networks. • Analyze systems related to eCommerce operations (e.g. order flows, ERP/warehouse integrations, payment systems, tracking, returns). • Identify weaknesses in application and infrastructure security, ensuring alignment with OWASP and other best practices. • Translate technical findings into clear, client-ready reports and recommendations. • Conduct interviews and working sessions with tech leads, engineers, and operational stakeholders. • Provide expert technical insight … Django) and web architecture. • Experience working with eCommerce system components such as checkout flows, third-party logistics, ERP, or payment gateways. • Understanding of application and network security principles, including OWASP Top 10. • Comfortable communicating technical information to non-technical stakeholders. ⸻ ⏳ Contract Structure • Initial Scope: Project-based (2 weeks) • Ongoing Engagement: ~2–3 days/month (part-time advisory and follow More ❯
Middlesbrough, Yorkshire, United Kingdom Hybrid / WFH Options
Causeway Technologies
Understanding of current testing trends and Agile methodologies Degree in computer science, software engineering, or related field preferred Experience with API testing tools like Postman or SoapUI Knowledge of OWASP vulnerabilities and security testing ISTQB certification Experience with source control tools like Git or Bitbucket Strong problem-solving, communication, and time management skills Minimum of 5 years in a Software More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
security: Kubernetes (K8s) Security & Compliance Cloud and applicationsecurity: Cloud posture management tools (e.g. Azure Dender, GCP SCCE), WAFs (e.g. Azure WAF, Cloud Armor AWS WAF), and protection against OWASP Top 10 and emerging threats. Network & infrastructure security: Network security principles (e.g. segmentation, monitoring, intrusion detection/prevention). Any experience in Zero Trust architecture in cloud environments would be More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Experis UK
have. Desirable Skills Experience working with distributed and hybrid teams. Ability to effectively communicate complex technical concepts in non-technical terms to stakeholders. Familiarity with modern security frameworks like OWASP and SANS25. Experience with Continuous Delivery and Automated Deployment using tools like Azure DevOps. People Source Consulting Ltd is acting as an Employment Business in relation to this vacancy. People More ❯
London, England, United Kingdom Hybrid / WFH Options
M3
tools such as Jest, Cypress or similar. Proficient with source control tools like Git for collaborative development and versioning. Knowledge of secure coding practices and familiarity with standards like OWASP Top Ten and SANS CWE, with a commitment to adapting to evolving security threats through audits and ongoing education. Team-oriented with exceptional collaboration and communication skills, both verbal and More ❯
tools such as Jest, Cypress or similar. Proficient with source control tools like Git for collaborative development and versioning. Knowledge of secure coding practices and familiarity with standards like OWASP Top Ten and SANS CWE, with a commitment to adapting to evolving security threats through audits and ongoing education. Team-oriented with exceptional collaboration and communication skills, both verbal and More ❯
Middlesbrough, England, United Kingdom Hybrid / WFH Options
Causeway
tasks simultaneously. Experience in data analysis. Write & execute restful API testing using tools such as Postman, Soap UI. Can implement & maintain soak, stress and system tests. Knows top 10 OWASP software vulnerabilities and how to exploit them. Ensures all code is reviewed before changes are checked into master. ISTQB certified. Can push, pull source code into the appropriate repo such More ❯
London, England, United Kingdom Hybrid / WFH Options
Wise
QA or building extensive testing suites for key platforms/services Experience with CI/CD pipelines and Distributed and Concurrent Systems Familiar with secure coding principles/guidelines (OWASP, NCSC etc.) and global frameworks around development security Experience in working for regulated firms and environments. Familiarity with risk & compliance frameworks and/or keen to the step into the More ❯
minimal supervision Excellent problem-solving skills Strong written and verbal communication skills Ability to multi-task and handle competing deadlines in a fast-paced dynamic environment. Desirable: Familiarity with OWASP would be advantageous Competitive salary Generous 28 days holiday allowance, in addition to public holidays. For every year of service you complete, we'll give you an additional days holiday More ❯
AWS or Azure). Assist with containerisation (Docker/Kubernetes). Support implementation of authentication systems (OAuth 2.0, Auth0, AWS Cognito). Gain exposure to security best practices (e.g., OWASP). Work on RESTful API design and consumption. Collaborate on version control practices using Git, documentation, and code reviews. Desired Skills: Passion for software development and continuous learning. Some frontend More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Haystack
AWS or Azure). Assist with containerisation (Docker/Kubernetes). Support implementation of authentication systems (OAuth 2.0, Auth0, AWS Cognito). Gain exposure to security best practices (e.g., OWASP). Work on RESTful API design and consumption. Collaborate on version control practices using Git, documentation, and code reviews. Desired Skills: Passion for software development and continuous learning. Some frontend More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
ADLIB
fundamentals in data structures, algorithm design and complexity analysis. Experience developing, deploying and maintaining API's onto AWS or Azure. Excellent understanding of software design principles. Experience in applying OWASP secure coding practices. Confident and experienced with automated testing - from unit tests to system and integration tests. Willingness to develop across multiple platforms and architectures. Genuinely passionate about changing lives More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
ADLIB Recruitment
Science fundamentals in data structures, algorithm design and complexity analysis. Experience developing, deploying and maintaining APIs onto AWS or Azure. Excellent understanding of software design principles. Experience in applying OWASP secure coding practices. Confident and experienced with automated testing from unit tests to system and integration tests. Willingness to develop across multiple platforms and architectures. Genuinely passionate about changing lives More ❯
Newton Abbot, Devon, United Kingdom Hybrid / WFH Options
Wilton Bradley Ltd
solving skills and attention to detail. 3+ years of professional PHP development experience. Solid understanding of object-oriented programming and SOLID principles. Solid knowledge of secure coding practices (e.g. OWASP). Experience with modern PHP frameworks (preferably Laravel or Symfony). Familiarity with relational databases (MySQL) and writing performant queries. Comfortable working with Git, Composer and modern development workflows. Strong More ❯
London, England, United Kingdom Hybrid / WFH Options
Cyber Crime
internal and external audits where needed. What we’re looking for Experience in software engineering, with a strong security mindset Deep understanding of web and API vulnerabilities, including the OWASP Top 10 Proficient in coding, scripting (e.g. Python, Bash ), and automating security in CI/CD Hands-on experience with security tools like SAST, DAST, and SCA Familiar with cloud More ❯
Available to all resident in UK and EU We have an exciting new opportunity for an applicationsecurity and performance consultant for Cloudflare. Remote working with quarterly visit to headquarters in Lisbon. expenses to be covered. It s an initial More ❯
internal and external audits where needed. What we're looking for ? Experience in software engineering, with a strong security mindset Deep understanding of web and API vulnerabilities, including the OWASP Top 10 Proficient in coding, scripting (e.g. Python, Bash), and automating security in CI/CD Hands-on experience with security tools like SAST, DAST, and SCA Familiar with cloud More ❯
Leeds, West Yorkshire, United Kingdom Hybrid / WFH Options
FPSG
Security Engineer/Cloud/DSOMM/OWASP/Salesforce Permanent Hybrid - 2 or 3 days p/w on-site Leeds FPSG have a fantastic opportunity to join a large-scale digital transformation programme aimed at uniting multiple internal business units under a new, secure, cloud digital platform. Ideal for a hands-on Security Engineer who enjoys embedding security … maturity frameworks such as DSOMM, including hands-on delivery (code, configuration, documentation, tooling) Designing, building, operate, monitoring secure solutions across complex platforms Ensuring internal and industry security standards (e.g. OWASP CI/CD, SAMM) are adhered to across systems Managing and improving cloud security posture (Azure Defender, Prisma Cloud etc) Implementing and optimising observability platforms for holistic system monitoring Supporting … software estates, including deployment pipelines, rollback strategies, and uptime monitoring Practical experience building automated security test suites into CI/CD workflows Familiarity with security frameworks such as DSOMM, OWASP, and SAMM Suitability: This role is a technical hands-on security engineering role, it is NOT GRC focused. It would be well-suited to experienced Security Engineers or Developers with More ❯
London, England, United Kingdom Hybrid / WFH Options
Crown Agents Bank
Experience working with ISO 27001, Cyber Essentials, and preferably NIST CSF, SOC 2, or SWIFT frameworks. Strong understanding of security in the context of software development and applicationsecurity (OWASP, SDLC, DevSecOps). Hands-on, pragmatic approach with the ability to operate in a lean, fast-paced environment. Excellent communication skills, with the ability to engage both technical and non More ❯
record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of applicationsecurity principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards & security best practices. An understanding of network protocols & practices, firewalls, intrusion detection/prevention systems and WAFs. We look for More ❯
London, England, United Kingdom Hybrid / WFH Options
Smart Communications
record of successes. Understanding of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of applicationsecurity principals, best practices, OWASP/related standards. Knowledge of security frameworks & controls, hardening standards & security best practices. An understanding of network protocols & practices, firewalls, intrusion detection/prevention systems and WAFs. We look for More ❯
experience Minimum 10 years of experience in cybersecurity, preferably in enterprise or financial environments Strong knowledge of: IAM, PKI, network & platform security, applicationsecurity, CI/CD security automation, OWASP, SAST/DAST Familiar with security frameworks (e.g. ISO 27001, NIST, DORA, GDPR) Able to bridge the gap between business objectives and technical solutions Languages: Professional level of English is More ❯
Tunbridge Wells, Kent, England, United Kingdom Hybrid / WFH Options
FPSG Connect
maturity frameworks such as DSOMM, including hands-on delivery (code, configuration, documentation, tooling) Designing, building, operate, monitoring secure solutions across complex platforms Ensuring internal and industry security standards (e.g. OWASP CI/CD, SAMM) are adhered to across systems Managing and improving cloud security posture (Azure Defender, Prisma Cloud etc) Implementing and optimising observability platforms for holistic system monitoring Supporting … software estates, including deployment pipelines, rollback strategies, and uptime monitoring Practical experience building automated security test suites into CI/CD workflows Familiarity with security frameworks such as DSOMM, OWASP, and SAMM Suitability: This role is a technical hands-on security engineering role, it is NOT GRC focused. It would be well-suited to experienced Security Engineers or Developers with … annual leave with buy/sell options + Private healthcare + Extensive Wellbeing services and employee discounts Key Technical Terms Security Engineering, Cybersecurity Engineer, Information Security Specialist, Salesforce, Azure, OWASP CI/CD, DSOMM, SAMM, Cloud Security Posture Management, Prisma Cloud, Azure Defender, Snyk, Checkmarx, OpenZAP, Qualys, DAST, SAST, CI/CD, Infrastructure Security, Auth0, Secure APIs, Networking Protocols, DevSecOps More ❯
London, England, United Kingdom Hybrid / WFH Options
Smart Communications group
record of successes. Knowledge of security compliance standards relevant to the SaaS industry, such as PCI, GDPR, ISO 27001, SOC2, NIST. An understanding of applicationsecurity principles, best practices, OWASP/related standards. Some knowledge/experience in scoping/undertaking internal pen testing and creation of external penetration testing scopes. Knowledge of security frameworks & controls, hardening standards & security best More ❯
including AWS Lambda, Spring Boot, NodeJS, Python FastAPI, Oracle, PostgreSQL and MongoDB. Build solutions as part of a DevSecOps and Agile ecosystem supported by tooling including Atlassian, Jenkins, GitLab, OWASP and AWS componentry. Ensure your solution works in a reliable and resilient way using Site Reliability Engineering methods to increase availability while reducing costs and callouts. Help the client and More ❯