At a Glance
- Tasks: Enhance application security through penetration testing and automated security products.
- Company: Join CLEAR, a leader in secure software delivery with a focus on innovation.
- Benefits: Enjoy comprehensive healthcare, flexible time off, and a competitive salary of $170,000 - $215,000.
- Why this job: Make a real impact on software security while collaborating with diverse teams.
- Qualifications: 5+ years in software development with security integration; expert in OWASP and security tools.
- Other info: Dynamic work environment with a strong focus on learning and development.
The predicted salary is between 48000 - 62000 Β£ per year.
We are seeking a Senior Application Security Engineer to enhance our team and elevate our application security testing. You will be responsible for penetration testing, remediation, and creating automated security products to empower secure software delivery across CLEAR.
What you'll do:
- Collaborate with Product, Software Engineering, DevOps, and IT teams.
- Perform security risk assessments, manual penetration testing, automate security testing, threat modeling, and conduct secure coding education.
- Deliver security products and consult with DevOps, supporting automated security testing in CI/CD pipelines.
- Lead internal/external penetration tests, triage issues, and drive remediation.
- Develop functional and non-functional security requirements.
- Conduct security assessments, code reviews, and penetration tests to identify vulnerabilities.
- Implement and manage security tools like SAST, DAST, and SCA.
How you'll measure success:
- Effective security implementation within the SDLC.
- Implementation of automated security testing.
- Effective partnerships with engineering, DevOps, and product teams.
- Continuous improvement of application security programs.
What you're great at:
- 5+ years in software development with security integration into SDLC processes; 2+ years of architecture experience.
- Expert knowledge of OWASP Top 10 or CWE Top 25 testing, including PoCs and secure code remediation.
- Excellent communication skills to explain technical topics.
- Strong understanding of Software Security Architecture, SDLC, and CI/CD.
- Experience with application security tools (DAST, SAST, IAST, RASP, WAF).
- Familiarity with PCI, NIST 800-53, FedRAMP, and ISO27001.
- Experience with security testing tools like Burp Suite, Metasploit, and OWASP ZAP.
- Experience with mobile platform security concepts for iOS & Android.
How You'll be Rewarded:
At CLEAR, we invest in your well-being and learning & development. We offer comprehensive healthcare plans, family-building benefits, flexible time off, annual wellness stipend, free OneMedical memberships, a CLEAR Plus membership, and a 401(k) retirement plan with employer match. The base salary range for this role is $170,000 - $215,000, depending on levels of skills and experience. CLEAR provides reasonable accommodation to qualified individuals with disabilities or protected needs. Please let us know if you require a reasonable accommodation to apply for a job or perform your job.
How to Apply
Interested in this position? Please submit your resume and cover letter through the application portal.
Senior Application Security Engineer in London employer: Clear Corp
Contact Detail:
Clear Corp Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Senior Application Security Engineer in London
β¨Network Like a Pro
Get out there and connect with folks in the industry! Attend meetups, webinars, or even local tech events. The more people you know, the better your chances of landing that Senior Application Security Engineer role.
β¨Show Off Your Skills
Donβt just talk about your experience; demonstrate it! Create a portfolio showcasing your penetration testing projects or any automated security tools you've developed. This will make you stand out when weβre looking for someone who can hit the ground running.
β¨Ace the Interview
Prepare for technical interviews by brushing up on OWASP Top 10 and your favourite security tools like Burp Suite or Metasploit. We want to see how you think, so be ready to tackle some real-world scenarios during the interview!
β¨Apply Through Our Website
Make sure to apply through our website for the best chance at getting noticed. Tailor your application to highlight your experience with SDLC processes and security automation, and let us know how you can contribute to our team!
We think you need these skills to ace Senior Application Security Engineer in London
Some tips for your application π«‘
Tailor Your Resume: Make sure your resume highlights your experience in application security and aligns with the job description. We want to see how your skills in penetration testing and security automation can elevate our team!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about application security and how your background makes you a perfect fit for us. Donβt forget to mention specific projects or tools you've worked with.
Showcase Your Technical Skills: Be sure to include your expertise with OWASP, SAST, DAST, and any other relevant tools in your application. We love seeing candidates who can demonstrate their technical prowess and understanding of secure coding practices.
Apply Through Our Website: We encourage you to submit your application through our website. Itβs the best way for us to receive your materials and ensures youβre considered for the role. Plus, it shows youβre keen on joining our team!
How to prepare for a job interview at Clear Corp
β¨Know Your OWASP Inside Out
Make sure youβre well-versed in the OWASP Top 10 vulnerabilities. Be prepared to discuss how you've tackled these issues in past projects, and have examples ready to demonstrate your expertise in secure coding and remediation.
β¨Showcase Your Automation Skills
Since automation is key for this role, be ready to talk about your experience with security tools like SAST, DAST, and CI/CD pipelines. Highlight any specific projects where youβve implemented automated security testing and the impact it had on the development process.
β¨Communicate Clearly and Confidently
Youβll need to explain complex security concepts to non-technical teams, so practice articulating your thoughts clearly. Use simple language to describe technical topics, and prepare to answer questions from various stakeholders during the interview.
β¨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills. Think through potential security challenges you might face in the role and how you would approach them. This will show your analytical thinking and practical application of security principles.