At a Glance
- Tasks: Lead and mentor a team in application security while driving technology transformation.
- Company: Dynamic financial services business undergoing a major tech transformation.
- Benefits: Competitive salary, great benefits, and opportunities for rapid career progression.
- Why this job: Join a pivotal role in shaping security practices and making a real impact.
- Qualifications: Experience in application security, team leadership, and secure coding practices.
- Other info: Inclusive environment welcoming diverse applicants and supporting accessibility needs.
The predicted salary is between 100000 - 100000 £ per year.
An impressive financial services business is looking to hire a Lead Application Security Engineer to support this team with the risk and remediation activities. This business is going through a big technology transformation programme that is estimated to take 3 -5 years. The successful Lead Application Security Engineer will be part of this journey and have great technical exposure and the ability to rapidly progress.
Working closely in one of the transformation projects, the successful Lead Application Security Engineer will work closely with the wider security and technology teams to define the strategy and roadmap of technology changes moving forward. This is very much a play-manager role with the Lead Application Security Engineer being hands on day to day but also providing support and guidance to the rest of the AppSec team.
Duties and ResponsibilitiesThe successful Lead Application Security Engineer will have responsibilities covering:
- Team Leadership
- Support the existing team, providing mentoring and fostering a collaborative team environment
- Take pragmatic risk-based approach to supporting the wider technology teams with the SDLC
- Foster strong relationships with engineering, architecture, platform and platform management to provide practical risk appropriate guidance
- Set the priorities for the AppSec team to make sure that the delivery of the AppSec services is impactful
- Act as the SME for application security in the business and ensure that security controls are adopted early into the CI/CD pipelines
- Own and run the DAST, SAST and other AppSec tooling to ensure effective coverage across all in scope applications
- Create, roll out and maintain secure development practices and standards including threat modelling, secure coding practices for all applications and APIs
- Collaborate with the Vulnerability Engineering Lead to support the identifications, triages, and remediation programs in alignment with risk appetite, appropriate prioritisation and agreed SLAs
The ideal Lead Application Security Engineer will have:
- Experience in a similar role, in both responsibility and scale
- Proven experience in Software Security Development or Application Security
- Proven experience in leading / coaching a team
- Hands on experience with implementing and operating AppSec tooling e.g. SAT and DAST, secret managements, and SCA
- Extensive experiences of integrating security into the CI/CD pipeline e.g. using AWS DevOps or GitHub
- Strong history of secure coding practices, threat modelling and vulnerability management in production
- Strong understanding of modern software development practices
If this sounds like the role for you, hit the apply button NOW! We invite individuals from underrepresented groups to apply for any of our roles and are committed to supporting accessibility needs. Please click the apply button now or contact Abigail Moss for more information.
Lead Application Security Engineer employer: Spencer Rose
Contact Detail:
Spencer Rose Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Lead Application Security Engineer
✨Tip Number 1
Network like a pro! Reach out to your connections in the industry, attend meetups, and engage with professionals on LinkedIn. We all know that sometimes it’s not just what you know, but who you know that can help you land that dream job.
✨Tip Number 2
Prepare for those interviews! Research the company and its tech transformation programme. We recommend practising common interview questions and even some technical scenarios related to application security. The more prepared you are, the more confident you'll feel!
✨Tip Number 3
Show off your skills! If you’ve got a portfolio or GitHub repository, make sure to highlight it during your conversations. We want to see your hands-on experience with AppSec tooling and secure coding practices – it’s a great way to stand out!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we’re always looking for passionate individuals who can contribute to our team and help us grow.
We think you need these skills to ace Lead Application Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that match the Lead Application Security Engineer role. Highlight your experience in application security, team leadership, and any relevant technical tools you've used.
Craft a Compelling Cover Letter: Use your cover letter to tell us why you're the perfect fit for this role. Share specific examples of how you've led teams or implemented security practices in previous positions. Make it personal and engaging!
Showcase Your Technical Skills: Don’t forget to mention your hands-on experience with AppSec tooling like DAST and SAST. We want to see how you’ve integrated security into CI/CD pipelines and your approach to secure coding practices.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at Spencer Rose
✨Know Your Stuff
Make sure you brush up on your application security knowledge. Familiarise yourself with DAST, SAST, and secure coding practices. Being able to discuss these topics confidently will show that you're not just a leader but also a hands-on expert.
✨Show Your Leadership Skills
Prepare examples of how you've successfully led teams in the past. Think about times when you mentored others or fostered collaboration. This role is all about team leadership, so demonstrating your ability to guide and support others will be key.
✨Understand the Business Context
Research the company’s technology transformation programme. Knowing how your role as a Lead Application Security Engineer fits into this bigger picture will help you articulate your vision for the team and how you can contribute to their goals.
✨Ask Smart Questions
Prepare insightful questions about the company's approach to application security and their current challenges. This shows your genuine interest in the role and helps you gauge if the company culture aligns with your values.