Jobs / United Kingdom / Brunswickgroup

Lead Application Security Engineer

Brunswickgroup · 🇬🇧 London

Sponsorship verdict

No sponsorship evidence yet

No government record and no wording either way. Not a refusal — ask the recruiter.

  • No government sponsor record hereThis employer posted directly and does not match a government sponsor register.
  • The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
  • Can’t check pay against the visa rulesNo salary stated. UK Skilled Worker visa needs at least £41,700 a year (new-entrant (under 26, recent Student/Graduate visa) or STEM PhD: £33,400). Source: https://www.gov.uk/skilled-worker-visa/when-you-can-be-paid-less, rules effective 2025-07-22.
  • Confirmed live todayWhen a source last listed this job as open.

A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.

Start free →

Or apply yourself on the official page →

Why not apply?

Sponsorship unknown

No register record and no sponsorship wording in the posting. Worth asking the employer before investing significant time.

SponsorApply flags time-wasters so your applications go where they can land. These come from the posting's own wording — read the original listing to confirm. See better-fit alternatives →

Sponsor Radar — Brunswickgroup

Employer-posted — not on a register

This employer posted directly and does not match a government sponsor register.

Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for Brunswickgroup →

About the role

Opportunity The Lead Application Security Engineer will join Brunswick's Information Security team and play a key role in shaping how the firm embeds security into application design, development, deployment, and technology change. This is a senior individual contributor role initially, with scope to help establish and mature Brunswick's application security capability over time. The role will focus on providing risk-based security advice and assurance across internally developed applications, enterprise platforms, integrations, cloud services, SaaS solutions, and selected AI-enabled workstreams. Working closely with ICT, AI Engineering, application owners, and business stakeholders, the Lead Application Security Engineer will help define practical security standards, guardrails, review processes, and secure design patterns that enable delivery teams to move at pace while managing risk appropriately. About the Role In this role, you will provide senior application security and DevSecOps expertise across technology projects, design reviews, cloud-based applications, APIs, integrations, delivery pipelines, and selected AI-enabled solutions. You will act as a senior security advisor to technical and business teams, helping establish a repeatable application security model that can scale as demand grows, including the potential introduction of additional team members in the future. Key responsibilities include: • Lead the development of Brunswick's application security capability, including standards, secure design patterns, review processes, and practical guardrails. • Act as a senior security advisor to ICT, AI Engineering, application owners, and business stakeholders. • Review and assess application designs, architecture decisions, APIs, integrations, cloud services, and deployment patterns to identify security risks early in the delivery lifecycle. • Mature repeatable approaches for application security reviews, threat modelling, and risk-based assurance across new and changed solutions. • Provide guidance and oversight on secure development lifecycle practices, including security requirements, design review, code and security review considerations, dependency management, secrets management, testing, and release assurance. • Conduct threat modelling for internally developed applications, AI-enabled workflows, integrations, automation use cases, and higher-risk technology changes, using STRIDE or similar methodologies. • Advise on secure design principles, including identity and access management, API security, data protection, encryption, logging, monitoring, resilience, secure configuration, and least privilege. • Support security review of CI/CD pipelines, infrastructure as code, containerised workloads, and cloud infrastructure, identifying practical controls for engineering and platform teams. • Review and assess third-party platforms, SaaS solutions, and new technology features, including AI-enabled tools where there are material application, integration, or data security considerations. • Support the development and application of secure patterns and guardrails for emerging technology adoption, including AI-enabled solutions, agents, and automation where relevant. • Support security assurance activities, including penetration testing, application security testing, remediation tracking, and ensuring appropriate logging, monitoring, and response considerations are built into new solutions. • Define and document security requirements, architecture decisions, design recommendations, and risk-based remediation actions. • Support the future growth of the application security function, including helping define ways of working, capability needs, and technical guidance for future team members as the function matu

View the official posting →

Source: Arbeitnow feed First seen: 2026-10-06 Last confirmed: 2026-10-06 How our data works → Report this job

Similar opportunities