TL;DR
DevSecOps Engineer: Strengthening security across cloud platforms and delivery pipelines with an accent on embedding security by design in modern, cloud-first environments. Focus on architecture, engineering, and compliance while leading modern cloud security strategy.
Location: Hybrid working model with 3 days per week in the Leeds office, UK
Salary: £60,000–£70,000 per annum + bonus, shares, 37 holidays
Company
A rapidly growing technology-driven organisation focused on strengthening security across cloud platforms.
What you will do
- Design and maintain secure CI/CD pipelines, embedding security controls.
- Integrate and manage security tooling for code analysis and vulnerability scanning.
- Implement security controls across cloud infrastructure using Infrastructure as Code.
- Automate security testing processes including SAST, DAST, and IAST.
- Build and maintain monitoring, alerting, and threat detection capabilities using SIEM.
- Collaborate with DevOps, engineering, and information security teams to promote DevSecOps culture.
Requirements
- Proven hands-on experience in DevSecOps or security-focused engineering roles within cloud environments.
- Strong experience with CI/CD tooling such as Jenkins, GitHub Actions, or GitLab CI.
- Practical expertise using Infrastructure as Code tools such as Terraform or CloudFormation.
- Deep knowledge of securing AWS-based environments, Docker, and Kubernetes.
- Experience implementing and managing security tools including SAST, DAST, and vulnerability scanners.
- Strong scripting and automation skills using Bash or Python.
- Experience with monitoring, logging, and SIEM platforms such as ELK or Datadog.
- Solid understanding of secure coding principles, application security, and compliance frameworks.
Nice to have
- Financial services or fintech experience.
Culture & Benefits
- Base Salary up to £70,000 with a 5% company performance bonus and up to 10% value-based bonus.
- Allocated company shares following successful completion of probation.
- 37 days annual leave, inclusive of bank holidays.
- Opportunities for professional development and technical growth.
- A collaborative, delivery-focused environment with scope to influence security strategy and mentor others.
- Hybrid working model.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →