At a Glance
- Tasks: Join a dynamic team to enhance application and cloud security using the latest technologies.
- Company: Be part of Softcat, a leading tech company with a collaborative culture.
- Benefits: Enjoy flexible working hours, competitive insurance, and stock incentives.
- Why this job: Make a real impact in security while developing your skills in a supportive environment.
- Qualifications: Experience in DevOps or security roles and proficiency in programming languages like Python and Java.
- Other info: Flexible work patterns to accommodate your lifestyle and commitments.
The predicted salary is between 36000 - 60000 Β£ per year.
Would you like to join a company rooted in technology, where you work with the latest technologies and are empowered to make a difference? Do you enjoy working as part of an enthusiastic, passionate, and collaborative team? Join our Internal Technology Team! Softcat is an amazing success story and as part of our continued growth we are investing significantly more in a new technology strategy going forward. Softcat's internal Technology Team is undergoing an exciting transformation, this evolution aims to provide greater opportunities for our people's professional development and prepare us to execute our more ambitious technology strategy effectively.
Responsibilities
- Working with cloud and development teams to create and refine standards for the setup and maintenance of applications and cloud infrastructure and assuring these are met.
- Ensuring technologies like SAST, DAST and SCA are utilized effectively.
- Integrate security controls into CI/CD pipelines and automate checks for secrets scanning and IaC security.
- Facilitate threat modelling sessions and security design reviews for critical applications.
- Establish and communicate metrics to help us understand effectiveness and measure improvement.
- Explore automation and AI-assisted solutions to enhance vulnerability detection and remediation workflows.
- Identify security vulnerabilities, devise mitigation strategies, track and address issues effectively and resolve technical debt.
Qualifications
- Good experience in DevOps, Application Security, Cloud Security, or Product Security roles.
- Proficiency in multiple programming languages: Python, Java, .NET, and ability to review code for security flaws.
- Strong understanding of secure coding principles and application security standards such as the OWASP Top 10.
- Hands-on experience with AppSec tooling (SAST, DAST, SCA) and vulnerability management tools.
- Strong communication skills and ability to coach development teams.
Nice to have
- Preferred Certifications: CEH, CSSLP, or relevant Cloud Security certifications such as those from Microsoft.
Flexible Working Patterns
- Working flexible hours - flexing the times you start and finish during the day.
- Flexibility around school pick up and drop offs or other caregiving responsibilities.
Success. The Softcat Way. There is a uniqueness to Soft what we do, how we do it and why we do it. At the heart of our operations are our core values: Passion, Intelligence, Fun, Responsible and Community. These values are the pillars that guide our every action. As one of the UK's leading IT infrastructure providers and a FTSE 250 listed company, we have built a reputation for excellence. Our strategy is simple β we believe that highly engaged employees are the key to building customer trust and loyalty over the years. To become part of the success story, please apply now.
If you have a disability or neurodiversity, we can provide support or adjustments that you may need throughout our recruitment process or any mitigating circumstance you wish for us to consider. Any information you share on your application will be treated in confidence.
Benefits
- Accident and Trauma Insurance
- Medical Insurance
- Life Insurance
- Maternity, Paternity and Adoption support
- Stock Incentive Plan
- Holiday & Travel Benefits
Application Security Engineer / Cloud Security Engineer employer: Softcat Plc
Contact Detail:
Softcat Plc Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Application Security Engineer / Cloud Security Engineer
β¨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at tech meetups. A friendly chat can open doors that a CV just can't.
β¨Tip Number 2
Show off your skills! Create a portfolio or GitHub repo showcasing your projects, especially those related to cloud and application security. Itβs a great way to demonstrate your expertise beyond the written word.
β¨Tip Number 3
Prepare for interviews by practising common questions and scenarios specific to application security. We recommend doing mock interviews with friends or using online platforms to boost your confidence.
β¨Tip Number 4
Donβt forget to apply through our website! Itβs the best way to ensure your application gets seen by the right people. Plus, it shows youβre genuinely interested in joining our awesome team!
We think you need these skills to ace Application Security Engineer / Cloud Security Engineer
Some tips for your application π«‘
Show Your Passion: When writing your application, let your enthusiasm for technology and security shine through. We love seeing candidates who are genuinely excited about the role and our mission at Softcat!
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in DevOps, Application Security, and Cloud Security. We want to see how your skills align with what weβre looking for!
Be Clear and Concise: Keep your application straightforward and to the point. Use clear language to describe your experiences and achievements, especially when it comes to your technical skills and projects.
Apply Through Our Website: Donβt forget to submit your application through our website! Itβs the best way for us to receive your details and ensures youβre considered for the role. We canβt wait to hear from you!
How to prepare for a job interview at Softcat Plc
β¨Know Your Tech Inside Out
Make sure youβre well-versed in the latest technologies relevant to the role, especially around cloud security and application security standards like OWASP Top 10. Brush up on your experience with SAST, DAST, and SCA tools, as these will likely come up during the interview.
β¨Showcase Your Problem-Solving Skills
Be prepared to discuss specific examples of how you've identified security vulnerabilities and implemented mitigation strategies in past roles. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your impact.
β¨Communicate Effectively
Strong communication skills are key for this role, so practice explaining complex technical concepts in simple terms. Think about how you can coach development teams on secure coding principles and be ready to demonstrate your ability to collaborate.
β¨Embrace the Softcat Values
Familiarise yourself with Softcat's core values: Passion, Intelligence, Fun, Responsible, and Community. Be ready to share how your personal values align with theirs and how you can contribute to their unique culture during the interview.