SlipstreamJobsFresh Startup & VC-Backed Jobs

Security Engineer

LemFi - London, United Kingdom - In-office - posted 2026-08-10

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

LemFi is a Series B fintech building financial infrastructure for the Global South, enabling cross-border payments, multi-currency accounts, credit, and savings across 21+ countries. The company processes over $1B in monthly transactions and serves millions of users globally. This Security Engineer role sits at the intersection of security engineering, operations, and compliance. You will own a broad technical security remit including incident response, data loss prevention, endpoint management, vulnerability management, and compliance automation across SOC 2, ISO 27001, PCI DSS, and DORA frameworks. Key responsibilities include: monitoring and triaging security alerts across cloud, endpoint, and SaaS environments; extending DLP controls through policy tuning and endpoint rollout; managing device compliance and identity workflows via MDM platforms; running vulnerability scanning and remediation tracking; translating audit requirements into working technical controls; operating the Bug Bounty and Responsible Disclosure programme; and building scripts and tools to automate security operations work. You will work with a 400+ person team spanning 20+ countries in a highly regulated payments environment where security is core to earning trust with customers, regulators, and partners. The role requires shifting between hands-on engineering work, compliance documentation, and stakeholder communication within the same week. Required experience: 2–5 years in security engineering, security operations, or equivalent hands-on technical security role, ideally in fintech or regulated industries. Practical experience with cloud security (AWS, Azure, GCP), endpoint/MDM tooling, DLP platforms, IAM, and SIEM or alerting tools. Scripting ability to automate workflows and integrate REST APIs. Working knowledge of at least one major compliance framework with direct audit-support experience preferred. Strong written communication skills for control narratives, incident summaries, and non-technical stakeholder documentation. Nice-to-have: Bug Bounty or Vulnerability Disclosure programme experience, Security Trust Centre or external-facing security documentation, practical DORA implementation experience.

Similar roles