13 hours ago
London, United KingdomSenior
Responsibilities
- Conduct threat modeling with product teams and design secure architectures for new features.
- Own and evolve the application security program, including SAST/DAST scanning in CI/CD pipelines, security code reviews, and automated vulnerability detection.
- Establish secure coding standards and create reusable security patterns and libraries for engineering teams.
- Design and recommend security features and products for protecting customer environments.
- Integrate AI agents to increase security-team and engineering velocity while reducing risk.
- Lead security assessments and penetration testing of applications, AI services, and APIs, and coordinate vulnerability remediation.
- Design and implement security controls for data pipelines, model-training environments, and customer-facing AI agents.
- Research emerging LLM and generative-AI attack vectors and build defenses against novel risks.
Requirements
- At least 4 years of hands-on application security engineering experience securing large-scale production systems.
- Understanding of developer experience and workflows for shipping features while reducing security risk.
- Technical expertise in at least two of Python, Java, Go, JavaScript, and TypeScript, with the ability to review code across multiple languages.
- Knowledge of SAST/DAST solutions, vulnerability management platforms, security testing frameworks, and DevSecOps practices.
- Strong communication skills for explaining security concepts to technical and non-technical audiences.
- A builder’s mindset focused on automation, scalability, developer enablement, and business-enabling security.
- Alignment with WRITER’s Connect, Challenge, and Own values.
Benefits
- Hybrid work from WRITER’s London office.
- Generous paid time off and company holidays.
- Comprehensive medical and dental insurance.
- Sixteen weeks of paid parental leave for all parents.
- Fertility and family-planning support.
- Early-detection cancer testing through Galleri.
- Competitive pension scheme and company contribution.
- Wellness, learning and development, and annual work-life stipends.
- Company-wide and team off-sites.
- Competitive compensation and company stock options.
