Similar Jobs
Big Data • Fintech • Information Technology • Machine Learning • Financial Services
As a DevSecOps Engineer, you'll design, implement, and operate security services, maintain secure software platforms, troubleshoot issues, and enhance security practices while supporting engineering teams.
Top Skills:
AnsibleAWSAzureC#DockerElkGitlabGCPGrafanaJenkinsKubernetesLinuxPrometheusPythonTerraform
Fintech • Software • Financial Services
The role involves designing and maintaining Node.js integrations with Auth0, leading migrations, automating onboarding, and implementing CI/CD practices.
Top Skills:
Auth0AWSGithub ActionsNode.jsTerraformTypescript
Artificial Intelligence • Big Data • Healthtech • Machine Learning • Software • Database • Analytics
The DevSecOps Engineer will ensure security compliance, identify vulnerabilities across infrastructure and applications, and enhance service components for hosted solutions.
Top Skills:
AdAnsibleAWSAzureGpoIso 22301Iso 27001Iso 27017Iso 27018PowershellPuppetPython
Location: Remote
Position Type: Permanent Position
Overview:
As the DevSecOps Engineer, your primary responsibility will be to collaborate closely with infrastructure and software engineers, along with the QA team, to ensure that all components of our Cloud Landing Zones, tooling and services adhere to the prescribed security standards. You will play a key role in integrating security testing seamlessly throughout all project stages and driving the incorporation of automated testing within development pipelines.
Key Responsibilities:
- Landing Zone Delivery & Management: Be a driving force in the delivery of the Landing Zones and supporting ecosystem of tooling (CICD Pipelines etc) to secure core Cloud Services. This will initially be on AWS, with Azure & GCP to follow.
- Collaboration: Work closely with infrastructure and software engineers, as well as the QA team, to ensure that security measures are an integral part of the development process.
- Security Standards Adherence: Enforce prescribed security standards outlined in the security architecture throughout the development lifecycle.
- Security Testing Integration: Seamlessly integrate security testing at all project stages, including code reviews, CI/CD pipelines, and production environments.
- Automation Emphasis: Strive to maximize the incorporation of automated security testing within the development pipelines to identify vulnerabilities early and continuously monitor for threats.
- Threat Assessment: Perform threat assessments and vulnerability scans to identify potential security risks and provide recommendations for mitigation.
- Incident Response: Contribute to the development of incident response planning and participate in security incident investigations and resolution (automated where possible).
- Security Education: Provide security education and guidance to development teams to promote a culture of security awareness and best practices.
- Security Documentation: Maintain comprehensive security documentation, including security policies, procedures, and guidelines.
- Compliance: Ensure that security measures align with regulatory requirements and industry standards.
- Infrastructure Optimization: Identify opportunities for infrastructure optimization, cost reduction, and performance improvement.
Qualifications:
- Proven hands-on experience in security engineering or DevSecOps roles
- Strong understanding of security principles, practices, and technologies
- Proficiency in security testing tools and methodologies
- Excellent problem-solving and analytical skills
- Strong communication and collaboration skills
- Ability to work effectively in cross-functional teams
Preferred Qualifications:
- Relevant industry certifications (e.g., Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH), etc.)
- Experience with DevOps and CI/CD pipelines
- Knowledge of cloud security best practices
Key Technical Skills:
- Terraform (Terraform cloud / HCP Terraform knowledge an advantage)
- GitHub & GitHub Actions
- AWS Organisations
- AWS Control Tower (including Account Factory for Terraform - AFT)
- Python (including curating Python packages)
Centric Software London, England Office
222 Regent Street, Mayfair, London, United Kingdom, W1B 5TR
What you need to know about the London Tech Scene
London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.



