Senior Software Security Engineer
About Copello Global
Senior Software Security Engineer
Senior Software Cybersecurity Engineer - Uxbridge or Edinburgh (Hybrid)Are you a Senior Cybersecurity Engineer with strong AppSec, DevSecOps, Cloud and Kubernetes experience?
I'm currently working on an exciting opportunity, supporting the Avigilon security team in protecting the software, cloud platforms and intellectual property behind their physical and video security solutions.
This is a hands-on role where you'll work closely with software engineering teams to identify vulnerabilities, improve security throughout the SDLC and build secure-by-design solutions.
What you'll be doing
Conduct threat modelling, risk assessments and security architecture reviews
Assess security across cloud and Kubernetes/container environments
Embed SAST, DAST, SCA, SBOM and secret scanning into CI/CD pipelines
Perform security code reviews and provide secure coding guidance
Define security requirements and support engineering teams with secure-by-design practices
Drive vulnerability management, particularly across Kubernetes and container images
Triage and validate vulnerabilities, including developing PoCs where appropriate
Manage IAM and key management controls
Support product security incident response, root-cause analysis and remediation
Develop detection engineering capabilities, IDS/IPS rules and technical runbooks
Monitor emerging threats and continuously improve security controls
Work across engineering, security and compliance teams to drive security improvements
You'll ideally have:
7+ years' experience in Cybersecurity, Application Security or Security Engineering
Hands-on experience with AWS, Azure or GCP
Strong Kubernetes and Docker/container security knowledge
Experience integrating SAST, DAST, SCA and security tooling into CI/CD
Strong understanding of threat modelling, IAM, cryptography and application security
Experience with Go and/or C# development
Knowledge of HTTP, REST, TLS and TCP/IP
Strong understanding of OWASP, NIST, ISO 27001 and CIS
Excellent communication skills with the ability to work closely with developers and technical stakeholders
Experience with:
Vulnerability research / exploit development
Manual penetration testing
Cloud, web, embedded or mobile security
Splunk / OSQuery
AI/ML security
Distributed systems
AWS Security Specialty, OSCP, CISSP, CCSP, CCAK or SANS/GIAC certifications
Why consider it?
You’ll join a global technology organisation developing mission-critical security and video technologies used to help protect people, property and communities worldwide.
You’ll have the opportunity to work at the intersection of:
Application Security | Cloud Security | Kubernetes | DevSecOps | Vulnerability Research | Product Security with strong career development, flexible working and an excellent benefits package.
#J-18808-Ljbffr