At a Glance
- Tasks: Join us as a Cyber Security Engineer, focusing on DevSecOps and ensuring secure coding practices.
- Company: Summer-Browning Associates supports public sector clients in enhancing their cyber security.
- Benefits: Enjoy hybrid working in London with flexible hours and opportunities for professional growth.
- Why this job: Make a real impact in cyber security while working with cutting-edge tools and technologies.
- Qualifications: Active SC Clearance and experience in DevSecOps, penetration testing, and cloud security are essential.
- Other info: This is a six-month assignment with potential for extension based on performance.
The predicted salary is between 36000 - 60000 £ per year.
Summer-Browning Associates is currently assisting our client in the Public Sector, who is looking for a Cyber Security Engineer for an initial six-month assignment.
Location: Hybrid working - London
Essential Skills:
- The ideal candidate will hold active SC Clearance and have a proven background in DevSecOps Cyber Security Engineering, showcasing the following skills and experience:
- Experience in penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure.
- Experience in integrating automated security tools into CI/CD pipelines (SAST, DAST, dependency checking, IaC, etc.) and making necessary recommendations.
- Proficiency in security testing tools such as Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.
- Ability to identify vulnerabilities and ensure secure coding practices.
- Experience in maintaining security assurance across the SDLC in line with NCSC guidelines.
- Knowledge of DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.).
- Expertise in securing cloud infrastructure, specifically in AWS and Azure.
- Experience in scripting and automation using Python and Bash.
- Relevant certifications, such as OSCP or CREST/TIGER Scheme.
- Experience delivering assessments under the CHECK scheme, either as a CHECK Team Member or Leader.
- Knowledge of UK public sector security and data protection standards, including NCSC guidelines and Cyber Essentials Plus.
To apply, please submit your latest CV for review.
Cyber Security Engineer - DevSecOp employer: Summer Browning Associates
Contact Detail:
Summer Browning Associates Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Engineer - DevSecOp
✨Tip Number 1
Make sure to network with professionals in the Cyber Security field, especially those who have experience in DevSecOps. Attend industry meetups or webinars to connect with potential colleagues and learn about the latest trends and tools.
✨Tip Number 2
Familiarise yourself with the specific security tools mentioned in the job description, such as Burp Suite and OWASP ZAP. Consider setting up a personal project where you can practice using these tools to demonstrate your hands-on experience during interviews.
✨Tip Number 3
Stay updated on the latest NCSC guidelines and Cyber Essentials Plus standards. Being knowledgeable about these regulations will not only help you in interviews but also show your commitment to maintaining security assurance across the SDLC.
✨Tip Number 4
If you hold any relevant certifications like OSCP or CREST/TIGER Scheme, be prepared to discuss how you've applied the knowledge gained from these certifications in real-world scenarios. This will highlight your expertise and make you a more attractive candidate.
We think you need these skills to ace Cyber Security Engineer - DevSecOp
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in DevSecOps and Cyber Security Engineering. Focus on relevant skills such as penetration testing, vulnerability assessments, and your proficiency with security tools like Burp Suite and OWASP ZAP.
Highlight Relevant Certifications: If you hold certifications like OSCP or CREST/TIGER Scheme, be sure to prominently feature these in your application. This will demonstrate your commitment and expertise in the field.
Showcase Your Experience: Detail your experience with integrating automated security tools into CI/CD pipelines and maintaining security assurance across the SDLC. Use specific examples to illustrate your capabilities and achievements.
Follow Application Instructions: Ensure you submit your latest CV as requested. Double-check for any additional requirements mentioned in the job description, and make sure your application is complete before hitting send.
How to prepare for a job interview at Summer Browning Associates
✨Showcase Your Technical Skills
Be prepared to discuss your experience with penetration testing and vulnerability assessments. Highlight specific projects where you used tools like Burp Suite or OWASP ZAP, and be ready to explain your approach to identifying vulnerabilities.
✨Demonstrate Your DevSecOps Knowledge
Familiarise yourself with the principles of DevSecOps and be ready to discuss how you've integrated security tools into CI/CD pipelines. Mention any specific tools you've used, such as Veracode or SonarQube, and how they improved security in your previous roles.
✨Understand the Public Sector Landscape
Research the UK public sector security standards, including NCSC guidelines and Cyber Essentials Plus. Be prepared to discuss how these standards influence your work and how you ensure compliance in your security practices.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about past experiences where you had to address security vulnerabilities or implement secure coding practices, and be ready to share those stories.