Security Consultant
Security Consultant
Our client, a leading global supplier for IT services, requires Security Consultant to be based at their client's office in Manchester, UK.
This is a hybrid role - you can work remotely in the UK and attend the Manchester office 3 days per week
This is a 6+ month temporary contract to start ASAP
Day rate: Competitive Market rate
Our client is looking for a skilled Security Consultant with strong experience in DevSecOps and application security practices. CISSP certification is highly desirable, and additional security certifications would be beneficial. The ideal candidate should have hands-on experience in at least one or more of the following areas: computer networking, application security, cryptography, penetration testing, databases, and operating systems such as Linux and Windows.
Key Responsibilities
- Integrate security practices into the Software Development Life Cycle (SDLC) and CI/CD pipelines.
- Support SAST, SCA, Infrastructure-as-Code (IaC), and dependency scanning across applications and infrastructure.
- Provide guidance to developers and support remediation activities for identified vulnerabilities.
- Promote secure-by-design principles and DevSecOps best practices across engineering teams.
- Collaborate closely with engineering and security teams to strengthen application security posture.
- Support vulnerability management and security compliance initiatives.
- Contribute to improving secure development standards and processes.
Key Requirements
- Strong experience in DevSecOps implementation and secure SDLC practices.
- Hands-on experience with Static Application Security Testing (SAST) and Software Composition Analysis (SCA).
- Experience in Infrastructure-as-Code (IaC) security and dependency scanning tools.
- Good understanding of vulnerability management and remediation processes.
- Knowledge of secure-by-design principles and application security best practices.
- Familiarity with CI/CD security integration and automation.
- Experience with Linux and Windows operating systems.
- Understanding of networking concepts and application security fundamentals.
- Penetration testing experience is desirable.
- Knowledge of cryptography concepts would be an advantage.
Due to the volume of applications received, unfortunately we cannot respond to everyone.
If you do not hear back from us within 7 days of sending your application, please assume that you have not been successful on this occasion.