Application Security Engineer

London - Hybrid

New Day

At NewDay, our business is focused on a single, clear and defining purpose: to help people move forward with credit.

View all jobs at New Day

Apply now Apply later

Application Security Engineer, InfoSec 

Working at our iconic office in King’s Cross, London, and virtually via Microsoft Teams 

Your new role at NewDay  

We’re seeking an engineer who is enthusiastic about identifying and solving software security challenges to join our Application Security team.  

The team collaborates with product and engineering departments to ensure the secure provision of robust and resilient software on our platform. 

You’ll deliver  

  • Integrating security into our software development lifecycle and developing security automation tools 

  • Performing threat modeling to identify potential security threats and vulnerabilities in applications 

  • Performing static and dynamic code analysis to detect security vulnerabilities 

  • Security training and outreach, providing advice and guidance to our engineering colleagues. 

  • Assessing the risk associated with identified vulnerabilities and helping our engineering colleagues to prioritize remediation efforts 

What you’ll bring  

We need knowledge, experience + expertise in:   

  • Background in securing Web applications and APIs 

  • Understand how cloud-native platforms, serverless applications and microservices are built 

  • Familiar with Secure Software Development Lifecycle, and tooling such as SAST, DAST, Secrets Scanning 

  • You can model threats and review the security of systems design, identifying risks and issues 

And would love you to know or learn:  

  • Experience in FinTech, consumer lending, or card issuing 

  • Experience in one or more programming languages such as C#, .Net, Java, JavaScript/Typescript, Python 

  • Understands how to build, test, and deploy software at scale. 

  • Identity and Access Management– modern web-based methods of authentication, OIDC, OAuth 

  • Offensive Security - Hands-on experience of vulnerability assessments and penetration testing 

  • Knowledge of security and compliance frameworks and standards, e.g. OWASP, PCI-DSS, ISO 27001, GDPR 

  • Familiarity with Agile methodologies like SCRUM/Kanban Board 

Where next? Let’s talk about this role – Apply now 

About NewDay  

We help people move forward with credit and help our colleagues to move their careers forward too.  

We use our highly flexible, scalable, and multi-product digital credit engine to power over 120 million transactions every year. Our brands include Aqua, marbles, fluid and Bip. We partner with leading brands such as John Lewis, AO, Argos and DEKO.  

Over 5 million UK customers are supported by our award-winning customer service.  

At NewDay, we value all types of diversity. We’re an equal opportunity employer and believe that our differences create a vibrant, authentic working culture. We want all our colleagues to feel able to bring their whole selves to work. We don’t discriminate on the basis of age, physical or mental disability, gender reassignment, marriage and civil partnership, pregnancy and carer status, race (including colour, nationality, and ethnic or national origin), religion or belief, sex and sexual orientation. We make sure that every job is crafted to be inclusive and that people with disabilities or caring responsibilities can take part in the application and interview process. Tell us if you need accommodations: we’ll put reasonable adjustments in place to support you.  

Our dynamic NewDay culture  

We’re focused on what will drive impact in helping people move forward with credit. Our distinctive culture is geared to spark innovation and team working – with lots of open doors for development. Our customers can rely on us because we aim high, support each other, do the right thing and build for the future.  

We invest in our colleagues. On top of a strong market competitive salary, you get a bonus opportunity that matches the impact (delivery + values) you drive in your role. We also help you retire better with market leading pensions.  

At NewDay, #yourwellbeing matters: You get 26 days holiday and can buy up to 5 more after probation. Then you’ll get extra days as you build your career with us.  

NewWork, our flexible, hybrid working approach, helps you to manage your work/life balance - and even bolt on work time in other countries before or after your holiday. And when you’re in the office, you get free healthy breakfast, fresh juices, lunch, barista coffee etc.  

Our tax efficient green car and cycle to work schemes save you money (and help the planet).   

Ask your Talent Acquisition Partner to tell you more about any of our perks. 

We work with Textio to make our job design and hiring inclusive. 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  0  0

Tags: Agile APIs Application security Automation C Cloud Code analysis Compliance DAST FinTech GDPR IAM ISO 27001 Java JavaScript Kanban Microservices Offensive security OWASP Pentesting Python SAST Scrum SDLC TypeScript Vulnerabilities

Perks/benefits: Career development Competitive pay Flex hours

Region: Europe
Country: United Kingdom

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.