Job Search and Career Advice Platform

Enable job alerts via email!

Senior Application Security Engineer

Nextech

City Of London

On-site

GBP 80,000 - 100,000

Full time

29 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading UK technology firm is seeking a Senior Application Security Engineer to protect its infrastructure and applications. You'll lead security initiatives and collaborate within a technical team to implement robust security solutions. The ideal candidate has hands-on experience in application security, knowledge of web vulnerabilities, and relevant security certifications. This role offers a competitive salary, bonus potential, and a flexible hybrid work environment.

Benefits

Competitive salary with annual bonus
25 days holiday plus flexible bank holidays
Excellent pension scheme
Healthcare cash plan
Access to digital GP
Volunteering days and retail discounts
Flexible and inclusive workplace culture

Qualifications

  • Strong hands-on experience in application and cloud security.
  • Deep understanding of web app vulnerabilities and secure coding practices.
  • Excellent documentation and communication skills.

Responsibilities

  • Lead application and cloud security initiatives.
  • Drive vulnerability management across the technology stack.
  • Perform security testing and remediate findings.
  • Support cloud security controls for Azure.
  • Champion secure development and DevSecOps integration.
  • Research emerging threats and recommend mitigations.

Skills

Application security engineering
Cloud security engineering
Web app vulnerabilities awareness
Security testing tools proficiency
Network and infrastructure security knowledge
Documentation and communication skills

Education

Relevant certifications (CISSP, CompTIA Security+, GIAC)
Job description

Job Title: Senior Application Security Engineer

Salary: GBP70,000

Location: Reading/remote

About the Organisation

Join a fast–growing UK technology and consulting firm that's investing heavily in cutting–edge cyber security. With a strong focus on innovation, collaboration, and professional development, this company empowers its people to shape the future of secure digital transformation across a wide range of industries. You'll be part of a business that values expertise, agility, and doing the right thing – where everyone has the opportunity to make a genuine impact.

About the Role

The Senior Application Security Engineer will play a key role in protecting the organisation's infrastructure, cloud platforms, and applications. Working within a highly technical and collaborative cyber team – supported by a 24/7 external SOC – you'll research, test, and implement next–generation security solutions to safeguard data and systems.

This role offers the chance to lead on application and cloud security initiatives, influence secure design standards, and mentor colleagues in best practices.

Key Responsibilities
  • Lead application and cloud security initiatives, ensuring systems and software are secure by design.
  • Drive vulnerability management and implement a risk–based approach across the technology stack.
  • Perform security testing (SAST, DAST, SCA) and work with developers to remediate findings.
  • Support cloud security controls (primarily Azure, including cloud–native apps).
  • Champion secure development, threat modelling, and DevSecOps integration.
  • Research emerging threats and recommend proactive mitigations.
  • Provide mentoring, training, and security awareness support to internal teams.
Essential Skills & Experience
  • Strong hands–on experience in application and cloud security engineering.
  • Deep understanding of web app vulnerabilities (OWASP Top 10, CWE) and secure coding practices.
  • Proficiency with security testing tools and vulnerability management platforms.
  • Broad knowledge of network and infrastructure security concepts (WAFs, ACLs, VPNs, etc.).
  • Familiarity with security frameworks and principles such as Zero Trust and risk–based security.
  • Relevant certifications such as CISSP, CompTIA Security+, GIAC, or equivalent.
  • Excellent documentation, communication, and stakeholder collaboration skills.
Desirable
  • Background in threat modelling or secure software design.
  • Knowledge of ISO27001, Cyber Essentials Plus, or cloud security certifications.
  • Experience in large–scale or regulated environments.
What's on Offer
  • Competitive salary with annual bonus potential.
  • 25 days holiday (plus flexible bank holidays and holiday trading).
  • Excellent pension scheme with matched contributions.
  • Healthcare cash plan and wellbeing support.
  • Access to digital GP and employee assistance programme.
  • Volunteering days, referral bonuses, and retail discounts.
  • A flexible, inclusive, and forward–thinking workplace culture.

This is an opportunity to be at the forefront of modern application security – influencing strategy, shaping solutions, and working in a team that truly values your expertise.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.