Security Engineer

Meetgranola — United Kingdom · Posted ~14 hours ago

Full-time

Skills

application security security engineering vulnerability management threat modeling penetration testing secure coding security code review AI-assisted security tools

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

Help strengthen application security for a rapidly scaling software organization. You will identify and mitigate vulnerabilities, build security tooling, perform threat modeling and penetration testing, and embed secure practices throughout the software development lifecycle, including AI-assisted security analysis.

Highlights

Product security role spanning vulnerability discovery, security tooling, threat modeling, penetration testing, secure development practices, and collaboration with engineering teams.

Description

Hey! We're team Granola 👋 If you haven't already, you should check out what we're building, and why you should work here. In this role, you will be responsible for identifying and mitigating security vulnerabilities within Granola's applications, building security tools, and working closely with our development teams to integrate security throughout our software development lifecycle. You'll help establish a robust security culture as we unlock Granola for the next 100x users. In This Role, You Will Design and implement security features within the Granola app to protect user data and strengthen the product's security postureLeverage AI-assisted tooling to conduct security assessments, code reviews, threat modeling and penetration testing to identify vulnerabilities in our applicationsWork closely with development teams to ensure secure coding practices are integrated throughout the SDLCTrack, analyse, and manage application vulnerabilities, using AI-assisted triage and prioritisation to guide remediation effortsSupport incident response by investigating application-related security incidentsStay current on the latest security threats, vulnerabilities, and technologies to enhance our security posture Your Background Looks Something Like Extensive experience building production software, with hands-on exposure to security-sensitive work (auth, data handling, API design, encryption or similar) and a genuine interest in going deeper into application securityComfortable with secure coding practices and at least one of: threat modelling, risk assessments, or incident response, with appetite to grow across the restProficiency in programming languages such as TypeScript, Python, or similarExperience with cloud and cloud security (we use AWS)Strong communication skills with the ability to explain complex security issues to both technical and non-technical audiences As a person, you… Are first and foremost a builder who thinks like an attackerAre excited to work in-person from our office in London (most of the time)Love working in a startup environment (you either have experience working in a startup or are really drawn to the zero-to-one phase)Value working with people who are kind, ambitious, and pragmaticHave a passion for protecting users and building secure systemsThrive in a fast-paced environment where you can make a direct impact on product security About The Opportunity We are living in the most exciting time for tool builders since Engelbart's demo in 1968. We want to assemble the best crew to build this future together, here in London. Our compensation philosophy is to pay slightly above market on salary and above market on equity. We do our best work in person, and so our team spends time together five days per week in our new, bright, and spacious office at Old Street. We are happy to offer relocation assistance to candidates who'll be moving to London to join us. Lastly, we think amazing talent comes from all kinds of life journeys and experiences. If what is written above speaks to you, whether you look like a fit on paper or not, please reach out.