About RicohA global leader in digital services, recognised for innovation, sustainability and a people-first culture. We create inclusive workplaces where you can grow, contribute, and make a positive impact while helping to build a more sustainable future.By focusing on real working experiences, we support individuals to develop their skills, realise their potential and do work that feels meaningful.We're looking for an Application Security Consultant to join our Cyber, Risk & Security team and play a key role in strengthening application security across Ricoh Europe.This is an opportunity to work at the intersection of software engineering, cybersecurity and risk, helping our teams adopt a genuine shift-left approach and making security part of the development lifecycle from design through to deployment.You'll work across both our internal IT environment and customer-facing products and services, helping protect solutions that are used by thousands of people every day and supporting the security of products delivered to customers across Europe.#Ricoh-EuropeWhat you will be doingAs our Application Security Consultant, you'll act as a technical authority and trusted advisor to engineering and product teams.You'll:Lead application security reviews for high-risk products and services.Conduct and oversee SAST, DAST, API security, fuzz testing and architecture-level assessments.Assess applications against the OWASP Top 10 and other relevant security standards.Provide secure design and coding guidance throughout the development lifecycle.Help establish and evolve a pan-European Application Security capability within our Secure Development Centre of Excellence.Develop and promote consistent application security methodologies, standards and best practices.Support secure coding standards across technologies including Java, C, C++ and other relevant languages.Integrate security controls and automated testing into CI/CD pipelines, including SAST, DAST and SCA.Work closely with developers, architects, DevOps teams and product owners to embed security into their everyday workflows.Deliver security awareness sessions, secure coding workshops and practical training for development teams.Help shape our approach to secure AI development, including risks around AI models, data handling and misuse.Monitor emerging application security threats and recommend improvements to our processes, tooling and development practices.This is more than finding vulnerabilitiesWe're looking for someone who can go beyond identifying a security issue and explain why it matters, how it happened and what we can do differently next time.You'll need to be comfortable challenging established practices while building strong relationships with engineering teams. Your ability to translate complex security concepts into practical, developer-friendly guidance will be just as important as your technical expertise.You'll have the opportunity to influence security practices across multiple teams and geographies, helping create a more consistent and mature approach to secure development across Ricoh Europe.You will ideally haveYou'll bring a strong software engineering and application security foundation, with:Extensive experience in application security, secure development or software engineering with a security focus.Hands-on experience conducting application security reviews.Strong knowledge of application security principles and common vulnerability classes.Experience with SAST, DAST and Software Composition Analysis (SCA) tools.Experience implementing security within CI/CD and DevSecOps environments.The ability to read and understand code in at least one major language such as Java, C, C++, C#, Python or similar.Knowledge of secure software development lifecycles and shift-left security practices.Understanding of application, API and web security.Experience interpreting security findings, identifying false positives and prioritising genuine risk.An understanding of how technical vulnerabilities translate into business, regulatory, financial and reputational risk.Desired:Experience with fuzz testing, advanced dynamic testing or manual code review.Awareness of AI security, including model, data and prompt/model manipulation risks.Experience delivering developer-focused security training or workshops.Relevant application security, cloud security or offensive security certifications.Love to ConnectYou become part of a global community built on openness, inclusion and genuine collaboration.Across teams, countries and roles, you'll find people who listen, involve and encourage you - helping you feel valued and able to be yourself every day.With access to learning pathways, mentoring and career opportunities across functions and countries, you'll be supported to stretch your skills, explore new directions and stay future-ready in a changing world.You'll have opportunities to make a difference through volunteering, sustainability initiatives and community programmes that reflect our shared values and commitment to positive impact.You'll benefit from fair rewards, flexible working, wellbeing resources and real recognition - including programmes such as the Imagine. Apply now and help us shape what comes next.Full time
Security Consultant (Contract) in London employer: Ricoh
Ricoh is an exceptional employer that prioritises a people-first culture, fostering an inclusive environment where employees can thrive and make a meaningful impact. With a strong commitment to sustainability and innovation, Ricoh offers ample opportunities for personal and professional growth, ensuring that every team member feels valued and supported in their journey. Join us in Ireland, where your ideas are welcomed, and you can contribute to shaping a better future while enjoying a fulfilling career.