2 of 2 SBOM Jobs in Sheffield

Devops Engineer

Hiring Organisation
Vallum Associates
Location
S11, Ecclesall, Sheffield, South Yorkshire, United Kingdom
Employment Type
Contract
Contract inside ir35- Hybrid Core Responsibilities: Design and maintain Groovy pipeline steps (build, test, package, scan, deploy). Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (SonarQube, Sonatype IQ,SAST/Container). Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency … scripts). Deep Maven/NPM/Python packaging knowledge; exposure to Helm/Terraform and container image metadata. Supply-chain security (SLSA, CycloneDX SBOM, digests). Experience with SonarQube, Sonatype IQ, container and SAST scanning. Proven performance tuning (caching, parallelization, dependency pruning). Compliance Awareness. ...

DevOps Engineer

Hiring Organisation
Vallum Associates
Location
Sheffield, UK
Employment Type
Full-time
Python, and Jenkins/Tekton Responsibilities: Design and maintain Groovy pipeline steps (build, test, package, scan, deploy). Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (SonarQube, Sonatype IQ, Optimize performance. Ensure artifact integrity. Refactor legacy scripts (remove global state, consolidate hashing … scripts). Deep Maven/NPM/Python packaging knowledge; exposure to Helm/Terraform and container image metadata. Supply-chain security (SLSA, CycloneDX SBOM, digests). Experience with SonarQube, Sonatype IQ, containers, and SAST scanning. Proven performance tuning (caching, parallelization, dependency pruning). ...