Senior Application Security Engineer / DevSecOps Engineer
Additional Resources Ltd · EC1N2LL · posted 21 days ago
Going rate £48,500UK median £54,647
Home Office going rates from
Occupation
2135Cyber security professionals
Going rate for this occupation: £48,500 · UK median pay £54,647
Home Office going rates from
Where this salary sits
- UK pay for this occupation
- This role£70,000 to £80,000stated · above the range ONS published
- Going rate£48,500
- UK median£54,647
View these figures as a table
| Percentile | Pay |
|---|---|
| 10th | £32,471 |
| 25th | £42,761 |
| 50th | £54,647 |
| 75th | £71,808 |
| Going rate | £48,500 |
| UK median | £54,647 |
Sponsorship
Sponsorship chance
Very low
- The advert rules sponsorship out
- Not matched to a licence on the register
- Occupation is eligible for Skilled Worker
The advert itself says the employer will not sponsor for this role, which outweighs everything the public records show.
We hold the employer, the occupation, a stated salary and the advert's own wording.
Why
Sign in to see how you fit and draft a cover letter
We read this advert for what it asks, check each line against your CV and show you the evidence for every judgement.
Sign inFull advert
Do you have a background in Application Security, DevSecOps or Product Security , with hands-on experience embedding application security into the SDLC If so, this could be an opportunity worth considering.
Join a well-established health research organisation and charity supporting large-scale medical research. You will work closely with engineering, architecture and cloud teams to integrate security throughout the software development lifecycle.
Microsoft Azure and KQL experience are essential , alongside relevant experience in CI/CD, Kubernetes, API security, security-as-code and security automation . This is a hands-on application security role focused on secure design, application security testing and supporting development teams to build secure applications.
This is a full-time permanent role predominantly remote / hybrid in London offerings benefits and a salary of £80,000 which can be negotiable for right candidate. Please only apply if you have right to work in the UK as Visa sponsorship is not available.
You will be responsible for:
Working with engineering and architecture teams to promote secure development. Implementing and maintaining application security testing solutions. Integrating security controls into CI/CD pipelines. Strengthening the security of GitHub Actions and similar CI/CD platforms. Providing guidance on secure API design and externally accessible systems. Supporting Azure cloud infrastructure, including Azure Kubernetes Service (AKS). Developing security-as-code and policy-as-code. Supporting the security of cloud-hosted data platforms. Automating security processes through infrastructure-as-code and scripting. Maintaining technical and security documentation. Supporting development teams with security tooling and best practices. Contributing to threat modelling and compliance activities.
Applications are welcomed from candidates with the required experience from backgrounds including:
Application Security Engineer, DevSecOps Engineer, Product Security Engineer, Security Engineer - Application Security, Security Engineer - Product Security, DevOps Security Engineer, Application Security Consultant, Security Engineer - DevSecOps, Secure Software Engineer, Application Security Specialist, Application Security Architect
What we are looking for:
Hands-on experience embedding application security into the SDLC. Experience with Microsoft Azure security controls and cloud security governance. Experience with KQL. Experience securing APIs, internet-facing services, Kubernetes, preferably AKS, and containerised environments. Experience with SAST, DAST, IAST and SCA. Knowledge of security automation, security-/policy-as-code and secure engineering practices. Familiarity with GitHub and GitHub Actions. Experience with Terraform and Python. Understanding of cloud security governance. Experience with threat modelling in software engineering contexts. Knowledge of ISO 27001 and its relevance to secure engineering. Exposure to Agile working environments and DevSecOps practices Ideally experience securing data platforms such as Databricks, Dagster or Snowflake Eligible to work in the UK.
Information from public records, not immigration advice.