At a Glance
- Tasks: Test and secure Gallup's products while collaborating with developers.
- Company: Join Gallup, a leader in analytics and advice, dedicated to making a difference.
- Benefits: Enjoy competitive pay, health insurance, pension, and wellness programmes.
- Why this job: Make a real impact on security while working with innovative technologies.
- Qualifications: Bachelor’s degree in cybersecurity and two years of application security experience required.
- Other info: Work in a dynamic environment with opportunities for growth and development.
The predicted salary is between 36000 - 60000 £ per year.
Anticipate attacks, outsmart threats and safeguard innovation. Gallup is seeking a Security Engineer (Product Security) who thrives at the intersection of engineering and security. You’ll apply deep offensive security expertise to test Gallup’s products and collaborate with developers to turn findings into secure, resilient applications. This role offers the autonomy to innovate, the responsibility to safeguard critical systems and the opportunity to leave a lasting impact on how security scales across Gallup.
What You’ll Do
- Review and advise on secure architecture and design for SaaS applications built and hosted in AWS
- Perform penetration testing across web, mobile and API applications to identify and validate security vulnerabilities
- Partner with engineering teams to incorporate security into applications from the start through secure coding guidance, reviews and awareness
- Use static code analysis and code reviews to augment penetration testing and uncover vulnerabilities earlier in the development process
- Secure open-source and third-party components through software composition analysis (SCA) and package management best practices
What Makes You Stand Out
- Clear communication: You turn complex risks into clear, actionable guidance.
- Self-starter mindset: You thrive working independently while knowing when to pull in others.
- Impactful speed: You move quickly without cutting corners, ensuring durable results.
- Adaptive focus: You stay effective across shifting priorities and varied demands.
- Calm under pressure: In urgent incidents, you bring clarity and steadiness.
- Persistence and precision: You solve tough security challenges with practical, scalable solutions.
What You Need
- Bachelor’s degree in cybersecurity, information assurance, computer science or a related field required
- At least two years of experience in enterprise application security engineering required
- Demonstrated deep expertise in mobile, web and API penetration testing required
- Hands-on experience with secure SaaS (web, API, mobile) design required
- Proficiency with SAST and code reviews required
- Strong programming or scripting skills in at least one language (e.g., Python, JavaScript, C#, Java) required
- Expertise in securing software supply chains and managing open-source dependencies through effective SCA practices preferred
- Certifications such as OSWE, OSCP, GWAPT and GXPN preferred
- A commitment to working on-site at Gallup’s London office at least three days per week required
- Eligibility to work in the United Kingdom; this position is not eligible for employment visa sponsorship
Security Engineer (Product Security) employer: Gallup
Contact Detail:
Gallup Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer (Product Security)
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current Gallup employees on LinkedIn. A friendly chat can sometimes open doors that applications can't.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your penetration testing projects or any security challenges you've tackled. This gives you a chance to demonstrate your expertise beyond just a CV.
✨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and be ready to discuss how you’d handle them. Practice makes perfect, so consider mock interviews with friends or mentors.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining the Gallup team.
We think you need these skills to ace Security Engineer (Product Security)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Security Engineer. Highlight your experience in penetration testing and secure coding, and don’t forget to mention any relevant certifications you have. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about security and how you can contribute to our mission at Gallup. Keep it concise but impactful – we love clear communication!
Show Off Your Projects: If you’ve worked on any cool projects related to security, make sure to mention them! Whether it’s a personal project or something from your previous job, showcasing your hands-on experience can really set you apart from other candidates.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at Gallup!
How to prepare for a job interview at Gallup
✨Know Your Stuff
Make sure you brush up on your knowledge of penetration testing, secure architecture, and SaaS applications. Be ready to discuss specific tools and techniques you've used in the past, especially in mobile, web, and API security.
✨Showcase Your Communication Skills
Since clear communication is key for this role, practice explaining complex security concepts in simple terms. Think about how you would advise a developer on secure coding practices and be prepared to share examples from your experience.
✨Demonstrate Your Problem-Solving Skills
Prepare to discuss challenging security issues you've faced and how you tackled them. Highlight your persistence and precision in finding scalable solutions, as this will show that you can handle the pressures of the job.
✨Be Ready to Collaborate
This role involves working closely with engineering teams, so think of examples where you've successfully partnered with others. Emphasise your self-starter mindset while also showing that you know when to involve teammates for better outcomes.