Senior Application Security Engineer

🔥 1 hour ago

🇬🇧 United Kingdom – Remote

⏰ Full Time

🟠 Senior

💻 Application Engineer

🇬🇧 UK Skilled Worker Visa Sponsor

info
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Prolific

Prolific

51 - 200 employees

Founded 2014

🤝 B2B

AI • B2B • Research

Prolific is a platform that facilitates fast and high-quality data collection by connecting researchers with participants, including AI taskers. Researchers can launch tasks, surveys, and experiments and receive responses from a global community of over 200,000 active participants within hours. Prolific prides itself on providing accurate and detailed data while ensuring that participants are fairly rewarded for their contributions. The platform is trusted by leading academics and organizations for its flexibility, simplicity, and rapid project execution.

📋 Description

• Help secure Prolific’s applications end-to-end, from hands-on testing and code review to threat modeling and CI/CD security. • Partner closely with engineers to identify and fix vulnerabilities, build and tune security tooling, and embed secure development practices across the SDLC. • Run penetration tests, improve detection coverage, and stay ahead of emerging threats to continuously strengthen our security posture.

🎯 Requirements

• Several years in application/product security and a background in software engineering • Strong knowledge of OWASP Top 10 (Web & API) and modern attack paths (e.g. auth flaws, SSRF, injection, business logic abuse, supply chain) • Experience working with complex, large-scale systems and modern architectures • Hands-on security testing experience (especially Burp Suite) across web apps and APIs • Python for security tooling, automation, or custom detection (Django a plus) • Experience implementing and tuning SAST, SCA, DAST, and secret scanning in CI/CD • Practical threat modelling experience, including leading lightweight sessions • Strong collaboration skills, able to clearly explain issues and drive remediation • Builder mindset, you automate wherever possible • Nice to haves: Experience with Django, Vue.js, MongoDB, GCP, Security champions or bug bounty programmes, Supply chain security (SCA, SBOMs, dependency review), IaC security (e.g. Terraform, policy-as-code), Hands-on certifications (OSCP, GWAPT, BSCP), Experience in scaling environments building out security practices

🏖️ Benefits

• Competitive salary • Flexible working hours • Professional development budget • Home office setup allowance • Global team events

Apply Now

Similar Jobs

🔥 12 hours ago

Canadian Solar Inc.

10,000+ employees

⚡ Energy

Applications Engineer at e-STORAGE, a subsidiary of Canadian Solar, designing energy storage systems for renewable energy transition. Collaborating with global teams and enhancing project efficiency.

🔥 15 hours ago

Canadian Solar Inc.

10,000+ employees

⚡ Energy

Applications Engineer at Canadian Solar developing solar energy solutions. Collaborating with teams to ensure performance and providing technical support for projects.

🕒 June 26

Barry-Wehmiller

10,000+ employees

Controls Engineer at BW Packaging defining automation solutions for packaging systems and collaborating with teams on technical definitions. Develop layout drawings and validate estimating inputs for proposals.

Assembly

🕒 June 16

Yelp

1001 - 5000

Application Security Engineer ensuring security is woven into every stage of development at Yelp. Collaborating with engineering teams to build secure systems across platforms.

🕒 June 9

Synthesia

501 - 1000

🤖 Artificial Intelligence

☁️ SaaS

🤝 B2B

Engineering Manager leading the AppSec team at Synthesia's AI video platform. Focusing on security tooling and strategy in a high-growth environment.