Senior Security Engineer

Company: Cohere
Apply for the Senior Security Engineer
Location: London
Job Description:

Overview

As a Senior Security Engineer, you will partner with leadership and cross-functional teams to manage security risks in production AI systems. You’ll lead security operations across CI/CD and cloud-native environments, and weave secure practices into the software lifecycle. You’ll drive bug bounty activities, security reviews, and threat modeling while evaluating and scaling security tools. Your role blends hands-on engineering with influencing security decisions to preserve speed and agility. Join a mission-driven team shaping secure AI experiences for developers and enterprises.

Pay / Benefits

  • Open and inclusive culture
  • Health and dental benefits with mental health budget
  • Parental leave top-up up to 6 months
  • Remote-friendly with global offices and co-working stipend
  • Weekly lunch stipend and in-office meals
  • 6 weeks of vacation (30 working days)

Responsibilities

  • Lead security operation functions (vulnerability management, SAST, DAST, detection engineering, incident response) in CI/CD and cloud-native environments
  • Integrate security into the software development lifecycle across products
  • Collaborate with product and development teams to ensure secure delivery without sacrificing agility
  • Drive bug bounty programs, application security reviews, and threat modeling including code and dynamic testing
  • Assess and integrate security tools (open-source vs vendor) to automate and scale processes
  • Gather and analyze security metrics to address issues with cross-team dependencies
  • Be a problem solver who empathizes with developers and builds innovative, practical solutions

Key requirements

  • 5+ years in Application/Product Security or Security Operations with emphasis on security tool onboarding and optimization
  • Knowledge of vulnerability management, network security, cloud security concepts, and industry best practices
  • Ability to operate effectively with ambiguity and make informed decisions with limited data
  • Willingness to balance build vs. buy decisions and review available tools
  • Solid understanding of secure engineering best practices and communicating with technical and non-technical audiences
  • Deep technical knowledge of common security vulnerabilities, risks, countermeasures, and compensating controls
  • Hands-on security engineer mindset with interest in automating controls
  • Empathetic to developer concerns
  • Flexible and constructive problem-solving approach
  • Ability to communicate risk and solutions to diverse audiences
  • Vulnerability management
  • SAST
  • DAST

…

Posted: October 5th, 2026