Cloud Security Engineer – DevSecOps

Cloud Security Engineer – DevSecOps

Posted 5 days ago by GIOS Technology

Negotiable
Undetermined
Hybrid
London Area, United Kingdom

Summary: The Cloud Security Engineer – DevSecOps role involves ensuring security automation within CI/CD environments, leveraging modern DevOps tools and cloud-native security controls. The position requires hands-on experience with tools like GitHub Actions, Terraform, and Kubernetes, as well as familiarity with compliance frameworks. The role is based in the London Area and follows a hybrid working model, requiring 2-3 days per week in the office.

Key Responsibilities:

  • Implement security automation in CI/CD environments.
  • Utilize modern DevOps tools such as GitHub Actions, CircleCI, Terraform, Kubernetes, and Docker.
  • Implement security controls in cloud-native environments like AWS or Azure.
  • Work with security tools like Snyk, Trivy, Checkov, OPA/Gatekeeper, and OWASP ZAP.
  • Understand and implement compliance frameworks such as NIST, ISO 27001, and CIS Benchmarks.

Key Skills:

  • DevSecOps
  • CI/CD environments
  • GitHub
  • Kubernetes
  • Terraform
  • Docker
  • AWS
  • Azure
  • ISO 27001

Salary (Rate): undetermined

City: London Area

Country: United Kingdom

Working Arrangements: hybrid

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

I am hiring for Cloud Security Engineer – DevSecOps

Location: Multi Location at UK - Hybrid / 2-3 days Per week in Office

Strong hands-on experience with DevSecOps and security automation in CI/CD environments. Expertise with modern DevOps tools such as GitHub Actions, CircleCI, Terraform, Kubernetes, Docker, and their secure configurations. Proven experience implementing security controls in cloud-native environments like AWS or Azure (IAM, network policies, container security). Familiarity with tools like Snyk, Trivy, Checkov, OPA/Gatekeeper, OWASP ZAP, or equivalent security tooling. Solid understanding of compliance frameworks such as NIST, ISO 27001, CIS Benchmarks and their implementation through code.

Key Skills: DevSecOps / CI/CD environments / GitHub / Kubernetes / Terraform / Docker / AWS / Azure / ISO 27001