At a Glance
- Tasks: Strengthen software security and lead secure development practices in a dynamic healthcare environment.
- Company: Neko Health, a forward-thinking company revolutionising preventative healthcare.
- Benefits: Flexible remote work, competitive salary, and a focus on work-life balance.
- Why this job: Join us to make a real impact on healthcare through innovative technology and security.
- Qualifications: Strong understanding of application security and experience with secure coding practices.
- Other info: Collaborative, remote-first team with excellent growth opportunities and a commitment to inclusivity.
The predicted salary is between 36000 - 60000 £ per year.
At Neko Health, our mission is to shift healthcare from reactive treatment toward preventative health and early detection. By combining advanced sensors, AI, and a reimagined patient experience, we enable broad, non-invasive, and affordable health data collection for the public. Founded in 2018 and headquartered in Stockholm, Neko Health operates across Stockholm, London, and Manchester with over 500 employees.
As a Security Engineer focused on Application Security, you will strengthen Neko Health's software security posture within a regulated healthcare environment. You will lead secure development practices, embed security into engineering workflows, and partner with development teams to reduce vulnerabilities while ensuring applications meet the highest security and compliance standards.
What You'll Deliver in the First 6–12 Months
- Drive adoption of a Secure Software Development Lifecycle (SSDLC) across engineering teams.
- Implement and integrate application security tooling into CI/CD pipelines, improving vulnerability detection and remediation.
- Establish consistent threat modelling and secure design practices across new features and products.
- Improve application security posture through proactive code reviews, vulnerability assessments, and developer enablement.
- Produce audit-ready evidence supporting regulatory and compliance requirements.
Responsibilities
- Drive adoption and continuous improvement of Secure Software Development Lifecycle (SSDLC) practices.
- Perform code reviews and vulnerability assessments for critical applications.
- Integrate and manage SAST, DAST, and SCA tools within CI/CD pipelines.
- Conduct threat modelling for new features, services, and products.
- Collaborate with developers to remediate vulnerabilities and promote secure coding practices.
- Maintain audit-ready security and compliance documentation.
Minimum Qualifications
- Strong understanding of application security principles and OWASP Top 10.
- Experience implementing secure coding practices and enabling developer security adoption.
- Hands-on experience with SAST, DAST, and SCA tools.
- Experience integrating security into CI/CD pipelines.
- Familiarity with compliance frameworks such as ISO 27001, NIST CSF, and HIPAA.
About The Engineering Team
Neko Health has nearly 100 full-time engineers working across Berlin, Chamonix, Hamburg, Lisbon, Marseille, Vilnius, and Stockholm, spanning disciplines such as Hardware Engineering, Firmware Development, Electrical Design, Algorithm Development, Machine Learning, Optronics Research, and Software Engineering.
Our technology stack includes React, TypeScript, C++, Python, and C# with ASP.NET Core. We use Azure Cosmos DB and Azure Active Directory for authentication.
We are a Remote-First company, though some hardware and firmware roles require occasional access to physical devices. Software engineers in Stockholm typically work from the office once every one to two weeks. Teams meet in person several times per year for collaboration and team connection.
Organization and Way of Working
Engineering teams are structured into small, cross-functional groups aligned to specific goals. Some teams are long-lived while others are formed for targeted initiatives. Teams aim to operate autonomously while collaborating across the organization when necessary.
Goals are tracked quarterly and annually, with bi-weekly organization-wide progress reviews. Most teams operate on a bi-weekly planning cadence, though each group has flexibility in how they work.
All teams present progress, learnings, and experiments during bi-weekly engineering demos, covering topics ranging from hardware and calibration challenges to infrastructure improvements, backend capabilities, and data innovations that enhance clinical productivity.
Neko Health supports a flexible workplace that prioritises work-life balance. We are deeply committed to our mission while believing meaningful impact should not require sacrificing personal wellbeing.
Hiring Process
Candidates begin with an initial recruiter screen focused on experience, motivations, and role alignment. Successful candidates then meet with the Hiring Leader for a deeper discussion on technical background and impact.
Next, candidates complete technical assessments alongside existing team members, designed to reflect real-world challenges and collaboration.
The process concludes with a final stage involving Engineering Leadership, focusing on long-term impact and alignment before moving to offer and pre-employment checks.
Equal Opportunity & Inclusion Statement
Neko Health is committed to inclusive hiring and equitable healthcare. We welcome candidates from all backgrounds and encourage requests for reasonable adjustments to support the application process.
Security Engineer – Application Security in London employer: Neko Health
Contact Detail:
Neko Health Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer – Application Security in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects and contributions to open-source. This gives potential employers a taste of what you can do and sets you apart from the crowd.
✨Tip Number 3
Prepare for interviews by practising common security scenarios and technical questions. Mock interviews with friends or using online platforms can help you feel more confident and ready to impress.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our mission at Neko Health.
We think you need these skills to ace Security Engineer – Application Security in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Engineer role. Highlight your experience with application security principles, secure coding practices, and any relevant tools you've used. We want to see how your skills align with our mission at Neko Health!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for application security and how you can contribute to our goal of preventative health. Be sure to mention specific experiences that demonstrate your expertise in secure development practices.
Showcase Your Technical Skills: In your application, don’t forget to showcase your hands-on experience with SAST, DAST, and SCA tools. We’re looking for someone who can integrate security into CI/CD pipelines, so make sure to highlight any relevant projects or achievements!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s the easiest way for us to keep track of your application and ensure it reaches the right people. Plus, we love seeing candidates who take the initiative!
How to prepare for a job interview at Neko Health
✨Know Your Stuff
Make sure you have a solid understanding of application security principles and the OWASP Top 10. Brush up on secure coding practices and be ready to discuss how you've implemented them in past projects.
✨Showcase Your Tools
Familiarise yourself with SAST, DAST, and SCA tools, as well as how to integrate them into CI/CD pipelines. Be prepared to share specific examples of how you've used these tools to improve security in your previous roles.
✨Talk Threat Modelling
Be ready to discuss your experience with threat modelling for new features and services. Highlight any frameworks or methodologies you've used and how they helped mitigate risks in your projects.
✨Collaboration is Key
Neko Health values teamwork, so emphasise your ability to collaborate with developers to remediate vulnerabilities. Share examples of how you've enabled developer security adoption and fostered secure coding practices within teams.