e.g., Prometheus, Grafana, Azure Monitor). DevSecOps Practices & Toolchains: Understanding of secure software development lifecycle (SSDLC) and toolsets that integrate security into DevOps (e.g., Snyk, Aqua, SonarQube). Security Scanning & Vulnerability Assessment: Knowledge of static and dynamic analysis tools, and the ability to integrate them into pipelines. Incident Response: Familiarity More ❯
ARM templates Expertise in containerization technologies (Docker, Kubernetes) and container security Experience implementing CI/CD pipelines using GitHub Actions with integrated security scanning (Snyk, SonarQube) Experience of Azure Web Apps and Azure Functions Deep understanding of cloud security best practices and implementing Zero Trust architecture Experience with healthcare compliance More ❯
Java, or C++ Deep understanding of cloud security, network/system hardening, and cryptographic concepts Experience with modern security tooling (e.g., GitHub Advanced Security, Snyk, Veracode, Burp Suite, etc.) Proven ability to partner with engineering teams to drive secure design and implementation at scale Comfortable navigating fast-paced, high-stakes More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Container Solutions
Crossplane) Container orchestration, networking, and automation (Kubernetes, Docker) Scripting (Bash, Powershell, Python) Programming languages (Golang, Java, Ruby, Python) Vulnerability remediation and mitigation tools (BlackDuck, Snyk) We value your ability to adapt over deep specialization. In addition, we're currently seeking folks with strong experience in security and compliance to strengthen More ❯
CD Pipelines, ideally Azure DevOps IaC code tooling, including Terraform, Ansible, Harbor SCA/IAST/DAST tooling, e.g. Black Duck, Coverity, Codesight, JFrog, Snyk Automated Test tooling, ideally Selenium/Robot Framework Test Management Tooling ideally Azure Test Plans Secure Secrets Management, ideally Azure DevOps and Hashicorp Vault If More ❯
security scanning 🔹 Build and maintain REST API microservices using Java 17 (and occasionally Go), deploying them on OpenShift/Kubernetes 🔹 Integrate security tools like Snyk, BlackDuck, OWASP DependencyTrack, and Artifactory into our CI/CD pipelines 🔹 Work with Jenkins, TeamCity, and Tekton to optimize and maintain our DevSecOps toolchain 🔹 Collaborate More ❯
Tunbridge Wells, Kent, South East, United Kingdom Hybrid / WFH Options
GMA Consulting
protocols etc), cloud network design (VPNs, subnets, regions/zones etc), and integration related technologies (Auth0, APIM) · Expertise with SAST & SCA systems such as Snyk, Checkmarx · Experience with DAST systems such as OpenZAP, Qualys DAST (preferred) ideally with HTTP APIs · Ability to manage large scale software estates from a operational More ❯
GKE). Knowledge of CI/CD tools , such as Bitbucket Pipelines or similar platforms. Familiarity with security and compliance standards (e.g., PCI-DSS, Snyk, SonarCloud). Experience with scripting and coding for automation. A proactive, problem-solving mindset , and the ability to work effectively in a team. A formal More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nominet
mindset • Experience managing Endpoint Detection services such as SentinelOne, zScaler, or Crowdstrike • Experience in conducting security checks, such as SAST, DAST, and SCA with Snyk, OWASP ZAP, Burp Suite tools, vulnerability analysis in applications, and penetration testing skills. Familiarity with OWASP Testing Guide v3/4 and OWASP TOP 10. More ❯
Certified System Administrator certification Experience working in a consulting environment Experience working with industry-leading security operations tools (e.g., CyberXM, Rapid7, Qualys, Tenable, Prisma, Snyk, Veracode, Wiz, Orca, Tanium, Splunk, QRadar. Carbon Black, CrowdStrike, ProofPoint, Cisco, etc) Required Certifications: ServiceNow Certified Implementation Specialist certification in one or more of the More ❯
and service levels Minimum Requirements: 3-5 years' experience in DevSecOps or related roles Knowledge and working experience of security frameworks and tools - OWASP, Snyk, etc. Good team player and able to work on own initiative Proven experience in mentoring other team members Proven ability of establishing strong, effective working … methodologies Ability to receive and relay information through written and verbal communication Ability to think outside the box e.g. Edge cases Security tools: WIZ, Snyk, KICS, Qodana Linters and formatters: ESLint, dprint, Biome, semantic versioning, conventional commits Familiarity with DataDog or Site 24x7 is a bonus Familiarity with API Security More ❯