Senior AppSec Automation Engineer - Remote

Senior AppSec Automation Engineer - Remote

Posted Today by RiverSafe

Negotiable
Undetermined
Remote
United Kingdom

Summary: The Senior AppSec Automation Engineer role focuses on the hands-on delivery of application security tooling integration within a complex enterprise environment. The position involves automating the onboarding of applications and teams onto AppSec platforms, developing integrations with existing engineering tools, and managing data migration and reporting transitions. The ideal candidate will have strong automation skills and experience with various AppSec tools and CI/CD pipelines.

Key Responsibilities:

  • Design, build, and run automation to onboard applications and teams onto AppSec tooling
  • Develop and maintain integrations across CI/CD, source control, and ticketing systems
  • Plan and execute data migration from incumbent tooling
  • Transition reporting, dashboards, and metrics onto new tooling
  • Document automation, integration patterns, and migration runbooks for a clean handover

Key Skills:

  • Strong hands-on experience automating AppSec tooling (SAST, DAST, SCA, secrets scanning)
  • Proficiency in scripting and automation with Python, Bash, or PowerShell
  • Proven experience building API-based integrations between security and engineering tools
  • Demonstrable experience migrating data between platforms
  • Working knowledge of CI/CD pipelines such as Jenkins, GitLab CI, GitHub Actions, or Azure DevOps
  • Experience with platforms like Checkmarx, Veracode, Snyk, or Black Duck, and familiarity with ASPM tooling would be an advantage

Salary (Rate): undetermined

City: undetermined

Country: United Kingdom

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

The Role A hands-on, delivery-focused engagement to accelerate the rollout and integration of application security tooling across a complex enterprise estate. You will automate how applications and teams are onboarded onto AppSec platforms, build the integrations that connect them to the wider engineering toolchain, migrate data from incumbent tooling, and transition reporting onto the new platforms with no loss of continuity.

Design, build, and run automation to onboard applications and teams onto AppSec tooling Develop and maintain integrations across CI/CD, source control, and ticketing systems Plan and execute data migration from incumbent tooling Transition reporting, dashboards, and metrics onto new tooling Document automation, integration patterns, and migration runbooks for a clean handover

Skills Strong hands-on experience automating AppSec tooling (SAST, DAST, SCA, secrets scanning) Proficiency in scripting and automation with Python, Bash, or PowerShell Proven experience building API-based integrations between security and engineering tools Demonstrable experience migrating data between platforms Working knowledge of CI/CD pipelines such as Jenkins, GitLab CI, GitHub Actions, or Azure DevOps Experience with platforms like Checkmarx, Veracode, Snyk, or Black Duck, and familiarity with ASPM tooling, would be an advantage.