Senior Application Security Engineer in Oxford

Senior Application Security Engineer in Oxford

Oxford Full-Time Home office (partial)
RELX Group plc

At a Glance

  • Tasks: Build secure applications and enhance CI/CD pipelines with innovative security practices.
  • Company: Join a global leader in information and analytics, making a real impact in healthcare.
  • Benefits: Enjoy flexible hours, wellbeing initiatives, and support for your personal and professional growth.
  • Other info: Work-life balance is a priority, with opportunities for study assistance and sabbaticals.
  • Why this job: Shape the future of secure software delivery while collaborating with talented teams.
  • Qualifications: 5+ years in application security or software engineering; strong collaboration and problem-solving skills.

Are you a software engineer who is passionate about building secure applications with an interest in moving into application security? Do you enjoy collaborating with engineering teams to drive practical, secure-by-design solutions that reduce risk and improve delivery outcomes?

About the Role

As a Senior Application Security Engineer, you will contribute to strengthening secure software delivery across engineering teams by embedding security practices, tools, and automation into development workflows. This role focuses on enabling teams to build secure applications and CI/CD pipelines through practical guidance, reusable solutions, and improved processes. You will work across teams to reduce risk, improve reliability, and support secure-by-default delivery at scale.

Responsibilities

  • Partner with development teams to improve secure software delivery practices across applications and CI/CD pipelines
  • Support triage and remediation of application security findings through practical guidance and secure refactoring recommendations
  • Facilitate threat modelling activities and translate outcomes into actionable improvements and risk reduction measures
  • Design and maintain secure-by-default delivery patterns, reusable templates, and reference implementations
  • Support adoption of centrally managed tooling and automated security controls
  • Develop integrations and automation to enable security validation, audit evidence generation, and operational metrics
  • Collaborate with platform, architecture, and security teams to improve processes, tooling, and delivery capabilities
  • Communicate security guidance, standards, and best practices to stakeholders

Requirements

  • Experience in application security, software engineering, or product security
  • Knowledge of application security principles, common vulnerabilities, and secure coding practices across multiple technology stacks
  • 5+ years of application security, software engineering, or product security experience. BS Engineering/Computer Science or equivalent experience required.
  • Understanding of CI/CD security, including pipeline controls, identity and access management, and secrets handling
  • Experience integrating automated security tooling into software delivery workflows
  • Experience developing reusable templates, standards, and reference implementations
  • Familiarity with security automation, compliance support, and audit evidence generation
  • Awareness of industry security standards and best practices
  • Strong collaboration, communication, analytical, troubleshooting, and problem-solving skills

Work in a way that works for you

We promote a healthy work/life balance across the organization. We offer an appealing working prospect for our people. With numerous wellbeing initiatives, shared parental leave, study assistance and sabbaticals, we will help you meet your immediate responsibilities and your long-term goals.

Working flexible hours - flexing the times when you work in the day to help you fit everything in and work when you are the most productive.

About the Business

A global leader in information and analytics, we help researchers and healthcare professionals advance science and improve health outcomes for the benefit of society. Building on our publishing heritage, we combine quality information and vast data sets with analytics to support visionary science and research, health education and interactive learning, as well as exceptional healthcare and clinical practice. At Elsevier, your work contributes to the world's grand challenges and a more sustainable future. We harness innovative technologies to support science and healthcare to partner for a better world.

We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.

We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.

Please read our Candidate Privacy Policy.

Senior Application Security Engineer in Oxford employer: RELX Group plc

At Elsevier, we pride ourselves on being an excellent employer, offering a dynamic work culture that prioritises collaboration and innovation in the field of application security. Our commitment to employee growth is evident through our flexible working hours, numerous wellbeing initiatives, and opportunities for professional development, ensuring that you can thrive both personally and professionally while contributing to meaningful advancements in science and healthcare.

RELX Group plc

Contact Details:

RELX Group plc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Application Security Engineer in Oxford

Join Local Tech Meetups

Get out there and mingle with fellow developers by joining local tech meetups. It’s a fantastic way to meet people who might be working at RELX Group plc or know someone who does. Plus, you can pick up some trendy tech skills and trends while you're at it!

Contribute to Open Source Projects

Show off your coding chops by jumping into open-source projects. Not only does this give you practical experience, but it also gets you noticed in the dev community. You'll create a killer portfolio that speaks volumes about your skills to RELX Group plc.

Tap into Online Developer Communities

Don’t underestimate the power of online developer communities like GitHub, Stack Overflow, and even Reddit. Participate in discussions, share your projects, and build your visibility. We can often find opportunities through these channels that can lead to a full-time gig at companies like RELX Group plc.

Explore Job Boards Specifically for Tech Roles

Keep your eyes peeled on job boards that focus on tech roles. Sites like TechCareers or Stack Overflow Jobs can often have listings for companies like RELX Group plc that might not show up on broader job sites. Make it a habit to check these regularly, and don’t hesitate to apply directly through our website!

We think you need these skills to ace Senior Application Security Engineer in Oxford

Application Security
Software Engineering
Secure Coding Practices
CI/CD Security
Automated Security Tooling
Threat Modelling
Risk Reduction Measures

Some tips for your application 🫡

Show off your coding skills:When applying for a software engineering role, it's super important to showcase your coding skills. Make sure your CV includes your tech stack, any relevant programming languages you’re comfortable with, and examples of projects you've worked on. If you have a GitHub profile, link it up! We love to see code in action.

Tailor your portfolio:For a full-time role, we’d expect to see some solid examples of your work in your portfolio. Make sure to include at least two or three projects that highlight your problem-solving skills and your ability to work with different technologies. Focus on the projects that are most relevant to the position at RELX Group plc.

Craft a killer cover letter:Your cover letter is your chance to stand out—make it personal! Explain why you want to work at RELX Group plc and how your skills align with the role. Show us your passion for software development. We dig enthusiastic candidates who understand the value of collaboration and continuous learning!

Be clear and concise:When it comes to writing your CV and cover letter, clarity is key. Avoid jargon that could confuse us and stick to simple, direct language. Highlight your achievements with quantifiable results where possible, and keep everything easy to read. A well-organised application goes a long way!

How to prepare for a job interview at RELX Group plc

Brush Up on Your Coding Skills

For a full-time software engineering role, it's crucial that we stay sharp with our coding abilities. Expect technical questions that might involve solving problems on the spot or discussing algorithms. Practise on platforms like LeetCode or HackerRank to get comfortable with the types of questions that often come up.

Know Your Tools and Frameworks

Make sure we’re well-acquainted with the tools and technologies listed in the job description. Familiarise ourselves with any specific frameworks or programming languages mentioned. If RELX Group plc uses React or Node.js, for instance, be ready to discuss how we’ve used them in previous projects or coursework.

Showcase Your Projects

Bring along a portfolio that highlights our best work. This could be code samples, GitHub repositories, or any side projects we’ve built. Make sure we can talk through our thought process for each project, especially the challenges we faced and how we solved them—this shows our problem-solving skills in action.

Prepare for Behavioural Questions

While technical skills are key, full-time positions also require cultural fit. Be ready to discuss our previous experiences and how we handle teamwork, conflict, and deadlines. Brush up on the STAR method—Situation, Task, Action, Result—to clearly articulate our past experiences when discussing how we've contributed to a team.