DAS Application Security Lead
DAS Application Security Lead

DAS Application Security Lead

London Full-Time 48000 - 72000 £ / year (est.) No home office possible
I

At a Glance

  • Tasks: Lead application security initiatives, integrating security into the software development lifecycle.
  • Company: Join IBM CIC, a leader in tech innovation and consulting for top global companies.
  • Benefits: Enjoy flexible working, training opportunities, 25 days holiday, and a supportive work-life balance.
  • Why this job: Be part of a culture that values creativity, growth, and making a real impact in technology.
  • Qualifications: No specific education required; experience in DevSecOps and application security is preferred.
  • Other info: Embrace a diverse and inclusive environment where your ideas are valued.

The predicted salary is between 48000 - 72000 £ per year.

At IBM CIC, we deliver deep technical and industry expertise to a wide range of public and private sector clients in the UK. A career in IBM CIC means you'll have the opportunity to work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio. Curiosity and a constant quest for knowledge serve as the foundation to success in IBM CIC. In your role, you'll be encouraged to challenge the norm, investigate ideas outside of your role, and come up with creative solutions which impact a wide network of clients, whom may be at their site or one of our CIC or IBM locations. Our culture of evolution centres on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.

We offer:

  • A multitude of training opportunities from classroom to e-learning, mentoring and coaching programs as well as the chance to gain industry recognized certifications
  • Regular and frequent promotion and progression opportunities to ensure you can drive and develop your career with us
  • Feedback and checkpoints throughout the year
  • Diversity & Inclusion as an essential and authentic component of our culture through our policies and process as well as our Employee Champion teams and support networks
  • A culture where your ideas for growth and innovation are always welcome
  • Internal recognition programs for peer-to-peer appreciation as well as from manager to employees
  • Tools and policies to support your work-life balance from flexible working approaches, sabbatical programs, paid paternity leave, maternity leave and an innovative maternity returners scheme
  • More traditional benefits, such as 25 days holiday (in addition to public holidays), online shopping discounts, an Employee Assistance Program, a group personal pension plan of an additional 5% of your base salary paid by us monthly to save for your future.

In this role, you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology.

Your role and responsibilities:

As a Cybersecurity Architect, you will specialize in DevSecOps, integrating security into the software development lifecycle, automating security practices, and ensuring robust threat modeling and vulnerability management. Your primary focus will be on cloud-native and on-premises environments, with a strong emphasis on application security, infrastructure as code (IaC) security, and cloud security posture management. Additionally, you will contribute to data security efforts, securing data at rest, managing key management systems, and ensuring strong governance across data access.

Responsibilities:

  • Integrate security into the software development lifecycle, automating security practices into CI/CD pipelines.
  • Implement automated security testing (SCA, SAST, DAST) to identify and remediate vulnerabilities at every stage of development.
  • Secure IaC configurations, ensuring secure provisioning, configuration management, and continuous monitoring of infrastructure.
  • Utilize CNAPP and CSPM tools to secure cloud-native environments, focusing on application security and cloud posture management.
  • Design and deploy PKI solutions for secure key management, including key generation, key ceremonies, and certificate management.

Required education: None

Preferred education: Bachelor's Degree

Required technical and professional expertise:

  • Proven experience in DevSecOps, integrating security into the software development lifecycle.
  • Strong focus on automating security practices into CI/CD pipelines and ensuring collaboration between security and development teams.
  • Proficiency in application security testing methodologies (white-box, gray-box).
  • Experience with cloud-native environments, container security, and IaC security.
  • Deep knowledge of data protection, encryption standards, Q-Safe, and PKI systems, ensuring compliance and governance across both application and data security.

Preferred technical and professional experience:

  • Experience with Prisma Cloud and Palo Alto security tools.
  • Proficiency in DLP, CASB, and DAG technologies.
  • Familiarity with DSPM tools, data classification tools, and CI/CD tools.
  • Knowledge of SCA, SAST, and DAST tools.
  • Experience with IaC security tools, container security tools, and Kubernetes security.

IBM Consulting is IBM's consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. Our people are focused on accelerating our clients' businesses through the power of collaboration.

IBM is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

IBM wants you to bring your whole self to work and for you this might mean the ability to work flexibly. If you are interested in a flexible working pattern, please talk to our recruitment team to find out if this is possible in the current working environment.

DAS Application Security Lead employer: IBM

At IBM CIC, we foster a culture of innovation and continuous learning, making us an exceptional employer for those seeking to excel in the field of cybersecurity. Our commitment to employee growth is evident through extensive training opportunities, regular promotions, and a supportive work environment that values diversity and inclusion. Located in the heart of the UK, our consulting centres provide a dynamic setting where your ideas can flourish, ensuring you make a meaningful impact while enjoying a healthy work-life balance.
I

Contact Detail:

IBM Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land DAS Application Security Lead

✨Tip Number 1

Familiarise yourself with the latest DevSecOps practices and tools, especially those related to CI/CD pipelines. Being able to discuss specific examples of how you've integrated security into development processes will set you apart during interviews.

✨Tip Number 2

Network with professionals in the cybersecurity field, particularly those who have experience with cloud-native environments and application security. Engaging in relevant online forums or attending industry events can help you make valuable connections that may lead to job opportunities.

✨Tip Number 3

Stay updated on the latest trends and technologies in application security, such as container security and IaC security. Demonstrating your knowledge of these areas during discussions can show your commitment to continuous learning and innovation.

✨Tip Number 4

Prepare to discuss your experience with automated security testing methodologies like SCA, SAST, and DAST. Be ready to share specific instances where you've successfully identified and remediated vulnerabilities, as this will highlight your practical expertise in the field.

We think you need these skills to ace DAS Application Security Lead

DevSecOps Integration
CI/CD Pipeline Automation
Application Security Testing (SAST, DAST, SCA)
Cloud-Native Security
Infrastructure as Code (IaC) Security
Container Security
Data Protection and Encryption Standards
Public Key Infrastructure (PKI) Management
Threat Modelling
Vulnerability Management
Collaboration between Security and Development Teams
Compliance and Governance in Data Security
Experience with Prisma Cloud and Palo Alto Security Tools
Knowledge of Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) Technologies
Familiarity with CI/CD Tools and DSPM Tools

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in DevSecOps, application security, and cloud-native environments. Use specific examples that demonstrate your expertise in integrating security into the software development lifecycle.

Craft a Compelling Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Mention how your skills align with IBM's focus on innovation and collaboration, and provide examples of how you've successfully implemented security practices in previous roles.

Showcase Relevant Certifications: If you have any industry-recognised certifications related to cybersecurity, DevSecOps, or cloud security, be sure to include them in your application. This can set you apart from other candidates and demonstrate your commitment to professional development.

Highlight Soft Skills: IBM values collaboration and communication. In your application, mention experiences where you've worked effectively in teams or led initiatives that required strong interpersonal skills. This will show that you can thrive in their team-focused environment.

How to prepare for a job interview at IBM

✨Showcase Your DevSecOps Knowledge

Make sure to highlight your experience with integrating security into the software development lifecycle. Be prepared to discuss specific tools and methodologies you've used, especially in CI/CD pipelines, as this is crucial for the role.

✨Demonstrate Problem-Solving Skills

IBM values creativity and innovation, so come ready with examples of how you've tackled challenges in previous roles. Think about situations where you had to think outside the box to implement security measures or improve processes.

✨Familiarise Yourself with Relevant Tools

Brush up on your knowledge of tools like Prisma Cloud, DLP, and CASB technologies. Being able to discuss your proficiency with these tools will show that you're well-prepared for the technical aspects of the job.

✨Emphasise Collaboration

Since the role involves working closely with development teams, be ready to talk about your experience in fostering collaboration between security and development. Share examples of how you've successfully worked in cross-functional teams to achieve common goals.

DAS Application Security Lead
IBM
I
  • DAS Application Security Lead

    London
    Full-Time
    48000 - 72000 £ / year (est.)

    Application deadline: 2027-07-09

  • I

    IBM

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>