Senior Application Security Engineer (SCA/SAST)

Senior Application Security Engineer (SCA/SAST)

Full-Time 70000 - 90000 £ / year (est.) No working from home possible
Trimble

At a Glance

  • Tasks: Lead global security strategy and integrate security into developer workflows.
  • Company: Trimble, a transformative tech company with a values-driven culture.
  • Benefits: Remote work, competitive salary, and opportunities for career growth.
  • Other info: Join a team that values belonging, growth, and innovation.
  • Why this job: Shape the future of security in software development on a global scale.
  • Qualifications: 5+ years in AppSec with expertise in SCA and SAST; coding skills in multiple languages.

The predicted salary is between 70000 - 90000 £ per year.

Scale Security. Empower Engineers. Shape the Future.

Location: UK - Remote

The Mission

At Trimble, we aren’t just building software; we’re transforming the way the world works. We are looking for a Senior Application Security Engineer who is more than a technical expert—you are a strategist and a catalyst for secure innovation. You will lead the charge in open-source security (SCA) and static analysis (SAST) across a massive global footprint, ensuring that security is a seamless part of the developer experience.

Why This Role?

  • Global Influence: You won’t just be "fixing bugs." You will be the architect of a global security strategy that impacts 99% of our engineering teams.
  • Strategic Autonomy: Lead the vision for our SCA and SAST roadmaps. You have the seat at the table to decide how we evolve.
  • Innovation at Scale: Work across diverse tech stacks—from .NET and Java to Go and Python—integrating security directly into the heartbeat of our CI/CD pipelines.

How You’ll Make an Impact

  • Strategic Leadership: Act as the global SME for SCA and SAST, turning complex security requirements into scalable, automated solutions. Optimize our security tooling to be “developer-first,” slashing false positives and focusing engineering energy on what truly matters. Shape the organizational approach to open-source security and license compliance.
  • Engineering Excellence: Embed security into the DNA of the SDLC by collaborating with architects and product owners worldwide. Automate everything. You’ll build the “guardrails” that allow our developers to move fast without breaking things. Mentor the next generation of security talent and lead through influence across cross‑functional teams.
  • Vision & Advisory: Stay ahead of the curve. You’ll evaluate emerging security tech and proactively keep Trimble at the cutting edge. Conduct threat modeling and architectural reviews to kill vulnerabilities before they are ever coded.

The Profile We’re Looking For

  • The Architect: 5+ years in AppSec with a deep, battle‑tested mastery of SCA and SAST implementation at an enterprise level.
  • The Polyglot: You speak the language of developers. Whether it’s Java, C#, Python, or Go, you can read the code and provide real remediation paths.
  • The Integrator: You live in the pipeline. You have hands‑on experience with GitHub Actions, Jenkins, Azure DevOps, or GitLab CI.
  • The Communicator: You can translate “security risk” into “business value” for stakeholders and “clear action” for engineers.

Education: Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent practical experience.

How to Apply: Please submit an online application for this position by clicking on the “Apply Now” button located in this posting.

Join a Values-Driven Team: Belong, Grow, Innovate. At Trimble, our core values of Belong, Grow, and Innovate aren’t just words—they’re the foundation of our culture. We foster an environment where you are seen, heard, and valued (Belong); where you have an opportunity to build a career and drive our collective growth (Grow); and where your innovative ideas shape the future (Innovate). We believe in empowering local teams to create impactful strategies, ensuring our global vision resonates with every individual. Become part of a team where your contributions truly matter.

Senior Application Security Engineer (SCA/SAST) employer: Trimble

At Trimble, we are not just building software; we are transforming the way the world works. As a Senior Application Security Engineer, you will thrive in a values-driven culture that prioritises belonging, growth, and innovation. With opportunities for strategic leadership and mentorship, you will play a pivotal role in shaping our global security strategy while enjoying the flexibility of remote work in the UK, making Trimble an exceptional employer for those seeking meaningful and impactful careers.

Trimble

Contact Details:

Trimble Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Application Security Engineer (SCA/SAST)

Tip Number 1

Network like a pro! Reach out to folks in your industry on LinkedIn or at meetups. A personal connection can often get your foot in the door faster than any application.

Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to SCA and SAST. This gives potential employers a taste of what you can do.

Tip Number 3

Prepare for interviews by brushing up on common security scenarios and challenges. Be ready to discuss how you would tackle real-world problems in application security.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team.

We think you need these skills to ace Senior Application Security Engineer (SCA/SAST)

Application Security (AppSec)
SCA (Software Composition Analysis)
SAST (Static Application Security Testing)
CI/CD Integration
Java
C#
Python

Some tips for your application 🫡

Show Your Passion for Security:When writing your application, let your enthusiasm for application security shine through. We want to see how you can be a catalyst for secure innovation and how your experience aligns with our mission.

Tailor Your CV and Cover Letter:Make sure to customise your CV and cover letter for the Senior Application Security Engineer role. Highlight your experience with SCA and SAST, and don’t forget to mention any relevant tech stacks you’ve worked with—this will help us see you as a perfect fit!

Be Clear and Concise:We appreciate clarity! Use straightforward language and avoid jargon where possible. This helps us understand your thought process and makes it easier for us to see how you can communicate complex security concepts effectively.

Apply Through Our Website:Don’t forget to hit that 'Apply Now' button on our website! It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity. We can’t wait to hear from you!

How to prepare for a job interview at Trimble

Know Your Stuff

Make sure you brush up on your SCA and SAST knowledge. Be ready to discuss specific tools and techniques you've used in the past, especially in relation to integrating security into CI/CD pipelines. Show them you’re not just a techie but a strategic thinker who can lead security initiatives.

Speak Their Language

Since you'll be working closely with developers, it’s crucial to demonstrate that you understand their world. Familiarise yourself with languages like Java, C#, Python, and Go. Be prepared to explain how you can bridge the gap between security risks and business value in a way that resonates with both engineers and stakeholders.

Showcase Your Leadership Skills

This role is about more than just technical skills; it's about leading and mentoring. Prepare examples of how you've influenced cross-functional teams or shaped security strategies in previous roles. Highlight your ability to turn complex security requirements into actionable plans that empower developers.

Stay Ahead of the Curve

Demonstrate your passion for staying updated on emerging security technologies. Be ready to discuss recent trends in application security and how they could impact Trimble's approach. Showing that you’re proactive about threat modelling and architectural reviews will set you apart as a forward-thinking candidate.