Senior · Удалённо · Лондон, Великобритания · Английский B2
Навыки
Решения на данных
DevSecOps
ISO 27001 / PCI DSS
Лидерство
Room / Realm / CoreData
152-ФЗ / персональные данные
Роадмап
Ещё 1
Управление уязвимостями
О компании и продукте
Messy spend management is tricky business. And tedious processes are a lose-lose situation for all involved, not just finance. At Pleo, we're changing that. We build spend solutions that make managing money seamless, empowering, and surprisingly effective for finance teams and employees alike - with a vision to help all businesses ‘go beyond’.
The word ‘Pleo’ actually means ‘more than you’d expect’, and living by that mantra has been the secret to our success over the last 10 years.
Now, we’re at a pivotal moment in our journey; every move we make has a direct impact on our 40,000+ customers, our business, and our collective success. We need people who take pride in uncovering customer needs, who turn complex problems into simple solutions, challenge the way things are done (respectfully), and always aim high. With great ambitions driving us forward, we can’t say we’ve got this whole thing figured out. And frankly, that’s half the fun! What we can say is that we’re a driven, progressive, and, importantly, a kind bunch of 850+ people from over 100 nationalities, all committed to delivering the future of business spending, together.
Задачи
As a Senior Application Security Manager, you will
Own vulnerability management end to end, covering reporting, triage, mitigation, and the long-term strategy for application security as a department
Build a structured, risk-ranked approach to remediation, so the organisation knows what to fix first and why
Establish clear, company-wide reporting on our vulnerability posture, giving leadership the data-driven visibility they need
Set and deliver an AppSec roadmap, bringing delivery expectations and accountability to a team that hasn't had them
Partner with engineering squads as customers rather than gatekeeping them, embedding proactive security processes into how they already work
Multiply your team's impact through automation and AI, so coverage scales faster than headcount
Grow and mentor engineers, coaching them toward staff-level capability and building their confidence along the way
Support Pleo's compliance obligations across ISO27001, PCI-DSS, GDPR, and the regulatory expectations of each market we operate in, from a security vulnerability perspective
Reduce our attack surface through technical controls, policy, and AI enablement, addressing both external threats and internal risk
Contribute to the broader Cybersecurity team, staying connected with ongoing initiatives and helping shape our 2027 KPIs
Требования
You'll thrive in this role if you have
10+ years of experience steering application security and wider information security strategy in a compliance-heavy environment
A background as a senior security engineer who moved into management, with enough technical depth that you're still credible and still hands-on
A track record of mentoring and growing engineers, and of keeping a team accountable without micromanaging it
Demonstrated experience turning signal into prioritised action through risk-based triage
Experience using AI and automation to scale security coverage, rather than solving everything through headcount or process
The ability to shape culture outside your own team, influencing engineering squads without formal authority over them
Comfort in a fast-moving, complex, ever-evolving environment, where you're self-directed and proactive
Exposure to fintech compliance requirements is a strong advantage
Backgrounds we also look at include DevSecOps and platform security leads with real AppSec depth
WHY IS THIS ROLE A GOOD FIT FOR YOU
This role is a good fit for you if
You want a fast, visible impact on a program with real room to improve, without having to fight for basic tooling and process first
You treat developers as customers and get satisfaction from security becoming an enabler rather than a blocker
You like being a player-coach, staying close to the technical work while growing the people around you
You're motivated by high leverage and low bureaucracy, and you'd rather build the system than personally do every task
This role is not a good fit for you if
You're looking to step away from technical work entirely at this level
You prefer to lead through mandate and process rather than partnership and example
You're sceptical of automation, AI, or of leaning on signal from partner teams
HOW YOU'LL DEVELOP IN THIS ROLE
In your first 6 months at Pleo, you'll
Get hands-on with Pleo's application security landscape, understanding our attack surface across payment systems and multi-region infrastructure, and forming your own view of where the real risk sits
Stand up clear vulnerability reporting and a risk-ranked remediation approach, and get key vulnerabilities patched proactively ahead of our next compliance audit
Build trust with engineering squads and start shifting the security culture, so teams come to you early rather than late
Условия
Your own Pleo card (no more out-of-pocket spending!)
Lunch is on us for your work days - enjoy catered meals or receive a lunch allowance based on your local office
Comprehensive private healthcare - depending on your location, coverage options include Vitality, Alan or Médis
We offer 25-28 days of holiday (depending on your location) + public holidays
For our Team, we offer both hybrid and fully remote working options
Option to purchase 5 additional days of holiday through a salary sacrifice
We use MyndUp to give our employees access to free mental health and well-being support with great success so far
Paid parental leave - we want to make sure that we're supportive of families and help you feel that you don't have to compromise your family due to work
THE INTERVIEW PROCESS
We want to ensure you are set-up for success and understand what will be expected of you
If your application is successful, our interview process is as follows
Intro call: A 30-minute chat with our Talent Partner to discuss the role, your background, and how you feel about the player-coach shape of the job
Hiring Manager interview: a 60-minute conversation with our security management team, covering your AppSec depth, your evidence of maturing an existing program, and your partnership mindset
Technical interview: a 60-minute deep dive with our AppSec team on your hands-on application security expertise
Cross-functional interview: a 30-45 minute conversation with Privacy, Legal, and Risk & Compliance on how you work across those boundaries
Leadership interview: a 45-minute conversation on mentoring and growing engineers, and influencing without authority
Паспорт вакансии
История публикации
Появилась в Вакандии26 дней
Перепубликации1 разпубликаций всего: 2
Проверяли на источникеВидели 26 дней назад
Среди похожихНет данных46 из 30 · у похожих вакансий почти одинаковый возраст — сравнивать нечего
Откуда что взялось
Отмечено то, что вывели мы. Без пометки — значение назвал работодатель.
ГрейдSeniorвычитано из текста вакансии
Формат работыУдалённо
ГеографияЛондон, Великобританиявычитано из текста вакансии
Зарплата≈ 18 750 USD в месяцнаша оценка, в вакансии не названа
Почему на этом месте в выдаче
Порядок выдачи объявлен контрактом: свежесть решает между днями, полнота и зарплата — внутри дня.
Полнота карточки1004 из 4 полей: грейд, формат, география, зарплата
Зарплата названа0вилки работодателя нет, показана наша оценка
Проверка Вакандии
Источники и свежесть
Тип источника
Карьерный сайт работодателя
Найдено публикаций
2
Посмотреть публикации и даты
ashbyПовторная публикация · 2026-08-13
ashbyОсновная публикация · 2026-08-13
P
Работодатель
Pleo
18 активных вакансий · вилка работодателя указана в 0%