Application & AI Security Engineer - 6 months | Covnetry, UK (3 days/week in office)

Application & AI Security Engineer - 6 months | Covnetry, UK (3 days/week in office)

We're recruiting for an Application & AI Security Engineer to support the security, governance, and resilience of enterprise applications, cloud-native services, APIs, and AI platforms for a leading organisation. The role contributes to application security assessments, DevSecOps initiatives, cloud security governance, and AI risk management activities across Azure, AWS, and other enterprise platforms, working closely with development, cloud, infrastructure, and cybersecurity teams to ensure applications and AI solutions are designed, deployed, and operated in accordance with security best practices and organisational governance requirements.

Key Responsibilities

  • Support administration, configuration, and optimisation of Azure WAF and AWS WAF policies and controls
  • Conduct application security assessments and reviews covering web applications, APIs, and cloud-native services
  • Support secure design and governance of Azure Logic Apps, Function Apps, and related cloud services
  • Assess and strengthen API security controls, authentication mechanisms, and access management practices
  • Support implementation and management of enterprise secrets and key management platforms, including Azure Key Vault and AWS KMS
  • Embed security controls and best practices within CI/CD pipelines and DevSecOps processes
  • Participate in application threat modelling, architecture reviews, and security risk assessments
  • Support implementation of AI security governance, risk management, and compliance controls
  • Conduct security assessments of AI platforms, including Azure OpenAI, Microsoft Copilot, and other AI-enabled solutions
  • Support data protection, AI abuse monitoring, prompt injection mitigation, and secure AI adoption initiatives

What You Will Ideally Bring

  • Strong understanding of web application security principles, including OWASP Top 10 vulnerabilities and mitigation techniques
  • Hands-on experience with Web Application Firewall (WAF) technologies, preferably Azure WAF and/or AWS WAF
  • Experience securing APIs using authentication, authorisation, encryption, and monitoring controls
  • Knowledge of cloud-native security services within Azure and AWS environments
  • Experience with secrets management and cryptographic key management platforms such as Azure Key Vault, AWS KMS, or Thales CipherTrust
  • Understanding of secure software development life cycle (SSDLC), CI/CD security, and DevSecOps practices
  • Experience performing application security reviews, threat modelling, and risk assessments
  • Knowledge of AI/LLM security risks, governance frameworks, and data protection requirements

Contract Details:

  • Duration: 6 months (with potential extension)
  • Day Rate: £400 per day
  • Location: Coventry- 3 days per week
  • Start Date: ASAP

Job Details

Company
Hamilton Barnes
Location
West Midlands, United Kingdom
Employment Type
Contract
Salary
GBP 400 Daily
Posted