Application Security Engineer
DGH Recruitment
London, UK
2 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.adzuna.co.uk
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£75,000.0
Working hours
Regular working hours
Job source
Tech stack
ASP.NET
Java (Programming Language)
JavaScript (Programming Language)
.NET Framework
Application Programming Interfaces (APIs)
Amazon Web Services
Software Applications
Software System Penetration Testing
JIRA
Authentication Protocols
Burp Suite
Cloud Computing
+24 more
Programming Tools
Github
Python (Programming Language)
OAuth
Open Source Technology
OpenID
Open Web Application Security
Openid Connect
Cloud Services
Red Team (Cyber Security)
Web Application Security
Software Engineering
Datadog
Sonatype
Software Security
Veracode
Gitlab
Kubernetes
Checkmarx
Purple Team (Cyber Security)
Blue Team (Cyber Security)
Docker
Static Application Security Testing
Dynamic Application Security Testing
Job description
- Act as a security champion to foster a secure-by-design approach.
- Support the identification and analysis of web application security vulnerabilities.
- Oversee the daily management of application security platforms to maintain coverage, compliance, and remediation of findings.
- Conduct threat modelling and review application architectures.
- Implement application security controls and proactive measures to prevent security incidents.
- Implement and manage SAST/SCA tooling across application repositories to identify source code risks.
- Scale automated DAST solutions across applications to maximise testing coverage.
- Carry out penetration testing on internally developed applications.
Technologies:
- AWS
- Cloud
- Datadog
- Docker
- GitHub
- GitLab
- Support
- JIRA
- Java
- JavaScript
- Kubernetes
- OWASP
- OAuth
- OpenID
- Python
- Security
- WAF
- Web
- ASP.NET
- API, We are recruiting an Application Security Engineer for a permanent role in London, fully onsite, on behalf of a leading global client in the financial services industry. You will work alongside engineering and IT teams to enhance application security, APIs, and infrastructure by implementing preventative controls and identifying risks through testing. We are looking for someone who speaks the language of developers, thrives in a purple team environment, and has a passion for automation.
Requirements
- We are looking for someone experienced in application security, with a focus on red team, blue team, or purple team activities.
- We are looking for someone with software development experience or experience contributing to open-source projects.
- We are looking for experience with DAST tools such as Burp Suite, OWASP ZAP, or similar.
- We are looking for experience with SAST/SCA tools such as Snyk, Veracode, Checkmarx, or similar.
- We are looking for proficiency in one or more of the following languages: Python, JavaScript, .NET, or Java.
- We are looking for demonstrated experience with development tools including GitLab/GitHub, Datadog, Jira, Docker, and various IDEs.
- Desirable: experience with cloud services, particularly AWS services like WAF and Cognito.
- Desirable: experience working with Infrastructure as Code, Kubernetes, and containers.
- Desirable: experience with authentication mechanisms such as OpenID Connect, OAuth, and identity providers.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.adzuna.co.uk
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
LM
Luis Minvielle
The 8 Best Code Testing Tools
over 2 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
LM
Luis Minvielle
Fully Remote Software Engineer Jobs
over 2 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago