Hands-on with tools such as Burp Suite, ZAP, Nmap, Metasploit Deep understanding of secure cloud infrastructure (AWS/Azure) and scripting (Python, Bash) Familiarity with DevSecOps tools (e.g. Veracode, GitHub Advanced Security) Certifications such as OSCP or CREST/TIGER Bonus Skills: Experience within the CHECK scheme Knowledge of UK public sector security practices Exposure to threat modelling and More ❯
London, England, United Kingdom Hybrid / WFH Options
Funding Circle
remediation efforts. Nice to have Advanced security certifications (e.g., AWS Certified Security - Specialty, CISSP, CCSP, OSCP/OSWE). Experience with security platforms/tools (e.g., Wiz, Snyk, Checkmarx, Veracode). Scripting skills in Python or similar for automation. Experience working in FinTech or regulated environments. Knowledge of mobile application security principles. We are committed to building diverse teams. Please More ❯
London, England, United Kingdom Hybrid / WFH Options
Funding Circle
Nice to have Relevant advanced security certifications (e.g., AWS Certified Security - Specialty, CISSP, CCSP, OSCP/OSWE). Experience with specific security platforms/tools (e.g., Wiz, Snyk, Checkmarx, Veracode). Proficiency in security automation using scripting languages (e.g., Python). Experience working in FinTech or other highly regulated environments. Experience with mobile application security principles and testing. At Funding More ❯
the following: Creating and deploying CI/CD pipelines (GitLab/Jenkins/GitHub) Configuring and running Code/Binary scans using solutions like SonarQube, Semgrep, Blackbuck, Trivy, GitLeaks Veracode, etc. Configuring and using Secrets management tools like Vault and Cloud native solutions Broad knowledge of SDLC Tools, specifically Build, Test and Deploy Automation tools, e.g., Maven, Gradle, Selenium, Ansible More ❯
Strong understanding of web application security concepts, including secure coding practices, authentication mechanisms, and common vulnerabilities. Proficiency in security testing tools and techniques, such as Burp Suite, SonarQube, Checkmarx, Veracode, etc... Excellent analytical and problem-solving skills, with the ability to think critically and creatively to address complex security challenges. Strong communication and interpersonal skills, with the ability to effectively More ❯
vulnerability management expertise. Hands-on experience with threat modelling and secure code reviews. Experience with Mobile Application Security and API Security. Familiarity with security tools (Burp Suite, Fortify, Checkmarx, Veracode, ZAP, etc.). Experience with cloud security (AWS, Azure, GCP) and container security (Docker, Kubernetes). Ability to conduct maturity assessments and gap analysis. Familiarity with RASP technology as well More ❯
vanilla, EKS, AKS, OpenShift), CI/CD pipelines, and infrastructure as code (Terraform) Security integration experience across the DevSecOps lifecycle, including: SAST, DAST, SCA, and IAST tools (e.g., Checkmarx, Veracode, OWASP ZAP) Secrets management tools like HashiCorp Vault Vulnerability management solutions such as Prisma Cloud Testing frameworks like Selenium Familiarity with JIRA, Confluence, and GitLab/Jenkins-based CI/ More ❯
vanilla, EKS, AKS, OpenShift), CI/CD pipelines, and infrastructure as code (Terraform) Security integration experience across the DevSecOps lifecycle, including: SAST, DAST, SCA, and IAST tools (e.g., Checkmarx, Veracode, OWASP ZAP) Secrets management tools like HashiCorp Vault Vulnerability management solutions such as Prisma Cloud Testing frameworks like Selenium Familiarity with JIRA, Confluence, and GitLab/Jenkins-based CI/ More ❯
practices. Familiarity with threat modelling methodologies such as STRIDE and architectural risk analysis. Hands-on experience with tools such as SAST/DAST/IAST, Snyk, SonarQube, Burp Suite, Veracode, or similar. Strong understanding of cloud platforms) and modern development architectures Relevant certifications such as CSSLP, OSWE, GWAPT, CISSP , or equivalent are advantageous. Please note that if you are NOT More ❯
practices. Familiarity with threat modelling methodologies such as STRIDE and architectural risk analysis. Hands-on experience with tools such as SAST/DAST/IAST, Snyk, SonarQube, Burp Suite, Veracode, or similar. Strong understanding of cloud platforms) and modern development architectures Relevant certifications such as CSSLP, OSWE, GWAPT, CISSP , or equivalent are advantageous. Please note that if you are NOT More ❯
technologies (providing cert details where applicable): Issue and Project Management tools such as JIRA, Confluence Hashicorp Terraform Hashicorp Vault SAST Security Testing such as such as GitLab, Checkmarx or Veracode DAST Security Testing such as OWASP ZAP or Veracode SCA Security Testing such as Checkmarx, Trivy, or Veracode IAST Security Testing such as Checkmarx Vulnerability Management such as PA Prisma More ❯
technology: Java, SpringBoot, JPA, Hibernate, Junit, Mockito, microservices · Experience with SQL (MS SQL preferred), cloud technology and messaging tools. · Experience with standard DevOps tools: Jira, Bitbucket, Nexus, Confluence, SonarQube, Veracode, GitLab, Maven, NPM, etc. · Experience with test driven development and CI/CD, including exposure to automated testing platforms (e.g., Cucumber, Selenium) · Actively participate in all aspects of agile software More ❯
for technology and innovation within this specific domain. Have experience with CI/CD and the ability to evangelise about this. Have experience with tooling solutions eg Kubernetes, Istio, Veracode, Sonarcube, Maven, Jenkins or similar. Have some experience of developing training and team development plans to drive performance across multi-skilled teams. Have a good understanding of business modelling techniques More ❯
Agile development methodologies and with continuous integration/continuous deployment (CI/CD) tools (e.g., Git, GitLab, Bamboo, BitBucket, Sonarqube). Hands-on experience with Application Security Tools (e.g., Veracode, Coverity, Blackduck) and a pragmatic approach to automation. Proven working knowledge of Linux environments. Business and Sector Expertise Direct experience in the FX industry and regulated financial environments. Broader exposure More ❯
security report with risk ratings, findings, and recommendations. Required Skills & Experience 4+ years in Application Security , AppSec consulting , or Secure Code Review roles. Familiarity with tools like Snyk , Checkmarx , Veracode , or Burp Suite (passive scanning) . Knowledge of OWASP , CWE , and general secure software development principles. Strong technical writing and communication skills. Preferred certifications: OSCP , CSSLP , GWAPT , CEH , or equivalent. More ❯
security report with risk ratings, findings, and recommendations. Required Skills & Experience 4+ years in Application Security , AppSec consulting , or Secure Code Review roles. Familiarity with tools like Snyk , Checkmarx , Veracode , or Burp Suite (passive scanning) . Knowledge of OWASP , CWE , and general secure software development principles. Strong technical writing and communication skills. Preferred certifications: OSCP , CSSLP , GWAPT , CEH , or equivalent. More ❯
Principal Account Executive Looking for an innovative, high-growth company in one of the hottest segments of the security market? Look no further than Veracode! Veracode is recognized as a premier provider of SaaS-based application security solutions, transforming the way companies secure applications in today’s software driven world. We provide our customers with a solid foundation on which … apps that support wellbeing Summer and end of year social events to bring the team together and celebrate our success Fraudulent Recruitment Alert - Be Aware and Stay Informed At Veracode, we prioritize a secure recruitment process. Unfortunately, fake recruitment and job offer scams are on the rise. They aim to deceive candidates through emails and calls to obtain sensitive information. … managers. Offer Communications: Our job offers are not sent solely through email, and we will never ask you to pay for your own hardware. Email Verification: Recruiting emails from Veracode will always originate from an “@veracode.com" email address. If you have any doubts about the authenticity of an email, letter, or telephone communication claiming to be from Veracode, please reach More ❯
London, England, United Kingdom Hybrid / WFH Options
Panaseer
/visualisations of multi-source data at scale Experience with security metrics and/or controls measurement Experience with service offerings from major Cyber Security vendors (ex. Tenable, Rapid7, Veracode, CrowdStrike, SailPoint) Experience of Cybesecurity frameworks or GRC tooling. Diversity Panaseer is an equal employer, committed to encouraging diversity and eliminating discrimination in both its role as an employer and More ❯
London, England, United Kingdom Hybrid / WFH Options
Panaseer
/visualisations of multi-source data at scale Experience with security metrics and/or controls measurement Experience with service offerings from major Cyber Security vendors (ex. Tenable, Rapid7, Veracode, CrowdStrike, SailPoint) Experience of Cybesecurity frameworks or GRC tooling. Diversity Panaseer is an equal employer, committed to encouraging diversity and eliminating discrimination in both its role as an employer and More ❯
and analytical skills ServiceNow Certified System Administrator certification Experience working in a consulting environment Experience working with industry-leading security operations tools (e.g., CyberXM, Rapid7, Qualys, Tenable, Prisma, Snyk, Veracode, Wiz, Orca, Tanium, Splunk, QRadar. Carbon Black, CrowdStrike, ProofPoint, Cisco, etc) Benefits: You will receive a competitive salary, a generous benefits package, training, and development, as well as an exciting More ❯
and analytical skills ServiceNow Certified System Administrator certification Experience working in a consulting environment Experience working with industry-leading security operations tools (e.g., CyberXM, Rapid7, Qualys, Tenable, Prisma, Snyk, Veracode, Wiz, Orca, Tanium, Splunk, QRadar. Carbon Black, CrowdStrike, ProofPoint, Cisco, etc) Benefits: You will receive a competitive salary, a generous benefits package, training, and development, as well as an exciting More ❯