Senior Application Security Specialist

La Fosse
Greater London, UK
11 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£90,000.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Software System Penetration Testing Continuous Integration Open Web Application Security Systems Development Life Cycle Secure Coding Web Applications Web Platforms Software Security Devsecops Static Application Security Testing Vulnerability Analysis
+1 more
Dynamic Application Security Testing

Job description

  • Own and improve application security tooling, including SAST and DAST, across web, mobile, and API environments.
  • Lead application security testing activity, including penetration testing and bug bounty, working closely with internal teams and external partners.
  • Partner with engineering and product teams to embed security into the SDLC and drive a more proactive approach to AppSec.
  • Support the security of customer-facing applications and APIs, including oversight of threats such as credential stuffing and broader web application risk.
  • Build dashboards, metrics, and KPIs to improve visibility of application security posture and progress.
  • Provide technical leadership within AppSec, helping the wider team build capability and improve processes over time.

Requirements

  • Strong background in application security within complex technology environments.
  • Hands-on experience with secure coding, SAST, DAST, CI/CD integration, and DevSecOps practices.
  • Good understanding of OWASP Top 10, API security, threat modelling, and common web application attack vectors.
  • Able to operate as a credible technical SME while communicating clearly with senior stakeholders.
  • Experience improving security across customer-facing digital platforms in large-scale environments.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

2:31 min

Web platform advancements and shared technological ecosystems

Nico Martin · LIVE

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all