London, United Kingdom Posted on 24/02/2025 Job Description: SecurityTesting Engineer Location: Remote with occasional travel as required Employment Type: Permanent About the Role Scrumconnect Consulting is looking for a SecurityTesting Engineer to ensure the security, resilience, and compliance of … GOV.UK digital services . This role involves identifying vulnerabilities, mitigating security risks, and ensuring adherence to government security policies and DDAT frameworks . You will work closely with developers, security architects, and business stakeholders to embed securitytesting into Agile development workflows and DevSecOps pipelines. … security test plans for GOV.UK digital services. Identify security vulnerabilities through static and dynamicapplicationsecuritytesting (SAST & DAST) . Ensure securitytesting is seamlessly integrated into CI/CD pipelines and DevSecOps processes. Define security requirements and best practices, aligning More ❯
DynamicApplicationSecurityTesting for your AI Powered by the world's largest attack library for AI, Mindgard enables red teams, security, and developers to swiftly identify and remediate AI security vulnerabilities. Continuous SecurityTesting & Automated AIRed Teaming We empower organizations to … use. Extensive model coverage beyond LLMS, including image, audio, and multi-modal. Empower your team to identify AI risks that static code or manual testing cannot detect. Reduce testing times from months to minutes. Comprehensive AI Security Coverage: Gain actionable visibility with the most accurate AI security … is the leader in Artificial Intelligence Security Testing. Its industry-first, award-winning, DynamicApplicationSecurityTesting for AI (DAST-AI) solution delivers continuous securitytesting and automated AI red teaming across the AI lifecycle, making AI security actionable and auditable. More ❯
We are seeking a Principal Security Engineer to lead and drive security engineering efforts across our cloud and application environments. This strategic, hands-on role requires expertise in cloud security, secure development practices, and the implementation of advanced security controls. You will serve as a … leader within the Consumer Security Engineering team, driving security initiatives across cloud platforms, microservice architectures, digital products, applicationsecurity, and enterprise security. You will define and build comprehensive security strategies in collaboration with developers, DevSecOps engineers, ensuring that security is seamlessly integrated into our … with experience in integrating security into CI/CD pipelines using tools like Jenkins, GitLab, or similar. Experience implementing and managing SAST/DAST tools and processes to secure application development. Deep understanding of applicationsecurity, including secure coding practices, OWASP Top 10, and API securityMore ❯
You will need to login before you can apply for a job. We are seeking a Principal Security Engineer to lead and drive security engineering efforts across our cloud and application environments. This strategic, hands-on role requires expertise in cloud security, secure development practices, and … the implementation of advanced security controls. You will serve as a leader within the Consumer Security Engineering team, driving security initiatives across cloud platforms, microservice architectures, digital products, applicationsecurity, and enterprise security. You will define and build comprehensive security strategies in collaboration with … with experience in integrating security into CI/CD pipelines using tools like Jenkins, GitLab, or similar. Experience implementing and managing SAST/DAST tools and processes to secure application development. Deep understanding of applicationsecurity, including secure coding practices, OWASP Top 10, and API securityMore ❯
Job Title: ApplicationSecurity Engineer Job Type: Permanent Location: UK or Europe (Remote) Salary: $150,000 - $180000 About the Role My client is seeking an ApplicationSecurity Engineer to strengthen our security posture by identifying vulnerabilities, integrating best practices into CI/CD pipelines , and … ensuring compliance with PCI DSS, SOC 2, GDPR, and CCPA . You'll work closely with development teams to embed security into the Software Development Lifecycle (SDLC) from the ground up. If you're passionate about securing applications and solving complex security challenges, we want to hear from … reviews and threat modeling during the application design phase. Perform static and dynamicapplicationsecuritytesting (SAST/DAST) on internal and third-party applications. Define and maintain security standards for software development. Integrate security tools and processes into CI/CD More ❯
Senior Security Engineer We are seeking an experienced Senior Security Engineer to join our dynamicSecurity Team. In this key role, you will be a key contributor to Funding Circle's cloud and applicationsecurity posture. You will leverage your deep expertise in AWS … security, secure software development lifecycle (SSDLC) practices, and CI/CD security to implement and champion robust security solutions. You will act as a subject matter expert and mentor, collaborating closely with engineering and product teams to embed security seamlessly into our cloud infrastructure and development … implementing, securing, and managing a wide range of AWS security services. Proven, hands-on experience architecting, building, and integrating security tooling (SAST, DAST, SCA, secrets management, IAST) and automated security controls within CI/CD pipelines (e.g., GitLab CI, Jenkins, GitHub Actions). Strong track record of More ❯
Summary The Specialist ApplicationSecurity Engineer will play a pivotal role in ensuring the integrity and security of our applications across various platforms. You will lead the charge in implementing robust security measures, collaborating closely with cross-functional teams to fortify our defences against cyber threats. … and on-premises environments, employing a diverse suite of tools including Semgrep for SAST, Snyk for SCA, GHAS for secret scanning, Burp Suite for DAST, and scripting for automation. Forge partnerships with external vendors to optimize and seamlessly integrate security tools into our applicationsecurity workflow, ensuring … record of leadership or significant contributions in similar roles. Proficiency in Semgrep for SAST, Snyk for SCA, GHAS for secret scanning, Burp Suite for DAST, and automation scripting. Understanding of applicationsecurity principles and best practices. Experience integrating and optimizing security tools within development workflows, particularly within More ❯
growth has landed Smarsh in the annual Inc. 5000 list of fastest-growing American companies since 2008. We are looking for an experienced Product Security Engineer to partner with engineering teams and proactively identify, assess, and remediate security risks across our product portfolio. This role will focus on … secure development practices, vulnerability management, threat modelling, and driving a shift-left security culture. The ideal candidate is a pragmatic problem solver with strong technical expertise in applicationsecurity, cloud security, and DevSecOps. You will work closely with product owners, software engineers, and platform teams to … security assessments for new features, architectures, and services. Vulnerability Management & Remediation: Work closely with engineering teams to identify and remediate vulnerabilities from SAST, DAST, SCA, container security, and cloud security scans. Code & Architecture Review: Conduct secure code reviews and architectural security assessments to identify risks early More ❯
a job. View more categories View less categories Sector Engineering Role Specialist Contract Type Permanent Hours Full Time All the details Summary The Specialist ApplicationSecurity Engineer will play a pivotal role in ensuring the integrity and security of our applications across various platforms. You will lead … and on-premises environments, employing a diverse suite of tools including Semgrep for SAST, Snyk for SCA, GHAS for secret scanning, Burp Suite for DAST, and scripting for automation. Forge partnerships with external vendors to optimize and seamlessly integrate security tools into our applicationsecurity workflow, ensuring … record of leadership or significant contributions in similar roles. Proficiency in Semgrep for SAST, Snyk for SCA, GHAS for secret scanning, Burp Suite for DAST, and automation scripting. Understanding of applicationsecurity principles and best practices. Experience integrating and optimizing security tools within development workflows, particularly within More ❯
Our consultancy client are currently looking for a couple of experienced Security/DevSecOps engineers to join their business. They operate in the FS and energy space so experience in banking or insurance or energy is a must for these roles. Working across clients you will develop and execute … Lead security initiatives across the SDLC, integrating Static ApplicationSecurityTesting (SAST), DynamicApplicationSecurityTesting (DAST), Software Composition Analysis (SCA), and Container scanning using tools such as CheckmarxOne, Prisma Cloud, or equivalents. Collaborate with cross-functional teams to embed security … have strong knowledge of applicationsecurity, secure coding practices, and tools like CheckmarxOne, Prisma Cloud, or similar platforms. With proficiency in SAST, DAST, SCA, and Container scanning, with hands-on experience integrating these tools into development pipelines. Extensive experience in endpoint security, cloud security, and network More ❯
treasury solutions, empowering investment firms with cutting-edge technology to optimize financial performance, enhance liquidity, and mitigate risk. As part of our commitment to security and innovation, we are expanding our Information Security Team and seeking a DevSecOps Engineer to drive security automation and best practices across … our cloud infrastructure and IT operations. Job Overview As a DevSecOps Engineer , you will play a pivotal role in integrating security practices into our DevOps pipeline and IT operations . Working at the intersection of operations, security, and development , you will collaborate closely with internal teams to safeguard … continuous monitoring of internal and third-party information security controls. Threat & Vulnerability Management: Assess SAST (Static ApplicationSecurityTesting) and DAST (DynamicApplicationSecurityTesting) scans. Implement remediation and mitigation strategies in collaboration with development teams. Maintain network security protocols, firewalls More ❯
treasury solutions, empowering investment firms with cutting-edge technology to optimize financial performance, enhance liquidity, and mitigate risk. As part of our commitment to security and innovation, we are expanding our Information Security Team and seeking a DevSecOps Engineer to drive security automation and best practices across … our cloud infrastructure and IT operations. Job Overview As a DevSecOps Engineer , you will play a pivotal role in integrating security practices into our DevOps pipeline and IT operations . Working at the intersection of operations, security, and development , you will collaborate closely with internal teams to safeguard … continuous monitoring of internal and third-party information security controls. Threat & Vulnerability Management: Assess SAST (Static ApplicationSecurityTesting) and DAST (DynamicApplicationSecurityTesting) scans. Implement remediation and mitigation strategies in collaboration with development teams. Maintain network security protocols, firewalls More ❯
create, and ultimately build an open, accessible and fair financial future, one piece of software at a time. We are looking for a Senior ApplicationSecurity Engineer to join our Security team as we tackle some of the most interesting problems in the crypto space, like how … do we securely scale a distributed financial platform that touches millions of people a day. At Security is a mindset and a set of engineering approaches to better protect stakeholders, users and systems by building our creative engineering solutions to hard, sometimes previously unseen problems. The Security team … is responsible for the big picture of how systems are designed for Security, and we use a breadth of tools and approaches to solve a broad spectrum of problems. Practices aimed at achieving proactive identification of potential threat actors combined with in-depth investigation of security issues into More ❯
Responsibilities: The Security Architect reports to the Chief Information Security Officer. The Chief Information Security Officer determines the activities due by the Security Architect based on evolving needs to improve the company’s security posture and to secure CHAMP assets. Examples of the Security Architect’s responsibilities and duties include: Document and address information security, cybersecurity architecture, and systems security engineering requirements throughout the application acquisition or development life cycle. Employ secure configuration management processes Ensure that acquired or developed system(s) and architecture(s) are consistent with the security … data anonymization, data loss protection scanning, accelerated cryptographic operations, SSL security, REST/JSON processing) Ability to drive strategy to establish SAST and DAST framework Knowledge of the enterprise information technology (IT) architectural concepts and patterns Knowledge of installation, integration, and optimization of system components Knowledge of remote access More ❯
ApplicationSecurity Consultant (AppSec) Permanent Role Fully Remote Up to £80K per annum Are you a skilled applicationsecurity professional with a strong grasp of cloud-native development and a passion for safeguarding software systems? Join an innovative cyber security consultancy working at the forefront … of resilience, supporting clients across the military, government, finance, and tech sectors. As an ApplicationSecurity Consultant, you'll be the go-to expert on software-level threats and controls. You'll play a key role in embedding security within cloud-native development environments-particularly AWS-by … teams in secure coding best practices through workshops, threat modelling, and code reviews. Define and enforce security checkpoints across the DevOps lifecycle (SAST, DAST, SCA). Champion secure API design, including robust authentication, authorisation, and validation techniques. Identify and mitigate security vulnerabilities through reviews and penetration test support. More ❯
UK based, primarily remote working with some travel required to our London Office. Sponsorship is not available for this role. What you will do: Security Integration in CI/CD Pipelines: Implement security controls within CI/CD pipelines using automation and best practices, ensuring vulnerabilities are caught … Response: Develop and maintain monitoring systems and respond to security incidents quickly and effectively. Automated SecurityTesting: Integrate and manage SAST, DAST, and other securitytesting tools to identify security issues in code and applications. Compliance and Governance: Develop and manage Azure policies to … as vulnerability scanners, intrusion detection systems, & security information & event management (SIEM) solutions. Knowledge of container management with Azure Container Registry. Experience in SAST, DAST & other techniques to improve code security Desirable: Proficiency in scripting, preferably with PowerShell. Understanding of DotNet development and deployment pipelines. Experience working with PCI More ❯
We support organisations across a variety of sectors including finance, retail, telecommunications, utilities, gaming, government and insurance. We’re looking for a Senior Information Security Consultant to join our growing team. The Senior Security Consultant is responsible for maintaining end-to-end security through compliance with global … policy, standards, regulations and industry best practices. This person works with Information Security management to implement a cloud first programme for enabling security standards across people, process and technology within the TransUnion Monevo portfolio. Day to Day You’ll Be: Guides and advises technology teams on infrastructure vulnerability … internal standards, best practices and architectures based on this information Assists Engineering teams with adoption to changes in applicationsecurity tooling (SAST, DAST, etc.) and interpretation of its results to ensure vulnerabilities are addressed on a timely basis and prevented from deployment into production Builds relationships and partners More ❯
Cloud Security Architect, AWS ProServe India Job ID: AWS ProServe IN - Maharashtra AWS Sales, Marketing, and Global Services (SMGS) is responsible for driving revenue, adoption, and growth from the largest and fastest growing small- and mid-market accounts to enterprise-level customers including public sector. At Amazon, Security is Top Priority. We are looking for security architects who are passionate about Cloud Security. Ideal candidates are those who have working experience with AWS Cloud, Cloud Security, Infrastructure Security, Network Security, Cloud Security Assessment, Penetration testing, Applicationsecurity assessment, Compliance … Organisations, Web Application Firewall, AWS Network Firewall, GWLB based Security Appliances. Have implementation knowledge to deliver DevSecOps pipeline with IaC scanner, SAST, DAST tool in the SDLC. Hands-on experience in one of the following is mandatory: Identity and Access Management Data Encryption Network Security Incident Response More ❯
Principal Product Security Engineer Apply locations CZ - Prague UK - London time type Full time posted on Posted 6 Days Ago job requisition id JR103958 Our Product Security team is seeking a Principal Product Security Engineer to define and lead a secure development strategy and approach in a … fast-paced, agile development environment. You will be responsible for defining and driving security-related initiatives in collaboration with internal stakeholders. You will bring a wealth of technical expertise and industry experience spanning applicationsecurity, cloud security, DevSecOps and CI/CD. The ideal candidate for … with secure software development lifecycle, securitytesting, vulnerability management. Experience with cloud technologies (AWS, Azure), securitytesting and automation (SAST, DAST, SCA), and AI/ML technologies. Deep understanding of DevSecOps principles and agile development. Knowledge of secure architecture and design principles, industry standards (NIST SSDF More ❯
ApplicationSecurity Consultant – Remote CSSLP, CISSP, OSWE, GWAPT, CREST CRT/CCT App A leading Technology consultancy is looking for an ApplicationSecurity Consultant to play a key role in embedding security into the heart of modern software development practices. The role: You’ll work … especially focused on cloud-native development in AWS environments. Key responsibilities include: Embedding secure coding practices and supporting design/code reviews Implementing SAST, DAST, SCA, and other security checks into DevOps workflows Supporting secure API design and cloud-native architecture Acting as a key escalation point for vulnerability … triage and remediation Delivering developer enablement through workshops and hands-on threat modelling What you’ll bring: 3+ years in application or product security roles Strong grasp of application-level threats, secure design, and remediation strategies Experience with IaC security (Terraform, CloudFormation), container security, and More ❯
ApplicationSecurity Consultant – Remote CSSLP, CISSP, OSWE, GWAPT, CREST CRT/CCT App A leading Technology consultancy is looking for an ApplicationSecurity Consultant to play a key role in embedding security into the heart of modern software development practices. The role: You’ll work … especially focused on cloud-native development in AWS environments. Key responsibilities include: Embedding secure coding practices and supporting design/code reviews Implementing SAST, DAST, SCA, and other security checks into DevOps workflows Supporting secure API design and cloud-native architecture Acting as a key escalation point for vulnerability … triage and remediation Delivering developer enablement through workshops and hands-on threat modelling What you’ll bring: 3+ years in application or product security roles Strong grasp of application-level threats, secure design, and remediation strategies Experience with IaC security (Terraform, CloudFormation), container security, and More ❯
This is a leading product role within the GitLab Sec Section. The Sec section provides GitLab Ultimate customers with comprehensive coverage for all their Security needs across the SDLC, from development to production, including risk assessment, compliance frameworks, applicationsecurity posture, and vulnerability management. Enable AppSec and … All these capabilities are driven not only by GitLab's broad set of applicationsecuritytesting scanners (SAST, SCA, Secret Scanning, DAST, etc.) but also by GitLab's AI-powered vulnerability resolution and explanation engine. As our new Sr. Product Manager, you will develop and clearly communicate … detailed roadmap for our Vulnerability Management & Insights solution, ensuring they align with both our company's objectives and evolving market demands within our broader ApplicationSecurity platform. You will collaborate closely with the relevant engineering teams and Product team members of the different scanners and adjacent areas like More ❯
to help shape the new flagship development center and contribute to high-impact projects in a thriving tech environment. Position Overview: Were expanding our applicationsecurity team and are looking for someone with Java and Python experience. Youll focus on a subset of our products to understand them … development teams build products that are secure by design. What you will do: Youll support product teams through activities such as: Defining requirements for security features Proactively identifying and controlling risks using techniques like threat modeling Designing and implementing automated security tests Performing manual security assessments including … JavaScript framework Test design Unit tests and end-to-end tests both automated and manual A proven history of turning SCA/SAST/DAST results into teachable moments Application penetration testing experience is a bonus. Fluency in English What you'll gain at Intapp: Our culture at More ❯
belfast, antrim, united kingdom Hybrid / WFH Options
Intapp
to help shape the new flagship development center and contribute to high-impact projects in a thriving tech environment. Position Overview: Were expanding our applicationsecurity team and are looking for someone with Java and Python experience. Youll focus on a subset of our products to understand them … development teams build products that are secure by design. What you will do: Youll support product teams through activities such as: Defining requirements for security features Proactively identifying and controlling risks using techniques like threat modeling Designing and implementing automated security tests Performing manual security assessments including … JavaScript framework Test design Unit tests and end-to-end tests both automated and manual A proven history of turning SCA/SAST/DAST results into teachable moments Application penetration testing experience is a bonus. Fluency in English What you'll gain at Intapp: Our culture at More ❯