Permanent Application Security Jobs in London

1 to 25 of 41 Permanent Application Security Jobs in London

Security Engineer, Incident Response , Security Incident Response Team (SIRT)

London, United Kingdom
Amazon
Security Engineer, Incident Response , Security Incident Response Team (SIRT) Job ID: Amazon Development Centre Ireland Limited Amazon is seeking a qualified Security Engineer to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats such as malware and intrusion attempts, and provide security services to safeguard highly sensitive data. They work hands-on with detection systems and vulnerability analysis tools to respond to potential threats to Amazon systems. SIRT Security Engineers are unique individuals prepared to relentlessly resolve security issues by gathering and analyzing event … data and conducting root-cause analysis. With your technical expertise, you will be solving security challenges at scale, working to protect the applications powering the most sophisticated e-commerce platform ever built. We value broad and deep technical knowledge, specifically in the fields of forensics, malware analysis, network security, application security, threat hunting, and threat intelligence. More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Engineer II, AWS Global Services Security

London, United Kingdom
Amazon
Security Engineer II, AWS Global Services Security Job ID: Amazon Web Services EMEA SARL (Irish Branch) - G50 Global Services Security is looking for an Security Engineer to help validate that our customer-facing staff and hired consulting partners deliver services to the highest security standards. You will help validate that our services, applications, and websites … are designed and implemented to the highest security standards. You will build and automate security mechanisms that help us monitor and inspect the activities and deliverables created when we work hand-in-hand with our customers. You will be responsible for analyzing the security of applications and services, discovering and addressing security issues, building security … automation, and quickly reacting to new threat scenarios. You will have the opportunity to learn from, and be mentored by, those who are building and securing our services. A Security Engineer at AWS is expected to be strong in multiple domains and provide significant contributions to the teams within AWS Global Services, Security and to multiple groups throughout More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Application Security Engineer

London, South East, England, United Kingdom
Holland & Barrett International Limited
heart of our digital transformation. As we continue to grow and innovate, securing our applications and protecting customer data is a top priority. We are looking for a Senior Application Security Engineer to lead our efforts in strengthening application security, mitigating risks, and ensuring best-in-class security practices. If you are passionate about cybersecurity … and eager to make a real impact, we want you on our team! Key Responsibilities: Security Strategy: Help define and execute the Holland & Barrett application security strategy. Collaborate with both tech and non-tech teams to integrate security principles into the early stages of product design and development. Secure SLDC: Establish a secure Software Development Lifecycle … software integrity, authenticity, and third-party library management. Risk Assessments: Conduct risk assessments, threat modeling, and architecture reviews alongside development teams, producing artifacts to drive the implementation of effective security controls. Standards Development: Own the creation and maintenance of tailored security standards and guidelines, developing reusable resources for various development teams. Team Support: Provide guidance and support to More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Security Engineer

London, United Kingdom
Hybrid / WFH Options
Intigriti
Your mission As a Security Engineer, you play a crucial role in developing and implementing comprehensive security strategies, policies, and procedures to safeguard Intigriti's information assets across corporate IT and the Intigriti platform. You are a passionate individual who enjoys building defences against today's cyber threats, targeting infrastructure, data, and employees. You should be able to … analyse the current threat environment and Intigriti's security posture, then design and implement controls in line with our risk appetite. This position requires strategic thinking, technical expertise, and a deep understanding of cybersecurity principles. You will be expected to deploy, manage and maintain preventive and detective controls leveraging security tools including EDR, SIEM, phishing simulation, compliance solutions … among others. You will collaborate with colleagues in security and across the organisation, including Engineering and Legal teams. If tackling complex security challenges using tools that make sense excites you, this position is for you! What you'll be doing Infrastructure Security Oversee the design, implementation, and maintenance of security across Intigriti infrastructure, ensuring the confidentiality More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior IT Security Engineer

London, South East, England, United Kingdom
Hays Specialist Recruitment Limited
Your new company - Financial Services Your new role - Permanent - ON SITE 5 Days per week. - UK OnlyWe are looking for a highly skilled Information technology Security Engineer to join the IT team. As the first line of defence in the IT department, the principal purpose of this job mainly focusses on information security, cybersecurity and data security, including a wide scope, such as physical security of computer rooms, operating system level security of Windows and Linux, network security of firewall and other security devices, application security both development and testing phrase, terminal security, backup security, third party and supply chain security of IT service provider.Liaison with the … Head Office, Security Operation Centre of Data Centre for implementing security policies, projects and security controls. Work with Internal Audit and other departments to execute penetration tests, cybersecurity risk self-assessment, ensure best practice and international baseline standards are in place and in line with local regulations.The ideal candidate will be responsible for managing information security More ❯
Employment Type: Full-Time
Salary: £90,000 - £95,000 per annum
Posted:

Senior IT & Information Security Engineer

London, South East, England, United Kingdom
Hays Specialist Recruitment Limited
Your new role - Permanent - ON SITE 5 Days per week. - UK Only The principal purpose of this job focusses on information security, cybersecurity and data security, including a wide scope, such as physical security of computer rooms, operating system level security of Windows and Linux, network security of firewall and other security devices, application security both development and testing phrase, terminal security, backup security, third party and supply chain security of IT service provider.Liaison with the Head Office, Security Operation Centre of Data Centre for implementing security policies, projects and security controls. Work with Internal Audit and other departments to execute penetration tests, cybersecurity risk self … assessment, ensure best practice and international baseline standards are in place and in line with local regulations.The ideal candidate will be responsible for managing information security systems, ensuring compliance with regulatory requirements, and conducting thorough security audits.You will be part of the IT committee and work closely with the risk and compliance team.Ideally, having a background in IT More ❯
Employment Type: Full-Time
Salary: £90,000 - £95,000 per annum
Posted:

DevSecOps Engineer

Central London, London, United Kingdom
Hybrid / WFH Options
Halian Technology Limited
A leading Fintech/Payments company is looking for a proactive and technically skilled Application Security Engineer/DevSecOps to champion secure development practices across our software delivery lifecycle. In this role, youll play a key part in identifying and reducing application-layer risks, integrating security into the development pipeline, and ensuring that security considerations … are embedded throughout the SDLC. Working closely with engineering and platform teams, youll help automate security processes, lead threat modelling exercises, and continually improve the organisations application security posture. Key Responsibilities Secure Development Lifecycle (SDLC) Experience working with static and dynamic code analysis tools (SAST, DAST) is essentialwhile you dont need to have set them up, you … should have collaborated with developers to ensure code is scanned and critical vulnerabilities are blocked in the pipeline. Integrate security controls into CI/CD pipelines and development workflows. Manage and monitor SAST, DAST, and SCA tools to detect vulnerabilities early in the lifecycle. Conduct secure code reviews and support remediation efforts. Threat Modelling & Architecture Review Requirements (Primarily Essential More ❯
Employment Type: Permanent, Work From Home
Salary: £90,000
Posted:

Lead Application Security Engineer

London, United Kingdom
Point72 Asset Management, L.P
source solutions, and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity. Our Global Information Security team's mission is to ensure the development, implementation, and management of a comprehensive program that effectively protects the confidentiality, integrity, and availability of Point72 information assets. Our team … is comprised of security professionals with expertise in a diverse portfolio of security disciplines. What you'll do Collaborate with the DevOps team to design, implement, and manage a robust DevSecOps framework for our software development pipeline, integrating security tools and processes into our CI/CD workflows to enhance the developer experience Champion a security-first mindset within the development team, promoting secure coding practices and providing guidance on secure development methodologies Create security focused DevSecOps policies and standards and provide training and awareness to the development team Develop Key Risk Indicators (KRIs) to track security posture across business lines, measure progress and identify outliers Implement and manage security testing tools More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Security Engineer

London, United Kingdom
Betway Group
what makes you unique! Our global customer base is exploding and we need your skills to support us on this exciting journey! Don't look back and submit your application before the opportunity passes you by Job title: Senior Security Engineer Department: Information Security Reporting to: Information Security Manager Who we are We're part of … on a mission to create extraordinary experiences for our customers, and we believe that your unique skills, passion and superdrive will help us achieve our vision. As a Senior Security Engineer you'll be supporting the delivery of information security operations, covering but not limited to company policies, data loss prevention, access protection, incident response and investigation, vulnerability … and compliant systems as well as the confidentiality, integrity and availability of information across the business to stay ahead of the game. What you'll be doing Our Information Security team is on a mission: protect and serve. We use the latest technologies to detect and remove any threats to our data, while serving the best interests of the More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Associate Cybersecurity Analyst - SOC

London, United Kingdom
Visa Inc
and Engineering. Perform proactive threat hunting to identify and mitigate potential threats before they can cause harm. Develop and refine detection rules to improve the identification and response to security incidents. Provide detailed reports and documentation of incidents and response actions. Develop and maintain incident response playbooks and runbooks to ensure standardized and efficient response processes. Contribute to identifying … process improvement opportunities to enhance security incident response processes. Support and manage cybersecurity projects to enhance overall security posture. This is a hybrid position. Expectation of days in office will be confirmed by your Hiring Manager. Experience working in an enterprise-level incident response team or security operations center. Professional experience in cybersecurity or computer network defense … roles. Relevant security-related certifications a plus: CISSP, GCIH, GCIA, GCED, GCFA, CySA+. Demonstrated expertise in areas like incident response, intrusion and malware analysis, web application security, or security engineering. Extensive understanding of malware types and network attack methods. Strong grasp of TCP/IP, packet analysis, routing, and network security. Extensive expertise in operating systems More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Sr Manager, Software Development, AWS GenAI Security

London, United Kingdom
Amazon
Sr Manager, Software Development, AWS GenAI Security Cloud security is our highest priority at AWS. As an AWS customer, you benefit from an environment built to meet the requirements of the most security-sensitive organizations. As an AWS Security team member, you will help secure that environment for our customers while working on next generation security products for a variety of platforms and technologies, all operating at massive scale. We are looking for an experienced Software Development leader to join the AWS Gen AI Security team. As a Software leader, you will own building and managing a team of security and software engineers and leaders, fostering a strong team culture. You and your … should know how to prioritize, communicate clearly and compellingly, and understand how to drive a high level of focus and excellence with a strong team. AWS in general, and AppSec in particular, operates at very large scale and demands high standards, so a passion and discipline around security and delivery is critical. A high level of ownership and accountability More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

AppSec Lead

Central London, London, United Kingdom
Hybrid / WFH Options
Halian Technology Limited
A leading fintech company is seeking a Lead AppSec Engineer to join their established team. Youll be instrumental in embedding security into every stage of the software development lifecycleguiding engineers, shaping best practices, and driving secure, scalable solutions across our platform. Key Responsibilities: Security Advisory : Serve as the go-to expert for application security across engineering … teamsproviding hands-on guidance, resolving concerns, and fostering a security-first mindset. DevSecOps Enablement : Promote and implement secure development practices across CI/CD pipelines, secrets and key management, dependency management, and secure design. Vulnerability Management : Lead vulnerability remediation effortstriaging findings, prioritizing risks, and partnering with teams to deliver effective, pragmatic fixes. Tooling & Automation : Integrate security tools (e.g. … SAST, DAST, SCA, secrets scanning) into developer workflows, ensuring automation is both scalable and developer-friendly. Cloud Security Collaboration : Work alongside infrastructure teams to ensure secure configuration of AWS and Azure environments, with a focus on IAM, network security, encryption, and observability. Architecture & Design Reviews : Provide input and recommendations to ensure new services and features are secure by More ❯
Employment Type: Permanent, Work From Home
Posted:

Head of Security Architecture

London, United Kingdom
Hybrid / WFH Options
Manchester Digital
grade is £71,370 for London and £67,126 for other locations. Published on 12 September 2025 Deadline 28 September 2025 Role GDS is looking to recruit aHead of Security Architecture. This will involve engaging internally in GDS and across government on critical areas of work. The Head of Security Architecture will be an experienced Security professional … with extensive technical, strategic and management experience. The individual should have the appropriate level of experience and gravitas to brief the CISO and interact at C-level. AsHead of Security Architecturein the GDS Information Security team, you'll be responsible for: delivering a security architecture advice service to GDS service teams, covering concepts such as securing service … architecture and the software development lifecycle, infrastructure as code, policy as code approaches, steps toward zero trust, etc.and others security concepts implementing the GDS Secure by Design principles in operational services leading the security component of cross-business initiatives on Privileged Access Management, including effective Identity solutions and use of Privileged Access Workstations developing common, workable patterns for More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Engineer

Kent, Biggin Hill, Greater London, United Kingdom
VIQU IT
Security Engineer Kent, Hybrid Competitive Salary VIQU have partnered with a leading automotive organisation in Kent to search for an experineced Security Engineer . This role is all about protecting and improving cloud and infrastructure environments, driving security automation, and helping shape DevSecOps practices. You’ll work across AWS and modern platforms, supporting both day-to-day … security operations and longer-term strategic projects. Key Responsibilities: Maintain strong security posture across cloud infrastructure Manage vulnerabilities and support regular system maintenance Design, implement, and manage security tooling in cloud environments ( AWS focus ) Support threat detection, incident response, and risk mitigation activities Contribute to compliance initiatives (ISO 27001, CIS benchmarks ) Collaborate with infrastructure and platform teams … to embed security controls Apply secure DevOps practices (code scanning, container security, IaC) Support governance, reporting, and vulnerability management processes Participate in security reviews, threat assessments, and architecture decisions Key Requirements: 3+ years’ hands-on experience with AWS security services (CloudTrail, GuardDuty, WAF, IAM, Security Hub) Strong knowledge of cloud governance and security best More ❯
Employment Type: Permanent
Posted:

Head of Security Architecture - GDS - G6

London, United Kingdom
Manchester Digital
Head of Security Architecture - GDS - G6 £71,370 - £103,924 (London)/£67,126 - £91,453 (National) - Based on capability. Published on 12 September 2025. Deadline 28 September 2025. Location Bristol, London, Manchester Job summary The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern … of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol. The Information Security team at GDS protects the people, services and information used to deliver critical government digital infrastructure such as GOV.UK and One Login. We do this by supporting a secure … software development lifecycle, setting and checking proportional organisation policies and building a positive, no-blame security culture across the organisation. The Government Digital Service is where talent translates into impact. From your first day, you'll be working with some of the world's most highly-skilled digital professionals, all contributing their knowledge to make change on a national More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Solution Architect

London, United Kingdom
Hybrid / WFH Options
La Fosse
Role: Security Solutions Architect Job Type- Permanent (Remote/Hybrid) Industry- Real-estate/Property Management Location- London/Stockholm Salary- up to £100K About: We are seeking a hands-on Security Solutions Architect to join our global architecture function. This is a key role responsible for shaping, designing, and supporting the build and deployment of security … technology estate, with a strong emphasis on Azure. The successful candidate will work within a global organisation operating across 30+ Operating Companies (OpCos), helping to translate a recently defined security strategy into actionable technology choices, solution designs, and deliverable work packages. Key Responsibilities Design and support the deployment of scalable, secure infrastructure and application security solutions. Translate … high-level security strategy into actionable technical designs and implementation roadmaps. Define and select appropriate security technologies and tooling in line with business needs and technical constraints. Work closely with the InfoSec function to align solution designs with group-wide security policies and standards. Partner with infrastructure and application teams across multiple OpCos to ensure consistent More ❯
Employment Type: Permanent, Work From Home
Posted:

Chief Information Security Officer

London, United Kingdom
Fuse Energy, LLC
for electrifying their homes, shifting usage to off-peak hours, and supporting grid stability-critical for scaling AI and energy-intensive industries. We're looking for a Chief Information Security Officer (CISO) to lead our company-wide security strategy. You'll protect our infrastructure, digital assets, and customer data while enabling fast, secure growth. Key Responsibilities Security Strategy & Leadership Define and lead Fuse's security strategy across infrastructure, applications, and data. Lead hands-on development of security roadmaps, maturity models, and control frameworks tailored to Fuse's risk profile. Directly contribute to architecture reviews, threat modelling sessions, and key design decisions across product and platform teams. Build and mentor a high-performing security team, including hiring, coaching, and managing performance. Develop KPIs and reporting structures to measure and communicate security posture to leadership and the board. Advise the executive team on security risks, regulatory exposure, and investment priorities to support long-term growth. Governance & Compliance Own company-wide security governance, including data protection, access control, and insider risk. Ensure More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cloud Security Engineer

London, South East, England, United Kingdom
Holland & Barrett International Limited
About the role: Join Our Team at Holland & Barrett! Are you passionate about cloud security and looking to make a significant impact? Holland & Barrett is seeking a Cloud Security Specialist to help us define and implement our cloud security strategy. If you're an experienced professional eager to work with cutting-edge technology and collaborate with diverse … teams, we want to hear from you! Key Responsibilities: Security Strategy: Help define and execute the Holland & Barrett cloud security strategy, partnering with platform and Site Reliability Engineering (SRE) teams to build robust infrastructure that supports our business. Perimeter Security: Establish platform perimeter security by implementing controls at ingress and egress points, including creating and maintaining … an edge network with a Web Application Firewall (WAF), Distributed Denial of Service (DDoS) protection, and a Content Delivery Network (CDN). Access Control: Establish an access control baseline focusing on the principle of least privilege and segregation of duties. Monitor and enforce these controls once roles and permissions are set. Security Controls: Design, implement, and maintain security More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Enterprise Architect

City of London, London, United Kingdom
Deloitte
firm that suit your experience should you wish to continue with Deloitte. About the role: We are seeking an experienced Enterprise Architect to lead the strategic design of our application portfolio strategy. This role requires a deep understanding of application architecture principles, software development methodologies, cloud computing, cybersecurity, and enterprise architecture best practices. The successful candidate will be … a visionary leader , driving innovation and ensuring our application landscape is optimised for agility, scalability, security, and business value, while aligning with the overall enterprise architecture strategy. Big 4 consulting experience will be valuable in understanding how Deloitte operates. Responsibilities Develop a long-term vision and comprehensive roadmap for the firm's application portfolio, aligning it with … the overall business strategy and digital transformation initiatives. Contribute to the development and implementation of the firm's overall digital transformation strategy , leveraging application modernisation and innovation to enhance business operations and achieve strategic goals. Act as a trusted advisor to senior management and business leaders. Influence and shape technology decisions related to application development and deployment across More ❯
Posted:

Enterprise Architect

London Area, United Kingdom
Deloitte
firm that suit your experience should you wish to continue with Deloitte. About the role: We are seeking an experienced Enterprise Architect to lead the strategic design of our application portfolio strategy. This role requires a deep understanding of application architecture principles, software development methodologies, cloud computing, cybersecurity, and enterprise architecture best practices. The successful candidate will be … a visionary leader , driving innovation and ensuring our application landscape is optimised for agility, scalability, security, and business value, while aligning with the overall enterprise architecture strategy. Big 4 consulting experience will be valuable in understanding how Deloitte operates. Responsibilities Develop a long-term vision and comprehensive roadmap for the firm's application portfolio, aligning it with … the overall business strategy and digital transformation initiatives. Contribute to the development and implementation of the firm's overall digital transformation strategy , leveraging application modernisation and innovation to enhance business operations and achieve strategic goals. Act as a trusted advisor to senior management and business leaders. Influence and shape technology decisions related to application development and deployment across More ❯
Posted:

Enterprise Architect

london, south east england, united kingdom
Deloitte
firm that suit your experience should you wish to continue with Deloitte. About the role: We are seeking an experienced Enterprise Architect to lead the strategic design of our application portfolio strategy. This role requires a deep understanding of application architecture principles, software development methodologies, cloud computing, cybersecurity, and enterprise architecture best practices. The successful candidate will be … a visionary leader , driving innovation and ensuring our application landscape is optimised for agility, scalability, security, and business value, while aligning with the overall enterprise architecture strategy. Big 4 consulting experience will be valuable in understanding how Deloitte operates. Responsibilities Develop a long-term vision and comprehensive roadmap for the firm's application portfolio, aligning it with … the overall business strategy and digital transformation initiatives. Contribute to the development and implementation of the firm's overall digital transformation strategy , leveraging application modernisation and innovation to enhance business operations and achieve strategic goals. Act as a trusted advisor to senior management and business leaders. Influence and shape technology decisions related to application development and deployment across More ❯
Posted:

Enterprise Architect

london (city of london), south east england, united kingdom
Deloitte
firm that suit your experience should you wish to continue with Deloitte. About the role: We are seeking an experienced Enterprise Architect to lead the strategic design of our application portfolio strategy. This role requires a deep understanding of application architecture principles, software development methodologies, cloud computing, cybersecurity, and enterprise architecture best practices. The successful candidate will be … a visionary leader , driving innovation and ensuring our application landscape is optimised for agility, scalability, security, and business value, while aligning with the overall enterprise architecture strategy. Big 4 consulting experience will be valuable in understanding how Deloitte operates. Responsibilities Develop a long-term vision and comprehensive roadmap for the firm's application portfolio, aligning it with … the overall business strategy and digital transformation initiatives. Contribute to the development and implementation of the firm's overall digital transformation strategy , leveraging application modernisation and innovation to enhance business operations and achieve strategic goals. Act as a trusted advisor to senior management and business leaders. Influence and shape technology decisions related to application development and deployment across More ❯
Posted:

DevOps Engineer (SC Cleared)

City of London, London, United Kingdom
RP International
a month to the office. Key Skills and Responsibilities: Design, deliver, and support secure and scalable AWS infrastructure using services like EC2, S3, ECS, and FARGATE Integrate SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools into CI/CD pipelines to enforce secure development practices Automate infrastructure provisioning using CloudFormation, Terraform, or More ❯
Posted:

DevOps Engineer (SC Cleared)

London Area, United Kingdom
RP International
a month to the office. Key Skills and Responsibilities: Design, deliver, and support secure and scalable AWS infrastructure using services like EC2, S3, ECS, and FARGATE Integrate SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools into CI/CD pipelines to enforce secure development practices Automate infrastructure provisioning using CloudFormation, Terraform, or More ❯
Posted:

Cybersecurity Engineer - Hybrid Remote

North London, London, United Kingdom
Hybrid / WFH Options
VERTECH GROUP (UK) LTD
/2 days in London Salary: Circa 65K 75K + Benefits Cybersecurity Engineer required by fast-growing, revolutionary tech company! This is a challenging, hands-on role leading the security of their applications, APIs, infrastructure, and data. Youll identify vulnerabilities, define best practices, and implement controls without slowing delivery Essential: At least 3yrs in cybersecurity, application security, or cloud security roles Strong knowledge of web/mobile security (OWASP Top 10, API security), cloud security (AWS), and CI/CD pipeline hardening Familiar with SAST/DAST tools, vulnerability scanners, penetration testing frameworks, and monitoring platforms (e.g. Splunk, ELK, Datadog) Understanding of GDPR and data privacy best practices Tremendous opportunity offering plenty More ❯
Employment Type: Permanent, Work From Home
Salary: £75,000
Posted:
Application Security
London
10th Percentile
£55,875
25th Percentile
£70,000
Median
£86,250
75th Percentile
£110,500
90th Percentile
£130,000