Engineering

Security Engineer mock interview

Expect to threat-model something out loud from a blank page, and then be pushed on the control you would not ship — the loop tests whether you can say no proportionately rather than block everything.

Engineering loops are the most structured of any discipline, and the most predictable. Expect a recruiter screen, one or two technical rounds, a system design conversation at mid-level and above, and a behavioral round that is usually underestimated.

The technical rounds are rarely won on the answer. They are won on narration — whether the interviewer can follow your reasoning while you work, and whether you say the trade-off out loud instead of silently picking one.

The rounds you can practise

Each round is run by the interviewer built for it, with its own scoring axes — not one generic interviewer asked to change subject.

System design, trade-offs, and war stories from production.

Scored on Technical communication · Engineering depth · Ownership & collaboration

System design, trade-offs, and war stories from production.

Scored on Technical communication · Engineering depth · Ownership & collaboration

Hands-on problem solving, code quality, debugging, and engineering judgment.

Scored on Problem-solving communication · Engineering correctness · Adaptability & craft

System design, trade-offs, and war stories from production.

Scored on Technical communication · Engineering depth · Ownership & collaboration

Technical Deep-Dive

Theo · Principal Engineer

Hands-on problem solving, code quality, debugging, and engineering judgment.

Scored on Problem-solving communication · Engineering correctness · Adaptability & craft

Security Engineer interview questions

Six you can expect, in the register interviewers actually use. Answer them out loud before you read the next section — reading a question and answering one are different skills, and only the second is marked.

  1. Threat-model this feature out loud, from a blank page.
  2. What is a control you argued against shipping?
  3. How do you get engineers to take a finding seriously without a mandate?
  4. Walk me through an incident you were on. What was the containment call?
  5. How do you prioritise a backlog of findings nobody has time for?
  6. Where would you look first in a system you have never seen?

The same question, answered badly and well

The gap between these two is most of your score, and it is easier to see than to be told.

What is a control you argued against shipping?

What loses marks

Not having one. A candidate who has never opposed a security control reads as someone who says yes to everything, which is how security teams get routed around.

What scores

A specific control whose cost exceeded the risk it removed — the friction it added, who it would have pushed onto a shadow workaround, and what you did instead. Proportionality is the senior signal in this loop.

Why Security Engineer candidates get cut

The post-mortem nobody sends you. These are specific to this loop rather than general interview advice.

Absolutism. Answers where every risk must be eliminated tell the interviewer you would block the roadmap.
Threat modelling as a vocabulary exercise — naming STRIDE categories without reaching a specific, plausible attack on the actual feature.
No answer on influence. Findings that nobody fixes are the default outcome of this job, and the loop knows it.

Start with a general round

For Security Engineer, a general round runs with Kai system design, trade-offs, and war stories from production. It is the fastest way to find out which round you actually need to work on. The first session is free.

Practise a Security Engineer interview →

Question guides

Before you practise, it is worth reading how the common rounds are marked: tell me about yourself, behavioral questions and STAR, and system design.

Similar roles

All roles