Senior Software Security Engineer
- uxbridge, england, United Kingdom
- Job type not listed
- £90 - £130 Per Hour
Job Description
Senior Software Cybersecurity Engineer - Uxbridge or Edinburgh (Hybrid)
Are you a Senior Cybersecurity Engineer with strong AppSec, DevSecOps, Cloud and Kubernetes experience ?
I'm currently working on an exciting opportunity, supporting the Avigilon security team in protecting the software, cloud platforms and intellectual property behind their physical and video security solutions.
This is a hands-on role where you'll work closely with software engineering teams to identify vulnerabilities, improve security throughout the SDLC and build secure-by-design solutions .
What you'll be doing
- Conduct threat modelling, risk assessments and security architecture reviews
- Assess security across cloud and Kubernetes/container environments
- Embed SAST, DAST, SCA, SBOM and secret scanning into CI/CD pipelines
- Perform security code reviews and provide secure coding guidance
- Define security requirements and support engineering teams with secure-by-design practices
- Drive vulnerability management , particularly across Kubernetes and container images
- Triage and validate vulnerabilities, including developing PoCs where appropriate
- Manage IAM and key management controls
- Support product security incident response, root-cause analysis and remediation
- Develop detection engineering capabilities, IDS/IPS rules and technical runbooks
- Monitor emerging threats and continuously improve security controls
- Work across engineering, security and compliance teams to drive security improvements
You'll ideally have:
- 7+ years' experience in Cybersecurity, Application Security or Security Engineering
- Hands-on experience with AWS, Azure or GCP
- Strong Kubernetes and Docker/container security knowledge
- Experience integrating SAST, DAST, SCA and security tooling into CI/CD
- Strong understanding of threat modelling, IAM, cryptography and application security
- Experience with Go and/or C# development
- Knowledge of HTTP, REST, TLS and TCP/IP
- Strong understanding of OWASP, NIST, ISO 27001 and CIS
- Excellent communication skills with the ability to work closely with developers and technical stakeholders
Experience with:
- Vulnerability research / exploit development
- Manual penetration testing
- Cloud, web, embedded or mobile security
- Splunk / OSQuery
- AI/ML security
- Distributed systems
- AWS Security Specialty, OSCP, CISSP, CCSP, CCAK or SANS/GIAC certifications
Why consider it?
You’ll join a global technology organisation developing mission-critical security and video technologies used to help protect people, property and communities worldwide.
You’ll have the opportunity to work at the intersection of:
Application Security | Cloud Security | Kubernetes | DevSecOps | Vulnerability Research | Product Security with strong career development, flexible working and an excellent benefits package.
#J-18808-Ljbffr

