Application Security Lead
Brighton, United Kingdom
Technology – Information Security /
Full-time /
Hybrid
The main purpose of the Application Security Manager at Accurate Background is to be the subject matter expert on application security testing, providing security oversight, best practices, and helping integrate security into Accurate’s system development lifecycle. This role reports to the Director of Global Security.
Job Duties
- Manage and provide leadership to a team of security engineers, including hiring, training and performance management.
- Collaborate with Development & DevOps engineers to evaluate and operationalize security tools integrated in development environments.
- Collaborate with product managers, scrum masters, and application development to identify and inject security requirements into Acceptance Criteria of epics/ stories.
- Provide subject matter expertise on secure coding practice relating to SDLC, assist in building and rolling out related guidelines and standards, Conduct code scanning, including Static Application Security Testing (SAST), Software Composition Analysis (SCA), Software Composition Scanning (SCS), Infrastructure as Code (IaC), Dynamic Application Security Testing (DAST) and perform manual source code reviews for high-risk components.
- Research and monitor emerging threats and vulnerabilities, understand current industry and technology trends and opportunities, and assess their impact to applications and the business. Drive Risk Management and Security Compliance within the AppSec environment.
- Participate in a review board to address false positives and provide application security governance.
- Create documentation for application security metrics, policies, procedures, standards, guidelines and training.
Required Qualifications
- High level of expertise in Application development and security acquired through educational qualifications in computer science, Cyber Security or related field and a minimum of 4 years of relevant experience.
- A proven track record in providing expertise and guidance in developing cloud hosted applications with focus on security on C#, Java, Python, .Net, MongoDB, SQL Server, Oracle etc
- Strong understanding of various computing systems including Cloud architecture (AWS/Azure/GCP)
- Detailed knowledge of operating security tools such as SAST, SCA and DAST and - supporting teams to use them in the most effective ways.
- Strong working knowledge of various information technologies including user authentication, authorization pattern and components including knowledge of MFA mechanisms and configuration. Good awareness of industry best practices
- Data analysis, metrics development and reporting
- Experience with working in a highly outsourced environment (both infrastructure outsourcing and security operations outsourcing)
Preferred Qualifications
- CISSP, ISO 27001, CASE or relevant certifications
- CISSP, CASEor relevant certifications
- Experience with working in a highly outsourced environment (both infrastructure outsourcing and security operations outsourcing)
- Demonstrated ability to take initiative and accountability for achieving results.
- Effective communication skills with technical and non-technical staff
Working Conditions
- This position is a remote position based in the United Kingdom with occasional travel required for team meetings, training, or conferences etc.
- The Application Security Manager may be required to work flexible hours to accommodate different time zones or urgent situations.
Please note that the above job description represents a general overview of the responsibilities and requirements for this position at Accurate Background. Duties and qualifications may vary based on specific business needs and organizational changes.
£60,700 - £91,150 a year
The annual base salary for this position ranges from £60,700 - £91,150. Pay will vary depending on job-related knowledge, skills, experience, and relevant education and training. This position may also be eligible for an annual performance-based bonus, commission, or other variable pay plan. The Company also offers a full range of benefits, including medical, dental, and 401k. Your recruiter can share more details about the specific compensation package during the hiring process.
Accurate recognizes the positive value of diversity, promotes equality and challenges discrimination. We welcome and encourage job applications from people of all backgrounds. We have made a positive commitment to employing disabled people and guarantee to interview all disabled candidates who meet the minimum essential criteria for the role.
A basic criminal record check with DBS will be required for all successful applicants, having a criminal record will not necessarily bar you from working with us. This will depend on the nature of the position and the circumstances of your offences.