Accepting Applications
Full-time
On-site
Posted 2 weeks, 5 days ago
5 views
0 applications
Job Description
This is a hands\-on DevSecOps position where you will embed security throughout the development lifecycle and help shape a security\-first engineering culture.
You’ll play a key role in building scalable, secure\-by\-design systems across cloud infrastructure, CI/CD pipelines, monitoring, and vulnerability management.
**Key Responsibilities:**
**Secure CI/CD**
Design, build and maintain secure CI/CD pipelines, embedding security tooling and best practices into the development lifecycle to ensure security by design.
**Infrastructure Security**
Implement and manage security controls across AWS environments. Secure infrastructure using Terraform with a security\-first IaC approach, and enhance container security across Docker and Kubernetes platforms.
**Vulnerability Management**
Conduct automated security assessments and vulnerability scans, support penetration testing activities, and drive remediation planning. Implement and optimise SAST, DAST and IAST tooling to identify risks earlier in the SDLC.
**Monitoring \& Threat Detection**
Develop monitoring and alerting capabilities to detect threats and anomalies. Implement SIEM and cloud\-native monitoring solutions (e.g. Elastic, Datadog) to provide actionable security insights.
**Collaboration**
Work closely with Engineering and InfoSec teams to embed DevSecOps best practices, promote secure coding standards, and ensure alignment with regulatory and compliance requirements.
**What We’re Looking For**
* Strong hands\-on experience with CI/CD tools (e.g. Jenkins, GitLab CI, GitHub Actions, CircleCI)
* Deep experience securing AWS environments
* Terraform or CloudFormation expertise
* Strong container security knowledge (Docker, Kubernetes)
* Scripting skills (Bash, Python)
* Experience with security tooling such as SonarQube, Snyk, OWASP ZAP, Trivy, tfsec, AWS Inspector
* Experience with SIEM and logging/monitoring tools (ELK, Elastic Cloud, Datadog)
* Strong understanding of secure coding practices and security frameworks
**Background**
* 3\+ years in DevSecOps or Security Engineering
* Degree in Computer Science, Information Security, or equivalent experience
* Relevant certifications (AWS Security, CKS, CISSP) advantageous
* Experience in fintech or regulated environments beneficial
Login to Apply
Don't have an account? Register