DevOps Engineer
Summary
Embed security into cloud-native platforms by building secure CI/CD pipelines, automating security testing, and hardening Azure/AWS environments for critical national programmes.
Reading Hybrid Working (4 days a week onsite)
Active SC Clearance Required
Up to £62 p/h Inside IR35
Are you an experienced security cleared SecDevOps Engineer looking to work on secure, cloud-native platforms supporting critical national programmes?
We're looking for a security-focused engineer to help embed security throughout the software development lifecycle, ensuring applications and infrastructure are secure, resilient and compliant. You'll work alongside software engineers, platform teams, architects and cyber specialists to deliver secure automation, cloud security and modern DevSecOps practices across enterprise environments.
As a DevSecOps Engineer, you'll design, build and maintain secure CI/CD pipelines, implement Infrastructure as Code, automate security testing, and help protect cloud platforms from evolving cyber threats.
You’ll play a key role in integrating security into every stage of software delivery while supporting secure cloud adoption, vulnerability management and operational resilience.
Key Responsibilities
- Design, implement and maintain secure CI/CD pipelines with integrated security controls.
- Embed automated security testing throughout the software delivery lifecycle.
- Develop and maintain secure Infrastructure as Code (IaC) solutions.
- Support secure cloud adoption across Azure, AWS and hybrid environments.
- Implement automated vulnerability scanning and remediation processes.
- Monitor applications, infrastructure and cloud environments for security threats.
- Work closely with development, platform and cyber security teams to embed security by design.
- Support incident response, threat detection and security investigations.
- Implement monitoring, logging and alerting solutions.
- Conduct application and infrastructure security reviews and risk assessments.
- Promote automation, continuous improvement and secure engineering best practices.
- Active SC Clearance.
- 5+ years' experience within DevSecOps, DevOps or Cloud Engineering
- Strong understanding of Secure Software Development Lifecycle (SSDLC).
- Experience building CI/CD pipelines using Azure DevOps, GitHub Actions, GitLab CI/CD or Jenkins.
- Hands-on experience with Infrastructure as Code using Terraform, Bicep, CloudFormation or Ansible.
- Experience implementing SAST, DAST, Software Composition Analysis (SCA), container security and secrets management tools.
- Strong knowledge of cloud security across Azure, AWS or Google Cloud.
- Experience securing Kubernetes and containerised environments.
- Good understanding of Identity & Access Management (IAM), authentication and privileged access management.
- Experience managing vulnerability assessments, remediation and compliance activities.
- Strong scripting skills using Python, PowerShell, Bash or similar.
- Experience with monitoring, logging and security alerting platforms.
Please note: Applicants must hold active SC Clearance and have experience working within Defence, Aerospace or another highly regulated environment. Hybrid working is available, with regular attendance required at the Reading office.