← Back to jobs
Coventry, UK
No related jobs found
The Role
The Application & AI Resource will be responsible for supporting the security, governance, and resilience of enterprise applications, cloud-native services, APIs, and AI platforms. The role will contribute to application security assessments, DevSecOps initiatives, cloud security governance, and AI risk management activities across Azure, AWS, and other enterprise platforms. Working closely with development, cloud, infrastructure, and cybersecurity teams, the individual will help ensure that applications and AI solutions are designed, deployed, and operated in accordance with security best practices and organizational governance requirements.
Your responsibilities:
• Support the administration, configuration, and optimization of Azure WAF and AWS WAF policies and controls.
• Conduct application security assessments and reviews covering web applications, APIs, and cloud-native services.
• Support secure design and governance of Azure Logic Apps, Function Apps, and related cloud services.
• Assess and strengthen API security controls, authentication mechanisms, and access management practices.
• Support the implementation and management of enterprise secrets and key management platforms, including Azure Key Vault and AWS KMS.
• Embed security controls and best practices within CI/CD pipelines and DevSecOps processes.
• Participate in application threat modelling, architecture reviews, and security risk assessments.
• Support the implementation of AI security governance, risk management, and compliance controls.
• Conduct security assessments of AI platforms, including Azure OpenAI, Microsoft Copilot, and other AI-enabled solutions.
• Support data protection, AI abuse monitoring, prompt injection mitigation, and secure AI adoption initiatives.
•
Your Profile
Essential skills/knowledge/experience:
• Experience in application security, cloud security, or cybersecurity engineering roles.
• Strong understanding of web application security principles, including OWASP Top 10 vulnerabilities and mitigation techniques.
• Experience securing APIs using authentication, authorization, encryption, and monitoring controls.
• Hands-on experience with Web Application Firewall (WAF) technologies, preferably Azure WAF and/or AWS WAF.
• Knowledge of cloud-native security services within Azure and AWS environments.
• Experience with secrets management and cryptographic key management platforms such as Azure Key Vault, AWS KMS, Thales CipherTrust, or similar solutions.
• Understanding of secure software development lifecycle (SSDLC), CI/CD security, and DevSecOps practices.
• Experience performing application security reviews, threat modelling, and risk assessments.
• Knowledge of AI/LLM security risks, governance frameworks, and data protection requirements.
• Strong analytical, stakeholder management, communication, and documentation skills.
Desirable skills/knowledge/experience:
• Experience with Azure Logic Apps, Azure Function Apps, and serverless security controls.
• Exposure to AI/LLM platforms such as Azure OpenAI, Microsoft Copilot, Anthropic Claude, or equivalent technologies.
• Knowledge of AI threat modelling, prompt injection mitigation, and AI governance frameworks.
• Experience with application security testing tools such as SAST, DAST, SCA, or API security testing solutions.
• Familiarity with security monitoring, SIEM, and automated response platforms.
• Knowledge of Zero Trust principles applied to applications and APIs.
• Understanding of data privacy, regulatory compliance, and information protection controls.
• Relevant certifications such as AZ-500, SC-100, SC-300, CISSP, CCSP, CSSLP, CEH, or equivalent
Any Graduate
No related jobs found
← Back to jobs