Application Security Specialist

Experis - ManpowerGroup

Greater London

Hybrid

GBP 75,000 - 110,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
Annual bonus
Car allowance
Hybrid working
Comprehensive benefits package
Ongoing training and professional dev.
Industry-recognised certification
Enterprise-scale security programmes
Modern cloud/DevSecOps/AI technologies
Clear career progression

Job summary

Experis - ManpowerGroup is seeking an Application Security Specialist to strengthen security across a major enterprise’s software products and platforms. You will partner with engineering teams to embed security into the SDLC and drive a security-first culture.

You will lead high-risk reviews, implement SAST/DAST/SCA tooling, and shape secure coding standards. A hybrid London role offers competitive salary, bonus, and benefits with exposure to cloud, AI, and DevSecOps initiatives.

Qualifications

  • Degree or equivalent in technical discipline such as Computer Science, Software Engineering, Cyber Security, Information Security.
  • Formal training or demonstrable experience in Secure Development or Application Security.

Responsibilities

  • Lead application security reviews for high-risk products and services.
  • Conduct and oversee SAST, DAST, fuzz testing and API security assessments.
  • Perform architecture, design and code security reviews.
  • Assess applications against OWASP Top 10 and other industry standards.
  • Translate findings into remediation plans and developer guidance.
  • Support secure coding standards across technologies including Java, C and C++.
  • Embed security throughout the SDLC and CI/CD pipelines.
  • Mentor development teams and promote secure development practices.
  • Drive adoption of secure development standards and methodologies.
  • Monitor threats, vulnerabilities and industry trends; support continuous improvement.

Skills

SAST
DAST
SCA
CI/CD security
OWASP Top 10
Threat modelling
API security
Secure coding
Security reviews
DevSecOps

Education

Degree in Computer Science / Software Engineering / Cyber Security

Tools

SAST tools
DAST tools
SCA tools

Job description

Application Security Specialist
Shape the Future of Secure Software Development Across a Leading Enterprise Organisation


Competitive Salary + Bonus + Car Allowance + Benefits | London | Hybrid Working

Join a growing Cyber, Risk & Security team and play a pivotal role in strengthening the security of products, platforms and services delivered across a complex European technology environment.
As an Application Security Specialist, you'll be a key member of the Secure Development Centre of Excellence (CoE), partnering with engineering teams to embed security throughout the software development lifecycle. You'll drive a security-first culture, influence development standards, and help deliver secure, resilient applications for both internal and customer-facing solutions.

Key Responsibilities:
Application Security & Assurance
  • Lead application security reviews for high-risk products and services.
  • Conduct and oversee SAST, DAST, fuzz testing and API security assessments.
  • Perform architecture, design and code security reviews.
  • Assess applications against OWASP Top 10 and other industry standards.
  • Translate findings into practical remediation plans and developer guidance.
Secure Development & DevSecOps
  • Support the development of secure coding standards across technologies including Java, C and C++.
  • Embed security throughout the Software Development Lifecycle (SDLC).
  • Design and support secure CI/CD pipeline patterns.
  • Integrate SAST, DAST, SCA and security tooling into development workflows.
  • Support automation of security controls and assurance activities.
Security Leadership & Developer Enablement
  • Act as a subject matter expert for Application Security across the organisation.
  • Deliver secure coding training, workshops and awareness sessions.
  • Mentor development teams and promote security-first engineering practices.
  • Drive adoption of secure development standards and methodologies.
Threat & Vulnerability Management
  • Support application vulnerability management activities.
  • Assist development teams with vulnerability triage and remediation planning.
  • Identify recurring weaknesses and opportunities for continuous improvement.
  • Monitor emerging threats, vulnerabilities and industry trends.
Secure AI Development
  • Support the adoption of secure development practices for AI-enabled applications.
  • Assist with controls relating to AI model security, data handling and misuse risks.
  • Help development teams securely adopt emerging technologies.
Essential Experience:
  • 3-5 years' experience within Application Security, Secure Development, or Software Engineering with a security focus.
  • Hands-on experience conducting application security reviews and assessments.
  • Strong knowledge of application security principles and secure coding practices.
  • Experience working with SAST, DAST and Software Composition Analysis (SCA) tools.
  • Experience integrating security controls into CI/CD pipelines.
  • Strong understanding of OWASP Top 10 and common vulnerability classes.
  • Experience with API and web application security.
  • Knowledge of threat modelling techniques and methodologies.
  • Experience working closely with software engineering teams in enterprise environments.
  • Ability to read and understand code in languages such as Java, C, C++, C#, Python or similar.
  • Strong understanding of shift-left security and secure development lifecycle practices.
Highly Desirable Skills:
  • Fuzz testing and advanced dynamic testing techniques.
  • Manual code review experience.
  • DevSecOps implementation and security automation.
  • Experience integrating SAST, DAST, SCA and secrets scanning tools.
  • Cloud-native, microservices and serverless architecture security.
  • Secure AI and data-driven application security.
  • OWASP SAMM, ASVS or other security maturity frameworks.
  • Experience building or supporting a Security Centre of Excellence.
  • Experience working within multinational or multi-entity organisations.
  • Delivery of developer-focused security training and workshops.
Qualifications:
Essential
  • Degree or equivalent professional experience in:
    • Computer Science
    • Software Engineering
    • Cyber Security
    • Information Security
    • Or a related technical discipline.
  • Formal training, certification or demonstrable experience within Secure Development or Application Security.
Desirable
  • CSSLP (Certified Secure Software Lifecycle Professional).
  • GWAPT or GWEB.
  • OSCP or equivalent Offensive Security certifications.
  • Microsoft Azure Security Engineer Associate.
  • AWS Security Specialty.
  • Google Professional Cloud Security Engineer.
  • DevSecOps or CI/CD related certifications.
  • ISO 27001 certifications.
  • NIST CSF and NIST SSDF knowledge.
Package & Benefits
  • Competitive salary
  • Annual bonus
  • Car allowance
  • Hybrid working
  • Comprehensive benefits package
  • Ongoing training and professional development
  • Industry-recognised certification support
  • Exposure to enterprise-scale application security programmes
  • Opportunity to work with modern cloud, DevSecOps and AI technologies
  • Clear career progression within a growing cyber security function
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Specialist
Application Security Specialist

Experis IT • Greater London

Hybrid
GBP 90,000 - 120,000
Hybrid working
Competitive salary
Annual bonus
+2
Application Security Engineer
Application Security Engineer

Hargreaves Lansdown • West of England

Hybrid
GBP 62,000 - 90,000
Hybrid working (2 days in Bristol)
Discretionary annual bonus
Pension contributions up to 11%
+4
Senior Application Security Consultant (SAST/DAST/OWASP )
Senior Application Security Consultant (SAST/DAST/OWASP )

Xpand Group • Greater London

Hybrid
GBP 115,000 - 138,000
Software Security Engineer
Software Security Engineer

Data Science Festival • Greater London

Hybrid
GBP 90,000 - 150,000
Hybrid working model
Pension scheme
Generous holiday allowance
Senior Application Security Specialist
Senior Application Security Specialist

Secure Source • Greater London

On-site
GBP 70,000 - 110,000
Senior Security Engineer
Senior Security Engineer

Data Science Festival • Greater London

Hybrid
GBP 100,000 - 135,000
Generous holiday allowance
Pension scheme
Ongoing learning and professional development
+2
Application Security Engineer JavaScript
Application Security Engineer JavaScript

Client Server • Greater London

Hybrid
GBP 68,000 - 80,000
Bonus
Equity
Benefits package
Senior Application Security Specialist
Senior Application Security Specialist

La Fosse • Greater London

Hybrid
Application Security Consultant
Application Security Consultant

Cytix • Manchester

Hybrid
GBP 40,000 - 50,000
Private Healthcare (inc. dental, optical, and hearing)
Unlimited Holidays
EMI share options
Security Architect - Systems Integrator
Security Architect - Systems Integrator

Hamilton Barnes Associates Limited • Bristol

Remote
GBP 40,000 - 80,000
Structured career development
Competitive salary
Bonus scheme
+4