126 to 150 of 199 OWASP Jobs in the UK

Lead Penetration Tester

Hiring Organisation
Morson Edge
Location
United Kingdom
Employment Type
Contract
risks are appropriately recorded and accepted. Ensure penetration testing and remediation activities align with relevant security standards, regulatory requirements and industry best practice, including OWASP, NIST, ISO 27001, PCI-DSS, GDPR and CAF. Ensure appropriate governance, documentation and evidence is maintained throughout the testing lifecycle. Provide assurance over the quality ...

Dotnet Developer

Location
United Kingdom
modern Angular which the successful candidate will have the opportunity to contribute to. Responsibilities: Ensuring code is robust, maintainable and secure in line with OWASP best practices and has appropriate unit test coverage. Ensuring code is modular and reused where appropriate, e.g. creating and maintaining NuGet packages and Angular modules ...

Lead Engineer, AI Platforms

Location
Greater London, England, United Kingdom
leadership.* Expertise in Java/Kotlin, Spring Boot, REST APIs, and MongoDB.* Experience with ReactJS, JavaScript, and TypeScript.* Strong understanding of secure coding (e.g., OWASP principles).* Strong experience with CI/CD, Git workflows, automated testing.* Experience leading AI feature development or integrating ML models into production systems.**Career ...

Backend Engineer

Hiring Organisation
Oscar Associates (UK) Limited
Location
London, United Kingdom
Employment Type
Permanent
cost. Build validation, schema enforcement and safe failure behaviour for outputs that may be well-formed yet wrong. Treat authentication, authorisation, secrets, input validation, OWASP awareness and audit trails as everyday engineering. WHAT YOU'LL BE DOING - DELIVERY AND COST Deploy and operate on AWS using EKS/ECS patterns ...

Threat Modelling Engineer

Hiring Organisation
Damia Group Ltd
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £500/day
Apply techniques including STRIDE, PASTA, Attack Trees and MITRE ATT&CK to identify and assess threats. Identify vulnerabilities using frameworks such as CWE and OWASP . Define, document and maintain appropriate security controls and mitigations. Manage the lifecycle of identified threats and associated controls. Deliver threat models and supporting activities … Trees, tooling and MITRE ATT&CK. Professional experience working within a Cyber Security/Information Security role - essential . Identifying vulnerabilities using CWE and OWASP . Security principles covering: Authentication and authorisation Logging and monitoring Encryption Infrastructure security Network security and segmentation Operating systems and security hardening. Software development concepts ...

Application Security Engineer

Location
Greater London, England, United Kingdom
independently What will you bring to the team? Experience defining controls for complex environments independent of the underlying platform or technology Detailed knowledge of OWASP Top 10, and in relation how to design appropriate security controls Experience working with Secure Coding Tools (SCA, SAST & Secrets) Experience in identifying & addressing vulnerabilities ...

Senior Offensive Security Engineer (Autonomous testing)

Location
City of Edinburgh, Scotland, United Kingdom
delivering client-facing engagements. Network testing: external and internal, Active Directory attack paths, privilege escalation, lateral movement, post-exploitation. Web and API testing: the OWASP Top 10 and, more importantly, what it misses, meaning business logic flaws, authentication and session weaknesses, and multi-step chains. Red teaming: objective-based operations ...

IT Security Engineer

Location
City of Westminster, England, United Kingdom
against web applications) Experience securing cloud-based infrastructures and solutions Previous experience working on an information security team Advanced knowledge of common security vulnerabilities (OWASP) and best practices Familiarity with SOC II controls and how to review them Experience in other technical roles (SysAdmin, Helpdesk, etc.) Strong understanding of Linux ...

Cyber Security Consultant

Location
Reading, England, United Kingdom
parties, including conflict resolution due to changing priorities. Experience of using common information security management frameworks, such as NIST, PCI, GDPR, ISO Series, OWASP the IT Infrastructure Library (ITIL), the ISF Standards of Good Practice (SoGP) and ISACA’s Control Objectives for Information and related Technology (COBIT) frameworks. Actively represent ...

Security Analyst - Risk

Location
Glasgow, Scotland, United Kingdom
whilst promoting compliance with Government security guidance to internal stakeholders. What you bring: Knowledge of security frameworks and standards such as ISO 27001, NIST, OWASP, MITRE. Experience of performing risk assessments, providing recommendations for meeting the security requirements of systems and information systems so that they remain compliant with internal ...

Application Security Consultant

Hiring Organisation
Ricoh
Location
London, United Kingdom
Employment Type
Permanent
high-risk products and services. Conduct and oversee SAST, DAST, API security, fuzz testing and architecture-level assessments . Assess applications against the OWASP Top 10 and other relevant security standards. Identify vulnerabilities, understand their root causes and translate findings into practical remediation plans. Provide secure design and coding guidance … security , including model, data and prompt/model manipulation risks. Experience delivering developer-focused security training or workshops. Knowledge of frameworks such as OWASP SAMM, ASVS, NIST CSF or NIST SSDF . Relevant application security, cloud security or offensive security certifications. Experience working across multiple teams, countries or business entities. ...

Advisory Engineer, AI and Product Security

Location
Farnborough, England, United Kingdom
assessing security controls across cloud environments, APIs, CI/CD pipelines, identity services and data platforms. Working knowledge of relevant guidance, such as OWASP guidance for LLM and agentic applications, MITRE ATLAS and cloud-provider AI security guidance. Ability to participate in incident response and product security operations as required. ...

Security Design Consultant

Location
West of England, England, United Kingdom
simultaneously. Any experience of these would be really useful Awareness of industry related security standards such as ISO 27000 series, PCI DSS, COBIT, NIST, OWASP Certifications in Security Management such as CISSP/CISM/CCSP or equivalent. Certifications in technical Security domains such as CEH/OSCP or equivalent. ...

Security Engineer

Location
Milton Keynes, England, United Kingdom
following: Security Engineering Identity & Access Management Email Security Vulnerability Management Security monitoring and logging Secure technical change Security frameworks including ISO 27001, NIST or OWASP Experience with Microsoft Defender, Purview, Intune, cloud automation or DevSecOps would be advantageous but isn't essential. What's in this for you This role ...

Security Engineer - Microsoft

Hiring Organisation
Identifi Global Resources Ltd
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
security Endpoint Protection Identity & Access Management Email Security Vulnerability Management Security monitoring and logging Secure technical change Security frameworks including ISO 27001, NIST or OWASP Experience with Microsoft Defender, Purview, Intune, cloud automation or DevSecOps would be advantageous but isn't essential. What's in this for you This role ...

IT Security Engineer (AI)

Location
Leeds, England, United Kingdom
generative AI, LLMs and AI-enabled solutions in a change environment. Knowledge of emerging AI security frameworks and standards, including NIST AI RMF, the OWASP Top 10 for LLM Applications, MITRE ATLAS and ISO 42001. The judgement to balance innovation with security, regulatory compliance and operational resilience. Clear communication skills ...

IT Security Engineer (AI)

Hiring Organisation
Leeds Building Society
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£75,000
generative AI, LLMs and AI-enabled solutions in a change environment. Knowledge of emerging AI security frameworks and standards, including NIST AI RMF, the OWASP Top 10 for LLM Applications, MITRE ATLAS and ISO 42001. The judgement to balance innovation with security, regulatory compliance and operational resilience. Clear communication skills ...

Information Security & SOC Consultant

Location
Greater London, England, United Kingdom
stakeholders. Key Skills: Knowledge and experience with technology, security and DP related compliance, legal & regulatory frameworks and standards, including Cyber Essentials, ISO27001, PCI DSS, OWASP, GDPR etc. Knowledge and experience of the Microsoft stack. Purview experience is beneficial. Ability to demonstrate expert knowledge and understanding of information security good practice. ...

Php/ Laravel Developer

Location
Hadleigh, England, United Kingdom
HTML and CSS MySQL or similar relational databases RESTful API development and integration Git/GitHub Understanding of secure web development practices Awareness of OWASP and common web application vulnerabilities Ability to understand and work effectively within an existing codebase Experience with Claude Code, Anthropic or other AI coding assistants ...

Red Team Engineer

Location
City Of London, England, United Kingdom
significant focus on web application security. Strong hands-on experience attacking and defending modern web tech stacks Proficient with offensive web toolsets (Burp Suite, OWASP ZAP) and experienced building extensions/scripts. Experience with developing and maintaining web-focused tooling and automation (Burp extensions, custom scanners, authenticated API fuzzers, GraphQL ...

Software Engineer (Data)

Location
Greater London, England, United Kingdom
stakeholders to scope problems and agree on simple but scalable solutions. Build it to enterprise standard: build to current security practice, for example the OWASP Top 10 and the AWS Well-Architected Framework. Behind the scenes Ben runs on Python 3, Django, PostgreSQL, and React, on AWS. Our data platform ...

Software Engineer, Data

Location
Greater London, England, United Kingdom
connectors Work with product and stakeholders to scope problems and agree on simple, scalable solutions Build according to security practices such as the OWASP Top 10 and AWS Well-Architected Framework Requirements Strong experience with Python and SQL A few years building and running production data pipelines that other people ...

Head of Platform Engineering

Location
Manchester, England, United Kingdom
genuinely blameless Post-Incident Review culture, building on the existing Incident Management SOP Security & Risk Embed secure coding practice, SAST/DAST scanning, and OWASP-aligned standards into the engineering definition of done Surface security risk in business terms (exposure, cost to fix vs cost to carry) and route ...

Information Security Architecture & Engineering Lead (UK-based)

Location
Greater London, England, United Kingdom
Strong stakeholder communication skills, able to advise Engineering, Product and Pre-Sales credibly. Extremely strong documentation skills. Experience with AI/LLM security testing (OWASP LLM Top 10, prompt injection, model/vendor risk assessment). Familiarity with the Microsoft 365 E5 security stack (Entra ID, Defender for Endpoint, Intune … deployment plan). AI & Emerging Risk Provide technical engineering support to the AI Security & Governance function for LLM/model security testing (OWASP LLM Top 10 etc.), including scripted test harnesses and repeatable validation tooling, where execution capacity is needed. Support technical validation of AI/cloud vendor control claims ...

Cyber Security Analyst

Hiring Organisation
Spectrum IT Recruitment
Location
Southampton, Hampshire, United Kingdom
Employment Type
Permanent
Salary
£65000/annum pension
Experience with vulnerability scanning, secure configuration assessments and remediation tracking. An understanding of common attack techniques, security monitoring and incident response. Knowledge of the OWASP Top 10 and recognised cyber security principles. An understanding of the NIST Cybersecurity Framework and NIS Regulations. Experience working towards Cyber Essentials. The ability ...