At a Glance
- Tasks: Lead a dynamic team in securing applications and infrastructure through innovative engineering.
- Company: Join Tesco, a leading retailer committed to inclusivity and customer satisfaction.
- Benefits: Enjoy a competitive salary, annual bonus, generous holiday, and private medical insurance.
- Why this job: Make a real impact on security while developing your leadership skills in a supportive environment.
- Qualifications: Proven experience in security engineering and strong communication skills required.
- Other info: Be part of a culture that values diversity and fosters career growth.
The predicted salary is between 72000 - 108000 £ per year.
Tesco Technology's Security Engineering function is responsible for proactively identifying and mitigating risks across our technology estate. As Head of Security Engineering – Application Security & Testing, you will lead a multi-disciplinary function that spans vulnerability management, application security engineering, and adversarial testing. You will be accountable for delivering full-stack security assurance—from code to infrastructure—through a blend of engineering innovation and operational excellence.
Leadership & Team Management
- Lead three Security Engineering Managers and their teams (approx. 20+ engineers), plus a Principal Security Engineer/Architect.
- Foster collaboration across teams focused on:
- External attack surface management and bug bounty operations.
- Application security engineering (SAST, SCA, GenAI solutions, ASPM, threat modelling).
- Penetration testing and adversarial simulation (red/purple team strategy).
Security Engineering & Testing
- Oversee the design, deployment, and operation of tools and solutions that identify vulnerabilities across the full stack—code, applications, infrastructure, packages, and external assets.
- Ensure robust security testing capabilities are in place to support business projects and strategic initiatives.
- Drive continuous improvement in testing methodologies, coverage, and automation.
Strategic Execution
- Translate strategic goals into actionable plans under Tesco's Tech Excellence programme.
- Monitor delivery progress, operational metrics, and team performance.
- Ensure alignment with broader security and technology objectives.
Cross‐Functional Collaboration
- Work closely with peers including the Heads of Security Partnerships, Cyber Defence, and Platform Security Architecture.
- Partner with Product and Programme teams to embed security into delivery pipelines.
- Act as a key point of contact for senior stakeholders across Tesco Technology.
Key Requirements
- Proven experience leading large‐scale security engineering functions.
- Deep technical expertise in vulnerability management, application security, and adversarial testing.
- Strong understanding of secure development practices and modern engineering tooling.
- Experience with ASPM platforms, threat modelling, and GenAI‐driven security solutions.
- Ability to balance strategic thinking with hands‐on execution.
- Excellent communication and stakeholder engagement skills.
- Familiarity with operational metrics and performance tracking.
Benefits
- Annual bonus scheme of up to 45% of base salary.
- Car allowance of £7,320 per annum.
- Holiday starting at 25 days plus a personal day (plus Bank holidays).
- Private medical insurance.
- Retirement savings plan – save between 6%‐10% and Tesco will contribute 1.5 times this amount.
- 26 weeks maternity and adoption leave (after 1 year's service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay; 6 weeks fully paid paternity leave.
About Us
Our vision at Tesco is to become every customer's favourite way to shop, whether they are at home or out on the move. Our core purpose is 'Serving our customers, communities and planet a little better every day'. We are proud of our inclusive culture where everyone truly feels able to be themselves. Tesco is committed to creating a workplace where differences are valued. We are accredited Disability Confident Leader and provide a fully inclusive and accessible recruitment process.
Head of Security Engineering – Application Security & Security Testing in Welwyn Garden City employer: Tesco Technology
Contact Detail:
Tesco Technology Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Security Engineering – Application Security & Security Testing in Welwyn Garden City
✨Tip Number 1
Network like a pro! Reach out to your connections in the security engineering field, especially those who might know someone at Tesco. A friendly chat can open doors that applications alone can't.
✨Tip Number 2
Show off your skills! If you’ve got a portfolio of projects or contributions to open-source security tools, make sure to highlight them in conversations. It’s all about demonstrating your hands-on experience and technical expertise.
✨Tip Number 3
Prepare for the interview by brushing up on the latest trends in application security and adversarial testing. Being able to discuss current challenges and solutions will show you’re not just a candidate, but a thought leader in the field.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Tesco team.
We think you need these skills to ace Head of Security Engineering – Application Security & Security Testing in Welwyn Garden City
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Head of Security Engineering. Highlight your experience in vulnerability management and application security, and don’t forget to mention any leadership roles you've had. We want to see how you can lead our teams!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security engineering and how your skills align with our mission at Tesco. We love seeing genuine enthusiasm, so let your personality come through!
Showcase Your Achievements: When detailing your past roles, focus on specific achievements that demonstrate your impact. Whether it's improving security testing methodologies or leading successful projects, we want to know how you've made a difference in your previous positions.
Apply Through Our Website: We encourage you to apply directly through our website for a smoother process. It helps us keep track of applications and ensures you get all the updates. Plus, it shows you're keen on joining our team at Tesco!
How to prepare for a job interview at Tesco Technology
✨Know Your Stuff
Make sure you brush up on your technical knowledge, especially around vulnerability management and application security. Be ready to discuss specific tools and methodologies you've used in the past, as well as any experience with adversarial testing.
✨Show Leadership Skills
Since this role involves leading a team, be prepared to share examples of how you've successfully managed teams in the past. Highlight your experience in developing talent and fostering collaboration across different functions.
✨Align with Tesco's Vision
Familiarise yourself with Tesco's core purpose and values. During the interview, demonstrate how your personal values align with theirs, especially around serving customers and creating an inclusive culture.
✨Prepare for Strategic Discussions
Expect questions about translating strategic goals into actionable plans. Think of examples where you've monitored delivery progress and operational metrics, and be ready to discuss how you ensure alignment with broader security objectives.