Senior Application Security Engineer

Senior Application Security Engineer

Full-Time 80000 - 100000 € / year (est.) No home office possible
Strive - GTM Talent Partner

At a Glance

  • Tasks: Lead security initiatives and protect software development from vulnerabilities.
  • Company: VC-backed tech firm focused on innovative security solutions.
  • Benefits: Competitive salary, equity options, flexible working, and extensive leave.
  • Other info: Collaborative team environment with opportunities for personal and professional growth.
  • Why this job: Join a mission to secure the future of software for developers everywhere.
  • Qualifications: 3+ years in AppSec with a solid software engineering background.

The predicted salary is between 80000 - 100000 € per year.

The problem

The last major breach you read about probably didn't start with a hacker breaking through a firewall. It started with something already inside - a compromised dependency, a third party library millions of developers trusted without question. 81% of those codebases contain high or critical vulnerabilities. And now AI is generating dependencies at a scale no human can keep up with. This is the defining security problem of our generation. And it's getting harder, not easier.

Why this role is different

You'll be embedded directly inside an engineering team, in the sprint, in the design review, in the architecture conversation - before the code is written, not after it ships. And because the product itself is a security platform, the work you do protects not just one company but every developer and organisation depending on software flowing through the platform every day.

What you'll be doing

  • Lead threat modelling and secure design reviews across cloud-native, distributed systems
  • Security code reviews and coaching engineers to do the same
  • Build and operate SAST, DAST, SCA and runtime security tooling
  • Harden APIs, containers, IaC and CI/CD pipelines
  • Penetration testing and vulnerability assessments across services and infrastructure
  • Technical lead during incident response including red/blue exercises
  • Write production-quality security automation - not just configure vendor products

What they need

  • 3+ years in AppSec with a software engineering background
  • Solid AWS security experience
  • Hands on experience with security tooling - specific products don't matter
  • Able to read production code and hold your own with senior engineers
  • Low ego, collaborative, suits a small tight-knit team

The package

  • £80,000 - £100,000 depending on experience
  • Equity with real upside - founders are engineers who built the structure to reward engineers properly
  • 35 days annual leave applied pro rata (inclusive of optional bank holidays) + birthday off
  • Flexible working (e.g. flexible hours / remote working)
  • Pension (up to 8% matched)
  • Paid sick leave (up to 10 days per year)
  • Private Medical Insurance & Healthcare Cash Plan (covering Dental and Optical)
  • Maternity, Paternity, Adoptive Leave
  • Income Protection + Life Insurance
  • EV Vehicle Leasing Scheme
  • High-performance laptop
  • Setup budget, company swag, access to self-learning platforms, wellbeing support & free conference days.

Interested? Drop me a message and I'll share more details confidentially. This isn't being advertised widely - if the problem resonates, it's worth a conversation.

Senior Application Security Engineer employer: Strive - GTM Talent Partner

As a Senior Application Security Engineer at our VC-backed, Series C company, you'll be part of a dynamic and innovative team dedicated to tackling the most pressing security challenges in software development. We offer a remote-first work culture that prioritises flexibility and employee well-being, alongside competitive compensation, equity opportunities, and extensive benefits including generous annual leave and professional development resources. Join us to make a meaningful impact on the security landscape while enjoying a supportive environment that fosters collaboration and growth.

Strive - GTM Talent Partner

Contact Detail:

Strive - GTM Talent Partner Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Application Security Engineer

Tip Number 1

Network like a pro! Reach out to your connections in the industry, especially those who might know about opportunities in application security. A personal recommendation can go a long way in landing that interview.

Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your work in AppSec. Highlight any projects where you've led threat modelling or built security tools. This gives potential employers a taste of what you can bring to their team.

Tip Number 3

Prepare for technical interviews by brushing up on your knowledge of AWS security and security tooling. Be ready to discuss your hands-on experience and how you've collaborated with engineers in the past. Confidence is key!

Tip Number 4

Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our mission. Plus, it makes it easier for us to keep track of your application and get back to you quickly.

We think you need these skills to ace Senior Application Security Engineer

Threat Modelling
Secure Design Reviews
Security Code Reviews
SAST
DAST
SCA
Runtime Security Tooling

Some tips for your application 🫡

Tailor Your CV:Make sure your CV reflects the skills and experiences that align with the Senior Application Security Engineer role. Highlight your AppSec experience and any relevant projects you've worked on, especially those involving cloud-native systems.

Craft a Compelling Cover Letter:Use your cover letter to tell us why you're passionate about application security and how you can contribute to our mission. Share specific examples of your work in threat modelling or secure design reviews to make your application stand out.

Showcase Your Technical Skills:Don’t just list your skills; demonstrate them! If you’ve built or operated security tooling, mention it. We want to see your hands-on experience with SAST, DAST, and other security practices that are crucial for this role.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity. Plus, it makes the process smoother for everyone!

How to prepare for a job interview at Strive - GTM Talent Partner

Know Your Stuff

Make sure you brush up on your application security knowledge, especially around threat modelling and secure design reviews. Be ready to discuss specific examples from your past experience where you've tackled vulnerabilities or led security initiatives.

Show Your Collaborative Side

This role is all about teamwork, so be prepared to demonstrate how you've worked closely with engineers in the past. Share stories that highlight your low ego and collaborative approach, as this will resonate well with the tight-knit team culture.

Get Technical

Since you'll be embedded in an engineering team, make sure you can hold your own in technical discussions. Brush up on your AWS security experience and be ready to talk about the security tooling you've used, even if it's not the exact products they use.

Ask Insightful Questions

Prepare some thoughtful questions about their security platform and how they handle vulnerabilities. This shows your genuine interest in the role and helps you understand how you can contribute to their mission of protecting developers and organisations.