£87 Per hour
Undetermined
Undetermined
London Area, United Kingdom
Summary: The role of a DevSecOps Engineer involves integrating security practices into DevOps processes to ensure secure and efficient software delivery. The engineer will collaborate with various teams to automate security measures, conduct vulnerability assessments, and respond to security incidents. This position offers an opportunity to significantly enhance the organization's security posture while driving innovative solutions. The ideal candidate will possess a strong background in security and DevOps methodologies.
Key Responsibilities:
- Integrate security best practices into the DevOps pipeline to ensure secure software delivery.
- Define policies for secure development, secret management, and artifact validation.
- Conduct regular vulnerability assessments and provide remediation recommendations.
- Collaborate with development, operations, and security teams to design and implement security solutions.
- Automate security processes, including vulnerability scanning and incident response.
- Monitor security metrics and prepare reports for stakeholders.
- Stay up-to-date with the latest security trends, threats, and technologies.
- Lead response to security incidents and post-incident investigations.
- Provide guidance and training to team members on security best practices.
Key Skills:
- Bachelor’s degree in Computer Science, Security Engineering, or related field.
- Proven experience in DevSecOps or related roles.
- Proficiency in scripting and automation (Python, Bash, YAML).
- Familiarity with security and DevOps tools (Jenkins, Docker, Kubernetes, security scanning tools).
- Strong understanding of cloud platforms (AWS, Azure, GCP) and their security features, especially SaaS integrations.
- Experience with CI/CD pipelines and secure software delivery.
- Knowledge of regulatory frameworks such as NIST CSF, ISO 27001, and Secure by Design principles.
- Excellent problem-solving, analytical, and communication skills.
- Certifications such as DevSecOps Professional, OSCP, or CKS are a plus.
Salary (Rate): £87.00/hr
City: London Area
Country: United Kingdom
Working Arrangements: undetermined
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Security Architect Security – DevSecOps Engineer We are seeking a skilled DevSecOps Engineer to join our team. In this role, you will integrate security practices into our DevOps processes, ensuring software is both secure and efficiently delivered. You will collaborate with development, operations, and security teams to automate security measures, conduct vulnerability assessments, and respond to security incidents in real time. This is an opportunity to make a significant impact on our security posture and help drive innovative solutions.
Key Responsibilities:
- Integrate security best practices into the DevOps pipeline to ensure secure software delivery.
- Define policies for secure development, secret management, and artifact validation.
- Conduct regular vulnerability assessments and provide remediation recommendations.
- Collaborate with development, operations, and security teams to design and implement security solutions.
- Automate security processes, including vulnerability scanning and incident response.
- Monitor security metrics and prepare reports for stakeholders.
- Stay up-to-date with the latest security trends, threats, and technologies.
- Lead response to security incidents and post-incident investigations.
- Provide guidance and training to team members on security best practices.
Required Qualifications:
- Bachelor’s degree in Computer Science, Security Engineering, or related field.
- Proven experience in DevSecOps or related roles.
- Proficiency in scripting and automation (Python, Bash, YAML).
- Familiarity with security and DevOps tools (Jenkins, Docker, Kubernetes, security scanning tools).
- Strong understanding of cloud platforms (AWS, Azure, GCP) and their security features, especially SaaS integrations.
- Experience with CI/CD pipelines and secure software delivery.
- Knowledge of regulatory frameworks such as NIST CSF, ISO 27001, and Secure by Design principles.
- Excellent problem-solving, analytical, and communication skills.
- Certifications such as DevSecOps Professional, OSCP, or CKS are a plus.