SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Staff Information Security Engineer

NMI - Bristol, United Kingdom - Hybrid - posted 2026-08-03

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

NMI is seeking a Senior Staff Information Security Engineer to lead security architecture and engineering across a hybrid technology estate spanning AWS and on-premises colocation infrastructure. This is a senior individual-contributor role where you will remain hands-on while serving as a trusted technical authority for complex security decisions. You will define and evolve security architecture across AWS and colocation environments, establishing secure reference architectures, engineering standards, and reusable control patterns. You'll provide technical leadership for major infrastructure, platform, and product initiatives, identifying systemic risks and leading practical programmes to address them. Key responsibilities include strengthening cloud and hybrid security by designing controls for identity and access management, segmentation, encryption, secrets, logging, monitoring, and workload protection. You'll develop preventative guardrails through infrastructure-as-code, policy-as-code, automation, and cloud-native security services, improving consistency across the enterprise. You will partner closely with Engineering, Product, SRE, and Infrastructure teams, engaging early in the design of new products and platforms. You'll lead threat modelling, security architecture reviews, and technical risk assessments, translating security risks into clear, practical engineering recommendations and helping teams adopt secure-by-design principles. The role includes designing and implementing security tooling, integrations, and automated controls, embedding security capabilities into infrastructure provisioning, CI/CD pipelines, and engineering workflows. You'll use AI-assisted tooling to improve scripting, detection development, alert analysis, vulnerability triage, and technical documentation, while validating outputs and ensuring appropriate controls. You'll provide technical direction for vulnerability and exposure management, act as a senior escalation point during significant security incidents, and mentor security engineers while raising the standard of security architecture and technical decision-making across the organization. Required experience includes significant background in security engineering, infrastructure security, cloud security, or platform engineering; deep hands-on experience securing AWS environments; strong knowledge of AWS IAM, network architecture, account governance, encryption, logging, and monitoring; experience designing or securing on-premises or colocation infrastructure; enterprise networking and hybrid connectivity expertise; infrastructure-as-code and CI/CD security experience; demonstrated ability designing and implementing automated security controls; proficiency with Python, Go, or comparable languages; and practical experience with AI-assisted tooling.

Similar roles