Location
London, UK
Hours
Full Time, Permanent Contract
Salary
Negotiable
About the Role
Join Tripadvisor, a global leader connecting people to experiences worth sharing, as a Senior Application Security Engineer within the Tripadvisor Experiences team. In this role, you will take a lead position in securing the applications that power our platform. You will design and implement advanced security measures, mentor junior engineers, and play a key role in ensuring the security of our products and infrastructure. This is a fantastic opportunity to influence security practices and help shape the future of application security within a dynamic organisation.
Your responsibilities will include leading the design and implementation of advanced application security measures such as encryption, secure APIs, and identity management; conducting in-depth threat modelling and risk assessments; performing manual security assessments including code reviews; acting as a Subject Matter Expert for security breaches by performing root cause analysis and creating corrective actions; developing and enforcing application security policies across multiple engineering teams; mentoring and training junior engineers; providing expert advice on security architecture and design; collaborating with engineering and product teams to integrate security requirements into software development lifecycles; championing security initiatives; and staying up to date with the latest security threats and industry best practices.
About Tripadvisor
The Tripadvisor Group connects people to experiences worth sharing and aims to be the world’s most trusted source for travel and experiences. Leveraging our brands, technology, and capabilities, we connect a global audience with partners through rich content, travel guidance, and two-sided marketplaces for experiences, accommodations, restaurants, and other travel categories. Our subsidiaries include a portfolio of travel brands and businesses such as Tripadvisor, Viator, and TheFork.
Our Cultural Pillars
- Traveler first: We create value for our customers and enable our partners to unlock this value.
- Execution is our edge: We act fast, experiment, learn, iterate, and improve solutions across every aspect of our business.
- We succeed together: We collaborate relentlessly, challenge assumptions, give actionable feedback, and celebrate our collective achievements.
Experience
- Extensive experience in application security including secure coding practices, threat modelling, vulnerability assessments, and incident response.
- Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines.
- Strong understanding of advanced security concepts such as encryption, secure software design, identity management, and API security.
- Experience with cloud security (AWS, Azure, etc.) and securing microservices architectures.
- Proven leadership skills with the ability to mentor engineers and influence security practices.
- 4+ years working as a Security Engineer or Application Security Analyst.
About you
- Excellent communication and collaboration skills with a track record of working closely with cross-functional teams.
- Passionate about mentoring and developing others with a commitment to continuous learning and improvement.
- Proactive and able to champion security initiatives across teams.
Qualifications
- Preferred experience with regulatory frameworks such as GDPR, PCI-DSS, SOC 2.
- Industry-recognised security certifications (e.g., OSCP, OSCE, or similar) are a plus.
- Familiarity with the latest security tools and frameworks to proactively identify vulnerabilities and mitigate threats.
Tripadvisor










