At a Glance
- Tasks: Join us as an Application Security Test Engineer, ensuring secure software development and testing.
- Company: Market-leading software house with a focus on security and innovation.
- Benefits: Earn up to £70k, enjoy hybrid working, and access great perks like gym membership.
- Why this job: Make a real impact by embedding security into applications used by millions worldwide.
- Qualifications: Strong understanding of application security and hands-on experience with testing tools.
- Other info: Collaborative environment with opportunities for continuous learning and career growth.
The predicted salary is between 43200 - 58800 £ per year.
Are you a security focussed Test Engineer? You could be joining a market leading software house that’s remote access product is used by hundreds of millions of users worldwide.
What’s in it for you:
- Salary to £70k
- Bonus
- Hybrid working
- Pension
- Private Medical Care
- Life Assurance
- Travel Insurance
- Subsidised gym membership and a range of other perks
Your role:
As an Application Security Test Engineer you’ll play a key role in building security into applications, carrying out threat modelling and risk assessments during the design phase to ensure solutions are secure by default. You’ll help define security requirements for new features and take part in architecture reviews to spot and address potential risks early. Working closely with development teams, you’ll carry out secure code reviews and provide guidance on best practices, including alignment with CIS Critical Security Controls and the OWASP Top 10, collaborating with engineers to embed security into development workflows rather than treating it as an afterthought. You’ll be hands-on with security testing across a range of environments, running Dynamic Application Security Testing (DAST) against live applications, focusing on issues such as cross-site scripting, SQL injection and broken access control. You’ll also use Interactive Application Security Testing (IAST) tools for runtime analysis, including tools such as Burp Suite, OWASP ZAP and Frida, alongside Static Application Security Testing (SAST) and software composition analysis to assess source code, binaries, and third-party dependencies.
Location / WFH:
You can work from home most of the time, meeting up with colleagues in the Cambridge office on a weekly / monthly basis.
About you:
- You have a strong understanding of the secure software development lifecycle and DevSecOps principles
- You have a good knowledge of Application Security principles and common vulnerabilities (e.g., XSS, SQL Injection, Broken Access Control)
- You have hands-on experience with DAST, IAST and Penetration Testing tools (e.g., Burp Suite, OWASP ZAP, Frida) and Static Application Security Testing (SAST)
- You can read and understand code (e.g.Java, Python, C++ or similar)
- You’re familiar with using software composition analysis (SCA) tools such as Blackduck, Mend / Whitesource, Snyk or similar
- You’re collaborative and pragmatic with great communications skills
Apply now to find out more about this Application Security Test Engineer (DAST IAST) opportunity.
At Client Server we believe in a diverse workplace that allows people to play to their strengths and continually learn. We’re an equal opportunities employer whose people come from all walks of life and will never discriminate based on race, colour, religion, sex, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Application Security Test Engineer in Newton employer: Client Server
Contact Detail:
Client Server Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Application Security Test Engineer in Newton
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. A friendly chat can sometimes lead to job opportunities that aren't even advertised.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to application security. This gives potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by brushing up on common security vulnerabilities and testing tools. Be ready to discuss how you've tackled these issues in past roles or projects.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Application Security Test Engineer in Newton
Some tips for your application 🫡
Read the Job Description Carefully: Before you start your application, take a good look at the job description. Make sure you understand what we're looking for in an Application Security Test Engineer and how your skills align with our needs.
Tailor Your CV and Cover Letter: Don’t just send a generic CV! Highlight your experience with DAST, IAST, and any relevant tools like Burp Suite or OWASP ZAP. Show us how your background makes you a perfect fit for this role.
Show Off Your Technical Skills: We want to see your hands-on experience! Include specific examples of how you've tackled security vulnerabilities or worked with secure coding practices. This is your chance to shine!
Apply Through Our Website: Make it easy for us to find your application by applying directly through our website. It helps us keep track of all applications and ensures you’re considered for the role!
How to prepare for a job interview at Client Server
✨Know Your Security Basics
Make sure you brush up on your knowledge of application security principles and common vulnerabilities like XSS and SQL injection. Being able to discuss these topics confidently will show that you understand the core responsibilities of the role.
✨Familiarise Yourself with Tools
Get hands-on experience with tools mentioned in the job description, such as Burp Suite and OWASP ZAP. If you can demonstrate your familiarity with these during the interview, it’ll give you a significant edge.
✨Prepare for Technical Questions
Expect technical questions related to DAST, IAST, and SAST. Practise explaining how you would approach security testing in various scenarios, as this will showcase your problem-solving skills and practical knowledge.
✨Show Your Collaborative Spirit
Since the role involves working closely with development teams, be ready to discuss examples of how you've successfully collaborated in the past. Highlight your communication skills and how you’ve embedded security into workflows.