Enable job alerts via email!

Senior Application Security Engineer

JR United Kingdom

Derby

Remote

GBP 70,000 - 100,000

Full time

4 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading software supply chain company is seeking a Senior Application Security Engineer based in Derby, UK. In this role, you will embed security practices across platforms, conduct penetration testing, and collaborate with engineering teams, using advanced tools to ensure a secure Software Development Life Cycle (SDLC). Candidates with a strong software engineering background and deep application security knowledge are encouraged to apply.

Qualifications

  • Deep application security knowledge is required.
  • Experience with securing cloud environments, especially AWS.
  • Proficiency in Python and familiarity with TypeScript is a plus.

Responsibilities

  • Architect security controls across distributed cloud-native systems.
  • Perform penetration testing and security assessments.
  • Embed security across the platform from source to production.

Skills

Application security knowledge
Cloud security
Penetration testing
Threat modeling
Secure coding

Education

Background in software development

Tools

AWS Security Hub
CircleCI
GitHub Actions
DataDog

Job description

Social network you want to login/join with:

Senior Application Security Engineer, Derby

Client: Cloudsmith

Location: Derby, United Kingdom

Job Category: Other

EU work permit required: Yes

Job Views:

4

Posted:

31.05.2025

Expiry Date:

15.07.2025

Job Description:

Some people like building things. Others like breaking them. You? You love both and more importantly, you love stopping bad actors from breaking the things you helped build. If that sounds like your vibe, we’ve got a job you’ll want to see.

This job is with the software supply chain company - securing and powering how software gets delivered everywhere.

What you'll do:

  • Embed security across the platform, from source to production.
  • Architect security controls across distributed, cloud-native systems.
  • Lead threat modeling and security reviews (and get people to enjoy them).
  • Perform penetration testing services and infrastructure security assessments (ethically, please).
  • Extend security automation and monitoring with tools like CircleCI, GitHub Actions, DataDog, AWS Security Hub, etc.
  • Harden everything from container runtimes to APIs to artifact pipelines.
  • Write secure code, review others' code, and help everyone level up their secure coding game.
  • Build tools, automate boring tasks, and occasionally create a proof of concept for fun.

You need:

  • A background in software development. You’re fundamentally a software engineer. Proficiency in Python and some TypeScript is a plus.
  • Deep application security knowledge.
  • Hands-on experience with SAST, DAST, RASP, and securing cloud environments (preferably AWS).
  • Strong understanding of container security, API security, Infrastructure as Code (IaC), and CI/CD pipelines.
  • Experience with pen testing, threat modeling, and developing security tools.
  • Bonus points for securing artifact systems or supply chains.
  • Additional bonus if familiar with Firecracker, gVisor, or advanced security tools like Software Composition Analysis (SCA) and data enclaves.
  • You believe security should enable, not block, engineering.
  • You are diplomatic and able to work collaboratively with engineering teams to secure the Software Development Life Cycle (SDLC).

This job is remote within the Isle of Ireland or in the UK. You must be physically located here; remote work from another country is not permitted.

Work permit sponsorship is not available.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Application Security Engineer

JR United Kingdom

Nottingham

Remote

GBP 80,000 - 100,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Northampton

Remote

GBP 60,000 - 90,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Stockport

Remote

GBP 60,000 - 85,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Manchester

Remote

GBP 60,000 - 80,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Coventry

Remote

GBP 60,000 - 80,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Stoke-on-Trent

Remote

GBP 60,000 - 90,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Sheffield

Remote

GBP 70,000 - 90,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Shrewsbury

Remote

GBP 60,000 - 85,000

3 days ago
Be an early applicant

Senior Application Security Engineer

JR United Kingdom

Chesterfield

Remote

GBP 60,000 - 90,000

3 days ago
Be an early applicant