FINANCIAL TIMES logo

Cyber Security Engineer

FINANCIAL TIMESManila, AR

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Remote
On-site
Benefits
Disability Insurance
Career Development
Health & Wellness Programs

Job Description

About us

The Financial Times is one of the world's leading news organisations, globally recognised for its authority, integrity and accuracy, with a mission to deliver quality information and services worldwide.

At the FT, curiosity thrives and ambitious thinking is rewarded. Here, you're given the chance to reach millions, create work that matters and deliver impartial journalism in a polarised world.

In our warm, collaborative culture, you'll connect with a diverse community of experts who support your growth, career aspirations and wellbeing.

Your future at the FT will be filled with opportunities that challenge and inspire you. With no fixed path, you'll discover new skills and forge a career that can take you anywhere.

Build a newsworthy career at the FT.

Our commitment to diversity, equity and inclusion

We believe in the power of unique perspectives and want all voices in our organisation to be heard, respected and valued. A supportive workplace is one where employees feel they can be themselves and operate to their full potential. We are committed to removing barriers for everyone, with a focus on addressing those faced by underrepresented groups.

About the role:

We're looking for a Cyber Security Engineer to help improve application security across the FT's cloud-native technology estate. This is a hands-on role focused on making secure engineering easier for product, platform and software engineering teams.

Application security experience is essential for this role. You'll help improve developer-friendly security guardrails across GitHub-based CI/CD pipelines, application repositories and engineering workflows. This includes working with SAST, software composition analysis, secret scanning, vulnerability management and secure coding guidance so that security findings are clear, actionable and owned by the right teams.

You'll work closely with engineers to support practical threat modelling, triage application vulnerabilities, improve security playbooks and help teams remediate issues in a pragmatic way. You do not need to be a deep AWS or cloud security specialist, but some exposure to AWS, cloud security or infrastructure-as-code security would be useful.

We're looking for someone with practical AppSec experience who wants to grow their impact - someone who enjoys working with engineers, improving tooling and helping security become part of normal delivery rather than a last-minute checkpoint.

What you'll bring to the role

Application security experience: practical experience identifying, explaining and helping remediate application security risks in modern engineering environments.

Developer-friendly security mindset: you enjoy working with engineers, explaining risks clearly and helping teams adopt secure practices without unnecessary friction.

Vulnerability management experience: experience triaging and tracking application vulnerabilities from sources such as SAST, dependency scanning, secret scanning, penetration tests, bug bounty reports or third-party advisories.

CI/CD and code security awareness: familiarity with security tooling in development workflows, such as SAST, software composition analysis, secret scanning or repository security controls.

Threat modelling awareness: experience participating in, supporting or facilitating lightweight threat-modelling sessions for applications, services or new features.

Automation mindset: ability to write scripts or small tools, ideally in Python, to reduce manual effort, improve visibility or make security workflows easier.

Cloud security awareness: Some exposure to AWS, cloud security or infrastructure-as-code security would be useful, but is not essential.

Growth mindset: willingness to keep developing across application security, cloud security, secure development and modern engineering practices.

Required Experience, Essential

  • Practical experience in application security.
  • Experience working with software engineers to explain and remediate security issues.
  • Familiarity with common web application security risks and secure coding practices.
  • Experience with vulnerability triage, prioritisation and remediation tracking.
  • Experience using or interpreting findings from tools such as SAST, software composition analysis, secret scanning or similar.
  • Experience participating in or supporting threat-modelling activities.
  • Ability to write scripts or small tools, ideally in Python, to automate tasks or improve visibility.
  • Strong communication and collaboration skills.
  • Familiarity with Agile or Scrum ways of working.

Desirable

  • Exposure to AWS security, cloud security or infrastructure-as-code security.
  • Experience with Terraform or CloudFormation.
  • Experience with container or Kubernetes security.
  • Experience with bug bounty, penetration testing or security testing programmes.
  • Experience with Splunk or similar logging/SIEM platforms.
  • Exposure to AI security, such as LLM-enabled applications, AI-assisted development workflows or prompt/data leakage risks.
  • Experience building dashboards, metrics or reports to support vulnerability management.
  • Relevant security certifications or training, such as AWS security training, secure coding training, GIAC, ISC2, CREST or equivalent practical experience.

Accessibility

We are a disability confident employer and Valuable 500 signatory.

Please let us know if you require any reasonable adjustments/personalisation as part of the application process or to enable you to attend an interview. If you would like to discuss your requirements or have any questions, email talent@ft.com and a member of our team will be happy to help.

Further information

At the FT, we embrace innovation and the use of technology and appreciate that individuals may leverage AI tools as part of their job application process. Whilst we are happy for you to use AI to assist with your application, it is essential that all information provided is authentic and accurately represents your skills, experience, and qualifications.

Candidates should be aware that the use of AI throughout the application process may be monitored to ensure a fair and transparent hiring process for all.

Please beware of fraudulent job postings and offers claiming to be from the Financial Times. All legitimate opportunities will direct you to apply through the official Financial Times careers site, and the FT will never ask for financial information, payments, or referrals to third parties during the hiring process. If you have any concerns about the legitimacy of a job posting or suspect any scam activity, please contact talent@ft.com. 

Interested in the FT but don't see the right role yet? Join our Talent Community to receive exclusive updates, featured jobs, and insights into working at the FT.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Cyber Security Engineer Jobs at FINANCIAL TIMES

What is the work location for this position at FINANCIAL TIMES?
This job at FINANCIAL TIMES is located in Manila, AR, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at FINANCIAL TIMES?
Employer has not shared pay details for this role.
What employment applies to this position at FINANCIAL TIMES?
FINANCIAL TIMES lists this role as a Full-time position.
What experience level is required for this role at FINANCIAL TIMES?
FINANCIAL TIMES is looking for a candidate with "Senior-level" experience level.
What benefits are offered by FINANCIAL TIMES for this role?
FINANCIAL TIMES offers following benefits: Disability Insurance, Career Development, and Health & Wellness Programs for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at FINANCIAL TIMES?
You can apply for this role at FINANCIAL TIMES either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.