1. Digital Health Jobs
  2. Flo

Senior Security Engineer

Posted on May 27, 2025 (7 days ago)

Job description

Senior Security Engineer

Flo is the world’s #1 health app on a mission to build a better future for female health. With 400M+ downloads and 75M+ monthly users, Flo has been a leader in female health for a decade and recently reached a $1B valuation in 2024.
The job
Your role as the Security Engineer will be pivotal in supporting Flo Health’s overall security posture. Working alongside the Security team, you will help protect applications and infrastructure by managing vulnerabilities, responding to incidents, and implementing security measures at scale. Additionally, you will contribute to developing custom tooling and embedding security best practices into the product lifecycle to stay ahead of threats.

What you will do:

  • Develop regular touchpoints with stakeholders.
  • Manage vulnerabilities: triage, investigate risks, verify fixes, and drive remediation.
  • Implement security measures: configure WAF rules, set rate limits, deploy controls.
  • Develop custom security tools to enhance capabilities and automation.
  • Support product security: security assessments, threat modeling, penetration testing.
  • Improve security within the Secure Development Lifecycle (SDLC).
  • Investigate and triage security alerts, manage incidents.
  • Gather and communicate threat intelligence.
  • Advise business stakeholders on cybersecurity issues.
  • Generate reports for technical and non-technical audiences.

What you bring:

  • 7+ years experience in information security.
  • Hands-on experience with AWS or similar cloud platforms and Cloudflare.
  • Proficiency with Infrastructure as Code tools like Terraform.
  • Strong understanding of vulnerabilities and OWASP Top 10.
  • Ability to read code (e.g., Python, Scala) and use Git.
  • Familiarity with iOS or Android security.
  • Experience with SIEM and vulnerability scanning tools.

Nice to have:

  • Relevant certifications (CISSP, OSCP).
  • Experience with ISO27001 audits.
  • Knowledge of risk frameworks like ISO31000.
  • Familiarity with security control frameworks such as CIS, NIST800-53, ISO27001.

How we work

We’re mission-led, product-driven, fast-moving, focused, and collaborative. We value commitment, resilience, and craft to achieve better health outcomes.

What you'll get

  • Competitive salary and annual reviews.
  • Performance incentive scheme participation.
  • Paid holiday, sick leave, female health leave.
  • Enhanced parental leave and pay for various parents.
  • Professional growth through impactful work and learning support.
  • Flexible office + home working, with options to work abroad up to 2 months a year.
  • 5-week paid sabbatical at 5-year anniversary.
  • Flo Premium for friends & family, plus health, pension, and wellbeing perks.

Diversity, equity and inclusion

Flo hires on merit, skill, and contribution only, welcoming applicants from diverse backgrounds. We are proud to be an equal opportunity employer.

How to apply

How to apply

Apply for the Senior Security Engineer position through Flo Health's official job board page. Complete the application form provided, submit your resume/CV and cover letter, and answer all required questions honestly. More details and steps are available on the job board page linked (https://job-boards.greenhouse.io/flohealth/jobs/6566226003?gh_jid=6566226003).