> Markdown version of [/jobs/ext/2254261-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/2254261-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** Copello Global - **Location:** Edinburgh, UK - **Experience:** Expert - **Salary:** £70,000.0 - £95,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, C Sharp (Programming Language), Cloud Computing, Code Review, Cyber Security, Continuous Integration, Distributed Systems, Identity and Access Management, Intrusion Detection and Prevention, Intrusion Detection Systems, Key Management, Open Web Application Security, Systems Development Life Cycle, Secure Coding, Mobile Security, Software Engineering, Systems Integration, TCP/IP, Software Vulnerability Management, Software Security, Kubernetes, Splunk, Devsecops, Docker, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** August 26, 2026 - **Apply:** https://find.jobs/jobs-near-me/apply/ats-redirect/?id=2941991332-2 ## About the Role * 7+ years' experience in Cybersecurity, Application Security or Security Engineering * Strong AppSec / DevSecOps experience * Hands-on experience with AWS, Azure or GCP * Strong Kubernetes and Docker/container security knowledge * Experience integrating SAST, DAST, SCA and security tooling into CI/CD * Strong understanding of threat modelling, IAM, cryptography and application security * Experience with Go and/or C# development * Knowledge of HTTP, REST, TLS and TCP/IP * Strong understanding of OWASP, NIST, ISO 27001 and CIS * Excellent communication skills with the ability to work closely with developers and technical stakeholders Desirable Experience with: * Vulnerability research / exploit development * Manual penetration testing * Cloud, web, embedded or mobile security * Splunk / OSQuery * AI/ML security * Distributed systems * AWS Security Specialty, OSCP, CISSP, CCSP, CCAK or SANS/GIAC certifications ## Description Are you a Senior Cybersecurity Engineer with strong AppSec, DevSecOps, Cloud and Kubernetes experience? I'm currently working on an exciting opportunity, supporting the Avigilon security team in protecting the software, cloud platforms and intellectual property behind their physical and video security solutions. This is a hands-on role where you'll work closely with software engineering teams to identify vulnerabilities, improve security throughout the SDLC and build secure-by-design solutions. What you'll be doing * Conduct threat modelling, risk assessments and security architecture reviews * Assess security across cloud and Kubernetes/container environments * Embed SAST, DAST, SCA, SBOM and secret scanning into CI/CD pipelines * Perform security code reviews and provide secure coding guidance * Define security requirements and support engineering teams with secure-by-design practices * Drive vulnerability management, particularly across Kubernetes and container images * Triage and validate vulnerabilities, including developing PoCs where appropriate * Manage IAM and key management controls * Support product security incident response, root-cause analysis and remediation * Develop detection engineering capabilities, IDS/IPS rules and technical runbooks * Monitor emerging threats and continuously improve security controls * Work across engineering, security and compliance teams to drive security improvements ## Related Videos - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Kubernetes Security - Challenge and Opportunity](https://www.wearedevelopers.com/videos/412-kubernetes-security-challenge-and-opportunity) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)