This is an experimental service. Give feedback (opens in new tab)

English |

Senior Application Security Engineer / DevSecOps Engineer

Company:Additional Resources Ltd
Salary:£80,000 - £80,000
Hours:Full-time
Location:London, EC1N 2LL
Working pattern:On-site
Job type:Permanent
Posting date:21 Aug 2026
Closing date:20 Sept 2026
Apply for this job

Summary

Do you have a background in

Application Security, DevSecOps or Product Security, with hands-on experience embedding application security into the SDLC? If so, this could be an opportunity worth considering.

Join a well-established health research organisation and charity supporting large-scale medical research. You will work closely with engineering, architecture and cloud teams to integrate security throughout the software development lifecycle.

Microsoft Azure and KQL experience are essential, alongside relevant experience in

CI/CD, Kubernetes, API security, security-as-code and security automation.This is a

hands-on application security rolefocused on secure design, application security testing and supporting development teams to build secure applications.

This is a full-time permanent role

predominantly remote / hybrid in London offerings benefits and a salary of £80,000 which can benegotiable for right candidate.

Please only apply if you haveright to work in the UK as Visa sponsorship is not available.

You will be responsible for:

- Working with engineering and architecture teams to promote secure development.

- Implementing and maintaining application security testing solutions.

- Integrating security controls into CI/CD pipelines.

- Strengthening the security of GitHub Actions and similar CI/CD platforms.

- Providing guidance on secure API design and externally accessible systems.

- Supporting Azure cloud infrastructure, including Azure Kubernetes Service (AKS).

- Developing security-as-code and policy-as-code.

- Supporting the security of cloud-hosted data platforms.

- Automating security processes through infrastructure-as-code and scripting.

- Maintaining technical and security documentation.

- Supporting development teams with security tooling and best practices.

- Contributing to threat modelling and compliance activities.

Applications are welcomed from candidates with the required experience from backgrounds including:

- Application Security Engineer, DevSecOps Engineer, Product Security Engineer, Security Engineer - Application Security, Security Engineer - Product Security, DevOps Security Engineer, Application Security Consultant, Security Engineer - DevSecOps, Secure Software Engineer, Application Security Specialist, Application Security Architect

What we are looking for:

- Hands-on experience embedding application security into the SDLC.

-

Experience with Microsoft Azure security controls and cloud security governance.

-

Experience with KQL.

- Experience securing APIs, internet-facing services, Kubernetes, preferably AKS, and containerised environments.

- Experience with SAST, DAST, IAST and SCA.

- Knowledge of security automation, security-/policy-as-code and secure engineering practices.

- Familiarity with GitHub and GitHub Actions.

- Experience with Terraform and Python.

- Understanding of cloud security governance.

- Experience with threat modelling in software engineering contexts.

- Knowledge of ISO 27001 and its relevance to secure engineering.

- Exposure to Agile working environments and DevSecOps practices

- Ideally experience securing data platforms such as Databricks, Dagster or Snowflake

- Eligible to work in the UK.

What the role offers:

- £80,000 DOE, negotiable

- Predominantly remote / hybrid working

- London office

- Full-time permanent position

- Excellent benefits package

This is an excellent opportunity for a

Senior Application Security Engineer where you can make a meaningful impact on the safe and effective adoption of emerging technologies.

Important Information: We endeavour to process your personal data in a fair and transparent manner. In applying for this role, Additional Resources will be acting in your best interest and may contact you in relation to the role, either by email, phone or text message. For more information see our Privacy Policy on our website. It is important you are aware of your individual rights and the provisions the company has put in place to protect your data. If you would like further information on the policy or GDPR please contact us.

Additional Resources are an Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Businesses Regulations 2003.

Apply for this job

Related jobs

Cloud Security Architect

£84,051 to £93,390 per year

Lloyds Banking Group

London, London

HybridPermanentFull time

Django Technical Lead (SC Cleared)

£700 to £800 per day

Morgan Hunt UK Ltd

London, London

ContractFull time

Threat Detection Engineer - Hybrid / Remote

£60,000 to £80,000 per year

Additional Resources Ltd

Westminster,

On-sitePermanentFull time
Browse more jobs