Conduct (conduct.ai) Logo

Conduct (conduct.ai)

Security Engineer

Posted 22 Days Ago
Be an Early Applicant
In-Office
London, Greater London, England, GBR
Senior level
In-Office
London, Greater London, England, GBR
Senior level
Own the company’s security posture across product security, cloud security, detection and monitoring, incident response, vulnerability management, threat hunting, and security scanning. Build enterprise security features such as BYOK, SSO/SCIM, and SIEM-compatible audit logging. Manage customer security questionnaires, requirements, and technical discussions with CISOs while balancing security rigor with startup velocity.
The summary above was generated by AI

Why Conduct

The world's largest companies are slowed down by the software they run on. We're building the AI operating system that absorbs IT complexity and unlocks entirely new levels of speed, output, and ambition. We believe this is a generation-defining mission. Major enterprises already trust us with their most critical systems, we just closed a $60M+ Series A from top-tier funds, and we're still early enough that what you build here defines the company. We're a small, talent-dense team doing our life's work at Conduct - we value extreme ownership, high velocity, and low-ego collaboration. If you bring that same drive, we will make sure this is the place you do yours too.

Who we hire

We work with some of the largest enterprises in the world, and security is core to earning and keeping that trust. We're looking for someone who takes real ownership of our security posture and genuinely cares about getting it right. This is a builder's role as much as an operator's: you'll design and ship the security features our enterprise customers need, not just run controls and tooling.

You'll stand out if you:

  • Have shipped security features as a software engineer - things like BYOK per tenant, SSO/SCIM, or SIEM-compatible audit logging - not just configured or audited them

  • Have hands-on experience with enterprise security requirements - completing security questionnaires, navigating customer requirements around data handling and contractual agreements

  • Are confident acting as the technical point of contact for developers, CISOs, and clients during security due diligence conversations

  • Bring pragmatic judgement - you know how to balance security rigour against the speed a startup needs to move at

  • Are genuinely excited about InfoSec and motivated to keep growing; we're open to less experience if the drive and aptitude are clearly there

What you'll own

You'll own our security posture end to end: the day-to-day operational work of keeping us secure, the security capabilities our enterprise customers demand, and the bigger initiatives on our security roadmap as we build out the function. This is as much a software engineering role as a security ops one - expect to spend real time in our codebase building features, alongside hands-on investigation, remediation, and shaping how security scales as we grow from 20 to 40+ engineers.

Day to day, you'll:

  • Design and build security features that ship in our product - like BYOK per tenant, SIEM-compatible audit logs, and SSO/SCIM - working directly in the codebase alongside product engineers

  • Own enterprise security end to end - completing customer security questionnaires, working through requirements around data handling and contractual agreements, and acting as the technical point of contact for our clients’ CISOs and security teams

  • Monitor and harden our cloud environment - tracking security recommendations, driving remediation, and making pragmatic risk-acceptance calls where they're justified

  • Investigate and respond to security alerts across our endpoint, cloud, and application stack

  • Build out our detection and monitoring capabilities, evolving our SIEM with alerting that cuts through the noise

  • Own vulnerability management end to end - triaging, tracking, and driving issues through to resolution

  • Proactively hunt for threats, from unusual behaviour in our environment to emerging risks like package and supply chain compromises

  • Run and refine security scanning across our infrastructure, applications, and dependencies

Who we hire

  • 3-7 years in a security engineering role

  • Background can come from any type of security engineering; what matters most is that you're comfortable reading and writing code - you'll be building product features and tooling, not just operating them

  • Experience working with enterprise customers is a plus, not a requirement

HQ

Conduct (conduct.ai) London, England Office

London, United Kingdom

Similar Jobs

11 Days Ago
Hybrid
Entry level
Entry level
Financial Services
Designs, implements, and maintains enterprise cloud and infrastructure security solutions. Develops secure production code and automation using Python, Bash, and PowerShell; supports IaC, CI/CD, cloud deployments, vulnerability reduction, security controls, and systems integration across Windows and Linux environments. Collaborates with vendors, technical teams, and business leaders to address security needs and improve security protocols.
Top Skills: AWSBashCi/CdInfrastructure As Code (Iac)LinuxPowershellPythonWindows
14 Days Ago
Hybrid
London, England, GBR
Expert/Leader
Expert/Leader
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Lead enterprise security engineering across cloud and on-premise environments. Design security controls, integrate SAST, SCA, DAST, and container scanning into CI/CD pipelines, conduct vulnerability assessments and audits, develop security standards and data protection strategies, and promote secure development practices. The role also involves responsible use of AI-enabled security workflows, human review, mentoring, and collaboration with engineering and financial-services clients.
Top Skills: AWSAzureBashCi/CdContainer ScanningDastDevsecopsGCPGoIamIso 27001Microsoft Security EcosystemNistOwaspPalo AltoPowershellPythonSastScaSIEMZero Trust Architecture
4 Days Ago
Easy Apply
Remote or Hybrid
London, Greater London, England, GBR
Easy Apply
Senior level
Senior level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Operate and improve enterprise endpoint security, visibility, zero trust, and network access systems. Responsibilities include incident triage, anomaly investigation, policy tuning, vulnerability remediation, security documentation, cross-functional collaboration, automation with Python and SOAR platforms, and mentoring security engineers. The role supports security investigations and maintains resilient production security systems at enterprise scale.
Top Skills: Cloud ComputingContainerizationCrowdstrikeDlpEdrEmail SecurityIamMimecast IncydrOsqueryPythonSaseSoarSplunkTerraformThreat Intelligence FeedsZero Trust

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account