Security Engineer at Ben

London, England, United Kingdom

Ben Logo
Not SpecifiedCompensation
Junior (1 to 2 years), Mid-level (3 to 4 years)Experience Level
Full TimeJob Type
UnknownVisa
TechnologyIndustries

Requirements

  • Hands-on experience deploying and managing security tooling such as EDR, MDM, ZTNA, or vulnerability scanners, with enjoyment of solving problems at the implementation level
  • Worked with Microsoft’s security ecosystem, including Entra ID (Azure AD), Intune, and Defender, and confident navigating other vendors’ enterprise tooling
  • Solid foundations in networking, systems, and cloud infrastructure, and understanding how to apply industry standards (e.g. OWASP Top 10, AWS Well-Architected) to real-world scenarios
  • Experience reviewing and improving product and infrastructure security, including secure SDLC practices like threat modelling, secure code review, or CI/CD hardening
  • Familiarity with compliance frameworks such as ISO 27001 or SOC 2, and ability to translate technical controls into well-documented policies and audit-ready evidence
  • Experience automating repetitive security tasks (e.g. with Python, PowerShell, or Bash) or integrating tools via APIs to improve efficiency and reduce manual work
  • A bias toward proactive risk reduction, thinking holistically about controls, people, and processes that improve security posture
  • A generalist mindset, comfortable working across infrastructure, product, and compliance domains

Responsibilities

  • Take ownership of existing security tooling, and implement new ones (e.g. endpoint protection, MDM, access controls), ensuring they’re effectively configured, maintained, and evolving as the business grows
  • Embed secure-by-design practices into the development lifecycle across engineering, including secure coding, threat modeling, and design reviews
  • Monitor systems for irregular behavior and proactively design detection and prevention mechanisms
  • Ensure infrastructure and applications align with generally accepted industry standards, such as the OWASP Top 10 and the AWS Well-Architected Framework
  • Conduct and lead risk assessments, including third-party/vendor reviews and internal evaluations
  • Document and maintain security policies, procedures, and controls as part of the ISO 27001-certified Information Security Management System (ISMS)

Skills

AWS
OWASP Top 10
ISO 27001
MDM
endpoint protection
threat modeling
secure coding
access controls

Ben

SaaS platform for managing employee benefits

About Ben

Ben offers a platform that simplifies employee benefits management for businesses. It allows HR departments and employees to access various benefits, such as health and dental, through the Ben Card, which provides preferred rates. The platform operates on a subscription-based SaaS model and stands out by automating benefits administration and providing a user-friendly self-serve interface for employees. Ben's goal is to enhance the benefits experience for both employers and employees while offering cost savings through its broker network.

London, United KingdomHeadquarters
2019Year Founded
$18.9MTotal Funding
SERIES_ACompany Stage
Consulting, Enterprise SoftwareIndustries
201-500Employees

Risks

Increased competition from HRtech startups could dilute Ben's market share.
Economic downturns may lead to reduced spending on employee benefits.
Data privacy concerns and regulations pose challenges for managing sensitive information.

Differentiation

Ben combines SaaS platform with per-employee Mastercards for personalized benefits.
The Ben Card offers access to hundreds of additional benefit options.
Ben's platform integrates with existing HR tools for seamless benefits management.

Upsides

Ben raised $16 million to enhance its software and payments technology.
Increased demand for flexible benefits platforms due to remote work trends.
Growing interest in financial wellness programs as part of employee benefits.

Land your dream remote job 3x faster with AI