955,510open jobs
57,746companies
157,915added this week
Browse all
Salary
$170k – $227k per year
Location
Remote (United Kingdom)
Seniority
Senior · 5+ years exp

Confirmed on the employer's own hiring board on Sep 29, 2026. First seen by Alion on Feb 20, 2026. Salt scores C on the Alion truth index.

Overview
Company
Impact
Profile match
Founded in 2009, Salt is a global digital talent, recruitment, and workforce consultancy specializing in technology, creative, marketing, and sales staffing. Headquartered in London, United Kingdom - with an international network of offices spanning North America, Europe, Asia-Pacific, and Latin America - the agency serves fast-scaling startups, mid-market companies, and multinational enterprises. Through its permanent and contract recruitment models, recruitment process outsourcing (RPO), nearshore/offshore talent delivery (Salt: Labs), and strategic HR advisory services, it enables organizations to build, scale, and manage high-performing teams across AI, technology, and digital transformation initiatives.

Back to all jobs

Applications are now closed.

Application Security & Controls Specialist (DORA Programme)

Ref: JO-2602-359338

  • Environment:

    Hybrid

  • Contract Type:

    Contract

  • Starts:

    ASAP

Senior Application Security & Controls Specialist (DORA Programme) - Banking Client - Brussels / Paris

Duration: 1 year contract

Rate: Flexible

Hybrid Working - 8 days onsite per month in the Paris or Brussels office, the rest is remote working

About the Role:

We are looking for an experienced and dynamic Senior Security Analyst to support DORA transformation through the design, implementation, and embedding of new transversal security controls across the organization.

In this role, you will contribute to the definition, rollout, and continuous improvement of security capabilities in domains such as software supply chain security, SBOM management, security code review, data classification, database encryption, cryptography policy implementation, and code integrity management.

To achieve this, you will work closely with multi-functional teams across the organization and will be exposed to a diversified set of topics, business areas, and technologies.

Your responsibilities:

  • Embedding & Operationalisation of new security controls
    • Work with IT, Engineering, Architecture, and CISO teams to integrate new controls into existing processes, tools, and platforms.
    • Support teams in understanding threats, risks, and compliance expectations related to software supply chain, cryptography, and application security.
    • Identify gaps between current capabilities and new DORA requirements and provide clear, actionable remediation recommendations.
    • Contribute to the rollout, adoption, and continuous improvement of newly introduced security controls.
  • Security Advisory
    • Perform targeted security assessments on applications, processes, and technical components to evaluate compliance with the new security controls.
    • Map system architectures, technology stacks, and data flows to validate control applicability.
    • Provide expert-level advisory on secure implementation across different environments (on-prem, mainframe, cloud).
    • Collaborate closely with architects, engineers, developers, risk teams, and control owners to support remediation plans and technical decisions.

Experience

  • 5-10 years of hands-on experience in designing or implementing information security controls, frameworks, or processes.
  • Proven experience in security risk assessment, application security, or security governance.
  • Strong expertise in at least several of the following areas:
    • Software Supply Chain Security
    • SBOM management
    • Code integrity and build pipeline security
    • SAST / DAST / code analysis / ASPM (Application Security Posture Management)
    • Data classification
    • Database encryption & key management
    • Cryptography governance & implementation
  • Solid knowledge of cybersecurity frameworks (ISO 27001, CIS, NIST, DORA)
  • Good understanding of financial-sector IT security regulatory requirements, especially DORA, ESMA, and outsourcing regulation is a plus.
  • Fluency in English.
  • Certification such as CISSP, CSSLP, CCSP, CISM, CISMP, GCIH, CEH, etc. is an advantage.
  • Strong communication and coordination skills, with the ability to engage effectively with stakeholders across diverse teams (Supply Chain, CISO, IT, etc.).
  • Proactive and self-motivated, comfortable working in a dynamic and continuously evolving environment.
  • Strong analytical capabilities combined with creative problem-solving skills.
  • Structured and synthetic, able to deliver clear, concise, and relevant responses to requests.
  • Calm, organized, and efficient under pressure, maintaining clarity even in situations of uncertainty.
  • Collaborative mindset, able to work effectively with executives, business leaders, and technical teams.
  • Autonomous and well-organized, with strong prioritization and time-management abilities.

Soft Skills

  • Strong communication and coordination skills, with the ability to engage effectively with stakeholders across diverse teams (Supply Chain, CISO, IT, etc.).
  • Proactive and self-motivated, comfortable working in a dynamic and continuously evolving environment.
  • Strong analytical capabilities combined with creative problem-solving skills.
  • Structured and synthetic, able to deliver clear, concise, and relevant responses to requests.
  • Calm, organized, and efficient under pressure, maintaining clarity even in situations of uncertainty.
  • Collaborative mindset, able to work effectively with executives, business leaders, and technical teams.
  • Autonomous and well-organized, with strong prioritization and time-management abilities.

Please do send an up to date CV to [email protected]

*Rates depend on experience and client requirements

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
955,510 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
London
$138k – $151k per year • Remote (United States, EST hours) • Public Trust • 8+ years exp • Bachelor's Degree
Python
Bash
Databases
Apache Kafka
DevOps
Splunk
Terraform
GitHub Actions
Datadog
Prometheus
GitLab CI
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Grafana
Platform Engineering
Configuration Management
Incident Management
GitHub
Amazon CloudWatch
Linux
Cybersecurity
Least Privilege
Management
Agile
Apply
≈ $60k – $137k per year (Estimated) • Remote (Italy) • Full-Time • 5+ years exp • Bachelor's Degree • Rome
Cybersecurity
Threat Modeling
Apply
≈ $117k – $213k per year (Estimated) • Remote (United States) • Full-Time • 3+ years exp • United States
Apply
$125k – $135k per year • Remote (United States) • Secret • 8+ years exp • High School Diploma
AI/ML
Red Teaming
DevOps
CI/CD
GitLab
IAM
Cybersecurity
Sonatype Nexus IQ
NeuVector
Apply
≈ $87k – $165k per year (Estimated) • Remote (United States) • Full-Time • 3+ years exp • United States
Python
PowerShell
DevOps
Splunk
GCP
Azure
AWS
Cybersecurity
Nessus
Qualys Cloud Platform
Microsoft Sentinel
MITRE ATT&CK
NIST CSF
SOC 2
SIEM
Management
ServiceNow
Apply
≈ $126k – $270k per year (Estimated) • Equity • Remote (Poland) • Full-Time • Bachelor's Degree
Python
Go
JavaScript
TypeScript
C#
AI/ML
Copilot
AutoGen
LangChain
Prompt Engineering
Function Calling
AI Agents
AWS Bedrock
Gemini
LLM
RAG
OpenAI
Anthropic
Human-in-the-Loop
LLM Guardrails
Agentic Workflows
Tool Use
Copilot Studio
DevOps
Rest API
Terraform
GCP
Azure
CI/CD
AWS
Kubernetes
Platform Engineering
Shift-Left
Bicep
GitHub
Cybersecurity
Burp Suite
Snyk
OWASP ZAP
SonarQube
Trivy
HashiCorp Vault
Checkmarx
Semgrep
ISO 27001
Checkov
CIS Benchmarks
OWASP Top 10
PCI DSS
SOC 2
HIPAA
Least Privilege
Shift-Left Security
Threat Modeling
SBOM
SLSA
Veracode
Sigstore
SIEM
OWASP
Cryptography
Vault
Management
Agile
Apply
≈ $126k – $270k per year (Estimated) • Equity • Remote (Poland) • Full-Time • Bachelor's Degree
Python
Go
JavaScript
TypeScript
C#
AI/ML
Copilot
AutoGen
LangChain
Prompt Engineering
Function Calling
AI Agents
AWS Bedrock
Gemini
LLM
RAG
OpenAI
Anthropic
Human-in-the-Loop
LLM Guardrails
Agentic Workflows
Tool Use
Copilot Studio
DevOps
Rest API
Terraform
GCP
Azure
CI/CD
AWS
Kubernetes
Platform Engineering
Shift-Left
Bicep
GitHub
Cybersecurity
Burp Suite
Snyk
OWASP ZAP
SonarQube
Trivy
HashiCorp Vault
Checkmarx
Semgrep
ISO 27001
Checkov
CIS Benchmarks
OWASP Top 10
PCI DSS
SOC 2
HIPAA
Least Privilege
Shift-Left Security
Threat Modeling
SBOM
SLSA
Veracode
Sigstore
SIEM
OWASP
Cryptography
Vault
Management
Agile
Apply
$150k – $256k per year • Equity • In office • Full-Time • 10+ years exp • Bachelor's Degree • Northridge
AI/ML
NIST AI RMF
ISO 42001
DevOps
IAM
Cybersecurity
ISO 27001
HIPAA
Microsoft Entra ID
Management
ServiceNow
Apply
$68k – $108k per year • Equity • In office • 4+ years exp • Bachelor's Degree • Tucson
Python
C#
C++
AI/ML
CUDA Toolkit
CUDA
DevOps
CI/CD
Git
Linux
Windows
Cybersecurity
SBOM
Apply
≈ $135k – $310k per year (Estimated) • Hybrid • 5+ years exp • Bachelor's Degree • Vancouver
Cybersecurity
ISO 27001
CVE
CWE
CVSS
OWASP
Apply
$165k – $179k per year • Hybrid • 10+ years exp • London
DevOps
CI/CD
Cybersecurity
OWASP Top 10
OWASP
Apply
$93k – $119k per year • Hybrid • PhD • London
Python
AI/ML
AI Agents
Apply
$93k – $132k per year • In office • London
DevOps
Splunk
Linux
Windows
Cybersecurity
Microsoft Sentinel
MITRE ATT&CK
IBM QRadar
SIEM
Apply
$119k – $139k per year • Hybrid • 6+ years exp • London
Cybersecurity
ISO 27001
NIST CSF
Apply
$170k – $227k per year • Hybrid • 7+ years exp • London
Cybersecurity
ISO 27001
OWASP
Apply
≈ $98k – $173k per year (Estimated) • In office • Full-Time • London
JavaScript
TypeScript
Node JS
AI/ML
Time Series Forecasting
Frontend
Tailwind CSS
RxJS
React.js
Vite
Radix UI
shadcn/ui
Recharts
esbuild
DevOps
Rest API
Grafana
Apply
≈ $71k – $129k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • London
Analytics
Power BI
Microsoft Excel
Management
Outlook
Apply
≈ $67k – $110k per year (Estimated) • In office • London
Management
Microsoft Office
Apply
≈ $99k – $218k per year (Estimated) • Hybrid • London
Apply
AI Product Owner 1 day ago
≈ $80k – $197k per year (Estimated) • Hybrid • London
Management
Agile
Apply
See all jobs
This is one of many
955,510 more open roles from verified company boards, updated every day.