Senior Application Security Engineer
P
ProlificAI Data Infrastructure
Remote, UKFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- Several years in application/product security and a background in software engineering
- Required Skills
- PythonCI/CDSoftware Engineering
Requirements
- Several years of experience in application/product security.
- Strong background in software engineering.
- Deep knowledge of OWASP Top 10 (Web & API) and modern attack paths such as authentication flaws, SSRF, injection, and business logic abuse.
- Hands-on security testing experience across web applications and APIs, specifically using Burp Suite.
- Proficiency in Python for security tooling, automation, or custom detection.
- Experience implementing and tuning SAST, SCA, DAST, and secret scanning within CI/CD pipelines.
- Practical threat modeling experience, including leading sessions.
- Ability to work with complex, large-scale systems and modern architectures.
- Strong collaboration skills with the ability to explain technical security issues and drive remediation.
- Builder mindset with a focus on automation.
Responsibilities
- Secure Prolific’s applications end-to-end, from hands-on testing and code review to threat modeling and CI/CD security.
- Partner closely with engineers to identify and remediate vulnerabilities in the codebase.
- Build, implement, and tune security tooling including SAST, SCA, DAST, and secret scanning.
- Embed secure development practices across the entire software development lifecycle (SDLC).
- Run penetration tests and improve security detection coverage.
- Perform threat modeling for new features and lead lightweight sessions.
- Stay ahead of emerging threats to continuously strengthen the company's security posture.
View Full Description & ApplyYou'll be redirected to the employer's site