Application Security Specialist

3 weeks ago


Remote, United Kingdom Companies House Full time

Soon, our mission will fundamentally change from one that supports downstream consumers of data about Companies, to one where our Register of Company information is instrumental in combating and prosecuting fraud and other serious economic crimes. This change will make our systems a much more attractive target. In anticipation of this, we are upscaling and upskilling our Cyber security capability.

**What you will be doing**:
You’ll identify the right places to leverage controls at all stages and lead in moving to a secure-by-default approach that ensures vulnerabilities are caught as early as possible and either eliminated entirely, or that through other measures such as the implementation of detective controls, the risk of these is managed to levels that senior stakeholders are willing to accept. You’ll get to lead in the selection of the right tools and controls and be instrumental in their implementation, not only technically, but at an organisational resourcing capacity, too.

You will become the leading authority on Application Security within Companies House, serving as not only a highly technical Subject Matter Expert to technical colleagues such as Developers and Architects, but also able to translate the risks associated with vulnerabilities to terms stakeholders, who may not have an IT background, will be able to understand and grasp the importance of.

You’ll initially be facilitating an OWASP SAMM assessment to determine where our current maturity is against a recognized framework. This will periodically be revisited by your re-assessments against it to measure our continued progress, as the environment and our organizational needs change.

You’ll thrive on the constant stream of developments in Application Security and will be continually updating your skills and knowledge, to address the exciting and rapidly-changing threat landscape. You’ll work with the Head of Development, Development Leads and dedicated Learning and Development colleagues, to help ensure that awareness of Secure coding techniques and the comprehension of the importance of the necessary detective and preventive controls, permeates right across Development and related areas.

As well as directly supporting our in-house Developers yourself, you’ll help colleagues in Vendor Management and Procurement, by ensuring that comparable controls are included as a matter of course in contracts and other vendor-related articles, where development is being performed by third party delivery partners. Similarly, on a technical level, you’ll identify key points within the SDLC and code check-in processes to build in mechanisms to provide suitable independent assurance of the security of code originating within third parties.

**Person Specification**:
We’re changing as an organization and we’re looking for someone who can help lead us in ensuring that Application Security is one of those things that post-change, our organization is class-leading in.

You’ll be a self-starter, empowered and able to seek out and strike up the necessary relationships within adjacent Professions and the Senior Risk Owners you ultimately serve.

Although you will become our authority on all things AppSec, you won’t be alone: We’ll support you in your training and development required to really excel in the role.

As part of our broader Cyber Security team, you’ll get to interact with lots of other professions and specialisations within Cyber Security, both with ourselves, other BEIS-partner organisations and central government more generally.

You would also get the unique benefit of being our lead contact with government colleagues in specialist departments such as Government Security Group, NCSC, etc. for everything Application Security related.

We also recognize that many of the most interesting advancements in the field originate outside government. We will support you attending conferences and special interest groups, such as OWASP chapter meetings, to keep your knowledge at the cutting edge.

This is an exciting opportunity in digital services, designing and delivering quality services to our users. By helping us to shape our services, you’ll have the opportunity to be at the forefront of digital transformation in government.

**Experience**:
NB: Applicants do not need _all_ of these.
- Three years’ experience in an adjacent Cyber Security discipline.
- Two years’ experience as a Software Developer or Tester, attached to a Software Development function. Ideally, having acted in a role comparable to a “Security Champion”, or at least supporting other Developers through the sharing of knowledge of secure coding.
- One year’s experience in a directly comparable role within another organisation.

**Technical Skills**:

- The tactical - How do we fix this specific vulnerability now we know about it?
- The strategic - Is there some other control that could have detected this sooner? Was this working? Can we introduce such



  • Remote, United Kingdom Companies House Full time

    **Details**: **Reference number**: - 257510**Salary**: - £51,000 - £60,649- The final salary awarded will be based on an assessment of your skills and experience as demonstrated at interview.**Job grade**: - Grade 7- DDaT Principal**Contract type**: - Permanent**Business area**: - CH - Digital Services**Type of role**: - Digital - Information...


  • Remote, United Kingdom AND Digital Full time

    **Application Security Lead --- Group Operations & Tech**: **AND Digital is a fast growing, tech consultancy.**: Our Business We believe in empowering people with the knowledge they need to unlock the full potential of technology. We’ve grown rapidly through the skill and commitment of our team, but we’re not slowing down and we’re certainly not...


  • Remote, United Kingdom Github Full time

    From open source to DevOps, organizations are looking for new ways to speed up software delivery—but still rely on traditional security tools. GitHub Advanced Security helps teams build safer code faster with the world’s most advanced semantic code analysis engine. We are looking for Corporate & Mid Market Software Security Specialist in the United...


  • Remote, United Kingdom DACT Fire & Security Full time

    **DACT Fire & Security Ltd** is an established and expanding BAFE and SSAIB accredited fire and security specialist integrator, based in the midlands. We require an experienced estimator to join our office team and support our sales and project management teams by producing accurate quotations to our customers. **Responsibilities for Fire & Security...


  • Remote, United Kingdom Real Technical Solutions Full time

    **Powercurve Application Specialist - UK / Fully Remote** **£350 per day (Outside IR35) / 6 months rolling / Worthing based office, but this role can be fully remote** My client a leading technology strong professional services company is seek an experienced Powercurve Application Specialist, who ideally has 5 years’ experience of working with...


  • Remote, United Kingdom Epicor Full time

    **General information**: - Office (s)- Remote, UK- Date Published- Thursday, June 13, 2024- Country- United Kingdom- Job ID- 24330- Function- Global Support- Recruiter- Sikka, Afsha**Description & Requirements**: **T**echnical Application Specialist - Remote (UK)** The Technical Application Specialist diagnoses, troubleshoots, repairs and debugs software....


  • Remote, United Kingdom System C Healthcare Full time

    We are System C, a proud British business on a mission to connect and transform health and care outcomes for all through our market leading software. We care about what we do, and that goes for our team members too. We take our role in public digital transformation seriously. We're in it for the long haul and pride ourselves on how we strive to be better,...


  • Remote, United Kingdom White Hat Gaming Full time

    **About White Hat Gaming** Founded in 2012, White Hat Gaming (WHG) is an online casino technology and services company with offices in Malta, London, Gibraltar, Chicago, and Cape Town. With a global team of over 600 specialists, we provide market-leading content, including Kambi Sportsbook and over 100 leading games providers. We promote and foster a...


  • Remote, United Kingdom Marcus Donald People Full time

    One of your main responsibilities will be to develop Microsoft Sentinel content including Detection rules, Functions, Playbooks, LogicApps and Query Time Parser! With this being said, Microsoft Sentinel experience would be fantastic however, depth of experience with alternatives like AlienVault, Splunk, ArcSight, LogRhythm would be great also! ** £70,000 -...

  • Penetration Tester

    4 days ago


    Remote, United Kingdom Jisc Full time

    **More details**: Penetration Tester and Security Specialist **Salary**: From £42,321 per annum, negotiable depending on experience Contract: Permanent Location: Remote Jisc is the UK higher, further education and skills sectors’ not-for-profit organisation for digital services and solutions. We believe education and research improves lives, and...


  • Remote, United Kingdom grow.com Full time

    General information**Office (s)** Remote, UK **Date Published** Friday, March 1, 2024 **Country** United Kingdom **Job ID** 23797 **Function** Global Support **Recruiter** Sikka, Afsha - Description & Requirements**Technical Application Specialist** An exciting opportunity for a Technical Application Analyst has arisen to join a team that is...


  • Remote, United Kingdom Cubiq Recruitment Full time

    **Application Specialist (Pre-Sales)** **Remote - UK** **£50-55,000 per annum + package** **Permanent** The need for this position has arisen due to significant expansion in the UK healthcare market over the last two years, and the desire by the company to continue their exciting growth while delivering on existing projects. **Key...


  • Remote, United Kingdom Philips Full time

    **Job Title**: Clinical Applications Specialist Cardiology - EDI An exciting opportunity has recently become available for a Clinical Applications Specialist in our cardiology software portfolio CVIS/ISCV **to join our Enterprise Diagnostics Informatics business (EDI).** Whether coming from a pure clinical background or having already made the shift into...


  • Remote, United Kingdom Deel Full time

    **Who we are and what we do** Deel is a global team that helps businesses hire anyone, anywhere, easily. Deel consists of more than two thousand self-driven individuals spanning over 100 countries. Our unified yet diverse culture keeps us continually learning and innovating the Deel platform and our products for customers. Companies should be able to hire...


  • Remote, United Kingdom Philips Full time

    **Job Title**: Clinical Application Specialist, IGT-D Coronary - South **Clinical Applications Specialist IGT-D Coronary** - Share your clinical expertise to help others to use Philips Image Guided Therapy Devices (IGT-D) Coronary to their fullest potential._ **Your role**: - Make the difference in multiple hospital settings by using your Cardiology...


  • Remote, United Kingdom Nasstar Full time

    **WE’RE RECRUITING!** A leading Cloud Partner is seeking a talented **Senior Security Consultant** who enjoys supporting and leading customers on a journey as well as helping develop our products and service offerings! **Location**:Home-based **Salary**:Competitive base + benefits **Job Type**:Permanent As a senior member of the Technical Services...


  • Sheffield, Remote, United Kingdom Ada Meher Full time

    Cyber Security Specialist – Sheffield (Hybrid Remote) - £55-60k Maximise your chances of a successful application to this job by ensuring your CV and skills are a good match.Mainly Remote | Flexible Culture | Autonomy | Forward-thinking Tech | Bonus SchemeAda Meher are currently searching for a Cyber Security Specialist to join their client, a leading...


  • Sheffield, Remote, United Kingdom Ada Meher Full time

    Cyber Security Specialist – Sheffield (Hybrid Remote) - £55-60k Maximise your chances of a successful application to this job by ensuring your CV and skills are a good match.Mainly Remote | Flexible Culture | Autonomy | Forward-thinking Tech | Bonus SchemeAda Meher are currently searching for a Cyber Security Specialist to join their client, a leading...


  • Remote, United Kingdom Deel Full time

    **Who we are and what we do** Deel is a global team that helps businesses hire anyone, anywhere, easily. Deel consists of more than two thousand self-driven individuals spanning over 100 countries. Our unified yet diverse culture keeps us continually learning and innovating the Deel platform and our products for customers. Companies should be able to hire...


  • Sheffield, Remote, United Kingdom Ada Meher Full time

    Cyber Security Specialist – Sheffield (Hybrid Remote) - £55-60k Check out the role overview below If you are confident you have got the right skills and experience, apply today.Mainly Remote | Flexible Culture | Autonomy | Forward-thinking Tech | Bonus SchemeAda Meher are currently searching for a Cyber Security Specialist to join their client, a leading...