Huntingdon, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
Leidos Innovations UK Limited
with the following security products Trellix, Ivanti, ClearSwift, Yubikey Understanding of secure coding practices and common vulnerabilities (OWASP Top 10, SANS Top 25). Expertise in identity and access management (IAM), including RBAC, ABAC, JWT and Cookie based authentication. Incident detection and response in MOD environments. Security compliance and regulatory frameworks (e.g., NIST, CIS Benchmarks). Experience working with … and security teams. Ability to advocate for security best practices in a DevOps culture. Desirable Skills Containerisation Security Expertise in Kubernetes security (e.g., RBAC, network policies, pod security standards, secretsmanagement). Knowledge of container runtime security (e.g., container escapes, rootless containers, sandboxing). Image security best practices, including scanning, signing, and provenance verification. Secure deployment patterns using … CI/CD Security Secure CI/CD pipeline design with security testing using like Git and SonarQube. Implementation of Infrastructure as Code (IaC) security (e.g., Terraform, Ansible). Secretsmanagement in CI/CD pipelines using Vault or Kubernetes Secrets. Security automation and policy enforcement using tools like GitHub Actions, GitLab CI and Jenkins. Cloud & Infrastructure Security More ❯
OpenShift), CI/CD pipelines, and infrastructure as code (Terraform) Security integration experience across the DevSecOps lifecycle, including: SAST, DAST, SCA, and IAST tools (e.g., Checkmarx, Veracode, OWASP ZAP) Secretsmanagement tools like HashiCorp Vault Vulnerability management solutions such as Prisma Cloud Testing frameworks like Selenium Familiarity with JIRA, Confluence, and GitLab/Jenkins-based CI/ More ❯
OpenShift), CI/CD pipelines, and infrastructure as code (Terraform) Security integration experience across the DevSecOps lifecycle, including: SAST, DAST, SCA, and IAST tools (e.g., Checkmarx, Veracode, OWASP ZAP) Secretsmanagement tools like HashiCorp Vault Vulnerability management solutions such as Prisma Cloud Testing frameworks like Selenium Familiarity with JIRA, Confluence, and GitLab/Jenkins-based CI/ More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Arm Limited
pipelines using CloudBees and GitLab Build out observability with Prometheus, Grafana, OpenTelemetry, and Dynatrace Automate cloud deployments (AWS-first) using Terraform and platform tooling Improve security posture across IAM, secrets, and networking Help the team ship faster and safer by mentoring on DevOps and SRE practices We're solving for reliability, compliance, performance, and speed - at once. You'll … and data stack. Observability tooling, e.g. custom metrics pipelines, OpenTelemetry tracing, or integrations across telemetry stacks. Security engineering and practical understanding of IAM hardening, zero-trust network principles, and secretsmanagement in data-heavy systems. Passion for building reliable, secure, and user-friendly platforms and products. "Nice To Have": Exposure to Azure or GCP environments. Experience migrating to More ❯
End Security solutions and controls. Your work will directly impact our global user base Focusing on Automation. Developing automated, scalable security solutions. Efficiency is key Administering HashiCorp Vault for secretsmanagement Performing threat modeling and analysis to identify and mitigate security risks Managing PKI, TLS, and GPG infrastructure Applying cryptography and security design principles to cloud environments Documenting … playbooks, procedures, and architecture Providing subject matter expertise to software development groups to assist in cryptography and key management/authentication API. We are excited if you have Passion for cybersecurity with an effective and passionate drive to protect digital assets. Experience implementing custom, cloud-agnostic IAM at scale Navigate the complexities of working with consumer products, web apps … operating infrastructure in at least one public cloud provider (AWS, GCP, or Azure) Experience managing PKI/X.509 certificate infrastructure. Extensive experience supporting and implementing TLS/SSL certificate management systems Proficient with Token-based authentication services, Perfect Forward Security (PFS), Apache, Nginx, HAProxy Solid knowledge of Linux security and system operations. Benefits Roku is committed to offering a More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Arm Limited
the Kubernetes Platform as a Service product roadmap, including the orchestration of pods, services, deployments, stateful sets, networking (CNI plugins, ingress controllers, service meshes), along with expertise in DNS management (both internal and external), load balancing (open source and cloud-native), and the secure integration of certificates and secrets management. Support engineering teams in refactoring and containerising legacy … cloud or hybrid-cloud environments and data centers virtualisation (VMware, KVM, Harvester, etc.) technologies. Profound knowledge of Linux OS, containerisation, Kubernetes, networking, DNS, load balancers, storage, and certificates and secrets management. Expertise in IaC tools (Terraform, Pulumi, CFT, etc.) and the development of IaC modules and self-service platforms (internal developer portals) such as Backstage, Port, OpsLevel, etc. Competence … with networking tools such as Cilium Enterprise. "Nice To Have" Skills and Experience: Certified Kubernetes Administrator (CKA) or Certified Kubernetes Application Developer (CKAD) certifications. Experience working automated deployment and management EKS clusters Specialist or Architect level certifications in AWS, GCP, and Azure. Experience in deploying and supporting distributed systems on Kubernetes. In Return: Based in Cambridge UK, this is More ❯