At a Glance
- Tasks: Lead security testing for a complex digital programme using cutting-edge tools.
- Company: Join WRK digital, a forward-thinking recruitment partner in tech.
- Benefits: Flexible hybrid work, competitive pay, and the chance to shape security practices.
- Other info: Enjoy autonomy and excellent opportunities for professional growth.
- Why this job: Own critical security capabilities and make a real impact in a dynamic environment.
- Qualifications: Experience with DAST pipelines and Azure DevOps is essential.
The predicted salary is between 50000 - 60000 £ per year.
Location: Leeds, UK (Hybrid)
Engagement: 3 Months - Outside IR35 Contract
WRK digital are shortlisting for an experienced Contract Security Test Engineer on an Outside IR35 consultancy basis to take end‑to‑end ownership of the security testing capability within a complex digital programme built around Power Platform & Dynamics 365.
This role is outcomes‑driven and focused on delivering a scalable, robust DAST implementation using Checkmarx ZAP, working independently while collaborating closely with engineering and testing teams.
You will be responsible for the design, build, and evolution of ZAP‑based DAST pipelines, ensuring security testing is embedded seamlessly across delivery. Operating with a high degree of autonomy, you will define best practice, own tooling decisions, and ensure knowledge is transferred to internal teams to support long‑term sustainability.
- Design, build, scale, and maintain ZAP‑based DAST pipelines across all API and UI testing
- Create and maintain Azure DevOps (ADO) pipeline scripts, including YAML
- Partner with multiple build squads to enable adoption, configuration, and consistent security testing standards
- Ensure security testing is embedded as delivery progresses into early and full end‑to‑end (E2E) testing
- Transfer knowledge and capability to squad testers and NFT testers, reducing long‑term dependency
Strong experience integrating security testing into CI/CD pipelines, particularly Azure DevOps.
This is a clearly defined, deliverables‑led engagement offering genuine ownership of a critical security capability, with the freedom to shape how security testing is embedded at scale.
For further details or a confidential discussion, please apply now or contact James at WRK digital.
Contract Security Test Engineer in Leeds employer: WRK digital
Contact Detail:
WRK digital Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Contract Security Test Engineer in Leeds
✨Tip Number 1
Network like a pro! Reach out to your connections in the industry, especially those who work with security testing or in similar roles. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or a GitHub repository showcasing your DAST implementations and any relevant projects. This gives potential employers a tangible look at what you can do.
✨Tip Number 3
Prepare for interviews by brushing up on common security testing scenarios and tools like Checkmarx ZAP. We recommend practising with mock interviews to build confidence and refine your answers.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we’re here to support you every step of the way in landing that dream role.
We think you need these skills to ace Contract Security Test Engineer in Leeds
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Contract Security Test Engineer role. Highlight your experience with DAST, Checkmarx ZAP, and Azure DevOps. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're the perfect fit for this role. Share specific examples of your past work that relate to security testing and CI/CD pipelines.
Showcase Your Autonomy: Since this role requires a high degree of autonomy, make sure to mention any previous experiences where you took ownership of projects. We love seeing candidates who can work independently while still collaborating effectively.
Apply Through Our Website: Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity. We can't wait to hear from you!
How to prepare for a job interview at WRK digital
✨Know Your Tools Inside Out
Make sure you’re well-versed in Checkmarx ZAP and Azure DevOps. Be ready to discuss how you've used these tools in past projects, especially in building DAST pipelines. This shows you’re not just familiar with the tech but can also apply it effectively.
✨Showcase Your Autonomy
Since this role requires a high degree of independence, prepare examples that highlight your ability to work autonomously. Talk about times when you took ownership of a project or initiative, particularly in security testing or CI/CD environments.
✨Collaboration is Key
Even though you’ll be working independently, collaboration with engineering and testing teams is crucial. Think of specific instances where you successfully partnered with others to achieve a common goal, especially in embedding security practices.
✨Prepare for Scenario Questions
Expect questions that ask how you would handle specific security testing challenges. Practice articulating your thought process and decision-making skills, particularly around integrating security testing into existing workflows and ensuring knowledge transfer.