Rodeo
Get started

Phorest Software

Senior Security Enablement Engineer

Leatherhead
Posted about 22 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

About Phorest

Phorest Salon Software powers over 11,000 hair and beauty salons in Ireland, UK, Germany, Australia, Finland, USA, Canada, UAE, and Netherlands, and the platform processes 7 million appointments a month for hair and beauty consumers. Phorest is the number 1 salon software brand for premium independent salons in those markets and our next goal is to become a platform upon which other companies can build applications for premium salons.

Our system touches every point of the salon experience. We have the in-salon software desktop application, Phorest Go (the native staff application), online bookings website for salons, and custom native apps per salon. In a typical month, Phorest processes 3 million appointments and we send over 3 million SMS and 4 million emails. We process 200k online bookings per month and over 150 custom built white label native apps.

The Opportunity

We’re adding to our security capability and we are looking for someone who can move the needle, not a ticket-taker, but an experienced engineer who takes initiative, builds things, and genuinely partners with our product and engineering teams and the wider business. You’ll use your deep security expertise not only to solve complex problems, but to raise the security capability of the teams around you.

Reactive work eats into time that should be spent on proactive, strategic programmes. You will change that dynamic: by building security tooling and processes that scale, identifying risks and capability gaps, and turning them into impactful improvements. By embedding yourself in our engineering culture you’ll make security an integral part of how teams build and enable engineers to make good security decisions.

You will function primarily as an enabler, working across our stream-aligned engineering teams to build security knowledge, tooling, and practice where the work actually happens. An integral part of your impact will come through coaching others, sharing knowledge and creating scalable practices that raise the security bar for our Engineering Team.

What You'll Do

You will own security engineering outcomes - acting as SME, identifying cross-functional opportunities, and driving improvements through to impact.

Security Platform & Developer Tooling

  • Partner with engineering teams to introduce tooling that makes secure coding the path of least resistance. Identify opportunities to improve the security experience and take ownership of delivering improvements that materially reduce risk or friction.
  • Collaborate with platform engineers to weave security into CI/CD pipelines, our cloud environment and code review workflows, without creating friction or bottlenecks. Establish reusable patterns and practices that enable teams to adopt secure-by-default approaches.
  • Work with engineering leads to identify and prioritise process & tooling improvements against our real risk landscape, building shared agreement on what matters most.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Developer Enablement & Partnership

  • Proactively identify security knowledge and capability gaps, and build confidence across Phorest engineering through collaborative threat-modelling sessions, documentation, and hands-on pairing, so teams can make good security decisions independently.
  • Embed with stream-aligned product teams at key stages like design, architecture review, pre-launch to provide security input as a trusted peer, not an external auditor. Coach teams through complex security decisions, helping them build their own capability.
  • Act as a subject matter expert and trusted partner between Security and Product & Engineering, helping teams understand security and compliance requirements.
  • Share security learnings, emerging threats and lessons from incidents across Engineering, creating reusable guidance that raises the baseline of secure engineering and proactively creates awareness for how teams consider security.

Security Monitoring & Risk Understanding

  • Work alongside the broader security and IT team to proactively monitor security signals and alerts, identify patterns and build shared situational awareness across the team.
  • Identify and assess emerging security risks and opportunities, conduct exploratory risk analysis that shapes the security programme roadmap, bringing in the engineering perspective you've built through close team relationships.
  • Build out security requirements and review processes for our AWS-hosted, multi-tenant SaaS environment.
  • Contribute to the on-call rota, providing security coverage for incidents as they arise.
  • Support security incident response end to end, from initial triage and containment through to post-incident review and remediation tracking.

Who You Are

You take initiative.

We’re looking for someone that creates momentum over responding to demand, we need someone who sees a risk or an opportunity, develops a point of view, and moves, keeping stakeholders informed along the way. You are comfortable defining the problem, deciding your approach and owning the outcome.

You can bridge technical and non-technical worlds.

Phorest's engineering teams are sharp and want genuine security partnership, but not everyone in the company is technical, so you will need to be credible with both explaining risk clearly to technical and non technical audiences, and translating security requirements into practical engineering guidance.

You have a proactive growth mindset.

You seek feedback, challenge the status quo, embrace ambiguity and turn what you learn into action — sharing knowledge and raising the capability of those around you.

You are technically grounded.

  • Demonstrable Hands-on secure development experience (preferably 7+ years); you have written production code at some point in your career.
  • Deep enough experience in a security engineering or application security role to act as a subject matter expert for complex security challenges.
  • Comfortable using AI tools to accelerate security work, generating, and analysing at pace while keeping your human judgment at the center of every decision.
  • Strong working knowledge of AWS security, IAM, GuardDuty, Security Hub, WAF, and related services.
  • Familiarity with common vulnerability classes, OWASP, and secure SDLC frameworks.
  • Comfortable working across SaaS, multi-tenant architectures.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

You bring the soft skills.

  • Strong communicator, written, verbal, and async.
  • Able to build trust with engineering teams without relying on authority.
  • Proactive in keeping stakeholders informed; you surface problems early rather than waiting to have answers.
  • Comfortable working in a distributed team where you own outcomes end to end.

NICE TO HAVE

  • Experience working in a payments or regulated SaaS environment (PCI DSS, GDPR, HIPAA).
  • Familiarity with Team Topologies or other platform/enabling team models.
  • Exposure to offensive security techniques, penetration testing, red teaming, or bug bounty.
  • Experience building security enablement or champion programmes that improve security capability and ownership across an engineering organisation.

Benefits

  • 🧘 Your wellbeing is important to us - we provide private healthcare, 2 Wellness Days, an employee assistance program and a free online GP service.
  • 💰 As part of our Financial Wellbeing, we provide competitive Compensation, an Employee Share Purchase Scheme, Pension, Life Assurance, and Income Protection.
  • 🚵🏿 We help you travel by providing a bike to work scheme as well as tax saver transport tickets.
  • 🦸‍♀️ We support the women who work in Phorest by offering 2 weeks leave for Fertility Treatment, Pregnancy Loss and Menopause.
  • 🍼 We care for your family and provide Enhanced Maternity and Paternity Benefits.
  • 🌳 We grow our own timber! We provide a great learning environment and extensive development opportunities. We run development programs and provide access to many online resources including LinkedIn learning.
  • 🏠 Moving house? Phorest employees get 3 moving days.

Want to learn more about Phorest? Check out nothingventured.rocks for our blog and Insights on building an evergreen company from the team here at Phorest.

Phorest is an equal opportunity employer. For this position, flexi-time and working from home is possible. We are also open to remote work. Get in touch to ask for more information or to chat about your future with Phorest!

Research shows that while men apply to jobs when they meet an average of 60% of the criteria, women and other marginalised folks tend to only apply when they check every box. So if you think you have what it takes, but don't necessarily meet every single point on the job description, please still get in touch. We'd love to have a chat and see if you could be a great fit.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

Leatherhead, England, United Kingdom

Sign up to applySee more jobs like this