Security Architect - DevSecOps + Application Security

Security Architect - DevSecOps + Application Security

Full-Time 63000 - 77000 £ / year (est.) Working from home possible
C

At a Glance

  • Tasks: Lead secure software development and integrate security into CI/CD pipelines.
  • Company: Join Colt Technology Services, a diverse and inclusive tech leader.
  • Benefits: Flexible hours, remote work, mentorship, and global family leave.
  • Other info: Be part of a global network that values diversity and inclusion.
  • Why this job: Make a real impact on security in innovative tech projects.
  • Qualifications: 5+ years in information security with a focus on application security.

The predicted salary is between 63000 - 77000 £ per year.

This job is with Colt Technology Services, an inclusive employer and a member of my Gwork – the largest global platform for the LGBTQ+ business community.

Please do not contact the recruiter directly.

Colt provides network, voice and data centre services to thousands of businesses around the world, allowing them to focus on delivering their business goals instead of the underlying infrastructure.

Why we need this role

We are looking for a Security Architect specialising in Application Security and Dev Sec Ops to join the Security and Resilience – Security Architecture team.

This role will act as a subject matter expert for secure software development and Dev Sec Ops practices, supporting the integration of security controls into Colt’s development pipelines and ensuring applications are secure by design and by default.

The successful candidate will work closely with Engineering, Dev Ops, Cloud, SOC and Risk teams to embed security throughout the software development lifecycle, ensuring that Colt’s applications and services are designed, built and tested with security as a core requirement.

The role combines

  • Application security architecture and design
  • Dev Sec Ops pipeline integration and tooling
  • Security assurance and governance across internally developed applications

You will play an important role in supporting

  • Secure software development practices across Colt
  • Security integration into CI/CD pipelines (Git Lab)
  • Reduction of vulnerabilities through automated scanning and testing
  • Assurance of internet-facing applications through structured penetration testing activities

What you will do

  • Provide security architecture expertise for application security and Dev Sec Ops, supporting standards and best practices across the software development lifecycle
  • Contribute to the target architecture for secure software development, aligned to Colt’s Secure by Design principles
  • Support the integration of security controls into CI/CD pipelines (Git Lab), including automated testing and policy enforcement

• Design and implement application security controls, including

  • Static Application Security Testing (SAST)
  • Dynamic Application Security Testing (DAST)
  • Software Composition Analysis (SCA) / dependency scanning
  • Secrets and credentials scanning
  • Work with engineering teams to ensure consistent adoption of Dev Sec Ops practices and secure coding approaches
  • Support security architecture reviews and assurance activities for internally developed applications and services
  • Identify and help reduce risks related to application vulnerabilities, insecure coding practices and exposed credentials
  • Support the coordination and execution of third-party penetration testing of Colt’s internet-facing applications
  • Assist in defining test scope, tracking execution and ensuring remediation of findings is properly managed
  • Provide guidance to engineering teams on remediation and prioritisation of vulnerabilities
  • Contribute to the development and maintenance of secure coding standards and architectural patterns
  • Ensure alignment with regulatory requirements such as TSA, DORA and ISO27001 in application design and deployment
  • Promote a security-first culture within development teams, including awareness and best practices
  • Maintain awareness of emerging risks and technologies, including basic AI/LLM-related application risks, and support translation into practical controls where required
  • Produce and maintain architecture artefacts, standards and guidance documentation

What we're looking for

Must haves

  • 5+ years of experience in information security, with a strong focus on application security and Dev Sec Ops
  • Strong understanding of secure software development practices and common application security risks (e. g. OWASP Top 10)
  • Hands-on experience working with or integrating Dev Sec Ops tooling within CI/CD environments (e. g. Git Lab pipelines)
  • Experience with application security testing tools and practices, including: SAST, DAST, SCA / dependency scanning and Secrets / credentials scanning.
  • Experience contributing to security design reviews for applications and APIs
  • Experience supporting or participating in penetration testing activities, including remediation tracking
  • Strong understanding of modern application architectures (e. g. APIs, microservices, cloud-native applications)
  • Knowledge of authentication and session management concepts within applications
  • Experience performing or supporting risk assessments aligned to recognised frameworks
  • Ability to translate technical vulnerabilities into business-aligned risk and remediation actions
  • Strong collaboration skills with engineering and development teams
  • Strong communication skills (technical and non-technical)

Might haves

  • Experience with Git Lab security tooling and pipeline integrations
  • Familiarity with cloud-native application security (Azure / GCP environments)
  • Exposure to API security controls and testing approaches
  • Basic understanding of AI/LLM application risks, such as prompt injection or data exposure
  • Experience working within regulated environments (telecommunications, financial services, critical infrastructure)
  • Understanding of Telecoms Security Act (TSA) requirements in application design

What we offer you

Looking to make a mark?

At Colt, you’ll make a difference. Because around here, we empower people. We don’t tell you what to do.

Instead, we employ people we trust, who come together across the globe to create intelligent solutions.

Our global teams are full of ambitious, driven people, all working together towards one shared purpose: to put the power of the digital universe in the hands of our customers wherever, whenever and however they want.

We give our people the opportunity to inspire and lead teams, and work on projects that connect people, cities, businesses, and ideas.

We want you to help us change the world, for the better.

  • Diversity and inclusion
  • Inclusion and valuing diversity of thought and experience are at the heart of our culture here at Colt.

From day one, you’ll be encouraged to be yourself because we believe that’s what helps our people to thrive.

We welcome people with diverse backgrounds and experiences, regardless of their gender identity or expression, sexual orientation, race, religion, disability, neurodiversity, age, marital status, pregnancy status, or place of birth.

Most recently we have

  • Signed the UN Women Empowerment Principles which guide our Gender Action Plan
  • Trained 60 (and growing) Colties to be Mental Health First Aiders
  • Please speak with a member of our recruitment team if you require adjustments to our recruitment process to support you.
  • For more information about our Inclusion and Diversity agenda, visit our

DEI pages .

Benefits

Our benefits support you through all parts of life, for both physical and mental health.

  • Flexible working hours and the option to work from home.
  • Extensive induction program with experienced mentors and buddies.
  • Opportunities for further development and educational opportunities.
  • Global Family Leave Policy.
  • Employee Assistance Program.
  • Internal inclusion & diversity employee networks.
  • A global network
  • When you join Colt you become part of our global network.

We are proud of our colleagues and the stories and experience they bring – take a look at ‘Our People’ site including our Empowered Women in Tech.

Security Architect - DevSecOps + Application Security employer: Colt Technology Services

Colt Technology Services is an exceptional employer that prioritises employee growth and development, offering a dynamic work culture where collaboration across teams is encouraged. Located in a vibrant tech hub, employees benefit from a supportive environment that fosters innovation and provides opportunities to engage with cutting-edge regulatory challenges, making it a rewarding place for those passionate about security compliance.

C

Contact Details:

Colt Technology Services Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Architect - DevSecOps + Application Security

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Colt Technology Services, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Colt Technology Services

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Colt Technology Services. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Security Architect - DevSecOps + Application Security

Application Security
DevSecOps
Secure Software Development Practices
CI/CD Pipeline Integration
Static Application Security Testing (SAST)
Dynamic Application Security Testing (DAST)
Software Composition Analysis (SCA)

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Colt Technology Services insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Colt Technology Services that you’re committed to staying ahead in the game.

How to prepare for a job interview at Colt Technology Services

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Colt Technology Services to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Colt Technology Services.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.