At a Glance
- Tasks: Join us as an Application Security Engineer, tackling vulnerabilities and enhancing secure coding practices.
- Company: Be part of a fast-growing company dedicated to strengthening its security capabilities.
- Benefits: Enjoy a competitive salary, bonuses, and the flexibility of remote work.
- Why this job: Make a real impact on software security while collaborating with talented teams.
- Qualifications: 3-5 years in application security, with knowledge of OWASP Top 10 and CI/CD pipelines.
- Other info: This role does not offer sponsorship; ideal for those ready to advance their AppSec career.
The predicted salary is between 75000 - 85000 £ per year.
Salary: £75,000–£85,000 + bonus + benefits
Location: UK – Remote
We’re working with a fast-growing company that’s investing heavily in its security capabilities. As an Application Security Engineer, you’ll work closely with Software Engineers and DevOps teams to integrate security into every stage of the development lifecycle. You’ll take a hands-on role in identifying and fixing vulnerabilities, improving secure coding practices, and driving technical initiatives that improve the security of software in production. This is a great opportunity for someone looking to take the next step in their AppSec career while having a meaningful impact across multiple product teams.
Responsibilities:- Identify and remediate application-level security issues through code analysis, tooling, and manual testing
- Conduct secure code reviews and collaborate with engineering teams to drive fixes
- Integrate security tools (SAST, DAST, SCA) into CI/CD pipelines and optimise their use
- Contribute to threat modelling and help teams design with security in mind
- Develop proof-of-concepts (PoCs) to demonstrate the impact of security flaws
- Support secure development through documentation, training, and developer engagement
- 3–5+ years of experience in application security or secure software development
- Strong understanding of common vulnerabilities and how to prevent them (OWASP Top 10)
- Experience with CI/CD pipelines and integrating AppSec tooling
- Familiarity with modern programming languages (JavaScript, Java, Python)
- Excellent communication skills and a collaborative mindset when working with developers
*Unfortunately, we are not able to provide sponsorship for this role.*
If you’re ready to grow your career in a hands-on AppSec role and help shape secure software at scale, apply now or reach out directly to j.ryan@lawrenceharvey.com.
Application Security Engineer employer: Lawrence Harvey
Contact Detail:
Lawrence Harvey Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Application Security Engineer
✨Tip Number 1
Familiarise yourself with the OWASP Top 10 vulnerabilities. Being able to discuss these in detail during your interview will show that you have a solid understanding of application security and can effectively contribute to the team.
✨Tip Number 2
Highlight any experience you have with CI/CD pipelines and integrating security tools. Be prepared to share specific examples of how you've optimised these processes in previous roles, as this is crucial for the position.
✨Tip Number 3
Demonstrate your collaborative mindset by preparing to discuss how you've worked with developers in the past. Share instances where your communication skills helped bridge the gap between security and development teams.
✨Tip Number 4
Consider developing a proof-of-concept (PoC) for a common vulnerability. This hands-on demonstration can set you apart from other candidates and showcase your practical skills in identifying and remediating security issues.
We think you need these skills to ace Application Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in application security and secure software development. Emphasise your familiarity with common vulnerabilities, especially those listed in the OWASP Top 10, and any experience you have with CI/CD pipelines.
Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Mention specific projects or experiences that demonstrate your ability to identify and remediate security issues, and how you can contribute to improving secure coding practices.
Showcase Technical Skills: Include a section in your application that showcases your technical skills, particularly in modern programming languages like JavaScript, Java, and Python. Highlight any experience you have with security tools such as SAST, DAST, and SCA.
Prepare for Potential Questions: Think about potential interview questions related to application security and be ready to discuss your approach to secure code reviews, threat modelling, and integrating security into development processes. This will help you articulate your expertise during the interview stage.
How to prepare for a job interview at Lawrence Harvey
✨Showcase Your Technical Skills
Be prepared to discuss your experience with application security tools and methodologies. Highlight specific projects where you identified vulnerabilities or improved secure coding practices, as this will demonstrate your hands-on expertise.
✨Understand the OWASP Top 10
Make sure you have a solid grasp of the OWASP Top 10 vulnerabilities and can explain how to prevent them. This knowledge is crucial for the role and will show that you are well-versed in current security challenges.
✨Demonstrate Collaboration
Since the role involves working closely with Software Engineers and DevOps teams, be ready to share examples of how you've successfully collaborated in the past. Emphasise your communication skills and your ability to engage with developers on security matters.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would approach integrating security into CI/CD pipelines or conducting secure code reviews, and be ready to articulate your thought process.