Lead Application Security Engineer - UK (Remote)

  • Reference MH-POJ-211012-12
  • Remuneration Up to £100,000 base + Excellent Benefits Pack
  • Role/TypePermanent/Full Time
  • LocationUK (Remote)
Matthew Howard +44 (0)20 3119 3333 Get in touch ›
Apply now

Lead Application Security Engineer

Salary: up to £100,000 + Excellent Benefits Package

Location: UK (Remote)

 

A global organisation with its headquarters in the UK are looking for an Application Security Engineer be a leader within Software Security / Application Security. This individual will be responsible to create and develop the application security capabilities as part of the SDLC. The organisation are global specialists in digital identity.

 

This organisation enable fast and simple customer onboarding whilst reducing risk of fraud and work with many of the world’s leading organisation. They balance the growing need of a frictionless digital customer experience with the increasing risk of fraud and financial crime.

 

The Lead Application Security Engineer will be experienced in Software level security and will be responsible for embedding security controls and processes within the SDLC. This individual will be part of a group that is responsible for improving the organisations Software Security posture and maturity. They will have the opportunity to effect real change across the development organisations by designing and implementing Application Security controls and best practices.

 

Responsibilities

  • Part of a team that is responsible for the overall software security posture of the organisation.
  • Working closely with development and operational teams to design, implement/recommend application security controls.
  • Assess and identify gaps in current application security controls and provide guidance to resolve and remediate based on risk to the business.
  • Work with the DevOps teams to establish and design processes to improve the secure development of products and move to a DevSecOps culture.
  • Lead threat modelling and security design activities alongside development teams.
  • You will be expected to model/evaluate likely threat vectors during the development of new product features.
  • Act as a security champion within the organisation to promote a security-focused culture within the SDLC and will be responsible to educate DevOps teams in security best practices.
  • Working with the CI/CD pipeline to install software security controls and processes.
  • Be a Security evangelist on secure design best practices and principles.
  • Work with 3rd parties to support vulnerability and penetration testing.
  • Process reports from external penetration testing. Co-ordinate feedback with relevant teams to ensure actions are followed to mitigate identified risks.

Requirements

  • Knowledge of Application Security Frameworks e.g. OWASP, SAMM/DSOMM etc
  • Hands on knowledge of information security processes such as security design review, threat modelling, software testing techniques, risk analysis, OWASP top 10 etc
  • Knowledge in the security around web applications
  • Knowledge of agile methodologies
  • Knowledge of CI/CD pipelines
  • Knowledge of backend and frontend  web application vulnerabilities
  • Experience working in GCP / Azure / AWS
  • Familiar with industry security standards (ISO27001, NIST etc)
  • Profession Security certification is preferred
  • Development experience is preferred, but not a must

 

If you believe you have the skills and experience and would like to be considered for this position as an Application Security Engineer, please apply today.

Alternatively, if this role is not for you but you do know somebody who would be interested please refer him or her. We have a referral bonus scheme and will reward you with retail vouchers for referrals who are not already known to us.

Due to the high volume of applications received, if you do not hear from us within 7 working days, I am afraid your application has been unsuccessful.

Acumin – RSR Digital is member of the Red Snapper Group.

The Red Snapper Group acts as an employment agency (permanent) and as an employment business (temporary) - a free and confidential service to candidates.

The Red Snapper Group is an equal opportunities employer.

Lead Application Security Engineer - UK (Remote)

Job application

You are not logged in. If you would like to retrieve your details to use below, log in to your account.

Acumin alerts

Never miss out on your next career opportunity. Have Acumin alerts sent directly to your inbox.

In our industry we understand the importance of security. We also understand that your data is your data - we will never pass it on to third parties.

Our accreditations & Partners

Thanks

Success

Thanks

Success

Thank you for signing up to the acumin alerts.

Send CV

Send us your CV and have our recruiters match you to the ideal opportunities

Do you already have an account with us?

Log in

Want to have an account with us?

Register

Want to just send us your CV?

Upload only doc, docx, odt, pdf format file.

By submitting your registration and CV to us you are agreeing to join our database and to be contacted about relevant jobs industry communications. Please read our terms of business for more information.

Password reset

If you need a reminder for your password, fill out the field below

Log in

Access your account to edit your contact details, job alerts or to upload a new CV

Thank you

Success

Thank you for successfully uploading your CV.

Acumin Alerts

Success

Thanks for registering for Acumin alerts.

Acumin Alerts

Unfortunately your CV could not be uploaded

Please make sure your CV is one of the following file types: doc, docx, odt, pdf, rtf

Acumin Spam

Unfortunately your submission has been declared spam. Please try again.

Vacancy

Success

Thank you for submitting your vacancy.

Register

Create an account to register your contact details, sign up for job alerts and upload your CV

Success

Thanks for registering for Acumin alerts. To get the most out of Acumin's service why not register with us?

Upload only doc, docx, odt, pdf format file.
- Practitioner
- Commercial

I agree to the terms and conditions and to be contacted by recruiters:

I agree to receive marketing communications relevant to my job search:

I agree to receive Jobs By Email for the following professions:
- Business Continuity Management
- Counter Fraud
- Cyber Security
- Executive Management
- Governance & Compliance
- Information Security & Risk Management
- Penetration Testing & Digital Forensics
- Sales and Marketing
- Sales Engineering
- Security Management
- Technical Security
- Information/Risk Assurance
- Identity Management
- Application Security
- Security Architecture
- Dev/Sec Ops
- DV & SC Cleared Jobs
- Programme & Project Management
- CISO/CSO

Submit a Vacancy

Use the form below to submit a vacancy