Senior Platform & Security Engineer

Yonder
London
6 days ago
Create job alert

What's Yonder?

We're building the financial membership of the future. Starting with a credit card that has fun and experiences at its core, we're the antithesis to your dad's stuffy, corporate, boring credit card.

"It's as if Time Out, Amex and Monzo had a baby" - Will T, Yonder Member

Whilst tech is revolutionising the finance industry, credit is still stuck in the stone ages. We want to create a world where financial services are fair and conscious, and the stress of debt is eliminated for everyone.

We've raised an additional £23.4M in September 2024 to grow our team, launch even better rewards and fast-track our expansion outside the UK.

Sounds cool. What's my part in this?

As ourSenior Platform & Security Engineer, you'll be the first dedicated hire in this space. You'll work closely with our CTO, backend engineers, and cross-functional squads to enhance our platform's reliability, security, and cost efficiency. You'll have both hands-on responsibilities (building and automating) and strategic influence (shaping security/compliance policies, optimizing cloud spend, and designing next-gen CI/CD pipelines).

What you'll do

  1. Infrastructure & Scalability
    • Own and evolve our AWS and GCP infrastructure, ensuring the systems are fully optimised and up-to-date.
    • Maintain and improve our Kubernetes-based micro-services architecture with a focus on resilience and scalability.
    • Drive cost optimisation initiatives by reviewing usage patterns, exploring managed services, and fine-tuning resource allocation.
    • Champion IaC to ensure repeatable and auditable infrastructure management.
    • Design and implement next-generation CI/CD pipelines using GitHub Actions (and potentially other tooling).
  2. Security & Compliance
    • Own our security tooling (e.g. Snyk) and processes to ensure vulnerabilities are identified, prioritised, and remediated.
    • Collaborate with the compliance team to prepare for PCI DSS, ISO 27001, and other upcoming certifications.
    • Build on existing robust security practices by implementing new policies, best practices, and security frameworks as needed.
  3. Strategic Input & Ownership
    • Work directly with the CTO to shape the long-term platform roadmap and overall security strategy.
    • Evaluate new tools and emerging technologies to support Yonder's growth and engineering efficiency.
    • Contribute to architectural decisions, particularly where reliability and security are paramount.


You're a great fit if you

  • Strong experience withKubernetes,Terraform, andCloudenvironments (AWS or GCP, ideally both).
  • Have experience withTerraformor anotherIaCtool.
  • Solid understanding ofDevSecOpspractices, including vulnerability scanning, threat modelling, or compliance frameworks (GDPR, PCI DSS, ISO 27001).
  • Thrive in a fast-moving, sometimes ambiguous environment where you can have a big impact.
  • Comfortable mentoring other engineers and promoting security-aware engineering practices.
  • Are passionate about learning and growth.


You won't be a great fit if you

  • Are not comfortable working in a fast-paced environment.
  • Are not interested in working on a variety of projects and wearing many hats.
  • Are not passionate about scalability and security.


What's it like working at Yonder?

We're office-first, remote-friendly

We're based in our Hoxton office, complete with a terrace, breakfast, coffee (from a barista), dogs, beer taps and plenty of comfortable space to do your best work. We ask you to come into the officeat least 3 days a week, with everyone coming in on Mondays.

We take a values-led approach

Our principles are incredibly important to us, so we recommend you check them out here: Our DNA.

We take development really seriously

We have a pretty structured process for progression, with fortnightly one-on-ones and quarterly peer perspectives. We also take some time at the end of each week to reflect and celebrate what we've learned and achieved.

What's in it for me?

Depending on your skill set and what you can bring from day one, you'll be looking at:

£91,543 - £104,556depending on experience

£78,810 - £97,681stock options

Plus

35 holidays (27 days annual leave + 8 days public leave)

Regular team-building trips and activities

Private healthcare with Vitality, including mental health, dental & vision cover

16 weeks enhanced parental leave for all parents after being with Yonder for 1 year

Financial coaching with Octopus Money

Learning & training allowance (£750/year) that you can use on books, courses, etc.

Monthly team breakfast/lunch

Regular team events like Mini-golf, Escape Room, Cocktail making

Cycle-to-work scheme

Fresh pour-over coffee made by our very own CEO, Tim.

What's the interview process like?

We take the candidate experience really seriously, so we've made the process as transparent as possible. We also promise to be super responsive, and will never leave you wondering where you stand for weeks on end.

Here's how it works:

  1. Stage 1:Intro call (45 mins):
    You will have an initial Zoom call with Harry (our CTO) to find out more about you and to tell you more about us.
  2. Stage 2:Take home task: We'll give you a small code-base that we want to look at getting deployed, we'll want some IaC for the deployment, along with a CI/CD pipeline with security checks for releasing and documentation about the setup. You'll submit a complete solution as a GitHub repo.
  3. Stage 3:Face-to-face interview (2 hours):
    Two 60-minute interviews to learn more about how you work. This will also be a great opportunity for you to meet the rest of the team so we would love it if you can come into the office for it! Interviews will be structured as follows:
    • Experience interview:We'll deep dive into your CV and talk about your past experiences. This stage will be with the CTO and a backend engineer.
    • Values interview:We want to learn more about how you work - we'll ask you questions related to our principles (Our DNA). This stage will be with two people from our wider team.
  4. We'll also include a 15-minute comfort break
  5. Stage 4:Offer If everyone's happy, we'll make you an offer to join us - YAY! We hope to always give you a decision between each stage within 24 hours (where possible).


Other things to know:

  • We love closing the feedback loop at Yonder. You can expect specific feedback on our decision from Stage 2 onwards, and you can always ask for more.
  • We must complete the right to work & criminal background checks for every new Yonder-er for compliance purposes because we handle sensitive customer data.
  • We also do reference checks, ideally with your most recent manager on the phone.
  • We like to move quickly at Yonder, so we will be ready to onboard you once the above checks are complete - the entire process can take between 2 - 6 weeks.


We know that diverse teams build better products. If you're from an under-represented community, we'd especially love to hear from you.

Even if you don't feel 100% qualified, please do apply anyway. Your attitude and desire to grow are just as important as your experience.

Department Engineering Locations London, UK#J-18808-Ljbffr

Related Jobs

View all jobs

Senior Digital Platform Security Engineer, Derbyshire

Senior Security Engineer

C++ Engineer

Senior Security Engineer

Senior Security Engineer

Senior Network and Security Engineer

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

10 Must-Read Cyber Security Books for UK Professionals: Boost Your Career and Stay Ahead of Threats

With rapid advancements in digital infrastructure, cloud computing, and the Internet of Things (IoT), cyber threats continue to evolve at lightning speed. For organisations across the UK—and globally—robust cyber security is no longer optional: It’s a strategic imperative. From healthcare and finance to government agencies and tech start-ups, every sector needs skilled professionals to safeguard critical data and protect users. If you’re looking to break into or advance within the cyber security industry, staying updated on the latest techniques, threat landscapes, and defence strategies is paramount. One of the best ways to build and sharpen your expertise is by reading authoritative, high-quality books that combine foundational knowledge with cutting-edge insights. In this guide, we’ve compiled a list of ten books that cater to various skill levels, spanning ethical hacking and threat intelligence to secure software development and cryptography. By diving into these resources, you’ll fortify your understanding of cyber security fundamentals, explore hands-on techniques for defending systems, and gain the strategic perspective needed to excel in roles throughout the UK’s thriving cyber security landscape.

Navigating Cybersecurity Career Fairs Like a Pro: Preparing Your Pitch, Questions to Ask, and Follow-Up Strategies to Stand Out

In a world where digital threats are escalating and online infrastructure underpins nearly every aspect of our personal and professional lives, cybersecurity has swiftly become one of the most sought-after career fields. Demand for skilled cybersecurity professionals outstrips supply, both in the UK and globally. From ethical hackers and penetration testers to governance, risk, and compliance (GRC) specialists, the opportunities are extensive—and lucrative. Amidst this surge in demand, cybersecurity career fairs provide an invaluable chance to meet potential employers face-to-face, gain industry insights, and make connections that can accelerate your career trajectory. Unlike applying to countless jobs online, these events bring companies, security leaders, and aspiring candidates together under one roof. When approached with the right strategy, a single conversation at a cybersecurity fair can open the door to your dream job. In this comprehensive guide, we’ll explore how to prepare thoroughly, engage confidently, and follow up effectively after a cybersecurity career fair. By incorporating these insights into your approach, you’ll stand out from the crowd and maximise your chances of securing the perfect role in this fast-growing field.

Common Pitfalls Cyber Security Job Seekers Face and How to Avoid Them

The cyber security industry in the UK and worldwide is experiencing rapid growth. With cyber attacks growing in sophistication and frequency, organisations are investing more resources than ever into defending their digital assets. From penetration testers and threat analysts to security architects and compliance officers, cyber security professionals are in high demand across a variety of sectors—including finance, healthcare, government, and retail. Yet, in spite of this high demand, the process of landing a cyber security role can be more challenging than many candidates anticipate. The stakes are high: prospective employers entrust cyber professionals with their most sensitive data, their compliance posture, and often their core business operations. Therefore, they’re looking for candidates who can demonstrate not just technical know-how, but also excellent communication, adaptability, and an awareness of the broader business context. In this article, we’ll explore the most common pitfalls that cyber security job seekers face, especially in the UK market, and how to avoid them. Whether you’re a recent graduate, a professional transitioning from a different field, or an experienced practitioner aiming for a senior role, these insights will help you stand out and secure the opportunities that fit your skill set and career goals.