Application Security Engineer

1 month ago


UK, UK, United Kingdom Hampton North Full time

Overview:

We are seeking a highly skilled and motivated Application Security Engineer with experience in Vulnerability Disclosure Programs (VDPs), penetration testing, and secure code review. The ideal candidate will have a strong technical background in application security, a keen eye for identifying vulnerabilities, and the ability to work collaboratively across teams to enhance the overall security posture of our applications.


Key Responsibilities:

  • Design, implement, and manage VDPs to effectively identify, track, and remediate security vulnerabilities in our applications.
  • Collaborate with internal teams and external researchers to triage and prioritize reported vulnerabilities.
  • Develop and maintain guidelines and processes for external reporters to submit vulnerabilities responsibly.
  • Lead the management of our bug bounty program, including engagement with the hacker community to identify potential vulnerabilities.
  • Review and validate bug bounty submissions to ensure accuracy and relevance.
  • Coordinate with development and security teams to ensure timely remediation of reported issues.
  • Perform comprehensive security code reviews across various programming languages and frameworks to identify vulnerabilities and ensure adherence to security best practices.
  • Provide actionable feedback and recommendations to development teams to enhance the security of code and applications.
  • Collaborate with developers to build secure coding practices and integrate security tools and processes into the development lifecycle.
  • Deploy, and maintain security tools and automation to enhance the efficiency and effectiveness of the application security program.
  • Work closely with development, DevOps, and QA teams to integrate security into the software development lifecycle.
  • Conduct training sessions and workshops to raise security awareness and promote secure coding practices among developers.
  • Conduct threat modeling and security risk assessments to identify and mitigate potential security risks in application designs and architectures.


Qualifications:

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • 3+ years of experience in application security, including VDP management, penetration testing, and secure code review.
  • Strong understanding of application security and common vulnerabilities (e.g., OWASP Top Ten, SANS Top 25).
  • Experience with security tools such as static and dynamic analysis tools, and security testing frameworks.
  • Familiarity with CI/CD pipelines and DevSecOps practices.
  • Strong programming skills in one or more languages (e.g., Python, Java, JavaScript, C#, etc.).
  • Excellent analytical and problem-solving skills with a keen attention to detail.
  • Strong communication and collaboration skills with the ability to work effectively across different teams and departments.
  • Relevant security certifications (e.g., OSCP, CEH, GWAPT, CSSLP) are a plus.



  • UK, UK, United Kingdom Adarma Security Full time

    What you’ll doWe are actively recruiting for a Senior Security Engineer on a 3-month contract, Inside IR35, to work around data onboarding to Sentinel and use-case development in SentinelSome of the responsibilities will include:Within a designated area of expertise and with limited supervision, provide customer support to develop and enhance their...


  • UK, UK, United Kingdom Iceberg Cyber Security Full time

    We are recruiting for our client's global Cybersecurity team and this hire will be the first Network Security Engineer in the London office. There are other engineers and SecOps engineers in London for you to collaborate with. The UK team has a brilliant office culture.Our client is more interested in your mindset and problem solving skills than the...

  • Security Engineer

    2 months ago


    UK, UK, United Kingdom Complete Security Recruitment Full time

    Fire and Security Role: Are you a Fire and Security Engineer working with Intruder Alarm & Fire Alarm Systems?Paying up to £36kWe are seeking experienced and competent fire and security engineers for a fast-growing family-owned business based in Bristol.They are a NACOSS and NSI Fire Gold company and need engineers who have the skills, ambition, and...

  • Security Service

    3 weeks ago


    UK, UK, United Kingdom Custom Intelligent Security Full time

    Job Title: Security Service & Maintenance EngineerLocation: Within easy reach of the M25 (Engineers based in Watford, Thurrock & Cambridge would be ideal)Job Type: Full-TimeKey Responsibilities:Service, maintain, and repair security systems including CCTV, Access Control, and Intruder Alarms.Conduct routine maintenance and emergency call-outs as...

  • Security Engineer

    1 month ago


    UK, UK, United Kingdom Bestman Solutions Full time

    Cloud Security Engineer - 6-12 Months Contract - Inside IR35We are working with a global technology firm that is looking for a Cloud Security Engineer.They are looking for an experienced Cloud Security Engineer to improve their cloud security maturity. This role includes strategic responsibilities, like creating a cloud security assurance model, and hands-on...

  • Security Engineer

    4 weeks ago


    UK, UK, United Kingdom Aylin White Full time

    Security Engineer - Systems Manchester£40,000 per annum Ref: AWDC Fantastic opportunity to join a market leading Building Services Engineering Design Consultancy in Manchester and enjoy the fantastic benefits that they offer including a 9-day fortnight and flexible hybrid working!Due to several recent project wins we are looking for a Security Engineer/...

  • Security CCTV Manager

    4 weeks ago


    UK, UK, United Kingdom Momentum Security Recruitment Full time

    Security Control Room Manager (CCTV)Salary: £34,118Location: KentHours: 4 on 4 off (Perm nights). 1800-0600.We are seeking a dedicated Control Room Manager to oversee the management of a busy 24/7 communications centre. The role will see you manage a small but dedicated team and oversee the delivery of services to client sites across the UK.The position...


  • UK, UK, United Kingdom Iceberg Cyber Security Full time

    I'm currently representing a reputable Financial organisation located in Surrey, which are looking to hire a Lead Threat Detection Engineer. This position is best suited for a senior security engineer skilled in complex security tooling and automation, who is looking to take the next step into a leadership role. My client operates in both a Windows and...


  • UK, UK, United Kingdom Lorien Full time

    Cyber Security EngineerLocation: Central London-HybridThe Client: A leading Law Firm requires a Cyber Security Engineer!1 Year FTC-Salary – Up to £80,000 + Additional Corporate Benefits PackageRole: The Security Engineer reports to the Director of Information Security Operations and works closely with the Information Security Management team to implement...


  • UK, UK, United Kingdom IC Resources Full time

    IC Resources is seeking a Field Application Engineer to join a Cryptographic start-up in the UK. You will be working closely with cross-functional teams, including Engineering, R&D – cryptography and photonics, Commercial, and Marketing, to deliver innovative, customer-driven solutions.Your primary responsibilities will include delivering proofs of...

  • Sales Engineer

    5 months ago


    UK, UK, United Kingdom Cynet Security Full time

    Cynet is looking to hire a talented, passionate, energetic, self-motivated Sales Engineer to support its Business Development activities in the UK&I.The primary responsibility would be to drive and manage the technological evaluation stage of prospects. Any task would be done in tandem with the sales team as a technical adviser and product expert.The ideal...

  • Security Engineer

    4 days ago


    UK, UK, United Kingdom AWC Staff Services Full time

    Our client is a major provider of Cyber Security service to the National Grid, due to new contract awards they are looking to recruit a talented Security Engineers.We are looking for candidates with:Role responsibilities -Fault diagnosis on electrical fence, CCTV, access control and intruder alarm systems.Installation of bespoke security alarms.Planned...

  • Service Engineer

    4 weeks ago


    UK, UK, United Kingdom Complete Security Recruitment Full time

    Fire & Security Role: Are you a Service And Fault Find Engineer able to work on your own initiative? Paying up to £35kWhat can you expect as an employee: Competitive salaryMobile phone/PDAVanLaptopPower tools suppliedTest equipment. Personal broadband paidPersonal fuel paidNearly all the sites we have a remote connection, which enables the engineer to...


  • UK, UK, United Kingdom Realm Fire & Security Ltd Full time

    Company DescriptionRealm Fire and Security Ltd is a local independent company based in Aberdeen, specializing in providing high-quality fire safety and security products and services since 2002. The company focuses on keeping workplaces safe through training programs, risk assessments, and customized fire and security solutions. Realm is known for its...


  • UK, UK, United Kingdom Locke and McCloud Full time

    Senior Cyber Security EngineerThe OpportunityWe are seeking a highly skilled and experienced Senior Cybersecurity Engineer with a strong background in Application and Cloud Security. This role is ideal for a candidate with deep DevSecOps expertise, a solid understanding of AWS Cloud security architecture, and hands-on experience in designing and configuring...

  • Fire Service Engineer

    4 weeks ago


    UK, UK, United Kingdom Complete Security Recruitment Full time

    Fire & Security Role: Are you a Fire Service Engineer with knowledge of Gent and Advanced?Paying up to £40kWhat can you expect as an employee:Well Established BusinessNorth East BasedProgression PlanCompetitive SalaryAbout the role: With over 20 years of experience, they are specialists in the design, installation, integration and maintenance of a variety...

  • Cyber Security

    2 months ago


    UK, UK, United Kingdom Matchtech Full time

    Join Our Power Generation Team!We’re all about delivering cutting-edge, secure solutions for critical process applications, and we’re known globally for our excellence.Partner with the Best:Position: Controls Engineer - Cyber SecurityFull TimeWhat You’ll Do:Design and enhance software for generator and power system control.Develop and implement...


  • UK, UK, United Kingdom GCS Full time

    The Cyber Security Engineer holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences, utilizing...


  • UK, UK, United Kingdom Maclean Moore Full time

    GCP Security Detection Engineer | Inside IR35 | Contract | Long-termI am currently hiring for a GCP Security Detection Engineer. This is an exciting contract working through a global consultancy on a long-term contract basis.GCP Security Detection EngineerLocation: Canary Wharf, Remote/hybridINSIDE IR35 – Up to £450Start ASAP. Initial 6 monthsKey...


  • UK, UK, United Kingdom InfoSec People Ltd Full time

    Job Title: Senior Security ConsultantPackage: Up to £80,000 + 40% Bonus and Excellent BenefitsLocation: London, Hybrid (3 days a week onsite) About the Company: We are working with a global heritage retailer known for its commitment to excellence and innovation. They’re looking for a Security Consultant to ensure Secure by Design principles are...