Senior Platform & Security Engineer

Yonder Global Group
London
3 months ago
Create job alert

What’s Yonder?

We’re building the financial membership of the future. Starting with a credit card that has fun and experiences at its core, we’re the antithesis to your dad’s stuffy, corporate, boring credit card.

“It's as if Time Out, Amex and Monzo had a baby”- Will T, Yonder Member

Whilst tech is revolutionising the finance industry, credit is still stuck in the stone ages. We want to create a world where financial services are fair and conscious, and the stress of debt is eliminated for everyone.

We've raised an additional £23.4M in September 2024 to grow our team, launch even better rewards and fast-track our expansion outside the UK.

Sounds cool. What’s my part in this?

Over the last year we've added a free membership tier, hundreds of new independent partners around the country, countless product improvements and our personal favourite, Yonder Flights, a new way to use Yonder points on any flight with any airline globally and launched a linked bank account to allow members to top-up their balance. We've maintained a 4.5 TrustPilot rating and are the number one ranked credit card with Smart Money People. Our customers really love us (and we love them back... hi!).

As ourSenior Platform & Security Engineer, you’ll be the first dedicated hire in this space. You’ll work closely with our CTO, backend engineers, and cross-functional squads to enhance our platform’s reliability, security, and cost efficiency. You’ll have both hands-on responsibilities (building and automating) and strategic influence (shaping security/compliance policies, optimizing cloud spend, and designing next-gen CI/CD pipelines).

What you’ll do

  • Infrastructure & Scalability
    • Own and evolve our AWS and GCP infrastructure, ensuring the systems are fully optimised and up-to-date.
    • Maintain and improve our Kubernetes-based micro-services architecture with a focus on resilience and scalability.
    • Drive cost optimisation initiatives by reviewing usage patterns, exploring managed services, and fine-tuning resource allocation.
    • Champion IaC to ensure repeatable and auditable infrastructure management.
    • Design and implement next-generation CI/CD pipelines using GitHub Actions (and potentially other tooling).
  • Security & Compliance
    • Own our security tooling (e.g. Snyk) and processes to ensure vulnerabilities are identified, prioritised, and remediated.
    • Collaborate with the compliance team to prepare for PCI DSS, ISO 27001, and other upcoming certifications.
    • Build on existing robust security practices by implementing new policies, best practices, and security frameworks as needed.
  • Strategic Input & Ownership
    • Work directly with the CTO to shape the long-term platform roadmap and overall security strategy.
    • Evaluate new tools and emerging technologies to support Yonder’s growth and engineering efficiency.
    • Contribute to architectural decisions, particularly where reliability and security are paramount.

You're a great fit if you

  • Strong experience withKubernetes,Terraform, andCloudenvironments (AWS or GCP, ideally both).
  • Have experience withTerraformor anotherIaCtool.
  • Solid understanding ofDevSecOpspractices, including vulnerability scanning, threat modelling, or compliance frameworks (GDPR, PCI DSS, ISO 27001).
  • Thrive in a fast-moving, sometimes ambiguous environment where you can have a big impact.
  • Comfortable mentoring other engineers and promoting security-aware engineering practices.
  • Are passionate about learning and growth.

You won’t be a great fit if you

  • Are not comfortable working in a fast-paced environment.
  • Are not interested in working on a variety of projects and wearing many hats.
  • Are not passionate about scalability and security.

What’s it like working at Yonder?

We’re office-first, remote-friendly

We’re based in our Hoxton office, complete with a terrace, breakfast, coffee (from a barista), dogs, beer taps and plenty of comfortable space to do your best work. We ask you to come into the officeat least 3 days a week, with everyone coming in on Mondays.

We take a values-led approach

Our principles are incredibly important to us, so we recommend you check them out here:Our DNA.

We take development really seriously

We have a pretty structured process for progression, with fortnightly one-on-ones and quarterly peer perspectives. We also take some time at the end of each week to reflect and celebrate what we’ve learned and achieved.

What’s in it for me?

Depending on your skill set and what you can bring from day one, you’ll be looking at:

£91,543 - £104,556depending on experience

£78,810 - £97,681stock options

Plus

️ 35 holidays (27 days annual leave + 8 days public leave)

Regular team-building trips and activities

️???? Private healthcare with Vitality, including mental health, dental & vision cover

16 weeks enhanced parental leave for all parents after being with Yonder for 1 year

Financial coaching with Octopus Money

Learning & training allowance (£750/year) that you can use on books, courses, etc.

Monthly team breakfast/lunch

️Regular team events like Mini-golf, Escape Room, Cocktail making

Cycle-to-work scheme

️Fresh pour-over coffee made by our very own CEO, Tim.

What’s the interview process like?

We take the candidate experience really seriously, so we’ve made the process as transparent as possible. We also promise to be super responsive, and will never leave you wondering where you stand for weeks on end.

Here’s how it works:

  • Stage 1:Intro call (45 mins):
    You will have an initial Zoom call with Harry (our CTO) to find out more about you and to tell you more about us.
  • Stage 2:Take home task: We'll give you a small code-base that we want to look at getting deployed, we'll want some IaC for the deployment, along with a CI/CD pipeline with security checks for releasing and documentation about the setup. You'll submit a complete solution as a GitHub repo.
  • Stage 3:Face-to-face interview (2 hours):
    Two 60-minute interviews to learn more about how you work. This will also be a great opportunity for you to meet the rest of the team so we would love it if you can come into the office for it! Interviews will be structured as follows:
    • Experience interview:We’ll deep dive into your CV and talk about your past experiences. This stage will be with the CTO and a backend engineer.
    • Values interview:We want to learn more about how you work - we’ll ask you questions related to our principles (Our DNA). This stage will be with two people from our wider team.
  • We’ll also include a 15-minute comfort break ️.
  • Stage 4:Offer: If everyone’s happy, we’ll make you an offer to join us - YAY! We hope to always give you a decision between each stage within 24 hours (where possible).

Other things to know:

  • We love closing the feedback loop at Yonder. You can expect specific feedback on our decision from Stage 2 onwards, and you can always ask for more.
  • We must complete the right to work & criminal background checks for every new Yonder-er for compliance purposes because we handle sensitive customer data.
  • We also do reference checks, ideally with your most recent manager on the phone.
  • We like to move quickly at Yonder, so we will be ready to onboard you once the above checks are complete - the entire process can take between 2 - 6 weeks.

We know that diverse teams build better products. If you’re from an under-represented community, we’d especially love to hear from you.

Even if you don’t feel 100% qualified, please do apply anyway. Your attitude and desire to grow are just as important as your experience.

#J-18808-Ljbffr

Related Jobs

View all jobs

Platform Senior Security Engineer London Not disclosed

Senior Cloud Security Engineer - AWS

Senior Application Security Engineer

Senior Cloud Security Architect

Senior Application Security Architect

Senior Security Engineer, Application Security | London, UK

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Jobs for Non‑Technical Professionals: Where Do You Fit In?

Defence Needs More Than Hackers in Hoodies When headlines warn of ransomware crippling hospitals or deepfakes swaying elections, we picture hoodie‑clad hackers and elite penetration testers. Yet the reality of the UK’s cyber security sector is broader—and desperately short of talent. The Department for Science, Innovation & Technology (DSIT) estimates a shortfall of 11,200 cyber security professionals in 2024, while 43 % of advertised roles require governance, risk or communication skills rather than hands‑on technical exploits. Put plainly: if you can guide policy, manage projects, interpret regulations or inspire behaviour change, cyber security wants you. This guide highlights the fastest‑growing non‑technical roles, the transferable skills you already possess, and a concrete 90‑day plan to land a cyber security job—no packet sniffers required.

BAE Systems Cybersecurity Jobs in 2025: Your Complete UK Guide to Protecting Governments, Businesses and Critical Infrastructure

From securing the Royal Navy’s new Dreadnought submarines to foiling multimillion‑pound fraud rings, BAE Systems Digital Intelligence (DI)—formerly Detica—sits at the sharp end of global cyber defence. Head‑quartered in Guildford with hubs in Gloucester, Leeds and London, the 5,500‑strong DI business delivers threat‑intelligence platforms, secure‑by‑design software and 24/7 SOC services to government and commercial clients worldwide. With escalating ransomware, AI‑driven disinformation and complex supply‑chain threats, BAE plans to expand its UK cyber workforce by 20 % in 2025. Whether you’re a graduate passionate about reverse engineering, a DevSecOps engineer who loves IaC, or an incident‑response pro comfortable in high‑side environments, this guide explains how to land a BAE Systems cybersecurity job in 2025.

Cyber Security vs. Ethical Hacking vs. Security Analysis Jobs: Which Path Should You Choose?

In an era where data breaches, ransomware attacks, and sophisticated digital threats dominate headlines, the demand for skilled cyber security professionals has never been higher. From global corporations to small businesses, organisations are scrambling to protect their systems, networks, and data from malicious actors. If you’ve been exploring cyber security jobs on www.cybersecurityjobs.tech, you’ve likely encountered various specialised roles—Ethical Hacking (often termed Penetration Testing), Security Analysis, Security Architecture, Incident Response, and more. Yet many job seekers and technology enthusiasts are unsure how these fields overlap or which one is right for them. In this in-depth guide, we’ll demystify three core disciplines—Cyber Security, Ethical Hacking, and Security Analysis—outlining the skills each requires, the responsibilities you can expect, salary ranges in the UK, and typical day-to-day activities. By the end, you’ll have a clearer understanding of these roles, helping you decide which path to pursue in this fast-growing industry. And when you’re ready to take the next step, head over to www.cybersecurityjobs.tech to explore the latest openings and find your perfect match.