Insight Investment

Application Security Specialist (Manchester)

Insight Investment  •  Manchester, GB (Onsite)  •  2 months ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Insight Investment is looking for an Application Security Specialist to join our Cyber Security team in Manchester. This role focuses on embedding security into the software development lifecycle and driving DevSecOps practices across engineering teams. The ideal candidate will have a strong technical background in application security, secure coding, and automation within CI/CD pipelines.

Role Responsibilities

  • Collaborate with development, DevOps, and architecture teams to integrate security into the SDLC
  • Design and implement secure coding practices and threat modelling processes
  • Lead the integration of security tools into CI/CD pipelines (e.g., SAST, DAST, SCA, IAST)
  • Conduct security assessments of applications, APIs, and microservices
  • Develop and maintain security standards, guidelines, and automation scripts
  • Provide guidance on secure design patterns and architecture decisions
  • Promote a DevSecOps culture and continuous security improvement across development and architecture team

Experience Required

  • Strong understanding of application security principles (e.g., OWASP Top 10, CWE).
  • Experience with secure coding in languages such as Java, Python, JavaScript, or .NET. (.NET and Python are preferable)
  • Hands-on experience with one of each or more security tools:
  • Static Analysis (SAST): Veracode (preferable), Checkmarx, Fortify, etc.
  • Dynamic Analysis (DAST): Veracode (preferable), Burp Suite, OWASP ZAP, etc.
  • Software Composition Analysis (SCA): Veracode (preferable), Snyk, Black Duck, etc.
  • Container Security: Aqua Security (preferable), Prisma Cloud, etc.
  • Familiarity with CI/CD tools (e.g., Github Actions, Teamcity, Octopus, Azure DevOps)
  • Knowledge of containerised environments and their security best practices (Docker, Kubernetes)
  • Knowledge of cloud security (Azure) and infrastructure-as-code (Terraform, CloudFormation)
  • (Preferable) Experience with threat modeling tools (e.g., Threat Dragon, IriusRisk)

Insight is committed to being an inclusive employer and encourages applications from all suitably qualified applicants irrespective of background, circumstances, age, disability, gender identity, ethnicity, religion or belief and sexual orientation. If you are a candidate with a disability, or are assisting a candidate with a disability, and require an accommodation to apply for one of our jobs, please email us at TalentAcquisition@InsightInvestment.com

About Insight Investment

Insight Investment is a leading asset manager focused on designing investment solutions to meet its clients' needs. Founded in 2002, Insight's collaborative approach has delivered both investment performance and growth in assets under management. Insight manages assets across its core liability-driven investment, risk management, full-spectrum fixed income, currency and absolute return capabilities. Insight has a global network of operations in the UK, Ireland, Germany, US, Japan and Australia. More information about Insight Investment can be found at: https://www.insightinvestment.com/corporate/

Insight Investment

About Insight Investment

Insight* is one of Europe’s largest investment managers** responsible for £626.2bn/€757.3bn*** in assets under management (AUM) across fixed income, risk management strategies including liability-driven investment (LDI) and currency risk management, absolute return and multi-asset capabilities. Based in London, Insight is a specialist asset manager with a global network of operations in the UK, Ireland, Germany, US, Japan and Australia. Our clients include pension funds, corporates, local authorities, insurers, sovereign wealth funds, wealth managers, financial institutions and supranationals.

Insight's mission is to offer investors a different approach to achieving their investment goals; one that prioritises the certainty of meeting their chosen objectives in contrast to the traditional focus on maximising return and minimising volatility.

Read our mission statement here: www.insightinvestment.com/uk/introducing-insight/our-mission-statement/

We believe responsible investment means helping our clients achieve their desired outcomes and reflecting their priorities. We aim to identify, assess and manage factors that we deem to be financially material, while also reflecting our clients’ sustainability preferences. We were a founding signatory to the UN-supported Principles for Responsible Investment (PRI) in 2006.

For more on Insight’s approach to responsible investment, visit https://www.insightinvestment.com/investing-responsibly

Posts are intended for UK/EU professional investors only. Capital at risk.

*Insight is the corporate brand for certain companies operated by Insight Investment Management Limited (IIML).

**IPE, ‘Top 500 Asset Managers’ survey, June 2024. Insight is ranked fifth out of the top 120 European institutional managers by total AUM for external Europe-domiciled institutional clients.

***As at 31 December 2024. AUM are represented by the value of cash securities and other economic exposure managed for clients.

Industry
Finance & Insurance
Company Size
1,001-5,000 employees
Headquarters
London, GB
Year Founded
Unknown
Social Media