Sure Exec Search
Senior Security Engineer

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Senior Security Engineer – AI & Emerging Technologies
Location: London (2-3 days in the office)
Salary: £100,000 – £120,000 + annual discretionary bonus
(Sponsorship not provided)
About the Role
Our client is looking for a Senior Security Engineer to play a significant role in securing the firm’s adoption of AI and emerging technology.
You’ll work directly with the firm’s in-house AI team, ICT, and business stakeholders. Your remit will cover the enterprise AI platforms used across the organisation, alongside internally developed AI-enabled applications, workflows, integrations and agent-based solutions.
This is a senior individual-contributor role with genuine autonomy. Your judgement should come from understanding how a solution actually works, how data and permissions flow through it, where the security risks sit, and what practical controls are needed — not simply which framework it should be measured against.
Key Responsibilities
- Independently lead technical security assessments of third-party AI tools and enterprise AI platforms, including technologies such as ChatGPT, Claude, and Microsoft Copilot, going beyond vendor questionnaires to understand how identity, permissions, data flows, and integrations behave in practice.
- Lead STRIDE-based or equivalent threat modelling for internally developed AI applications, automated workflows, integrations, and agent-based use cases.
- Lead security architecture input for AI solutions, documenting security requirements, recommendations, design decisions, and relevant trade-offs.
- Define and recommend security controls across identity and access, data protection, logging and monitoring, encryption, and secure configuration, with particular depth across Microsoft 365, Entra ID, and Azure.
- Establish secure patterns and practical guardrails that allow AI and technology teams to innovate without re-solving the same security challenges for every new use case.
- Assess AI-specific risks including prompt injection, excessive agency, data exposure, insecure integrations, inappropriate permissions, access to sensitive information, and third-party AI risk.
- Credibly challenge technical designs with engineers, architects, vendors, and senior stakeholders, and help drive agreed remediation with the relevant owning teams.
- Monitor emerging AI attack techniques and security risks and translate them into practical mitigations for the organisation.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Skills & Experience
- Substantial hands-on experience in security engineering and/or security architecture, with clear examples of technical assessments, designs, or recommendations you have personally led and the impact your work had.
- Proven experience of structured threat modelling on real systems or applications, ideally using STRIDE or an equivalent methodology.
- Strong technical capability across Microsoft 365, Entra ID, and Azure, particularly around identity, permissions, data protection, and SaaS integrations.
- A strong understanding of how modern applications and integrations work, including APIs, service identities, OAuth permissions, automation, and access controls, and the ability to identify where a design could fail from a security perspective.
- A practical understanding of LLMs, generative AI, and agentic AI, together with the security risks they introduce.
- The confidence to provide clear, independent technical recommendations and explain complex security risks to both technical and senior non-technical stakeholders.
You do not need to have spent your entire career in AI security. Strong security engineering and architecture fundamentals are more important, alongside genuine curiosity about how AI is changing the threat landscape.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Helpful, but not essential
- Hands-on experience securing LLM applications or AI agents, including areas such as tool and connector permissions, retrieval over enterprise data, or Copilot data exposure.
- Experience working within an ISO 27001-aligned, regulated, or security-conscious environment.
- Certifications such as CISSP, CCSP, SC-100, or AZ-500. Equivalent technical experience is equally valuable.
Why it's worth a conversation
You’ll have significant technical influence at the point where an organisation’s AI ambitions meet its security requirements.
You’ll work closely with an in-house AI team developing its own solutions, alongside enterprise platforms and emerging technologies, giving you exposure to some of the most interesting security challenges currently facing large organisations.
The firm offers a collaborative, intellectually curious environment, a strong benefits package, and discretionary bonus.
If you are passionate about this opportunity and meet the qualifications and skills outlined, we encourage you to promptly submit your CV for consideration. Please note that the duties mentioned above are not exhaustive, and the role's responsibilities may evolve in response to changing circumstances and requirements.
Sure Commercial Limited (trading as Sure Exec Search) is a proud Equal Opportunities employer and does not discriminate against any candidate on the grounds of age, disability, sex, gender identity, sexual orientation, pregnancy and maternity, race, religion or belief, marriage and civil partnerships, or other applicable legally protected characteristics. Our Diversity, Equity, and Inclusion Policy is available on request.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location