Application Security Engineer
Core
Application security consultancy and support to application teams, focusing on security assessments, DevSecOps integration, and raising security competency standards.
Role type
Application Security Engineer
Builds
Secure application development practices, automated source code scanning platforms, and secure CI/CD pipelines.
Domain
Government technology and cyber security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security roadmap planning, secure code quality reviews, application penetration testing, threat modelling, secure coding training, SAST tool usage, CI/CD pipeline security integration
Preferred skills
None stated
Technologies
Azure, AWS, Java, PHP, Javascript, C#, Android, iOS, REST, SOAP, SSL/TLS, Checkmarx, Sonarqube, Git, Gitlab, Github, Jenkins, Ansible
Responsibilities
Plan application security roadmap, Develop secure application development practices and guidelines, Maintain application security processes and automated scanning platforms, Perform secure code reviews and penetration testing, Support application testing and delivery within CI/CD, Train developers in secure coding and security acceptance criteria, Work with DevOps to improve CI/CD pipeline security
Seniority
Mid-level, hands-on IC