Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Ignite Digital Search Limited
you have expertise in AWS security, a strong understanding of security frameworks like ISO or NIST, and the ability to drive securecoding practices, we want to hear from you! The role. As an Application Security Engineer, you will be the go-to expert for ensuring secure … implement security controls to align with frameworks such as ISO 27001, NIST, and CIS benchmarks. Collaborate with development teams to enhance securecoding practices and strengthen CI/CD pipeline security. Oversee and improve cloud security in AWS, leveraging tools such as AWS Security Hub, AWS Shield … or CIS benchmarks. Experience in application security reviews, vulnerability management, and security controls implementation. Familiarity with OWASP Top 10, CWE, and securecoding practices. Proficiency in using security tools such as static and dynamic analysis tools. Basic coding/scripting skills in Python, JavaScript, or similar. More ❯
leeds, west yorkshire, yorkshire and the humber, United Kingdom
TransUnion
TransUnion Monevo portfolio. Day to Day You’ll Be: Guides and advises technology teams on infrastructure vulnerability and threat management principles, securecoding practices, secure software development methodologies, and securedevelopment lifecycle (SDLC) processes Works with engineering and development team to ensure in … on compliance with policies, standard, regulations and best practices 3+ years of information security experience in cloud environments. In depth experience securecoding practices, threat modeling, secure architecture design, and secure SDLC/CICD pipelines In-depth technical experience with identifying and advising More ❯
City, Aberdeen, United Kingdom Hybrid / WFH Options
Aize AS
will be doing Own Aize's Application Security strategy, driving a security-first culture across our engineering teams Training developers on securecoding practices and following up on issues flagged by our security tooling (like Snyk and Microsoft Defender). Designing, implementing, and operating security tools and … doing this Establish and improve securedevelopment processes across our teams Work closely with developers and coach them on securecoding practices Both react to threats and work proactively to get ahead of them Work with devs, platform teams, and product managers to embed security … security in both legacy systems (addressing technical debt) and greenfield projects (building security in). Understanding of OWASP Top 10, ASVS, securecoding practices, threat modeling (STRIDE, etc.), and security architecture review across one or more languages like C#, React, Java, Python, Go, TypeScript/Angular. Solid More ❯
with strategic goals. Confidence navigating and integrating multiple systems. Other highly valued skills include: Expertise in software architecture, design patterns, and securecoding best practises. Hands-on experience with cloud platforms (AWS, Azure, or Google Cloud) and CI/CD pipelines. Proficiency in SQL/NoSQL databases … innovations and actively contribute to the organization's technology communities to foster a culture of technical excellence and growth. Adherence to securecoding practices to mitigate vulnerabilities, protect sensitive data, and ensure secure software solutions. Implementation of effective unit testing practices to ensure proper codeMore ❯
with strategic goals. Confidence navigating and integrating multiple systems. Other highly valued skills include: Expertise in software architecture, design patterns, and securecoding best practises. Hands-on experience with cloud platforms (AWS, Azure, or Google Cloud) and CI/CD pipelines. Proficiency in SQL/NoSQL databases … innovations and actively contribute to the organization's technology communities to foster a culture of technical excellence and growth. Adherence to securecoding practices to mitigate vulnerabilities, protect sensitive data, and ensure secure software solutions. Implementation of effective unit testing practices to ensure proper codeMore ❯
Bradford, Yorkshire, United Kingdom Hybrid / WFH Options
Freemans Grattan Holdings (fgh)
automation. Knowledge of scripting and automation languages such as Powershell, Bash. Familiarity with networking and security best practices. Knowledge of application securecoding principles (e.g., OWASP) for protection against vulnerabilities and the ability to implement securecoding and deployment best practices. Experience in Agile … balancer cache to enhance website performance. Desirable 3+ years in a B2C E-Commerce with a proven track record of implementing scalable and secure E-Commerce infrastructures. Knowledge of programming languages such as C#, Java, .NET. Knowledge of relational databases (e.g., MS SQL Server) and document-oriented databases More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Client Server
Senior Product Security Engineer London/WFH to £160k Do you have expertise with securecoding practices and application security? You could be progressing your career in a senior, hands-on role at a global systematic trading firm. As a Senior Product Security Engineer you'll drive … platforms, ensuring security is embedded at every stage of the development lifecycle and provide mentorship, guidance and training on security best practices and securedevelopment processes to engineering teams working in mixed cloud and operating systems environments. Location/WFH: You'll join colleagues based in high spec … at the onsite restaurant, with flexibility to work from home two days a week. About you: You have strong experience with securecoding practices and development experience with development languages such as Python, C++, Rust, Go and Kotlin/Java You have a strong knowledge of software More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
role involves identifying and mitigating security risks throughout the product lifecycle, conducting risk assessments, and collaborating with development teams to integrate securecoding practices. The Role Key Responsibilities: Conduct risk assessments, identify vulnerabilities, and implement mitigation measures. Integrate securecoding practices into the software … development lifecycle. Perform security code reviews and ensure secure-by-design principles. Conduct threat modelling exercises to identify and mitigate potential risks. Ensure compliance with security regulations such as ISO27001, NIST 800-30/37/53, JSP 440, 604, and Defence Standards. Develop and maintain security documentation More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
role involves identifying and mitigating security risks throughout the product lifecycle, conducting risk assessments, and collaborating with development teams to integrate securecoding practices. The Role Key Responsibilities: Conduct risk assessments, identify vulnerabilities, and implement mitigation measures. Integrate securecoding practices into the software … development lifecycle. Perform security code reviews and ensure secure-by-design principles. Conduct threat modelling exercises to identify and mitigate potential risks. Ensure compliance with security regulations such as ISO27001, NIST 800-30/37/53, JSP 440, 604, and Defence Standards. Develop and maintain security documentation More ❯
implement security architectures for AI systems, cloud environments, and data pipelines. Integrate security into the software development lifecycle (SDLC) to ensure securecoding practices. Threat Detection and Response: Monitor and analyze security events to detect potential threats or breaches. Respond to security incidents, conduct root cause analysis … SIEM, IDS/IPS, vulnerability scanners). Familiarity with cloud platforms (e.g., AWS, Azure, GCP) and their security frameworks. Knowledge of securecoding practices and common vulnerabilities (e.g., OWASP Top Ten). Preferred Skills: Experience securing machine learning models, data pipelines, or AI platforms. Knowledge of adversarial More ❯
Engineer to partner with engineering teams and proactively identify, assess, and remediate security risks across our product portfolio. This role will focus on securedevelopment practices, vulnerability management, threat modelling, and driving a shift-left security culture. The ideal candidate is a pragmatic problem solver with strong technical … closely with product owners, software engineers, and platform teams to implement security controls that balance risk with business objectives. How will you contribute? Secure SDLC Integration: Embed security within the software development lifecycle, ensuring security is considered at every phase-from design to deployment. Threat Modeling & Security Design … of experience in Product Security, Application Security, or a related security engineering role. Deep expertise in secure software development, securecoding practices, and OWASP Top 10/CWE 25. Strong technical proficiency in modern programming languages (e.g., Python, Java, JavaScript, Go, or C#). Experience More ❯
Swindon, Wiltshire, United Kingdom Hybrid / WFH Options
Hexagon AB
strategy and implementation across our connected hardware products. You will work closely with firmware, hardware, and cloud teams to ensure our devices are secure by design and resilient to emerging threats. Job Responsibilities Conduct threat modelling and risk assessments for IoT devices, firmware, and communication protocols. Design and … implement secure boot, secure firmware updates (OTA), and hardware-level security controls (e.g., TPM, secure elements). Perform firmware and embedded software security assessments. Collaborate with hardware and embedded teams on secure product architecture. Monitor evolving IoT threat landscapes and update security … Deep knowledge of embedded systems, firmware development, and relevant communication protocols. Experience with common IoT threat vectors and mitigations. Familiarity with securecoding practices in C/C++ or any other language and embedded environments. Hands-on experience with hardware debugging tools (e.g., JTAG, logic analyzers). More ❯
quality, utilizing TDD methodologies to ensure code reliability and maintainability. Security Practices: Knowledgeable in cybersecurity practices, including OAuth, OpenID Connect, and securecoding practices. Advanced Database Knowledge: Proficient in SQL and data modelling. SOLID Principles: Proficient in applying SOLID principles for object-oriented programming, ensuring clean, maintainable More ❯
Swannington, Leicestershire, United Kingdom Hybrid / WFH Options
Big Red Recruitment Midlands Limited
UK public safety, working for a family-run software house. This hybrid Senior Developer position is perfect for someone who wants to build secure, scalable applications, lead by example, and enjoy autonomy in architectural decisions. The opportunity: You’ll be joining a close-knit development team with a … developers, support full lifecycle delivery, and bring ideas to life—balancing legacy modernisation with brand-new product development. Responsibilities: Designing, developing, and deploying secure, cloud-first applications in high-trust environments Working with C#, .NET Core, Angular, and AWS across multiple projects Writing clean, testable code and implementing … Proven background in C#, .NET Core, and cloud technologies Solid front-end experience with Angular and JavaScript/TypeScript Knowledge of securecoding principles, clean architecture, and modern design patterns Familiarity with SQL Server, microservices, REST APIs, Docker and Git A collaborative, proactive mindset—comfortable taking the More ❯
particularly within FDA-regulated medical device software (IEC 62304, cybersecurity compliance). Key Responsibilities: System Architecture & Technical Leadership: Design, develop, and optimize scalable, secure, and compliant … software solutions for medical devices and connected health applications. Ensure adherence to IEC 62304, FDA, and cybersecurity regulations, addressing threat modeling, securecoding practices, and risk management. Work with cross-functional teams to architect cloud solutions, ensuring performance, scalability, security, and compliance. Implement cloud-native architecture, microservices … to ensure intuitive and visually appealing user interfaces. Integrate mobile apps with cloud services and APIs, ensuring seamless data flow. Cybersecurity & Compliance Ensure secure software development practices in compliance with FDA, IEC 62304, and ISO 27001. Implement identity management, authentication, and data encryption strategies. Conduct threat modeling, vulnerability More ❯
developing, and securing RESTful APIs, including threat assessment throughout the development process. Deep understanding of OOP principles (SOLID), design patterns, and securecoding practices. DevOps & Cloud: Experience deploying and managing applications using containerisation technologies (Docker, Kubernetes). Experience using and defining version control strategies for the team … during design and development. Solid understanding of Object-Relational Mapping principles and proficiency in JPA and Hibernate. Experience using Swagger for API documentation and coding alongside AI Assistants (GitHub Copilot). Experience with test tools like Selenium, Axe, Postman, or Bruno. Connect to your business - Technology and Transformation Distinctive More ❯
developing, and securing RESTful APIs, including threat assessment throughout the development process. Deep understanding of OOP principles (SOLID), design patterns, and securecoding practices. DevOps & Cloud: Experience deploying and managing applications using containerisation technologies (Docker, Kubernetes). Experience using and defining version control strategies for the team … during design and development. Solid understanding of Object-Relational Mapping principles and proficiency in JPA and Hibernate. Experience using Swagger for API documentation and coding alongside AI Assistants (GitHub Copilot). Experience with test tools like Selenium, Axe, Postman, or Bruno. Connect to your business - Technology and Transformation Distinctive More ❯
Newcastle Upon Tyne, Tyne And Wear, United Kingdom
Deloitte LLP
developing, and securing RESTful APIs, including threat assessment throughout the development process. Deep understanding of OOP principles (SOLID), design patterns, and securecoding practices. DevOps & Cloud: Experience deploying and managing applications using containerisation technologies (Docker, Kubernetes). Experience using and defining version control strategies for the team … during design and development. Solid understanding of Object-Relational Mapping principles and proficiency in JPA and Hibernate. Experience using Swagger for API documentation and coding alongside AI Assistants (GitHub Copilot). Experience with test tools like Selenium, Axe, Postman, or Bruno. Connect to your business - Technology and Transformation Distinctive More ❯
measure and enforce cloud security policies, standards, and best practices. Mentor engineering and operations staff on unique cloud-based security controls, SecureCoding Practices (to include extensive documentation and training on the 'why'). Act as a key contributor to the development of our developer and CI … LogEntries, SumoLogic, etc. BENEFITS: Competitive Base Salary Employee Performance Related Bonus Clear Career Progression Flexible Working Hours Matched Employee Pension Generous Holiday Package Secure Company Hardware More ❯
in code reviews and ensure the delivery of high-quality, maintainable code. Provide mentorship and guidance to junior engineers, contributing to best practices and coding standards. Contribute to architectural decisions and technical designs to improve software quality and maintainability. Research and implement emerging technologies to enhance development efficiency and … product quality. Implement securecoding practices and ensure adherence to industry security standards and best practices. Required Education and Experience Experience in designing and developing scalable, distributed, and high-performance cloud-based applications. Strong understanding of object-oriented programming principles and design patterns. Expertise in microservices architecture More ❯
and implementation of advanced DevOps practices and infrastructure solutions. They mentor other DevOps Engineers and collaborate with technical teams to deliver highly automated, secure, and scalable platforms that support software delivery at pace. Key Responsibilities: Take an active role in defining and delivering platform improvement initiatives that enhance … the design, development, and optimisation of advanced CI/CD pipelines that meet the evolving needs of multiple development teams. Ensure pipelines are secure, efficient, and reliable, and promote automation of testing, security checks, and deployment across environments. Provide technical leadership in implementing and maintaining infrastructure as code … ensuring that security is embedded throughout the software delivery lifecycle. Collaborate with security and compliance teams to manage vulnerabilities and enforce securecoding and deployment practices. Lead technical risk assessments to evaluate platform and pipeline vulnerabilities. Support internal and external audits, ensuring that systems and processes meet More ❯
security best practices. Experience in mentoring and developing junior engineers. Ability to nurture talent within the team, guiding them to enhance their skills in coding, architecture, and problem-solving through coaching, reviews, and pair programming. Proven experience delivering enterprise-grade applications on cloud platforms (AWS, GCP, Azure) with expertise … queries and application logic to improve scalability and response times. Expertise in modern engineering standards such as TDD, contract testing, and securecoding, as well as architectural patterns like event-driven architecture and platform migration. Skilled at making technical decisions and trade-offs that positively impact teams More ❯
bradford, yorkshire and the humber, united kingdom
Stott & May Professional Search Limited
with REST APIs and Microservices. - Confident using CI/CD tools (Git, GitLab CI, Jenkins, SonarQube, etc.). - Solid understanding of securecoding and OWASP tools (e.g. ZAP). - Proven experience in full software development lifecycle. JBRP1_UKTJ More ❯
respond to security incidents and alerts. Ensure compliance with industry standards and regulations. Provide guidance and training to development teams on securecoding practices. Continuously improve security processes and practices. Skills & Experience: Proven experience as a DevSecOps Engineer or in a similar role. Strong understanding of DevOps More ❯
interface with Thought Machine Vault and serve as foundational products for the wider bank to use. Own the design and delivery of scalable, secure, and reusable APIs, orchestration layers, and adapters that abstract … core ledger complexity. Guide the adoption of modern engineering practices across the team, including CI/CD, automated testing, observability, and securecoding standards. Ensure services are production-grade with appropriate telemetry, resilience, and operational tooling in place. Partner with infrastructure, DevOps, and SRE teams to ensure More ❯