Application Security Testing Lead - DAST

Methodius IT Recruitment

Donegal

Hybrid

EUR 90,000 - 130,000

Full time

22 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Annual Bonus Scheme
Contributory Pension
Private Medical Insurance
Life Assurance & Long-Term Disability
Employee Assistance Programme
22 days annual leave

Job summary

Our client, a global financial services organisation, is seeking an Application Security Lead to drive the rollout of DAST across a large enterprise environment, combining technical depth with programme leadership.

You'll lead selection, implementation, and adoption of enterprise DAST capabilities, embedding automated security testing across the SDLC and coordinating with security, DevOps and engineering teams.

Qualifications

  • Strong experience in Application Security, Penetration Testing, or AppSec Engineering.
  • Hands-on experience with DAST tools, authenticated scanning, and policy tuning.
  • Deep understanding of web and API security, including OWASP WSTG.
  • Experience integrating security testing into CI/CD and DevSecOps pipelines.
  • Knowledge of Jenkins, GitLab CI, GitHub Actions, Azure DevOps, or similar platforms.
  • Ability to analyse findings, identify true positives, and communicate risk effectively.
  • Strong stakeholder management and programme delivery experience.
  • Experience selecting or implementing enterprise DAST platforms.
  • Python scripting or security automation experience.
  • API security testing (REST, GraphQL, SOAP, OpenAPI).
  • Knowledge of SAST, SCA, ServiceNow, Vault, or CyberArk.
  • Certifications such as OSCP, BSCP, HTB CPTS, or equivalent.
  • Financial services or regulated industry experience.

Responsibilities

  • Act as the technical lead and SME for DAST within the DevSecOps ecosystem.
  • Evaluate, select, and implement enterprise DAST solutions for web applications and APIs.
  • Define scanning standards, methodologies, and CI/CD integration requirements.
  • Support engineering teams with DAST onboarding, configuration, and optimisation.
  • Review and validate findings, prioritising remediation based on risk.
  • Establish programme governance, reporting, metrics, and stakeholder engagement.
  • Partner with development, DevOps, and security teams to drive remediation and adoption.
  • Ensure DAST complements existing penetration testing and application security activities.
  • Provide regular technical and executive-level reporting on programme performance and risk.

Skills

Application Security
Penetration Testing
DAST Tools
CI/CDSecurity
DevSecOps
Web API Security
Jenkins
GitLab CI
GitHub Actions
Azure DevOps
Python Scripting
OpenAPI/REST/GraphQL
SAST/SCA
Security Automation

Tools

Jenkins
GitLab CI
GitHub Actions
Azure DevOps

Job description

Our client, a global financial services organisation, is seeking an experienced Application Security Lead to drive the rollout of Dynamic Application Security Testing (DAST) across a large-scale enterprise environment.

This is a high-impact role combining deep technical application security expertise with programme leadership. You'll lead the selection, implementation, and adoption of DAST capabilities, helping embed automated security testing across the software development lifecycle.

Key Responsibilities
  • Act as the technical lead and SME for DAST within the DevSecOps ecosystem.
  • Evaluate, select, and implement enterprise DAST solutions for web applications and APIs.
  • Define scanning standards, methodologies, and CI/CD integration requirements.
  • Support engineering teams with DAST onboarding, configuration, and optimisation.
  • Review and validate findings, prioritising remediation based on risk.
  • Establish programme governance, reporting, metrics, and stakeholder engagement.
  • Partner with development, DevOps, and security teams to drive remediation and adoption.
  • Ensure DAST complements existing penetration testing and application security activities.
  • Provide regular technical and executive-level reporting on programme performance and risk.
Requirements
  • Strong experience in Application Security, Penetration Testing, or AppSec Engineering.
  • Hands-on experience with DAST tools, authenticated scanning, and policy tuning.
  • Deep understanding of web and API security, including OWASP WSTG.
  • Experience integrating security testing into CI/CD and DevSecOps pipelines.
  • Knowledge of Jenkins, GitLab CI, GitHub Actions, Azure DevOps, or similar platforms.
  • Ability to analyse findings, identify true positives, and communicate risk effectively.
  • Strong stakeholder management and programme delivery experience.
  • Experience selecting or implementing enterprise DAST platforms.
  • Python scripting or security automation experience.
  • API security testing (REST, GraphQL, SOAP, OpenAPI).
  • Knowledge of SAST, SCA, ServiceNow, Vault, or CyberArk.
  • Certifications such as OSCP, BSCP, HTB CPTS, or equivalent.
  • Financial services or regulated industry experience.
Why Apply?

This is an opportunity to shape and lead a strategic application security programme within a complex global organisation. You'll influence security tooling, standards, and DevSecOps practices while working with senior security and engineering stakeholders across the business.

Salary dependent on candidate experience.

  • Benefits: Annual Bonus Scheme.
  • Contributory Pension.
  • Private Medical Insurance.
  • Life Assurance & Long-Term Disability.
  • Employee Assistance Programme.
  • 22 days annual leave + 10 public holidays.
  • Relocation package.
  • Continuous Learning & Development.
  • Access to extensive training & certification resources.
  • Lunch & Learn sessions.
  • Additional perks including company discounts, on-site parking, and bike-to-work scheme

Based in Letterkenny, Co. Donegal. Hybrid (3 days onsite per week). Candidates must be eligible to work in Ireland/EU. Permanent role.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Lead – DAST
Application Security Lead – DAST

Methodius Ltd • Roscommon

Hybrid
EUR 90,000 - 120,000
Annual Bonus Scheme
Contributory Pension
Private Medical Insurance
+5
Application Security Penetration Tester – Web, Mobile & API
Application Security Penetration Tester – Web, Mobile & API

Methodius Ltd • Ireland

Hybrid
EUR 70,000 - 100,000
Hybrid work model
Relocation package
Annual bonus scheme
+2
Application Security Engineer
Application Security Engineer

Prometric • Leinster

On-site
EUR 70,000 - 110,000
Pension Scheme
Life Assurance
Employee Health and Wellbeing Initiati
Application Security Engineer (AWS)
Application Security Engineer (AWS)

DGH Recruitment • Dublin

On-site
EUR 90,000 - 120,000
Application Security Lead - DAST & DevSecOps (Hybrid)
Application Security Lead - DAST & DevSecOps (Hybrid)

Methodius Ltd • Roscommon

Hybrid
EUR 90,000 - 120,000
Annual Bonus Scheme
Contributory Pension
Private Medical Insurance
+5
DAST Programme Lead for Web & API Security
DAST Programme Lead for Web & API Security

Methodius IT Recruitment • Donegal

Hybrid
EUR 90,000 - 130,000
Annual Bonus Scheme
Contributory Pension
Private Medical Insurance
+3
Senior Application Security Engineer
Senior Application Security Engineer

SoftCo • Dublin

Hybrid
EUR 120,000 - 180,000
Performance bonus
Health insurance
Pension
+6
Senior IT Security Analyst
Senior IT Security Analyst

September Consulting Ltd • Cork

On-site
EUR 60,000 - 80,000
Application Penetration Tester
Application Penetration Tester

Tata Consultancy Services • Ireland

Hybrid
EUR 70,000 - 90,000
Pension
Health care
Life assurance
+2
Senior Application Security Engineer
Senior Application Security Engineer

Eli Lilly and Company • Cork

Hybrid
EUR 90,000 - 130,000
Premium workspace
Hybrid working
Healthcare
+8