Security Engineer (Institutional Trading) in London

Security Engineer (Institutional Trading) in London

London Full-Time 70000 - 90000 € / year (est.) No home office possible
Prudence Holdings

At a Glance

  • Tasks: Secure off-chain trading processes and infrastructure while collaborating with key teams.
  • Company: Join a leading blockchain company focused on innovation and security.
  • Benefits: Competitive salary, flexible work options, and opportunities for professional growth.
  • Other info: Diverse and inclusive workplace with excellent career advancement opportunities.
  • Why this job: Make a real impact in the financial sector by enhancing security measures.
  • Qualifications: 5+ years in security engineering and strong threat modelling skills required.

The predicted salary is between 70000 - 90000 € per year.

You'll be the hands‐on security engineer embedded with the Institutional Trading and Financial Operations (FinOps) team. Your focus is the secure operation of off‐chain trading processes and infrastructure that empowers our institutional business: integrations, signing flows, key custody interfaces, middle‐office workflows, order routing and settle pipelines that handle significant capital. You will support risk assessments, operating controls, automation to detect operational anomalies and remediation coordination. This is a high‐visibility role where you will focus on operational security engineering—ensuring that the tools and processes our traders use are resilient against both external threats and internal errors. This role does not require smart‐contract auditing.

What You Will Do

  • Partner with Trading, Middle Office and Quant (Institutional FinOps) teams to map out inventory trading systems, data flows, third‐party integrations and custody/settlement touchpoints.
  • Conduct deep‐dive assessments mapping critical assets and workflows to identify structural vulnerabilities. You will be responsible for defining the Target State and drafting the strategic Risk Treatment Plans (RTP) required to meet institutional‐grade standards (e.g., CCSS, NIST, DORA).
  • Act as the primary security liaison for Senior Management and third‐party vendors. You will translate complex technical gaps into actionable business risk summaries, drive vendor evaluations for core security infrastructure, and manage the project lifecycle for high‐impact posture uplifts.
  • Implement and maintain monitoring for FinOps‐specific security signals such as abnormal order patterns, signature misuse, unusual settlements. You will integrate these signals into our SIEM/SOAR for real‐time response.
  • Support secrets and key‐management hygiene. You will ensure app/service keys are stored in KMS/Vault, scoped to least privilege and rotated automatically to prevent credential leakage.
  • Assist product security in triage of SAST/SCA findings for FinOps‐related repositories. You will help implement CI checks and remediation playbooks.
  • Participate in incident exercises, post‐incident reviews and remediation tracking for trading incidents.
  • Document controls and produce concise risk summaries for FinOps leads and the Security.

What You Will Need

  • 5+ years in security engineering, platform security, or application security experience.
  • Proven expertise in Threat Modeling. Ability to perform structured reviews (e.g., STRIDE) of complex data flows and operational processes.
  • Experience with observability and detection tooling (SIEM, logs, metrics) and ability to write basic detection rules.
  • Practical experience with KMS/HSM, secrets management platforms (Vault, 1Password, AWS/GCP KMS), IAM patterns and least‐privilege.
  • Exceptional ability to translate "Technical Debt" into Business Risk for C‐suite stakeholders (CFO, CTO, Head of Trading).
  • Ability to raise, read and audit Pull Requests in at least one language used in our stack (TypeScript, Java/Kotlin, Python).
  • Experience conducting technical due diligence and scoping for third‐party security integrations.

Nice to Have

  • Familiarity with trading systems or financial operations (market‐making, execution, settlement) or close collaboration background with trading/quant teams.
  • Exposure to blockchain on‐chain concepts (wallets, addresses, transactions) but no requirement to audit contracts.
  • Familiarity with SOC operations, and post‐incident forensic analysis.
  • Familiarity with SOC2, ISO 27001, or financial audit requirements.
  • Any relevant industry certification.

Security Engineer (Institutional Trading) in London employer: Prudence Holdings

At Blockchain, we pride ourselves on fostering a dynamic and inclusive work environment where innovation thrives. As a Security Engineer embedded within the Institutional Trading and Financial Operations team, you'll enjoy unparalleled opportunities for professional growth while contributing to high-stakes projects that safeguard our trading infrastructure. Our commitment to employee development, coupled with a culture that values diversity and collaboration, makes Blockchain an exceptional employer for those seeking meaningful and rewarding careers in the financial technology sector.

Prudence Holdings

Contact Detail:

Prudence Holdings Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Engineer (Institutional Trading) in London

Tip Number 1

Network like a pro! Reach out to folks in the industry, especially those working in trading or financial operations. A casual chat can lead to insider info about job openings that aren't even advertised yet.

Tip Number 2

Show off your skills in interviews! Prepare to discuss your experience with security engineering and how you've tackled real-world problems. Use examples that highlight your ability to translate technical jargon into business risks—this will impress the C-suite types.

Tip Number 3

Don’t just apply anywhere; focus on companies that align with your values and expertise. When you find a role that excites you, apply through our website for a better chance of getting noticed!

Tip Number 4

Prepare for technical assessments! Brush up on your threat modelling and detection tooling knowledge. Being able to demonstrate your understanding of KMS/HSM and IAM patterns will set you apart from the competition.

We think you need these skills to ace Security Engineer (Institutional Trading) in London

Security Engineering
Risk Assessment
Threat Modeling
Operational Security
Data Flow Analysis
Project Management
Monitoring and Detection Tools (SIEM)

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Security Engineer role. Highlight your experience in security engineering, especially any hands-on work with trading systems or financial operations. We want to see how your skills align with what we do!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about security engineering and how you can contribute to our Institutional Trading team. Keep it concise but impactful—show us your personality!

Showcase Relevant Experience:When detailing your experience, focus on specific projects or roles that relate to the job description. If you've worked on risk assessments or operational security, let us know! We love seeing real-world examples of your expertise.

Apply Through Our Website:Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it makes the whole process smoother for everyone involved.

How to prepare for a job interview at Prudence Holdings

Know Your Security Fundamentals

Make sure you brush up on your security engineering basics, especially around threat modelling and risk assessments. Be ready to discuss how you would approach identifying vulnerabilities in trading systems and how you can translate technical risks into business language for stakeholders.

Familiarise Yourself with FinOps

Since this role is embedded within the Institutional Trading and FinOps team, it’s crucial to understand their workflows and processes. Research common trading systems and financial operations to show that you can hit the ground running and effectively communicate with the team.

Prepare for Technical Questions

Expect to be asked about your experience with observability tools, KMS/HSM, and secrets management platforms. Brush up on writing detection rules and be prepared to discuss your experience with CI checks and remediation playbooks, as these are key aspects of the role.

Showcase Your Communication Skills

This position requires translating complex technical issues into actionable insights for senior management. Prepare examples of how you've successfully communicated technical debt or security risks to non-technical stakeholders in the past, highlighting your ability to bridge the gap between tech and business.