Product Security Engineer - Engine by Starling

  • Onyx-Conseil
  • 26/05/2026
Full time Information Technology Telecommunications

Job Description

Hybrid Working

We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of our offices so that we're able to interact and collaborate in person.

About the role

As a Product Security Engineer at Engine, you will be a technical strategist responsible for proactively identifying and mitigating security risks across our platform and products. Your primary mission is to ensure we build secure systems by providing expert security analysis, architectural guidance, and process leadership. You will lead threat modelling sessions, conduct in-depth security reviews of new features, manage our penetration testing programme, and triage complex findings. This role requires a deep understanding of technology and attack vectors, combined with the ability to think strategically and communicate complex risks to both technical and non-technical stakeholders.

We are looking for an experienced Product Security Engineer to join our growing Security Engineering team, working closely with the GRC team and the various Engine Technology teams to make sure security is at the heart of all our technical processes. Your place within the team will depend on your individual strengths and interests.

This role will cover a wide array of security areas across our multi-tenant SaaS cloud environments and internal infrastructure and will require a skilled individual to spearhead efforts in fortifying both infrastructure and application platforms, against potential threats.

What you'll get to do
  • Conduct comprehensive security architecture and design reviews, ensuring that security is embedded from the start
  • Lead the threat modelling process (e.g., using STRIDE) for new products and features, identifying potential design flaws and defining security