Negotiable
Undetermined
Remote
United Kingdom
Summary: The SecOps Engineer role is a contract position focused on enhancing application-layer security through expert-level secure code reviews and vulnerability remediation. The engineer will develop security automation tools and conduct penetration tests while advising development teams on secure coding practices. This remote role requires strong experience in software engineering or security operations, particularly in application-layer security. The position emphasizes staying informed about emerging threats and implementing best practices in security.
Key Responsibilities:
- Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control and SQL injection.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript.
- Conduct and document penetration tests, collaborating with teams to drive remediation initiatives.
- Advise development teams on secure coding practices to enhance security throughout the software lifecycle.
- Stay informed of emerging threats and incorporate best practices within the customer's environments.
Key Skills:
- Strong relevant experience in software engineering or security operations with a focus on application-layer security.
- Proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Expertise in secure code review and professional penetration testing.
- Strong familiarity with OWASP Top 10, CWE, and modern vulnerability classes.
- Proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
Salary (Rate): £100.00/hr
City: undetermined
Country: United Kingdom
Working Arrangements: remote
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Position: SecOps Engineer
Type: Contract
Compensation: $30-$100/hr
Location: Remote
Role Responsibilities
- Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control and SQL injection.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript.
- Conduct and document penetration tests, collaborating with teams to drive remediation initiatives.
- Advise development teams on secure coding practices to enhance security throughout the software lifecycle.
- Stay informed of emerging threats and incorporate best practices within the customer's environments.
Requirements
- Have strong relevant experience in software engineering or security operations with a focus on application-layer security.
- Demonstrate proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Have expertise in secure code review and professional penetration testing.
- Possess strong familiarity with OWASP Top 10, CWE, and modern vulnerability classes.
- Have a proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
Application Process
- Easy Apply on LinkedIn
- Check email for next steps
- Participate in resume evaluation & interview stage