Lead Cybersecurity Engineer
Tillit
Two is bringing the very best of B2C e-commerce to B2B by building solutions that enable B2B merchants to sell more, faster, and more efficiently. With a 30% month-on-month growth rate, our ambition is to become the world’s largest B2B payment solution by 2027.
Backed by top VCs such as Sequoia, Shine, LocalGlobe, Antler, Posten, and influential Fintech angel investors, we’ve raised over €30 million to date. Learn more about Two here.
About the role
As part of our Glasgow-based engineering team, you’ll play a key role in building and securing Two’s world-class fintech platform. You will have the opportunity both to contribute technically and also to help develop our strategy across infrastructure, cloud security, application security, DevSecOps, and more.
This is an exciting opportunity to build, lead, and innovate while working with a highly skilled engineering team at the forefront of fintech.
What You’ll Do:
- Develop & maintain infrastructure security across our Kubernetes-based cloud environment (GCP)
- Enhance our security posture, identifying and driving resolution of vulnerabilities across application layers (e.g., OWASP Top 10)
- Contribute to cybersecurity strategy & policy for infrastructure, cloud, and application security
- Automate security controls & compliance using tools like Terraform, Helm and GitHub Actions
- Work closely with engineering teams to ensure secure coding and cloud infrastructure best practices
- Mentor & support junior engineers, fostering a strong security culture
- Monitor and respond to security threats as part of our cyber team, leveraging your expertise in cyber defense
Tech Stack You’ll Work With:
- Cloud & Infrastructure: Kubernetes (GCP), Terraform, Helm
- Security & DevOps: GitHub Actions, CI/CD pipelines
- Languages: Python
- Data Storage: PostgreSQL, BigQuery
Location & Work Environment
- Based in our Glasgow office (must be within commuting distance)
- Flexible hybrid working – a mix of onsite and remote work
- Opportunity to visit our offices in London & Oslo and participate in Two’s Pop-Up Offices (previous locations include Tenerife & Barcelona!)
Why Join Two?
- Make an impact at a fast-growing fintech backed by the best VCs in the world
- Work with cutting-edge technology in a high-performing, focused environment
- Career growth opportunities in a scaling global company
- Collaborative, innovative team culture with a focus on mentorship and learning
- 8+ years of experience in a relevant software engineering discipline, including 5+ years in cloud environments (AWS, GCP, Azure)
- 3+ years focused on cybersecurity (e.g., cloud security, application security, threat mitigation)
- Expertise in infrastructure with strong skills in Terraform, Helm, and Kubernetes (or equivalent cloud infrastructure tools)
- Solid understanding of security vulnerabilities & attack vectors (OWASP Top 10, cloud security best practices)
- Working knowledge of Python (enough to collaborate on security reviews/remediation)
- Hands-on security experience (certifications, “hack the box,” penetration testing, etc.)
- Experience in developing security policies & delivering training to engineering teams is a bonus
- 25 days paid time off per year + public holidays 🌴
- £500 annual allowance to spend on anything that will contribute to your mental or physical health 🤸
- £500 allowance towards a phone device every 24 months (from your 6th month anniversary) 📱
- £500 annual allowance for learning and training 📚
- Cycle to work scheme 🚲