Security Engineer
Who we are
Helsing is a defence AI company. Our mission is to protect our democracies. We aim to achieve technological leadership, so that open societies can continue to make sovereign decisions and control their ethical standards.
As democracies, we believe we have a special responsibility to be thoughtful about the development and deployment of powerful technologies like AI. We take this responsibility seriously.
We are an ambitious and committed team of engineers, AI specialists and customer-facing programme managers. We are looking for mission-driven people to join our European teams – and apply their skills to solve the most complex and impactful problems. We embrace an open and transparent culture that welcomes healthy debates on the use of technology in defence, its benefits, and its ethical implications.
The role
The day-to-day
-
Identify, assess, and prioritise security risks across our systems, products, and infrastructure - distinguishing between theoretical concerns and material threats to the business
-
Design and implement practical security controls across cloud platforms, applications, products, and data - and guide engineering teams in doing the same
-
Develop and apply threat models to surface architectural risks, trust boundary issues, and failure modes before they become incidents
-
Partner with engineering, product, and operational teams as a trusted security adviser - providing patterns, guidance, and guardrails rather than one-off approvals or blockers
-
Contribute to the detection, investigation, and containment of security incidents, and drive systemic improvements from what we learn
-
Reduce manual and reactive security work by building automation, improving tooling, and embedding secure-by-default practices into how we develop and operate systems
-
Bring technical depth to assurance activities such as audits, certifications, and customer security reviews - ensuring our controls are real and effective, not just documented
You should apply if you
-
Have deep hands-on expertise in one or two security domains - such as application security, cloud security, identity and access management, cryptography, detection and response, or platform secu