At a Glance
- Tasks: Identify and mitigate security risks while embedding security into software delivery.
- Company: A leading healthcare and wellbeing organisation undergoing digital transformation.
- Benefits: Competitive salary, performance bonuses, private medical cover, and generous leave options.
- Why this job: Join a dynamic team to enhance security across innovative digital platforms.
- Qualifications: Experience in cloud-native development and knowledge of modern security frameworks.
- Other info: Hybrid working model with opportunities for professional growth.
The predicted salary is between 36000 - 60000 £ per year.
Location: Tunbridge Wells, Leeds, Middlesbrough, Bristol & Bournemouth
Hybrid: 2 days a week on-site
A healthcare and wellbeing organisation is undergoing a major digital transformation and is looking for an Application & Cyber Security Engineer to support secure software delivery across a modern digital platform. You will work hands‑on with engineering teams to identify and mitigate security risks, embed security into the SDLC, and ensure platforms remain secure and compliant. The role spans cloud‑native, PaaS, and SaaS technologies, with opportunities to apply and grow security expertise across multiple platforms.
Responsibilities
- Review new feature code to identify security risks and support remediation
- Improve DSOMM maturity through tooling, configuration, documentation, and code
- Embed security policies pragmatically into engineering workflows
- Design, build, operate, and monitor secure, large‑scale B2C/B2B systems
- Contribute to secure coding standards, SDLC, logging, and monitoring practices
Experience & Skills
- Cloud‑native development and infrastructure experience (Azure preferred)
- Knowledge of modern security frameworks (OWASP CI/CD, DSOMM, SAMM)
- Strong understanding of networking, cloud network design, and API security
- Hands‑on experience with SAST, SCA, and DAST tools
- Experience operating and securing large‑scale software estates
- Ability to build automated security testing
What We Offer
- Competitive annual salary dependent on experience
- Annual company & performance‑based bonus
- Contributory pension scheme (up to 12% employer contributions)
- Life Assurance (up to 10 × annual salary)
- Private medical cover
- 28 days annual leave plus Bank Holidays
- Opportunity to buy up to 5 extra days leave or sell up to 5 days leave
Equal opportunities employer
If this is of interest, please feel free to reach out using the details below.
Product Security Engineer in Leeds employer: SPG Resourcing
Contact Detail:
SPG Resourcing Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Product Security Engineer in Leeds
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to cloud-native and security frameworks. This gives potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and challenges. Be ready to discuss how you've tackled security risks in past projects, especially in SDLC processes.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Product Security Engineer in Leeds
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that match the Product Security Engineer role. Highlight your cloud-native development experience and any hands-on security work you've done. We want to see how you can contribute to our digital transformation!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background aligns with our needs. Don't forget to mention your familiarity with modern security frameworks and tools – we love that stuff!
Showcase Your Projects: If you've worked on relevant projects, whether in a professional or personal capacity, make sure to include them. We’re keen to see how you've tackled security risks and embedded security into workflows. Real-world examples can really set you apart!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Plus, it shows us you’re serious about joining our team!
How to prepare for a job interview at SPG Resourcing
✨Know Your Security Frameworks
Familiarise yourself with modern security frameworks like OWASP and DSOMM. Be ready to discuss how you've applied these in past projects, especially in relation to secure coding standards and SDLC.
✨Showcase Your Hands-On Experience
Prepare examples of your hands-on experience with SAST, SCA, and DAST tools. Highlight specific instances where you identified and mitigated security risks in large-scale software estates.
✨Understand the Role of Cloud Security
Brush up on cloud-native development and infrastructure, particularly Azure. Be prepared to explain how you would embed security into engineering workflows for cloud-based applications.
✨Ask Insightful Questions
Prepare thoughtful questions about the company's approach to security in their digital transformation. This shows your genuine interest and helps you gauge if the role aligns with your career goals.