Lead Application Security Engineer in Bristol
Lead Application Security Engineer

Lead Application Security Engineer in Bristol

Bristol Full-Time 100000 - 100000 £ / year (est.) No home office possible
Spencer Rose Ltd

At a Glance

  • Tasks: Lead and mentor a team in application security while driving technology transformation.
  • Company: Dynamic financial services firm undergoing a major tech transformation.
  • Benefits: Competitive salary, great benefits, and opportunities for rapid career progression.
  • Why this job: Join a pivotal role in shaping security practices during an exciting tech overhaul.
  • Qualifications: Experience in application security and team leadership required.
  • Other info: Inclusive workplace committed to accessibility and diversity.

The predicted salary is between 100000 - 100000 £ per year.

An impressive financial services business is looking to hire a Lead Application Security Engineer to support this team with the risk and remediation activities. This business is going through a big technology transformation programme that is estimated to take 3 -5 years. The successful Lead Application Security Engineer will be part of this journey and have great technical exposure and the ability to rapidly progress. Working closely in one of the transformation projects, the successful Lead Application Security Engineer will work closely with the wider security and technology teams to define the strategy and roadmap of technology changes moving forward. This is very much a play-manager role with the Lead Application Security Engineer being hands on day to day but also providing support and guidance to the rest of the AppSec team.

Duties and Responsibilities

  • Support the existing team, providing mentoring and fostering a collaborative team environment.
  • Take a pragmatic risk-based approach to supporting the wider technology teams with the SDLC.
  • Foster strong relationships with engineering, architecture, platform and platform management to provide practical risk appropriate guidance.
  • Set the priorities for the AppSec team to ensure that the delivery of the AppSec services is impactful.
  • Act as the SME for application security in the business and ensure that security controls are adopted early into the CI/CD pipelines.
  • Own and run the DAST, SAST and other AppSec tooling to ensure effective coverage across all in scope applications.
  • Create, roll out and maintain secure development practices and standards including threat modelling, secure coding practices for all applications and APIs.
  • Collaborate with the Vulnerability Engineering Lead to support the identifications, triages, and remediation programs in alignment with risk appetite, appropriate prioritisation and agreed SLAs.

Your Background

  • Experience in a similar role, in both responsibility and scale.
  • Proven experience in Software Security Development or Application Security.
  • Proven experience in leading/coaching a team.
  • Hands on experience with implementing and operating AppSec tooling eg SAT and DAST, secret managements, and SCA.
  • Extensive experience of integrating security into the CI/CD pipeline eg using AWS DevOps or GitHub.
  • Strong history of secure coding practices, threat modelling and vulnerability management in production.
  • Strong understanding of modern software development practices.

If this sounds like the role for you, hit the apply button NOW! We invite individuals from underrepresented groups to apply for any of our roles and are committed to supporting accessibility needs. Please click the apply button now or contact Abigail Moss for more information.

Lead Application Security Engineer in Bristol employer: Spencer Rose Ltd

Join an impressive financial services business in Bristol or London as a Lead Application Security Engineer, where you will be at the forefront of a significant technology transformation programme. With a strong emphasis on employee growth, collaborative work culture, and competitive benefits, this role offers the opportunity to lead a team while making a meaningful impact on application security practices. Embrace the chance to develop your skills in a dynamic environment that values innovation and inclusivity.
Spencer Rose Ltd

Contact Detail:

Spencer Rose Ltd Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Lead Application Security Engineer in Bristol

✨Tip Number 1

Network like a pro! Reach out to your connections in the industry, attend meetups, and engage with professionals on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.

✨Tip Number 2

Prepare for interviews by practising common questions and scenarios related to application security. We recommend doing mock interviews with friends or using online platforms to get comfortable with articulating your experience and skills.

✨Tip Number 3

Showcase your expertise! Create a portfolio or GitHub repository that highlights your projects, especially those involving AppSec tooling and secure coding practices. This will give potential employers a tangible sense of your capabilities.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!

We think you need these skills to ace Lead Application Security Engineer in Bristol

Application Security
Team Leadership
Risk Management
Software Security Development
CI/CD Integration
DAST
SAST
Secure Coding Practices
Threat Modelling
Vulnerability Management
Mentoring
Collaboration
AWS DevOps
GitHub

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Lead Application Security Engineer role. Highlight your experience in application security, team leadership, and any relevant technical skills. We want to see how you fit into our vision!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about application security and how your background aligns with our needs. Let us know what excites you about joining our team at StudySmarter.

Showcase Your Technical Skills: Don’t forget to mention your hands-on experience with AppSec tooling and secure coding practices. We’re looking for someone who can hit the ground running, so make sure we see your technical chops!

Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you don’t miss out on any important updates from us. Hit that apply button now!

How to prepare for a job interview at Spencer Rose Ltd

✨Know Your Stuff

Make sure you brush up on your application security knowledge. Familiarise yourself with DAST, SAST, and secure coding practices. Be ready to discuss how you've implemented these in past roles, as well as any challenges you've faced.

✨Show Your Leadership Skills

Since this role involves team leadership, think of examples where you've successfully mentored or guided a team. Prepare to share how you foster collaboration and set priorities for your team to ensure impactful delivery.

✨Understand the Business Context

Get to grips with the company's technology transformation programme. Be prepared to discuss how your role as a Lead Application Security Engineer fits into this journey and how you can contribute to the strategy and roadmap.

✨Ask Smart Questions

Prepare insightful questions that show your interest in the role and the company. Inquire about their current security challenges, the tools they use, and how they measure success in application security. This will demonstrate your proactive mindset.

Lead Application Security Engineer in Bristol
Spencer Rose Ltd
Location: Bristol

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>