Application Security Engineer
New Today
Job Description
Senior Application Security Engineer – Contract (6 Months) | London - Hybrid
We are working with a leading financial services organisation who are seeking a Senior Application Security Engineer for a 6-month contract based in London.
You will help shape and evolve the organisation’s application security strategy.
Role Overview
You will be responsible for driving the vision and execution of the application security programme across the software development lifecycle.
A key part of the role will involve leveraging offensive security insights (including penetration testing and red team methodologies) to improve secure design, testing coverage, and remediation prioritisation.
Key Responsibilities
- Lead and evolve the organisation’s application security strategy across engineering teams
- Embed security into CI/CD pipelines and developer workflows (e.g. GitHub-based environments)
- Design and build secure-by-default platforms and automation to reduce friction in delivery
- Integrate and enhance security tooling (SAST, DAST, SCA, API security, IaC scanning)
- Translate penetration testing and red team findings into actionable engineering improvements
- Partner with engineering teams to improve secure design, vulnerability remediation, and testing coverage
- Build or integrate AI-enabled security workflows to improve automation, signal quality, and developer productivity
- Support secure software development practices across large-scale distributed systems
- Design and develop internal security tooling, libraries, and services that integrate seamlessly into engineering workflows
- Build and maintain CI/CD extensions, GitHub integrations, and developer-facing automation that reduce manual security effort
- Create reusable components, templates, and reference implementations that enable secure-by-default application patterns
- Contribute production-quality code in languages commonly used across the organisation (e.g. Python, Go, JavaScript, PHP, or C#)
- Partner with platform and DevOps teams
Key Requirements
- Software engineering background with experience building production-grade systems
- Experience designing APIs, services, or internal platforms used by engineers
- Integrating tools into CI/CD pipelines (e.g. GitHub, GitLab, Jenkins)
- Strong understanding of application security principles and OWASP Top 10 vulnerabilities
- Experience with security testing tools (SAST, DAST, SCA, API testing, IaC scanning)
- Solid understanding of penetration testing and red team methodologies (attack chains, exploitation paths, privilege escalation, etc.)
- Experience working with penetration testers/red teams, including scoping, validating findings, and driving remediation
- Exposure to AI-assisted tooling for security, developer productivity, or automation use cases
- Strong collaborative skills working with engineers, architects, and security stakeholders
- Experience in software engineering, application security, or closely related fields
- Prior experience in highly regulated environments (financial services, healthcare, or similar) preferred
- Security or engineering certifications (e.g. OSWE, GWAPT, CSSLP) are a plus
- Location:
- City Of London
- Job Type:
- FullTime
- Category:
- Technology
We found some similar jobs based on your search
-
New Today
Application Security Engineer
-
City Of London
- Technology
Job Description Senior Application Security Engineer – Contract (6 Months) | London - Hybrid We are working with a leading financial services organisation who are seeking a Senior Application Security Engineer for a 6-month contract based in...
More Details -
-
New Today
Application Security Engineer
-
London
- Technology
Job Description Senior Application Security Engineer – Contract (6 Months) | London - Hybrid We are working with a leading financial services organisation who are seeking a Senior Application Security Engineer for a 6-month contract based in...
More Details -
-
2 Days Old
Application Security Engineer
-
London
-
From £600 to £900 per day
- IT & Computers
Application Security Engineer - Contract (12 Months) | London - Hybrid £650 - £900 p/d inside IR35 We are working with a leading financial services organisation who are seeking a Senior Application Security Engineer for a 12-month contract based in ...
More Details -
-
3 Days Old
Senior Application Security Engineer (SCA/SAST)
-
United Kingdom
Senior Application Security Engineer (SCA/SAST) Scale Security. Empower Engineers. Shape the Future. Location: UK - Remote The Mission At Trimble, we aren't just building software; we're transforming the way the world works. We are looking for a Seni...
More Details -
-
8 Days Old
Lead Application Security Engineer
-
London
-
£100,000 - £100,000
- IT & Computers
Lead Application Security Engineer Bristol or London - 3 days a week on site £100,000 + great benefits An impressive financial services business is looking to hire a Lead Application Security Engineer to support this team with the risk and remedi...
More Details -
-
8 Days Old
Application Security Engineer: Protect Billions at Cloud Scale
-
Greater London, England, United Kingdom
A leading technology company in Greater London is seeking an experienced Application Security Engineer to join their team. In this role, you will conduct application security reviews, design secure architectures, and assist development teams with sec...
More Details -