
Security Development and Test Manager
- Birmingham
- Permanent
- Full-time
- - Manage the execution of secure development and testing services across projects and clients.
- - Support adherence to SLAs, KPIs, and internal quality standards for security testing.
- - Serve as a point of contact for technical escalations and coordinate with senior stakeholders to resolve issues.
- - Support client engagements with documentation, test results, and security assessment reports.
- - Work with engineering and DevOps teams to embed security tools (e.g., SAST, DAST, SCA) into CI/CD pipelines.
- - Help maintain and improve automated security testing workflows.
- - Support threat modelling and secure design practices at the project level.
- - Participate in security reviews of new features and applications.
- - Oversee the planning and execution of security tests, including static and dynamic analysis.
- - Ensure appropriate tooling is used and maintained, and testing results are actioned.
- - Track vulnerability remediation efforts and support developers with secure coding guidance.
- - Monitor and report on testing coverage and issue resolution trends.
- - Supervise a small team of security engineers or testers, ensuring effective task allocation and delivery.
- - Mentor team members on secure development practices and DevSecOps principles.
- - Help promote a culture of shared security responsibility across development teams.
- - Contribute to the enhancement of development and testing standards.
- - Identify opportunities for automation and improved testing efficiency.
- - Track and report on relevant metrics to support continuous improvement.
- - Security Testing Coverage: Percentage of applications tested using SAST/DAST/SCA tools.
- - Vulnerability Remediation Time: Time to resolve high/critical vulnerabilities.
- - DevSecOps Tool Adoption: Use of automated testing in CI/CD pipelines.
- - Secure Code Training Completion: Percentage of development team trained.
- - Internal Audit Readiness: Compliance with secure development processes.
- - Escalation Resolution Time: Time to address technical or process escalations.
- - 5+ years in secure software development, testing, or DevSecOps environments.
- - 1–3 years of experience in a team lead or managerial capacity.
- - Hands-on experience with security testing tools (e.g., Veracode, SonarQube, Burp Suite, etc.).
- - Familiarity with secure coding practices, OWASP Top 10, and threat modelling.
- - Experience working in Agile or DevOps-driven environments.
- - Strong verbal and written communication skills.
- - Relevant security or DevSecOps certifications (e.g., CSSLP, CEH, GWEB) preferred.
- - Eligible for SC clearance in the UK.
- We’re a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects.