< Back to search
ASOS • London, United Kingdom

Senior Security Engineer

Job Description

Company Description

We’re ASOS, the online retailer for fashion lovers all around the world.

We exist to give our customers the confidence to be whoever they want to be, and that goes for our people too. At ASOS, you’re free to be your true self without judgement, and channel your creativity into a platform used by millions.

But how are we showing up? We’re proud members of Inclusive Companies, are Disability Confident Committed and have signed the Business in the Community Race at Work Charter and we placed 8th in the Inclusive Top 50 Companies Employer list.

Everyone needs some help showing up as their best self. Let our Talent team know if you need any adjustments throughout the process in whatever way works best for you.

Job Description

As one of our Security Engineers, you are passionate about security and great engineering practises. You will join a multidisciplinary team, working together with other Security Engineers, Product Managers and Security teams. As an Engineer, you will design, build and deliver secure, high-quality enterprise solutions across numerous initiatives within the organisation, spreading your security knowledge to an ever-expanding engineering community, increasing our security posture and helping identify and reduce our risk exposure when building applications.

You will use your strong software/platform engineering skillset to help design and build tooling and integrations across a wide range of areas. You will gain deep knowledge on automated security tools and support the delivery and maintenance of these tools to empower engineers to build high quality, secure applications with minimal disruption to their delivery. Your impact will be felt within Cyber Security and wider by our tech communities, engineers and operations teams.

Responsibilities

  • Drive security efforts across ASOS Engineering (SecDevOps, Secure SDLC) through building scalable security tool integrations into the developer’s workflow.
  • Provide documentation, training, guidance and support to teams using our tools.
  • Develop tools, services and scripts to support with internal Security projects.
  • Support with security risk decisions and influence technical architecture.
  • Support with Application Security Assessments (incl. Threat Modelling, Attack Surface Analysis, Application Security Architecture Reviews and Security Code Reviews) where required.
  • Support with security training around Security Best Practices.
  • Understand and support teams with adherence to regulations (e.g. GDPR, PCI-DSI)
  • Defining and explaining security non-functional requirements for development teams.
  • Ability to articulate mitigation and development techniques around emerging threats to technical and non-technical stakeholders
  • Work with other Security Engineers on collaborative projects and deliverables that support other Security & Fraud functions and business needs.
  • Stay updated on emerging security threats, industry trends, and evolving technologies.

Qualifications

About You

  • Experience in Cloud Security, Platform Engineering, Software Engineering, or related fields, with an emphasis on automation, DevOps practices, and tooling.
  • Strong background in scripting and automation within a DevOps or continuous delivery environment.
  • Solid understanding of key security scanning practices, including static and dynamic analysis, dependency and infrastructure scanning, and credential detection.
  • Hands-on experience implementing application security tools and practices.
  • Experience developing applications, scripts, pipelines, or automation using modern programming languages, containerization, and orchestration tools.
  • Good grasp of object-oriented programming principles and commonly used programming languages.
  • Familiarity with APIs, including REST and GraphQL.
  • Strong communication and collaboration skills.
  • Experience working within agile methodologies and an understanding of the software development lifecycle, including secure development practices.
  • Knowledge of DevOps/DevSecOps principles, security best practices, and fostering a culture of security within development teams.

Additional Information

BeneFITS’

  • Employee discount (hello ASOS discount!)
  • ASOS Develops (personal development opportunities across the business)
  • Employee sample sales
  • Access to a huge range of LinkedIn learning materials
  • 25 days paid annual leave + an extra celebration day for a special moment
  • Discretionary bonus scheme
  • Private medical care scheme
  • Flexible benefits allowance - which you can choose to take as extra cash, or use towards other benefits

Company benefits

25 days annual leave + bank holidays
401K
Accrued annual leave – Max 5 days to carry over
Adoption leave – 26 weeks enhanced pay
Annual bonus
Annual pay rises
Bike parking
Birthday off
Buy or sell annual leave
Cinema discounts
Coffee discounts
Company freebies
Compassionate leave
Critical Illness Insurance
Dental coverage
Early finish Fridays
Emergency leave
Employee assistance programme
Employee discounts
Enhanced maternity leave – 26 weeks enhanced pay
Enhanced paternity leave – 8 weeks enhanced pay
Enhanced pension match/contribution
Enhanced sick days
Enhanced sick pay
Eye Care Support
Faith rooms
Family health insurance
Fertility benefits
Financial coaching
Further education support
Gym membership
Hackathons
Health insurance
In house training
On-site catering
On-site massages
On-site workout classes
On-site yoga classes
Learning platform
Life assurance
Mental health first aiders
Mental health platform access – Access to EAP (Unum)
Mentoring
Neo-natal leave – 16 weeks leave
On-site gym
On-site wellness room
Open to compressed hours
Open to part time work for some roles
Open to part-time employees
Personal development days
Pregnancy loss leave – 10 days paid leave
Private GP service
Professional subscriptions
Referral bonus
Religious celebration leave
Restaurant discounts
Sabbaticals
Salary sacrifice
Shared parental leave – 26 weeks enhanced pay
Skilled worker visas
Study support
Teambuilding days
Time off in-lieu
Travel loan
Volunteer days
Summer hours

Working at ASOS

Company employees:

3,000

Gender diversity (m:f):

35:65

Hiring in countries

Türkiye

United Kingdom

Office Locations

Other jobs you might like