Senior Security Engineer

Senior Security Engineer

Full-Time 114750 - 140250 £ / year (est.) Working from home possible
P

At a Glance

  • Tasks: Lead security reviews and threat modelling for innovative payment solutions.
  • Company: Join Primer, a cutting-edge platform transforming global payments.
  • Benefits: Remote work, competitive share options, uncapped holiday, and generous learning budget.
  • Other info: Enjoy high autonomy and a supportive culture focused on collaboration and success.
  • Why this job: Make a real impact in product security while growing your skills in a dynamic environment.
  • Qualifications: Experience in application security and coding skills are essential.

The predicted salary is between 114750 - 140250 £ per year.

Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.

You’ll be joining the ProdSec/AppSec team to help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. You'd be the second hire, and the person that function finally gets to share the work with.

This is a hands-on delivery role, and a genuinely formative one. You’ll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. You'll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.

Security at Primer sits close to the engineering teams it protects rather than off to one side, so you'll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function that's only now scaling.

What will you be doing?

  • Running security reviews and threat modelling on features and systems across Primer's product, and turning findings into clear, actionable guidance for the teams shipping them.
  • Independently planning and delivering your own security projects, from initial design through to rollout.
  • Building tooling and automation that makes future reviews faster and cheaper to run.
  • Coordinating penetration testing and tracking remediation through to closure.
  • Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows.
  • Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM.
  • Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for.
  • Working alongside Cloud, Infra, and GRC on the security aspects of their projects.

What we're looking for

  • Working experience in product or application security: you've done security reviews or threat modelling and can spot the risks that matter.
  • The ability to read and write code, not just review it. You're comfortable building small tools and automation rather than only filing findings.
  • Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly.
  • The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer.
  • Clear communication with engineers who aren't security specialists, since most of your impact lands through their work.

Nice to have:

  • Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them.
  • Background in payments, fintech, or another regulated, high-stakes domain.
  • Interest in areas like supply chain security, detection engineering, or AI security.

You may not like it here

It's remote-first and high autonomy. You'll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable. You'll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.

A typical interview process

  • An initial intro call with a Talent Partner.
  • An interview with the Hiring Manager.
  • Challenge Stage - Contextualised to the role.
  • A final, values-alignment interview.

What's the culture like at Primer?

We're building a culture where people can do their best work and be proud of the impact they have. You'll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.

We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and access to co-working spaces across most major cities.

The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But there's a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. It's never something you face alone.

Our benefits

  • We are fully remote and globally distributed; and have been since day one.
  • Competitive share options.
  • Uncapped holiday, with 25 days minimum to be taken.
  • Co-working space access across major cities.
  • Workations & Company Retreat.
  • The best equipment for your role.
  • £500 towards your home office setup.
  • Generous learning budget.
  • Private Medical Insurance.
  • A broad set of additional perks and benefits (depending on location).

Don’t meet every single requirement?

At Primer, we're dedicated to building a diverse, inclusive, and authentic workplace. If you're excited about this role but your experience doesn't align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.

Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.

Senior Security Engineer employer: Primer.io

At Primer, we pride ourselves on being an exceptional employer that fosters a remote-first culture, empowering our team to thrive while making a meaningful impact in the payments industry. With competitive benefits such as uncapped holiday, generous learning budgets, and access to co-working spaces, we ensure our employees have the resources they need to succeed. Join us in a collaborative environment where innovation is celebrated, and every challenge is met with support from a mission-driven team dedicated to building exceptional products.

P

Contact Details:

Primer.io Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Engineer

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Primer.io, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Primer.io

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Primer.io. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Senior Security Engineer

Product Security
Application Security
Threat Modelling
Security Reviews
Compliance Frameworks (SOC2, PCI)
Penetration Testing
Risk Assessment

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Primer.io insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Primer.io that you’re committed to staying ahead in the game.

How to prepare for a job interview at Primer.io

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Primer.io to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Primer.io.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.