Back to results · Manchester

Job verified 7 hours ago

Product Application Security Analyst

Robert Walters·Manchester (North West England)
£60 000 – £70 000 / year
Vox Summary
  • Role Focus: Act as a trusted security advisor across the product lifecycle, embedding security-by-design into application architectures and leading threat modelling and risk assessments.
  • Key Responsibilities: Advise on cloud-native security controls, conduct technical risk assessments on products and third-party vendors, and ensure compliance with standards like PCI-DSS, NIST, and OWASP.
  • Requirements: 6+ years in InfoSec or application security, strong knowledge of cloud environments (AWS, Azure, GCP), microservices, containers, CI/CD pipelines, and relevant certifications.
  • Conditions/Benefits: Non-hands-on, advisory role sitting alongside software delivery squads, with a focus on security governance and risk translation for engineering and business stakeholders.
Apply on sourceYou are leaving VoxJobs for reed.co.uk — the application is handled directly by the company. reed.co.uk

Job description

You'll act as a trusted security advisor to engineering communities across the entire product lifecycle. This is a non-hands-on, advisory and governance-focused role designed to embed "security-by-design" into modern monolithic and microservice application architectures. You'll lead threat modelling, conduct technical risk assessments, evaluate third-party SaaS vendors, and translate complex risk into pragmatic guidance for engineering squads and business stakeholders. Partnering with a major UK enterprise digital platform to bring in a Senior InfoSec Analyst into their Product Assurance team. This isn't a checkbox compliance job, nor is it an operational 2nd-line ticket handling role. You'll sit right alongside software delivery squads and product teams, acting as the technical security authority across monolithic and microservice application architectures. What the day-to-day looks like • Security by Design: Threat modelling (STRIDE/OWASP) and setting security requirements early in the SDLC alongside dev squads • Architectural Assurance: Advising engineering teams on cloud-native security controls, containerisation, and API gateway logic • Risk & Advisory: Conducting technical risk assessments on internal products and third-party SaaS vendors, turning technical flaws into clear risk recommendations • Framework Alignment: Ensuring applications comply with PCI-DSS, NIST, and OWASP standards without creating operational friction for developers What you'll bring • Experience: 6+ years in InfoSec, cybersecurity advisory, or application security • Tech Depth: Solid grasp of cloud environments (AWS, Azure, or GCP), microservices, containers (Docker/Kubernetes), and CI/CD pipelines (GitHub, Jenkins) • Stakeholder Influence: The ability to explain technical risk to product managers and challenge engineering decisions constructively • Certifications: Holding or actively working towards industry standards like CISSP, CCSP, CISM, CRISC, or Cloud Security Architect certs Robert Walters Operations Limited is an employment business and employment agency and welcomes applications from all candidates

Transparency panel

Original source
reed.co.uk
Posted
Jul 24, 2026 · true date
Last verified
7 hours ago
Quality score
65/100
Salary stated30
Company identified0
applyUrl0
postedAt15
Complete description20

Similar

Jobs like this one.

Barista

Costa Coffee
ManchesterOn-site
£13 – £14 / hour
Newvia reed.co.uk·8 hours ago65/100

Lift Service Engineer

Schindler UK & Ireland
ManchesterOn-site
Salary not stated
Newvia reed.co.uk·10 hours ago35/100

Liaison Administrator

Hays Specialist Recruitment Limited
ManchesterHybridtemp
£13 / hour
Newvia reed.co.uk·10 hours ago65/100

Something wrong with this listing? Report a fraudulent or outdated job