Overview
In this role you will own and evolve Fin’s tier-zero security capabilities, shaping secure product design for enterprise customers. You will partner with engineering across the SDLC to build authentication, SAML/SSO, logging, and other trusted controls, while leading security incident response. You’ll contribute to an AI-first security strategy that enhances product security at scale. The opportunity sits at the intersection of AI-powered customer service and robust security, offering meaningful impact on trusted user experiences.
Pay / Benefits
- competitive salary and equity
- health and dental insurance
- pension scheme and matching
- flexible paid time off
- Cycle-to-Work Scheme
- MacBooks provided
Responsibilities
- Own and engineer tier-zero security capabilities for secure deployment and management
- Design and evolve authentication, SAML/SSO, permissions, audit logs, and enterprise controls
- Partner with engineering across the software development lifecycle to build secure products
- Perform architecture reviews, threat modelling, and security assessments for new features
- Build security tooling, automation, and developer-facing building blocks
- Contribute to secure development standards, guidance, and best practices
- Lead security initiatives across the SDLC to address risks early
- Participate in on-call rotation and lead security incident response and remediation
- Drive security initiatives from problem to measurable outcomes
- Collaborate with teams building AI-powered products to mitigate emerging risks
- Support secure adoption of AI-assisted development tools and workflows
Key requirements
- Proven application security, product security, or security engineering experience in a SaaS environment
- Strong software engineering skills for building and operating production systems
- Deep understanding of modern application security threats, secure SDLC practices, and threat modelling
- Experience designing or securing authentication, authorization, identity, or enterprise security capabilities
- Experience conducting architecture reviews and security assessments for complex systems
- Hands-on security incident response experience, including leading investigations and remediation
- Strong programming skills and experience building tools or automation
- Comfort with using AI-assisted development tools to boost productivity
- Strong ability to communicate security concepts clearly and collaborate with engineering teams
- Pragmatic approach balancing security, customer impact, and engineering velocity
- collaborative and cross-functional communication
- problem-solving with a pragmatic security-first mindset
- ability to translate security concepts for non-security stakeholders
- Application security
- SaaS security practices
- Authentication, authorization, and identity (e.g., SAML/SSO)
…
