Isomorphic Labs
Senior Security Engineer, London
Senior Security Engineer, London
Posted 3 weeks ago
LondonPermanentHybridFull-TimeSenior
Posted 3 weeks ago
Description
About Iso
Isomorphic Labs (IsoLabs) was launched in 2021 to advance human health by building on and beyond the Nobel-winning AlphaFold system. Since then, our interdisciplinary team of drug discovery experts and machine learning specialists has built powerful new predictive and generative AI models that accelerate scientific discovery at digital speed.
Our name comes from the belief that there is an underlying symmetry between biology and information science. By harnessing AI’s powerful capabilities, we can use it to model complex biological phenomena to help design novel molecules, anticipate how drugs will perform and develop innovative medicines to treat and cure some of the world’s most devastating diseases.
Your Impact
As a Senior Security Engineer, you will architect and manage the security of our groundbreaking ML-based platform and High Performance Computing (HPC) infrastructure. This role requires a highly proactive problem-solver who enjoys a fast-paced environment and possesses the curiosity to dive into diverse technical challenges.
What you will do
Skills and qualifications
Hybrid working
We follow a hybrid model, and would require you to be able to come into the office 3 days a week (currently Tuesday, Wednesday, and one other day depending on which team you’re in).
We are committed to equal employment opportunities regardless of sex, race, religion or belief, ethnic or national origin, disability, age, citizenship, marital, domestic or civil partnership status, sexual orientation, gender identity, pregnancy or related condition.
Isomorphic Labs (IsoLabs) was launched in 2021 to advance human health by building on and beyond the Nobel-winning AlphaFold system. Since then, our interdisciplinary team of drug discovery experts and machine learning specialists has built powerful new predictive and generative AI models that accelerate scientific discovery at digital speed.
Our name comes from the belief that there is an underlying symmetry between biology and information science. By harnessing AI’s powerful capabilities, we can use it to model complex biological phenomena to help design novel molecules, anticipate how drugs will perform and develop innovative medicines to treat and cure some of the world’s most devastating diseases.
Your Impact
As a Senior Security Engineer, you will architect and manage the security of our groundbreaking ML-based platform and High Performance Computing (HPC) infrastructure. This role requires a highly proactive problem-solver who enjoys a fast-paced environment and possesses the curiosity to dive into diverse technical challenges.
What you will do
- Secure Architecture and Product Engineering: Participate in the design and perform security reviews of our evolving AI platforms and underlying HPC infrastructure.
- Infrastructure as Code (IaC) Security: Partner with our DevOps / SRE team to harden our cloud infrastructure and our network, ensuring security by design, automation and auditability through Policy as Code.
- Third Party Systems Secure Integration: Perform deep-dive technical assessments of third-party platforms, AI solutions, Cloud or SaaS providers and support secure integration or deployment.
- Secure CI/CD: Design and implement automated security controls within our CI/CD pipelines to ensure code is secure from commit to production without slowing down research velocity.
- Threat Modeling & Risk Assessment: Conduct proactive threat modeling and risk assessment, support teams in the implementation of remediation plan and audit expected outcomes.
- Incident Response: Act as a L2/L3 escalation point for the remediation of complex vulnerabilities and security incidents.
- Identity & Access Management: Implement our state-of-the-art Zero Trust framework, ensuring robust access control and consistent enforcement of the principle of least privilege.
- Risk Management and Compliance Automation: Bridge the gap between technical controls and regulatory requirements (GDPR, GxP, EU AI Act) by automating evidence collection and risk posture monitoring (CSPM).
- Security Tooling Development: Build or integrate custom internal tools that automate repetitive security tasks, shifting our operational load from manual toil to scalable engineering.
- End-to-End Solution Delivery: Manage the full lifecycle of security controls, from initial user needs analysis and requirements gathering to structured testing and phased implementation and communication.
Skills and qualifications
- Cloud Engineering Proficiency: Deep technical knowledge of cloud platform security (GCP preferred) including Network and VPC design, IAM policy construction, and Cloud resources hardening.
- Coding Skills: Ability to write small production-grade code (e.g. in Python) and to automate security tasks.
- DevSecOps Tooling: Hands-on experience with Infrastructure as Code (Terraform) and version control systems (GitHub).
- Container Security: Proven ability to secure containerized workloads (Kubernetes/Docker).
- Network Security Fundamentals: Solid understanding of modern networking, including zero-trust architecture and encryption in transit (TLS/mTLS).
- Offensive Mindset: Strong understanding of the MITRE ATT&CK framework.
Hybrid working
We follow a hybrid model, and would require you to be able to come into the office 3 days a week (currently Tuesday, Wednesday, and one other day depending on which team you’re in).
We are committed to equal employment opportunities regardless of sex, race, religion or belief, ethnic or national origin, disability, age, citizenship, marital, domestic or civil partnership status, sexual orientation, gender identity, pregnancy or related condition.

