Senior Security Engineer
1 week ago
An exciting opportunity to join a leading company and play an influential part in their continued dedication to Application Security.
At Tesco, the application security team’s strategy is to provide security tooling that fits seamlessly into software engineering teams ways of working, helping them find and deal with security problems early within the software development process before it reaches production.
In this role you will be responsible for helping to identify appropriate toolsets that fit with the application security team’s strategy, provide comprehensive guidance that allow engineering teams to effectively self-serve with our toolsets and help manage and maintain the chosen solutions.
As an application security expert at Tesco you will possess a strong engineering background and a curiosity about working collaboratively with our engineering teams. You can communicate clearly, present reasonable security trade-offs to the business, and work to build real world practical solutions that reduce our security risk.
As an integral part of our Application Security team you can expect to be invovled in a wide range of Security Engineering Tasks including -
• identification of security toolsets that effectively uncover security issues in code written by our software engineers and third-party dependencies
• You will Provide domain expertise on all areas of security and privacy throughout the Software Development lifecycle
• Embed yourself in our culture and process's working n-line with agile practices i.e. scrum and others • You will be able to identify gaps in software engineering practices and recommend appropriate streamlined security solutions
• You can demonstrate the ability to deliver training on core application security products to both security and engineering teams
• You have experience writing comprehensive guidance for the selected security tooling
• As an expert you will also provide technical support for our products and engineers
We are looking for a passionate Security Engineer you can add to our teams with core technical skills including-
• Strong expertise at least one of the following programming languages: Python, Java, JavaScript / TypeScript, C#, Go
• Proficient in secure code review of at one language i.e. Java, JavaScript, C#
• Experience of deploying security tooling into a DevOps environment
• Deep understanding of application security (Web, API, Mobile)
• Solid grasp of Application Security Tooling (SCA/SAST/DAST/IaC Security)
• Knowledge of OWASP Top 10, Mitre Top 25 and CVSS frameworks, mapping to business risk
• Experience in implementing security into different stages of a DevOps lifecycle
A team player who is not afraid to get stuck in and work collaboratively and an ability to translate technical to business risk when assessing software vulnerabilities
We’re all about the little helps. That’s why we make sure our Tesco colleague benefits package takes care of you – both in and out of work. Annual bonus scheme of up to 20% of base salary
~ Holiday starting at 25 days plus a personal day (plus Bank holidays)
~ Private medical insurance
~26 weeks maternity and adoption leave (after 1 years’ service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay, we also offer 6 weeks fully paid paternity leave
~ Free 24/7 virtual GP service, Employee Assistance Programme (EAP) for you and your family, free access to a range of experts to support your mental wellbeing
Our vision at Tesco is to become every customer's favourite way to shop, whether they are at home or out on the move. Our core purpose is ‘Serving our customers, communities and planet a little better every day’. It means acting as a responsible and sustainable business for all stakeholders, for the communities we are part of and for the planet.
At Tesco, we not only celebrate diversity, but recognise the value and opportunity it brings. We’re proud to have been accredited Disability Confident Leader and we’re committed to providing a fully inclusive and accessible recruitment process. We’re a big business and we can offer a range of diverse full-time & part-time working patterns across our many business areas, which means that we can find something that works for you. We work in a more blended pattern - combining office and remote working.
-
Senior Security Engineer
1 week ago
Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full timeAbout the role About the Cyber Security Team Our cyber security team are the eyes and ears of our organisation. We use pioneering technology to increase visibility and protection of systems, services, and data. To do this we need to stay ahead of the latest threats and continuously improve our tooling, techniques, and processes. We're continually working to...
-
Senior Security Engineer
1 week ago
Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full timeAbout the role About the Cyber Security Team Our cyber security team are the eyes and ears of our organisation. We use pioneering technology to increase visibility and protection of systems, services, and data. To do this we need to stay ahead of the latest threats and continuously improve our tooling, techniques, and processes. We’re continually working...
-
Senior Security Engineer
2 weeks ago
Welwyn Garden City, United Kingdom Tesco Full timeSenior Security Engineer – Security Automation Join Tesco’s cyber security team as a Senior Security Engineer – Security Automation. In this role you will design, implement and enhance automated security processes to improve detection, prevention and response to threats across the global Tesco Group. Responsibilities Define, design, and implement...
-
Senior Security Engineer
1 week ago
Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full timeAbout the Cyber Security Team Our cyber security team are the eyes and ears of our organisation. We use pioneering technology to increase visibility and protection of systems, services, and data. We’re continually working to step change security capability to further improve the protection and controls that we offer for our customers and colleagues...
-
Senior Azure Security Engineer
5 days ago
Welwyn Garden City, United Kingdom Tesco Technology Full timeSenior Azure Security Engineer Join to apply for the Senior Azure Security Engineer role at Tesco Technology. Join as an Azure Cloud Security Engineer within the infrastructure security architecture team. Your core purpose will be acting as the go-to subject matter expert between the wider Technology Security area and Cloud Platform Engineering team for the...
-
Head of Security Engineering
1 week ago
Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full timeAbout the role Tesco Technology's Security Engineering function is responsible for proactively identifying and mitigating risks across our technology estate. As Head of Security Engineering – Application Security & Testing, you will lead a multi-disciplinary function that spans vulnerability management, application security engineering, and adversarial...
-
Head of Security Engineering
1 week ago
Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full timeAbout the role Tesco Technology’s Security Engineering function is responsible for proactively identifying and mitigating risks across our technology estate. As Head of Security Engineering – Application Security & Testing, you will lead a multi-disciplinary function that spans vulnerability management, application security engineering, and adversarial...
-
Senior Security Engineer
2 weeks ago
Welwyn Garden City, United Kingdom Tesco Technology Full timeOverviewJoin to apply for the Senior Security Engineer - Security Automation role at Tesco Technology.Our cyber security team are the eyes and ears of our organisation. We use pioneering technology to increase visibility and protection of systems, services, and data. We need to stay ahead of the latest threats and continuously improve our tooling,...
-
Security Engineer
1 week ago
Welwyn Garden City, Hertfordshire, United Kingdom Tesco Full timeAbout the role An exciting opportunity to join a leading company and play an influential part in their continued dedication to Application Security. At Tesco, the application security team’s strategy is to provide security tooling that fits seamlessly into software engineering teams ways of working, helping them find and deal with security problems early...
-
Senior Security Engineer
2 weeks ago
Welwyn Garden City, United Kingdom Tesco UK Full timeAbout the Cyber Security Team Our cyber security team are the eyes and ears of our organisation. We use pioneering technology to increase visibility and protection of systems, services, and data. To do this we need to stay ahead of the latest threats and continuously improve our tooling, techniques, and processes. We’re continually working to step change...