Senior Security Engineer, Application Security

BLOCKCHAIN
London
3 weeks ago
Create job alert

Blockchain.com is the world's leading software platform for digital assets. Offering the largest production blockchain platform in the world, we share the passion to code, create, and ultimately build an open, accessible and fair financial future, one piece of software at a time.

We are looking for aSenior Application Security Engineerto join our Security team as we tackle some of the most interesting problems in the crypto space, like how do we securely scale a distributed financial platform that touches millions of people a day.

At Blockchain.com, Security is a mindset and a set of engineering approaches to better protect stakeholders, users and systems by building our creative engineering solutions to hard, sometimes previously unseen problems. The Security team is responsible for the big picture of how systems are designed for Security, and we use a breadth of tools and approaches to solve a broad spectrum of problems. Practices aimed at achieving proactive identification of potential threat actors combined with in-depth investigation of security issues into iterative improvement are key to both product security and interesting and dynamic day-to-day work.

Security at Blockchain.com is a work in progress - we are looking for an experienced, Senior Application Security Engineer to expand our Security platform and provide leadership across the Security and the broader engineering team. Are you ready for a challenge?

WHAT YOU WILL DO:

Work closely with Engineering teams to define security requirements and perform design assessments at early stages. Perform code reviews across the lifecycle of products, and penetration tests on internal and Internet-facing services.  Develop, communicate, and promote best practices for the secure development and deployment of services. Implement improvements in the strategy, processes and tooling, enhance the overall Secure Software Development Lifecycle process and lead the adoption of the “Security by design” principle. Build software and implement tooling to validate and enforce secure baselines for software development, deployment and release. Review development processes for security functionality and consistency and develop Security playbooks. Design and implement libraries and tooling for security sensitive operations (data encryption, authentication, access, logging, input validation, etc.) Support Engineering teams with implementing security fixes, and develop strategies to proactively secure their code. 

WHAT YOU WILL NEED

Extensive knowledge of secure standards and practices to build software preferably in at least one JVM based language such as Java and Kotlin. Experience working on different kinds of assignments including code reviews, secure standard development, and building secure software. Proven experience implementing Security in highly regulated environments. Previous experience in cryptocurrency projects is a plus. Experience with OWASP, Static and Dynamic Application Security Testing (AST) and dependendency validation (SCA) tools. Experience with integration into CI/CD pipelines is a plus. Knowledge of Security monitoring techniques and tools to provide actionable events to trigger automated detection and containment and ensure traceability across the entire stack. An innate curiosity, strong inclination towards best practices and thrivingness on learning new technologies. A pragmatic approach to developing clean solutions to complex problems. The foremost quality for this position or any position at Blockchain.com is integrity.

COMPENSATION & PERKS:

Amazing and accessible office location in the heart of London. Unlimited vacation policy. Apple equipment. Full-time salary based on experience and meaningful equity in an industry-leading company. London Benefits: Private Medical Insurance (BUPA), Dental, Pension, Life, Short Term & Long Term Disability The opportunity to be a key player and build your career at a rapidly expanding, global technology company in an emerging field Flexible work culture

APPLICATION:

LinkedIn profile. Link to github, stackoverflow, personal website and/or blog (if applicable).

Blockchain is committed to diversity and inclusion in the workplace and is proud to be an equal opportunity employer. We prohibit discrimination and harassment of any kind based on race, religion, color, national origin, gender, gender expression, sex, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law. This policy applies to all employment practices within our organization, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, and apprenticeship. Blockchain makes hiring decisions based solely on qualifications, merit, and business needs at the time.

Related Jobs

View all jobs

Senior Security Engineer

Senior Mobile Security Engineer

Senior Security Engineer

Senior AWS Security Engineer - Trading Systems

Senior Security Engineer

Senior AWS Security Engineer

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cybersecurity Leadership for Managers: Strategies to Motivate, Mentor, and Set Realistic Goals in Threat-Driven Environments

In an era of rapidly increasing data breaches, ransomware attacks, and corporate espionage, the importance of robust cybersecurity cannot be overstated. Protecting digital assets has become as essential as safeguarding physical resources, and organisations worldwide rely heavily on specialised teams to defend against sophisticated cyber threats. However, even the most advanced tools and techniques are only as effective as the leadership guiding their use. Cybersecurity leadership requires a dynamic blend of technical know-how, strategic thinking, and people-management skills to maintain readiness against ever-evolving threats. This article is designed for professionals aiming to lead cybersecurity teams or transition into managerial roles where understanding how to motivate, mentor, and set realistic goals is paramount. With insights into building high-performing teams, fostering collaboration, and embracing continuous learning, you’ll be equipped to protect your organisation from a broad spectrum of cyber risks.

10 Must-Read Cyber Security Books for UK Professionals: Boost Your Career and Stay Ahead of Threats

With rapid advancements in digital infrastructure, cloud computing, and the Internet of Things (IoT), cyber threats continue to evolve at lightning speed. For organisations across the UK—and globally—robust cyber security is no longer optional: It’s a strategic imperative. From healthcare and finance to government agencies and tech start-ups, every sector needs skilled professionals to safeguard critical data and protect users. If you’re looking to break into or advance within the cyber security industry, staying updated on the latest techniques, threat landscapes, and defence strategies is paramount. One of the best ways to build and sharpen your expertise is by reading authoritative, high-quality books that combine foundational knowledge with cutting-edge insights. In this guide, we’ve compiled a list of ten books that cater to various skill levels, spanning ethical hacking and threat intelligence to secure software development and cryptography. By diving into these resources, you’ll fortify your understanding of cyber security fundamentals, explore hands-on techniques for defending systems, and gain the strategic perspective needed to excel in roles throughout the UK’s thriving cyber security landscape.

Navigating Cybersecurity Career Fairs Like a Pro: Preparing Your Pitch, Questions to Ask, and Follow-Up Strategies to Stand Out

In a world where digital threats are escalating and online infrastructure underpins nearly every aspect of our personal and professional lives, cybersecurity has swiftly become one of the most sought-after career fields. Demand for skilled cybersecurity professionals outstrips supply, both in the UK and globally. From ethical hackers and penetration testers to governance, risk, and compliance (GRC) specialists, the opportunities are extensive—and lucrative. Amidst this surge in demand, cybersecurity career fairs provide an invaluable chance to meet potential employers face-to-face, gain industry insights, and make connections that can accelerate your career trajectory. Unlike applying to countless jobs online, these events bring companies, security leaders, and aspiring candidates together under one roof. When approached with the right strategy, a single conversation at a cybersecurity fair can open the door to your dream job. In this comprehensive guide, we’ll explore how to prepare thoroughly, engage confidently, and follow up effectively after a cybersecurity career fair. By incorporating these insights into your approach, you’ll stand out from the crowd and maximise your chances of securing the perfect role in this fast-growing field.