Senior Application Security Engineer/DevSecOps Engineer
Listed on 2026-08-26
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations, Information Security & Data Protection
Location: City Of London
Do you have a background in Application Security, Dev Sec Ops or Product Security, with hands‑on experience embedding application security into the SDLC If so, this could be an opportunity worth considering.
Join a well-established health research organisation and charity supporting large-scale medical research. You will work closely with engineering, architecture and cloud teams to integrate security throughout the software development lifecycle.
Microsoft Azure and KQL experience are essential, alongside relevant experience in CI/CD, Kubernetes, API security, security-as-code and security automation. This is a hands‑on application security role focused on secure design, application security testing and supporting development teams to build secure applications.
This is a full‑time permanent role predominantly remote / hybrid in London offering benefits and a salary of £80,000 which can be negotiable for right candidate. Please only apply if you have right to work in the UK as Visa sponsorship is not available.
You will be responsible for:- Working with engineering and architecture teams to promote secure development.
- Implementing and maintaining application security testing solutions.
- Integrating security controls into CI/CD pipelines.
- Strengthening the security of Git Hub Actions and similar CI/CD platforms.
- Providing guidance on secure API design and externally accessible systems.
- Supporting Azure cloud infrastructure, including Azure Kubernetes Service (AKS).
- Developing security-as-code and policy-as-code.
- Supporting the security of cloud-hosted data platforms.
- Automating security processes through infrastructure-as-code and scripting.
- Maintaining technical and security documentation.
- Supporting development teams with security tooling and best practices.
- Contributing to threat modelling and compliance activities.
- Application Security Engineer, Dev Sec Ops Engineer, Product Security Engineer, Security Engineer
- Application Security, Security Engineer
- Product Security, Dev Ops Security Engineer, Application Security Consultant, Security Engineer
- Dev Sec Ops , Secure Software Engineer, Application Security Specialist, Application Security Architect
- Hands‑on experience embedding application security into the SDLC.
- Experience with Microsoft Azure security controls and cloud security governance.
- Experience with KQL.
- Experience securing APIs, internet‑facing services, Kubernetes, preferably AKS, and containerised environments.
- Experience with SAST, DAST, IAST and SCA.
- Knowledge of security automation, security-/policy-as-code and secure engineering practices.
- Familiarity with Git Hub and Git Hub Actions.
- Experience with Terraform and Python.
- Understanding of cloud security governance.
- Experience with threat modelling in software engineering contexts.
- Knowledge of ISO 27001 and its relevance to secure engineering.
- Exposure to Agile working environments and Dev Sec Ops practices
- Ideally experience securing data platforms such as Databricks, Dagster or Snowflake
- Eligible to work in the UK.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: