At a Glance
- Tasks: Embed security into our platform and champion secure coding practices.
- Company: Join Multiverse, the UK's first EdTech unicorn transforming the workforce.
- Benefits: 27 days holiday, private medical insurance, hybrid work, and team socials.
- Why this job: Make a real impact on security in a fast-paced tech environment.
- Qualifications: Strong coding skills and experience with cloud-native infrastructure.
- Other info: Diverse and inclusive workplace with excellent career growth opportunities.
The predicted salary is between 48000 - 84000 ÂŁ per year.
At Multiverse, the upskilling platform for AI and Tech adoption, you will help transform the workforce. We partner with 1,500+ companies, have raised £220 million in Series D, are the UK’s first EdTech unicorn, and employ 800+ people.
Join our Tech Foundations team as a security‑mindful engineer. Rather than auditing from the outside, you’ll embed security into the Platform team and become the platform’s security champion. The Foundation teams build the “paved road” for all engineers, creating tools and infrastructure that empower product teams to ship secure software fast with minimal friction. You will embed security directly into the platform, turning “shifting left” into practice. You will work closely with our central InfoSec team for strategic guidance while leading the implementation of security solutions as part of the Platform team. Help spot potential vulnerabilities before they reach production, coach engineers on secure coding practices, and own security from the ground up.
Responsibilities
- Architect secure foundations: design, build and maintain security controls and services within CI/CD pipelines.
- Secure infrastructure as code: act as subject‑matter expert for securing Terraform modules and cloud environments (AWS, Azure).
- Incident response: participate in on‑call rotation, troubleshoot critical issues, lead security‑specific incident response, drive blameless post‑mortems.
- Integrate security testing: embed SAST, DAST, SCA and container scanning into developer workflows, making testing a self‑service, low‑friction part of the lifecycle.
- Enable vulnerability remediation: develop tools and processes to triage, prioritise and remediate vulnerabilities, automating discovery and providing actionable context.
- Implement platform‑level detection: build automated threat detection and response capabilities using cloud security and observability platforms.
- Act as a security partner: provide expert guidance on secure coding (Elixir, TypeScript/Node, Python), secret management, event‑driven architecture and AI services.
- Govern emerging technologies: help architect and implement our AI Management System, ensuring AI services meet ISO 42001 governance standards.
Qualifications
- Builder mindset: strong coding and scripting skills (Python, TypeScript/Node) and passion for automation.
- Cloud & infrastructure experience: building and securing modern cloud‑native infrastructure, CI/CD pipelines (GitHub Actions), cloud environments (AWS/Azure) and IaC (Terraform).
- Application security knowledge: solid grasp of the AppSec landscape and integrating SAST, DAST, SCA into workflows.
- Excellent communication skills: collaborate with engineering teams and translate complex security concepts into clear guidance.
- Observability‑driven: experience using security and monitoring platforms (e.g., Datadog) to detect and respond to threats.
Bonus Points
- PAM solutions such as Delinea Secret Server or HashiCorp Vault.
- Securing event‑messaging platforms (CloudAMQP, RabbitMQ).
- Familiarity with Elixir.
- Experience securing AI/ML pipelines or services.
- Knowledge of governance standards like ISO 42001.
- Relevant industry certifications (AWS Certified Security – Specialty, AZ‑500).
Benefits
- 27 days holiday + 5 additional days (1 life event, 2 volunteer, 2 wellbeing days) + 8 bank holidays.
- Health & wellness: private medical insurance with Bupa, medical cashback scheme, life insurance, gym membership & wellness resources via Wellhub, access to Spill mental health support.
- Hybrid work: office 3 days per week.
- Work‑from‑anywhere: up to 10 days per year.
- Team fun: weekly socials, company‑wide events and office snacks.
Diversity & Inclusion
We’re an equal‑opportunity employer. Every applicant and employee is afforded the same opportunities regardless of race, colour, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, or veteran status. This will never change.
Safeguarding
All posts at Multiverse involve safeguarding responsibilities. Successful applicants must complete a Disclosure Form from the Disclosure and Barring Service (DBS). Failure to declare any convictions may disqualify a candidate or result in dismissal.
Location: London, England, United Kingdom.
Senior Platform Security Engineer employer: Multiverse
Contact Detail:
Multiverse Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Platform Security Engineer
✨Tip Number 1
Network like a pro! Reach out to current employees at Multiverse on LinkedIn or other platforms. A friendly chat can give you insider info and might just get your foot in the door.
✨Tip Number 2
Show off your skills! Prepare a mini-project or a case study that highlights your experience with security in cloud environments. This hands-on approach can really impress during interviews.
✨Tip Number 3
Be ready to discuss real-world scenarios. Think about how you've tackled security challenges in the past and be prepared to share those stories. It shows you're not just book-smart but also practical.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Multiverse team.
We think you need these skills to ace Senior Platform Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Senior Platform Security Engineer. Highlight your experience with cloud environments, CI/CD pipelines, and any relevant security projects you've worked on. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how you can contribute to our Tech Foundations team. Be sure to mention specific experiences that demonstrate your builder mindset and coding skills.
Showcase Your Communication Skills: Since you'll be collaborating with various teams, it's crucial to highlight your ability to translate complex security concepts into clear guidance. Use examples in your application that showcase your communication prowess and teamwork spirit.
Apply Through Our Website: We encourage you to apply directly through our website for the best chance of getting noticed. It’s the easiest way for us to keep track of your application and ensure it reaches the right people. Don’t miss out on this opportunity!
How to prepare for a job interview at Multiverse
✨Know Your Stuff
Make sure you brush up on your coding and scripting skills, especially in Python and TypeScript/Node. Familiarise yourself with cloud environments like AWS and Azure, as well as Terraform for infrastructure as code. Being able to discuss these topics confidently will show that you're the right fit for the role.
✨Understand Security Practices
Dive deep into application security concepts, particularly SAST, DAST, and SCA. Be prepared to explain how you would integrate these into developer workflows. Showing that you can embed security into the platform will demonstrate your alignment with Multiverse's goals.
✨Communicate Clearly
Since you'll be collaborating with various engineering teams, practice explaining complex security concepts in simple terms. This will not only help you during the interview but also showcase your ability to be a security partner within the team.
✨Show Your Builder Mindset
Highlight any past experiences where you've built or secured cloud-native infrastructure or CI/CD pipelines. Share specific examples of how you've automated processes or improved security measures. This will illustrate your proactive approach and passion for building secure systems.