growth has landed Smarsh in the annual Inc. 5000 list of fastest-growing American companies since 2008. We are looking for an experienced Product Security Engineer to partner with engineering teams and proactively identify, assess, and remediate security risks across our product portfolio. This role will focus on … secure development practices, vulnerability management, threat modelling, and driving a shift-left security culture. The ideal candidate is a pragmatic problem solver with strong technical expertise in applicationsecurity, cloud security, and DevSecOps. You will work closely with product owners, software engineers, and platform teams to … security assessments for new features, architectures, and services. Vulnerability Management & Remediation: Work closely with engineering teams to identify and remediate vulnerabilities from SAST, DAST, SCA, container security, and cloud security scans. Code & Architecture Review: Conduct secure code reviews and architectural security assessments to identify risks early More ❯
treasury solutions, empowering investment firms with cutting-edge technology to optimize financial performance, enhance liquidity, and mitigate risk. As part of our commitment to security and innovation, we are expanding our Information Security Team and seeking a DevSecOps Engineer to drive security automation and best practices across … our cloud infrastructure and IT operations. Job Overview As a DevSecOps Engineer , you will play a pivotal role in integrating security practices into our DevOps pipeline and IT operations . Working at the intersection of operations, security, and development , you will collaborate closely with internal teams to safeguard … continuous monitoring of internal and third-party information security controls. Threat & Vulnerability Management: Assess SAST (Static ApplicationSecurityTesting) and DAST (DynamicApplicationSecurityTesting) scans. Implement remediation and mitigation strategies in collaboration with development teams. Maintain network security protocols, firewalls More ❯
We support organisations across a variety of sectors including finance, retail, telecommunications, utilities, gaming, government and insurance. We’re looking for a Senior Information Security Consultant to join our growing team. The Senior Security Consultant is responsible for maintaining end-to-end security through compliance with global … policy, standards, regulations and industry best practices. This person works with Information Security management to implement a cloud first programme for enabling security standards across people, process and technology within the TransUnion Monevo portfolio. Day to Day You’ll Be: Guides and advises technology teams on infrastructure vulnerability … internal standards, best practices and architectures based on this information Assists Engineering teams with adoption to changes in applicationsecurity tooling (SAST, DAST, etc.) and interpretation of its results to ensure vulnerabilities are addressed on a timely basis and prevented from deployment into production Builds relationships and partners More ❯
Cloud Security Architect, AWS ProServe India Job ID: AWS ProServe IN - Maharashtra AWS Sales, Marketing, and Global Services (SMGS) is responsible for driving revenue, adoption, and growth from the largest and fastest growing small- and mid-market accounts to enterprise-level customers including public sector. At Amazon, Security is Top Priority. We are looking for security architects who are passionate about Cloud Security. Ideal candidates are those who have working experience with AWS Cloud, Cloud Security, Infrastructure Security, Network Security, Cloud Security Assessment, Penetration testing, Applicationsecurity assessment, Compliance … Organisations, Web Application Firewall, AWS Network Firewall, GWLB based Security Appliances. Have implementation knowledge to deliver DevSecOps pipeline with IaC scanner, SAST, DAST tool in the SDLC. Hands-on experience in one of the following is mandatory: Identity and Access Management Data Encryption Network Security Incident Response More ❯
ApplicationSecurity Consultant – Remote CSSLP, CISSP, OSWE, GWAPT, CREST CRT/CCT App A leading Technology consultancy is looking for an ApplicationSecurity Consultant to play a key role in embedding security into the heart of modern software development practices. The role: You’ll work … especially focused on cloud-native development in AWS environments. Key responsibilities include: Embedding secure coding practices and supporting design/code reviews Implementing SAST, DAST, SCA, and other security checks into DevOps workflows Supporting secure API design and cloud-native architecture Acting as a key escalation point for vulnerability … triage and remediation Delivering developer enablement through workshops and hands-on threat modelling What you’ll bring: 3+ years in application or product security roles Strong grasp of application-level threats, secure design, and remediation strategies Experience with IaC security (Terraform, CloudFormation), container security, and More ❯
belfast, antrim, united kingdom Hybrid / WFH Options
Intapp
to help shape the new flagship development center and contribute to high-impact projects in a thriving tech environment. Position Overview: Were expanding our applicationsecurity team and are looking for someone with Java and Python experience. Youll focus on a subset of our products to understand them … development teams build products that are secure by design. What you will do: Youll support product teams through activities such as: Defining requirements for security features Proactively identifying and controlling risks using techniques like threat modeling Designing and implementing automated security tests Performing manual security assessments including … JavaScript framework Test design Unit tests and end-to-end tests both automated and manual A proven history of turning SCA/SAST/DAST results into teachable moments Application penetration testing experience is a bonus. Fluency in English What you'll gain at Intapp: Our culture at More ❯
lisburn, antrim, united kingdom Hybrid / WFH Options
Intapp
to help shape the new flagship development center and contribute to high-impact projects in a thriving tech environment. Position Overview: Were expanding our applicationsecurity team and are looking for someone with Java and Python experience. Youll focus on a subset of our products to understand them … development teams build products that are secure by design. What you will do: Youll support product teams through activities such as: Defining requirements for security features Proactively identifying and controlling risks using techniques like threat modeling Designing and implementing automated security tests Performing manual security assessments including … JavaScript framework Test design Unit tests and end-to-end tests both automated and manual A proven history of turning SCA/SAST/DAST results into teachable moments Application penetration testing experience is a bonus. Fluency in English What you'll gain at Intapp: Our culture at More ❯
newtownabbey, antrim, united kingdom Hybrid / WFH Options
Intapp
to help shape the new flagship development center and contribute to high-impact projects in a thriving tech environment. Position Overview: Were expanding our applicationsecurity team and are looking for someone with Java and Python experience. Youll focus on a subset of our products to understand them … development teams build products that are secure by design. What you will do: Youll support product teams through activities such as: Defining requirements for security features Proactively identifying and controlling risks using techniques like threat modeling Designing and implementing automated security tests Performing manual security assessments including … JavaScript framework Test design Unit tests and end-to-end tests both automated and manual A proven history of turning SCA/SAST/DAST results into teachable moments Application penetration testing experience is a bonus. Fluency in English What you'll gain at Intapp: Our culture at More ❯
Overview: Additional Information: Please note, this role requires working full-time onsite, five days per week. NON Negotiable We are seeking an experienced IT Security Engineer to become a vital part of a growing IT Department. This critical role will focus on protecting our information assets through robust cybersecurity … measures, ensuring adherence to best practices, international standards, and local regulations. Ideally suited to candidates who possess expert knowledge of security frameworks including NIST 800, ISO 27001, and cybersecurity guidelines from PRA, FCA, and ICO. Candidates with at least 3 years' relevant experience in finance or banking, particularly as … disposal. Conduct security evaluations on network and firewall policies and manage applicationsecurity in both development and testing phases (SAST, DAST). Liaise with internal audit teams and international cybersecurity operations centres to implement security policies and controls. Provide cybersecurity training to ensure staff awareness More ❯
DevSecOps Engineer Location: Bury Job Type: Full-Time Job Description: We are seeking a skilled and motivated DevSecOps Engineer to join our growing Information Security team. The ideal candidate will have a strong background in both development and security operations, with a passion for integrating security practices … into the DevOps process. As a DevSecOps Engineer, you will play a critical role in ensuring the security and integrity of our software development lifecycle. Key Responsibilities: Implement and manage security tools and practices within the CI/CD pipeline. Collaborate with development, operations, and security teams … CodeBuild, Jenkins, GitLab, Azure DevOps. Proficiency in scripting languages such as Python, PowerShell. Knowledge of security tools and frameworks (e.g., OWASP, SCA, SAST, DAST). Familiarity with one or more cloud platforms (AWS, Azure, GCP) and containerization technologies (Docker, Kubernetes). Excellent problem-solving skills and attention to detail. More ❯
Senior Product Security Engineer Location: London Salary: £200,000+ A leading global quantitative investment firm is seeking a Senior Product Security Engineer to strengthen the security of its trading systems, cloud infrastructure, and business applications. This is a hands-on, high-impact role working across a modern … tech stack in a fast-paced environment. Key Responsibilities Implement and maintain security controls across low-latency systems and multi-cloud platforms (AWS, Azure, Alibaba Cloud) Collaborate with engineering teams to integrate secure … coding practices into the SDLC Conduct threat modeling, vulnerability assessments, and code reviews Automate security processes through CI/CD integration using SAST, DAST, and related tools Assess third-party vendors and enforce security standards Mentor teams on security architecture and best practices What We’re Looking More ❯
london, south east england, united kingdom Hybrid / WFH Options
Xcede
London-based Quant Trading fund is looking for a Senior Security Architect to influence architecture and lead strategic security projects during a period of rapid expansion. The incoming Security Architect will work with IT, cloud, and engineering teams to implement security solutions for low-latency systems … and multi-cloud platforms (AWS and Azure). Whilst this is predominantly a security architecture role, the incoming architect will perform an advisor/consulting role, helping to guide and influence technology stakeholders to build secure and robust systems. Role and Responsibilities: Support the implementation of security controls … Perform vendor security reviews to assess third-party security practices and ensure compliance with standards Integration of security scanning tools (SAST, DAST, etc.) into CI/CD pipelines and runtime environments to ensure continuous security monitoring and threat detection across Cloud - AWS, Azure, and on-prem More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Sophos Group
About Us Sophos is a global leader and innovator of advanced security solutions for defeating cyberattacks. The company acquired Secureworks in February 2025, bringing together two pioneers that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure … supporting more than 28,000 organizations. In addition to MDR and other services, Sophos' complete portfolio includes industry-leading endpoint, network, email, and cloud security that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection … and other cybersecurity frameworks. Knowledge of cryptographic techniques and implementations. Familiarity with security tooling used to support a SSDLC (SCA/SAST/DAST/container scanning). A strong desire to stay current and understand emerging technologies and risks. Strong project management skills to drive and oversee the More ❯
Glasgow, Renfrewshire, United Kingdom Hybrid / WFH Options
KPMG Careers
Worked with defining data models and interacting with databases Built software that incorporates best practices in applicationsecurity controls, such as SAST, DAST, Penetration Testing etc. Skills we'd love to see/Amazing Extras: Experience with Docker, Kubernetes or other serverless application delivery platforms Used … of the Business Disability Forum so please get in touch if you'd like to discuss any adjustments that you might need in the application process - and if you are successful beyond this. We don't accept speculative CVs from agencies - you can see our policy on agencies here More ❯
Glasgow, Renfrewshire, United Kingdom Hybrid / WFH Options
KPMG Careers
.Net Core, with frameworks like Blazor, Angular 2+, or React. Knowledge of software design patterns, clean code, REST APIs, and messaging. Experience in cloud application … development, particularly with Azure (preferred), AWS, or GCP. Defining data models and working with databases. Understanding applicationsecurity best practices, including SAST, DAST, and penetration testing. Skills we'd love to see/Amazing Extras: Experience integrating AI technologies like Azure AI Services or ChatGPT. Containerizing applications and … divisions and specialisms within Tech and Engineering: Technology and Engineering at KPMG ITs Her Future Women in Tech KPMG Workability and Disability confidence Additional application support and resources: Applying to KPMG Interview tips KPMG Values KPMG Competencies Locations & FAQ The evolving nature of tax and legal services makes working More ❯
productivity of development teams and ensure seamless integration and deployment of applications. Responsibilities: • Tool Development: Design, develop, and maintain tools that support software development, testing, and deployment processes. • Automation: Implement automation solutions to streamline workflows and reduce manual intervention. • Integration: Ensure seamless integration of tools with existing systems and … processes to ensure clear communication and knowledge sharing. • Innovation: Stay updated with the latest technologies and best practices in platform engineering and tool development. • Security: Implement security measures to protect tools and systems from potential threats. • Training and Support: Provide training and support to team members on the … GitLab, Ansible. • Cloud Platforms: Knowledge of cloud services like AWS, Azure, or Google Cloud Platform. • Security: Experience with tools for delivering SCA, SAST, DAST capabilities. • Monitoring and Logging: Proficiency with tools like Splunk, Dynatrace, Datadog, Prometheus, Grafana. • Version Control: Strong understanding of Git and version control practices. • Scripting: Skills More ❯
/CD for Azure DevOps or GitHub Enterprise Trailblazing experience with microservices or cloud-based architectures for web or mobile applications Knowledgeable in SAST, DAST, SCA and Gen AI in the Software Development Lifecycle About You Characteristics that can spell success for this role: Champion core DevOps behaviours like collaboration More ❯
Sheffield, South Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
scrum processes Cost optimization design for solutions Experience with core technical integrations with security and change management tooling such as SNOW, SAST/DAST tooling. Strong communicator and being able to interact with a range of stakeholders such as engineering teams and senior management. Key Skills/Experience: Essential … we will reply as soon as possible. Due to the nature and urgency of this post, candidates holding or who have held high level security clearance in the past are most welcome to apply. Please note successful applicants will be required to be security cleared prior to appointment … single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds. More ❯
internally to produce a stronger offering than ever before in our mission to empower people to be the best version of themselves. As a Security Engineer, you'll provide hands-on technical expertise to guide software development, delivery and continuous improvement focusing on risk and security. You'll help … new Digital Platform so that it is secure and compliant with both internal and industry regulations. You'll analyze new feature code to identify security risks and work with engineers to mitigate them, applying modern security standards such as OWASP CI/CD, DSOMM, SAMM, and Cloud Security … VPNs, subnets, regions/zones), as well as integration technologies (Auth0, APIM). Expertise with SAST & SCA systems like Snyk and Checkmarx. Experience with DAST systems such as OpenZAP and Qualys DAST, preferably with HTTP APIs. Ability to manage large-scale software estates operationally (build, release, monitoring, rollbacks, high availability More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
TSB Bank
implement improvements to processes and tooling to ensure engineering excellence. You'll have a strong understanding of operational requirements, and ensure Scalability, Resiliency, Observability, Security, Cost and Maintainability are at the forefront of all engineering activities. What you'll bring Bachelor's or Master's in Computer Science is … tooling (ie GitHub Actions, Jenkins, ArgoCD, Artifact Repository). Knowledge of software engineering including testing frameworks, and secure code delivery (ie SCA, SAST, DAST). Scripting/Coding (Bash, Python). End to End Observability solutions (logging, monitoring, alerting). Strong problem solving skills including level 3 support (not More ❯
Sheffield, South Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Eteam Workforce Limited
processes Cost optimization design for solutions Experience with core technical integrations with security and change management tooling such as SNOW and SAST/DAST tooling. Strong communicator and being able to interact with a range of stakeholders such as engineering teams and senior management. The most exciting DevOps and More ❯
Sheffield, Yorkshire, United Kingdom Hybrid / WFH Options
TieTalent
scrum processes Cost optimization design for solutions Experience with core technical integrations with security and change management tooling such as SNOW, SAST/DAST tooling Strong communicator and able to interact with a range of stakeholders such as engineering teams and senior management Key Skills/Experience: Essential Skills … we will reply as soon as possible. Due to the nature and urgency of this post, candidates holding or who have held high level security clearance in the past are most welcome to apply. Please note successful applicants will be required to be security cleared prior to appointment More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
Lorien
Senior Infrastructure Engineer – Security 📍 Location: Coventry, Hybrid 🕓 Hybrid | Fixed Term contract About the Role We’re looking for a Senior Infrastructure Engineer – Security to lead on the delivery, management, and optimisation of critical security tooling across the enterprise. You’ll act as a Subject Matter Expert (SME … you’ll champion continuous improvement, contribute to documentation standards, and mentor colleagues across the team. Key Responsibilities: Act as SME for a suite of security tools, ensuring performance, resilience, and compliance. Lead on solution implementation, transition into support, and day-to-day operations. Produce and maintain technical documentation and … expertise in at least one of the following security domains/tools: SIEM EDR/SOAR/AV CNAPP/CSPM SAST/DAST WAFs/Firewalls Vulnerability Scanners Email & Web Gateways Other Information: This role includes participation in an out-of-hours support rota . Candidates must be More ❯
Posted:
Salary Guide
Dynamic Application Security Testing the UK excluding London