security standards. Your expertise will help us continuously analyse and improve our security systems, ensuring that our products and services are not only secure by design but also comply with internal and external regulatory requirements. Other responsibilities include: Security Analysis and Improvement: Continuously analyse our security systems for … Development of Security Standards: Develop and maintain best practices and security standards for the organisation, guiding teams in the implementation of securecoding practices. Secure Design: Collaborate with development teams to ensure that web and mobile front-ends, as well as microservice architectures, are designed … also have a proven experience and knowledge with any combination of the following: Threat modelling and risk assessments Working knowledge of securecoding principles (OWASP and OWASP mobile, SANS ) Experience with designing and administering identity management (authentication and authorisation including policy enforcement points, token services, protocols such More ❯
Cybersecurity and play a key role within our forward-leaning Cybersecurity Practice. In this role, you will support the design and implementation of secure software development processes and cloud-native integration patterns for clients across multiple sectors. This is a hands-on, delivery-focused role where you will … development and cloud security (CSSLP, AZ-500, SC-100/SC-200, AWS Security, GCSA, GCLD, or similar). Familiarity with securecoding standards (OWASP, SEI CERT) and SSDLC models (Microsoft SDL, NIST 800-218 SSDF). Knowledge or experience of Product Assurance Schemes (PAS) or product … with cloud security concepts and controls across at least one major cloud platform (AWS, Azure, or GCP). Solid grasp of securecoding practices and common software vulnerabilities. Ability to assess code, configurations, and architecture for security issues and provide practical remediation guidance. Desired skills Familiarity with More ❯
a security architecture role, the incoming architect will perform an advisor/consulting role, helping to guide and influence technology stakeholders to build secure and robust systems. Role and Responsibilities: Support the implementation of security controls and processes focusing on a broad range of systems, including core trading … moving environment Contribute to the development and maintenance of a secure software development lifecycle (SDLC) with a focus on securecoding practices in languages like Python, C++, Rust, Go and Kotlin/Java Conduct threat modeling, vulnerability assessments and security code reviews across different platforms … as a Security Architect with significant practical experience in securing software development and infrastructure at scale Proven record of accomplishment in securecoding practices and development experience in development languages such as Python, C++, Rust, Go and Kotlin/Java Strong technical background in software development, system More ❯
london, south east england, united kingdom Hybrid / WFH Options
Xcede
a security architecture role, the incoming architect will perform an advisor/consulting role, helping to guide and influence technology stakeholders to build secure and robust systems. Role and Responsibilities: Support the implementation of security controls and processes focusing on a broad range of systems, including core trading … moving environment Contribute to the development and maintenance of a secure software development lifecycle (SDLC) with a focus on securecoding practices in languages like Python, C++, Rust, Go and Kotlin/Java Conduct threat modeling, vulnerability assessments and security code reviews across different platforms … as a Security Architect with significant practical experience in securing software development and infrastructure at scale Proven record of accomplishment in securecoding practices and development experience in development languages such as Python, C++, Rust, Go and Kotlin/Java Strong technical background in software development, system More ❯
teams, you'll implement security solutions for low-latency systems and multi-cloud platforms, including AWS, Azure, and Alibaba Cloud. You'll also secure hybrid infrastructures across Python, C++, and Kotlin/Java environments, ensuring robust protection that supports QRT's high-speed, data-driven operations. Support the … moving environment. Contribute to the development and maintenance of a secure software development lifecycle (SDLC) with a focus on securecoding practices in languages like Python, C++, Rust, Go and Kotlin/Java. Conduct threat modeling, vulnerability assessments and security code reviews across different platforms … in product security or similar roles with significant practical experience in securing software development at scale. Proven record of accomplishment in securecoding practices and development experience in development languages such as Python, C++, Rust, Go and Kotlin/Java. Strong technical background in software development, system More ❯
london, south east england, united kingdom Hybrid / WFH Options
PA Consulting
security best practices. Experience in mentoring and developing junior engineers. Ability to nurture talent within the team, guiding them to enhance their skills in coding, architecture, and problem-solving through coaching, reviews, and pair programming. Proven experience delivering enterprise-grade applications on cloud platforms (AWS, GCP, Azure) with expertise … queries and application logic to improve scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. Skilled at making technical decisions and trade-offs that positively impact teams … queries and application logic for better scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. You thrive in problem-solving and analytical thinking to create long-term More ❯
west london, south east england, united kingdom Hybrid / WFH Options
PA Consulting
security best practices. Experience in mentoring and developing junior engineers. Ability to nurture talent within the team, guiding them to enhance their skills in coding, architecture, and problem-solving through coaching, reviews, and pair programming. Proven experience delivering enterprise-grade applications on cloud platforms (AWS, GCP, Azure) with expertise … queries and application logic to improve scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. Skilled at making technical decisions and trade-offs that positively impact teams … queries and application logic for better scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. You thrive in problem-solving and analytical thinking to create long-term More ❯
south west london, south east england, united kingdom Hybrid / WFH Options
PA Consulting
security best practices. Experience in mentoring and developing junior engineers. Ability to nurture talent within the team, guiding them to enhance their skills in coding, architecture, and problem-solving through coaching, reviews, and pair programming. Proven experience delivering enterprise-grade applications on cloud platforms (AWS, GCP, Azure) with expertise … queries and application logic to improve scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. Skilled at making technical decisions and trade-offs that positively impact teams … queries and application logic for better scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. You thrive in problem-solving and analytical thinking to create long-term More ❯
to lead and drive security engineering efforts across our cloud and application environments. This strategic, hands-on role requires expertise in cloud security, securedevelopment practices, and the implementation of advanced security controls. You will serve as a leader within the Consumer Security Engineering team, driving security initiatives … IAM), network security, and encryption, in compliance with industry standards. Integrate Application Security: Drive the integration of application security practices, including securecoding and vulnerability management, throughout the software development lifecycle for all the projects. Drive Security Tool Implementation: Lead the evaluation, selection, and implementation of enterprise … implementing and managing SAST/DAST tools and processes to secure application development. Deep understanding of application security, including securecoding practices, OWASP Top 10, and API security standards. Knowledge of Customer Identity and Access Management (CIAM) solutions and API security frameworks. Knowledge of one More ❯
to lead and drive security engineering efforts across our cloud and application environments. This strategic, hands-on role requires expertise in cloud security, securedevelopment practices, and the implementation of advanced security controls. You will serve as a leader within the Consumer Security Engineering team, driving security initiatives … IAM), network security, and encryption, in compliance with industry standards. Integrate Application Security: Drive the integration of application security practices, including securecoding and vulnerability management, throughout the software development lifecycle for all projects. Drive Security Tool Implementation: Lead the evaluation, selection, and implementation of enterprise security … implementing and managing SAST/DAST tools and processes to secure application development. Deep understanding of application security, including securecoding practices, OWASP Top 10, and API security standards. Knowledge of Customer Identity and Access Management (CIAM) solutions and API security frameworks. Knowledge of one More ❯
embedding security into the heart of modern software development practices. The role: You’ll work closely with engineering teams to champion securecoding, guide remediation of vulnerabilities, and integrate AppSec controls across the DevOps pipeline. This role is especially focused on cloud-native development in AWS environments. … Key responsibilities include: Embedding securecoding practices and supporting design/code reviews Implementing SAST, DAST, SCA, and other security checks into DevOps workflows Supporting secure API design and cloud-native architecture Acting as a key escalation point for vulnerability triage and remediation Delivering developer … and hands-on threat modelling What you’ll bring: 3+ years in application or product security roles Strong grasp of application-level threats, secure design, and remediation strategies Experience with IaC security (Terraform, CloudFormation), container security, and AWS Clear communication skills and a collaborative approach More ❯
embedding security into the heart of modern software development practices. The role: You’ll work closely with engineering teams to champion securecoding, guide remediation of vulnerabilities, and integrate AppSec controls across the DevOps pipeline. This role is especially focused on cloud-native development in AWS environments. … Key responsibilities include: Embedding securecoding practices and supporting design/code reviews Implementing SAST, DAST, SCA, and other security checks into DevOps workflows Supporting secure API design and cloud-native architecture Acting as a key escalation point for vulnerability triage and remediation Delivering developer … and hands-on threat modelling What you’ll bring: 3+ years in application or product security roles Strong grasp of application-level threats, secure design, and remediation strategies Experience with IaC security (Terraform, CloudFormation), container security, and AWS Clear communication skills and a collaborative approach More ❯
Senior Product Security Engineer London/WFH to £160k Do you have expertise with securecoding practices and application security? You could be progressing your career in a senior, hands-on role at a global systematic trading firm. As a Senior Product Security Engineer you'll drive … platforms, ensuring security is embedded at every stage of the development lifecycle and provide mentorship, guidance and training on security best practices and securedevelopment processes to engineering teams working in mixed cloud and operating systems environments. Location/WFH: You'll join colleagues based in high spec … at the onsite restaurant, with flexibility to work from home two days a week. About you: You have strong experience with securecoding practices and development experience with development languages such as Python, C++, Rust, Go and Kotlin/Java You have a strong knowledge of software More ❯
as Our Global Cybersecurity Expert! As a result of our continued growth, we're looking for an experienced cybersecurity professional passionate about building secure systems and fostering a culture of security. You'll take charge of our Cybersecurity function, ensuring our digital products and infrastructure are secure … become the norm. Your Mission As our Cybersecurity Lead, you will: Build and implement a DevSecOps framework to ensure our digital products are secure and meet the highest Cyber assurance standards. Lead the Cybersecurity function, managing people, processes, and tools while ensuring the business is "Secure … Cloud networking architecture: VNets, application gateways, private and service endpoints, and firewalls. Secure Software Development: Deep experience implementing effective securecoding practices (e.g., OWASP Top 10, SAST, DAST, SonarCloud). You can seamlessly integrate security into the SDLC with a shift-left approach. Cloud Security More ❯
project deliveries Experience with software development lifecycle methodologies such as Scrum, Kanban, etc. Expertise in secure software development and securecoding practices Ability to translate business requirements into software technical specifications Act as a liaison between business and technology teams Keep abreast with latest technologies More ❯
team focused on developing and maintaining Cloud Identity solutions. You will play a key role in designing, implementing, and scaling systems that enable secure and seamless user authentication across various platforms and applications. As a senior engineer you will collaborate closely with cross-functional teams to understand requirements … engineering with a focus on backend development. In-depth knowledge of GCP services, architecture, and best practices. Proven experience in designing and building secure and scalable distributed systems. In-depth knowledge of identity management protocols (SAML, OIDC, OAuth) and their implementations. Experience … with Google Identity and containerization technologies (e.g., Docker, Kubernetes) is a plus. Strong understanding of security principles and best practices (e.g., securecoding, threat modeling). Excellent problem-solving and analytical skills. Ability to work effectively in a fast-paced, collaborative environment. Excellent written and verbal communication More ❯
security best practices. Experience in mentoring and developing junior engineers. Ability to nurture talent within the team, guiding them to enhance their skills in coding, architecture, and problem-solving through coaching, reviews, and pair programming. Proven experience delivering enterprise-grade applications on cloud platforms (AWS, GCP, Azure) with expertise … queries and application logic to improve scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. Skilled at making technical decisions and trade-offs that positively impact teams More ❯
Work closely with security architects, developers, and product teams to embed security in software development. Provide security awareness training and advocate securecoding practices across teams. Engage with GOV.UK security and compliance frameworks , ensuring security best practices are followed. 5. Test Reporting & Documentation Produce detailed security test More ❯
london, south east england, united kingdom Hybrid / WFH Options
Ocho
a remote role open to candidates based anywhere in the UK. You'll work closely with cross-functional teams to design and implement secure, scalable CI/CD workflows, helping to embed security best practices throughout the software delivery lifecycle. It's an opportunity to have real impact … forward-thinking environment. What you'll be doing Integrating automated security testing into CI/CD pipelines Supporting development teams with securecoding practices and tooling Working with DevOps engineers to ensure infrastructure is secure and compliant Contributing to threat modelling and risk assessments Staying … of cloud infrastructure (preferably Azure) and Infrastructure as Code Experience with containerisation tools (Docker, Kubernetes) Knowledge of application and infrastructure security principles Scripting or coding experience (e.g. Python, Bash, PowerShell) This is a brilliant opportunity to grow your DevSecOps career within a team that values security, collaboration, and technical More ❯
south west london, south east england, united kingdom Hybrid / WFH Options
Ocho
a remote role open to candidates based anywhere in the UK. You'll work closely with cross-functional teams to design and implement secure, scalable CI/CD workflows, helping to embed security best practices throughout the software delivery lifecycle. It's an opportunity to have real impact … forward-thinking environment. What you'll be doing Integrating automated security testing into CI/CD pipelines Supporting development teams with securecoding practices and tooling Working with DevOps engineers to ensure infrastructure is secure and compliant Contributing to threat modelling and risk assessments Staying … of cloud infrastructure (preferably Azure) and Infrastructure as Code Experience with containerisation tools (Docker, Kubernetes) Knowledge of application and infrastructure security principles Scripting or coding experience (e.g. Python, Bash, PowerShell) This is a brilliant opportunity to grow your DevSecOps career within a team that values security, collaboration, and technical More ❯
west london, south east england, united kingdom Hybrid / WFH Options
Ocho
a remote role open to candidates based anywhere in the UK. You'll work closely with cross-functional teams to design and implement secure, scalable CI/CD workflows, helping to embed security best practices throughout the software delivery lifecycle. It's an opportunity to have real impact … forward-thinking environment. What you'll be doing Integrating automated security testing into CI/CD pipelines Supporting development teams with securecoding practices and tooling Working with DevOps engineers to ensure infrastructure is secure and compliant Contributing to threat modelling and risk assessments Staying … of cloud infrastructure (preferably Azure) and Infrastructure as Code Experience with containerisation tools (Docker, Kubernetes) Knowledge of application and infrastructure security principles Scripting or coding experience (e.g. Python, Bash, PowerShell) This is a brilliant opportunity to grow your DevSecOps career within a team that values security, collaboration, and technical More ❯
government and national security clients. Working as part of agile, empowered teams, you’ll engage closely with end-users and stakeholders to deliver secure, scalable, and high-quality applications. This role combines both hands-on technical leadership and strategic thinking, giving you the opportunity to influence design decisions … Collaborate with cross-functional teams, including other architects and tech leads, to develop integrated and scalable systems. Champion security best practices and ensure secure design and implementation. Take ownership of technical delivery and ensure the quality and reliability of software products. Engage with stakeholders at all levels, from … in many of the following: Designing secure, scalable, and innovative application solutions. Deep understanding of software security principles and securecoding practices. Technical leadership and accountability for team output. Strong collaboration and communication skills, both written and verbal. Stakeholder management and expectation setting. Promoting quality More ❯
government and national security clients. Working as part of agile, empowered teams, you’ll engage closely with end-users and stakeholders to deliver secure, scalable, and high-quality applications. This role combines both hands-on technical leadership and strategic thinking, giving you the opportunity to influence design decisions … Collaborate with cross-functional teams, including other architects and tech leads, to develop integrated and scalable systems. Champion security best practices and ensure secure design and implementation. Take ownership of technical delivery and ensure the quality and reliability of software products. Engage with stakeholders at all levels, from … in many of the following: Designing secure, scalable, and innovative application solutions. Deep understanding of software security principles and securecoding practices. Technical leadership and accountability for team output. Strong collaboration and communication skills, both written and verbal. Stakeholder management and expectation setting. Promoting quality More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
the ability to engage both technical and non-technical stakeholders. Expertise in engineering standards including test-driven development, contract testing, and securecoding practices. An understanding of architectural patterns such as event-driven architecture and platform migration. The Package: Flexible and hybrid working environment 25 days of More ❯
west london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
the ability to engage both technical and non-technical stakeholders. Expertise in engineering standards including test-driven development, contract testing, and securecoding practices. An understanding of architectural patterns such as event-driven architecture and platform migration. The Package: Flexible and hybrid working environment 25 days of More ❯