Enable job alerts via email!

Application Security Manager

Breadfast

Street

On-site

GBP 50,000 - 80,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company is seeking a Senior Security Engineer to enhance their application security efforts. The role involves hands-on assessments, secure development practices, and collaboration across teams to ensure secure software delivery. Candidates should have 2-5 years of experience and relevant degrees in cybersecurity or related fields.

Qualifications

  • 2-5 years of experience in Application Security.
  • Bachelor's or master's degree in a related field.

Responsibilities

  • Contribute to the design and implementation of the application security program.
  • Conduct threat modeling sessions and security walkthroughs with development teams.
  • Perform static and dynamic application security testing.

Skills

Web Application Penetration Testing (WAPT)
Mobile Application Penetration Testing (MAPT)
Secure Software Development Lifecycle (S-SDLC)
Threat Modelling
Secure Source Code Review (SSCR)
SecDevOps

Education

Bachelor's degree in cyber security, information security, computer engineering, computer science, or a related field

Job description

Role Objective:

The Senior Security Engineer will be responsible for executing and advancing application security efforts through hands-on assessments, process improvements, secure development enablement, and cross-functional collaboration. They will act as a subject matter expert for security design and remediation, contributing to secure software delivery at scale.

Key Roles & Responsibilities:
  1. Contribute to the design and implementation of the organization’s application security program.
  2. Support the enforcement of secure coding practices and industry best standards.
  3. Conduct threat modeling sessions, design reviews, and security walkthroughs with development teams.
  4. Ensure alignment with regulatory frameworks and standards (e.g., OWASP, PCI-DSS, ISO 27001).
  5. Perform static (SAST) and dynamic (DAST) application security testing using tools such as Checkmarx, SonarQube, Veracode, and Burp Suite.
  6. Lead and conduct manual code reviews and penetration testing exercises as needed.
  7. Prioritize and guide the remediation of vulnerabilities based on business risk and impact.
  8. Assess third-party libraries, applications, and APIs for security risks and integration issues.
  9. Embed security into CI/CD pipelines by integrating and optimizing automated security tools.
  10. Provide architectural and design security consultations to product and engineering teams.
  11. Drive awareness and adoption of secure coding practices among developers and DevOps teams.
  12. Deliver security knowledge-sharing sessions and tailored training to technical teams.
  13. Collaborate with cross-functional stakeholders (product, IT, compliance, engineering).
  14. Support investigation and response to application security incidents.
  15. Conduct root cause analysis and assist with implementing preventative controls.
  16. Coordinate with the SecOps team on logging, detection, and monitoring enhancements.
  17. Help define and report on security KPIs, risks, and remediations to management.
  18. Stay informed on current threat trends, tools, and emerging AppSec methodologies.
Required Experience, Education, Knowledge, and Skills

2-5 years of experience in Application Security.

Bachelor's degree and/or master’s degree in cyber security, information security, computer engineering, computer science, or a related field.

Core Knowledge & Skills:
  • Web Application Penetration Testing (WAPT)
  • Mobile Application Penetration Testing (MAPT)
  • Secure Software Development Lifecycle (S-SDLC)
  • Threat Modelling
  • Secure Source Code Review (SSCR)
  • SecDevOps
Preferred Certifications:
  • EC-Council: E|CDE, C|ASE .NET, C|ASE JAVA, W|AHS
  • INE Security: eWPT, eWPTX, eMAPT
  • The SecOps Group (TSOG): CAP, CAPen, CAPenX, CMPen-Android, CMPen-iOS
  • GIAC: GWAPT, GMOB
  • Offensive Security (OS): OSWA, OSWE
  • Practical DevSecOps (PDSO): CDP, CDE, CTMP, CASP, CSSE
  • Mile2: C)SWAE
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Pharmacovigilance / Safety Manager

JR United Kingdom

Remote

GBP 60,000 - 90,000

Today
Be an early applicant

Pharmacovigilance / Safety Manager

Meet Life Sciences

Remote

GBP 60,000 - 80,000

4 days ago
Be an early applicant

Senior Product Manager - Safety AI

Samsara

Remote

GBP 70,000 - 90,000

6 days ago
Be an early applicant

Security Manager

Breadfast

Street

On-site

GBP 40,000 - 60,000

Yesterday
Be an early applicant

Senior Health & Safety Manager

ENGINEERINGUK

Birmingham

Remote

GBP 70,000 - 81,000

7 days ago
Be an early applicant

Senior Health & Safety Manager

Amey

Birmingham

Remote

GBP 55,000 - 70,000

7 days ago
Be an early applicant

Senior Health & Safety Manager

AMEY

Birmingham

Remote

GBP 60,000 - 70,000

8 days ago

Process Safety Manager

Morson Talent

Scotland

Remote

GBP 50,000 - 70,000

8 days ago

Process Safety Manager

ZipRecruiter

City of Edinburgh

Remote

GBP 65,000 - 75,000

10 days ago