Luminance Logo

Luminance

DevSecOps Engineer

Posted Yesterday
Be an Early Applicant
In-Office
Cambridge, Cambridgeshire, England
Mid level
In-Office
Cambridge, Cambridgeshire, England
Mid level
Implement and automate security controls across cloud, CI/CD, and infrastructure. Harden AWS environments, embed SAST/DAST and scanning in pipelines, improve secrets and vulnerability management, and support detection, logging, and incident readiness.
The summary above was generated by AI

This is a fantastic opportunity to join Luminance, the pioneer of Legal-Grade™ AI for enterprise. Backed by internationally renowned VCs and named in both the Forbes AI 50 list of ‘Most Promising Private AI Companies in the World’ and Inc. 5000’s ‘Fastest Growing Companies in America’, Luminance is disrupting the legal profession around the globe.

We are hiring a hands-on DevSecOps Engineer to strengthen Luminance’s security engineering capability and embed security into our platform and development workflows. The DevSecOps Engineer will work across Platform (SRE), IT Infrastructure, and Security to implement secure controls, automate processes, and improve overall risk management practices. We are looking for someone who enjoys solving practical security engineering problems and building automation that makes secure development the default.

The successful candidate will focus on automation, control implementation, cloud security hardening, and delivering measurable improvements in our security posture.

Responsibilities

Security Engineering & Hardening

  • Improve cloud security posture (e.g. AWS Security Hub uplift, IAM optimisation, least privilege enforcement)
  • Implement and maintain secure configuration baselines across infrastructure
  • Support remediation of identified risks through structured improvement initiatives

DevSecOps & Automation

  • Embed security controls into CI/CD pipelines (SAST, DAST, dependency scanning, container scanning)
  • Build automation to reduce manual compliance evidence collection
  • Implement Infrastructure-as-Code guardrails and policy-as-code controls
  • Improve secrets management and access governance practices

Vulnerability & Control Management

  • Support vulnerability triage, prioritisation, and remediation tracking
  • Collaborate with engineering teams to resolve findings pragmatically
  • Improve detection quality and reduce false positives across monitoring tools

Resilience & Monitoring

  • Enhance logging, alerting, and incident readiness
  • Support security playbooks and response preparedness
  • Contribute to continuous security improvement initiatives

Requirements
  • Proven experience in DevSecOps, Cloud Security Engineering, or Infrastructure Security
  • Strong hands-on experience with CI/CD pipelines and automation tooling
  • Deep experience securing AWS (preferred) or Azure/GCP environments
  • Practical experience implementing and tuning security scanning and vulnerability management tools
  • Strong scripting/automation skills (Python, Bash, etc.)
  • Experience implementing Infrastructure-as-Code (Terraform, CloudFormation, etc.)

Desirable Experience

  • Container and Kubernetes security
  • Experience in compliance-driven environments (ISO 27001, SOC 2, NIST)
  • Experience building policy-as-code or automated guardrails
  • Exposure to incident response and threat detection engineering

Top Skills

Aws,Azure,Gcp,Aws Security Hub,Ci/Cd,Sast,Dast,Dependency Scanning,Container Scanning,Python,Bash,Terraform,Cloudformation,Kubernetes,Secrets Management,Infrastructure-As-Code,Policy-As-Code
HQ

Luminance London, England Office

6 Duke Street St James's, London, United Kingdom, SW11 6BN

Similar Jobs

14 Days Ago
In-Office
London, Greater London, England, GBR
Senior level
Senior level
Fintech • Payments • Financial Services
As a Senior DevSecOps Engineer, you will integrate security into CI/CD processes, design security tooling, implement policy-as-code, and champion secure engineering practices.
Top Skills: AWSBashGithub ActionsGitlab CiGoJenkinsPythonTerraform
17 Days Ago
In-Office
Reigate, Reigate and Banstead, Surrey, England, GBR
Senior level
Senior level
Insurance
The Senior DevSecOps Engineer will design and secure cloud platforms, embed security in software delivery, and mentor junior engineers.
Top Skills: AWSCi/CdKubernetesTerraformWiz
Yesterday
In-Office
Field, East Staffordshire, Staffordshire, England, GBR
Senior level
Senior level
Healthtech • Pharmaceutical
Lead technical initiatives and support product development for Navista Application Services, focusing on CI/CD pipelines, security practices, and systems reliability across multi-cloud environments.
Top Skills: Azure DevopsCi/CdConcourseDynatraceGitHarnessJenkinsKubernetesNew RelicSplunkTerraform

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account