At a Glance
- Tasks: Lead application security testing and mentor junior team members in a dynamic environment.
- Company: Join a forward-thinking company dedicated to safeguarding applications with innovative security practices.
- Benefits: Competitive salary, professional development, and opportunities for remote work.
- Why this job: Make a real impact by enhancing application security using cutting-edge AI technology.
- Qualifications: Experience with security testing tools and strong understanding of secure development lifecycles.
- Other info: Collaborative culture with excellent career growth opportunities.
The predicted salary is between 36000 - 60000 £ per year.
The Application Security team deals with the security of closed sourced, open source and proprietary applications. It is the team’s mission to ensure applications are developed and implemented in a secure manner and any risks are found and remediated efficiently. The role is part of the broader Information Security team that utilises enterprise and bespoke tooling to identify and mitigate threats, safeguarding the Business.
In this role, you will structure and design our application security testing strategy, tooling and secure coding guidelines. You will work alongside departments across the Business to ensure application-based vulnerabilities are understood and mitigated. It is paramount to possess an understanding of secure development lifecycles and the assessment of code. We utilise AI to enhance our existing security processes and practices, embracing the advantages it brings. You will play a key lead role in our journey to leverage this powerful technology in strengthening our application security.
Preferred Skills And Experience- Excellent understanding and demonstrable experience with automated, dynamic and static application security testing tools, as well as manual security testing to find vulnerabilities and logical issues.
- Advanced knowledge and understanding of OWASP and its utilisation within threat modelling.
- Appropriate certifications demonstrating your security experience, such as OSCP, OSWE, CSSLP.
- Experience of software development and designing, building and maintaining in house tooling.
- Working knowledge of CI/CD pipelines and security tooling associated with them.
- Demonstrable experience in using structured methodologies for conducting and reporting on web application testing.
- Strong communication and documentation skills.
- Ability to lead a team from a technical perspective.
- Providing mentorship to junior team members.
- Leading the project process to ensure that information security aspects are considered up front and throughout the project lifecycle and ensure tooling is appropriate.
- Contributing to and continuously improving our security testing methodologies.
- Performing advanced manual and automated code review and providing help with remediation.
- Partnering with software development and architecture teams to ensure security is considered throughout the development lifecycle.
- Designing and taking ownership of our supply chain assurance processes to identify flaws and vulnerabilities.
- Performing advanced risk assessments, threat modelling and design reviews to ensure effective security controls are in place.
- Identifying opportunities for converting manual tasks into automated processes and identifying tooling to support such automation.
Information Security Specialist Technical Lead in Manchester employer: Manchester Digital
Contact Detail:
Manchester Digital Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Specialist Technical Lead in Manchester
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even local tech events. You never know who might have the inside scoop on job openings or can refer you directly to hiring managers.
✨Tip Number 2
Show off your skills! Create a portfolio that highlights your experience with application security testing tools and methodologies. Share case studies or projects where you've successfully identified and mitigated vulnerabilities. This will make you stand out when chatting with potential employers.
✨Tip Number 3
Don’t just apply blindly! Tailor your approach for each role. Research the company’s security practices and mention how your experience aligns with their needs. This shows you’re genuinely interested and have done your homework.
✨Tip Number 4
Leverage our website! We’ve got loads of resources and job listings tailored for roles like Information Security Specialist Technical Lead. Apply through us to get noticed and take advantage of any additional support we offer during your job search.
We think you need these skills to ace Information Security Specialist Technical Lead in Manchester
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with application security, secure coding, and the tools mentioned in the job description. We want to see how your skills align with our mission!
Showcase Your Experience: Don’t just list your qualifications; give us examples of how you've used automated and manual security testing tools in real projects. We love seeing practical applications of your knowledge!
Communicate Clearly: Strong communication skills are key for this role. When writing your application, be clear and concise. Show us that you can explain complex security concepts in a way that’s easy to understand.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands and shows us you’re serious about joining our team!
How to prepare for a job interview at Manchester Digital
✨Know Your Tools Inside Out
Make sure you’re well-versed in the automated, dynamic, and static application security testing tools mentioned in the job description. Be ready to discuss your hands-on experience with these tools and how you've used them to identify vulnerabilities in past projects.
✨Brush Up on OWASP
Since advanced knowledge of OWASP is crucial for this role, take some time to review its principles and how they apply to threat modelling. Prepare to share specific examples of how you've implemented OWASP guidelines in your previous work.
✨Showcase Your Leadership Skills
As a technical lead, you’ll need to demonstrate your ability to mentor junior team members and lead projects. Think of instances where you’ve successfully guided a team or improved a process, and be ready to discuss these experiences during the interview.
✨Communicate Clearly
Strong communication skills are essential for this role. Practice explaining complex security concepts in simple terms, as you’ll need to collaborate with various departments. Consider preparing a few scenarios where you effectively communicated security risks and solutions to non-technical stakeholders.