Security Engineer 3 - Vulnerability Management
Tide is a UK business-banking fintech for small and medium enterprises (tide.co), a Speedinvest portfolio company.
About Tide
Tide is a UK financial-technology company providing business banking and financial services to small and medium enterprises (tide.co). It is a portfolio company of Speedinvest.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will triage and validate vulnerabilities from security tooling, prioritise findings according to exploitability and business context, automate remediation workflows, verify fixes, and partner with engineering and IT teams to resolve risks. You will also build security dashboards, drive remediation behaviours, monitor the remediation pipeline, and improve vulnerability management processes.
Requirements
- Hands-on experience in vulnerability management or a similar analytical security role
- Familiarity with Wiz, Semgrep, CrowdStrike, EASM platforms, or comparable scanners
- Understanding of CVSS, EPSS, CISA KEV exploitability, and asset context
- Experience with risk acceptance and exception management workflows
- Experience with workflow automation and orchestration
- Ability to build reports and dashboards
- Strong communication and stakeholder skills
- Experience in fintech, regulated financial services, or a high-assurance environment is preferred
Responsibilities
- Triage and validate vulnerabilities from security tooling
- Prioritise findings by severity, exploitability, asset criticality, and business context
- Automate routing, ticketing, deduplication, and escalation workflows
- Verify vulnerability fixes through rescanning or manual checks
- Advise engineering and IT teams on practical remediation
- Build vulnerability posture and remediation dashboards
- Design nudging strategies to improve remediation behaviours
- Monitor ageing findings and stalled remediation items
- Improve remediation processes, SLAs, taxonomies, and tooling configuration
Benefits
- Competitive compensation and share options
- Generous annual leave
- Paid maternity, paternity, and adoption leave
- Paid and unpaid sabbatical options
- Private family health insurance with additional OPD coverage and top-up options
- Life and accident insurance
- Therapy sessions, courses, meditations, and workshops
- Paid volunteering and development days
- Annual learning and development budget
- Work from abroad for up to 90 days annually
- Home office setup contribution
- Laptop ownership and replacement program
- Office snacks, coffee, tea, and lunch
