Application Security Engineer
The Source
London, UK
2 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.adzuna.co.uk
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£68,000.0 - £108,000.0
Working hours
Regular working hours
Languages
English
Job source
Tech stack
JavaScript (Programming Language)
Artificial Intelligence
Amazon Web Services
Application Firewall
Business Logic
Software System Penetration Testing
Microsoft Azure
C Sharp (Programming Language)
Cloud Computing
Cyber Security
Continuous Integration
DevOps
+18 more
Web Development
Github
Identity and Access Management
Intrusion Detection Systems
Python (Programming Language)
Open Web Application Security
Windows PowerShell
Secure Coding
Software Engineering
Cloud Platform System
Software Security
Information Technology
Build Tools
Virtual Agents
Software Coding
Static Application Security Testing
Programming Languages
Dynamic Application Security Testing
Job description
- Define consistent Secure Software Development Lifecycle practices for technology projects throughout planning and delivery.
- Help ensure application security vulnerabilities are mitigated to tolerable levels.
- Work with software and security engineers to design, maintain, and build product security tools and services.
- Act as the technical point of contact for product teams on automation, CI/CD, and Product Application Security Operations.
- Use approved AI models and cyber harnesses to assess application code for business logic weaknesses, misconfiguration, and vulnerabilities.
- Build tools and automation scripts that help developers consume security services delivered by the Security Engineering and Automation team.
- Be responsible for security product QA and testing.
- Build strong relationships with product development teams.
- Run software composition analysis (SCA) tools.
- Explain penetration testing findings to software engineering teams and help triage and mitigate risks.
- Articulate business risk when assessing software vulnerabilities.
- Continuously improve the operations of SAST, DAST, and IaC security tools.
- Continuously improve the operations of Web Application Firewalls (WAF) or IDS.
- Continuously improve security tooling coverage in cloud environments such as Microsoft Azure and Amazon AWS.
Technologies:
- Agentic AI
- AI
- AWS
- Azure
- C#
- CI/CD
- Cloud
- Copilot
- DevOps
- GitHub
- Support
- JavaScript
- LESS
- OWASP
- PowerShell
- Python
- Security
- WAF
- Web
Requirements
- We are looking for a cybersecurity engineer with expertise in the application security domain.
- We need strong application security and web application development experience.
- We need team leadership skills and the ability to join a growing Information Security team.
- We need deep understanding of OWASP, CWE 25, data protection, access management, software vulnerabilities, best-practice design, and threat modelling.
- We need experience working with developers to produce secure code in short time frames.
- We need a Computer Science or Cyber Security degree.
- We need an application development background.
- We need Azure DevOps experience.
- We need prior experience using AI models and cyber harnesses to support security evaluation of application and software code.
- We need experience with GitHub, Copilot, Codex, OWASP Top 10 for Agentic AI, AI skills development, and security triage.
- We need the ability to code in at least one programming language, such as Python, JavaScript, C#, or PowerShell.
- We prefer prior experience in a large organisation or Financial Services.
- We need excellent analytical skills and attention to detail.
- We need a CISSP, CSSLP, CEH, OSCP, or similar certification.
- We need presentation skills and the ability to explain complex solutions to a less technical audience.
- We need strong interpersonal, teamwork, communication, and collaboration skills.
- We need excellent written and spoken English.
- We want someone passionate about developing a career in Information Security.
- We want someone who is inspired by agile leadership, continuous improvement, and problem solving.
About the company
We are a global investment manager helping institutions, intermediaries, and individuals around the world invest money to meet their goals, fulfil their ambitions, and prepare for the future. We have around 5,000 people across six continents and have been established for over 200 years, while continuing to adapt as society and technology change. What does not change is our commitment to helping clients and society prosper. This is a contract inside IR35 role based in London on a hybrid working pattern.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.adzuna.co.uk
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
LM
Luis Minvielle
Where To Find Software Engineering Jobs
over 2 years ago
LM
Luis Minvielle
The Most Popular IT Jobs on the Market
over 2 years ago
LM
Luis Minvielle
Where to Find Entry-Level Software Engineering Jobs
over 2 years ago