DevSecOps Pentester Location: London, UK (Hybrid 23 days onsite) Type: Contract (6 months) | Rate: Market| Start Date: ASAP About the Role Our client, a leading global organization, is looking for an experienced DevSecOps Pentester to join a leading security team in London. Youll perform penetration tests and security assessments across CI/CD pipelines, cloud environments, and applications, integrating automated … Required Skills & Experience Strong application security knowledge (OWASP Top 10, API security). Manual pentesting experience on modern web apps, APIs, and CI/CD pipelines. Deep understanding of DevSecOps practices, secure SDLC, threat modeling, and secure design review. Proficiency in automating security checks using Jenkins, GitLab, Ansible, or similar tools. Secure coding knowledge and familiarity with common developer pitfalls. … fast-paced environments with developers and DevOps teams. Nice to Have OSCP, OSWA, CRTO, GWAPT, GPEN, eWPT certifications. Azure Security Engineer Associate or AWS Security Specialty. Kubernetes security or DevSecOps-focused certifications. Strong analytical, problem-solving, reporting, and customer engagement skills. Why Join Lead security testing in high-impact CI/CD and cloud-native projects. Collaborate with a cutting More ❯
delivering secure systems & tooling: Working directly with engineering teams to design and review system/data architectures through the development of patterns and principles Working within environments utilising DevOps, DevSecOps, SRE, CI/CD, Infrastructure & Security as Code (Docker, Git, Terraform) Managing technical assessments of security related technologies, vulnerability assessments and penetration tools and techniques Enabling & informing risk-based decisions More ❯
delivering secure systems & tooling: Working directly with engineering teams to design and review system/data architectures through the development of patterns and principles Working within environments utilising DevOps, DevSecOps, SRE, CI/CD, Infrastructure & Security as Code (Docker, Git, Terraform) Managing technical assessments of security related technologies, vulnerability assessments and penetration tools and techniques Enabling & informing risk-based decisions More ❯
Role/Job Title: DevSecOps Pentester Work Location: London (2 - 3days) The Role Conducts security assessments and penetration tests across CI/CD pipelines, cloud infrastructure, and application environments. Integrates automated security tools and practices within DevOps workflows to ensure continuous security validation. Identifies and exploits vulnerabilities in code, containers, APIs, and infrastructure-as-code before they reach production. Collaborates …/knowledge/experience: Strong application security background (OWASP Top 10, API security). Manual pentesting of modern web apps, APIs, and CI/CD pipelines. Deep understanding of DevSecOps practices, secure SDLC and proficient in threat modeling and secure design review. Proficiency in automating security checks within the CI/CD pipeline using tools like Jenkins, GitLab, and Ansible … findings and engaging in remediation cycles. Nice to have certifications (not mandatory): OSCP, OSWA, CRTO, GWAPT, GPEN, eWPT Azure Security Engineer Associate/AWS Security Specialty Kubernetes Security or DevSecOps-focused certifications More ❯
for schools and teachers. All products and services are built with teachers and schools needs at the core, ensuring they are innovative, trusted education solutions. Role overview: As a DevSecOps Engineer, you will be pivotal in designing and implementing best DevSecOps practices while fostering a culture of continuous integration and delivery (CI/CD). You will collaborate closely with … development and operations teams to streamline the software development lifecycle, ensuring that our systems are reliable, secure, and scalable. Key Responsibilities: Develop and execute a comprehensive DevSecOps strategy aligned with the company's goals. Continuously evaluate and enhance DevSecOps processes, tools, and methodologies. CI/CD Implementation: Design, implement, and manage robust CI/CD pipelines for automated software deployment More ❯
Senior Software Engineer, Product Security Engineering page is loaded Senior Software Engineer, Product Security Engineeringlocations: London, United Kingdomtime type: Full timeposted on: Posted Todayjob requisition id: RThe LSEG DevSecOps Engineering team inside the cyber security division is looking for Senior Software Engineers to build tools and automations to help secure software development for thousands of developers across the group. You More ❯
. Experience integrating performance and security testing into DevSeOps workflows to ensure optimal system performance and security compliance. Experience in embedding QA practices into Agile development processes, working within DevSecOps teams to ensure continuous testing and quality monitoring throughout the development lifecycle. Familiarity with cloud-native architectures and testing within environments like AWS, Azure, or GCP. Experience with containerized application More ❯
Outside IR35, Dev/Sec Ops Engineer, Azure, AWS, Technical Blueprint, Best practice, Regulatory Environment background, London + West Midlands. We are seeking a Senior Dev Sec Ops Consultant to lead governance, architecture guidance, and assurance for cloud and infrastructure More ❯
My client, a Professional Services company, is looking for an IT Security Engineer to join their client (in the Insurance sector) on site in London (Kent to be exact). Please note I am away from Thursday 14th August - Wednesday More ❯
recommend actions based on impact and likelihood of the risk to the business. Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, containerization, DevSecOps, and software-defined networking across a variety of environments and deployments. Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen. Experience utilizing Agile methodologies. Initiating change and deploying More ❯
recommend actions based on impact and likelihood of the risk to the business. Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, containerization, DevSecOps, and software-defined networking across a variety of environments and deployments. Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen. Experience utilizing Agile methodologies. Initiating change and deploying More ❯
comprised of security professionals with expertise in a diverse portfolio of security disciplines. What you'll do Collaborate with the DevOps team to design, implement, and manage a robust DevSecOps framework for our software development pipeline, integrating security tools and processes into our CI/CD workflows to enhance the developer experience Champion a security-first mindset within the development … team, promoting secure coding practices and providing guidance on secure development methodologies Create security focused DevSecOps policies and standards and provide training and awareness to the development team Develop Key Risk Indicators (KRIs) to track security posture across business lines, measure progress and identify outliers Implement and manage security testing tools and processes within the CI/CD pipeline, including … development pipeline, ensuring adherence to industry best practices and regulatory requirements Troubleshoot and resolve security issues throughout the software development lifecycle Stay abreast of emerging security threats, vulnerabilities, and DevSecOps best practices to continuously improve our security posture What's required 7-10 years of experience in software development, DevOps, or security engineering, with a strong focus on DevSecOps practices More ❯
standards, architecture principles design, and service level agreement definition Strong focus on promoting component re-use in architecture designs Experienced in software delivery including CI/CD and related DevSecOps practices, working with cloud-based platforms such as Azure or AWS Strong software design & development principles, with a focus on system stability, reusability and performance optimized for a global audience More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
DMS Computer Recruitment
Transit Gateway, S3, EC2, RDS, ELB, CloudTrail, Config, Inspector, GuardDuty, WAF, etc Clear understanding of current threats to Cloud infrastructure and advanced knowledge of securing such environments Experience in DevSecOps methodologies is considered a plus Experience building and deploying applications to the cloud (AWS, Azure, etc.) using Infrastructure as Code tools such as Terraform is considered a plus Expertise in More ❯
City of London, London, United Kingdom Hybrid / WFH Options
The MDU
and related technologies Excellent communication and collaboration skills Ability to work effectively with stakeholders across the organisation Proven track record of delivering successful M365-based solutions Familiarity with DevOps, DevSecOps Test Driven Development Release management and Agile methodologies, Branching Strategies, Version Control processes Experience using and implementing Git, GitHub, Azure Devops Git repositories Ability to evangelize Microsoft 365 technologies and More ❯
Build and customize access certifications , policy enforcement , and risk-based access controls . Develop and maintain audit-ready compliance reports (GDPR, HIPAA, PCI, CCPA, FISMA, etc.). Work with DevSecOps and Security Engineering to detect and respond to access-related threats. ?? What You Bring: Proven experience as a SailPoint Engineer (IdentityNow/IdentityIQ). Hands-on experience with Identity Security More ❯
On-premise/cloud-based infrastructures, SDLC pipelines, and deployments/configurations and definition/evangelism of best practices/standards - Software delivery, including CI/CD and related DevSecOps practices, working with cloud-based platforms such as Azure or AWS (preferred) - Experience working on AI/Gen AI implementations and underlying architecture, and models - Application testing, automation and performance More ❯
interpret large amounts of data Qualifications Essential Masters or equivalent qualification, specifically in a computer, scientific or mathematical subject or equivalent experience Evidence of specialist knowledge in Cloud and DevSecOps Disclosure and Barring Service Check This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure More ❯
What We're Looking For: Cloud Engineering: AWS (essential), plus understanding of multi-cloud environments Skills in Terraform, Python, and CI/CD tooling . Security as Code/DevSecOps: Experience embedding security into engineering pipelines. Governance & Strategy: Designing frameworks and governance models for enterprise technology. Domain Expertise: Strong knowledge of enterprise technology, security, or compliance . Ability to collaborate More ❯
What We're Looking For: Cloud Engineering: AWS (essential), plus understanding of multi-cloud environments Skills in Terraform, Python, and CI/CD tooling . Security as Code/DevSecOps: Experience embedding security into engineering pipelines. Governance & Strategy: Designing frameworks and governance models for enterprise technology. Domain Expertise: Strong knowledge of enterprise technology, security, or compliance . Ability to collaborate More ❯
City of London, London, England, United Kingdom Hybrid / WFH Options
INTEC SELECT LIMITED
years’ experience in security architecture. Proven hands-on experience with SIEM, Proxy, EDR, DLP, and SEG implementations. Strong expertise across cloud (AWS, Azure, GCP), networks, and applications. Familiarity with DevSecOps, zero trust, secure SDLC, and threat modelling. In-depth knowledge of Active Directory security and networking concepts. Relevant certifications (e.g., CISSP-ISSAP, TOGAF, SABSA, AWS/Azure Security). Excellent More ❯
of an agile, collaborative team Building and deploying cloud-native, containerised applications using technologies such as AWS Lambda, Spring Boot, NodeJS, Python FastAPI, Oracle, PostgreSQL and MongoDB Contributing to DevSecOps delivery pipelines, using tooling such as Atlassian, Jenkins, GitLab, OWASP and AWS services Applying Site Reliability Engineering principles to ensure solutions are resilient, reliable and cost-effective Supporting clients and More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Sanderson Recruitment
Security, with deep knowledge of: - AWS security controls, policies, and automation - Role-based and attribute-based access controls - Cryptographic protocols and secure key lifecycle management - Securing microservices, APIs, and DevSecOps best practices Skilled in penetration testing and hands-on coding with JavaScript, Java, or Python Strong understanding of vulnerability scanning, remediation, and vendor management Collaborative mindset with the ability to More ❯
Security, with deep knowledge of:- AWS security controls, policies, and automation- Role-based and attribute-based access controls- Cryptographic protocols and secure key lifecycle management- Securing microservices, APIs, and DevSecOps best practices Skilled in penetration testing and hands-on coding with JavaScript, Java, or Python Strong understanding of vulnerability scanning, remediation, and vendor management Collaborative mindset with the ability to More ❯
Employment Type: Full-Time
Salary: £100,000 - £120,000 per annum, Negotiable, Inc benefits
. Eligible for SC/DV security clearance. Desirable: Experience with defence or aerospace projects. Familiarity with standards like DO-178C, MISRA, or DEF STANs. Understanding of Agile or DevSecOps methodologies. Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of More ❯