PE

Senior Security Engineer / Security Owner (Hands-on)

Hiring from
Europe
Work type
Remote
Posted
Sep 27, 2026
Is this job info correct?
PeopleForce is the core of modern employee management. Our comprehensive HR platform is built for easy and efficient management of the entire employee experience. We offer innovative, streamlined HR solutions globally. Our platform not only simplifies HR processes but also enhances business-employee interaction.

We value a high-performance culture and believe in each individual’s potential. We seek enthusiastic innovators who are excited about shaping the future of HR Tech.

Join us in transforming traditional HR into a dynamic, efficient, and user-friendly experience.


Who We Are Looking For: Senior Security Engineer / Security Owner (Hands-on) — First Security Hire.


As our first dedicated security hire, you will take ownership of practical security across our product, cloud infrastructure, engineering practices, customer data, and internal systems. This is a senior individual contributor role with broad ownership and direct access to leadership.

You will work closely with our VP of Engineering, Engineering team, Legal team, leadership, and external security providers. Your role will be to identify real security risks, translate them into clear technical actions, and ensure that improvements are implemented and followed through.

The ideal candidate combines strong Product and Application Security expertise with solid cloud, infrastructure, IAM, vulnerability management, and incident readiness experience. You should be comfortable moving between strategic prioritisation and hands-on execution.


Requirements:

  • 5+ years of relevant experience in Security Engineering, Application Security, Cloud Security, DevSecOps, or a similar technical security role.
  • Strong hands-on experience in Product and Application Security, including APIs, authentication, authorisation, secure SDLC, and vulnerability management.
  • Strong understanding of cloud security, preferably within GCP environments.
  • Experience with IAM, CI/CD, secrets management, logging, Infrastructure as Code, and containerised environments.
  • Experience selecting, implementing, or managing security tooling such as SAST, DAST, dependency, secrets, and IaC scanning.
  • Practical experience assessing security controls and driving remediation through to completion.
  • Experience with security risk management, incident response coordination, and incident readiness.
  • Understanding of endpoint, identity, and access security, including SSO, MFA, EDR, MDM, and Google Workspace.
  • Understanding of security controls required by enterprise customers and frameworks such as ISO 27001.
  • Experience working with external security providers, penetration testing, or vulnerability assessment partners.
  • Ability to translate security risks, external findings, and customer requirements into a prioritised Engineering backlog.
  • Strong ability to collaborate with and influence Engineering teams.
  • Confidence in communicating technical security topics to leadership and enterprise customers.
  • English level — Upper Intermediate or higher.

Responsibilities:

  • Own and develop the security roadmap at PeopleForce.
  • Identify, prioritise, and mitigate security risks across the product, cloud infrastructure, and internal systems.
  • Assess whether existing security controls work effectively in practice.
  • Embed security into the SDLC, application architecture, CI/CD, and cloud infrastructure.
  • Lead vulnerability management, threat modelling, security reviews, and remediation tracking.
  • Translate security findings into clear, actionable, and prioritised tasks for Engineering.
  • Own relationships with external security providers responsible for monitoring, penetration testing, vulnerability assessments, and incident support.
  • Review and challenge external findings, prioritise remediation, and ensure identified gaps are resolved.
  • Strengthen IAM, access management, data protection, secrets management, device security, and vendor security controls.
  • Develop and maintain practical incident response and security risk management processes.
  • Coordinate internal response and external provider involvement during security incidents.
  • Support enterprise customer security reviews, questionnaires, and calls.
  • Communicate security risks, priorities, and remediation progress to leadership.

What We Offer:

  • 100% remote work with a flexible schedule, Monday–Friday.
  • 20 paid vacation days and 10 sick days.
  • Health insurance after the probation period.
  • High ownership and direct impact on PeopleForce’s security.
  • Professional growth in an international SaaS company.
  • Regular English-speaking environment and direct communication with leadership.
If you are excited by the opportunity to build, influence, and take ownership, we would love to meet you. Join PeopleForce and help us build a secure and scalable foundation for the future of HR Tech.

Similar jobs

Apply for this job