> Markdown version of [/jobs/ext/2841913-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/2841913-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineer - **Company:** The Pokémon Company - **Location:** London, UK - **Experience:** Expert - **Salary:** £64,000.0 - £104,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Software System Penetration Testing, Cloud Computing, Cyber Security, Network Layer, Software Engineering, Software Security, Cyber Threat Analysis, Vulnerability Analysis - **Published:** September 11, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5878315273 ## About the Role * 5-7 years of relevant experience securing cloud environments, primarily AWS, or equivalent expertise. * Bachelors degree in a related field or equivalent practical experience. * Strong time management, organizational skills, and attention to detail. * Solid background in application security engineering and architecture, including MWAF and software development. * Demonstrated ability to build partnerships and collaborate with cross-functional teams. * Strong communication skills, with the ability to clearly present security risks to senior leadership. * Experience managing security vendors and managed service providers. * Proven background in incident management and response. * Security certifications such as CISSP, GIAC, or CISA are a plus. ## Description * We administer and enforce security policies governing system and application access. * We perform application security testing and reviews to ensure secure configurations and compliance with standards. * We conduct penetration tests and vulnerability assessments across applications, operating systems, and network layers. * We lead threat modeling and security design reviews for new technologies and system changes. * We respond to security incidents, isolating threats and removing unauthorized access. * We research emerging cybersecurity threats and conduct root cause analysis on issues. * We implement technical controls to reduce cloud-based risks, including drift, private-cloud gaps, and web-facing vulnerabilities. * We collaborate with Information Security partners to advance roadmaps and shared initiatives. * We integrate security testing and controls into development lifecycle phases. * We provide management with insights on business impact related to data compromise or system unavailability. * We work within an agile framework to deliver iterative improvements toward team and organizational goals. * We respond to and investigate cybersecurity incidents, which may be off-hours and on a scheduled rotation. Technologies: * AWS * Cloud * Incident Management * Marketing * Network * Security * Web ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Embracing the Hybrid Cloud: Unlocking Success with Open Source Technologies](https://www.wearedevelopers.com/videos/883-embracing-the-hybrid-cloud-unlocking-success-with-open-source-technologies) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Seriously gaming your cloud expertise: from cloud tourist to cloud native](https://www.wearedevelopers.com/videos/373-seriously-gaming-your-cloud-expertise-from-cloud-tourist-to-cloud-native) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london)