Application Security Engineer
Core
Ensuring the security of software applications through rigorous testing, validation, and embedding security practices throughout the software development lifecycle.
Role type
Application Security Engineer
Builds
Secure software applications for a multi-national lottery operator
Domain
Gaming / Lottery / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security testing (SAST, DAST, MAST, IAST), CI/CD pipeline integration, vulnerability scanning, secure coding standards, threat modeling, scripting (Python, JavaScript, C#), OWASP Top 10 knowledge
Preferred skills
CREST Certified Web Application Tester, Bachelor's degree in Software Engineering
Technologies
Sonar Cloud, Snyk, OWASP ZAP, Burp Suite, Tenable WAS
Responsibilities
Collaborate with development teams to create and maintain application threat models; Integrate and operate application vulnerability scanning tools within CI/CD pipelines; Plan, execute, and manage Static, Dynamic, Mobile, and Interactive Application Security Testing; Develop and maintain scripts, tools, and processes to automate application security testing; Produce clear, actionable security testing reports for technical and non-technical stakeholders
Seniority
Mid-level, hands-on IC