Hounslow, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
authorization practices, audit logging, encryption at rest/in transit, and other applicationsecurity standards. Ensure software and infrastructure meet organizational security and compliance requirements (e.g., GDPR, ISO 27001, OWASP Top 10). Team Management & Culture Build and scale high-performance engineering teams, including backend, frontend, full-stack, data, and security engineers. Define and track KPIs for engineering productivity, quality More ❯
the Data migration cycle output to the customer + Identify Data quality issues and have the fixes in place. Technical Skills: Experience and understanding of secure development practices include OWASP guidelines/top 10, SOC 2, and NCSC cloud security principles. Experience in data and orchestration tools including some of dbt, Apache Airflow, Azure Data Factory. Experience in programming languages More ❯
able to function in a dynamic environment subject to impromptu changes in schedules and priorities Demonstrate well-developed organizational, written communication, and analytical skills. Knowledge of NIST Cybersecurity Framework, OWASP SAMM, OWASP Top10, and others. Programming Experience preferred CISSP and other security certifications preferred YOU'LL LOVE WORKING HERE BECAUSE YOU CAN Deliver at epic scale. We deliver real user More ❯
security incidents and work on root cause analysis and hardening. Stay updated on current and emerging security threats, tools, and techniques. Requirements: Strong understanding of common applicationsecurity vulnerabilities (OWASP Top 10, CWE) and how to remediate them. Experience performing secure code reviews in languages like Java, Python, C++ etc.. Familiarity with CI/CD pipelines and how to embed More ❯
SSO, Cloud IAM, HashiCorp Vault). Proficiency in applied cryptography (e.g., mTLS, E2EE, AEAD, key derivation, key wrapping, remote attestation). Ability to identify security vulnerabilities across platforms (e.g., OWASP Top 10, misconfigurations, transport security gaps). Excellent documentation and communication skills, able to articulate technical risks and findings to diverse audiences. Experience in collaborative proposal development and interfacing with More ❯
firewalls, IPS, DDoS, WAF, DLP, DNS, NAC, NSPM, and architectures like SASE and Zero Trust. ApplicationSecurity: Experience with SAST, DAST, RAST, IAST tools, integrating security into SDLC processes, OWASP, API security design, robust threat modelling, and containerization security. Data Security: Skilled in implementing information protection tools, key and secrets management, data loss prevention, and protective marking and classification capabilities. More ❯
Newcastle Upon Tyne, Tyne and Wear, North East, United Kingdom
HMRC
firewalls, IPS, DDoS, WAF, DLP, DNS, NAC, NSPM, and architectures like SASE and Zero Trust. ApplicationSecurity: Experience with SAST, DAST, RAST, IAST tools, integrating security into SDLC processes, OWASP, API security design, robust threat modelling, and containerization security. Data Security: Skilled in implementing information protection tools, key and secrets management, data loss prevention, and protective marking and classification capabilities. More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
The MRJ Group
Competitive salary available upon request Hybrid working from a Manchester office (must be based in the UK without visa/sponsorship requirements) Permanent We are awaze, the largest managed vacation rentals and holiday resorts business in Europe, which brings together More ❯
of REST APIs Scripting skills and Infrastructure as Code (Terraform, CloudFormation) Experience with Jira or similar ticketing systems Technical architecture review skills Ability to identify vulnerabilities using CWE or OWASP Knowledge of operating system hardening Understanding of CICD, Pipelines, SDLC Penetration testing knowledge Familiarity with Cloud Development Kit (CDK), GitOps Experience working in DevOps/agile teams Understanding of Docker More ❯
languages and Infrastructure as Code (Terraform, CloudFormation) •Familiarity with Jira or other ticketing systems – essential •Technical architecture design and review skills – essential •Ability to identify vulnerabilities using CWE or OWASP •Knowledge of operating systems and their hardening techniques •Understanding of development concepts such as CICD, Pipelines, and SDLC •Penetration testing knowledge is also super useful •Familiarity with Cloud Development Kit More ❯
languages and Infrastructure as Code (Terraform, CloudFormation) •Familiarity with Jira or other ticketing systems – essential •Technical architecture design and review skills – essential •Ability to identify vulnerabilities using CWE or OWASP •Knowledge of operating systems and their hardening techniques •Understanding of development concepts such as CICD, Pipelines, and SDLC •Penetration testing knowledge is also super useful •Familiarity with Cloud Development Kit More ❯
languages and Infrastructure as Code (Terraform, CloudFormation) •Familiarity with Jira or other ticketing systems – essential •Technical architecture design and review skills – essential •Ability to identify vulnerabilities using CWE or OWASP •Knowledge of operating systems and their hardening techniques •Understanding of development concepts such as CICD, Pipelines, and SDLC •Penetration testing knowledge is also super useful •Familiarity with Cloud Development Kit More ❯
Kubernetes). Experience : 5+ years of experience in penetration testing, ethical hacking, or red teaming. Proven track record of identifying and exploiting critical vulnerabilities. Experience with webapplicationsecurity (OWASP Top 10, API security, etc.). Hands-on experience with malware analysis and forensic tools is a plus. Certifications (Preferred) : OSCP (Offensive Security Certified Professional) OSCE (Offensive Security Certified Expert More ❯
Middlesbrough, Yorkshire, United Kingdom Hybrid / WFH Options
Causeway Technologies
Understanding of current testing trends and Agile methodologies Degree in computer science, software engineering, or related field preferred Experience with API testing tools like Postman or SoapUI Knowledge of OWASP vulnerabilities and security testing ISTQB certification Experience with source control tools like Git or Bitbucket Strong problem-solving, communication, and time management skills Minimum of 5 years in a Software More ❯
been a UK resident for at least 5 years). Experience conducting penetration tests (web, infrastructure, external/internal). Strong knowledge of security testing methodologies and frameworks (e.g., OWASP, NIST). Proficiency with industry-standard tools (e.g., Burp Suite, Nmap, Metasploit, Kali Linux). Excellent written and verbal communication skills. Desirable Skills OSCP, OSWE, or other relevant certifications. Experience More ❯
London, England, United Kingdom Hybrid / WFH Options
Lorien
been a UK resident for at least 5 years). Experience conducting penetration tests (web, infrastructure, external/internal). Strong knowledge of security testing methodologies and frameworks (e.g., OWASP, NIST). Proficiency with industry-standard tools (e.g., Burp Suite, Nmap, Metasploit, Kali Linux). Excellent written and verbal communication skills. Desirable Skills OSCP, OSWE, or other relevant certifications. Experience More ❯
security engineers and business stakeholders to integrate security into the software development lifecycle (SDLC), mitigate risks and ensure compliance with security standards. Skills Strong knowledge of applicationsecurity vulnerabilities (OWASP Top 10, CWE, SANS 25). Hands-on remediation support and vulnerability management expertise. Hands-on experience with threat modelling and secure code reviews. Experience with Mobile ApplicationSecurity and More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
XSS, SQL injection, broken access control). Knowledge of SQL and experience verifying backend data consistency. Familiarity with containerized environments (Docker, Kubernetes). Familiarity with tools like Burp Suite, OWASP ZAP, or static analysis tools is a plus. What We Offer Competitive salary and benefits package. Opportunities for learning, growth, and contributing to a product that makes a difference. Remote More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
XSS, SQL injection, broken access control). Knowledge of SQL and experience verifying backend data consistency. Familiarity with containerized environments (Docker, Kubernetes). Familiarity with tools like Burp Suite, OWASP ZAP, or static analysis tools is a plus. What We Offer Competitive salary and benefits package. Opportunities for learning, growth, and contributing to a product that makes a difference. Remote More ❯
Watford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
XSS, SQL injection, broken access control). Knowledge of SQL and experience verifying backend data consistency. Familiarity with containerized environments (Docker, Kubernetes). Familiarity with tools like Burp Suite, OWASP ZAP, or static analysis tools is a plus. What We Offer Competitive salary and benefits package. Opportunities for learning, growth, and contributing to a product that makes a difference. Remote More ❯
implemented in Kubernetes, Docker Experience using GitHub and GitHub Actions Behaviour Driven Development (BDD), with Gherkin & SpecFlow Atlassian Jira, Confluence & JFrog Artifactory Software security best practices and implementation (e.g. OWASP, PKI, X509 Certificates, TLS) Software development for regulated environments (e.g. IVD/Medical devices) In addition to salary, we work flexibly, and provide 25 days holidays, excellent family friendly benefits More ❯
London, England, United Kingdom Hybrid / WFH Options
IdentityE2E
including but not limited to the following core areas: Build verification Alert and Monitoring Backup and Restore Resilience and Recovery Logging, Audit and House Keeping Release Management Work Instructions OWASP "top ten" security tests Experience with CI/CD pipelines, Jenkins, and test automation frameworks. Knowledge of cloud platforms (AWS/Azure), infrastructure monitoring, and IT service management. Familiarity with More ❯
/CD tools (e.g., Azure DevOps) Experience working in agile environments and cross-functional teams Familiarity with SEO, multilingual site setup and content strategy Understanding of security best practices (OWASP, GDPR, ISO27001) Experience deploying on Azure App Services or similar cloud platforms Ability to work under pressure and manage multiple tasks effectively BENEFITS: Competitive Salary: Base salary commensurate with experience More ❯
/CD tools (e.g., Azure DevOps) Experience working in agile environments and cross-functional teams Familiarity with SEO, multilingual site setup and content strategy Understanding of security best practices (OWASP, GDPR, ISO27001) Experience deploying on Azure App Services or similar cloud platforms Ability to work under pressure and manage multiple tasks effectively BENEFITS: Competitive Salary: Base salary commensurate with experience More ❯
not limited to the following core areas: Build verification Alert and Monitoring Backup and Restore Resilience and Recovery Logging, Audit and House Keeping Release Management Config Management Work Instructions OWASP "top ten" security tests Experience with CI/CD pipelines, Jenkins, and test automation frameworks. Knowledge of cloud platforms (AWS/Azure), infrastructure monitoring, and IT service management. Familiarity with More ❯