368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$76k – $154k per year (Estimated)
Location
In office (Knutsford)
Employment
Full-Time
Overview
Company
Impact
Profile match
Barclays is a British multinational universal bank that provides a wide range of services, including retail banking, corporate and investment banking, and wealth management. Headquartered in London with a history spanning centuries, it operates as a major financial institution with a significant presence across the United Kingdom, Europe, the Americas, Africa, and Asia. The bank focuses on delivering comprehensive financial solutions and digital banking products to millions of individual and institutional clients globally.

Job Description

Purpose of the role

To identify potential vulnerabilities within the banks IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks.

Accountabilities

  • Development and execution of assessments, audits, and threat models to identify vulnerabilities within the banks systems, applications and servers using penetration tools and techniques, and communicate key findings and recommendations to stakeholders.
  • Collaboration with stakeholders and IT teams to identify emerging cyber-attack techniques, tools and technologies and to support the development of penetration testing methodologies.
  • Development and maintenance of comprehensive documents and reports for senior stakeholders on penetration test findings, and remediation guidance.
  • Collaboration with stakeholders to understand their security requirements and controls in business processes, application/services, to enhance overall security posture and assurance.
  • Identification of emerging vulnerabilities, exploit codes and cyber-attacks to develop testing methodologies and assurance activities.

Vice President Expectations

  • To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures..
  • If managing a team, they define jobs and responsibilities, planning for the department’s future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements..
  • If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others..
  • OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions..
  • Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment.
  • Manage and mitigate risks through assessment, in support of the control and governance agenda.
  • Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does.
  • Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business.
  • Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies.
  • Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions.
  • Adopt and include the outcomes of extensive research in problem solving processes.
  • Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.

Join us as a Application Security Specialist for Barclays, where you will play a critical role in safeguarding the bank’s technology landscape. You will lead hands-on analysis, delivery and continuous enhancement of Application Security and DevSecOps capabilities, bringing specialist experience in one or more of the following areas: SAST, SCA, DAST, API security and AI-assisted security testing. You will translate complex security-testing data into actionable risk insights, embed proportionate controls across the software development lifecycle, and partner with engineering, risk and governance stakeholders to improve control effectiveness, standards compliance and secure innovation.

To be successful as a Application Security Specialist, you should have experience in one or more of the following application security testing areas:

  • Operating and analysing results from one or more SAST, SCA or DAST tools, including tuning policies, validating findings, reducing false positives, assessing exploitability and guiding remediation
  • Assessing APIs using automated and manual techniques, with strong knowledge of authentication, authorisation, input validation and common API vulnerabilities
  • Applying secure coding and remediation practices in at least one development ecosystem, such as Java/Spring, .NET, Go, Python or JavaScript/TypeScript
  • Integrating application security testing into CI/CD pipelines, developer workflows and cloud-native environments, including containers, Kubernetes and infrastructure as code
  • Using data-analysis techniques and reporting tools to identify trends, prioritise risk, monitor remediation, and produce clear KRI/KCI dashboards and leadership insights
  • Leading technical analysis, defining testing strategies and providing authoritative challenge to engineering teams on complex application security risks

Some other highly valued skills may include:

  • Strong knowledge of cyber governance, security policies, control frameworks and standards, with the ability to interpret requirements, assess conformance, manage exceptions and support audit or regulatory evidence
  • Understanding of software supply chain security, dependency risk, secrets scanning, SBOMs and vulnerability management across the secure SDLC
  • Hands-on exposure to AI-assisted security testing and AI application security, including prompt injection, insecure output handling, model and agent risks, data leakage, human-in-the-loop validation and responsible use of AI-generated findings
  • Ability to communicate complex technical findings to senior stakeholders, influence remediation priorities and coach analysts and engineering teams

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills.

This role will be based in Knutsford.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Knutsford
$58k – $136k per year (Estimated) • Remote/Hybrid • Full-Time • Guadalajara
Bash
Node JS
Python
JavaScript
Python
FastAPI
Databases
RabbitMQ
Frontend
Next.js
React.js
DevOps
ArgoCD
AWS
CI/CD
Datadog
Docker
Git
GitHub
GitHub Actions
GitOps
Grafana
Helm
Jenkins
Karpenter
KEDA
Kubernetes
OpenTelemetry
Prometheus
Terraform
Apply
$169k – $253k per year • Equity • In office • Full-Time • 8+ years exp • Bachelor's Degree • Boulder
JavaScript
TypeScript
AI/ML
AI Agents
Frontend
GraphQL
React.js
DevOps
AWS
Azure
GCP
Google GKE
Helm
Kubernetes
Apply
$99k – $135k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Washington
JavaScript
TypeScript
DevOps
Azure
Azure DevOps
CI/CD
Management
Power Apps
Power Automate
QA
Playwright
Apply
$128k – $173k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • United States
JavaScript
Node JS
TypeScript
Frontend
React.js
DevOps
Amazon EC2
AWS
AWS CDK
AWS Lambda
CI/CD
GitHub Actions
Jenkins
Terraform
Amazon CloudWatch
Amazon S3
API Gateway
GitHub
GitLab
IAM
Apply
$16k – $34k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • Mumbai • Bengaluru
JavaScript
PowerShell
SQL
C#
C#
.NET
Databases
Azure SQL Database
MS SQL
DevOps
Azure
Rest API
Cybersecurity
Microsoft Entra ID
QA
Postman
Swagger
Apply
$155k per year • In office • Full-Time • New York
Apply
$150k per year • In office • Full-Time • New York
C++
Python
Apply
In office • Full-Time • Master's Degree • Chennai • Pune
Analytics
Tableau
Management
Power Apps
Apply
$16k – $60k per year (Estimated) • In office • Full-Time • PhD • Mumbai
Python
SQL
Python
pySpark
Databases
Presto
Snowflake
AI/ML
Dagster
Prefect
Spark
DevOps
Amazon S3
AWS
CI/CD
Analytics
ETL/ELT
Power BI
Tableau
Apply
In office • Full-Time • Bachelor's Degree • Gurgaon
C++
COBOL
Java
SQL
Apply
up to $130k per year • In office • Contractor • 10+ years exp • Knutsford
JavaScript
SQL
Node JS
Java
COBOL
Kotlin
Node JS
Axios
Java
Gradle
Hibernate
Maven
Spring Boot
COBOL
IBM MQ
Kotlin
Mockito
Databases
Apache Kafka
MS SQL
Frontend
npm
React.js
Redux
Mobile
JUnit
DevOps
CI/CD
GitLab
Jenkins
OpenShift
Cybersecurity
SonarQube
Veracode
Management
Confluence
QA
Rest-Assured
Apply
$39k – $89k per year (Estimated) • In office • Full-Time • Knutsford
SQL
Databases
MS SQL
Oracle
DevOps
AppDynamics
AWS
CI/CD
Kibana
GitLab
Apply
In office • Full-Time • Knutsford
Databases
IMS
DevOps
Incident Management
Apply
$134k – $145k per year • In office • Contractor • 10+ years exp • Bachelor's Degree • Knutsford
Bash
PowerShell
Python
DevOps
Ansible
AppDynamics
AWS
Azure
Datadog
Dynatrace
GCP
Incident Management
Splunk
Terraform
VMWare
Windows Server
Cybersecurity
HashiCorp Vault
Microsoft Sentinel
Cryptography
Vault
Management
Jira
ServiceNow
Apply
$130k – $235k per year (Estimated) • In office • Full-Time • Knutsford
DevOps
Platform Engineering
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.