cover image
Morson Edge (Technology)

Lead Application Security Consultant (AppSec)

Hybrid

London, United kingdom

£ 100 /hour

Senior

Full Time

16-03-2026

Share this job:

Skills

Communication Risk Management CI/CD Security Testing Architecture Autonomy Software Development Agile CI/CD Pipelines Microservices

Job Specifications

We are seeking a versatile and proactive Application Security Consultant to join a European banking organisation currently undergoing a significant technology transformation programme. As we modernise our technology stack, maintaining trust, resilience and strong security foundations is critical.

In this role you will act as the security lead within an application delivery team, supporting secure software development across a complex hybrid environment that includes modern web technologies, microservices, legacy platforms, and API‑driven architectures.

This is not a traditional advisory role. You will be embedded within delivery teams, working directly with engineers, product managers and technology leaders to solve real security challenges while enabling teams to deliver at pace.

The Role

A key focus will be helping uplift application security practices to ensure development teams can deliver secure and scalable software quickly. You will help operate and improve secure change processes while contributing to the evolution of the organisation’s application security assurance model.

Your work will include developing and enhancing:

Secure development practices
Security metrics and reporting
Security controls and assurance processes
Automation within CI/CD pipelines
Templates, tooling and workflows to support secure delivery

Key Responsibilities

Security Integration within Delivery

Act as the embedded security lead within a technology delivery team
Participate in agile ceremonies including stand‑ups, planning sessions and technical working groups
Work closely with developers and architects to integrate security into the software development lifecycle

Application Security Assurance

Support secure coding practices, threat modelling, and security testing across applications and APIs
Assist in implementing and optimising automated security testing such as SAST and DAST

Risk & Control Assessments

Conduct security reviews, risk assessments and control evaluations for new technology initiatives
Support supplier security due diligence and privacy impact assessments where required
Document risks and help teams define practical mitigation plans

Security Advisory

Provide pragmatic security guidance aligned to industry best practice and regulatory expectations
Support delivery teams in interpreting security policies and applying them in real-world scenarios

Stakeholder Engagement

Build strong working relationships with developers, product owners, delivery managers and architects
Promote a culture of shared security ownership across engineering and business teams

What We’re Looking For

We are looking for someone who combines technical application security knowledge with strong collaboration skills and a pragmatic delivery mindset.

You may bring experience such as:

Application security within modern development environments
Integrating security controls into software development lifecycles and CI/CD pipelines
Security testing techniques including static and dynamic analysis
Threat modelling and secure architecture practices
Security risk assessments across applications, APIs and platforms
Cloud or distributed system security concepts
Working with development teams to embed security into engineering processes

Equally important:

Strong communication skills with the ability to explain security risks clearly
A collaborative approach to working with engineering teams
A pragmatic mindset focused on enabling secure delivery
Awareness of risk management practices within regulated environments

Why Join

This is an opportunity to play a hands‑on role in shaping the security posture of critical banking systems while working alongside engineering teams delivering large‑scale technology change.

You will have the autonomy to solve complex problems, influence secure development practices, and help build security into the organisation’s future technology platforms.

About the Company

Formerly InterQuest Group. Digital progress depends on people. We find them. Morson Edge (Technology) connects ambitious organisations with the talent that makes transformation real. From fintech and data to cloud, software and cyber, we deliver specialists who turn complexity into clarity. We make systems smarter. We make change faster. We make innovation work. Our people bring foresight as well as expertise, helping businesses stay resilient in an industry that never stands still. Part of Morson Group, we work with Praxis ... Know more