StackOne is the integration infrastructure for AI agents. Backed by GV and Workday Ventures ($24M raised), we make it possible for any AI agent — whether our customers build it into their product or buy it off the shelf — to take real action across the enterprise stack. Our platform gives agents 430+ connectors and 26,000+ pre-built actions, an AI connector builder for everything not covered yet, and the production layer agents actually need: semantic tool discovery that cuts token use by up to 80%, managed authentication and per-action permissions, the most accurate prompt injection defense on the market, and end-to-end observability.
Join us on our fast trajectory to build the future of agentic integrations.
🎯 The Role
We’re looking for a Security Engineer to be a key hire on our Engineering team and own our cloud and product security posture as we scale. You’ll work across our AWS and Cloudflare estate, harden our secure SDLC, run pen testing efforts end-to-end, and threat-model the features powering our connectors, OAuth flows, and agent execution paths.
It’s a hands-on, DevSecOps-heavy role: you write code, ship tooling, and embed security into how engineers work every day. You’ll report directly to the CTO and have broad scope across the platform (from CI/CD pipelines to multi-tenant APIs to incident response on authentication flows).
✅ Key Responsibilities
Own the secure SDLC: drive SAST, dependency scanning, secrets detection, and PR-blocking standards across every repository.
Harden our AWS and Cloudflare estate: IAM, secrets, network segmentation, KMS, WAF, GuardDuty, and zero-trust patterns.
Run pen testing end-to-end: scope and coordinate engagements with both AI-driven scanners and human researchers, then drive findings through fix and retest.
Threat-model product features before they ship, new Auth provider, expanded multi-tenant APIs, connector executions, agent tool-calling paths etc.
Build detection and response capability around credential and authentication flows, with observability that closes incidents fast.
Partner with engineering to raise the bar day-to-day: architecture reviews, written standards, and security embedded in code review.
Support compliance work where it intersects security engineering: SOC 2, ISO 27001, customer security reviews, and pen test responses.
⭐ Desirable Experience
3+ years in security engineering with hands-on AWS security: IAM, KMS, networking, secrets, GuardDuty / Security Hub.
Strong coding ability in TypeScript or Python or Go comfortable shipping production code, not just configs and scripts.
Experience securing a B2B SaaS multi-tenant production environment.
Comfort owning end-to-end work: scope, ship, measure. You don’t wait for a queue.
Clear communication with engineers, product, and non-technical stakeholders.
Bias toward automating security checks instead of running manual checklists.
(Preferred) IaC fluency in AWS CDK or Terraform , comfortable reviewing infrastructure code for security misconfigs and writing custom scanning rules.
(Preferred) Experience with Aikido, Drata, Cloudflare Workers, or pen testing in a compliance-mature environment.
🎁 Benefits
Join one of Europe's fastest-growing startups.
Work alongside an experienced team, with backgrounds from Google, Microsoft, Oracle, Coinbase, JP Morgan, and more.
Meaningful share options (EMI) — share in the company's success as we grow.
Flexible hours and hybrid working — some flexibility in start and finish times, with 2 days minimum in our London office (come in more if you prefer!)
25 days holiday + 1 additional day per year of tenure.
Private health insurance — including dental & optical.
£15/day lunch budget when working from our London office, up to £180/month.
£1,000 for your home office setup + £500/year top-up.
Health, fitness and gift card discounts.
Cycle2Work and Electric Cars scheme.
Annual team offsites to sunny spots (last ones were in Croatia and Portugal ☀️)
Please let StackOne know that you found this role at devopsprojectshq.com as a way to support us, so we can keep providing you with awesome DevOps jobs.
Never miss a job
Join 2,000+ DevOps developers getting weekly alerts for remote and US/EU roles, Kubernetes, AWS, Terraform, filtered for your stack.
🔒 Need an IP to whitelist?
Get a dedicated static EU outbound IP for Banks, payments, EHRs, APIs, AI.