1 to 25 of 28 Static Application Security Testing Jobs in the UK excluding London

Application Security Specialist

Hiring Organisation
Searchability (UK) Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
INFORMATION SECURITY SPECIALIST (APPLICATION SECURITY) Manchester or Stoke-on-Trent (Hybrid) KEY POINTS * Application Security focused role * Hybrid working - Manchester or Stoke-on-Trent * Secure Development Lifecycle, AppSec tooling, CI/CD integration * Salary up to £80,000 DOE ABOUT THE CLIENT Due to continued … required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Application Security, AppSec, OWASP, Threat Modelling, SAST, DAST, CI/CD Security, Secure SDLC, Penetration Testing, Code Review, Supply Chain Security, Automation, AI Security ...

Senior Application Security Engineer

Hiring Organisation
Nextech
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 per annum
Title: Senior Application Security EngineerSalary: £70,000Location: Reading/remote About the Organisation Join a fast-growing UK technology and consulting firm that's investing heavily in cutting-edge cyber security. With a strong focus on innovation, collaboration, and professional development, this company empowers its people to shape … software are secure by design. Drive vulnerability management and implement a risk-based approach across the technology stack. Perform security testing (SAST, DAST, SCA) and work with developers to remediate findings. Support cloud security controls (primarily Azure, including cloud-native apps). Champion secure development, threat modelling ...

Head of Product Security

Hiring Organisation
Be-IT Resourcing
Location
Manchester, Lancashire, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
years in a demonstrable leadership capacity.• Strong technical grounding in application security, cloud security, and DevSecOps.• Hands-on experience with SCA, SAST, DAST, CSPM, CNAPP • Excellent practical familiarity with industry frameworks such as OWASP and NIST.• Proven ability to drive organisational change and influence senior stakeholders.• Excellent … related services Keyword Terminology Application Security, Product Security, AppSec, Cloud Security, DevSecOps, Secure-by-Design, SDLC Security, OWASP, NIST, SAST, DAST, SCA, CSPM, CNAPP, CISSP, CISM, CISA, Security Frameworks, GDPR, ISO 27001, Risk Management, Security Governance ...

Lead Application Security Engineer

Hiring Organisation
Anson Mccade
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent, Work From Home
Lead Application Security Engineer £70,000 to 90,000 GBP Bonus Hybrid WORKING Location: Glasgow, Scotland - United Kingdom Type: Permanent Application Security Engineering Lead Location: Glasgow or Greater Manchester (2 days per week in your closest site) Salary: £70,000-£90,000 + bonus DOE Sponsorship … fostering skill development. Required Experience & Skills Strong knowledge of software security, including CVEs, CWEs, and common vulnerability types. Hands-on experience with SAST, SCA, and DAST tools. Proficiency in at least one programming language (e.g., Java, Go). Experience with at least one major cloud platform (AWS, GCP, Azure ...

DevSecOps Engineer

Hiring Organisation
Fruition Group
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
maintain security controls across cloud infrastructure using Infrastructure as Code, with a security-first mindset. Automate security testing processes, including SAST, DAST and IAST, enabling early detection and remediation of vulnerabilities. Conduct and support regular automated security assessments, vulnerability scans and remediation planning. Build … CloudFormation. Deep knowledge of securing AWS-based environments, container platforms (Docker, Kubernetes) and cloud-native services. Experience implementing and managing security tools including SAST, DAST, vulnerability scanners and container security tools. Strong scripting and automation skills using Bash, Python or similar languages. Experience with monitoring, logging and SIEM ...

Application Security Engineering Lead.

Hiring Organisation
Radley James
Location
Glasgow, Scotland, United Kingdom
Develop and implement security services for developers. Build APIs and software solutions to safeguard systems and sensitive data. Apply your expertise in SAST, SCA, and software vulnerabilities. Collaborate with developers and security teams to embed security best practices. Influence technical direction and guide less experienced engineers. What … looking for: Strong software engineering background (Go preferred; Java secondary; Python nice-to-have). Experience in application security, including SAST/SCA/DAST and secure coding practices. Knowledge of REST APIs, HTTP authentication, Linux, and scripting/automation. Familiarity with at least one major cloud provider ...

Senior Cybersecurity Officer

Hiring Organisation
MW recruitment
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
client is a leading international financial services organisation seeking a senior Cybersecurity professional to take ownership of information security, cybersecurity and data security across the business. This role acts as the first line of defence within IT and plays a critical part in safeguarding systems, data and infrastructure … Review and optimise network and firewall policies to ensure effectiveness and necessity • Oversee application security across development and testing phases, including SAST and DAST • Monitor and assess data leakage risks and strengthen encryption controls for data at rest, in transit and in use Key Skills and Experience ...

AppSec Engineer / Application Security Engineer

Hiring Organisation
Atrium Workforce Solutions Ltd
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£550 - £650 per day
Contract Role – AppSec Engineer/Application Security Engineer – London/Manchester/Glasgow/Hybrid – 12 months initial – Inside IR35 Role Overview: Job Title: AppSec Engineer/Application Security Engineer Location: Hybrid – 2 days onsite per week (London/Manchester/Glasgow) Contract Type: Contract Duration … Inside IR35) Sector: Banking Key Skills & Experience AppSec Engineer, experience with: The software security landscape: CVEs, CWEs, common software vulnerability types SAST, SCA, and DAST, including the strengths and weaknesses of each At least one programming language (e.g. Java, Go) At least one major cloud provider (e.g. ...

Product Security Specialist

Hiring Organisation
Hargreaves Lansdown
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time
Product Security Specialist (PSS) at HL, you will be a key member of a collaborative team of security professionals dedicated to safeguarding HL's products and services. In this role, you will serve as the primary security contact for assigned product teams/squads, providing expert guidance … preferred. Knowledge of security principles, practices, and frameworks, such as OWASP, NIST, and ISO. Awareness of security tools and technologies, such as SAST, DAST, IAST, SCA, WAF, IDS, IPS. Experience in conducting threat modelling and risk assessments. Interview process The interview process for this role is two stages ...

Security Engineer DevSecOps - £85K Benefits

Hiring Organisation
Morgan McKinley
Location
Kent, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Senior Security Engineer/DevSecOps Engineer Location: Multiple locations across the UK (hybrid & flexible)Salary: Up to £85,000 + comprehensive benefits package The Opportunity A large-scale digital organisation is undertaking a significant technology transformation, building modern cloud platforms that support millions of users across consumer and enterprise … cloud-native workflows Knowledge of secure development frameworks and practices (e.g. OWASP-based approaches) Experience with application security tooling such as SAST, SCA, DAST, or container security Understanding of cloud networking, identity, access management, and secure integrations Ways of Working Comfortable working as part of a cross ...

Security Engineer DevSecOps - £85K Benefits

Hiring Organisation
Morgan McKinley
Location
North Yorkshire, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Senior Security Engineer/DevSecOps Engineer Location: Multiple locations across the UK (hybrid & flexible)Salary: Up to £85,000 + comprehensive benefits package The Opportunity A large-scale digital organisation is undertaking a significant technology transformation, building modern cloud platforms that support millions of users across consumer and enterprise … cloud-native workflows Knowledge of secure development frameworks and practices (e.g. OWASP-based approaches) Experience with application security tooling such as SAST, SCA, DAST, or container security Understanding of cloud networking, identity, access management, and secure integrations Ways of Working Comfortable working as part of a cross ...

Security Engineer DevSecOps - £85K Benefits

Hiring Organisation
Morgan McKinley
Location
South West, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Senior Security Engineer/DevSecOps Engineer Location: Multiple locations across the UK (hybrid & flexible)Salary: Up to £85,000 + comprehensive benefits package The Opportunity A large-scale digital organisation is undertaking a significant technology transformation, building modern cloud platforms that support millions of users across consumer and enterprise … cloud-native workflows Knowledge of secure development frameworks and practices (e.g. OWASP-based approaches) Experience with application security tooling such as SAST, SCA, DAST, or container security Understanding of cloud networking, identity, access management, and secure integrations Ways of Working Comfortable working as part of a cross ...

DevSecOps Engineer

Hiring Organisation
Big Red Recruitment
Location
Nottingham, Nottinghamshire, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £65,000 per annum, Inc benefits
looking for a hands-on DevSecOps Engineer to take ownership of application and cloud security across a modern, Azure-first product environment. This is a product-focused security role, sitting at the intersection of development, DevOps and security, helping teams understand why vulnerabilities exist … automation and education. The role: Act as the DevSecOps lead, owning application and cloud security practices across the business Analyse outputs from SAST and DAST tools (e.g. Snyk, BrightSec), understanding vulnerabilities at a low level and advising development teams on remediation Work closely with DevOps to ensure secure ...

DevSecOps Engineer

Hiring Organisation
Big Red Recruitment Midlands Limited
Location
G2 2LH, Glasgow, City of Glasgow, United Kingdom
Employment Type
Permanent
Salary
£60000 - £65000/annum
looking for a hands-on DevSecOps Engineer to take ownership of application and cloud security across a modern, Azure-first product environment. This is a product-focused security role, sitting at the intersection of development, DevOps and security, helping teams understand why vulnerabilities exist … automation and education. The role: Act as the DevSecOps lead, owning application and cloud security practices across the business Analyse outputs from SAST and DAST tools (e.g. Snyk, BrightSec), understanding vulnerabilities at a low level and advising development teams on remediation Work closely with DevOps to ensure secure ...

Security Engineer

Hiring Organisation
Tenth Revolution Group
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £85,000 per annum, Inc benefits
Security Engineer Salary: Up to £85,000 (depending on experience) Locations: London, Leeds, Middlesbrough, Bristol or Bournemouth Working Pattern: Hybrid - two days per week in one of the above offices Overview: An established enterprise organisation is undertaking enhancements to its digital platforms as part of an ongoing modernisation strategy.As …/IP, UDP, HTTP/3, AMQP, streaming protocols), cloud networking concepts (VPNs, subnets, regions/zones) and integration technologies Hands-on experience with SAST and SCA tools such as Snyk and Checkmarx Experience with DAST tools such as OWASP ZAP or Qualys DAST (preferred), ideally working with HTTP APIs ...

Test Manager Connected Services

Hiring Organisation
Signet Resources
Location
Bracknell, Berkshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£600 per day
immediately available Test Manager with experience in connected vehicle ecosystems, IoT, or automotive software testing? This role provides leadership and oversight across all test activities, from planning through execution to sign-off, with accountability for ensuring that solutions are robust, reliable, and fit for purpose. The Test Manager will … distributed systems and microservices architectures. Working knowledge of OWASP standards, common security vulnerabilities, and experience conducting or coordinating security testing including SAST, DAST, and penetration testing. Understanding of authentication and authorization frameworks (OAuth, JWT, SAML) and familiarity with secure coding practices and threat modelling Experience in test ...

Security Engineer

Hiring Organisation
Anson Mccade
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Security Engineer £50,000 to 67,000 GBP Bonus Hybrid WORKING Location: Manchester, North West - United Kingdom Type: Permanent Security Engineer - API, IAM & Automation Locations: Glasgow, Greater Manchester or Northampton (Hybrid) Salary: Up to £67,000 base + bonus (DOE) The Role We're looking for a Security … Background in Security Engineering, DevSecOps, SRE, or Platform Engineering. Desirable Experience integrating security into CI/CD pipelines. Knowledge of vulnerability scanning (SAST, DAST, SCA). Familiarity with container and Kubernetes security. This is an opportunity to play a key role in shaping secure-by-design engineering practices ...

Technical Architect

Hiring Organisation
Bright Purple Resourcing
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent
Salary
£90,000
pipelines and reusable modules, guardrails, andpolicyascodeto support secure, consistent cloud adoption. Applyendtoendsecurity across identity, networking, encryption, secrets, MFA, andzerotrust. Implement automated security scanning (SAST/DAST), dependency checks, and secure pipeline patterns, aligning platforms withorganisationaland regulatory standards. Work across the full project lifecycle. About You: Experienced in designing … Experience of the following would be advantageous: Consulting or client facing project leadership experience Experience with .NET of Python Familiar with cloud-native security tooling If you are looking to join a leading consultancy specialising in Digital, Security and AI solutions then this is the role for you. ...

Technical Architect

Hiring Organisation
Bright Purple Resourcing
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£90,000
pipelines and reusable modules, guardrails, andpolicyascodeto support secure, consistent cloud adoption. Applyendtoendsecurity across identity, networking, encryption, secrets, MFA, andzerotrust. Implement automated security scanning (SAST/DAST), dependency checks, and secure pipeline patterns, aligning platforms withorganisationaland regulatory standards. Work across the full project lifecycle. About You: Experienced in designing … Experience of the following would be advantageous: Consulting or client facing project leadership experience Experience with .NET of Python Familiar with cloud-native security tooling If you are looking to join a leading consultancy specialising in Digital, Security and AI solutions then this is the role for you. ...

Senior Golang/Java Security Engineer

Hiring Organisation
Atrium Workforce Solutions Ltd
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£600 - £650 per day
Contract Role – Senior Golang/Java Security Engineer – London/Manchester/Glasgow/Hybrid – 12 months initial – Inside IR35 Role Overview: Job Title: Senior Golang/Java Security Engineer Location: Hybrid – 2 days onsite per week (London/Manchester/Glasgow) Contract Type: Contract Duration: 12 months … Golang/Java Security Engineer experience with: Golang/Go or Java The software security landscape: CVEs, CWEs, common software vulnerability types SAST, SCA, and DAST, including the strengths and weaknesses of each At least one major cloud provider (e.g. AWS, GCP, Azure) REST API design HTTP Authentication ...

DevOps Engineer

Hiring Organisation
Stott & May Professional Search Limited
Location
Sheffield, South Yorkshire, Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
£485 - £525 per day
scan, and deployment processes. Extend Python tooling for SLSA provenance, SBOM generation, hash/digest validation, and security scan aggregation (SonarQube, Sonatype IQ, SAST/Container). Optimise pipeline performance using parallel builds, caching, scope-reduced BOMs, and dependency prefetching. Ensure artifact integrity through correct SHA1/SHA256 mapping … Terraform, and container image metadata. Knowledge of supply-chain security, including SLSA, CycloneDX SBOMs, and digests. Experience with SonarQube, Sonatype IQ, container and SAST scanning. Proven skills in pipeline performance tuning, including caching, parallelisation, and dependency pruning. Awareness of compliance and security standards relevant to CI/ ...

API Platform Architect

Hiring Organisation
Hellowork Consultants
Location
Slough, Berkshire, UK
Employment Type
Full-time
continuous evolution of our enterprise API Platform. This role is fully hands-on, combining deep expertise in Azure cloud services, Kubernetes, Terraform, API security, and distributed systems with the ability to guide, review, and contribute to .NET Core API development practices. The architect will define and maintain the vision … pipeline definition for APIM deployments, testing, API versioning, and documentation automation. Establish CI/CD pipelines for Terraform, .NET API builds, image scanning, SAST/DAST, compliance enforcement. 8. Hands-On .NET Core API Integration & Code Reviews Review .NET Core API implementations to ensure correct API design, platform alignment ...

Senior Azure Cloud Engineer

Hiring Organisation
ARC IT Recruitment Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
appoint a Senior Azure Cloud Engineer. This is a hands-on senior role where youll take ownership of Azure infrastructure, DevOps practices, and cloud security, working closely with architects and development teams in an agile environment. The platform is API-driven and operates at scale, so reliability, performance … security Proven Infrastructure-as-Code expertise (Terraform, Bicep/ARM) Experience with Azure DevOps, GitHub, and CI/CD pipelines Familiarity with DevSecOps, SAST/DAST, and cloud monitoring Confident communicator with a pragmatic, delivery-focused mindset This is an opportunity to join a business where cloud engineering ...

Senior Azure Cloud Engineer

Hiring Organisation
Arc IT Recruitment
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £85,000 per annum
Senior Azure Cloud Engineer. This is a hands-on senior role where you’ll take ownership of Azure infrastructure, DevOps practices, and cloud security, working closely with architects and development teams in an agile environment. The platform is API-driven and operates at scale, so reliability, performance, and securitysecurity Proven Infrastructure-as-Code expertise (Terraform, Bicep/ARM) Experience with Azure DevOps, GitHub, and CI/CD pipelines Familiarity with DevSecOps, SAST/DAST, and cloud monitoring Confident communicator with a pragmatic, delivery-focused mindset This is an opportunity to join a business where cloud engineering ...

DevOps Engineer

Hiring Organisation
CBSbutler Holdings Limited
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Contract
extend Python tooling for: SLSA provenance SBOM generation (CycloneDX) Hash/digest accuracy (SHA1/SHA256) Security scan aggregation (SonarQube, Sonatype IQ, SAST, container scanning) Optimise pipeline performance through parallelisation, caching, dependency prefetching, and BOM scope reduction. Ensure artifact integrity and reproducibility , including evidence modelling and digest validation. Refactor … container image metadata . Solid experience with software supply-chain security (SLSA, CycloneDX SBOMs, digests). Hands-on use of SonarQube, Sonatype IQ, SAST, and container scanning tools . Proven ability to optimise CI/CD performance (caching, parallel builds, dependency pruning). Awareness of compliance and secure ...