Security Engineer (Product Security) in London

Security Engineer (Product Security) in London

London Full-Time 80000 - 90000 £ / year (est.) Working from home possible
Searchability Careers

At a Glance

  • Tasks: Investigate and secure applications, collaborating with developers to enhance software security.
  • Company: Join a high-growth cybersecurity software company at the forefront of protecting organisations.
  • Benefits: Competitive salary, excellent benefits, remote-first work, and opportunities for professional growth.
  • Other info: Dynamic team environment with a focus on continuous learning and improvement.
  • Why this job: Make a real impact in cybersecurity by working hands-on with innovative technology.
  • Qualifications: 3-5 years in Product Security or related fields, with strong coding and vulnerability assessment skills.

The predicted salary is between 80000 - 90000 £ per year.

  • Security Engineer (Product Security)
  • Employment: Full Time, Permanent

This is an opportunity to join a high-growth, PE-backed cybersecurity software company where security isn't simply a support function - it's at the heart of the product itself.

Trusted by Government, Defence, Financial Services and Critical National Infrastructure organisations worldwide, the business develops market-leading technology that protects organisations from advanced file-based cyber threats.

We're looking for a hands-on Security Engineer who enjoys getting into the detail of vulnerabilities, understanding how applications behave and working directly with developers to make software more secure.

This isn't a traditional vulnerability management, SOC or governance position.

Instead, you'll join a small Security Engineering team where you'll investigate security findings, assess real-world exploitability and risk, monitor security tooling and help engineering teams remediate issues effectively.

If you're happiest opening unfamiliar code, understanding why a vulnerability matters and solving security problems alongside developers rather than simply raising tickets, this could be a great fit.

The Role

You'll join a small, high-impact Security Engineering team, working closely with Product and Engineering to embed security throughout the software development lifecycle.

Your initial focus will include vulnerability triage and monitoring security tooling pipelines, investigating findings from automated tools and understanding their practical risk.

You'll also work with AI-assisted security workflows used for code review and triage, with the opportunity to help improve the agents and automation already in place.

This is a hands-on role where you will be trusted to investigate problems independently, work collaboratively with developers and proactively suggest improvements.

Key Responsibilities

  • Investigate and triage application and product security vulnerabilities, assessing practical exploitability and business risk.
  • Review unfamiliar source code to understand security findings and work with developers on remediation.
  • Monitor and troubleshoot security tooling and CI/CD pipelines, investigating failures and root causes.
  • Use SAST, DAST, SCA and other automated security tooling to support secure software development.
  • Conduct threat modelling and secure design reviews for new features, services and architecture changes.
  • Validate fixes and identify root causes to reduce recurring vulnerabilities.
  • Use AI agents and AI-assisted tooling to support code review, vulnerability triage and security analysis.
  • Contribute to improving security automation, tooling and developer workflows.
  • Support cloud, container, Kubernetes and software supply-chain security where relevant.
  • Work independently within a small team, proactively identifying improvements and sharing ideas.

What We're Looking For

You'll probably be a great fit if you've

  • Around 3-5 years of hands-on Product Security, Application Security, Dev Sec Ops or closely related Security Engineering experience.
  • A strong practical understanding of application vulnerabilities and how to assess their real-world risk.
  • Experience reviewing source code and interpreting findings from security tools.
  • Worked directly with software engineers to prioritise and remediate security issues.
  • Hands-on experience with SAST, DAST, SCA or similar security tooling within CI/CD environments.
  • Practical knowledge of threat modelling and secure software development.
  • Enough coding or scripting knowledge to understand unfamiliar code and contribute to automation.
  • The confidence to work independently, take ownership and remain open to learning and feedback.
  • Highly Desirable
  • Penetration testing or offensive security experience, particularly if you want to move into defensive Product Security.
  • Experience using AI or agentic AI within security engineering, code review or vulnerability triage.
  • Experience securing LLMs, AI agents, MCP or other AI-enabled systems.
  • Cloud, container or Kubernetes security experience, plus exposure to C#, . NET, Python, Bash or Power Shell.

This Role Probably Isn't For You If...

  • Your experience is primarily GRC, audit, compliance or policy.
  • Your background is traditional vulnerability management focused mainly on running scanners, raising tickets and chasing remediation.
  • Your experience is predominantly SOC, detection or infrastructure security without meaningful application security exposure.
  • You're looking for a management-heavy role rather than remaining technically hands-on.
  • You prefer purely offensive security and don't want to move towards defensive Product Security.
  • To Be Considered

Please either apply by clicking online or emailing .

Key

Skills: Security Engineer, Product Security Engineer, Application Security Engineer, Dev Sec Ops Engineer, Product Security, Application Security, Vulnerability Analysis, Secure SDLC, Threat Modelling, SAST, DAST, SCA, CI/CD Security, AI Security, Security Automation, Penetration Testing, Cloud Security, Cyber Security.

Security Engineer (Product Security) in London employer: Searchability Careers

As a leading retailer located just outside Chester, we pride ourselves on fostering a dynamic and inclusive work culture that prioritises employee growth and development. With competitive salaries, generous holiday allowances, and a hybrid working model, we offer our Test Engineers the opportunity to thrive in a supportive environment while enjoying excellent training resources and career progression pathways. Join us to be part of a forward-thinking technology team dedicated to quality and innovation.

Searchability Careers

Contact Details:

Searchability Careers Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Engineer (Product Security) in London

✨Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

✨Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Searchability Careers, love seeing candidates who actively engage in these challenges.

✨Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

✨Apply Directly Through Searchability Careers

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Searchability Careers. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Security Engineer (Product Security) in London

Product Security
Application Security
DevSecOps
Vulnerability Analysis
Secure SDLC
Threat Modelling
SAST

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Searchability Careers insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Searchability Careers that you’re committed to staying ahead in the game.

How to prepare for a job interview at Searchability Careers

✨Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

✨Prepare for Scenario-Based Questions

Expect the interviewers at Searchability Careers to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

✨Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Searchability Careers.

✨Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.