Permanent Application Security Jobs in the South East

23 of 23 Permanent Application Security Jobs in the South East

Senior Application Security Engineer

South East London, England, United Kingdom
RiverSafe
The Role Embed security best practices within the SDLC, collaborating with developers to ensure secure coding. Conduct security assessments, identify potential threats, and mitigate risks in web and mobile applications. Perform application security testing (SAST, DAST) and manual security code reviews. Implement and manage security tools such as SAST, DAST, SCA, and CI/… CD security integrations. Investigate security incidents, prioritise remediation and guide teams on secure development practices. Ensure applications meet industry standards (OWASP Top 10, NIST, ISO 27001) and regulatory requirements (GDPR, PCI-DSS, etc.) Educate engineers and stakeholders on security threats, vulnerabilities and secure coding practices. Skills 5+ years of experience in application security, penetration testing … or software security engineering. Strong knowledge of secure coding principles in one or more languages (e.g., Python, Java, JavaScript, Go, .NET). Hands-on experience with SAST, DAST, SCA and security automation in CI/CD pipelines. Familiarity with cloud security (AWS, Azure, GCP) and container security (Docker, Kubernetes). Knowledge of OWASP Top 10, CWE More ❯
Posted:

IT Cyber Security Engineer

Crawley, Sussex, United Kingdom
UK Power Networks
Press Tab to Move to Skip to Content Link This IT Cyber Security Engineer will report to the Cyber Security Engineering Lead and will work within the Information Systems directorate based in our Crawley office. You will be a permanent employee. You will attract a salary of up to £70,000.00 - depending on skills, qualifications and experience and … Tech, and Green Car Leasing Schemes Occupational Health support Switched On - scheme providing discount on hundreds of retailers' products Discounted gym membership Employee Assistance Programme Job purpose: The Cyber Security IT Engineer will evaluate all security solution technologies and toolsets and help develop the security systems within the organisation and will ensure that UK Power Networks data … network, and systems are protected from cyber threats and will comply with the relevant standards and regulations. You will also provide technical support to other security team professionals and partners. Dimensions: UK Power Networks is expanding its presence in Microsoft Azure and is enhancing its on-prem OT Mission Critical Systems. It is important that a secure environment is More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

DevSecOps Engineer - ONSITE

Loughton, Essex, South East, United Kingdom
Hybrid / WFH Options
Profile 29
month contract in a Work from Office (WFO) role. This role will focus on creating a business strategy, gap analysis and implementation, for securing their Azure-based infrastructure, integrating security automation, ensuring PCI DSS compliance, vulnerability and penetration testing and incident response. This role will focus on developing and maintaining secure, scalable Azure DevOps pipelines and Infrastructure as Code … IaC) using Terraform. Their ideal candidate will have a strong background in cloud security best practices, automation, and a proactive approach to integrating security across their software delivery lifecycle. A key part of this position will also involve mentoring an internal engineer, developing structured security policies, and managing Sentinel, Defender and SOAR solutions for automated threat response. … Additionally, the role requires liaising with third-party support partners to coordinate security solutions, manage incidents, and enhance overall cybersecurity posture. Responsibilities Infrastructure Security: Architect and secure Azure-based infrastructure using Terraform, ensuring adherence to security best practices by developing, maintaining, and optimizing Terraform code. DevOps Pipeline Development and Maintenance: Design, develop, and optimize Azure DevOps pipelines More ❯
Employment Type: Permanent, Work From Home
Posted:

Senior Software Security Architect

Reading, Berkshire, South East, United Kingdom
Hybrid / WFH Options
Bowerford Associates
We are searching for a Senior Software Security Architect/Senior Application Security Architect for a marketing leading and award-winning technology and data driven business. The position is offered on a remote basis. The role is hands-on and very software engineering focused - you will be responsible for establishing a secure SDLC and 'Secure by Design … approach/practice to be used by all of the Architecture and Software development teams. The role will involve: Developing, implementing, and maintaining application security architecture across the organisation. Ensuring our systems are designed with objectives like speed, scalability, robustness, zero-trust, automation and supportability at the core. Collaborating with the Architecture and Engineering Team to ensure security is an integral part of all development and deployment processes. Providing expert software security advice (design, coding, testing) to the Software Engineering Community, to InfoSec, DevOps and other teams. Defining and delivering secure software development of information to the software engineering teams. Escalating issues appropriately, to various teams and levels of authority inside the organisation. Interfacing with customers More ❯
Employment Type: Permanent, Work From Home
Salary: £90,000
Posted:

Application Security Architect

South East London, England, United Kingdom
Levy Search
A great client of mine is hiring a Security-Focused Technical Consultant/Security Architect to join a highly regulated healthcare tech environment. You’ll work cross-functionally with engineering, architecture, and business teams to design secure solutions, manage risks, and ensure compliance across a portfolio of applications. Length: Initial 7 months with chance to extend or go … perm. IR35: Inside Work structure: Remote Key Responsibilities: Partner with engineering and architecture to define secure technical solutions Manage end-to-end project security across multiple applications Perform vulnerability testing, threat modelling, and risk assessments Maintain up-to-date security policies, standards, and best practices Communicate risks and mitigation strategies to senior stakeholders Translate business needs into effective … security controls Key Skills & Experience: 5+ years in security architecture or consulting in regulated environments Deep knowledge of secure SDLC, DevSecOps, cloud (Azure/AWS), and frameworks (OWASP, MITRE) Hands-on experience with vulnerability tools, threat modelling, and compliance (GDPR, HIPAA, PCI) Strong communication and stakeholder engagement skills Technical knowledge across .NET, Java, scripting (Python, PowerShell), APIs, and More ❯
Posted:

Senior Security Architect - NESO

Sindlesham, Berkshire, United Kingdom
Hybrid / WFH Options
National Grid plc
build on this momentum, advancing the National Energy System Operator's (NESO) plan for zero carbon operability of the electricity system by 2025. We are seeking an experienced Senior Security Architect to work across all programme workstreams, reporting to the Enterprise Security Architect. This role involves designing secure solutions fit for the future, ensuring NESO's long-term … success. The Senior Security Architect will not only be hands-on when designing architectures, reviewing proposals, designs, and preparing documentation but will also support the Enterprise Security Architect by ensuring that the overall security strategy and policies are considered throughout the design and build process. The Senior Security Architect will play a crucial role in promoting … collaboration among various teams, eliminating siloed workflows, and integrating secure design principles along with other critical security protocols across different stages of the delivery lifecycle. In this role, you will regularly attend the Security Architecture Group meetings, contributing to the development of essential architecture strategies and patterns for NESO. Building and managing relationships with the business is key More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Security Architect - NESO

Wokingham, Berkshire, United Kingdom
Hybrid / WFH Options
National Grid plc
build on this momentum, advancing the National Energy System Operator's (NESO) plan for zero carbon operability of the electricity system by 2025. We are seeking an experienced Senior Security Architect to work across all programme workstreams, reporting to the Enterprise Security Architect. This role involves designing secure solutions fit for the future, ensuring NESO's long-term … success. The Senior Security Architect will not only be hands-on when designing architectures, reviewing proposals, designs, and preparing documentation but will also support the Enterprise Security Architect by ensuring that the overall security strategy and policies are considered throughout the design and build process. The Senior Security Architect will play a crucial role in promoting … collaboration among various teams, eliminating siloed workflows, and integrating secure design principles along with other critical security protocols across different stages of the delivery lifecycle. In this role, you will regularly attend the Security Architecture Group meetings, contributing to the development of essential architecture strategies and patterns for NESO. Building and managing relationships with the business is key More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Director of Cybersecurity

South East London, England, United Kingdom
Hybrid / WFH Options
NOTHREAT
an individual with deep technical expertise, strategic vision, and hands-on experience in building secure, AI-driven systems. As Director of Cybersecurity, you will oversee all aspects of our security architecture, operations, and threat intelligence functions—ensuring Nothreat’s platforms and clients remain resilient in an evolving threat landscape. You will also be expected to drive cross-functional collaboration … across product, engineering, compliance, and delivery teams, and lead the execution of complex, high-impact security initiatives. Key Responsibilities Define and drive Nothreat’s cybersecurity strategy across product, infrastructure, and operations. Lead security architecture reviews, threat modeling, and secure development practices across engineering teams. Oversee the implementation and operation of security controls, incident response plans, and risk … management frameworks. Work closely with the AI engineering team to address security implications of machine learning models and data pipelines. Evaluate and adopt new security technologies and frameworks aligned with our AI-powered platform. Collaborate with executive leadership on regulatory, compliance, and customer security expectations. Lead cross-functional cybersecurity initiatives across engineering, product, and operations, ensuring successful More ❯
Posted:

Mandarin Speaking - IT Security Engineer

Slough, Berkshire, UK
dnevo Partners
Role Overview: Additional Information: Please note, this role requires working full-time onsite, five days per week. NON Negotiable We are seeking an experienced IT Security Engineer to become a vital part of a growing IT Department. This critical role will focus on protecting our information assets through robust cybersecurity measures, ensuring adherence to best practices, international standards, and … local regulations. Ideally suited to candidates who possess expert knowledge of security frameworks including NIST 800, ISO 27001, and cybersecurity guidelines from PRA, FCA, and ICO. Candidates with at least 3 years' relevant experience in finance or banking, particularly as an information security officer or involvement in regulatory technical projects, are strongly preferred. Key Responsibilities: Develop and maintain … cybersecurity policies and procedures, ensuring compliance with industry standards and local regulations. Real-time monitoring of cybersecurity incidents, including incident analysis, investigation, and mitigation. Oversee and maintain security equipment including firewalls, intrusion prevention systems (IPS), web application firewalls (WAF), and antivirus systems. Perform periodic security drills and regular penetration testing to ensure the integrity of security More ❯
Employment Type: Full-time
Posted:

Principal Offensive Security Researcher

Reading, England, United Kingdom
Hybrid / WFH Options
Oracle
Are you a passionate security researcher with experience assessing large, complex software products? We are looking for talented individuals who are excited about security research and developing creative solutions for some of Oracle’s most critical customers. Finding and combining bugs to create new attacks is essential in this role. Who We Are We are a world-class … team of application security researchers who love new challenges. We are an inclusive and diverse, with a full range of experience and a global reach. We have the resources of a large enterprise and the energy of a start-up, and we’re working on a critical software assurance initiative with our cloud and mobile engineering teams. Our … mission is to make application security and software assurance a reality, at scale. We’re a dedicated team that leverages each other’s strengths to produce cutting-edge solutions to difficult problems. Join us to grow your career and create the future of software assurance at scale. Work You’ll Do As a member of our team, you More ❯
Posted:

OSCP Penetration Tester 6 months+ to £45k

Milton Keynes, Buckinghamshire, South East, United Kingdom
Hybrid / WFH Options
Circle Group
months of hands-on penetration testing experience and a strong interest in developing advanced technical skills. This is a rare opportunity to join a highly skilled and diverse security team committed to continuous growth and excellence in the field of offensive security. Key Responsibilities: Conduct hands-on Web Application Penetration Testing Support and contribute to Infrastructure and Cloud … Security Assessments Be mentored and trained towards Adversarial Simulation , Red Team Operations , and other advanced offensive security techniques Write detailed, clear, and professional reports for technical and non-technical stakeholders Collaborate with a team of skilled professionals and contribute to knowledge sharing Requirements: Minimum 6 months of practical penetration testing experience (freelance, consultancy, or internal testing roles considered … OSCP certification is essential (OSEP, OSCE3, or other advanced Offensive Security certifications also accepted) Demonstrable knowledge of Web Application security , including common vulnerabilities (e.g., OWASP Top 10) Strong desire to deepen technical capabilities across various domains, including infrastructure, cloud, and red teaming Excellent written and verbal communication skills Full right to work in the UK (UK Passport More ❯
Employment Type: Permanent, Work From Home
Salary: £45,000
Posted:

Python Developer

South East London, England, United Kingdom
VE3
and microservices to support frontend and data services. Perform data wrangling, cleaning, and transformation for analytics and reporting. Write clean, modular, and high-performance code with strong documentation. Ensure application security, performance, and scalability across services. Stay up-to-date with the latest technologies in data engineering and Python development. Requirements Technical Skills 2–3 years of hands More ❯
Posted:

Senior IT Security Analyst

Maidenhead, Berkshire, United Kingdom
dynaTrace software GmbH
Your role at Dynatrace Dynatrace exists to make the world's software work perfectly. Our unified software intelligence platform combines broad and deep observability and continuous runtime application security with the most advanced AIOps to provide answers and intelligent automation from data at an enormous scale. This enables innovators to modernize and automate cloud operations, deliver software faster … values your diverse background, talents, ideas, and expertise, which make our global team stronger and more innovative. Responsibilities Serve as a bridge between the Dynatrace business units and the Security Risk Management organization to promote and facilitate the adaptation and involvement with the Dynatrace Risk Management Framework. Create, conduct, and report on security audits and assessments for all … systems and applications (custom and 3rd Party). Train and coordinate with systems application owners, data custodians, technical leads, and business impact analysts on security standards, guidelines, and vendor risk management. Provide guidance and support to teams to meet risk management requirements and industry control frameworks. Contribute to the development and implementation of security policies, procedures, and More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Head of Cyber Security

Slough, Berkshire, UK
Burman Recruitment
week in London Public or Higher education experience is beneficial An established institution is seeking a Head of Cybersecurity to oversee its cybersecurity operations and establish a robust enterprise security strategy. This role will be instrumental in developing policies, implementing security solutions, and managing risks while ensuring compliance with industry standards and best practices. This role will include … between the business and technical, overseeing with technical knowledge but not hands on, focusing on stakeholder engagement. Key Responsibilities: Lead and manage a cybersecurity team, overseeing the implementation of security strategies. Develop and enforce cybersecurity policies, standards, and best practices. Conduct vulnerability assessments and manage compliance with security frameworks. Oversee security incident response, forensic investigations, and risk … mitigation strategies. Monitor networks and systems, ensuring proactive threat detection and response. Collaborate with internal stakeholders and external agencies to maintain a strong security posture. Provide cybersecurity training and guidance to staff and students. Lead cybersecurity projects, ensuring timely and cost-effective implementation. Stay up to date with evolving cybersecurity trends, regulations, and best practices. Essential Requirements: Degree in More ❯
Employment Type: Full-time
Posted:

Cyber Security Consultant

Reading, Berkshire, United Kingdom
WeAreTechWomen
everybody for who they are and what they bring to the table, supporting one another as we continue to deliver for our customers. LI-KS1 The role of Cyber Security Consultant sits within the Cyber Security team in Three UK, which is responsible for providing subject matter expertise and guidance to business units across Three's Network and … policy and standards. In this role you will have a broad and challenging remit, you will therefore need to be flexible and agile in your approach, switching between different security disciplines within the team as necessary. You will be engaging in the delivery of multiple business initiatives by introducing baseline and enhanced security requirements and supporting their implementation … through guidance and advice. You will also be recommending security solutions and then providing design input and technical approvals, assurances, and governance of deliveries that the project carries out with our colleagues and partners. Within the Security team itself you will be expected to collaborate with the wider team and security colleagues providing technical support and guidance More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Incident Analyst

Maidenhead, Berkshire, United Kingdom
Hybrid / WFH Options
APM Terminals
Imagine a career where you're not just responding to security incidents-you're revolutionising how it's done. At Maersk, one of the world's largest and most respected logistics and shipping companies, our Cyber team is pioneering a whole new approach to incident response. This isn't your typical SOC/CERT role: our combined fire team … life, help shape the future of cybersecurity while developing new capabilities that enhance our operations. Key responsibilities Cyber Incident Response and event management Contributing to the response efforts for security incidents, managing triage, containment, documentation, and the reporting process. Contribute to the Cyber Incident Response process from a technical perspective and provide effective management of all cyber incidents. Supporting … good quality. Conduct host and network investigations to detect and mitigate malicious activities using tools like Sysinternals, Wireshark, and TCPDump. Log analysis across OS, web applications, network devices, and security tools (e.g., Anti-malware, EDR, IDS, WAF, DLP). Research and Intelligence Gathering: Proficiency in OSINT tools like Shodan and VirusTotal. Cloud Security Knowledge Knowledge of cloud technologies More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Legal Application Support Engineer

South East London, England, United Kingdom
DVF Recruitment
We are working with a leading global law firm seeking an experienced and forward-thinking Application Engineer to take ownership of its legal technology stack and GenAI applications. This is a pivotal role focused on the deployment, maintenance, and optimisation of the firm’s core systems that support legal workflows, document and matter management, and AI-enhanced productivity. PLEASE … You will work closely with legal teams, vendors, and IT colleagues to ensure secure, innovative, and high-performing technology solutions. Reporting directly to the Head of Infrastructure and Information Security, this is a fantastic opportunity to shape the legal tech landscape of a global firm and collaborate regularly with senior stakeholders, including partners. Key Responsibilities: Manage and optimise the … GenAI applications (e.g., iManage Cloud, Intapp, M365 Copilot, ChatGPT Enterprise). Provide expert 2nd/3rd line support and lead on technical design and implementation of new tools. Ensure application security, stability, and performance through proactive maintenance and patching. Evaluate emerging legal tech and GenAI tools for innovation opportunities. Partner with legal teams to enable automation and AI More ❯
Posted:

Product Security Engineer

Slough, Berkshire, UK
InfoSec People Ltd
Product Security Engineer (FinTech) London (4 days onsite) | £80,000 to £90,000 + Benefits Are you a Product Security Engineer looking to make a real impact? We are working with a fast-growing FinTech that is reshaping the payments landscape. You will collaborate with engineering teams to build security into products from day one, focusing on … architecture, threat modelling, and risk management. This is not a hands-off role. You will be the go-to advisor for product teams, helping them understand risk, make informed security decisions, and deliver innovative, secure solutions at scale. What you will do Conduct security assessments and drive a secure-by-design culture Collaborate with engineering teams on cloud … you will bring 3 to 5 years in Cyber Security, Product Security, or Secure Software Development Strong knowledge of GCP (primary), AWS, Azure Experience with threat modelling, AppSec, and security in CI/CD pipelines Ability to communicate security concepts clearly and balance risk with business priorities A collaborative, pragmatic approach Why join Shape security More ❯
Employment Type: Full-time
Posted:

Senior CyberArk Consultant

Hatfield, Hertfordshire, South East, United Kingdom
COMPUTACENTER (UK) LIMITED
Life on the team At Computacenter, youll be part of a highly skilled Security Consultancy team, working with enterprise customers to design and deliver cutting-edge security solutions. Whether youre leading engagements or collaborating with fellow experts, youll be trusted to advise on complex, business-critical projects across cloud, datacentre, network, identity, and application security. We offer … a dynamic, supportive environment where your expertise is valued, your ideas are heard, and your professional development is a priority. What you'll do As a Security Consultant, youll play a pivotal role in securing some of the most complex IT environments. You'll work closely with customers to design, implement, and advise on a broad range of security … with business needs. Your responsibilities will include: Leading or contributing to enterprise-level CyberArk project design and delivery engagements Acting as a trusted Subject Matter Expert (SME) for Identity Security and broader security domains Delivering consulting services such as security assessments, workshops, and gap analysis Producing high-quality documentation and outcome-based deliverables Building strong relationships with More ❯
Employment Type: Permanent
Posted:

Cloud Security Platform Lead

Slough, Berkshire, UK
Zebra People | B CorpTM
Cloud & Security Platform Lead A well-known British motoring company are looking for a Cloud & Security Platform Lead to join them in what is a brand new position for the company. There’s a lot of scope here for you to have a real impact on their cloud platform. Joining a team of 10, you’d be responsible … for leading the strategy (and setting standards across the department) behind their cloud and security technology, with a focus on working with AWS, which is their cloud provider of choice. What’s in it for me? You’ll get a salary of up to £100K for the role as well as a wide range of benefits. These include an … native application development and microservices architecture. Security is a key aspect of the role, covering both hands-on implementation and compliance. The focus will primarily be on AppSec, encompassing principles and practices such as firewalls, intrusion detection and prevention systems, encryption, and endpoint protection. On the compliance access you’ll need an understanding of security standards and More ❯
Employment Type: Full-time
Posted:

Application Security Consultant - Cryptography, SC clearance

South East London, England, United Kingdom
Hays
Application Security Consultant - Cryptography, SC clearance £Market Rate - Inside IR35 London/Remote 6 months My client is an instantly recognisable consultancy who require an Application Security Consultant for a business-critical programme with a high-profile end client. Key Requirements: Proven commercial experience working as an Application Security Consultant within a large, complex … Encryption and Data Security. Certificate and Key Management skills, including overseeing the entire lifecycle of Digital Certificates and Cryptographic Keys. Familiarity with Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB). Previous experience using Hardware Security Module (HSM). Excellent communication skills. Eligibility for SC Clearance (5 years UK residency). Nice to have: Active SC More ❯
Posted:

Application Security Engineer - FinTech

South East London, England, United Kingdom
Hybrid / WFH Options
Oliver Bernard
Application Security Engineer - FinTech Our client is a growing FinTech, building cutting edge trading platforms for hedge funds and investment managers around the world. In London, they’re looking for an Application Security Engineer, with strong Penetration Testing experience, to join them. This is an initial 6 month contract, hybrid working (3 days a week in … the office), outside IR35 and paying ~£550 - £600 per day. This hire is part of a security -focused transformation and you’ll be responsible for identifying and mitigating security vulnerabilities, and risk, within their applications. You’ll focus on building security tools, penetration testing and performing security assessments, whilst updating internal security processes and documentation … the process. Required: Strong experience as an App Sec Engineer Extensive experience of Penetration Testing Hands-on experience with tools such as Burp Suite and Metasploit Capable of designing Security policies, procedures and best practices The ability to investigate and respond to Security related incidents within applications, and work closely with Dev teams throughout API Testing experience (with More ❯
Posted:

Customer Relationship Manager

Reading, Berkshire, United Kingdom
OpenText
working with large enterprise organizations and a proven track record of measurably impacting your customer's results. Strong working experience with security domains including Application Security (AppSec), Identity Management, and data security with technical background. Uses C-level engagement skills in collaboration with account leads to offer value-add solutions to the client. Balance strategic and … status, age, veteran status, disability, religion, or other basis protected by applicable laws. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please submit a ticket at Ask HR . Our proactive approach fosters collaboration, innovation, and personal growth, enriching OpenText's vibrant workplace. More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:
Application Security
the South East
10th Percentile
£32,500
25th Percentile
£33,750
Median
£57,500
75th Percentile
£73,250
90th Percentile
£83,750