The DevSecOps Engineer role has been created to embed security into our engineering, DevOps and cloud delivery pipelines. Working closely with our Development, DevOps, Infrastructure and Security teams, you will engineer, automate and maintain security controls across our CI/CD pipelines, cloud workloads and application lifecycle.
Requirements
- Experienced in DevOps or platform engineering with a strong security mindset.
- Hands-on experience with at least one CI/CD platform (Azure DevOps preferred).
- Good understanding of application security principles (OWASP Top 10, SANS/CWE Top 25).
- Experience integrating or running security scanners: SAST, SCA, DAST, container scanning, IaC scanning.
- Experience with infrastructure as code (Terraform, ARM/Bicep, Helm).
- Familiar with cloud security (preferably Azure) and container security best practices.
- Capable of supporting vulnerability management processes and remediation workflows.
- Ability to collaborate with Software Engineering, DevOps, SRE, Cloud and Security teams.
- Strong communicator able to translate risk into engineering friendly language.
Benefits
- Diversity and inclusion throughout the business
- Career progression or training and development