At a Glance
- Tasks: Design and implement secure cloud infrastructure while ensuring compliance with healthcare regulations.
- Company: Join a dynamic team focused on security-first technology solutions in the medical sector.
- Benefits: Enjoy flexible working options, competitive salary, and opportunities for professional growth.
- Why this job: Shape the future of DevOps culture while making a real impact on healthcare technology.
- Qualifications: Strong experience with Infrastructure as Code, Azure, and healthcare compliance is essential.
- Other info: Be part of a growing team where your contributions directly influence our success.
The predicted salary is between 36000 - 60000 £ per year.
We are looking for a DevOps Engineer to strengthen our clients' security-first infrastructure and drive their technology platform forward. You will be responsible for implementing and maintaining robust Infrastructure as Code (IaaC) solutions while ensuring compliance with ISO27001 and medical device regulations.
In this role, you will architect and maintain our cloud infrastructure on Azure, focusing on security, scalability, and automation. This includes managing our CI/CD pipelines, implementing comprehensive monitoring solutions, and ensuring our infrastructure meets the highest security standards. You'll work closely with our engineering team to implement DevSecOps practices and maintain our SaaS platform's reliability and performance.
A key focus will be on strengthening our security posture through automated compliance checks, regular security audits, and infrastructure hardening. You'll also be responsible for implementing and maintaining disaster recovery solutions, managing access controls, and ensuring our infrastructure aligns with healthcare data protection requirements.
As an early member of our growing team, you'll have the opportunity to shape our DevOps culture and practices. You'll collaborate with our engineering team to establish best practices for infrastructure management, security protocols, and deployment strategies. Your expertise in startup environments and medical technology will be crucial in building scalable, compliant solutions that support our rapid growth while maintaining the highest standards of security and reliability.
Key Responsibilities:- Design and implement secure cloud infrastructure using Infrastructure as Code principles
- Establish and maintain security controls and monitoring systems aligned with ISO27001 requirements
- Build and maintain CI/CD pipelines with integrated security testing and compliance checks
- Implement automated security scanning and vulnerability management processes
- Develop and maintain disaster recovery and backup solutions for critical systems
- Configure and manage secure cloud environments in Azure, focusing on Web Apps and Functions
- Implement logging, monitoring, and alerting solutions for security events and system health
- Automate compliance checks and documentation for ISO27001 and ISO13485 requirements
- Collaborate with development teams to implement security best practices and DevSecOps processes
- Manage and maintain security protocols for handling sensitive healthcare data
- Strong experience with Infrastructure as Code using Terraform and Azure ARM templates
- Expertise in containerization technologies (Docker, Kubernetes) and container security
- Experience implementing CI/CD pipelines using GitHub Actions with integrated security scanning (Snyk, SonarQube)
- Experience of Azure Web Apps and Azure Functions
- Deep understanding of cloud security best practices and implementing Zero Trust architecture
- Experience with healthcare compliance requirements (ISO27001, ISO13485, HIPAA) and security controls
- Proven track record implementing automated security testing and vulnerability management
- Strong knowledge of monitoring and observability tools (Azure Monitor, Application Insights)
- Experience implementing secure networking and identity management solutions in Azure
- Strong communication skills with ability to collaborate on security requirements across teams
- Track record of building secure and compliant DevOps practices
- Experience with quality management systems in medical device software development
- Experience of penetration testing
- Background in implementing Agile methodologies
- Experience of startup environments
DevSecOps Engineer employer: Hlx Life Sciences
Contact Detail:
Hlx Life Sciences Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land DevSecOps Engineer
✨Tip Number 1
Familiarise yourself with the specific compliance standards mentioned in the job description, such as ISO27001 and ISO13485. Understanding these regulations will not only help you in interviews but also demonstrate your commitment to security in a healthcare context.
✨Tip Number 2
Showcase your experience with Infrastructure as Code, particularly using Terraform and Azure ARM templates. Be prepared to discuss specific projects where you've implemented these technologies, as practical examples can set you apart from other candidates.
✨Tip Number 3
Highlight your knowledge of CI/CD pipelines and security testing tools like GitHub Actions, Snyk, and SonarQube. Being able to articulate how you've integrated security into your deployment processes will resonate well with the hiring team.
✨Tip Number 4
Emphasise your soft skills, especially your communication abilities. Since you'll be collaborating closely with engineering teams, demonstrating that you can effectively convey security requirements and best practices is crucial for this role.
We think you need these skills to ace DevSecOps Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with Infrastructure as Code, Azure, and security best practices. Use specific examples that demonstrate your expertise in CI/CD pipelines and compliance with ISO27001.
Craft a Strong Cover Letter: In your cover letter, express your passion for DevSecOps and how your background aligns with the company's goals. Mention your experience in startup environments and your understanding of healthcare compliance requirements.
Showcase Relevant Projects: Include any relevant projects or experiences that showcase your skills in containerization, automated security testing, and disaster recovery solutions. Be specific about your role and the impact of your contributions.
Highlight Soft Skills: Don't forget to mention your strong communication skills and ability to collaborate across teams. These soft skills are crucial for working effectively in a DevSecOps environment and will set you apart from other candidates.
How to prepare for a job interview at Hlx Life Sciences
✨Showcase Your Technical Skills
Be prepared to discuss your experience with Infrastructure as Code, particularly using Terraform and Azure ARM templates. Highlight specific projects where you've implemented CI/CD pipelines and integrated security testing, as this will demonstrate your hands-on expertise.
✨Understand Compliance Requirements
Familiarise yourself with ISO27001, ISO13485, and HIPAA regulations. Be ready to explain how you've ensured compliance in previous roles, especially in relation to healthcare data protection and security controls.
✨Emphasise Collaboration and Communication
Since the role involves working closely with engineering teams, showcase your ability to collaborate effectively. Share examples of how you've communicated security requirements and best practices across teams to foster a security-first culture.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think about challenges you've faced in securing cloud infrastructure or managing vulnerabilities, and be ready to discuss how you approached these situations and the outcomes.