Application Security Architect (Manchester)

Insight Investment

Manchester

On-site

GBP 70,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A prominent investment firm in the UK is looking for an Application Security Architect to join its Cyber Security team in Manchester. This role emphasizes integrating security throughout the software development lifecycle and driving DevSecOps practices. The ideal candidate should possess a deep technical background in application security, secure coding, and automation within CI/CD processes. Responsibilities include collaborating with development teams, implementing security practices, and conducting assessments on applications and APIs.

Qualifications

  • Strong understanding of application security principles, including OWASP Top 10.
  • Hands-on experience with various security tools for SAST, DAST, and SCA.
  • Familiarity with CI/CD tools and secure practices in containerized environments.

Responsibilities

  • Collaborate with teams to integrate security into the software development lifecycle.
  • Design and implement secure coding practices and threat modelling processes.
  • Lead the integration of security tools into CI/CD pipelines.

Skills

Application security principles
Secure coding
Automation within CI/CD
Container security
Cloud security
Threat modeling

Tools

Veracode
Burp Suite
OWASP ZAP
Snyk
Aqua Security

Job description

Insight Investment is looking for an Application Security Architect to join our Cyber Security team in Manchester. This role focuses on embedding security into the software development lifecycle and driving DevSecOps practices across engineering teams. The ideal candidate will have a strong technical background in application security, secure coding, and automation within CI/CD pipelines.

Role Responsibilities
  • Collaborate with development, DevOps, and architecture teams to integrate security into the SDLC
  • Design and implement secure coding practices and threat modelling processes
  • Lead the integration of security tools into CI/CD pipelines (e.g., SAST, DAST, SCA, IAST)
  • Conduct security assessments of applications, APIs, and microservices
  • Develop and maintain security standards, guidelines, and automation scripts
  • Provide guidance on secure design patterns and architecture decisions
  • Promote a DevSecOps culture and continuous security improvement across development and architecture team
Experience Required
  • Strong understanding of application security principles (e.g., OWASP Top 10, CWE)
  • Hands-on experience with one of each or more security tools:
  • Static Analysis (SAST): Veracode (preferable), Checkmarx, Fortify, etc
  • Dynamic Analysis (DAST): Veracode (preferable), Burp Suite, OWASP ZAP, etc
  • Software Composition Analysis (SCA): Veracode (preferable), Snyk, Black Duck, etc
  • Container Security: Aqua Security (preferable), Prisma Cloud, etc
  • Familiarity with CI/CD tools (e.g., Github Actions, Teamcity, Octopus, Azure DevOps)
  • Knowledge of containerised environments and their security best practices (Docker, Kubernetes)
  • Knowledge of cloud security (Azure) and infrastructure-as-code (Terraform, CloudFormation)
  • (Preferable) Experience with threat modeling tools (e.g., Threat Dragon, IriusRisk)

Insight is committed to being an inclusive employer and encourages applications from all suitably qualified applicants irrespective of background, circumstances, age, disability, gender identity, ethnicity, religion or belief and sexual orientation. If you are a candidate with a disability, or are assisting a candidate with a disability, and require an accommodation to apply for one of our jobs, please email us at TalentAcquisition@InsightInvestment.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Consultant
Application Security Consultant

Cytix • Manchester

Hybrid
GBP 40,000 - 50,000
Private Healthcare (inc. dental, optical, and hearing)
Unlimited Holidays
EMI share options
Senior Application Security Consultant
Senior Application Security Consultant

Salt • Greater London

Hybrid
GBP 90,000 - 120,000
Senior Application Security Consultant (SAST/DAST/OWASP )
Senior Application Security Consultant (SAST/DAST/OWASP )

Salt • City Of London

Hybrid
GBP 66,000 - 111,000
Senior Application Security Consultant (SAST/DAST/OWASP )
Senior Application Security Consultant (SAST/DAST/OWASP )

Salt • Greater London

Hybrid
Hybrid work model
Security Architect - Product and Application Security
Security Architect - Product and Application Security

Harrington Starr • Greater London

Hybrid
GBP 90,000 - 130,000
Application Security (AppSec) Engineer
Application Security (AppSec) Engineer

AND Digital • London

On-site
GBP 60,000 - 80,000
DevSecOps-Driven Application Security Architect
DevSecOps-Driven Application Security Architect

Insight Investment • Manchester

On-site
GBP 70,000 - 100,000
Security Architect
Security Architect

Solirius Ltd. • Greater London

On-site
GBP 90,000 - 120,000
Competitive Salary
Bonus Scheme
Private Healthcare Insurance
+2
Senior Application Security Consultant (SAST/DAST/OWASP )
Senior Application Security Consultant (SAST/DAST/OWASP )

Xpand Group • Greater London

Hybrid
GBP 115,000 - 138,000
Senior Application Security Engineer
Senior Application Security Engineer

Tec Partners Recruitment Ltd • Greater London

On-site
GBP 92,000 - 120,000