26 to 50 of 61 Dynamic Application Security Testing Jobs in the UK

Senior Product Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
over 90 million wallet holders and more than 40 million verified users, facilitating over $1 trillion in crypto transactions. You will operate the Product Security programe for the company.com’s internally-developed products across Consumer, OTC and MRE lines. This is a senior, hands-on role: you’ll design … is integrated from the design phase. Secure SDLC Operator: Operate and improve the secure development lifecycle. This includes orchestrating SAST/SCA/DAST, streamlining SARIF ingestion, PR review standards, CI/CD security automation, and vulnerability triage workflows. AI-Driven SDLC Innovation: Research, architect, and safely embed ...

Senior Cloud Security Engineer

Hiring Organisation
Jobleads-UK
Location
Belfast City District, Northern Ireland, United Kingdom
high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination … industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle. The Senior Cloud Security Engineer is a key technical contributor and emerging leader within Black Duck’s Security Operations team, responsible for securing ...

Cyber Security Business Information Officer (BISO)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
.Cyber Security Business Information Officer (BISO) page is loaded## Cyber Security Business Information Officer (BISO)locations: Oxford: Londontime type: Full timeposted on: Posted Todayjob requisition id: R112581**About Our Team**The Business Information Security Office (BISO) team partners with business, product, and technology leaders to deliver measurable … security experience (AWS, Azure, GCP; secure SDLC).* Hands‐on knowledge of security tooling (SIEM, SOAR, EDR/XDR, CSPM, SAST/DAST).* Experience embedding security into CI/CD pipelines and DevSecOps practices.* Proven capability in risk assessments, threat modeling, and control gap analysis.* Experience ...

Cyber Security Business Information Officer (BISO)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
## .Cyber Security Business Information Officer (BISO) page is loaded## Cyber Security Business Information Officer (BISO)locations: Oxford: Londontime type: Full timeposted on: Posted Todayjob requisition id: R112581**About Our Team**The Business Information Security Office (BISO) team partners with business, product, and technology leaders to deliver … security experience (AWS, Azure, GCP; secure SDLC).* Hands‐on knowledge of security tooling (SIEM, SOAR, EDR/XDR, CSPM, SAST/DAST).* Experience embedding security into CI/CD pipelines and DevSecOps practices.* Proven capability in risk assessments, threat modeling, and control gap analysis.* Experience ...

Lead Application Security/DevSecOps Engineer

Hiring Organisation
Jobleads-UK
Location
Loughborough, England, United Kingdom
600+ leading international and independent schools), SchoolsBuddy (co-curricular & activity management), and Vectare (school transport management). We are looking for a Lead Security/DevSecOps Engineer on the Product Engineering team, with a great opportunity to be self-directed and level up security practices and capabilities. … SDLC (shift‐left): security requirements, design reviews, guardrails, and coding standards for an AI engineering reality. Select, deploy, and operationalise AppSec tooling (SAST, DAST, SCA/dependency and secrets scanning) integrated into CI/CD. Implement and operationalise secrets management: detection, rotation, and vault integration across CI/ ...

CLOUD SECURITY ENGINEER

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Internet of Things. Reply’s services include Consulting, System Integration, and Digital Services. Role Overview: We are looking for a hands-on Cloud Security Engineer to join our growing cybersecurity practice. This is an engineering-first role so we are looking for someone who builds, configures, and secures cloud … Terraform), including reusable, security-hardened modules and reference patterns Integrate security tooling and automated controls intoCI/CD pipelines, including SAST/DAST tooling, secrets scanning, and policy-as-code enforcement Conduct threat modelling exercises, cloud security posture reviews, and risk assessments for cloud platforms and workloads ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
scalable, accurate, and enterprise-grade integrations. Our platform combines 25,000 pre-mapped actions on 200 connectors, an AI-powered integration development toolkit, plus security by design: a real‐time architecture, managed authentication and permissions, and end‐to‐end observability. Join us on our fast trajectory to build … Lambda, KMS, GuardDuty, Security Hub, Inspector), Cloudflare (Workers, WAF, Zero Trust) IaC: AWS CDK, Terraform Security tooling: Aikido (SAST, DAST, container scanning, pen testing), 1Password, GitHub (org‐level enforcement, Advanced Security) Compliance & ops: Drata, Iru, EasyLlama Observability & IR: Datadog, Sentry, Logfire, Incident.io Languages: TypeScript (Node.js), Python ...

Expert Associate Partner, Architecture (Cybersecurity)

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
Architect experts within the Enterprise Technology team, part of Bain’s digital capabilities practice. This is a multidisciplinary group that helps clients modernise their security strategy, architecture, and programmes. The work centres on aligning cybersecurity with business goals, and in practice that means designing enterprise-wide security architectures … security work. Experience managing or mentoring junior cyber staff in a professional services environment. DevSecOps experience: implementing security gates (SAST/DAST) into CI/CD pipelines. Infrastructure as Code (Terraform, Bicep) and scripting (PowerShell, Python) for security automation. #J-18808-Ljbffr ...

Head of Security Engineering (DevSecOps & CISO)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Head of Security Engineering (DevSecOps & CISO) ABOUT the company the company is a prediction market exchange for sports and political trading, having handled over $50 billion in volume since 2010. We're upending sports betting with the fairest prices, the best technology, and a superior customer experience — powered … security incidents, including post-incident root cause analysis and corrective actions. Work with Engineering teams to build security into the SDLC — SAST, DAST, SCA, container/IaC scanning in CI/CD — without becoming a delivery bottleneck Implement controls across AWS, Kubernetes, containers, and IaC, hardening identity, secrets ...

Control Analyst CGEMJP00351508

Hiring Organisation
Jobleads-UK
Location
Sheffield, England, United Kingdom
appropriate Software Development Life Cycle (SDLC) and Deployment (DEPL) process when delivering changes to Cyber applications. Role Purpose You'll help Cybersecurity engineering and application teams meet the Bank's software delivery requirements by driving the adoption of SDLC and Deployment (DEPL) Controls across both internally developed applications … with QA/test management tools (e.g., qTest, Tricentis, Zephyr). Knowledge of application security testing/scanning concepts (SAST/DAST/MAST) and vulnerability management. Experience working with Jira/Confluence/ServiceNow/Excel Power Query/Google Data Studio. Ways of Working Comfortable ...

Lead Software Engineer- Tax & Legal Technology -108720

Hiring Organisation
KPMG UK
Location
London, UK
Employment Type
Full-time
source control and continuous integration tools as part of a team Security Practices: An understanding of application security controls like SAST, DAST, Penetration Testing, etc. Quality Focus: A DevSecOps mindset with focus on delivering value quickly and frequently What will you be doing? Deep Technical Expertise … entity framework code first data with Azure SQL or a NoSQL Databases Enterprise Expertise: Build resilient Microservice integrated via a Cloud message bus Security Practices: Comply with secure coding & infrastructure standards and policies Continuous Delivery: Assist with supporting your application using modern DevSecOps tools Quality Focus: Continuously improve ...

Cybersecurity Controls/ Data Analyst

Hiring Organisation
Cyberteam
Location
Sheffield, South Yorkshire, Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
From £500 to £600 per day £600-£650 per day (Inside of IR35)
measures. Relevant industry certification (IIBA certification, ITIL, Agile/SAFe ). Knowledge of application security testing/scanning concepts (SAST/DAST/MAST) and vulnerability management. Experience working with Jira/Confluence/ServiceNow/Excel Power Query/Google Data Studio. ...

Senior App Security Engineer: Lead Secure Platform

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Tripadvisor Experiences in London is seeking a Senior Application Security Engineer to lead security across our platform. You will design and implement advanced security measures, mentor junior engineers … shape security practices across products and infrastructure. The role requires hands-on expertise in threat modelling, vulnerability assessments, secure coding, SAST/DAST, and cloud security, with a track record of guiding teams and collaborating with product and engineering to embed #J-18808-Ljbffr ...

Senior DevSecOps Architect

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Senior DevSecOps Architect, you’ll collaborate with top cybersecurity and engineering talent, solving complex challenges and enabling safe, secure innovation. Your passion for security and drive to make a real impact are valued here. Grow your skills in a dynamic environment designed for achievers. Help us build products … Hands‐on experience in integrating a comprehensive DevSecOps tooling stack, including SAST, SCA, RASP, IAST, container and image scanning, secrets detection, and AI‐powered DAST solutions. Experience implementing and managing SBOMs to track internal, third‐party risk and supply chain security. Ability to solve design and functionality problems independently. Strong ...

DevSecOps Engineer - AI

Hiring Organisation
HCLTech
Location
London, UK
Employment Type
Full-time
Privacy Notice. This is a hybrid opportunity requires 3 days/week onsite in London. Overall profile we're hiring Senior DevSecOps Engineer Cloud Security Engineer DevSecOps Architecture Security Platform Engineer Ideal candidate summary: Someone with … 12+ years of experience who has: Deep DevSecOps implementation experience using AI GCP and Kubernetes expertise CI/CD security implementation SAST, DAST, SCA, SonarQube and Checkmarx hands-on experience Vulnerability management ownership Container and cloud security Security automation and compliance Ability to answer deep technical questions ...

SC Cleared - Senior Security Engineer - Inside IR35

Hiring Organisation
Sanderson Government and Defence
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £700 per day + Benefits
patterns, zero-trust principles, and least-privilege access across AWS, Azure, or GCP environments. Embed security into CI/CD pipelines , integrating SAST, DAST, SCA, and infrastructure-as-code scanning so vulnerabilities are caught before they ship, not after. Support threat modelling and design reviews with engineering teams, using … Azure, or GCP, including IAM design, network security, and secrets management. Experience embedding security tooling into CI/CD pipelines (SAST, DAST, SCA, container/IaC scanning). Proficiency in at least one scripting/programming language (Python, Go, or similar) for building security automation and tooling. ...

DevOps Engineer 2 (Intermediate)

Hiring Organisation
Jobleads-UK
Location
Belfast City District, Northern Ireland, United Kingdom
high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination … industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle. DevOps Engineer 2 (Intermediate) Sr. DevOps Engineer will be a key player on the Cloud Operations team responsible for all SaaS and Hosted services across ...

DevOps Engineer Manager

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Docker, etc), and cloud-based architectures. Knowledge of automated code scanning and security testing throughout the software development lifecycle (SCA, SAST, DAST, etc.), implementing IT security best practices (e.g., Azure Key Vault, Azure Active Directory). Expertise and experience working with AI to accelerate client delivery – GitHub … Claude preferred Microsoft Certified: DevOps Engineer Expert (AZ-400) About you Characteristics of who we are looking for: Be a leader and manage a dynamic team to drive project success and foster collaboration Be an adviser to emerging technologists on career growth opportunities, as well as provide performance reviews ...

Senior Vulnerability Manager

Hiring Organisation
Jobleads-UK
Location
Belfast City District, Northern Ireland, United Kingdom
high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination … industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle. The Senior Vulnerability Management Engineer owns the enterprise vulnerability management program across cloud, endpoint, and application surfaces, driving risk-based identification, prioritization, automated remediation ...

Product Manager

Hiring Organisation
AppCheck Ltd
Location
Leeds, UK
Employment Type
Full-time
love to hear from you. About AppCheck: AppCheck helps organisations identify and manage cyber risk across web applications, APIs and infrastructure. AppCheck develops information security software that provides clients with vulnerability detection and reporting services for web applications and hosted infrastructure. We provide unparalleled detection across … context. Prior experience in the cybersecurity industry in either a technical or commercial capacity; experience with automated security testing technologies such as DAST/SAST is an advantage but not a must. Experience of working with SaaS/reseller networks. Experience of driving product delivery for users ...

Enterprise Software Architect

Hiring Organisation
Jobleads-UK
Location
Bromley, England, United Kingdom
wide architectural vision across software systems and applications. This role ensures that technology solutions align with business needs while maintaining the highest standards of security, performance, scalability, and quality. As a trusted advisor to senior leadership, the role influences long‐term technology strategy, leads complex transformation initiatives (e.g., Micro … OWASP Top 10, WCAG, OAuth2, MFA, and secure identity patterns. Quality & Assurance: Proficient in unit testing frameworks; governance and execution of SAST, DAST, SCA, and penetration testing processes. #J-18808-Ljbffr ...

Principal Data Engineer

Hiring Organisation
Jobleads-UK
Location
Belfast City District, Northern Ireland, United Kingdom
high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination … industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle. What you’ll do Lead the design and build-out of cross-product data services for multiple product lines from one governed data plane. Define ...

Senior Consultant, DE, TC, FS

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Consultant role is for a practical hands-on engineer who can set up projects, automate pipelines, support cloud environments and collaborate with development, operations, security and client teams to improve delivery speed, resilience and control. Key responsibilities Set up and configure new projects in Azure DevOps, GitHub, GitLab … deployment troubleshooting PowerShell, Bash, Python or Azure CLI for automation, remediation, deployment support and operational tooling Security & DevSecOps SonarQube or similar, SAST/DAST/SCA concepts, secrets management, policy-as-code awareness and secure SDLC practices Monitoring & operations Azure Monitor, Application Insights, Log Analytics, Grafana, Prometheus ...

Senior DevSecOps Engineer

Hiring Organisation
Synergize Consulting Limited
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract, Work From Home
DevSecOps Engineer Reading (Hybrid working available) Active SC Clearance required Up to £71 p/h Inside IR35 We're looking for an experienced security cleared Senior DevSecOps Engineer to play a key role in delivering secure digital platforms for high-profile Defence and Aerospace programmes. You'll lead … Templates or Ansible) Experience securing Kubernetes and containerised environments Knowledge of Zero Trust Architecture, IAM, RBAC and Privileged Access Management (PAM) Experience implementing SAST, DAST, SCA, container scanning and secrets management Strong scripting skills with PowerShell, Python or Bash Experience with SIEM, SOAR, logging and observability platforms Good understanding ...

Forward Deployed Engineer

Hiring Organisation
MarkIT Placements
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Work From Home
there is a genuine use case. Production & Engineering You'll own solutions all the way into production, including: Infrastructure and deployment. AI evaluation and testing frameworks. MCP server implementation. Cloud deployment across AWS, Azure, Cloudflare or Vercel . Docker, Kubernetes and/or serverless architectures. TDD and robust software … engineering practices. Security, secrets management and SAST/DAST. Structured logging, monitoring, metrics and tracing. Automated CI/CD using tools such as GitHub Actions or Jenkins . Performance, scalability and cost optimisation. Operational ownership of the systems you build. Leadership & Mentoring Although this is an individual contributor role ...