Staff Application Security Engineer
Staff Application Security Engineer

Staff Application Security Engineer

Full-Time 48000 - 84000 £ / year (est.) No home office possible
Go Premium
I

At a Glance

  • Tasks: Conduct security assessments and develop innovative solutions to enhance product security.
  • Company: Ivanti is a global leader in IT systems and security management, fostering a diverse and inclusive culture.
  • Benefits: Enjoy competitive salary, flexible hours, and a focus on professional development.
  • Why this job: Join a dynamic team making a real impact in cybersecurity while enjoying a healthy work-life blend.
  • Qualifications: 5+ years in web application security with strong technical knowledge of vulnerabilities and secure coding practices.
  • Other info: Remote work options available; commitment to diversity and inclusion in hiring.

The predicted salary is between 48000 - 84000 £ per year.

Join to apply for the Staff Application Security Engineer role at Ivanti

Join to apply for the Staff Application Security Engineer role at Ivanti

Get AI-powered advice on this job and more exclusive features.

In today’s work environment, employees use a myriad of devices to access IT applications and data over multiple networks to stay productive, wherever and however they work. Ivanti elevates and secures Everywhere Work so that people and organizations can thrive.

While our headquarters is in the U.S., half of our employees and customers are outside the country. We have 36 offices in 23 nations, with significant offices in London, Frankfurt, Paris, Sydney, Shanghai, Singapore, and other major cities around the world.

Ivanti’s mission is to be a global technology leader enabling organizations to elevate Everywhere Work, automating tasks that discover, manage, secure, and service all their IT assets. Through diverse and inclusive hiring, decision-making, and commitment to our employees and partners, we will continue to build and deliver world-class solutions for our customers.

Our Culture – Everywhere Work Centered Around You

At Ivanti, our success begins with our people. This is why we embrace Everywhere Work across the globe, where Ivantians and our customers are thriving. We believe in a healthy work-life blend and act on it by fostering a culture where all perspectives are heard, respected, and valued. Through Ivanti’s Centered Around You approach, our employees benefit from programs focused on their professional development and career growth.

We align through our core values by locking arms in collaboration, being champions for our customers, focusing on the outcomes that matter most and fighting the good fight against cyber-attacks. Are you ready to join us on the journey to elevate Everywhere Work?

About The Team

Ivanti is a global leader in IT systems and security management, service management, asset management, and mobility management solutions, and is experiencing significant growth worldwide. The company has received numerous awards for being a Top Place to Work. With open positions around the globe, it\’s an exciting time to join Ivanti! Competitive salary and benefits and flexible hours. Ivanti is a great place to work.If you’re passionate about what you do and are interested in developing solutions that make a difference and in having fun while doing it, Ivanti is the place for you!

What You Will Be Doing

  • Develop both broad and deep technical understanding of Ivanti products, services and architectures
  • Conduct security assessments such as threat modelling, secure architecture, code reviews and penetration tests on web and mobile applications and services
  • Interpret security vulnerability reports to stakeholders, providing advice on vulnerability prioritization, remediation and mitigation
  • Closely coordinate with all stakeholders to bake in security into all phases of SDLC
  • Create and maintain documentation for security processes
  • Deliver accurate metrics to stakeholders and business leaders in a clear and concise manner
  • Maintain high proficiency in relevant security topics (latest vulnerabilities, TTPs, exploits, etc.)
  • Create and deliver security education across the organization
  • Develop innovative and scalable tools, solutions and processes to enhance product security operations
  • Support accurate security tooling implementation to maximize their effectiveness and interpret their results to relevant stakeholders

To Be Successful in The Role, You Will Have

  • 5+ years of experience in web application security roles
  • Deep technical understanding of both common and uncommon security vulnerabilities
  • Passion and self drive for researching vulnerabilities and latest exploitation techniques
  • Ability to discover and exploit security vulnerabilities as well as to give practical and applicable remediation advice
  • Practical knowledge of applied cryptography and common attacks against modern cryptographic algorithms (encryption at rest, TLS, hashing, etc.)
  • Ability to explain vulnerabilities in a precise, concise and easy to understand manner to stakeholders of varying security and technical backgrounds
  • Ability to work in a self-directed environment that is highly collaborative and cross functional
  • Experience in performing Threat Modelling and providing actionable advice from its results
  • High level of experience in scoring security vulnerability severities through CVSS
  • Good understanding of SSDLC as well as development and integration tools and technologies uses as part of CI/CD pipelines
  • Experience implementing, running and maintaining tools and processes to reliably identify security issues across large code bases (SAST, SCA, DAST, container scanning, penetration tests, etc.)
  • Experience providing secure coding education to developers
  • Experience with at least one programming language (preferrable Python)
  • Ability to performing internal penetration tests as well as coordinating penetration tests executed by third party vendors
  • Ability to triage and reproduce security vulnerabilities from varying internal and external reporting sources
  • Experience in programs such as Responsible Disclosure, Bug Bounty or Vulnerability Disclosure Program

You are an ideal candidate if you

  • Want to make a difference
  • Have high experience in web application, database and infrastructure security topics
  • Have high technical knowledge on security vulnerabilities, Défense techniques and security best practices
  • Can easily explain complex topics
  • Have excellent verbal and written communication skills
  • Enjoy working cross teams and being a valuable resource to other engineers
  • Have experience in authentication and authorization standards and protocols (SAML, Oauth, LDAP, AD, etc.)
  • Know how to go beyond generic security vulnerability remediation advice
  • Can read and write code with ease
  • Love to learn about latest security topics even in your free time
  • Have good understanding of one or more major cloud providers (Azure, AWS, GCP)
  • Know how to educate others on security topics
  • Have previous experience in securing SaaS applications and cloud environments at scale
  • Understand in depth CI/CD pipelines, containerization (Kubernetes, Docker, etc.) and Microservices
  • Know how to coordinate external vulnerability reporting
  • Have B.S. Computer Science or similar combination of education and experience

Our Employer Commitment

This job posting will remain active until a qualified candidate is identified.

At Ivanti, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, and any other characteristic protected by applicable law. Ivanti believes that diversity and inclusion among our teammates is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool.

If you require special assistance for the best interview experience, please contact us at recruiting@ivanti.com.

Seniority level

  • Seniority level

    Mid-Senior level

Employment type

  • Employment type

    Full-time

Job function

  • Job function

    Research and Engineering

  • Industries

    Computer and Network Security, Engineering Services, and Software Development

Referrals increase your chances of interviewing at Ivanti by 2x

Get notified about new Application Security Engineer jobs in Scotland, United Kingdom.

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr

Staff Application Security Engineer employer: Ivanti

Ivanti is an exceptional employer that prioritises a healthy work-life blend and fosters a culture of inclusivity and collaboration. With a strong commitment to employee development, competitive salaries, and flexible working hours, Ivanti empowers its staff to thrive in their careers while contributing to innovative solutions in IT security. Located in Scotland, employees benefit from being part of a global team that values diverse perspectives and champions professional growth.
I

Contact Detail:

Ivanti Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Staff Application Security Engineer

✨Tip Number 1

Familiarise yourself with Ivanti's products and services. Understanding their specific security needs and challenges will help you tailor your discussions during interviews, showcasing your knowledge and enthusiasm for the role.

✨Tip Number 2

Network with current or former Ivanti employees on platforms like LinkedIn. Engaging with them can provide valuable insights into the company culture and expectations, which can be beneficial when preparing for interviews.

✨Tip Number 3

Stay updated on the latest trends in application security and vulnerabilities. Being able to discuss recent developments or case studies during your interview will demonstrate your passion and commitment to the field.

✨Tip Number 4

Prepare to discuss your experience with threat modelling and secure coding practices. Be ready to share specific examples of how you've implemented these in past roles, as this aligns closely with what Ivanti is looking for.

We think you need these skills to ace Staff Application Security Engineer

Web Application Security
Threat Modelling
Penetration Testing
Security Vulnerability Assessment
Secure Software Development Lifecycle (SSDLC)
Applied Cryptography
Common Security Vulnerabilities
Security Tooling Implementation
Secure Coding Practices
Programming in Python
Cross-Functional Collaboration
Communication Skills
Cloud Security (Azure, AWS, GCP)
CI/CD Pipeline Understanding
Containerization (Kubernetes, Docker)
Vulnerability Disclosure Program Experience
Authentication and Authorization Protocols (SAML, OAuth, LDAP, AD)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in web application security, including specific projects or roles that demonstrate your skills in threat modelling, secure architecture, and vulnerability assessments. Use keywords from the job description to align your experience with what Ivanti is looking for.

Craft a Compelling Cover Letter: In your cover letter, express your passion for security and how your background aligns with Ivanti's mission. Mention specific experiences that showcase your ability to work collaboratively and your understanding of security vulnerabilities. Make it personal and engaging to stand out.

Showcase Your Technical Skills: Include a section in your application that lists your technical skills, particularly those mentioned in the job description, such as knowledge of cryptography, programming languages (like Python), and experience with CI/CD pipelines. This will help demonstrate your fit for the role.

Prepare for Potential Questions: Think about how you would explain complex security concepts to stakeholders with varying levels of technical knowledge. Be ready to discuss your approach to vulnerability remediation and any relevant experiences that highlight your problem-solving skills in security contexts.

How to prepare for a job interview at Ivanti

✨Understand Ivanti's Mission and Culture

Before your interview, take some time to research Ivanti's mission and values. Familiarise yourself with their commitment to diversity, inclusion, and the concept of 'Everywhere Work'. This will help you align your answers with their culture and demonstrate that you're a good fit.

✨Showcase Your Technical Expertise

Be prepared to discuss your experience with web application security, including specific vulnerabilities you've encountered and how you've addressed them. Highlight your knowledge of security assessments, threat modelling, and secure coding practices, as these are crucial for the role.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about past experiences where you identified and mitigated security vulnerabilities, and be ready to explain your thought process clearly and concisely.

✨Communicate Effectively with Non-Technical Stakeholders

Since you'll need to explain complex security concepts to stakeholders with varying technical backgrounds, practice articulating your thoughts in a simple and understandable manner. This skill is essential for ensuring everyone is on the same page regarding security measures.

Staff Application Security Engineer
Ivanti
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

I
  • Staff Application Security Engineer

    Full-Time
    48000 - 84000 £ / year (est.)
  • I

    Ivanti

    1000-5000
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>