
EQT · Stockholm
EQT is looking for an Application & AI Cyber Security Engineer to join our Cyber Security Engineering team, owning the security posture of our hosted applicatio...
EQT is looking for an Application & AI Cyber Security Engineer to join our Cyber Security Engineering team, owning the security
posture of our hosted applications, container platforms, and AI environments. This is a hands-on engineering role where you will
build automated guardrails and real-time visibility — making the secure path the easy path across a modern, globally distributed
technology landscape.
The Cyber Security Engineering team defines and validates security standards across EQT's technology landscape. Operating as a
trusted security function, the team works closely with platform engineering, cloud infrastructure, identity, and technology
assurance teams to strengthen controls while enabling innovation.
This role sits within a small, high-trust team where collaboration, curiosity, and technical depth are core to how we work. The
team supports both traditional application environments and emerging AI and agentic platforms, helping EQT navigate a rapidly
evolving threat landscape with practical, engineering-led security standards. You will report to the Head of Digital Employee
Experience and partner closely with the CISO function, contributing engineering depth directly to governance and policy decisions.
This role brings together application security, container security, and AI security into one evolving discipline — giving you the
scope to influence standards, technical controls, and governance frameworks across a global technology environment. The mandate is
to build automated guardrails and observability at scale, not to review individual applications by hand.
policy-as-code, and pre-configured scanning — that enforce standards at the point of deployment rather than after the fact.
Code and CoWork without needing to come through security first, because the guardrails are already there.
deterministic, scripted components that run fast and cheap over token-intensive approaches, and tracking cost-per-outcome
across security controls as a core operating discipline.
across all deployment paths, including workloads outside formal pipelines.
identifying high-propagation risk junctions.
composed of, and where risk is concentrated — and provide actionable dashboards for engineering leadership and the CISO
function.
against prompt injection and data exfiltration.
evaluate new AI tools with enough technical depth to inform CISO-level approval decisions.
tools can see into AI data flows.
Engineers on service identity, workload access, and secrets management.
Kubernetes, CI/CD platforms, SBOM tooling, Aikido, Claude Enterprise, Claude Code, MCP, CoWork, DTEX, Datadog, policy-as-code
frameworks.
You are a technically grounded security engineer who cares deeply about developer experience and approaches security friction as a
design problem to solve, not a trade-off to accept. You work with clarity and ownership, communicate technical findings to senior
stakeholders with confidence, and are actively building your knowledge of AI and agentic security.
policy-as-code.
wrong path hard rather than relying on manual review.
supply chain risk, with an orientation toward enforcement over assessment.
dashboards — understanding the difference between knowing what was shipped and knowing what is actually executing in
production.
this role is designed around that way of working.
agentic system controls — and a clear appetite to develop expertise in this space.
policy and governance decisions.
requiring protection.
Application security and AI security share a common threat model — data exfiltration, supply chain compromise, and the boundary
between trusted and untrusted code. AI connectors that interact with hosted services sit squarely in both domains. Splitting them
into separate roles at a five-person team would create seams in exactly the places attackers exploit. The role is also shaped by a
bet on AI-augmented engineering. An engineer with good tooling, a real token budget, and the discipline to automate before they
assess can cover ground that would have required a larger team not long ago. We've designed the headcount around that — not to cut
corners, but because the best security engineering now looks like one person building excellent guardrails with AI, not several
people reviewing things by hand.
At EQT, you will work in an environment that combines high impact with high trust, contributing to security challenges that matter
at a global scale. You will help shape practices in areas that are rapidly evolving across the industry — AI security, software
supply chain security, and modern application platforms — with direct influence on governance decisions and engineering standards.
We offer meaningful and complex work with global reach, close collaboration with experienced colleagues across security,
engineering, and technology, and genuine exposure to emerging AI technologies and cloud-native platforms. EQT has a culture that
values curiosity, ownership, and continuous learning, with real opportunities for professional development in a fast-moving
environment.
We offer a competitive total rewards package including base salary, determined based on the role, experience, skill set, and
location. Eligible employees may also receive discretionary incentive compensation, awarded in recognition of individual
performance and company results. EQT provides a comprehensive benefits offering designed to support employee wellbeing,
development, and work-life balance. Benefits include paid time off, parental leave, wellbeing and wellness support, flexible
working arrangements, and learning and development opportunities. Benefits are effective from the first day of employment and may
vary by location and role.
Inclusion at EQT
Our vision for EQT employees is to build high performing & engaged teams. Our competitive edge comes from fostering an environment
where every individual feels valued, empowered, and motivated to drive business impact. Our commitment to inclusion is not just
about fairness; We understand and believe that being a great place to work drives the best performance.At EQT, inclusion is a
business imperative and it's embedded into our talent strategy, decision-making, and culture to ensure that every individual and
team operates at their full potential. By doing so, we unlock better collaboration, stronger innovation, and superior investment
outcomes.
About EQT
EQT is a purpose-driven global investment organization focused on active ownership strategies. With a Nordic heritage and a global
mindset, EQT has a track record of over three decades of developing companies across multiple geographies, sectors and strategies.
EQT has investment strategies covering all phases of a business’ development, from start-up to maturity. EQT has EUR 270 billion
in total assets under management (EUR 141 billion in fee-generating assets under management), within two business segments –
Private Capital and Real Assets.
With its roots in the Wallenberg family’s entrepreneurial mindset and philosophy of long-term ownership, EQT is guided by a set of
strong values and a distinct corporate culture. EQT manages and advises funds and vehicles that invest across the world with the
mission to future-proof companies, generate attractive returns and make a positive impact with everything EQT does. EQT has
offices in more than 25 countries across Europe, Asia and the Americas and has more than 1,900 employees.
More info: www.eqtgroup.com
Follow EQT on LinkedIn, X, YouTube and Instagram
At a glance: * Location: Cambridge * In‑office expectation: 2 days per week initially then once per week * Employment type: Permanent * Salary: £60,000 - £70,000 * Why this role exists: Security at Redgate is a hands‑on engineering discipline. This role exists to design, build, and operate security controls that protect our people, products, and customers. About Redgate Redgate brings together people who want to do their best work in an environment built on trust, accountability, and collaboration. We build solutions that help data professionals securely manage the data and databases that their organizations depend on - a space that's only becoming more critical as systems scale, data regulations increase, and AI adoption accelerates. AI at Redgate By 2028, Redgate will operate as an expert-plus-agent company — domain experts amplified by AI, delivering customer value at a pace our peers can't match. AI handles the heavy lifting. Our people control the judgement. Everyone at Redgate works with Claude, giving you access to the best AI tools from day one Why join our security team? * Broad, meaningful scope - Working across our cloud & physical infrastructure, alongside our development teams and ISO27001-aligned information security group, you'll be working to bring on new vendors, assess risk, and fix vulnerabilities. * Genuinely modern challenges - From AI governance and shadow IT to supply chain risk and secure-by-design engineering, tackle relevant problems across a fast-moving global software business. * A team that grows you - Work in a hands-on team tackling a diverse set of challenges, developing your career and investing in your future About the role As a Cyber Security Engineer at Redgate, you’ll: * Design, build, and operate security controls across infrastructure and applications * Investigate issues hands‑on, sometimes outside office hours, when things genuinely matter * Work closely with engineers and business teams to enable secure delivery * Work alongside our commercial teams to give our customers the confidence to securely deploy our products What makes you a great fit * Hands‑on security engineering or security operations experience * Strong IAM knowledge at protocol level (OAuth 2.0, SAML, OIDC) - you’ve debugged implementations, not just read about it * Experience with Infrastructure as Code (ideally Terraform) and use of automation * Familiarity with secure SDLC practices, version control, and peer review * Experience conducting vendor security reviews and third‑party risk assessments * Practical vulnerability management experience – you're used to judging the real-world risks, not just looking at baseline CVSS scores * Incident response experience, including investigation, remediation, and root cause analysis Working knowledge of Microsoft Sentinel, Defender, and KQL * A background in sys admin or engineering that gives you intuition for how systems actually fail * A mindset that security exists to enable the business * Comfortable using AI tools as part of your daily work * Strong communication skills with both technical and non‑technical audiences What we offer * Salary range: £60,000 - £70,000 * Hybrid working: home and Cambridge office * Monthly wellbeing allowance and generous paid time off * Genuine investment in learning, development, and career progression * Private health insurance * Link to full benefits page here What happens next? * Your application will be reviewed by a person – we don’t use AI or automated tools to assess applications. Every profile is read by one of our Talent Partners. * You’ll hear back within a few days – whether it’s a next step or a no, we aim to respond promptly so you’re not left wondering. * Our interview process is straightforward and consistent – you’ll find more detail on our typical hiring process below, so you know what’s coming and why. Belonging at Redgate We believe that people do their best work in an environment built on respect, fairness, and trust — and that diverse perspectives lead to better outcomes. Redgate is an equal opportunity employer, and we make hiring decisions based on skill, potential, and alignment with our values. You can read more about how we approach belonging and inclusion at Redgate on our Belonging at Redgate page here.
THUMBTACK HELPS MILLIONS OF PEOPLE CONFIDENTLY CARE FOR THEIR HOMES. Thumbtack is the one app you need to take care of and improve your home — from personalized guidance to AI tools and a best-in-class hiring experience. Every day in every county of the U.S., people turn to Thumbtack to complete urgent repairs, seasonal maintenance and bigger improvements. We help homeowners know which projects to do, when to do them and who to hire from our growing community of 300,000 local service businesses. If making an impact inspires you, join us. Imagine what we’ll build together. ABOUT THE CYBER SECURITY TEAM The Security Engineering team at Thumbtack is focused on enabling innovation at scale by making the secure path the easiest path. We believe strong security is not a blocker to velocity, but a force multiplier when it is designed into systems, platforms, and developer workflows from the start. We partner closely with teams across the organization to shape system design, guide architectural decisions, and evolve Thumbtack’s security posture as the company scales. Through collaboration, automation, and thoughtful tradeoffs, we help ensure Thumbtack can ship fast, innovate boldly, and maintain customer trust. THE CHALLENGE AI is reshaping how work gets done at Thumbtack. Employees leverage AI assistants in their daily work and teams are building autonomous agents that act on their behalf - reading data, calling APIs, and making changes across enterprise systems. This introduces changes in the risk landscape. Identities now belong to agents and services as often as to people. Protocols like MCP are opening new pathways between AI and enterprise data. And the pipelines feeding AI systems cross more services, vendors, and trust boundaries than they have previously. The challenge is to evolve security controls to address these shifts in the technology and risk landscape driven by AI-adoption: hardening IAM for non-human and delegated identities, defining safe defaults for MCP servers and autonomous agents, and securing the data pipelines that feed AI systems. We package these controls as secure defaults, paved paths, and reusable patterns so teams can adopt them with confidence. The goal is straightforward — keep Thumbtack moving fast on AI while keeping customer and employee data protected. WHAT YOU’LL DO * This role focuses on improving AI-adjacent security at Thumbtack, including the agents, identities, integrations, and data pipelines that modern AI systems depend on. It also covers broader security engineering work across the enterprise platforms and services that support them. * Deliver high-quality security assessments and threat models for first-party and third-party AI tools, agents, and AI-integrated systems, ensuring they adhere to enterprise security principles and approved patterns, with sound authentication, authorization, data access, and observability by design. * Design and validate technical guardrails and reusable patterns that keep AI usage safe at Thumbtack. This spans AI behavior (safe defaults for agent actions, tool and permission scoping, human-in-the-loop boundaries for sensitive access, input and output controls, audit and observability) and AI connectivity (MCP servers, integrations, trust boundaries, and the data pipelines that feed first- and third-party AI systems). Contribute to the frameworks and tooling that support secure AI development and use across Thumbtack. * Harden IAM across the enterprise, with particular focus on the non-human and delegated identities behind AI systems (service accounts, agent credentials, SaaS-to-SaaS OAuth, and SCIM federation). Bring least-privilege and lifecycle hygiene to identities that increasingly act at machine speed. * Provide broader security engineering support across Thumbtack's enterprise platforms and services, including SaaS security and posture management, third-party and integration security, data governance, endpoint security, and identity-centric controls. Build paved paths, shared tooling, and automation that scale these controls. * Lead cross-functional security initiatives end-to-end. Partner with IT, Engineering, Legal, Privacy, Procurement, and business stakeholders to surface risk early, set clear requirements, and support scalable adoption of secure patterns. Conduct security design and architecture reviews for enterprise applications, SaaS platforms, and internally developed systems. * Mentor engineers and partner-team members, raising the overall security bar through guidance and example. * Support security incident response and drive learning through post-incident analysis. IN ORDER TO BE SUCCESSFUL, YOU MUST BRING * 6+ years of experience in security engineering, enterprise security, application security, cloud security, or a related field. * Experience developing threat models and proposing technical guardrails for AI tooling and agentic systems, including non-human identities, tool/permission scoping, and safe defaults for agent behavior. * Deep expertise in modern enterprise security disciplines: authentication and authorization (SSO, OAuth/OIDC, SAML, federation, SCIM), API security and token handling, secrets management, least-privilege design, SaaS security and posture management. * Strong experience evaluating risk and conducting security design and architecture reviews across enterprise applications, SaaS platforms, integrations, and internally developed systems, including evaluating data flows, third-party integrations, trust boundaries, automation platforms, AI-connected workflows, and emerging integration patterns such as MCP. * Strong experience securing modern, cloud-native systems (AWS and/or GCP) and familiarity with core control domains such as audit logging, encryption, access control, data retention, and incident response. * Strong sense of ownership and accountability, balancing hands-on technical execution with the ability to mentor others, raise standards, and drive measurable improvements in enterprise security. * Excellent written and verbal communication skills, with the ability to influence without authority and translate technical risk into clear requirements and actionable guidance for both technical and non-technical audiences. EXPECTED SALARY RANGES * For candidates living in Ontario and British Columbia, the expected salary range for the role is currently $180,200.00 - $233,200.00. Actual offered salaries will vary and will be based on various factors, such as calibrated job level, qualifications, skills, competencies, and proficiency for the role. Thumbtack embraces diversity. We are proud to be an equal opportunity workplace and do not discriminate on the basis of sex, race, color, age, pregnancy, sexual orientation, gender identity or expression, religion, national origin, ancestry, citizenship, marital status, military or veteran status, genetic information, disability status, or any other characteristic protected by federal, provincial, state, or local law. We also will consider for employment qualified applicants with arrest and conviction records, consistent with applicable law. Thumbtack is committed to working with and providing reasonable accommodation to individuals with disabilities. If you would like to request a reasonable accommodation for a medical condition or disability during any part of the application process, please contact: recruitingops@thumbtack.com. For information about how Thumbtack collects, uses, and shares personal information about job applicants, please see our Job Applicant Privacy Policy. We put as much craftsmanship into candidate safety as we do into the hiring experience itself. While scammers may try to impersonate our team, we’ll never ask you for money, banking info, or SSNs during hiring. Check out our blueprint on how to spot the fakes.
THUMBTACK HELPS MILLIONS OF PEOPLE CONFIDENTLY CARE FOR THEIR HOMES. Thumbtack is the one app you need to take care of and improve your home — from personalized guidance to AI tools and a best-in-class hiring experience. Every day in every county of the U.S., people turn to Thumbtack to complete urgent repairs, seasonal maintenance and bigger improvements. We help homeowners know which projects to do, when to do them and who to hire from our growing community of 300,000 local service businesses. If making an impact inspires you, join us. Imagine what we’ll build together. ABOUT THE CYBER SECURITY TEAM The Security Engineering team at Thumbtack is focused on enabling innovation at scale by making the secure path the easiest path. We believe strong security is not a blocker to velocity, but a force multiplier when it is designed into systems, platforms, and developer workflows from the start. We partner closely with teams across the organization to shape system design, guide architectural decisions, and evolve Thumbtack’s security posture as the company scales. Through collaboration, automation, and thoughtful tradeoffs, we help ensure Thumbtack can ship fast, innovate boldly, and maintain customer trust. THE CHALLENGE AI is reshaping how work gets done at Thumbtack. Employees leverage AI assistants in their daily work and teams are building autonomous agents that act on their behalf - reading data, calling APIs, and making changes across enterprise systems. This introduces changes in the risk landscape. Identities now belong to agents and services as often as to people. Protocols like MCP are opening new pathways between AI and enterprise data. And the pipelines feeding AI systems cross more services, vendors, and trust boundaries than they have previously. The challenge is to evolve security controls to address these shifts in the technology and risk landscape driven by AI-adoption: hardening IAM for non-human and delegated identities, defining safe defaults for MCP servers and autonomous agents, and securing the data pipelines that feed AI systems. We package these controls as secure defaults, paved paths, and reusable patterns so teams can adopt them with confidence. The goal is straightforward — keep Thumbtack moving fast on AI while keeping customer and employee data protected. WHAT YOU’LL DO * This role focuses on improving AI-adjacent security at Thumbtack, including the agents, identities, integrations, and data pipelines that modern AI systems depend on. It also covers broader security engineering work across the enterprise platforms and services that support them. * Deliver high-quality security assessments and threat models for first-party and third-party AI tools, agents, and AI-integrated systems, ensuring they adhere to enterprise security principles and approved patterns, with sound authentication, authorization, data access, and observability by design. * Design and validate technical guardrails and reusable patterns that keep AI usage safe at Thumbtack. This spans AI behavior (safe defaults for agent actions, tool and permission scoping, human-in-the-loop boundaries for sensitive access, input and output controls, audit and observability) and AI connectivity (MCP servers, integrations, trust boundaries, and the data pipelines that feed first- and third-party AI systems). Contribute to the frameworks and tooling that support secure AI development and use across Thumbtack. * Harden IAM across the enterprise, with particular focus on the non-human and delegated identities behind AI systems (service accounts, agent credentials, SaaS-to-SaaS OAuth, and SCIM federation). Bring least-privilege and lifecycle hygiene to identities that increasingly act at machine speed. * Provide broader security engineering support across Thumbtack's enterprise platforms and services, including SaaS security and posture management, third-party and integration security, data governance, endpoint security, and identity-centric controls. Build paved paths, shared tooling, and automation that scale these controls. * Lead cross-functional security initiatives end-to-end. Partner with IT, Engineering, Legal, Privacy, Procurement, and business stakeholders to surface risk early, set clear requirements, and support scalable adoption of secure patterns. Conduct security design and architecture reviews for enterprise applications, SaaS platforms, and internally developed systems. * Mentor engineers and partner-team members, raising the overall security bar through guidance and example. * Support security incident response and drive learning through post-incident analysis. IN ORDER TO BE SUCCESSFUL, YOU MUST BRING * 6+ years of experience in security engineering, enterprise security, application security, cloud security, or a related field. * Experience developing threat models and proposing technical guardrails for AI tooling and agentic systems, including non-human identities, tool/permission scoping, and safe defaults for agent behavior. * Deep expertise in modern enterprise security disciplines: authentication and authorization (SSO, OAuth/OIDC, SAML, federation, SCIM), API security and token handling, secrets management, least-privilege design, SaaS security and posture management. * Strong experience evaluating risk and conducting security design and architecture reviews across enterprise applications, SaaS platforms, integrations, and internally developed systems, including evaluating data flows, third-party integrations, trust boundaries, automation platforms, AI-connected workflows, and emerging integration patterns such as MCP. * Strong experience securing modern, cloud-native systems (AWS and/or GCP) and familiarity with core control domains such as audit logging, encryption, access control, data retention, and incident response. * Strong sense of ownership and accountability, balancing hands-on technical execution with the ability to mentor others, raise standards, and drive measurable improvements in enterprise security. * Excellent written and verbal communication skills, with the ability to influence without authority and translate technical risk into clear requirements and actionable guidance for both technical and non-technical audiences. EXPECTED SALARY RANGES * For candidates living in San Francisco / Bay Area, San Jose, New York City, or Seattle metros, the expected salary range for the role is currently $210,800.00 - $272,800.00. * For candidates living in Austin, TX or Washington DC metros or in California, Massachusetts, New Jersey, or Washington states, the expected salary range for the role is currently $189,600.00 - $245,300.00. * For candidates living in all other US locations, the expected salary range for this role is currently $179,400.00 - $232,100.00. Actual offered salaries will vary and will be based on various factors, such as calibrated job level, qualifications, skills, competencies, and proficiency for the role. Thumbtack embraces diversity. We are proud to be an equal opportunity workplace and do not discriminate on the basis of sex, race, color, age, pregnancy, sexual orientation, gender identity or expression, religion, national origin, ancestry, citizenship, marital status, military or veteran status, genetic information, disability status, or any other characteristic protected by federal, provincial, state, or local law. We also will consider for employment qualified applicants with arrest and conviction records, consistent with applicable law. Thumbtack is committed to working with and providing reasonable accommodation to individuals with disabilities. If you would like to request a reasonable accommodation for a medical condition or disability during any part of the application process, please contact: recruitingops@thumbtack.com. For information about how Thumbtack collects, uses, and shares personal information about job applicants, please see our Job Applicant Privacy Policy. We put as much craftsmanship into candidate safety as we do into the hiring experience itself. While scammers may try to impersonate our team, we’ll never ask you for money, banking info, or SSNs during hiring. Check out our blueprint on how to spot the fakes.