Main Responsibilities: Define and enforce secure architecture standards across web, mobile, and cloud-native applications. Provide security guidance during product development, including threat modeling, securecoding, design reviews, and architecture assessments. Lead DevSecOps practices, integrating security into CI/CD pipelines. Identify and remediate application vulnerabilities through static/dynamic analysis, manual review, and testing. … Collaborate to secure APIs, microservices, and containerized workloads. Evaluate and implement … security tools for code analysis and runtime protection. Requirements: Proven experience in application security architecture. Deep knowledge of OWASP Top 10, SANS CWE Top 25, and securecoding best practices. Familiarity with threat modeling methods like STRIDE and architectural risk analysis. Hands-on experience with SAST/DAST/IAST tools such as Snyk, SonarQube, Burp Suite More ❯
Stoke-on-Trent, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
is an exciting opportunity for developers who enjoy tackling challenges and taking on meaningful responsibility. You will be working on full-stack development, focusing on building scalable and secure web applications, and participating in the entire software lifecycle—from gathering requirements to deploying solutions. If you are an experienced developer who enjoys working autonomously and is comfortable working … development, particularly in building scalable and secure web applications. Proven ability to work independently, solve complex problems, and take initiative. A strong grasp of securecoding practices and attention to software performance and reliability. Comfortable with writing clean, testable code and collaborating with QA to ensure high-quality delivery. Excellent communication skills, with experience gathering More ❯
determine requirements, understanding their work practices and the nature of their businesses using CRM systems. Analysing IT requirements and giving independent and objective advice on the use of IT. Coding individual programs according to specifications. System/Software Development with Java/Spring framework. Examines existing software and determines requirements for new/modified systems in the light of … and correction of software programs. Knowledge of multi-threaded development is preferred. Knowledge of information systems development or design. Building applications using Spring framework. Understanding of securecoding practices and testing. Strong programming skills in C++, JAVA, ASP.NET, C, C++, Embedded Systems, Spring Hibernate, Spring MVC, Eclipse IDE, Unix, Linux, SQL. Knowledge of Microsoft SQL server and More ❯
the team's efforts to protect our organisation's data and IT infrastructure. This role focusses on the operational aspects of data protection - from technical risk assessments and secure system configuration reviews to incident response, vulnerability remediation tracking, and regulatory compliance audits. You will work closely with engineering, DevOps, and IT teams to embed privacy and information security … and vulnerability management Provide advice and guidance to teams on how to mitigate vulnerabilities, and following up on remediation progress Collaborate with development teams to integrate securecoding and privacy-by-design principles Incident response & recovery: Lead incident response efforts on a duty basis Provide guidance on threat mitigation, containment, and recovery processes Legal and regulatory conformance More ❯
security audit of a web application. Identify potential vulnerabilities in logic, data handling, authentication, and access control. Assess the application against OWASP Top 10 and other securecoding standards. Review third-party dependencies for known issues. Produce a professional security report with risk ratings, findings, and recommendations. Required Skills & Experience 4+ years in Application Security , AppSec consulting … or SecureCode Review roles. Familiarity with tools like Snyk , Checkmarx , Veracode , or Burp Suite (passive scanning) . Knowledge of OWASP , CWE , and general secure software development principles. Strong technical writing and communication skills. Preferred certifications: OSCP , CSSLP , GWAPT , CEH , or equivalent. Executive summary for non-technical stakeholders. Technical breakdown of findings with severity and impact. More ❯
Stafford, England, United Kingdom Hybrid / WFH Options
GE Vernova
powered advice on this job and more exclusive features. Job Description Summary We are seeking a seasoned Cyber Security Consulting Engineer to lead the development and integration of secure architectures for critical Transmission & Distribution (T&D) systems. Job Description Summary We are seeking a seasoned Cyber Security Consulting Engineer to lead the development and integration of secure … Job Description Key Responsibilities: Act as the cybersecurity design authority for T&D products, defining end-to-end architectures across hardware, firmware, and cloud-connected systems, advising on secure protocols, cryptography, authentication, and network hardening. Translate and implement global regulatory standards (IEC … IEC 61850, IEC 62351, NERC CIP) into product requirements, and lead technical strategy planning, architecture reviews, and security certification efforts. Guide engineering teams through threat modeling, securecoding, SDLC best practices, and CIE adoption to mitigate cyber-physical risks affecting safety, reliability, or operations. Define and support embedded and software-based security features using C/C++ More ❯
implement software; troubleshoot production issues. Research, test, build, and coordinate integration of new products based on government requirements. Analyze information to recommend and plan new applications or modifications. Apply coding and testing standards, conduct security testing, and perform code reviews. Design and modify software systems using scientific analysis and mathematical models. Document software patches and release scopes to ensure … security. Conduct trial runs to verify information accuracy and security levels. Develop securecode, error handling, testing, validation, and documentation. Perform feasibility analyses for future projects. Resolve software issues and suggest improvements. Lead and review work of other developers. Assist in developing user manuals. Translate security requirements into design, conduct threat modeling, and address security in software acceptance. More ❯