What is Flagstone? Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business - where smart people do their best work. Each definition shares a common thread: our unique culture. It's our pride and joy. And our competitive advantage. A feel for our culture: To revolutionise the savings market, we need to be at our best. But high performance takes more than talent - it takes a culture of kindness, respect, and growth. That's why we're building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it. We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three. About the team Security Engineering is a team of five covering cloud security, detection, and security operations. They work directly in the Azure estate and are close to the infrastructure, not abstracted behind a policy layer. The team runs Microsoft Sentinel, Defender XDR, and Defender for Cloud, and manages tooling through infrastructure-as-code. They run a quarterly penetration test programme and are continuously building out our detection and response capability. It's a small team with broad scope, which means your work is visible, your opinions are heard, and there are meaningful problems for our engineers to work on. This is a contract role, so we're looking for someone who can hit the ground running. You'll bring immediate impact and add value from day one, working independently without a long ramp-up. Your work will be visible, and the problems you solve will matter. Does this sound like you? You're a senior security engineer who operates credibly across cloud security, detection tooling, and incident response, without being narrowly specialised. You own meaningful parts of the security stack, contribute hands on to Azure cloud hardening, and show up reliably when incidents need investigating or pen test cycles need coordinating. You're energised by visible impact, your work matters, and your voice is heard. What you'll do: Own and operate our alerting and monitoring capability through a transition period, keeping detection and response steady. Maintain and improve our Microsoft Sentinel deployment: writing and tuning detection rules, managing data connectors, and reducing alert noise. Operate and optimise Defender XDR and Defender for Cloud, including policy management and posture recommendations. Maintain and extend automated security checks in our delivery pipelines (shift-left). Drive down time to fix on known vulnerabilities, coordinating remediation with engineering squads. Support data loss prevention controls that reduce the risk of sensitive data leaving the business. Support safeguards around how the business accesses and uses AI, including securing AI workloads and their data exposure. Investigate suspicious activity surfaced through Sentinel and Defender: triage, elevate, or contain as appropriate. Support incident response, including containment, evidence gathering, and post incident review. Contribute to detection as code and infrastructure as code (Terraform or Bicep) for security tooling. Coordinate penetration test engagements (scope, logistics, findings review) and work with engineering teams to prioritise remediation. What you'll bring: Hands on SIEM experience, ideally Microsoft Sentinel; equivalent platforms (Splunk, Chronicle, QRadar) considered. Practical Azure security experience across Defender for Cloud, Entra ID, Azure networking, and cloud security posture management. Experience writing infrastructure as code using Terraform or Bicep in a security engineering context. Experience driving vulnerability remediation cycles with engineering squads. Familiarity with data loss prevention controls. Familiarity with AI security considerations (securing AI workloads, data exposure risks) and/or using AI tooling to augment security engineering workflows. Ability to contribute to threat modelling and communicate security risk clearly to engineering and product audiences. A growth mindset and genuine curiosity to keep learning. SC 200 (Microsoft Security Operations Analyst) certification. KQL proficiency for detection rule authoring and threat hunting. Experience working in a similar fintech or financial services environment. All are welcome: At Flagstone, we're assembling a diverse team that defies our industry's norms. Think this role could suit you? We encourage you to apply, no matter your background.
19/07/2026
Full time
What is Flagstone? Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business - where smart people do their best work. Each definition shares a common thread: our unique culture. It's our pride and joy. And our competitive advantage. A feel for our culture: To revolutionise the savings market, we need to be at our best. But high performance takes more than talent - it takes a culture of kindness, respect, and growth. That's why we're building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it. We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three. About the team Security Engineering is a team of five covering cloud security, detection, and security operations. They work directly in the Azure estate and are close to the infrastructure, not abstracted behind a policy layer. The team runs Microsoft Sentinel, Defender XDR, and Defender for Cloud, and manages tooling through infrastructure-as-code. They run a quarterly penetration test programme and are continuously building out our detection and response capability. It's a small team with broad scope, which means your work is visible, your opinions are heard, and there are meaningful problems for our engineers to work on. This is a contract role, so we're looking for someone who can hit the ground running. You'll bring immediate impact and add value from day one, working independently without a long ramp-up. Your work will be visible, and the problems you solve will matter. Does this sound like you? You're a senior security engineer who operates credibly across cloud security, detection tooling, and incident response, without being narrowly specialised. You own meaningful parts of the security stack, contribute hands on to Azure cloud hardening, and show up reliably when incidents need investigating or pen test cycles need coordinating. You're energised by visible impact, your work matters, and your voice is heard. What you'll do: Own and operate our alerting and monitoring capability through a transition period, keeping detection and response steady. Maintain and improve our Microsoft Sentinel deployment: writing and tuning detection rules, managing data connectors, and reducing alert noise. Operate and optimise Defender XDR and Defender for Cloud, including policy management and posture recommendations. Maintain and extend automated security checks in our delivery pipelines (shift-left). Drive down time to fix on known vulnerabilities, coordinating remediation with engineering squads. Support data loss prevention controls that reduce the risk of sensitive data leaving the business. Support safeguards around how the business accesses and uses AI, including securing AI workloads and their data exposure. Investigate suspicious activity surfaced through Sentinel and Defender: triage, elevate, or contain as appropriate. Support incident response, including containment, evidence gathering, and post incident review. Contribute to detection as code and infrastructure as code (Terraform or Bicep) for security tooling. Coordinate penetration test engagements (scope, logistics, findings review) and work with engineering teams to prioritise remediation. What you'll bring: Hands on SIEM experience, ideally Microsoft Sentinel; equivalent platforms (Splunk, Chronicle, QRadar) considered. Practical Azure security experience across Defender for Cloud, Entra ID, Azure networking, and cloud security posture management. Experience writing infrastructure as code using Terraform or Bicep in a security engineering context. Experience driving vulnerability remediation cycles with engineering squads. Familiarity with data loss prevention controls. Familiarity with AI security considerations (securing AI workloads, data exposure risks) and/or using AI tooling to augment security engineering workflows. Ability to contribute to threat modelling and communicate security risk clearly to engineering and product audiences. A growth mindset and genuine curiosity to keep learning. SC 200 (Microsoft Security Operations Analyst) certification. KQL proficiency for detection rule authoring and threat hunting. Experience working in a similar fintech or financial services environment. All are welcome: At Flagstone, we're assembling a diverse team that defies our industry's norms. Think this role could suit you? We encourage you to apply, no matter your background.
Flagstone is seeking a senior security engineer to own cloud security, detection tooling, and incident response within our Azure environment. You'll operate Sentinel, Defender for Cloud, and drive secure development practices across our delivery pipelines. You'll lead penetration test coordination, contribute to detection-as-code, and work with engineering squads to prioritise remediation. This is a contract role based in the UK, with visible impact across the business.
19/07/2026
Full time
Flagstone is seeking a senior security engineer to own cloud security, detection tooling, and incident response within our Azure environment. You'll operate Sentinel, Defender for Cloud, and drive secure development practices across our delivery pipelines. You'll lead penetration test coordination, contribute to detection-as-code, and work with engineering squads to prioritise remediation. This is a contract role based in the UK, with visible impact across the business.
Flagstone is seeking a senior cloud/infrastructure engineer to migrate live services to the new Azure cloud, provide day-to-day operational support, and develop reusable platform foundations for engineering teams. You will own migration delivery, design landing zones and hybrid connectivity, and help scale AI hosting and observability. A strong Azure background and IaC skills are essential.
16/07/2026
Full time
Flagstone is seeking a senior cloud/infrastructure engineer to migrate live services to the new Azure cloud, provide day-to-day operational support, and develop reusable platform foundations for engineering teams. You will own migration delivery, design landing zones and hybrid connectivity, and help scale AI hosting and observability. A strong Azure background and IaC skills are essential.
What is Flagstone? Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business - where smart people do their best work. Each definition shares a common thread: our unique culture. It's our pride and joy. And our competitive advantage. A feel for our culture: To revolutionise the savings market, we need to be at our best. But high performance takes more than talent - it takes a culture of kindness, respect, and growth. That's why we're building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it. We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three. But enough about us. Let's talk about you. Does this sound like you? You're an experienced security leader who enjoys building capable and effective teams while embedding security into everyday technology and business processes. You're comfortable balancing hands on input with coaching, strategy, and operational management. You can clearly explain the "why" behind security controls, work collaboratively across Technology, Risk, Compliance, and Product, and take a proactive approach to managing risk, incidents, and continuous improvement. What you'll do: Lead, coach, and grow a team of security analysts, and build the function as we scale. Shape and deliver the Information Security strategy, keeping it aligned to business goals and regulatory expectations. Embed "secure by design" across technology and product delivery, so security is built in, not bolted on. Be responsible for security governance, risk management, and control effectiveness, driving them day to day. Run and continuously improve our ISMS as the backbone for our security controls and initiatives. Drive ongoing improvement of our security processes, tooling, and standards. Lead security incident response and post-incident reviews, turning lessons into stronger defences. Partner with stakeholders across the business to plan, prioritise, and resource security work. Own hiring, onboarding, and development within the security team. What you'll bring: Proven Information Security experience in a regulated or complex environment (financial services / FCA exposure a strong plus). A track record of leading, coaching, and developing analysts. Strong leadership presence and the ability to influence across all levels, from engineers to executives, building buy-in for security without relying on authority alone. Demonstrable experience embedding AI governance, having defined and operationalised risk and control frameworks for the secure, responsible adoption of AI. Deep knowledge of security frameworks and security best practice (ISO 27001, NIST, OWASP, CIS). Strong command of security risk management, governance, and incident response. Cloud security expertise (Azure preferred), network security, and identity and access management (IAM), with fluency across modern tooling e.g. SIEM, EDR, DLP, IDP, IPS. Hands on experience with vulnerability management, identifying, prioritising, and driving remediation across the estate. Strong communication skills, with the ability to translate complex security risk into clear, actionable terms for both technical and non-technical audiences. A proactive, improvement focused mindset and excellent stakeholder collaboration. How we reward you: Hybrid working - Spend at least 1 day a week with your team in our collaborative London office. Competitive bonus scheme - designed to reward and recognise high performance. Flexible benefits budget - a pot to fund meaningful benefits for you, whether it's hormone or fertility testing, cancer screening, neuro diversity coaching or something that matters for you. A range of salary sacrifice options to help you make tax efficient savings on electric cars, nursery schemes, home and tech goods. Around the World scheme - 3 months work from anywhere scheme. Mental wellbeing support - Access therapy and mental health sessions through Spill. Learning and development - £1,000 personal development budget to help you grow in your role. Private health care - Enjoy all the benefits AXA has to offer, including reduced gym memberships and medical history disregarded. Medical cash plan - To help you with the costs of dental and optical expenses. Life insurance and Income Protection- four times your annual salary for peace of mind. Matched pension contributions up to 5%. 25 days holiday - plus bank holidays, well being days and volunteering days. Enhanced Parental Leave - enhanced maternity, paternity and adoption pay. All are welcome. At Flagstone, we're assembling a diverse team that defies our industry's norms. Think this role could suit you? We encourage you to apply, no matter your background.
16/07/2026
Full time
What is Flagstone? Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business - where smart people do their best work. Each definition shares a common thread: our unique culture. It's our pride and joy. And our competitive advantage. A feel for our culture: To revolutionise the savings market, we need to be at our best. But high performance takes more than talent - it takes a culture of kindness, respect, and growth. That's why we're building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it. We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three. But enough about us. Let's talk about you. Does this sound like you? You're an experienced security leader who enjoys building capable and effective teams while embedding security into everyday technology and business processes. You're comfortable balancing hands on input with coaching, strategy, and operational management. You can clearly explain the "why" behind security controls, work collaboratively across Technology, Risk, Compliance, and Product, and take a proactive approach to managing risk, incidents, and continuous improvement. What you'll do: Lead, coach, and grow a team of security analysts, and build the function as we scale. Shape and deliver the Information Security strategy, keeping it aligned to business goals and regulatory expectations. Embed "secure by design" across technology and product delivery, so security is built in, not bolted on. Be responsible for security governance, risk management, and control effectiveness, driving them day to day. Run and continuously improve our ISMS as the backbone for our security controls and initiatives. Drive ongoing improvement of our security processes, tooling, and standards. Lead security incident response and post-incident reviews, turning lessons into stronger defences. Partner with stakeholders across the business to plan, prioritise, and resource security work. Own hiring, onboarding, and development within the security team. What you'll bring: Proven Information Security experience in a regulated or complex environment (financial services / FCA exposure a strong plus). A track record of leading, coaching, and developing analysts. Strong leadership presence and the ability to influence across all levels, from engineers to executives, building buy-in for security without relying on authority alone. Demonstrable experience embedding AI governance, having defined and operationalised risk and control frameworks for the secure, responsible adoption of AI. Deep knowledge of security frameworks and security best practice (ISO 27001, NIST, OWASP, CIS). Strong command of security risk management, governance, and incident response. Cloud security expertise (Azure preferred), network security, and identity and access management (IAM), with fluency across modern tooling e.g. SIEM, EDR, DLP, IDP, IPS. Hands on experience with vulnerability management, identifying, prioritising, and driving remediation across the estate. Strong communication skills, with the ability to translate complex security risk into clear, actionable terms for both technical and non-technical audiences. A proactive, improvement focused mindset and excellent stakeholder collaboration. How we reward you: Hybrid working - Spend at least 1 day a week with your team in our collaborative London office. Competitive bonus scheme - designed to reward and recognise high performance. Flexible benefits budget - a pot to fund meaningful benefits for you, whether it's hormone or fertility testing, cancer screening, neuro diversity coaching or something that matters for you. A range of salary sacrifice options to help you make tax efficient savings on electric cars, nursery schemes, home and tech goods. Around the World scheme - 3 months work from anywhere scheme. Mental wellbeing support - Access therapy and mental health sessions through Spill. Learning and development - £1,000 personal development budget to help you grow in your role. Private health care - Enjoy all the benefits AXA has to offer, including reduced gym memberships and medical history disregarded. Medical cash plan - To help you with the costs of dental and optical expenses. Life insurance and Income Protection- four times your annual salary for peace of mind. Matched pension contributions up to 5%. 25 days holiday - plus bank holidays, well being days and volunteering days. Enhanced Parental Leave - enhanced maternity, paternity and adoption pay. All are welcome. At Flagstone, we're assembling a diverse team that defies our industry's norms. Think this role could suit you? We encourage you to apply, no matter your background.
What is Flagstone? Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business - where smart people do their best work. Each definition shares a common thread: our unique culture. It's our pride and joy. And our competitive advantage. A feel for our culture: To revolutionise the savings market, we need to be at our best. But high performance takes more than talent - it takes a culture of kindness, respect, and growth. That's why we're building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it. We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three. But enough about us. Let's talk about you. About the team Cloud Engineering builds and runs the new Azure cloud that everything else at Flagstone depends on. It's the foundation for our security tooling, our observability, and the hosting for our AI. The team works in infrastructure as code (Terraform and Bicep), owns the landing zones and hub and spoke networking, and builds the golden paths that speed up delivery across our engineering squads. They're close to the infrastructure, not abstracted behind a policy layer. This is a contract role, so we're looking for someone who can hit the ground running. You'll bring immediate impact and add value from day one, working independently without a long ramp up. Your work will be visible, and the problems you solve will matter. Does this sound like you? You're a senior cloud or infrastructure engineer who operates credibly across Azure platform delivery, networking, and infrastructure as code, without being narrowly specialised. You're as comfortable owning a migration and the day to day support that comes with it as you are designing shared platform foundations for other engineers to build on. You're energised by visible impact, your work matters, and your voice is heard. What you'll do: Migrate live services onto the new Azure cloud, with no disruption to current production systems. Absorb day to day operational support and incident response, relieving pressure on the permanent team and keeping migration cadence up. Author and maintain production grade Terraform (and Bicep) modules, with testing, validation, versioning, and automated drift detection and remediation. Design landing zones, hub and spoke network architectures, private endpoint patterns, and hybrid connectivity (ExpressRoute and VPN gateways). Build the shared integration "front door" that lets partners and AI tooling integrate quickly and safely. Define and roll out golden paths that cut delivery cost and speed up engineering squads. Stand up our AI platform foundations: an AI gateway, an observability stack, and hosting for AI tools including Flagstone Concierge, with model access through AWS Bedrock. Build and maintain infrastructure pipelines with security scanning, plan validation, and approval gates. Implement RBAC using Entra ID, managed identities, and service principals. What you'll bring: Hands on Azure platform experience across landing zones, networking, identity, and storage. Infrastructure as code with Terraform and/or Bicep in a production context, including migration between them. Practical experience with hub and spoke networking, private endpoints, DNS integration, and hybrid connectivity. Experience building end to end CI/CD pipelines with automated security and compliance gates. Solid grasp of Entra ID, RBAC, managed identities, and the Azure subscription and management group hierarchy. Comfortable owning both migration delivery and the operational support that runs alongside it. Ability to communicate design decisions and trade offs clearly, through engineering briefs and architectural decision records. A growth mindset and genuine curiosity to keep learning. Relevant Azure certifications (for example AZ 104 or AZ 305). Experience hosting AI workloads, including AI gateways, observability, and model access through AWS Bedrock. Experience building golden paths or internal developer platforms. Experience working in a similar fintech or financial services environment. All are welcome At Flagstone, we're assembling a diverse team that defies our industry's norms. Think this role could suit you? We encourage you to apply, no matter your background.
16/07/2026
Full time
What is Flagstone? Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business - where smart people do their best work. Each definition shares a common thread: our unique culture. It's our pride and joy. And our competitive advantage. A feel for our culture: To revolutionise the savings market, we need to be at our best. But high performance takes more than talent - it takes a culture of kindness, respect, and growth. That's why we're building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it. We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three. But enough about us. Let's talk about you. About the team Cloud Engineering builds and runs the new Azure cloud that everything else at Flagstone depends on. It's the foundation for our security tooling, our observability, and the hosting for our AI. The team works in infrastructure as code (Terraform and Bicep), owns the landing zones and hub and spoke networking, and builds the golden paths that speed up delivery across our engineering squads. They're close to the infrastructure, not abstracted behind a policy layer. This is a contract role, so we're looking for someone who can hit the ground running. You'll bring immediate impact and add value from day one, working independently without a long ramp up. Your work will be visible, and the problems you solve will matter. Does this sound like you? You're a senior cloud or infrastructure engineer who operates credibly across Azure platform delivery, networking, and infrastructure as code, without being narrowly specialised. You're as comfortable owning a migration and the day to day support that comes with it as you are designing shared platform foundations for other engineers to build on. You're energised by visible impact, your work matters, and your voice is heard. What you'll do: Migrate live services onto the new Azure cloud, with no disruption to current production systems. Absorb day to day operational support and incident response, relieving pressure on the permanent team and keeping migration cadence up. Author and maintain production grade Terraform (and Bicep) modules, with testing, validation, versioning, and automated drift detection and remediation. Design landing zones, hub and spoke network architectures, private endpoint patterns, and hybrid connectivity (ExpressRoute and VPN gateways). Build the shared integration "front door" that lets partners and AI tooling integrate quickly and safely. Define and roll out golden paths that cut delivery cost and speed up engineering squads. Stand up our AI platform foundations: an AI gateway, an observability stack, and hosting for AI tools including Flagstone Concierge, with model access through AWS Bedrock. Build and maintain infrastructure pipelines with security scanning, plan validation, and approval gates. Implement RBAC using Entra ID, managed identities, and service principals. What you'll bring: Hands on Azure platform experience across landing zones, networking, identity, and storage. Infrastructure as code with Terraform and/or Bicep in a production context, including migration between them. Practical experience with hub and spoke networking, private endpoints, DNS integration, and hybrid connectivity. Experience building end to end CI/CD pipelines with automated security and compliance gates. Solid grasp of Entra ID, RBAC, managed identities, and the Azure subscription and management group hierarchy. Comfortable owning both migration delivery and the operational support that runs alongside it. Ability to communicate design decisions and trade offs clearly, through engineering briefs and architectural decision records. A growth mindset and genuine curiosity to keep learning. Relevant Azure certifications (for example AZ 104 or AZ 305). Experience hosting AI workloads, including AI gateways, observability, and model access through AWS Bedrock. Experience building golden paths or internal developer platforms. Experience working in a similar fintech or financial services environment. All are welcome At Flagstone, we're assembling a diverse team that defies our industry's norms. Think this role could suit you? We encourage you to apply, no matter your background.
Flagstone is seeking a seasoned Information Security leader to build and scale a high performing security function. You will embed secure practices across technology and product, govern risk and incidents, and drive continuous improvement in processes and controls. In this hybrid London based role, you will partner with Technology, Risk, Compliance and Product, coach analysts, and shape strategy to meet regulatory expectations while enabling growth and innovation.
16/07/2026
Full time
Flagstone is seeking a seasoned Information Security leader to build and scale a high performing security function. You will embed secure practices across technology and product, govern risk and incidents, and drive continuous improvement in processes and controls. In this hybrid London based role, you will partner with Technology, Risk, Compliance and Product, coach analysts, and shape strategy to meet regulatory expectations while enabling growth and innovation.