> Markdown version of [/jobs/ext/13250-senior-security-engineer-application](https://www.wearedevelopers.com/jobs/ext/13250-senior-security-engineer-application). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer (Application) - **Company:** Eeze - **Location:** London, UK - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Application Layers, User Authentication, Cloud Computing, Cloud Computing Security, Distributed Systems, Open Web Application Security, Systems Development Life Cycle, Secure Coding, Web Application Security, Session Management, Software Engineering, Software Vulnerability Management, Cloud Platform System, Software Security, Kubernetes, Prisma Cloud Platform, Devsecops, Security Orchestration, Automation & Response, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** May 15, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=b2de0b34ac68b382 ## About the Role Do you have experience in Supply chain?, * 3+ years experience in a dedicated or heavily security-focused engineering role * Strong background in application or product security engineering within modern software environments * Experience embedding security into CI/CD pipelines and software engineering workflows * Strong understanding of DevSecOps principles and secure software development lifecycle practices * Hands-on experience with secure code scanning and application security tooling including SAST, DAST, SCA, dependency scanning and secrets detection platforms * Experience with modern cloud and security platforms such as Wiz, Prisma Cloud or similar tooling * Strong understanding of modern application attack vectors, API security and software supply chain security risks * Experience working with containerised applications, Kubernetes and cloud-native environments * Ability to help design and implement scalable security controls within modern engineering and platform environments * Strong troubleshooting, communication and stakeholder management capabilities * Experience operating within regulated or high-availability environments is advantageous ## Description We are seeking a Senior Security Engineer (Application) to help strengthen and mature application security practices across a fast-moving engineering organisation. This is a hands-on technical role focused on embedding security into engineering workflows, improving secure development practices and ensuring security is integrated throughout the software delivery lifecycle. The successful candidate will work closely with platform engineering, software engineering and architecture teams to identify security risks early, implement scalable controls and tooling and help drive modern DevSecOps and security-by-design practices across the organisation. The role requires a strong technical security engineer who remains close to engineering, understands modern application attack vectors and can balance security, scalability and developer experience. Operating within the wider Security Engineering function, the role will contribute towards improving organisational security maturity, strengthening application security capabilities and ensuring security standards evolve alongside modern engineering and platform practices. Main Responsibilities * Partner with all engineering teams to embed security-by-design principles into applications, platforms and engineering workflows * Perform threat modelling exercises across new applications, services, APIs and platform changes * Review application architectures and engineering designs to identify security risks and recommend mitigations * Drive secure-by-design and DevSecOps practices across engineering workflows and CI/CD pipelines * Implement and manage secure code scanning, software supply chain security and application security tooling across modern delivery platforms * Support implementation, tuning and operational maturity of application security tooling including SAST, DAST, SCA, secrets detection and cloud security platforms * Identify, prioritise and support remediation of application, API and software supply chain vulnerabilities * Define and maintain secure development standards, reusable security patterns and application security guardrails * Work closely with developers to improve secure coding practices, vulnerability remediation and security awareness * Support API security, authentication, authorisation and secrets management best practices across distributed systems * Work closely with platform teams to improve security across containerised applications, Kubernetes environments and cloud-native platforms * Develop security automation and self-service capabilities that improve developer experience whilst reducing risk * Strong understanding of Layer 7 security concepts including API security, web application security, authentication, session management and protection against common web-based attack vectors such as OWASP Top 10 threats * Contribute towards incident response, vulnerability management and security investigations where required * Continuously evaluate emerging application security threats, tooling and industry best practices to improve the organisation's security posture ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)