NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Security Engineer in United Kingdom
4 months ago
Apply with autofill
Apply with autofill
Umusic·4 months ago
4 months ago

Tech Security Engineer

Sydney, United KingdomMid · 2-5 yearsSecurity Engineer

Sign up free to see how well your resume matches this role.

Boost your chances at umusic

How you compare FREE

?
Your scoreYour score: not yet known
→
43
Top 10%Top 10%: 43 out of 100

Top 10% of NextRaise users matched against Security Engineer roles in United Kingdom.

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

About this role

Job Summary 

We are currently seeking a Tech Security Engineer to join UMG’s global Tech Security & Identity organization. Reporting to the IT Security Manager, this role is a hands-on engineering position focused on improving the security posture of UMG’s applications, platforms, and cloud environments.��

This engineer will play a critical role in embedding security into the software development lifecycle by performing application security assessments, supporting vulnerability management, and partnering with engineering teams to remediate risk. While this role spans multiple areas of security engineering, it has a strong emphasis on application and product security, including secure design, code review, and modern web security practices. 

The ideal candidate brings a solid foundation in application security and software development, combined with experience in cloud environments and modern security tooling. This role requires both technical depth and the ability to collaborate effectively across engineering, infrastructure, and security teams. 

 

Job Functions 

  • Perform application security reviews including design reviews, threat modeling, and code analysis to identify and mitigate security risks.  

  • Conduct static and dynamic security testing (SAST/DAST), manual testing, and vulnerability assessments across web applications and APIs.  

  • Partner with engineering teams to remediate vulnerabilities and implement secure coding practices.  

  • Support secure software development lifecycle (SDLC) practices and integrate security tooling into CI/CD pipelines.  

  • Identify, track, and support remediation of vulnerabilities across applications and services in coordination with vulnerability management teams.  

  • Evaluate and implement security tools and platforms (e.g., SAST, DAST, API security, secrets scanning).  

  • Provide guidance on authentication, authorization, and secure integration patterns, including SSO and federation.  

  • Support cloud security efforts across AWS, Azure, or GCP environments, including application-layer controls.  

  • Assist with security reviews of new applications, services, and third-party integrations.  

  • Develop automation and tooling to improve security testing, vulnerability detection, and remediation workflows.  

  • Maintain documentation, standards, and best practices related to application and software security.  

  • Stay current with emerging threats, vulnerabilities, and industry best practices, and apply them to improve UMG’s security posture.  

  • Advocate for secure development practices and contribute to building a strong security culture across engineering teams.  

 

Job Requirements 

Essential Qualifications 

  • 3–6 years of experience in Security Engineering, Application Security, or Software Engineering.  

  • Strong understanding of application security concepts, including OWASP Top 10 and common web vulnerabilities.  

  • Experience with web technologies, APIs, and modern application architectures.  

  • Hands-on experience with security testing tools (e.g., Burp Suite, OWASP ZAP, Snyk, Checkmarx, Veracode, or similar).  

  • Experience with authentication and federation protocols (e.g., SAML, OAuth 2.0, OpenID Connect).  

  • Familiarity with at least one programming or scripting language (e.g., Python, JavaScript, Java, or similar).  

  • Experience working in cloud environments (AWS, Azure, or GCP).  

  • Strong analytical and problem-solving skills with the ability to assess and communicate risk.  

  • Ability to work collaboratively with engineering teams to drive remediation and improve security outcomes.  

 

Desirable Qualifications 

  • Experience integrating security into CI/CD pipelines and DevOps workflows.  

  • Familiarity with containerization and cloud-native technologies (Docker, Kubernetes).  

  • Exposure to IAM concepts such as SSO, identity federation, and access control models.  

  • Understanding of security frameworks and standards (e.g., OWASP ASVS, NIST, ISO 27001).  

  • Relevant certifications such as Security+, CEH, CSSLP, or similar.  

  • Experience in large-scale, global, or regulated enterprise environments. 

 


Job Category:

Technology

Company

Umusic
Sydney, United Kingdom

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Umusic's careers site·first seen 22 Jun 2026·last verified 8 Sept 2026·How we source jobs

Similar jobs

  • Senior Security Engineer at capcoLondon, United Kingdom–match not yet calculated
  • Principal Security Engineer at capcoLondon, United Kingdom–match not yet calculated
  • Staff Security Engineer, Abuse Control at StripeLondon, United Kingdom–match not yet calculated
  • Security Engineer (Contractor) at gdmsiBlackwood, United Kingdom–match not yet calculated
  • Senior Security Engineer, AWS Security Verification & Validation Team at Amazon{"normalizedCountryCode":"GBR", United Kingdom–match not yet calculated

Browse more jobs

  • Security Engineer jobs in United Kingdom
  • Security Analyst jobs in United Kingdom
  • Penetration Tester jobs in United Kingdom
  • Cloud Security Engineer jobs in United Kingdom
  • Security Engineer jobs in United States
  • Security Engineer jobs in India