At a Glance
- Tasks: Lead and mentor a team in application security while driving technology transformation.
- Company: Dynamic financial services firm undergoing a major tech transformation.
- Benefits: Competitive salary, great benefits, and opportunities for rapid career progression.
- Why this job: Join a pivotal role in shaping security practices during an exciting tech overhaul.
- Qualifications: Experience in application security and team leadership required.
- Other info: Inclusive workplace committed to accessibility and diversity.
The predicted salary is between 100000 - 100000 £ per year.
An impressive financial services business is looking to hire a Lead Application Security Engineer to support this team with the risk and remediation activities. This business is going through a big technology transformation programme that is estimated to take 3 -5 years. The successful Lead Application Security Engineer will be part of this journey and have great technical exposure and the ability to rapidly progress. Working closely in one of the transformation projects, the successful Lead Application Security Engineer will work closely with the wider security and technology teams to define the strategy and roadmap of technology changes moving forward. This is very much a play-manager role with the Lead Application Security Engineer being hands on day to day but also providing support and guidance to the rest of the AppSec team.
Duties and Responsibilities
- Support the existing team, providing mentoring and fostering a collaborative team environment.
- Take a pragmatic risk-based approach to supporting the wider technology teams with the SDLC.
- Foster strong relationships with engineering, architecture, platform and platform management to provide practical risk appropriate guidance.
- Set the priorities for the AppSec team to ensure that the delivery of the AppSec services is impactful.
- Act as the SME for application security in the business and ensure that security controls are adopted early into the CI/CD pipelines.
- Own and run the DAST, SAST and other AppSec tooling to ensure effective coverage across all in scope applications.
- Create, roll out and maintain secure development practices and standards including threat modelling, secure coding practices for all applications and APIs.
- Collaborate with the Vulnerability Engineering Lead to support the identifications, triages, and remediation programs in alignment with risk appetite, appropriate prioritisation and agreed SLAs.
Your Background
- Experience in a similar role, in both responsibility and scale.
- Proven experience in Software Security Development or Application Security.
- Proven experience in leading/coaching a team.
- Hands on experience with implementing and operating AppSec tooling eg SAT and DAST, secret managements, and SCA.
- Extensive experience of integrating security into the CI/CD pipeline eg using AWS DevOps or GitHub.
- Strong history of secure coding practices, threat modelling and vulnerability management in production.
- Strong understanding of modern software development practices.
If this sounds like the role for you, hit the apply button NOW! We invite individuals from underrepresented groups to apply for any of our roles and are committed to supporting accessibility needs. Please click the apply button now or contact Abigail Moss for more information.
Lead Application Security Engineer in Bristol employer: Spencer Rose Ltd
Contact Detail:
Spencer Rose Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Lead Application Security Engineer in Bristol
✨Tip Number 1
Network like a pro! Reach out to your connections in the industry, attend meetups, and engage with professionals on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Prepare for interviews by practising common questions and scenarios related to application security. We recommend doing mock interviews with friends or using online platforms to get comfortable with articulating your experience and skills.
✨Tip Number 3
Showcase your expertise! Create a portfolio or GitHub repository that highlights your projects, especially those involving AppSec tooling and secure coding practices. This will give potential employers a tangible sense of your capabilities.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Lead Application Security Engineer in Bristol
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Lead Application Security Engineer role. Highlight your experience in application security, team leadership, and any relevant technical skills. We want to see how you fit into our vision!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about application security and how your background aligns with our needs. Let us know what excites you about joining our team at StudySmarter.
Showcase Your Technical Skills: Don’t forget to mention your hands-on experience with AppSec tooling and secure coding practices. We’re looking for someone who can hit the ground running, so make sure we see your technical chops!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you don’t miss out on any important updates from us. Hit that apply button now!
How to prepare for a job interview at Spencer Rose Ltd
✨Know Your Stuff
Make sure you brush up on your application security knowledge. Familiarise yourself with DAST, SAST, and secure coding practices. Be ready to discuss how you've implemented these in past roles, as well as any challenges you've faced.
✨Show Your Leadership Skills
Since this role involves team leadership, think of examples where you've successfully mentored or guided a team. Prepare to share how you foster collaboration and set priorities for your team to ensure impactful delivery.
✨Understand the Business Context
Get to grips with the company's technology transformation programme. Be prepared to discuss how your role as a Lead Application Security Engineer fits into this journey and how you can contribute to the strategy and roadmap.
✨Ask Smart Questions
Prepare insightful questions that show your interest in the role and the company. Inquire about their current security challenges, the tools they use, and how they measure success in application security. This will demonstrate your proactive mindset.