151 to 175 of 199 OWASP Jobs in the UK

Pen Tester

Location
United Kingdom
deliver the following: Web application testing API testing External & Internal Infrastructure testing (including build reviews) Mobile application testing (including knowledge of standards such as OWASP MASVS) Experience testing in any of the following areas is also desirable: Compiled application testing Cloud security reviews (including AWS & Azure) Development and upskilling opportunities ...

PHP / Laravel Developer

Location
Hadleigh, England, United Kingdom
HTML and CSS* MySQL or similar relational databases* RESTful API development and integration* Git/GitHub* Understanding of secure web development practices* Awareness of OWASP and common web application vulnerabilities* Ability to confidently work within an existing production codebaseExperience with Claude Code, Anthropic or other AI coding assistants would ...

Penetration Tester

Hiring Organisation
DGH Recruitment
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£55,000
engagement, and plan testing that meets their assurance needs. * Apply manual and tool-assisted testing techniques aligned with recognised methodologies and frameworks, including the OWASP Web Security Testing Guide, PTES, and MITRE ATT&CK. * Deliver Cyber Essentials Plus assessments, including scoping, conducting the required technical tests, verifying remediation and supporting ...

Software Engineer

Location
Horsham, England, United Kingdom
AWS. You think in quality and resilience: You understand performance, reliability, scalability and secure design, and you work with established frameworks and OWASP practices. You get leverage from tools: You know how to use AI coding agents effectively without outsourcing your judgement. You keep things simple: You weigh existing tools ...

Senior Front-End Developer

Location
Greater London, England, United Kingdom
setups (Nx, Turborepo), Storybook, Playwright/Cypress, Vitest/Jest Performance monitoring (Lighthouse, Web Vitals) and logging/observability Security best practices (CSP, SRI, OWASP, dependency auditing) CDN, edge functions, SSR/SSG, ISR architectures Micro-frontend or design-system experience #J-18808-Ljbffr ...

PHP / Laravel Developer

Location
Benfleet, England, United Kingdom
MySQL underneath. The platform handles customer and payment data, so writing secure code is a core part of the job. Awareness of the OWASP Top 10 matters here. The team is also going through a real shift in how it uses AI. Claude Code is the go to tool ...

Senior Software Engineer - GraphAware Hume

Location
United Kingdom
/CD pipelines, containerization (Docker), and automated deployment workflows Strong security mindset, with practical knowledge of secure software design and common vulnerabilities (e.g., OWASP) Comfortable with remote team collaboration, i.e. tools and practices for asynchronous communication Bonus Points For Familiarity With Graph technologies: Cypher, Neo4j, knowledge graph Event-driven architectures ...

Senior Software Architect

Location
Southampton, England, United Kingdom
ramp on a new AI tool or technique in days, not months. You will have an advantage if you also have: Security best practice (OWASP top ten) Windows services Experience using AI tooling specifically in the architect role - for design review, ADR drafting, threat modelling, contract design, or similar. Familiarity ...

Technical Security Consultant

Location
Greater London, England, United Kingdom
including SAST, SCA, DAST, secrets scanning, IaC scanning, API security, threat modelling and CI/CD security. Map controls against frameworks including NIST SSDF, OWASP SAMM and OWASP DSOMM. Review security tooling and integrations across GitHub, GitLab, CI/CD and cloud environments. Conduct control-effectiveness assessments, evidence reviews ...

Founding Security Engineer: Build Security for AI Litigation

Location
Greater London, England, United Kingdom
ensure we are secure and demonstrably so to our customers. You’ll embed secure-by-design practices, monitor for irregular behaviour, align with OWASP Top 10 and AWS Well-Architected, and lead risk assessments and policy documentation under ISO 27001 ISMS. #J-18808-Ljbffr ...

Cyber Security Consultant

Hiring Organisation
Atrium Associates Ltd
Location
Nationwide, United Kingdom
Employment Type
Permanent
Security Technical Knowledge Required Windows and Linux Operating Systems Active Directory TCP/IP, DNS, Switching and Firewall Technologies Hyper-V and VMware Virtualisation OWASP Top 10 Vulnerabilities Vulnerability Management tools such as Nessus, Qualys or similar Certifications Required To be considered for this role, candidates must hold ...

Senior Manager, Security Architecture

Location
Manchester, England, United Kingdom
guardrails. Nice to have Working familiarity with AI security standards and references such as the NIST AI RMF, ISO 42001, MITRE ATLAS, or the OWASP LLM Top 10. Hands‐on experience with policy‐as‐code and turning standards into enforced controls. Contributions to security standards, frameworks, or industry practice. ...

Senior Manager, Security Architecture

Location
Greater London, England, United Kingdom
guardrails. Nice to have Working familiarity with AI security standards and references such as the NIST AI RMF, ISO 42001, MITRE ATLAS, or the OWASP LLM Top 10. Hands‐on experience with policy‐as‐code and turning standards into enforced controls. Contributions to security standards, frameworks, or industry practice. ...

AI Security Architect: Secure AI & Compliance

Location
United Kingdom
engage with executives to translate complex AI security requirements into actionable controls. The role requires 5+ years in cybersecurity with consulting exposure, knowledge of OWASP LLM Top 10 and MITRE ATLAS, and strong communication skills for diverse audiences. #J-18808-Ljbffr ...

Response Engineer – Cloudflare Managed Defense Center (CMDC)

Location
Greater London, England, United Kingdom
advanced Security Operations, or high-level Technical Support/Incident Response for enterprise infrastructure Proven capability to handle both Application Security (including knowledge of OWASP Top 10 vulnerabilities, L7 WAF, HTTP/S anomalies, Bot mitigation) and Network Security (L3/L4 volumetric DDoS, protocol abuse) Working knowledge of threat ...

Senior Fullstack Engineer - NestJS Vue

Hiring Organisation
Hireful
Location
Central London, London, United Kingdom
Employment Type
Contract, Work From Home
data modelling. Migrations, indexes, and a sense of what a query actually costs. - Security as a working habit. Authentication and authorisation, tenant isolation, the OWASP Top 10, secret handling, validation at the trust boundary. We'll go into this in the interview, and again every week. - Architecture judgement. ...

AI Security Consultant

Location
Greater London, England, United Kingdom
practical terms. Experience with AI governance, responsible AI, model risk management or AI assurance. Familiarity with frameworks and guidance such as NIST AI RMF, OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations ...

Web Developer

Hiring Organisation
IT Talent Solutions
Location
Basildon, Essex, United Kingdom
Employment Type
Permanent
Salary
£40000 - £55000/annum
C#, MVC, ASP.NET Core, JavaScript, HTML & CSS Experience debugging, profiling and deploying web applications Solid understanding of MVC patterns, ASP.NET controllers & web security (OWASP) Comfortable working with IIS Exposure to frameworks like React, Vue, Angular or Knockout is a plus Degree in Computer Science or related field preferred ...

Director of AI Security & Cloud Defense

Location
City of Westminster, England, United Kingdom
sales to guard customer data and regulatory readiness. You will drive AI security integration, incident command, tabletop exercises, and risk management using NIST/OWASP frameworks, while mentoring a global security team. #J-18808-Ljbffr ...

Response Engineer - Cloudflare Managed Defense Center (CMDC)

Location
Greater London, England, United Kingdom
advanced Security Operations, or high-level Technical Support/Incident Response for enterprise infrastructure Proven capability to handle both Application Security (including knowledge of OWASP Top 10 vulnerabilities, L7 WAF, #J-18808-Ljbffr ...

Software Development Engineer in Test

Location
Swansea, Wales, United Kingdom
WCAG 2.2 standards using automated tools (such as axe‐core or Pa11y) and manual screen‐reader testing, while embedding security testing practices (e.g., OWASP Top 10, DAST with OWASP ZAP or Burp Suite) within the delivery pipeline in support of secure‐by‐design principles. Shift‐Left Quality: Collaborate closely with ...

Application Security Engineer

Hiring Organisation
Spencer Rose Ltd
Location
United Kingdom
Employment Type
Permanent
Salary
GBP 55,000 Annual
Looking ForEssential Experience Proven experience in Application Security with practical vulnerability remediation and code review responsibilities. Strong understanding of common vulnerability classes including: OWASP Top 10 Injection vulnerabilities Authentication and authorisation flaws SSRF Deserialisation vulnerabilities API security risks Hands-on experience implementing and operating SAST, DAST, and SCA tooling within … Core Technology Stack Java Python C++ C# SonarQube Snyk SAST DAST Software Composition Analysis (SCA) CI/CD Pipelines Threat Modelling Secure Coding Standards OWASP Top 10 API Security Vulnerability Management Software Supply Chain Security ...

Senior Platform Security Engineer - Core Services

Location
Greater London, England, United Kingdom
over 8 years of experience and a strong focus on security feature design, authentication workflows, and extensive knowledge of secure coding practices, including OWASP Top 10. Additional perks include equity options, private medical insurance, and a hybrid working model. #J-18808-Ljbffr ...

Lead Security Engineer

Hiring Organisation
Hackajob Ltd
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Permanent
Expertise in Continuous Security, Continuous Integration and Continuous Delivery techniques Knowledge of international security standards and regulations such as NCSC, NIST, CIS, PCI, GDPR, OWASP ASVS, HIPPA, SOC2 etc. Knowledge of typical cyber security attack vectors (e.g. OWASP Top 10, SQL, XSS, XXE, MITM etc.) and can articulate threats … equivalent) Experience of working with the external penetration test companies to translate report findings into actionable tasks. Experience with security tools (e.g. Burp Suite, OWASP-ZAP, NMAP, Nessus, Kali, Metasploit etc.) Knowledge about main cyber security areas (e.g. OSINT, network scanning, enumeration, sniffing, session hijacking, social engineering, firewalls, honeypots ...

Mobile Security Engineer — RASP

Location
United Kingdom
What You’ll Work With On the mobile‐security side, you’ll work across the RASP and broader mobile threat‐and‐defence landscape, including: OWASP MASVS/MASTG, Frida, Xposed and Magisk, Emulators, iOS toolchains — Swift/Objective‐C, Android toolchains — Kotlin/Java, Symbol obfuscation and binary hardening, Secure … Docker fundamentals. RASP and MTD — hands‐on knowledge of RASP and the mobile threat‐and‐defence landscape in which it operates. Standards — familiarity with OWASP MASVS/MASTG and the mobile attacker toolkit, including Frida, Xposed, Magisk and emulators. Evaluation and pre‐sales — ability to evaluate competing security products ...