Lead Application Security Engineer
Lead Application Security Engineer

Lead Application Security Engineer

Full-Time 100000 - 100000 £ / year (est.) No home office possible
Go Premium
Spencer Rose

At a Glance

  • Tasks: Lead and mentor a team in application security while driving technology transformation.
  • Company: Dynamic financial services business undergoing a major tech transformation.
  • Benefits: Competitive salary, great benefits, and opportunities for rapid career progression.
  • Why this job: Join a pivotal role in shaping security practices and making a real impact.
  • Qualifications: Experience in application security, team leadership, and secure coding practices.
  • Other info: Inclusive environment welcoming diverse applicants and supporting accessibility needs.

The predicted salary is between 100000 - 100000 £ per year.

An impressive financial services business is looking to hire a Lead Application Security Engineer to support this team with the risk and remediation activities. This business is going through a big technology transformation programme that is estimated to take 3 -5 years. The successful Lead Application Security Engineer will be part of this journey and have great technical exposure and the ability to rapidly progress.

Working closely in one of the transformation projects, the successful Lead Application Security Engineer will work closely with the wider security and technology teams to define the strategy and roadmap of technology changes moving forward. This is very much a play-manager role with the Lead Application Security Engineer being hands on day to day but also providing support and guidance to the rest of the AppSec team.

Duties and Responsibilities

The successful Lead Application Security Engineer will have responsibilities covering:

  • Team Leadership
  • Support the existing team, providing mentoring and fostering a collaborative team environment
  • Take pragmatic risk-based approach to supporting the wider technology teams with the SDLC
  • Foster strong relationships with engineering, architecture, platform and platform management to provide practical risk appropriate guidance
  • Set the priorities for the AppSec team to make sure that the delivery of the AppSec services is impactful
  • Application Security Technical Authority
    • Act as the SME for application security in the business and ensure that security controls are adopted early into the CI/CD pipelines
    • Own and run the DAST, SAST and other AppSec tooling to ensure effective coverage across all in scope applications
    • Create, roll out and maintain secure development practices and standards including threat modelling, secure coding practices for all applications and APIs
    • Collaborate with the Vulnerability Engineering Lead to support the identifications, triages, and remediation programs in alignment with risk appetite, appropriate prioritisation and agreed SLAs
    Your Background

    The ideal Lead Application Security Engineer will have:

    • Experience in a similar role, in both responsibility and scale
    • Proven experience in Software Security Development or Application Security
    • Proven experience in leading / coaching a team
    • Hands on experience with implementing and operating AppSec tooling e.g. SAT and DAST, secret managements, and SCA
    • Extensive experiences of integrating security into the CI/CD pipeline e.g. using AWS DevOps or GitHub
    • Strong history of secure coding practices, threat modelling and vulnerability management in production
    • Strong understanding of modern software development practices

    If this sounds like the role for you, hit the apply button NOW! We invite individuals from underrepresented groups to apply for any of our roles and are committed to supporting accessibility needs. Please click the apply button now or contact Abigail Moss for more information.

    Lead Application Security Engineer employer: Spencer Rose

    Join an impressive financial services business that is at the forefront of a significant technology transformation programme, offering you the chance to lead and innovate in application security. With a strong emphasis on employee growth, collaborative work culture, and competitive benefits, this role not only provides technical exposure but also the opportunity to mentor and shape the future of the AppSec team. Located in vibrant Bristol or London, you'll be part of a dynamic environment that values diversity and supports accessibility needs.
    Spencer Rose

    Contact Detail:

    Spencer Rose Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land Lead Application Security Engineer

    ✨Tip Number 1

    Network like a pro! Reach out to your connections in the industry, attend meetups, and engage with professionals on LinkedIn. We all know that sometimes it’s not just what you know, but who you know that can help you land that dream job.

    ✨Tip Number 2

    Prepare for those interviews! Research the company and its tech transformation programme. We recommend practising common interview questions and even some technical scenarios related to application security. The more prepared you are, the more confident you'll feel!

    ✨Tip Number 3

    Show off your skills! If you’ve got a portfolio or GitHub repository, make sure to highlight it during your conversations. We want to see your hands-on experience with AppSec tooling and secure coding practices – it’s a great way to stand out!

    ✨Tip Number 4

    Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we’re always looking for passionate individuals who can contribute to our team and help us grow.

    We think you need these skills to ace Lead Application Security Engineer

    Team Leadership
    Mentoring
    Risk Management
    Application Security
    CI/CD Integration
    DAST
    SAST
    Secure Coding Practices
    Threat Modelling
    Vulnerability Management
    Software Development Practices
    Collaboration
    Coaching
    AppSec Tooling

    Some tips for your application 🫡

    Tailor Your CV: Make sure your CV reflects the skills and experiences that match the Lead Application Security Engineer role. Highlight your experience in application security, team leadership, and any relevant technical tools you've used.

    Craft a Compelling Cover Letter: Use your cover letter to tell us why you're the perfect fit for this role. Share specific examples of how you've led teams or implemented security practices in previous positions. Make it personal and engaging!

    Showcase Your Technical Skills: Don’t forget to mention your hands-on experience with AppSec tooling like DAST and SAST. We want to see how you’ve integrated security into CI/CD pipelines and your approach to secure coding practices.

    Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy!

    How to prepare for a job interview at Spencer Rose

    ✨Know Your Stuff

    Make sure you brush up on your application security knowledge. Familiarise yourself with DAST, SAST, and secure coding practices. Being able to discuss these topics confidently will show that you're not just a leader but also a hands-on expert.

    ✨Show Your Leadership Skills

    Prepare examples of how you've successfully led teams in the past. Think about times when you mentored others or fostered collaboration. This role is all about team leadership, so demonstrating your ability to guide and support others will be key.

    ✨Understand the Business Context

    Research the company’s technology transformation programme. Knowing how your role as a Lead Application Security Engineer fits into this bigger picture will help you articulate your vision for the team and how you can contribute to their goals.

    ✨Ask Smart Questions

    Prepare insightful questions about the company's approach to application security and their current challenges. This shows your genuine interest in the role and helps you gauge if the company culture aligns with your values.

    Lead Application Security Engineer
    Spencer Rose
    Go Premium

    Land your dream job quicker with Premium

    You’re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    >