The Role Embed security best practices within the SDLC, collaborating with developers to ensure secure coding. Conduct security assessments, identify potential threats, and mitigate risks in web and mobile applications. Perform application security testing (SAST, DAST) and manual security code reviews. Implement and manage security tools such as … SAST, DAST, SCA, and CI/CD security integrations. Investigate security incidents, prioritise remediation and guide teams on securedevelopment practices. Ensure applications meet industry standards (OWASP … Top 10, NIST, ISO 27001) and regulatory requirements (GDPR, PCI-DSS, etc.) Educate engineers and stakeholders on security threats, vulnerabilities and securecoding practices. Skills 5+ years of experience in application security, penetration testing, or software security engineering. Strong knowledge of securecoding principles More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
secure software development. In this role, you’ll be responsible for testing a Java-based codebase that powers our securecoding labs and training platform. Your mission is to ensure our software is reliable, robust, and meets the highest standards of quality. Key Responsibilities About … secure software development. In this role, you’ll be responsible for testing a Java-based codebase that powers our securecoding labs and training platform. Your mission is to ensure our software is reliable, robust, and meets the highest standards of quality. Key Responsibilities Design … systems, with a focus on both functionality and security. Perform functional, regression, integration, and system-level testing. Validate business logic, user workflows, and secure handling of data across our platform. Create and manage automated test suites using tools compatible with Java (e.g., JUnit, TestNG, Selenium, REST Assured). More ❯
strategy and implement your ideas. Must have: 5+ years of experience in Cyber Security and IT Security, including web application security, securecoding techniques, secure system design and secure operations. A degree in Computer Science or equivalent. Existing (or ability to gain) Security … Clearance. Relevant certifications, such as CISSP, CISM, or CISA. Strong technical background as well as excellent communication and problem-solving skills. Understanding of Secure Software, a plus; Secure keys, Authentication processes, PKI, or X.509. This is a fresh opportunity to join a world-class organisation and More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
Reading, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
Slough, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
Woking, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
Brighton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
High Wycombe, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
Crawley, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
Portsmouth, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
enforce, and continuously evolve software engineering best practices (e.g., SOLID principles, domain-driven design, clean architecture, modular monoliths vs microservices). Drive consistency in coding standards, code review rigor, and software craftsmanship. Lead critical system architecture decisions, including technology stack evolution, refactoring legacy components, and designing future-state systems. … Ensure integration patterns and service contracts across internal and external APIs are robust, secure, and scalable. System Integration & Platform Ownership Oversee integration between business systems using APIs, middleware, and ETL pipelines, including Salesforce, Power Platform (PowerApps, PowerAutomate, LogicApps), SharePoint, and custom web applications. Lead optimization and governance around … data sources and APIs. Security Engineering & Governance Partner with security engineers to integrate security throughout the software lifecycle (shift-left security, securecoding, threat modelling). Own the implementation of secure authentication/authorization practices, audit logging, encryption at rest/in transit, and other More ❯
bonus + benefits Location: UK – Remote This company is scaling its security function and is hiring Senior Application Security Engineers to help embed securedevelopment practices across its engineering teams. You’ll play a hands-on role in identifying and resolving vulnerabilities, integrating security into the SDLC, helping … developers create software that is secure, robust, and production-ready by design. You’ll be joining a high-impact security team at a pivotal point in the company’s growth. The environment spans legacy systems, enterprise-grade platforms, and greenfield builds – making it an ideal opportunity for individuals … discovered vulnerabilities. Requirements: 5+ years of hands-on experience in application security and secure software development. Strong knowledge of securecoding practices and common vulnerabilities (OWASP) Experience with SAST, DAST, and IAST tools and integrating them into CI/CD pipelines. Ability to work closely More ❯
quality, utilizing TDD methodologies to ensure code reliability and maintainability. Security Practices: Knowledgeable in cybersecurity practices, including OAuth, OpenID Connect, and securecoding practices. Advanced Database Knowledge: Proficient in SQL and data modelling. SOLID Principles: Proficient in applying SOLID principles for object-oriented programming, ensuring clean, maintainable More ❯
Stevenage, Hertfordshire, South East, United Kingdom
Eurochange
vision to how we develop at eurochange. With full ownership of our bespoke software services, you'll define and shape systems that are secure, scalable, and fit for the future. You'll work closely with our Technology Director and wider teams to ensure the applications we build are … mentor and grow the internal software development team and guide offshore contributors Define technical architecture, development frameworks, and solution standards Oversee delivery of secure, reliable and scalable systems across web, mobile and API services Translate customer and business requirements into robust digital solutions Platform Strategy & Delivery Define and … culture—supporting CI/CD, test automation and infrastructure as code Deliver technical leadership in areas such as microservices, containerisation and securecoding Guide architecture decisions across white-label platforms, APIs, CMS, and supporting apps Ensure documentation, code standards and development practices are kept to high quality More ❯
based 6 months+ Contract Niche SaaS Tech company is seeking a Senior DevSecOps/Application Security Engineer to lead their DevSecOps initiatives—shaping secure software delivery in a fast-moving, cloud-native environment. You will own and improve security tooling and automation within their SDLC and CI/… in CI/CD workflows Integrate SAST, DAST, SCA, and threat modeling tools into DevSecOps pipelines Collaborate with developers to promote securecoding and privacy by design Establish and promote securedevelopment standards across the organization Manage software vulnerability programs and bug bounty initiatives Identify … Manage AppSec policies, incident response, and related KPIs/KRIs Key Skills Required: 5+ years in Application Security or DevSecOps, with experience in secure SDLC and CI/CD Hands-on experience with security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Knowledge of OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company is seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. This role involves owning and evolving security tooling and automation embedded in their SDLC and … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the organization Operate and evolve software vulnerability management and … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company are seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. In this role, you’ll own and evolve the security tooling and automation embedded in … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the org Operate and evolve our software vulnerability management … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company are seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. In this role, you’ll own and evolve the security tooling and automation embedded in … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the org Operate and evolve our software vulnerability management … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company are seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. In this role, you’ll own and evolve the security tooling and automation embedded in … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the org Operate and evolve our software vulnerability management … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company are seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. In this role, you’ll own and evolve the security tooling and automation embedded in … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the org Operate and evolve our software vulnerability management … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company are seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. In this role, you’ll own and evolve the security tooling and automation embedded in … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the org Operate and evolve our software vulnerability management … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
months+ Contract Niche SaaS Tech company are seeking a Senior DevSecOps/Application Security Engineer to champion and drive their DevSecOps initiatives—shaping secure software delivery across a fast-moving, cloud-native environment. In this role, you’ll own and evolve the security tooling and automation embedded in … CD workflows Lead the integration of SAST, DAST, SCA, and threat modeling tools in DevSecOps pipelines Collaborate with developers to enable securecoding and privacy by design Drive adoption of securedevelopment standards and practices across the org Operate and evolve our software vulnerability management … AppSec policies, incident response processes, and related KPIs/KRIs Key Skills Required: 5+ years in AppSec or DevSecOps, with strong experience in secure SDLC and CI/CD Hands-on knowledge of security tools like GitHub Advanced Security, Veracode, Snyk, ZAP, Burp Familiarity with OWASP, MITRE, CWE More ❯
Maidstone, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
applications across multiple client projects. You'll help shape technical architecture, contribute directly to code and collaborate closely with Agile teams to deliver secure and maintainable software solutions. Our projects primarily utilise React and TypeScript for front-end development with varied back-end technologies including Python, Node.js, .NET … and estimation activities, ensuring consistently high-quality code through code reviews and testing practices Collaborate with architects, engineers and delivery leads to deliver secure, maintainable systems Participate in workshops, demos and discussions with internal teams and clients Contribute to the development of internal delivery standards and team culture … Exposure or interest in additional frameworks/languages (.NET, Ruby on Rails, Go) or willingness to learn new technologies Experience with securecoding practices and awareness of software assurance principles Active SC clearance Our Offer At Ntegra, we offer an inspiring and inclusive work environment, where your More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
applications across multiple client projects. You'll help shape technical architecture, contribute directly to code and collaborate closely with Agile teams to deliver secure and maintainable software solutions. Our projects primarily utilise React and TypeScript for front-end development with varied back-end technologies including Python, Node.js, .NET … and estimation activities, ensuring consistently high-quality code through code reviews and testing practices Collaborate with architects, engineers and delivery leads to deliver secure, maintainable systems Participate in workshops, demos and discussions with internal teams and clients Contribute to the development of internal delivery standards and team culture … Exposure or interest in additional frameworks/languages (.NET, Ruby on Rails, Go) or willingness to learn new technologies Experience with securecoding practices and awareness of software assurance principles Active SC clearance Our Offer At Ntegra, we offer an inspiring and inclusive work environment, where your More ❯
Guildford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
applications across multiple client projects. You'll help shape technical architecture, contribute directly to code and collaborate closely with Agile teams to deliver secure and maintainable software solutions. Our projects primarily utilise React and TypeScript for front-end development with varied back-end technologies including Python, Node.js, .NET … and estimation activities, ensuring consistently high-quality code through code reviews and testing practices Collaborate with architects, engineers and delivery leads to deliver secure, maintainable systems Participate in workshops, demos and discussions with internal teams and clients Contribute to the development of internal delivery standards and team culture … Exposure or interest in additional frameworks/languages (.NET, Ruby on Rails, Go) or willingness to learn new technologies Experience with securecoding practices and awareness of software assurance principles Active SC clearance Our Offer At Ntegra, we offer an inspiring and inclusive work environment, where your More ❯