Security Engineer 3 - Vulnerability Management
Tide
India, Delhi NCRPosted 26 days ago
Skill Required
One PlatformSecurity EngineersecurityEngineeringanalyticalObservabilityITILbuildingfintechdesignCloudDesign PatternsSass
Key highlights
- Competitive salary and share options
- Experience in vulnerability management or similar analytical security role required
- Work from abroad for up to 90 days annually
- Fintech or regulated financial services experience strongly preferred
- Great Place to Work certified three years in a row
- Over 2 million members globally
Role overview
At Tide, the Product Security team embeds security across all products, with the Remediation Operations function driving the vulnerability management program. This Security Engineer role focuses on triaging, prioritizing, and automating the resolution of vulnerabilities surfaced by security tooling (e.g., Wiz, Semgrep, CrowdStrike). The position acts as a bridge between security findings and engineering/IT teams, ensuring risks are mitigated efficiently through clear communication, workflow automation, and data-driven reporting. Success is measured by risk reduction, not just finding issues.
Responsibilities
- Triage and validate vulnerabilities surfaced by Tide's core security tooling, including Wiz, Semgrep, CrowdStrike Exposure Management and our External Attack Surface Management (EASM) platform, separating signal from noise and confirming which findings are real, exploitable and relevant to Tide.
- Support risk-based prioritisation, helping to rank findings by severity, exploitability, asset criticality and business context, so that limited engineering effort is always pointed at what matters most.
- Automate remediation workflows within Tide's vulnerability management platform (Seemplicity), building and refining the routing, ticketing, deduplication and escalation logic that keeps findings moving without manual overhead.
- Verification and Validation of the Fix implemented through targeted re-scanning or manual checks, ensuring risks are genuinely mitigated before tickets are formally closed.
- Act as a trusted partner to engineering and IT teams, explaining the importance and technical detail of specific findings, advising on practical fixes, and helping teams understand the reasoning behind each request rather than treating it as a box-ticking exercise.
- Build reports and dashboards that give clear visibility of vulnerability posture, remediation progress, SLA adherence and trends, tailored for both technical owners and senior stakeholders.
- Design and run nudging strategies to shift fix behaviours across engineering and IT, using data, well-timed prompts and the right incentives to drive down time-to-remediate and reduce recurring issues.
- Maintain the health of the remediation pipeline, monitoring ageing findings, chasing stalled items, identifying systemic blockers and feeding that insight back into the wider vulnerability management strategy.
- Contribute to continuous improvement of remediation operations, refining processes, SLAs, taxonomies and tooling configuration as Tide's environment and threat landscape evolve.
- Facilitate the risk acceptance and exception management workflow, ensuring that deferred remediations are properly documented, justified, approved by stakeholders, and tracked for future review.
Requirements
- Hands-on experience in vulnerability management, or a similar analytical security role, ideally in a fast-moving, cloud-native environment.
- Familiarity with vulnerability and exposure tooling such as Wiz, Semgrep, CrowdStrike, EASM platforms, or comparable scanners, along with a solid understanding of how to interpret and validate their findings.
- A good grasp of vulnerability scoring and prioritisation concepts, including CVSS, EPSS, CISA KEV exploitability and asset context, with the judgement to know when a severity rating needs a human sense-check.
- Experience with, or a strong appetite to work with, workflow automation and orchestration, whether through a dedicated platform such as Seemplicity, light scripting, or integrations between security and ticketing tools.
- Confidence building reports and dashboards that turn messy data into clear narratives.
- Strong communication and stakeholder skills, comfortable explaining technical findings to engineers and translating remediation progress into metrics for senior leaders.
- A pragmatic, delivery-focused mindset: you care less about cataloguing problems and more about getting them fixed.
Nice to have
- Experience in fintech, regulated financial services, or a similarly high-assurance environment is strongly preferred.
Benefits
- Competitive Compensation - competitive salary and share options
- Time Off – Generous annual leave on top of bank holidays.
- Parental Leave – Paid maternity, paternity, and adoption leave to support your family journey.
- Sabbatical – Extended unpaid and paid leave options after completing milestone years with Tide.
- Health Insurance – Private family insurance with additional OPD coverage and top-up options.
- Life & Accident Cover – Comprehensive accidental and life insurance protection.
- Mental Wellbeing – Access to therapy sessions, courses, meditations, and workshops.
- Volunteering & Development Days – Paid days annually for volunteering or personal growth.
- Learning & Development – Annual budget for books, courses, coaching, and more.
- WOO (Work Outside the Office) – Work from abroad for up to 90 days annually.
- Home Office Setup – Contribution towards setting up your home office
- Laptop Ownership – Keep your old laptop and get a new one when it’s time for a replacement.
- Snacks & Meals – Office perks with snacks, coffee, tea, and lunch (location dependent).
Additional details
- At Tide, we help SMEs save time and money in the running of their businesses by not only offering business accounts and related banking services, but also a comprehensive set of highly usable and connected administrative solutions, from invoicing to accounting.
- Tide is transforming the small business banking market and now supports over 2 million members globally across the UK, India, Germany and France.
- Using advanced technology, all solutions are designed with SMEs in mind. With quick onboarding, low fees and innovative features, we thrive on making data driven decisions to serve our mission: to help SMEs save time and money so they can get back to doing what they love.
- Tide facts: Tide is available for UK, Indian, German and French SMEs; Over 2 million members: 900,000 UK and 1,100,000 in India and growing rapidly; Over $300 million raised in funding; Over 2,800 Tideans globally; Recognised with Great Place to Work certification three years in a row, and among India’s Top 50 Best Workplaces in Banking, Financial Services, and Insurance in 2026
- We have offices in Central London, with a member support and technology centre in Sofia, Bulgaria, technology centres in Serbia, Romania, Lithuania and Hyderabad and offices in Gurugram, New Delhi, Berlin, Paris and Luxembourg
- At Tide, we champion a flexible workplace model that supports both in-person and remote work to cater to the specific needs of our different teams. While remote work is supported, we believe in the power of face-to-face interactions to foster team spirit and collaboration. Our offices are designed as hubs for innovation and team-building, where we encourage regular in-person gatherings to foster a strong sense of community.
- At Tide, we believe that we can only succeed if we let our differences enrich our culture. Our Tideans come from a variety of backgrounds and experience levels. We consider everyone irrespective of their ethnicity, religion, sexual orientation, gender identity, family or parental status, national origin, veteran, neurodiversity or differently-abled status. We celebrate diversity in our workforce as a cornerstone of our success. Our commitment to a broad spectrum of ideas and backgrounds is what enables us to build products that resonate with our members’ diverse needs and lives. We are One Team and foster a transparent and inclusive environment, where everyone’s voice is heard.
- At Tide, we thrive on diversity, embracing various backgrounds and experiences. We welcome all individuals regardless of ethnicity, religion, sexual orientation, gender identity, or disability. Our inclusive culture is key to our success, helping us build products that meet our members' diverse needs. We are One Team, committed to transparency and ensuring everyone’s voice is heard.
- It has come to our attention that individuals or agencies are falsely claiming to represent Tide and are reaching out to candidates regarding job opportunities. Please be aware that: Tide does not charge any fees at any stage of the recruitment process. All official Tide job opportunities are listed exclusively on our Careers Page and applications should be submitted through this channel. Communication from Tide will only come from an official @tide.co email address. Tide does not work with agencies or recruiters without prior formal engagement, and we do not authorize third parties to make job offers on our behalf. If you are contacted by anyone misrepresenting Tide or requesting payment, please treat it as fraudulent and report it to us immediately at talent@tide.co
- Tide leverages AI to enhance our hiring experience. You can read more about how we use AI in our recruitment process in our AI Policy.
- Your personal data will be processed by Tide for recruitment purposes and in accordance with Tide's Recruitment Privacy Notice.