Negotiable
Undetermined
Hybrid
London Area, United Kingdom
Summary: The Cloud Security Engineer – DevSecOps role involves ensuring security automation within CI/CD environments, leveraging modern DevOps tools and cloud-native security controls. The position requires hands-on experience with tools like GitHub Actions, Terraform, and Kubernetes, as well as familiarity with compliance frameworks. The role is based in the London Area and follows a hybrid working model, requiring 2-3 days per week in the office.
Key Responsibilities:
- Implement security automation in CI/CD environments.
- Utilize modern DevOps tools such as GitHub Actions, CircleCI, Terraform, Kubernetes, and Docker.
- Implement security controls in cloud-native environments like AWS or Azure.
- Work with security tools like Snyk, Trivy, Checkov, OPA/Gatekeeper, and OWASP ZAP.
- Understand and implement compliance frameworks such as NIST, ISO 27001, and CIS Benchmarks.
Key Skills:
- DevSecOps
- CI/CD environments
- GitHub
- Kubernetes
- Terraform
- Docker
- AWS
- Azure
- ISO 27001
Salary (Rate): undetermined
City: London Area
Country: United Kingdom
Working Arrangements: hybrid
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
I am hiring for Cloud Security Engineer – DevSecOps
Location: Multi Location at UK - Hybrid / 2-3 days Per week in Office
Strong hands-on experience with DevSecOps and security automation in CI/CD environments. Expertise with modern DevOps tools such as GitHub Actions, CircleCI, Terraform, Kubernetes, Docker, and their secure configurations. Proven experience implementing security controls in cloud-native environments like AWS or Azure (IAM, network policies, container security). Familiarity with tools like Snyk, Trivy, Checkov, OPA/Gatekeeper, OWASP ZAP, or equivalent security tooling. Solid understanding of compliance frameworks such as NIST, ISO 27001, CIS Benchmarks and their implementation through code.
Key Skills: DevSecOps / CI/CD environments / GitHub / Kubernetes / Terraform / Docker / AWS / Azure / ISO 27001