Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

The Company

Board Intelligence is a rapidly growing Software as a Service (SaaS) business, pioneering a suite of tools and services that supercharge the effectiveness of boards and leadership teams. 

In summer 2024, we received substantial backing from K1 Investment – leading B2B Enterprise SaaS investors based in LA. Through both organic growth and acquisitions, our aim is to be the global leader in the board portal and board governance space. We’re at the beginning of a significant journey of acquisition and integration and expect to at least double our size in the next year. We have already acquired TeamEngine from Sweden in September 2024 and are looking for more superb talent to join us on this journey.  

We’ve been helping boards to make smarter, faster decisions for over 20 years and have over 70,000 users engaged on our platform. We work with FTSE 100s, large privately owned companies, public sector and government departments, and have a great track record of growth and delivery.

We’re 150 people today and growing fast. As we grow, we’re fiercely protective of our friendly, high performing culture. With three international locations (UK, Sweden, Mauritius) and over 15 nationalities represented, the team is diverse and friendly, and most days you’ll find a social event or learning opportunity to get involved with. 

Many of us, including our founders, have families and other priorities, so we know the value of a supportive company. And all of us like to have fun, so our regular company socials, away days and lunch & learns are always a highlight. 


Engineering at Board Intelligence

Everyone says it, but in our case it’s true: Each member of our engineering team is amazing in their own right, but together they are what brings our product to life.

We’re very proud of the team we’ve built – there’s around 50 of us in Engineering now after growing quickly in 2024. We have ambitious plans to further improve our ways of engineering and to continue to enable boards to ‘see what matters’. You’ll play a big role in helping us achieve this in 2025/2026 and beyond.

Key responsibilities of the role

We are seeking a Security Engineer (Full-Stack) to help build and secure our SaaS solution. In this role, you will work closely with our development teams to embed security best practices into our full-stack applications, which leverage Java, Ruby, React, and other technologies. You will take a proactive approach to measuring/identifying vulnerabilities, designing secure architectures, and implementing security controls across the stack.

Technical

  • Secure full-stack applications written in Java (backend), Ruby (backend), and React (frontend).
  • Implement and enforce secure coding practices in web applications and APIs.
  • Conduct threat modeling, code reviews, and security assessments.
  • Identify and remediate vulnerabilities in our SaaS infrastructure.
  • Work with DevOps & Kubernetes teams to secure CI/CD pipelines and cloud deployments.
  • Develop security automation for detection and response mechanisms.
  • Collaborate with engineering, QA, and compliance teams to ensure security requirements are met.
  • Stay updated on emerging security threats and ensure compliance with security best practices (e.g., OWASP, NIST, ISO 27001).

Required Qualifications

  • Strong experience in application security or DevSecOps.
  • Strong experience with securing web applications/APIs.
  • Familiarity with authentication/authorization mechanisms (OAuth, SAML, JWT).
  • Experience with cloud security (AWS, GCP, or Azure) and container security (Docker, Kubernetes).
  • Understanding of secure SDLC practices, including static/dynamic analysis (SAST/DAST).
  • Proficiency in penetration testing, vulnerability scanning, and security tools.
  • Experience with compliance frameworks (SOC 2, GDPR, HIPAA) is a plus.
  • Strong problem-solving and communication skills.

Preferred Qualifications

  • Experience with IaC security (Terraform, Helm).
  • Familiarity with SIEM, XDR, or other security monitoring tools.
  • Experience working in a SaaS-based, high-scale environment.
  • Contributions to open-source security projects or relevant certifications (e.g., CISSP, OSCP, CEH).

If you are passionate about building secure SaaS applications and working with modern full-stack technologies, we’d love to hear from you!

Apply now!

We pride ourselves on our great working environment and package, which we can share upon application

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Board Intelligence

At Board Intelligence, we’re on a thrilling adventure to redefine the way boards and leadership teams operate, and we’re looking for a talented Security Engineer to join our passionate team! As a fast-growing Software as a Service (SaaS) company, backed by K1 Investment, we're committed to enhancing our board governance tools with your expertise in security. In this role, you will collaborate closely with our dynamic development teams, ensuring that security best practices are seamlessly integrated into our full-stack applications built using Java, Ruby, and React. Your proactive approach to identifying vulnerabilities and designing secure architectures will play a crucial part in the upcoming scaling of our platform, which already serves over 70,000 users globally. We value the importance of a supportive culture, and our diverse team of 150 people, spread across the UK, Sweden, and Mauritius, thrives on friendliness and collaboration. This is not just another job – it’s an opportunity to make a real difference in how boards make smarter, faster decisions! You'll be at the forefront of securing our SaaS solution, implementing secure coding practices, conducting thorough assessments, and developing automated security mechanisms. And let’s not forget – we believe in having fun while we work, with regular social events, learning opportunities, and an inclusive atmosphere where everyone can flourish. If you’re passionate about security and ready to help us shape the future of board governance, we can’t wait to hear from you!

Frequently Asked Questions (FAQs) for Security Engineer Role at Board Intelligence
What are the key responsibilities of the Security Engineer at Board Intelligence?

The Security Engineer at Board Intelligence is primarily responsible for securing our SaaS solution by integrating security best practices into our full-stack applications built on Java, Ruby, and React. This includes conducting threat modeling, implementing secure coding practices, and collaborating with development and DevOps teams to fortify our CI/CD pipelines and cloud deployments. You’ll also measure and identify vulnerabilities, conduct code reviews, and ensure compliance with relevant security standards.

Join Rise to see the full answer
What qualifications are required for the Security Engineer position at Board Intelligence?

To qualify for the Security Engineer role at Board Intelligence, candidates should have strong experience in application security, specifically in securing web applications and APIs. Familiarity with cloud security (AWS, GCP, or Azure), container security, and a solid understanding of secure SDLC practices is essential. Additionally, candidates with experience in penetration testing and relevant compliance frameworks will find this position an excellent match for their skills.

Join Rise to see the full answer
What technologies does the Security Engineer at Board Intelligence work with?

In the Security Engineer role at Board Intelligence, you will work with a diverse array of technologies. The full-stack applications leverage Java and Ruby on the backend, and React on the frontend. Strong familiarity with various security-related practices, such as OAuth for authentication, along with knowledge of cloud security tools and practices, is highly valued. Understanding how to implement security controls across these technologies will be key to your success.

Join Rise to see the full answer
How does Board Intelligence prioritize team culture within the Security Engineer role?

At Board Intelligence, we pride ourselves on maintaining a positive and friendly culture, especially within our engineering teams, including the Security Engineer role. With a diverse team from various nationalities, we encourage a supportive environment where team members can collaborate and learn from one another. Social events, away days, and lunchtime learning opportunities create a vibrant community where work is enjoyable and enriching.

Join Rise to see the full answer
What benefits can a Security Engineer expect at Board Intelligence?

Security Engineers at Board Intelligence can expect a fantastic working environment, competitive package options, and a strong emphasis on work-life balance. The company fosters a culture where family priorities are respected, and we often engage in fun social activities that bring us closer as a team. As we grow, the potential for professional development and career advancement is also significant, particularly in a rapidly scaling environment.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
What are the key strategies you use to secure a full-stack application?

When securing a full-stack application, it's crucial to implement secure coding practices at every stage of development. Start with threat modeling to identify potential vulnerabilities, use secure libraries, and apply proper input validation to prevent common attacks like SQL injection. Continuous monitoring and regular code reviews also help maintain security throughout the application's lifecycle.

Join Rise to see the full answer
Can you explain your experience with conducting security assessments?

In my past roles, I have performed extensive security assessments, including static and dynamic application security testing (SAST/DAST). This process often involves identifying vulnerabilities through automated scanning tools and performing manual code reviews. I prioritize remediation based on risk assessments and ensure that all findings are documented and communicated clearly to relevant stakeholders.

Join Rise to see the full answer
What cloud security practices do you recommend for a SaaS application?

For a SaaS application, implementing strict access controls, ensuring data encryption both at rest and in transit, and maintaining regular security audits are essential cloud security practices. Using monitoring tools for your cloud environment to detect any anomalies and ensuring compliance with industry standards will further bolster cloud security.

Join Rise to see the full answer
How do you stay up-to-date with emerging security threats?

I stay informed about emerging security threats through continuous education, including attending webinars, participating in forums, and following industry-leading publications and blogs. I'm also an active member of relevant security communities where professionals exchange insights and best practices, which helps me remain ahead of potential security challenges.

Join Rise to see the full answer
What is your approach to working with development teams on security best practices?

My approach involves fostering cooperation and open communication with development teams. I advocate for embedding security into the development life cycle, conducting training sessions on secure coding practices, and collaborating in threat modeling exercises. By making security a shared responsibility, we can enhance our overall security posture.

Join Rise to see the full answer
Can you explain your experience with penetration testing?

I have conducted various penetration tests on web applications and APIs as part of my security assessments. Through both automated tools and manual techniques, I simulate attacks to uncover vulnerabilities. Following tests, I provide detailed reports that outline findings and recommendations for remediation, collaborating closely with development teams for effective resolution.

Join Rise to see the full answer
What compliance frameworks are you familiar with that may relate to the Security Engineer role?

I am well-versed in several compliance frameworks, including SOC 2, GDPR, and HIPAA. Understanding these frameworks has helped me implement necessary security controls and ensure that applications meet required compliance guidelines. I believe that regular reviews and audits are paramount to maintaining compliance in a dynamic regulatory environment.

Join Rise to see the full answer
How would you implement security automation in a CI/CD pipeline?

To implement security automation within a CI/CD pipeline, I would integrate security tools that automatically scan for vulnerabilities within the code upon commits. This could include SAST tools for earlier detection and DAST during the staging phase. Automated compliance checks can also ensure that the code meets defined security standards before reaching the production environment.

Join Rise to see the full answer
What programming languages are you proficient in that are relevant to this role?

I am proficient in Java and Ruby for backend development, as well as React for frontend applications. My experience extends to writing secure code in these languages, applying techniques to prevent security vulnerabilities like cross-site scripting (XSS) and other common threats while ensuring application functionalities remain unaffected.

Join Rise to see the full answer
Describe a challenging security issue you've encountered and how you resolved it.

One challenging security issue I encountered was during the integration of a third-party API, which introduced potential security vulnerabilities. I led a review to assess authentication mechanisms and established additional layers of validation before allowing interaction with our backend. We implemented stricter controls on data flow and conducted thorough testing to ensure compliance with our security standards, ultimately preventing any breaches.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Board Intelligence Remote No location specified
Posted 7 days ago

Join a dynamic and fast-growing SaaS company where you'll innovate AI solutions that enhance board effectiveness.

Photo of the Rise User
Board Intelligence Remote No location specified
Posted 7 days ago

Join Board Intelligence as a Lead Product Manager and shape the future of board effectiveness through innovative software solutions.

Crinetics Pharmaceuticals is looking for a strategic Director of End User Services to lead their IT support and enhance end-user experiences.

Photo of the Rise User
Posted 14 days ago

Join Noblis as a Network Administrator to support critical missions with expertise in network management and security.

Photo of the Rise User

Join Adtalem Global Education as a Senior Manager, overseeing technology initiatives that empower over 300,000 students and thousands of employees.

Photo of the Rise User

Join Skyward as an Infrastructure and Reliability Lead to enhance IT services and drive cloud-native initiatives.

Photo of the Rise User

Join Presbyterian Healthcare Services as an IT Epic Manager and lead the optimization of key Epic applications within a purpose-driven healthcare organization.

Photo of the Rise User

Join Peraton as a Red Team Penetration Tester and play a crucial role in enhancing cybersecurity for the U.S. military.

SWATX Remote No location specified
Posted 3 days ago

Seeking an experienced Senior Integration Architect to drive our enterprise integration solutions and standards.

Photo of the Rise User

Join a forward-thinking Talent Matching Platform as a Senior Security Engineer, where you'll lead efforts in threat detection and security automation.

We are the leaders in board reporting. We specialise in unlocking the potential of boards and management committees by developing clear, concise and strategic briefing packs that stimulate a focused and productive conversation in the boardroom. ...

11 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 6, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Warren just viewed Senior Front-End Developer at Worldly
Photo of the Rise User
62 people applied to SOC Analyst I at Epsilon
S
14 people applied to SOC Intern at SHEIN
Photo of the Rise User
Someone from OH, Tiffin just viewed Game Operations Specialist at Genius Sports
u
Someone from OH, Loveland just viewed Customer Service Agent - Part Time at uhaul
Photo of the Rise User
Someone from OH, Cleveland just viewed HR Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Columbus just viewed Mid Level, System Administrator - (ETS) at Delivery Hero
Photo of the Rise User
Someone from OH, Mason just viewed Inside Sales Co-Op at VEGA Americas
Photo of the Rise User
44 people applied to IT Intern at USAA
Photo of the Rise User
Someone from OH, Sandusky just viewed Director of IT at Kyo
Photo of the Rise User
11 people applied to Cyber security analyst at Optimiza
T
9 people applied to Intern-Tech at TDS Telecom
Photo of the Rise User
Someone from OH, Delaware just viewed Practice Group Manager at LifeStance Health
Photo of the Rise User
51 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
8 people applied to Security Analyst at Maximus
Photo of the Rise User
Someone from OH, Avon Lake just viewed Advancement Specialist at Sierra Club
Photo of the Rise User
Someone from OH, Sidney just viewed Database Engineer Principal at Sagent
Photo of the Rise User
Someone from OH, North Canton just viewed Manager, Customer Success at impact.com
Photo of the Rise User
Someone from OH, Columbus just viewed Customer Experience Representative at MYOB
Photo of the Rise User
Someone from OH, Lakewood just viewed Production Scheduling Supervisor at Shearer's Foods
Photo of the Rise User
Someone from OH, Hilliard just viewed General Manager at Super Soccer Stars