12 of 12 Remote/Hybrid Static Application Security Testing Jobs in the UK

Senior Application Security Engineer / DevSecOps Engineer

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
have a background in Application Security, DevSecOps or Product Security, with hands-on experience embedding application security into the SDLC If so, this could be an opportunity worth considering. Join a well-established health research organisation and charity supporting large-scale medical research. You will … controls and cloud security governance. Experience with KQL. Experience securing APIs, internet-facing services, Kubernetes, preferably AKS, and containerised environments. Experience with SAST, DAST, IAST and SCA. Knowledge of security automation, security-/policy-as-code and secure engineering practices. Familiarity with GitHub and GitHub Actions. ...

Senior Application Security Consultant (SAST/DAST/OWASP )

Hiring Organisation
Salt
Location
London, United Kingdom
Employment Type
Contract
Senior Application Security Consultant (SAST/DAST/OWASP )/DevSecOps Security - Banking - London Secure SDLC | SAST | DAST | Threat Modelling | Cloud Security | CI/CD Location: London (Hybrid - 8 days onsite per month) Contract: 12 Months + extension Rate: £500-£550 per day (Umbrella) The Opportunity … similar methodologies. Embed Secure SDLC principles into engineering teams. Integrate security tooling into CI/CD pipelines and DevSecOps processes. Review and analyse SAST, DAST and Software Composition Analysis (SCA) findings. Work closely with development teams to prioritise vulnerability remediation. Define security testing requirements and support penetration ...

Application Security Engineer

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
doing: Were on a mission to build a tech-forward, secure environment that empowers developers rather than putting roadblocks in their way. As an Application Security Engineer, youll act as a core technical guide across our software development lifecyclehelping us embed security directly into our code … technical mentor. Integrate security assessments, code reviews, and penetration testing seamlessly into the SDLC. Evaluate, implement, and run modern security tooling (SAST, DAST, IAST) to streamline vulnerability checks. Research emerging AI and LLM threat classes to design proactive, cutting-edge defensive architectures. Participate in incident response investigations ...

Lead Security Assurance Engineer

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£90,000
severity, backlog age, coverage, recurrence rate) to senior stakeholders. Drive security into the team's normal rhythm. Embed threat modelling, secure code review, SAST, SCA, dependency policy, and container scanning into design and delivery cycles - making security a shared engineering responsibility rather than a specialist handover … practice familiarity Familiarity with structured threat modelling approaches - STRIDE, MITRE ATT&CK, attack trees - and experience embedding these into agile delivery ceremonies Experience integrating SAST, SCA, dependency scanning, and container security tooling into CI/CD pipelines as part of a shift-left security approach Made Tech sponsors ...

Forward Deployed Engineer

Hiring Organisation
MarkIT Placements
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Work From Home
there is a genuine use case. Production & Engineering You'll own solutions all the way into production, including: Infrastructure and deployment. AI evaluation and testing frameworks. MCP server implementation. Cloud deployment across … Azure, Cloudflare or Vercel . Docker, Kubernetes and/or serverless architectures. TDD and robust software engineering practices. Security, secrets management and SAST/DAST. Structured logging, monitoring, metrics and tracing. Automated CI/CD using tools such as GitHub Actions or Jenkins . Performance, scalability and cost optimisation. ...

Product Manager

Hiring Organisation
AppCheck Ltd
Location
Leeds, England, United Kingdom
love to hear from you. About AppCheck: AppCheck helps organisations identify and manage cyber risk across web applications, APIs and infrastructure. AppCheck develops information security software that provides clients with vulnerability detection and reporting services for web applications and hosted infrastructure. We provide unparalleled detection across … experience in the cybersecurity industry in either a technical or commercial capacity; experience with automated security testing technologies such as DAST/SAST is an advantage but not a must. Experience of working with SaaS/reseller networks. Experience of driving product delivery for users in the global ...

Senior DevSecOps Engineer

Hiring Organisation
Synergize Consulting Limited
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract, Work From Home
DevSecOps Engineer Reading (Hybrid working available) Active SC Clearance required Up to £71 p/h Inside IR35 We're looking for an experienced security cleared Senior DevSecOps Engineer to play a key role in delivering secure digital platforms for high-profile Defence and Aerospace programmes. You'll lead … Templates or Ansible) Experience securing Kubernetes and containerised environments Knowledge of Zero Trust Architecture, IAM, RBAC and Privileged Access Management (PAM) Experience implementing SAST, DAST, SCA, container scanning and secrets management Strong scripting skills with PowerShell, Python or Bash Experience with SIEM, SOAR, logging and observability platforms Good understanding ...

Senior Vulnerability Management Engineer

Hiring Organisation
HCLTech
Location
London Area, United Kingdom
www.hcltech.com Job Title : Senior Vulnerability Management Engineer Location: London, UK ( Hybrid mode at client location ) Experience: 3 – 6 years in vulnerability management/information security ROLE SUMMARY The L2 Senior Vulnerability Management Engineer owns the organisation's end-to-end vulnerability management programme, spanning EUC, Data Center, Network … estate, co-ordinate emergency patching or compensating controls, and communicate status to security leadership. • Own web application vulnerability management: integrate DAST/SAST findings (Burp Suite, Checkmarx, Veracode) into the unified VM programme. • Manage cloud vulnerability posture: AWS Inspector, Microsoft Defender for Cloud, or Prisma Cloud for hybrid ...

Senior Vulnerability Management Engineer

Hiring Organisation
HCLTech
Location
Birmingham, England, United Kingdom
days work from office Mode of contract: This is Fixed term contract(FTC or FTE) Experience 3 – 6 years in vulnerability management/information security Education B.Tech (Computer Science/Cybersecurity/IT) or equivalent ROLE SUMMARY The L2 Senior Vulnerability Management Engineer owns the organisation … estate, co-ordinate emergency patching or compensating controls, and communicate status to security leadership. Own web application vulnerability management: integrate DAST/SAST findings (Burp Suite, Checkmarx, Veracode) into the unified VM programme. Manage cloud vulnerability posture: AWS Inspector, Microsoft Defender for Cloud, or Prisma Cloud for hybrid ...

Platform Engineer

Hiring Organisation
Richmond Square Consulting Limited
Location
Cheltenham, Gloucestershire, South West, United Kingdom
Employment Type
Permanent, Work From Home
securely and efficiently. The environment is highly technical, fast-moving and low on unnecessary bureaucracy, with the opportunity to work on complex projects where security, performance and reliability genuinely matter. Package £100,000+ basic salary Discretionary bonus Benefits package Hybrid working Cheltenham Training and professional certification opportunities Exposure … secure software delivery Experience building Internal Developer Platforms (IDPs) or developer enablement platforms would be particularly interesting. Exposure to tools or concepts including Coder, SAST, DAST, SBOM generation, vulnerability scanning or policy-as-code would also be advantageous. AWS certification at Associate level or above would be beneficial ...

Platform Engineer

Hiring Organisation
Richmond Square Consulting Limited
Location
Salford, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
securely and efficiently. The environment is highly technical, fast-moving and low on unnecessary bureaucracy, with the opportunity to work on complex projects where security, performance and reliability genuinely matter. Package £100,000+ basic salary Discretionary bonus Benefits package Hybrid working Cheltenham Training and professional certification opportunities Exposure … secure software delivery Experience building Internal Developer Platforms (IDPs) or developer enablement platforms would be particularly interesting. Exposure to tools or concepts including Coder, SAST, DAST, SBOM generation, vulnerability scanning or policy-as-code would also be advantageous. AWS certification at Associate level or above would be beneficial ...

Lead FDE Production & Consulting

Hiring Organisation
Newpage Solutions
Location
City Of Bristol, England, United Kingdom
where current AI tooling helps and where it falls short. Apply engineering practices that hold up in production: TDD, secrets management and rotation,SAST/DAST, structured logging, metrics, tracing, and automated CI/CD (GitHub Actions, Jenkins). Own what you build end-to-end, including the infrastructure … tools (Claude Code, Cursor, GitHub Copilot) with demonstrable workflows, sub-agents, skills, and innovative approaches. Strong Python or TypeScript, with OOP, SOLID, 12-factor application development, and microservice architecture. You've built Next.js applications, FastAPI services, and similar. End-to-end implementation experience with vector databases, retrieval pipelines ...