Senior Application Security Engineer (United Kingdom)
Senior Application Security Engineer (United Kingdom)

Senior Application Security Engineer (United Kingdom)

Full-Time 48000 - 72000 £ / year (est.) Home office (partial)
Go Premium
P

At a Glance

  • Tasks: Secure software delivery by embedding security across platforms and leading threat modelling.
  • Company: Join a cutting-edge software supply chain company focused on security and innovation.
  • Benefits: Enjoy remote work options, flexible hours, and opportunities for professional growth.
  • Why this job: Combine your passion for building and breaking to make a real impact in software security.
  • Qualifications: Strong software development background, especially in Python, with deep application security knowledge required.
  • Other info: This role is remote within the UK or Ireland; no work permit sponsorship available.

The predicted salary is between 48000 - 72000 £ per year.

Some people like building things. Others like breaking them. You? You love both and more importantly, you love stopping bad actors from breaking the things you helped build. If that sounds like your vibe, we’ve got a job you’ll want to see. This job is with the software supply chain company - securing and powering how software gets delivered everywhere.

What you'll do:

  • Embed security across the platform, from source to prod.
  • Architect security controls across distributed, cloud-native systems.
  • Lead threat modeling and security reviews (and get people to enjoy them).
  • Pen-test services and infra (ethically, please).
  • Extend security automation and monitoring with tools like CircleCI, GitHub Actions, DataDog, AWS Security Hub, etc.
  • Harden everything from container runtimes to APIs to artifact pipelines.
  • Write secure code, review other people’s code, and help everyone level up their secure coding game.
  • Build tools, automate boring stuff, and occasionally drop a ‘sploity’ proof of concept for fun.

You need:

  • A background in software development. At your core, you’re a software engineer. Python for sure and a bit of TypeScript never hurt anyone.
  • Deep application security knowledge.
  • Hands-on experience with SAST, DAST, RASP, and securing cloud (preferably AWS).
  • Strong grasp of container security, API security, IaC, and CI/CD.
  • You’ve done pen testing, threat modeling, and maybe even built some of your own security tools.
  • Big bonus if you’ve secured artifact systems or supply chains before.
  • Bigger bonus if you’ve worked with Firecracker, gVisor, or fancy things like SCA and data enclaves.
  • You believe security should enable, not block, engineering.
  • You’re a diplomat - you gotta work with engineering to secure the SDLC, not spook them.

If interested, get in touch on rose@ninedots.io. This job is remote on the Island of Ireland or in the UK. You need to be physically located here - you cannot work remotely from another country. Work permit sponsorship is not available.

P

Contact Detail:

Placed Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Application Security Engineer (United Kingdom)

✨Tip Number 1

Familiarise yourself with the latest trends in application security and cloud-native systems. Being well-versed in current technologies like AWS Security Hub and CI/CD tools will show us that you're not just knowledgeable but also passionate about the field.

✨Tip Number 2

Engage with the community by participating in forums or attending meetups related to application security. Networking with professionals in the industry can provide insights and potentially lead to referrals, making your application stand out.

✨Tip Number 3

Showcase your hands-on experience with pen testing and threat modelling through personal projects or contributions to open-source. This practical experience is invaluable and demonstrates your ability to apply your skills effectively.

✨Tip Number 4

Prepare to discuss how you've collaborated with engineering teams in the past to enhance security without hindering development. We value candidates who can bridge the gap between security and engineering, so having examples ready will be beneficial.

We think you need these skills to ace Senior Application Security Engineer (United Kingdom)

Software Development
Python Programming
TypeScript Knowledge
Application Security Expertise
Static Application Security Testing (SAST)
Dynamic Application Security Testing (DAST)
Runtime Application Self-Protection (RASP)
Cloud Security (AWS preferred)
Container Security
API Security
Infrastructure as Code (IaC)
Continuous Integration/Continuous Deployment (CI/CD)
Penetration Testing
Threat Modelling
Security Tool Development
Security Automation
Monitoring Tools (e.g., DataDog, AWS Security Hub)
Collaboration and Communication Skills
Problem-Solving Skills
Adaptability in Engineering Practices

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your software development background, particularly in Python and TypeScript. Emphasise your experience with application security, including SAST, DAST, and cloud security, to align with the job requirements.

Craft a Compelling Cover Letter: In your cover letter, express your passion for both building and securing software. Mention specific experiences where you've successfully implemented security measures or led threat modelling sessions, showcasing your ability to work collaboratively with engineering teams.

Showcase Relevant Projects: If you have worked on projects involving pen testing, container security, or CI/CD pipelines, be sure to include these in your application. Highlight any tools you've built or automated processes that demonstrate your proactive approach to security.

Proofread and Format: Before submitting your application, carefully proofread all documents for spelling and grammatical errors. Ensure your CV and cover letter are well-formatted and easy to read, as this reflects your attention to detail—a crucial trait for a Senior Application Security Engineer.

How to prepare for a job interview at Placed

✨Showcase Your Technical Skills

Be prepared to discuss your experience with Python, TypeScript, and the various security tools mentioned in the job description. Highlight specific projects where you've implemented security measures or developed security tools.

✨Demonstrate Your Problem-Solving Ability

Expect to face scenario-based questions that assess your ability to identify vulnerabilities and propose solutions. Use examples from your past experiences to illustrate how you approached similar challenges.

✨Emphasise Collaboration

Since the role requires working closely with engineering teams, be ready to discuss how you've successfully collaborated with others in the past. Share instances where you helped bridge the gap between security and development.

✨Prepare for Technical Assessments

You might be asked to perform a pen test or threat model during the interview. Brush up on your skills and be ready to demonstrate your thought process and methodologies clearly and confidently.

Senior Application Security Engineer (United Kingdom)
Placed
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

P
  • Senior Application Security Engineer (United Kingdom)

    Full-Time
    48000 - 72000 £ / year (est.)
  • P

    Placed

    50-100
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>