← All jobs

Application Security Engineer

London, UK · Remote Full-time
Cyber Security EngineerCloud EngineerApplication ArchitectSecurity EngineerDevSecOps

hackajob is partnering with Virgin Media O2 X giffgaff to fill this position. Create a free profile and Archer will check you against this role and every other live role, showing you exactly where you match.

We are looking for an application security engineer who is based in the UK for a majority remote role based in London.

In order to be considered, the candidate must have the following experience;
• Experience assessing security impacts across codebases and APIs using languages such as Java, TypeScript and Python.
• Strong knowledge of the OWASP Top 10, secure coding practices, and common web and API vulnerabilities.
• Hands-on experience triaging, validating and remediating vulnerabilities with both technical and non-technical stakeholders.
• Experience integrating security tooling into CI/CD pipelines and embedding DevSecOps practices.

We'd also love you to bring;
• Security certifications such as OSCP, GWAPT, CSSLP, CEH or Security+.
• Experience securing AWS environments and infrastructure-as-code solutions such as Terraform.
• Knowledge of AI-enabled security workflows and securing AI or LLM-powered features.
• Experience contributing to or maintaining open-source security tooling.
• Proven expertise in threat modelling, secure code review, architecture review, and container/Kubernetes security.

Apply knowing you're qualified

One free profile is all it takes. Archer checks you against this role and every other live role on hackajob, and shows you exactly which requirements you meet before you apply.

Not quite the right role?

Archer scans thousands of live roles and surfaces the ones you genuinely match, each with a clear explanation of why. It keeps working after you apply, so you hear about roles you would never have found by searching.

Create your free profile