Release Engineer
- Location
- Greater London, England, United Kingdom
into environments with zero internet connectivity. Enforce Software Supply Chain Security: Implement cryptographic signing (e.g., Sigstore/Cosign, SLSA provenance), Software Bill of Materials (SBOM) generation, and automated vulnerability gating across all build pipelines. Automate Infrastructure-as-Code (IaC): Maintain release-side IaC and GitOps delivery frameworks (ArgoCD, Flux, Terraform … premise, edge, or air-gapped systems). Supply Chain Security Fluency: Solid understanding of build integrity concepts, artifact signing, provenance tracking, vulnerability scanning, and SBOM standards. CI/CD & GitOps Mastery: Proven experience designing enterprise pipelines (GitHub Actions, GitLab CI, Tekton, ArgoCD) with robust testing, canary/blue-green strategies ...