Senior DevSecOps Engineer
Senior DevSecOps Engineer
AWS | EKS | Platform Security | Financial Services
Location: London/ Hybrid
Day Rate: Up to £650 (OUTSIDE IR35)
Contract: Initial 6 Months
We're supporting a major financial services organisation delivering a next-generation cloud platform that will underpin multiple strategic programmes and engineering teams.
As a result, we're looking for a hands-on DevSecOps Engineer to join the platform security function and help build the guardrails, controls and automation that allow product and engineering teams to scale securely by default.
This is an engineering-first role focused on AWS, Kubernetes, CI/CD security and platform protection. You'll work alongside Platform Engineering, Developer Platform and Security Architecture teams to ensure security is embedded into the platform rather than bolted on afterwards.
What You'll Be Doing
- Engineering and maintaining security controls across a multi-tenant AWS platform
- Implementing and managing IAM controls including SCPs, Permission Boundaries and ABAC
- Designing secure workload identity and tenant isolation controls
- Embedding security into CI/CD delivery pipelines
- Implementing container, IaC, secrets and software composition scanning
- Building software supply chain security controls including image signing, verification and SBOM generation
- Developing Policy-as-Code controls using OPA, Rego, Kyverno or similar technologies
- Securing and hardening EKS environments through RBAC, Network Policies and Admission Controllers
- Supporting mTLS, PKI and service-to-service authentication initiatives
- Driving remediation of security findings and penetration test outcomes
- Creating reusable security modules, patterns and golden paths for engineering teams
Essential Experience
- Proven experience within DevSecOps, Cloud Security Engineering or Platform Security
- Strong AWS security expertise, including IAM, SCPs, Permission Boundaries and ABAC
- Commercial experience securing Kubernetes environments, ideally EKS
- Terraform and Infrastructure-as-Code experience
- Building security controls into CI/CD pipelines
- Experience with workload identity, PKI and mTLS
- Strong understanding of software supply chain security
- Scripting or development capability using Python, Go or similar
- Ability to work effectively with engineers, platform teams and security architects
Desirable Experience
- Istio and Service Mesh security
- AWS Private CA and IAM Roles Anywhere
- Harness CI/CD
- OPA, Gatekeeper, Kyverno or OSCAL
- Sigstore, Cosign, SLSA and SBOM tooling
- Internal Developer Platform (IDP) security
- AWS Security Specialty, CKS, CISSP or equivalent certifications
- Experience within regulated financial services environments
Why Apply?
This is an opportunity to shape the security foundations of a major enterprise platform operating at significant scale. You'll be working on modern cloud-native security challenges across AWS, Kubernetes, platform engineering and software supply chain security, helping define the controls and guardrails that every engineering team will rely upon.
Reasonable Adjustments:
Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.
If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.