Назад
Company hidden
4 дня назад

Senior Software Engineer (Application Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Software Engineer (Application Security) (CI/CD, Cloud, Vulnerability Management): Building and maintaining security automation, CI/CD pipelines, backend services, APIs, and vulnerability-processing workflows across Avaloq’s software delivery lifecycle with an accent on application security, container scanning, and cloud-native environments. Focus on integrating security tooling, assessing vulnerabilities and exploitability, and developing actionable reporting for remediation and compliance.

Location: Edinburgh, Scotland, United Kingdom; hybrid and flexible working available.

Company

hirify.global provides wealth management technology and services for financial institutions, including private banks, investment managers, retail banks, and neo banks.

What you will do

  • Design, implement, and maintain internal CI/CD pipelines and automation tooling for vulnerability management, security assurance, reporting, and software delivery.
  • Develop security integrations for source-code, repository, dependency, and container scanning across the software delivery lifecycle.
  • Build and maintain backend services and REST APIs for security scanning, vulnerability analysis, event processing, reporting, and internal platform integration.
  • Monitor automated build and security validation processes, investigate findings and false positives, assess exploitability and risk, and support remediation.
  • Develop vulnerability-processing workflows, issue-management integrations such as Jira, and dashboards covering remediation status, security risks, and compliance.
  • Coordinate security actions across teams and contribute to technical discussions on secure software development and continuous improvement.

Requirements

  • University degree in Information Technology, Computer Science, Mathematics, Physics, or a related technical discipline.
  • Senior-level software engineering experience with CI/CD pipelines, developer tooling, automation platforms, and service integration.
  • Hands-on experience with several of Java, Spring Boot, Python, JavaScript, TypeScript, Gradle, Jenkins, Groovy, REST APIs, event-driven architectures, and messaging technologies.
  • Practical experience with Docker and Kubernetes and/or OpenShift, containerized applications, and container orchestration.
  • Strong understanding of application security, secure software development, security standards, vulnerability management, security scanning, and automated security testing.
  • Ability to analyse complex technical and security topics, communicate them clearly to non-technical stakeholders, and collaborate across teams.

Nice to have

  • Knowledge and practical experience with Oracle Cloud Infrastructure and cloud-native technologies.
  • Experience with software composition analysis, source-code security scanning, container security, and vulnerability lifecycle management.
  • Experience or exposure to financial markets and financial products.

Culture & Benefits

  • Hybrid and flexible working designed to support work-life balance.
  • International environment with colleagues and clients across multiple countries.
  • Collaborative and supportive workplace focused on diversity, inclusion, and equal opportunity.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →