Enable job alerts via email!

Application Security Engineer

NatWest Group

City Of London

On-site

GBP 50,000 - 70,000

Full time

16 days ago

Job summary

A financial services company in London is seeking an Application Security Engineer to enhance secure solution design and development. You will perform threat modeling, implement automated security tests, and foster collaboration among teams to improve application security. Ideal candidates will have strong knowledge of application security frameworks and excellent communication skills.

Qualifications

  • Excellent knowledge of application security and experience in delivering secure solutions.
  • Experience implementing security champions networks.
  • Familiarity with application vulnerability management reporting.
  • Strong communication and influencing skills.
  • Knowledge of industry cyber security frameworks like OWASP and NIST.

Responsibilities

  • Perform threat modeling for applications.
  • Implement automated security testing in development pipelines.
  • Report on application risk posture to stakeholders.
  • Work with architects and security teams to share knowledge.
  • Promote and implement new security initiatives and tools.

Skills

Application security knowledge
Experience with engineering teams
Communication skills
Automating and API calls for DevOps
Job description
Overview

As an Application Security Engineer, you'll be supporting our Product and Engineering teams in securely designing and developing solutions and continuously improving the visibility of our risks to enable our engineering teams to prioritise and fix issues in line with our vulnerability policy. This is a unique opportunity for someone with application security experience to join NatWest Boxed. We are building solutions to provide mobile and web banking services and Banking as a Service (embedded finance) to enable companies to provide banking services to their end customers. Gain valuable exposure and make a real impact with your work as you keep our applications and platforms safe for our business and customers.

Responsibilities
  • Performing threat modelling
  • Implementing automated security testing as part of our pipeline
  • Supporting reporting of our application risk posture to stakeholders
  • Supporting and working with architects and the security team, exchanging knowledge and upskilling each other
  • Promoting and implementing new security initiatives, trialing new security tools
Qualifications
  • Excellent knowledge of application security and working with engineering teams to deliver secure solutions
  • Experience implementing or working with security champions networks
  • Experience delivering and reporting on application vulnerability management
  • Great communication and influencing skills
  • Knowledge and experience of automating and API calls for DevOps
  • Understanding and knowledge of common industry cyber security frameworks, standards and methodologies, including OWASP, MITRE ATT&CK and NIST
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.