Application Security Leader

Application Security Leader

Full-Time On-site
R

We are seeking an experienced Principal Application Security Engineer to lead application security across RX's global technology estate. Reporting directly to the Chief Information Security Officer (CISO), this role will serve as the senior technical authority for application security and secure software delivery practices. The successful candidate will partner closely with engineering leadership to ensure security is embedded throughout the software development lifecycle while enabling teams to deliver business value quickly and safely. This is a highly visible individual contributor role with enterprise-wide influence across Digital, Global Business Systems, cloud platforms, APIs, integrations, and customer-facing applications. The role combines technical leadership, application security expertise, engineering engagement, threat modelling, secure-by-design governance, and application security posture management. Responsibilities

  • Lead the RX Application Security programme, defining and maintaining strategy, roadmap, standards, controls, and security maturity objectives.
  • Drive adoption of Secure by Design principles by embedding security throughout the Secure Development Lifecycle (SDLC), including threat modelling and security architecture reviews.
  • Own and mature the Application Security Posture Management capability, including management and optimisation of Aikido and related security tooling.
  • Develop KPIs, dashboards, and reporting for engineering and executive stakeholders, while identifying opportunities for automation and continuous improvement.
  • Oversee vulnerability management activities across applications and platforms, including findings from SAST, DAST, Software Composition Analysis, container security, Infrastructure as Code security, CI/CD security, API security reviews, and penetration testing.
  • Partner with Engineering Directors, Architects, Product Leaders, and Software Engineers to promote secure coding, secure design, and developer-friendly security practices.
  • Provide security guidance for cloud-native environments and modern architectures, including AWS, Azure, microservices, APIs, containers, serverless technologies, and SaaS platforms.
  • Support governance, audit, compliance, risk assessment, and assurance activities while providing technical leadership and mentoring across engineering and security communities.
  • Are you passionate about building secure software and driving security excellence across a global technology landscape?
  • Do you enjoy partnering with engineering leaders to embed security by design and enable teams to deliver secure, innovative solutions at scale?,
  • Significant experience in Application Security, Product Security, or Security Engineering.
  • Strong understanding of modern software development methodologies and engineering practices.
  • Experience implementing Secure Development Lifecycle programmes.
  • Experience conducting threat modelling and architecture security reviews.
  • Deep understanding of application security principles, attack techniques, and risk management.
  • Hands‑on experience with OWASP Top 10, SAST, DAST, SCA, Container Security, Infrastructure as Code Security, CI/CD Security, and API Security.
  • Experience securing cloud-native environments, particularly AWS and Azure.
  • Strong stakeholder management, communication, influencing, leadership, coaching, and mentoring skills.

RX is a global leader in events and exhibitions, leveraging industry expertise, data, and technology to build businesses for individuals, communities, and organisations. With a presence in 25 countries across 41 industry sectors, RX hosts approximately 350 events annually. RX is committed to creating an inclusive work environment for all our people. RX empowers businesses to thrive by leveraging data-driven insights and digital solutions. RX is part of RELX, a global provider of information-based analytics and decision tools for professional and business customers. For more information, visit http://www.rxglobal.com

  • We promote a healthy work/life balance across the organisation.
  • We offer an appealing working prospect for our people.
  • With numerous wellbeing initiatives, shared parental leave, study assistance, and sabbaticals, we will help you meet your immediate responsibilities and your long-term goals.

Working Pattern Working flexible hours - flexing the times when you work in the day to help you fit everything in and work when you are the most productive.

#J-18808-Ljbffr

Application Security Leader employer: RELX Group

At ICIS, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters curiosity and creativity. Our London-based team thrives in a fast-paced environment, providing ample opportunities for professional growth and the chance to become a recognised expert in the evolving energy market. With a commitment to employee well-being and a range of country-specific benefits, we ensure our staff are supported in their pursuit of meaningful and rewarding careers.

R

Contact Details:

RELX Group Recruitment Team