Application Security Architect (Manchester)

Insight

Manchester

On-site

GBP 90,000 - 120,000

Full time

46 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Insight Investment is seeking an Application Security Architect to join our Cyber Security team in Manchester. The role focuses on embedding security into the software development lifecycle and driving DevSecOps practices across engineering teams.

The ideal candidate will have a strong technical background in application security, secure coding, and automation within CI/CD pipelines. You will collaborate with development, DevOps, and architecture to design secure patterns and promote a culture

Qualifications

  • Strong understanding of application security principles (OWASP Top 10, CWE).
  • Hands-on experience with security tools across SAST, DAST, SCA, IAST.
  • Familiarity with CI/CD pipelines and container security best practices.

Responsibilities

  • Collaborate with development, DevOps, and architecture teams to integrate security into the SDLC.
  • Design and implement secure coding practices and threat modelling processes.
  • Lead the integration of security tools into CI/CD pipelines (SAST, DAST, SCA, IAST).
  • Conduct security assessments of applications, APIs, and microservices.
  • Develop and maintain security standards, guidelines, and automation scripts.
  • Provide guidance on secure design patterns and architecture decisions.
  • Promote a DevSecOps culture and continuous security improvement across development and architecture teams.

Skills

Application security
Secure coding
Automation
CI/CD pipelines
Threat modelling
DevSecOps
Security tooling

Tools

Veracode
Checkmarx
Fortify
Burp Suite
OWASP ZAP
Snyk
Black Duck
Aqua Security
Prisma Cloud
Github Actions
TeamCity
Octopus Deploy
Azure DevOps
Terraform
CloudFormation
Threat Dragon
IriusRisk

Job description

Insight Investment is looking for an Application Security Architect to join our Cyber Security team in Manchester. This role focuses on embedding security into the software development lifecycle and driving DevSecOps practices across engineering teams. The ideal candidate will have a strong technical background in application security, secure coding, and automation within CI/CD pipelines. Role Responsibilities

  • Collaborate with development, DevOps, and architecture teams to integrate security into the SDLC
  • Design and implement secure coding practices and threat modelling processes
  • Lead the integration of security tools into CI/CD pipelines (e.g., SAST, DAST, SCA, IAST)
  • Conduct security assessments of applications, APIs, and microservices
  • Develop and maintain security standards, guidelines, and automation scripts
  • Provide guidance on secure design patterns and architecture decisions
  • Promote a DevSecOps culture and continuous security improvement across development and architecture team
Experience Required
  • Strong understanding of application security principles (e.g., OWASP Top 10, CWE)
  • Hands-on experience with one of each or more security tools:
  • Static Analysis (SAST): Veracode (preferable), Checkmarx, Fortify, etc
  • Dynamic Analysis (DAST): Veracode (preferable), Burp Suite, OWASP ZAP, etc
  • Software Composition Analysis (SCA): Veracode (preferable), Snyk, Black Duck, etc
  • Container Security: Aqua Security (preferable), Prisma Cloud, etc
  • Familiarity with CI/CD tools (e.g., Github Actions, Teamcity, Octopus, Azure DevOps)
  • Knowledge of containerised environments and their security best practices (Docker, Kubernetes)
  • Knowledge of cloud security (Azure) and infrastructure-as-code (Terraform, CloudFormation)
  • (Preferable) Experience with threat modeling tools (e.g., Threat Dragon, IriusRisk)

Insight is committed to being an inclusive employer and encourages applications from all suitably qualified applicants irrespective of background, circumstances, age, disability, gender identity, ethnicity, religion or belief and sexual orientation. If you are a candidate with a disability, or are assisting a candidate with a disability, and require an accommodation to apply for one of our jobs, please email us at

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Architect (Manchester)
Application Security Architect (Manchester)

Insight Investment • Manchester

On-site
GBP 70,000 - 100,000
DevSecOps Architect: Secure SDLC & CI/CD Champion
DevSecOps Architect: Secure SDLC & CI/CD Champion

Insight • Manchester

On-site
GBP 90,000 - 120,000
Application Security Consultant
Application Security Consultant

Cytix • Manchester

Hybrid
GBP 40,000 - 50,000
Private Healthcare (inc. dental, optical, and hearing)
Unlimited Holidays
EMI share options
Security Architect - Product and Application Security
Security Architect - Product and Application Security

Harrington Starr • Greater London

Hybrid
GBP 90,000 - 130,000
DevSecOps-Driven Application Security Architect
DevSecOps-Driven Application Security Architect

Insight Investment • Manchester

On-site
GBP 70,000 - 100,000
Senior Application Security Consultant
Senior Application Security Consultant

Salt • Greater London

Hybrid
GBP 90,000 - 120,000
Senior Application Security Consultant (SAST/DAST/OWASP )
Senior Application Security Consultant (SAST/DAST/OWASP )

Xpand Group • Greater London

Hybrid
GBP 115,000 - 138,000
Security Architect
Security Architect

Version 1 • Belfast

Hybrid
GBP 85,000 - 120,000
Quarterly Profit Share
Mentorship & Career Development
Flexible/remote working
+3
Senior Application Security Consultant (SAST/DAST/OWASP )
Senior Application Security Consultant (SAST/DAST/OWASP )

Salt • City Of London

Hybrid
GBP 66,000 - 111,000
Cyber Security Engineer
Cyber Security Engineer

Digital Waffle • Manchester

On-site
GBP 45,000 - 65,000