Senior Application Security Consultant

EVOLUTION PROJECT CONSULTING LIMITED
Glasgow, Scotland
13 months ago
Applications closed

Related Jobs

View all jobs

AI Security Architect

Additional Resources United Kingdom
Hybrid

Lead Cyber Security Consultant (Defence)

Sanderson South West England, United Kingdom
Hybrid Clearance Required

DevSecOps Consultant

Talent Smart Orchard Square, South Yorkshire, United Kingdom
£650 – £675 pd

Security Architect

Inspire People Swansea, United Kingdom
£57,515 – £82,430 pa Hybrid Clearance Required

Cyber Security Architect

Methods Central London, W3 0BJ, United Kingdom
On-site Clearance Required

Platform Professional Services Sr. Consultant , GBR)

CrowdStrike United Kingdom
Remote
Posted
5 Jun 2025 (13 months ago)

About the Role

We are seeking a highly experiencedApplication Security Consultantto conduct acomprehensive security reviewof a web-based application. This is anon-invasive, review-only assignment— no remediation or code modifications are required.

You’ll work independently to assess application code and related configurations, identify any security vulnerabilities, and deliver a detailed, evidence-basedsecurity audit report.


Key Responsibilities

  • Performstatic code analysisand security audit of a web application.
  • Identify potential vulnerabilities in logic, data handling, authentication, and access control.
  • Assess the application againstOWASP Top 10and other secure coding standards.
  • Review third-party dependencies for known issues.
  • Produce aprofessional security reportwith risk ratings, findings, and recommendations.


Required Skills & Experience

  • 4+ years inApplication Security,AppSec consulting, orSecure Code Reviewroles.
  • Deep understanding of secure coding practices in web frameworks (e.g., JavaScript, Python, PHP, Node.js).
  • Familiarity with tools likeSnyk,Checkmarx,Veracode, orBurp Suite (passive scanning).
  • Knowledge ofOWASP,CWE, and general secure software development principles.
  • Strong technical writing and communication skills.
  • Preferred certifications:OSCP,CSSLP,GWAPT,CEH, or equivalent.


Deliverables

  • One formal written report including:
  • Executive summary for non-technical stakeholders.
  • Technical breakdown of findings with severity and impact.
  • Recommended mitigation guidance (no implementation expected).


Why Join Us?

  • Remote flexibility
  • No remediation work — fully focused onreview and advisory
  • A project with high visibility and real-world impact
  • Prompt onboarding and structured communication


How to Apply

Message us directly or email with your CV, availability, and examples of previous audit/reporting work if available.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.