Skip to main content
Posted 02 August, 2026

Application Security Engineer

Virgin Media
London, ENG, GB Full Time

Job Description

hackajob is collaborating with Virgin Media to connect them with exceptional professionals for this role.

\n

We are looking for an application security engineer who is based in the UK for a majority remote role based in London.

\n

In order to be considered, the candidate must have the following experience;
\n • Experience assessing security impacts across codebases and APIs using languages such as Java, TypeScript and Python.
\n • Strong knowledge of the OWASP Top 10, secure coding practices, and common web and API vulnerabilities.
\n • Hands-on experience triaging, validating and remediating vulnerabilities with both technical and non-technical stakeholders.
\n • Experience integrating security tooling into CI/CD pipelines and embedding DevSecOps practices.

\n

We'd also love you to bring;
\n • Security certifications such as OSCP, GWAPT, CSSLP, CEH or Security+.
\n • Experience securing AWS environments and infrastructure-as-code solutions such as Terraform.
\n • Knowledge of AI-enabled security workflows and securing AI or LLM-powered features.
\n • Experience contributing to or maintaining open-source security tooling.
\n • Proven expertise in threat modelling, secure code review, architecture review, and container/Kubernetes security.