Application Security Engineer

Virgin Media
London, UK
17 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£52,857.0
Working hours
Regular working hours

Tech stack

Kubernetes Security Java (Programming Language) Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Encodings Python (Programming Language) Open Source Technology Open Web Application Security Secure Coding TypeScript Large Language Models
+5 more
Software Security GWAPT Codebase Terraform Devsecops

Requirements

In order to be considered, the candidate must have the following experience;

  • Experience assessing security impacts across codebases and APIs using languages such as Java, TypeScript and Python.
  • Strong knowledge of the OWASP Top 10, secure coding practices, and common web and API vulnerabilities.
  • Hands-on experience triaging, validating and remediating vulnerabilities with both technical and non-technical stakeholders.
  • Experience integrating security tooling into CI/CD pipelines and embedding DevSecOps practices.

We’d also love you to bring;

  • Security certifications such as OSCP, GWAPT, CSSLP, CEH or Security+.
  • Experience securing AWS environments and infrastructure-as-code solutions such as Terraform.
  • Knowledge of AI-enabled security workflows and securing AI or LLM-powered features.
  • Experience contributing to or maintaining open-source security tooling.
  • Proven expertise in threat modelling, secure code review, architecture review, and container/Kubernetes security.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:34 min

Augmenting codebases with semantic architectures

Zaak Chalal Zaak Chalal · WWC Europe 2026

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

1:32 min

Overcoming modernization challenges in aging monolithic codebases

Igor Minar Igor Minar +1 · WWC 2025

Videos

See all

Related articles

See all