Offensive Security Engineer in Reading

Offensive Security Engineer in Reading

Reading Full-Time 36000 - 60000 ÂŁ / year (est.) No home office possible
C

At a Glance

  • Tasks: Join our team to enhance product security and drive penetration testing initiatives.
  • Company: CHAMP Cargosystems, a global leader in air cargo IT solutions.
  • Benefits: Diverse work environment, competitive salary, and opportunities for professional growth.
  • Why this job: Make a real impact on security practices in innovative SaaS products.
  • Qualifications: 8+ years in software development, strong Java skills, and experience with security tools.
  • Other info: Collaborative culture with a focus on continuous improvement and mentorship.

The predicted salary is between 36000 - 60000 ÂŁ per year.

CHAMP Cargosystems provides the most comprehensive range of integrated IT solutions and distribution services for the air cargo transport chain. Our portfolio spans core management systems, messaging services, and eCargo solutions. These include applications designed to meet customs and security requirements, quality optimization, as well as e‑freight and mobility needs. Our products and services are recognized globally under the Cargospot and Traxon brands. We serve over 200 airlines and GSAs, connecting them with approximately 3,000 forwarders and GHAs worldwide. Our solutions help customers, and their clients, adapt to the critical and ongoing changes in air transport logistics and meet the demands of global trade. Headquartered in Luxembourg, CHAMP Cargosystems operates offices in Reading, Zurich, Frankfurt, Manila, Singapore, and Atlanta.

We are looking for an Offensive Security Engineer to join our Security & GRC team. The role will be reporting to the Security Architect.

Responsibilities
  • Establish and guide our Product Security Team.
  • Drive our penetration testing capability, secure software development practices, oversee vulnerability remediation, and build automated offensive security capabilities integrated into our agile CI/CD environment.
  • Ensure that security is embedded into every sprint, release, and product lifecycle stage.
Security governance & development enablement
  • Establish secure coding standards, reusable libraries, and best practices for Java web application development.
  • Collaborate with product owners and developers to integrate security requirements into user stories.
  • Provide guidance on threat modeling and secure design during sprint planning.
  • Ensure security tasks are prioritized alongside functional requirements in the agile backlog.
Offensive security & testing
  • Build and oversee internal penetration testing capabilities for web applications and APIs.
  • Ensure each release in the CI/CD chain undergoes automated and manual security testing.
  • Expand testing scope to infrastructure and cloud environments as maturity grows.
  • Continuously simulate attacker techniques to validate product resilience.
  • Drive adoption of SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) solutions, with emphasis on Java and web application frameworks.
  • Integrate automated security testing into CI/CD pipelines.
  • Oversee development of unit test frameworks with embedded security checks.
Compliance & reporting
  • Align product security practices with compliance frameworks (ISO27001, SOC2, NIS2, EU AI Act, etc.).
  • Collaborate with Compliance and IT Security teams to maintain certifications and audit readiness.
  • Provide leadership with clear reporting on product security posture, vulnerabilities, and remediation progress.
  • Define backlog items related to security improvements, vulnerability remediation, and testing initiatives.
  • Facilitate sprint planning, daily stand‑ups, retrospectives, and ensure delivery of security objectives.
  • Mentor and coach team members, fostering a culture of collaboration and continuous improvement.
Knowledge, skills, and abilities
  • Strong knowledge of secure development practices, threat modeling, and vulnerability management.
  • Hands‑on experience with SAST/DAST tools and CI/CD integration.
  • Excellent communication skills to engage developers, auditors, and executives.
  • Proven experience leading teams in agile/SCRUM environments.
Education and Experience
  • Bachelor’s or Master’s degree in Software Engineering, Cybersecurity, or related field.
  • 8+ years of experience in software development and application security, with hands‑on exposure to Java web applications.
  • Certifications such as OSCP or CISSP, CISM.
  • Experience in SaaS environments and cloud‑native security.
  • Familiarity with compliance frameworks (ISO27001, SOC2, NIS2, EU AI Act).
  • Ability to balance strategic vision with hands‑on technical leadership.

The selected candidate may be subject to the provision of an up‑to‑date (not older than 3 months) criminal record certificate.

Our culture and values

We believe happy employees create thriving work environments. With over 500 team members from 32 countries, speaking over 30 languages, CHAMP is a uniquely diverse and welcoming place to work. Our globally minded staff collaborates with clients and vendors worldwide from our offices in London, ZĂĽrich, Manila, Atlanta, Singapore, and our Headquarters in the Grand Duchy of Luxembourg.

Security: the successful candidate will have to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and data protection, use of company assets, and incident reporting).

CHAMP Cargosystems is an equal opportunity employer and prohibits discrimination and harassment of any kind. We are committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions are based on business needs, job requirements and individual qualifications, without regard to race, ethnic background, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate.

Please note that any personal data that you submit along with your application will be processed by CHAMP and may be processed by any of its global entities as necessary. These data will be treated in strict compliance with the applicable data protection legislation.

Offensive Security Engineer in Reading employer: CHAMP Cargosystems S.A.

CHAMP Cargosystems is an exceptional employer, offering a dynamic and inclusive work environment that fosters collaboration among over 500 team members from diverse backgrounds. With a strong focus on employee growth, we provide ample opportunities for professional development in the rapidly evolving field of cybersecurity, particularly within our innovative SaaS solutions. Located in Luxembourg, our headquarters not only serves as a hub for global operations but also promotes a culture of flexibility and support, ensuring that every employee feels valued and empowered to contribute to our mission in air cargo logistics.
C

Contact Detail:

CHAMP Cargosystems S.A. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Offensive Security Engineer in Reading

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current employees at CHAMP Cargosystems. A friendly chat can sometimes lead to job opportunities that aren't even advertised!

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to secure coding and penetration testing. This gives potential employers a taste of what you can bring to the table.

✨Tip Number 3

Prepare for interviews by brushing up on common security scenarios and challenges. Be ready to discuss how you would handle specific vulnerabilities or integrate security into agile processes. Confidence is key!

✨Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining the team at CHAMP Cargosystems.

We think you need these skills to ace Offensive Security Engineer in Reading

Penetration Testing
Secure Software Development
Vulnerability Remediation
Java Web Application Development
Threat Modeling
SAST (Static Application Security Testing)
DAST (Dynamic Application Security Testing)
CI/CD Integration
Agile/SCRUM Methodology
Compliance Frameworks (ISO27001, SOC2, NIS2, EU AI Act)
Communication Skills
Team Leadership
Cloud-Native Security
Mentoring and Coaching

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Offensive Security Engineer role. Highlight your experience with secure coding practices, penetration testing, and any relevant certifications. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background makes you a great fit for our team. Don't forget to mention your experience in agile environments and working with Java web applications.

Showcase Your Projects: If you've worked on any relevant projects, whether personal or professional, make sure to include them. We love seeing practical examples of your skills, especially in offensive security and CI/CD integration. It gives us a better idea of what you can bring to the table!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us that you're genuinely interested in joining our team at CHAMP Cargosystems!

How to prepare for a job interview at CHAMP Cargosystems S.A.

✨Know Your Stuff

Make sure you brush up on your knowledge of secure coding practices, especially in Java. Familiarise yourself with SAST and DAST tools, as well as the CI/CD integration process. Being able to discuss these topics confidently will show that you're not just a candidate, but a potential asset to their team.

✨Show Your Agile Side

Since the role involves working within SCRUM methodology, be prepared to talk about your experience in agile environments. Share specific examples of how you've integrated security into sprints or collaborated with product owners to prioritise security tasks alongside functional requirements.

✨Demonstrate Leadership Skills

The position requires mentoring and coaching team members, so think of instances where you've led a team or facilitated discussions around security practices. Highlight your ability to foster collaboration and continuous improvement, as this aligns with their company culture.

✨Align with Their Values

CHAMP Cargosystems values diversity and a positive work environment. Be sure to express your appreciation for these values during the interview. Discuss how you can contribute to a thriving workplace and how your background and experiences align with their commitment to equal opportunity.

Offensive Security Engineer in Reading
CHAMP Cargosystems S.A.
Location: Reading

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

C
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>