Security Engineer

PostHog Remote (EMEA) · European Union · Remote (UK) · United Kingdom

Posted 11 Sep 2026
Last seen 22 Sep 2026
Location Remote (EMEA) · European Union · Remote (UK) · United Kingdom
Lifecycle fresh
Grade C

About PostHog

Product development used to mean manually writing code, running analysis, diagnosing bugs, and rolling out changes using dozens of tools.

PostHog makes products self-driving. It's the only platform that acts like a co-pilot for you (and your AI agents) to do it all – autonomously.

We started with open-source product analytics, launched out of Y Combinator's W20 cohort. We've since shipped more than a dozen products, including:

We are:

  1. Product-led. More than 450,000 organizations have installed PostHog, mostly driven by word-of-mouth. We have intensely strong product-market fit.

  2. Default alive. Revenue is growing incredibly quickly, and we're very efficient. We raise money to push ambition and grow faster, not to keep the lights on.

  3. Well-funded. We've raised more than $180m from some of the world's top investors. We're set up for a long, ambitious journey.

We're focused on building an awesome product for end users, hiring exceptional teammates, shipping fast, and being as weird as possible.

Things we care about

Who we're looking for

We are looking for an expert security generalist (in EU/UK) to assist with all things security at PostHog. Someone equally adept (and interested!) in building secure libraries, writing semgrep rules, hardening cloud deployments, improving network observability, and leading incident response.

Someone to take the reins of our security operations, build out our detection pipelines, and ensure that when something goes bump in the night, we have the observability to know exactly what happened.

We're a team that's building internal security products and agents - things like agents to automatically triage wiz alerts, automatically review pull requests, automatically assign vulnerability findings to the owning product team.

In this role you’ll:

What you'll be doing

While this is not a Corporate security (MDM, endpoint, device trust) or Supply chain/CI-CD hardening role, in true PostHog style, there are opportunities to work on these as well.

Requirements

Nice to Have

We are committed to ensuring a fair and accessible interview process. If you need any accommodations or adjustments, please let us know

#LI-DNI

Apply for this role Opens jobs.ashbyhq.com — verified as the employer's own application page

Description review

51/100 HR standards 87/100 Title ↔ description 94/100 Fit to the official role
Read the marked-up listing →

Where this listing came from

  1. 11 Sep 2026 Company ATS employer ATS first sighting

Seen on 1 board over 12 days. The employer edited the description 1× since we first recorded it.