At a Glance
- Tasks: Secure our code and empower developers to ship fast without compromising customer trust.
- Company: Join a leading fintech company with a focus on innovation and inclusivity.
- Benefits: Competitive pay, equity options, remote work flexibility, and private health insurance.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: Experience in application security and cloud environments, with strong communication skills.
- Other info: Dynamic team culture with opportunities for professional growth and development.
The predicted salary is between 60000 - 80000 £ per year.
About the Role
As our Cyber Security Engineer, you will be the bridge between Security and Engineering. You aren’t here to block deployments; you’re here to ensure our code is resilient by design and to empower our developers to ship fast without breaking the trust of our customers or regulators.
Tech Stack
- Backend: Kotlin 1.7.20, AWS, GraphQL (knowledge is nice but not required), Postgres, RabbitMQ, Docker, Kubernetes
- Frontend: React & React Native, TypeScript, MobX, Redux, Stylus and SASS
- Other: Gradle & GitHub Actions for CI/CD, JUnit Jupiter, Kotest and TestContainers for automated testing
What You’ll Be Doing
- Secure the Pipeline: Integrate and automate SAST, DAST, and SCA tooling directly into our CI/CD pipelines to catch vulnerabilities before they reach production.
- Harden the Product: Act as a Subject Matter Expert (SME) assisting engineers with the remediation of security vulnerabilities and bugs.
- Safeguard AI: Design and implement security guardrails for AI-assisted development and LLM integrations, ensuring data privacy and preventing prompt injection or model leakage.
- Threat Modelling: Partner with Product and Engineering teams to conduct threat modelling sessions for new features before they are built.
- Security Architecture: Act as a consultant for infrastructure and application design, ensuring our AWS/GCP Kubernetes environments remain hardened.
- Security Culture: Cultivate a Secure Development guild to level up our developers’ secure coding skills.
What We’re Looking For
- Pragmatism: You understand the difference between partnering with Engineering and security being a blocker of progress.
- Communication: You can translate a complex vulnerability into a business risk for a Product Manager and a technical fix for an Engineer.
- AppSec Subject Matter Expertise: You have a strong understanding of critical security risks in applications, can identify them in code, and provide remediation recommendations.
- Cloud Native: Strong experience securing AWS/GCP environments and containerised workloads.
- AI Ready: You understand the unique risks of AI and have experience securing AI-driven workflows.
Interview Process
- Intro call with Talent Team
- Hiring Manager Call
- Take Home Task
- Final rounds
- Tech Interview
- Culture Interview
Life at Lendable
- The opportunity to scale up one of the world’s most successful fintech companies.
- Best-in-class compensation, including equity.
- You can work from home every Monday and Friday if you wish; on the other days, those based in the UK meet in our Shoreditch office in London.
- Enjoy a fully stocked kitchen with everything you need for breakfast, lunch, snacks and drinks every Tuesday‑Thursday.
- We care for our Lendies’ well‑being physically and mentally, offering private health insurance coverage.
- We’re an equal‑opportunity employer and are looking to make Lendable the most inclusive and open workspace in London.
Application Security Engineer employer: Lendable
Contact Detail:
Lendable Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Application Security Engineer
✨Tip Number 1
Network like a pro! Reach out to current employees at Lendable on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for the interview process. It’s all about making connections!
✨Tip Number 2
Prepare for those technical interviews! Brush up on your knowledge of AWS, Kubernetes, and secure coding practices. We recommend doing some mock interviews with friends or using online platforms to get comfortable with the format.
✨Tip Number 3
Show off your passion for security! During the interview, share examples of how you’ve integrated security into your previous projects. We love hearing about real-world applications of your skills and how you’ve made a difference.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Lendable.
We think you need these skills to ace Application Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Application Security Engineer role. Highlight your experience with security tools and cloud environments, as well as any relevant projects you've worked on.
Craft a Compelling Cover Letter: Use your cover letter to tell us why you're passionate about security and how you can bridge the gap between Security and Engineering. Share specific examples of how you've empowered teams in the past.
Showcase Your Technical Skills: Don’t forget to mention your familiarity with our tech stack! Whether it’s Kotlin, AWS, or Docker, let us know how you’ve used these technologies in your previous roles to secure applications.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates during the process!
How to prepare for a job interview at Lendable
✨Know Your Tech Stack
Familiarise yourself with the technologies mentioned in the job description, especially Kotlin, AWS, and Docker. Be ready to discuss how you've used these tools in past projects and how they relate to security practices.
✨Understand Security Principles
Brush up on key application security concepts like SAST, DAST, and threat modelling. Prepare examples of how you've implemented these in previous roles, as this will show your practical knowledge and ability to integrate security into the development process.
✨Communicate Effectively
Practice explaining complex security vulnerabilities in simple terms. You might need to translate technical risks for non-technical stakeholders, so being able to communicate clearly is crucial. Think of scenarios where you’ve done this before.
✨Show Your Pragmatism
Be prepared to discuss how you balance security needs with engineering goals. Share examples of how you've partnered with development teams to enhance security without hindering progress, demonstrating your understanding of the role's collaborative nature.