[Immediate Start] Senior Application Security Engineer

2 weeks ago


Dublin, Ireland Unum Insurance Full time

Our Story
Unum Technology Centre in Carlow serves as a strategic software development and IT services centre supporting Unum, a leading provider of income protection in the US. Our team of IT professionals build solutions and critical business applications to digitally transform the way we do business.

We’re looking for a Senior Application Security Engineer to lead the integration of secure development practices across our SDLC in both cloud and on-prem environments. This role combines hands-on technical expertise with strategic influence, focusing on secure architecture, CI/CD automation, and developer enablement. You’ll collaborate with cross-functional teams to drive threat modeling, build secure-by-default tooling, and mentor engineers across Ireland and the US—helping to elevate our overall security maturity and culture.

Key Responsibilities

Secure Software Development & DevSecOps Integration

- Architect and integrate security into CI/CD pipelines using modern automation and guardrails.
- Develop secure frameworks, SDKs, and CI integrations to enable frictionless adoption of security controls.
- Maintain secure coding standards and guidance tailored to our technology stack.
- Collaborate with DevOps and platform teams to enhance container and infrastructure security (Docker, Kubernetes, IaC).

Threat Modeling, Reviews & Remediation

- Lead threat modeling workshops across product and platform teams.
- Identify and assess vulnerabilities using SAST, DAST, SCA, manual code reviews, and penetration testing.
- Promote reusable remediation patterns for code and infrastructure vulnerabilities.
- Leverage threat intelligence to prioritize mitigations based on business risk.

Engineering & Automation

- Build and maintain automation tools for vulnerability triage, mitigation, and reporting.
- Strengthen API security through robust authentication protocols (OAuth 2.0, OpenID Connect, SAML).
- Integrate with API gateways (e.g., Layer7, MuleSoft) to enforce secure communication and tokenization.
- Support secure deployment of microservices and distributed systems using best-in-class tooling.

Security Culture & Enablement

- Mentor engineers and analysts, fostering secure development capabilities across teams.
- Lead internal workshops, onboarding sessions, and lunch-and-learns to promote security awareness.
- Collaborate with Security Champions to build advocacy and threat modeling expertise.
- Create internal documentation, playbooks, and training materials aligned with real-world threats.

Cross-Functional Leadership & Collaboration

- Act as a bridge between Security, Engineering, and Product teams to align on secure architecture and SDLC practices.
- Participate in incident response, forensic analysis, and post-incident remediation.
- Support compliance initiatives (SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR) through technical guidance and documentation.
- Define and track KPIs to measure and improve security maturity across the organization.

Required Qualifications

- 5+ years in application security, software engineering, or a related technical security role.
- Proficient in at least one modern programming language (e.g., Java, C#, Python, JavaScript).
- Experience with security tools: SAST, DAST, SCA, IaC scanners, RASP.
- Strong knowledge of cloud infrastructure (AWS preferred), containers (Docker, Kubernetes), and CI/CD security.
- Familiarity with OWASP Top 10, ASVS, CVSS, MITRE ATT&CK, STRIDE, and software supply chain security.

Technical Skills

- Deep understanding of API security protocols and secure service-to-service communication.
- Experience with secure artifact/package management and container registries.
- Ability to script or build internal tools to scale security practices.
- Hands-on experience with DevSecOps tools (GitHub Actions, Jenkins, GitLab CI, Terraform, etc.).

Compliance & Governance

- Working knowledge of privacy and security regulations (GDPR, CCPA, HIPAA, PCI, SOC 2, ISO 27001).
- Experience supporting audits, risk assessments, and policy development.

Preferred Qualifications

- Professional certifications (e.g., OSCP, CSSLP, CISSP, Security+).
- Contributions to open-source security projects or community involvement.
- Experience with policy-as-code tools (e.g., Open Policy Agent).
- Familiarity with secure runtimes (e.g., Firecracker), sidecars, or service meshes (e.g., Istio).

Key Attributes

- Strategic thinker with a hands-on, problem-solving mindset.
- Strong communicator, able to engage both technical and non-technical stakeholders.
- Collaborative leader with a growth mindset and a passion for mentoring.
- Comfortable navigating fast-paced, cross-functional environments.

#LI-SF1

#LI-Hybrid

#Hybrid

What We Offer
Our size and successful history in Carlow means we can offer you exceptional development and progression, supported by continual learning programs, IT Certifications & third level tuition reimbursement. We offer work-life-balance with flexible working arrangements (including hybrid) and initiatives in support of your well-being. Our attractive range of benefits and reward initiatives includes competitive compensation, 25 days annual leave, paid health insurance, pension scheme, annual performance-based bonus, paid maternity/paternity/adoptive leave, reward programs, and an opportunity to engage with charity and community activities.

Company:

Unum
#J-18808-Ljbffr



  • Dublin, Ireland Access Talent Group Full time

    Contact Ciaran Hall, the consultant managing this role. Access Talent Group is currently working with one of Ireland’s most well-respected Civil & Structural consultancies who are looking to bring on a Structural Engineer to their Dublin city centre office. This is a fantastic opportunity to join one of Ireland's fastest-expanding Structural departments,...


  • Dublin, Ireland Access Talent Group Full time

    Contact Ciaran Hall the consultant managing this role. Access Talent Group are currently working with one of Ireland’s largest Civil & Structural consultancies who are looking to bring on a Structural Project Engineer to their East Dublin office. This is a fantastic opportunity to come into one of Ireland's most well-respected Structural departments,...


  • Dublin, Ireland onsemi Full time

    The Applications Engineer is expected to perform the task of the primary technical contact for a global FAE team in the computing market. The successful candidate will work with a cross discipline team focused on new product development and customer design for the computing power market. He/she will be expected to drive the applications activities from a...


  • Dublin, Ireland Soda Full time

    Senior Engineer - Application Security Tools Location: Hybrid, 1 week per month onsite in Galway Duration: 12 Months initially Rate: up to €375 per day We're looking for a Senior Engineer to join our Application Security Tools Squad , building scalable tools that integrate security into the heart of our development lifecycle. You'll support over 10,000...


  • Dublin, Dublin City, Ireland Agoda Full time

    Senior Application Security Engineer (Bangkok based, relocation provided)Bangkok, ThailandOverviewThe Security Department oversees security, compliance, GRC, and security operations for Agoda.We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering our employees.This role is in a fast-paced DevSecOps environment...


  • Dublin, Ireland Access Talent Group Full time

    Contact Ciaran Hall the consultant managing this role. Access Talent Group are currently working one of Ireland’s fastest-growing Structural consultancies who are looking to bring on a Structural Design Engineer to their growing Dublin office. This is a fantastic opportunity to come into a consultancy where you will have a fantastic pipeline of...


  • Dublin, Ireland Access Talent Group Full time

    Job Title: Associate Director - Civil and Structures Reference: VAC-2724 Sector: Civil & Structural Engineering Salary: €75,000 to €80,000 Per Annum Location: Dublin, Ireland Contract Type: Permanent Access Talent Group are currently working with one of Ireland’s biggest Civil & Structural consultancies who are looking to bring on an Associate...


  • Dublin, Ireland Fehily Timoney & Co Full time

    Fehily Timoney and Company (FT) is one of Ireland's largest indigenous consultancies specialising in Sustainable Infrastructure, Circular Economy, Environment, Energy and Renewables. FT is a Circular Economy and Environmental consultancy specialist providing solutions for waste and resource management for our clients. The company is recognised for its...


  • Dublin Pike, Ireland Brightwater Executive Full time

    This is an opportune time to join a leading financial services firm as they drive forward their IT Strategy and Change Roadmap. Joining this team, you will be leading a small team across every aspect of cyber resilience, safeguarding business-critical operations and ensuring proactive, best in class controls across the enterprise. About the Position As Head...


  • Dublin Pike, Ireland Sodexo Ltd Full time

    Overview Deputy Security Manager – Full Time, Dublin 8, rotating 5/7 days per week as per rota. Salary: €50,000 per annum. Opportunities for professional development. Plus our Sodexo employee benefits package. Engineer a brighter future. You'll keep things running; we’ll fast-track your career as a Deputy Security Manager with Sodexo. We believe...