Checkatrade is the UK’s leading platform for finding a tradesperson, and they are seeking a Senior Security Engineer to shape secure software development. In this role, you will design platforms and guardrails for engineering teams, drive a modern secure SDLC, and implement scalable security controls across their multi-cloud environment.
Responsibilities:
- Design and implement scalable security controls and platform-level guardrails across our multi-cloud estate: build it once, make it the default everywhere
- Drive a modern secure SDLC by embedding threat modelling, SAST/DAST/SCA, secrets management, and dependency hygiene directly into the developer workflow, not bolted on as an afterthought
- Prototype and deploy AI agents that review code, triage findings, and turn vulnerability noise into actionable signals, becoming the assistant every developer wishes they had
- Own the security of our IaC, CI/CD pipelines, and cloud platforms, making least privilege the default rather than a project
- Partner with engineering to deliver paved paths, libraries, and tooling that make the secure way the easy way
- Run technical security reviews for new applications and infrastructure changes, finding the issues that matter with the evidence to back it up
Requirements:
- Demonstrable experience across application security, cloud security, and modern platform engineering. You've built things, not just reviewed them
- A strong, evidenced point of view on how agentic AI transforms code review, threat modelling, and developer enablement, with the receipts to back it up
- Extensive hands-on experience securing complex multi-cloud environments (AWS, GCP, Azure), plus deep familiarity with Terraform, Kubernetes, and CI/CD security patterns
- A genuine sense of developer empathy, built from sitting with engineers, watching them work, and shipping things they actually want to use