Rodeo
Get started

Flagstone

Senior Security Engineer

London
Posted 3 months ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

What is Flagstone?

Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared purpose. And lastly, a thriving, profitable business – where smart people do their best work.

Each definition shares a common thread: our unique culture. It’s our pride and joy. And our competitive advantage.

A feel for our culture:

To revolutionise the savings market, we need to be at our best. But high performance takes more than talent – it takes a culture of kindness, respect, and growth.

That’s why we’re building a diverse, inclusive community, where your voice is heard and valued. Where, with close support and room to develop, you can surpass even your own expectations. And be rewarded for it.

We may not change the world, but we can change the world of financial technology. And all it takes is a winning mix of drive, talent, and empathy. Our culture celebrates all three.

But enough about us. Let’s talk about you.

About the Team

Security Engineering is a team of five covering cloud security, detection, and security operations. They work directly in the Azure estate and are close to the infrastructure, not abstracted behind a policy layer. The team runs Microsoft Sentinel, Defender XDR, and Defender for Cloud, and manages tooling through IaC. They run a quarterly penetration test programme and are continuously building out our detection and response capability. It's a small team with broad scope, which means your work is visible, your opinions are heard, and there are meaningful problems for our engineers to work on.

Does this sound like you?

You're a Senior Security Engineer who operates credibly across cloud security, detection tooling, and incident response, without being narrowly specialised. You own meaningful parts of the security stack, contribute hands on to Azure cloud hardening, and show up reliably when incidents need investigating or pen test cycles need coordinating. You're energised by visible impact, your work matters and your voice is heard.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

What you’ll do:

  • Maintain and improve our Microsoft Sentinel deployment - writing and tuning detection rules, managing data connectors, and reducing alert noise
  • Operate and optimise Defender XDR and Defender for Cloud, including policy management and posture recommendations
  • Harden our Azure environment across identity, access management, networking, storage, WAF configuration, and logging pipelines
  • Contribute to infrastructure-as-code (Terraform or Bicep) for security tooling deployments and configuration drift management
  • Investigate suspicious activity surfaced through Sentinel and Defender - triage, escalate, or contain as appropriate
  • Support incident response activities including containment, evidence gathering, and post-incident review
  • Participate in security risk assessments and threat modelling exercises across new and existing systems
  • Coordinate penetration test engagements (scope, logistics, findings review) and work with engineering teams to prioritise remediation

What we’re looking for

  • Hands-on SIEM experience, ideally Microsoft Sentinel; equivalent platforms (Splunk, Chronicle, QRadar) considered
  • Practical Azure security experience across Defender for Cloud, Entra ID, Azure networking, and cloud security posture management
  • Experience writing infrastructure-as-code using Terraform or Bicep in a security engineering context
  • Ability to contribute to threat modelling and communicate security risk clearly to engineering and product audiences
  • Experience supporting or coordinating penetration testing programmes, including managing remediation cycles
  • Familiarity with AI security considerations (securing AI workloads, data exposure risks) and/or using AI tooling to augment security engineering workflows
  • A growth mindset and genuine curiosity to keep learning

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Nice to Have

  • SC-200 (Microsoft Security Operations Analyst) certification
  • KQL proficiency for detection rule authoring and threat hunting
  • Experience working in a similar fintech/financial services environment

How we reward you:

At Flagstone, the benefits extend beyond false gifts like “fruit and snacks”. Instead, we invest in your health, wealth, and professional development. Here’s a selection of our benefits:

  • Competitive bonus scheme - designed to reward and recognise high performance
  • Flexible benefits budget - a pot to fund meaningful benefits for you, whether it's hormone or fertility testing, cancer screening, neuro-diversity coaching or something that matters for you.
  • A range of salary sacrifice options to help you make tax efficient savings on electric cars, nursery schemes, home and tech goods.
  • Around the World scheme - 3 months work from anywhere scheme (some exclusions do apply)
  • Mental wellbeing support – Access therapy and mental health sessions through Spill
  • Learning and development – £1,000 personal development budget to help you grow in your role.
  • Private health care - Enjoy all the benefits AXA has to offer, including reduced gym memberships and medical history disregarded
  • Medical cash plan - To help you with the costs of dental and optical expenses
  • Life insurance and Income Protection- four times your annual salary for peace of mind
  • Matched pension contributions up to 5%
  • 25 days holiday - plus bank holidays, well-being days and volunteering days
  • Enhanced Parental Leave – enhanced maternity, paternity and adoption pay.

All are welcome.

At Flagstone, we’re assembling a diverse team that defies our industry’s norms. Think this role could suit you? We encourage you to apply, no matter your background.

#LI-hybrid

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Microsoft Sentinel
Azure Security
Defender XDR
Defender for Cloud
Terraform
Bicep
Infrastructure as Code
Incident Response
Threat Modelling
Penetration Testing Coordination
KQL
Entra ID
Cloud Hardening
SIEM
AI Security
Network Security

Location

London, England, United Kingdom

Sign up to applySee more jobs like this