5 of 5 Static Application Security Testing Jobs in the North West

Security Consultant – DevSecOps / Application Security

Hiring Organisation
Vallum Associates
Location
Manchester Area, United Kingdom
Linux and Windows Operating Systems Key Responsibilities Integrate security controls and best practices into SDLC and CI/CD pipelines. Support and manage SAST, SCA, IaC, and dependency scanning activities. Identify vulnerabilities and provide remediation guidance to development teams. Promote secure-by-design principles and DevSecOps culture across engineering … automation. Required Skills & Experience Strong understanding of DevSecOps implementation and Secure SDLC practices. Experience with Static Application Security Testing (SAST) and Software Composition Analysis (SCA) tools. Knowledge of Infrastructure-as-Code (IaC) security and dependency scanning. Hands-on experience with vulnerability management and remediation support. ...

App Sec Engineer (Application Security)

Hiring Organisation
REVYBE IT RECRUITMENT LIMITED
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£75,000
Application Security Engineer Manchester - Hybrid, 3 days a week in the office. Commutable from Stockport, Wigan, Bolton, Rochdale, Bury, Sale, Liverpool, Warrington, and Runcorn. Up to £75,000 + benefits We're partnered exclusively with a Fintech business in Manchester who've been building their own SaaS platform … right in here. Key skills needed: Strong background in application security, ideally in a SaaS or Fintech environment Experience with SAST, DAST, and SCA tooling - Snyk, Checkmarx, Semgrep, Burp Suite, or similar Threat modelling - comfortable running sessions with engineering and product teams Solid understanding of OWASP ...

Cyber Security Manager - Vulnerability Management

Hiring Organisation
Statera Talent
Location
Manchester, Lancashire, England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £120,000 per annum
Statera Talent is working on a senior Cyber Security leadership role with a well respect global financial organisation. This is a high-visibility position focused on leading a global vulnerability risk programme across a complex technology environment. It would suit someone who can combine technical security knowledge with … following: Vulnerability management across infrastructure, cloud and applications Risk-based prioritisation beyond basic severity scoring Security testing outputs such as SAST, DAST, SCA, infrastructure scanning, CSPM or penetration testing Working with engineering, infrastructure, application and security teams to drive remediation Executive-level reporting, dashboards, metrics ...

Cloud Security and Platform Engineer

Hiring Organisation
RealityMine
Location
Trafford Park, Greater Manchester, UK
informed decisions powered by data from real people, collected in a privacy safe way. As we continue to expand, we’re seeking a Cloud Security and Platform Engineer who will play a key role in our engineering team, working on our underlying infrastructure that supports our applications and business. … policies · Knowledge of coding standards · Experience using AI tools to enhance productivity and quality · Experience working with security tooling such as SIEMs, SAST analysers, vulnerability scanners · Ability to enable teams through a pragmatic approach to security · Development experience with Python, Terraform and CloudFormation · Experience with AI Tooling ...

DevSecOps Engineer

Hiring Organisation
REVYBE IT RECRUITMENT LIMITED
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£80,000
platform for 10 years. As the business has scaled, so has the complexity of their engineering environment - and they've reached the point where security needs to be built into every stage of delivery, not bolted on at the end. They're hiring a DevSecOps Engineer … cloud-native environment Strong CI/CD experience - GitHub Actions, GitLab CI, Jenkins, or similar - and the ability to integrate security gates properly SAST, DAST, and SCA tooling - Snyk, Checkov, Trivy, Semgrep, or similar Infrastructure as Code - Terraform, CloudFormation - and identifying misconfigs before they hit production Container and Kubernetes ...