before moving into a dedicated security role.
- Proven, hands-on experience securing modern cloud infrastructure and containerised environments.
- Proficiency in deploying and administering enterprise security platforms.
- A heavy and active user of AI in both professional and personal contexts.
- Scripting and automation capability, particularly in Python.
- Prior experience or a demonstrated practical interest in securing AI workloads, data pipelines, and machine learning environments.
- The communication skills to collaborate effectively with highly technical stakeholders.
Benefits:
- 25 days Annual Leave, plus 8 Bank Holidays.
- Growth Shares allocated after passing probation.
- Salary sacrifice schemes including: Pension, Cycle To Work and Electric Car Scheme.
- Work Overseas Perk – Work globally for up to 2 weeks.
- Life Assurance.
- SmartHealth – Access to private GP, Psychologist, Nutritionist along with tailored fitness plans for both you and your family.
- Benefit from personalized 1:1 career coaching with our in-house Occupational Psychologist.
- Award winning L&D platform with personal allocated training budgets.
- Enhanced paid family leave.
- Pension – 5% employee, 3% employer.
- Flexible hybrid working environment.
- Free Barista Coffee/Tea, biscuits with fruit in the WeWork office.
- Free access to WeWork discounts and free online well-being sessions.
- Vitality Health – a range of options available.
Equal Opportunity Employment
As an equal opportunities employer, we encourage applications from people of all backgrounds. We're committed to building a workforce that is representative of the people we serve.
Senior Security Engineer (AI & DevSecOps) at iProov employer: iProov
iProov is an exceptional employer that champions diversity and inclusion, creating a supportive environment where every employee can thrive. With a hybrid work model based in the vibrant WeWork Waterloo in London, employees enjoy flexible working arrangements alongside competitive benefits, including a performance bonus and share options. The company prioritises personal growth and innovation, empowering its team to make meaningful contributions to cutting-edge biometric solutions that enhance security for clients worldwide.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Security Engineer (AI & DevSecOps) at iProov
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, especially those at iProov or similar companies. A friendly chat can open doors and give you insights that a job description just can't.
✨Tip Number 2
Show off your skills in real-time! If you get the chance, ask for a technical interview or a coding challenge. This is your moment to shine and demonstrate how your experience aligns with their needs.
✨Tip Number 3
Prepare for the unexpected! Brush up on your knowledge of AI security threats and DevSecOps practices. Being able to discuss these topics confidently will set you apart from the crowd.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who take that extra step to connect with us directly.
We think you need these skills to ace Senior Security Engineer (AI & DevSecOps) at iProov
Some tips for your application 🫡
Tailor Your CV:Make sure your CV speaks directly to the role of Senior Security Engineer. Highlight your experience in software engineering and DevOps, especially how it relates to security. We want to see how your background aligns with our needs!
Showcase Your Skills:Don’t just list your skills; demonstrate them! Use specific examples from your past work that show how you've secured cloud infrastructure or implemented security controls. This helps us see your hands-on experience in action.
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Explain why you’re passionate about security and AI, and how you can contribute to our mission at iProov. Keep it engaging and relevant to the job description.
Apply Through Our Website:We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, it’s super easy!
How to prepare for a job interview at iProov
✨Know Your Tech Inside Out
Make sure you’re well-versed in the specific technologies mentioned in the job description, like Wiz, CrowdStrike, and Google SecOps. Brush up on your knowledge of cloud infrastructure and containerised environments, as well as the security implications of infrastructure-as-code. This will help you demonstrate your technical depth during the interview.
✨Showcase Your AI Savvy
Since the role involves working with agentic AI and understanding its threat landscape, be prepared to discuss your experience with AI tools and how you've navigated security challenges in this area. Bring examples of how you've secured AI workloads or data pipelines, as this will show your practical interest and expertise.
✨Communicate Like a Pro
You’ll need to collaborate with both technical and non-technical stakeholders, so practice articulating complex security concepts in simple terms. Prepare to explain how you would translate governance mandates into automated engineering controls, and think about how you can present technical evidence clearly during audits.
✨Demonstrate Your DevSecOps Mindset
This role is all about integrating security into the development process, so be ready to discuss how you’ve championed DevSecOps culture in previous roles. Share specific examples of how you’ve matured automated security controls within CI/CD pipelines and how you’ve balanced security needs with developer productivity.