Hybrid Application Security Engineer: Secure Code & PenTesting

October 7, 2026
Urgent

Job Description

Barclay Simpson is partnering with a leading UK financial services organisation to hire an Application Security Engineer. You will focus on secure code reviews, SAST/DAST, vulnerability assessments and embedding security throughout the CI/CD lifecycle.

The role requires experience with OWASP Top 10, Veracode, DevSecOps, and cloud security across Azure/AWS, plus Kali Linux for manual testing. Hybrid work in London, Manchester or Glasgow with in-office presence 1 day per week.

Location