At a Glance
- Tasks: Join us as a Cyber Security Engineer, focusing on DevSecOps and ensuring secure coding practices.
- Company: Summer-Browning Associates supports clients in the Public Sector with top-notch cyber security solutions.
- Benefits: Enjoy hybrid working in London and gain valuable experience in a dynamic environment.
- Why this job: Make a real impact in cyber security while working with cutting-edge tools and technologies.
- Qualifications: Active SC Clearance and experience in DevSecOps, penetration testing, and cloud security are essential.
- Other info: Relevant certifications like OSCP or CREST/TIGER Scheme are a plus.
The predicted salary is between 43200 - 72000 £ per year.
Summer-Browning Associates is currently assisting our client in the Public Sector, who is looking for a Cyber Security Engineer for an initial six-month assignment.
Location: Hybrid working - London
Essential Skills:
- The ideal candidate will hold active SC Clearance and have a proven background in DevSecOps Cyber Security Engineering, showcasing the following skills and experience:
- Experience in penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure.
- Experience in integrating automated security tools into CI/CD pipelines (SAST, DAST, dependency checking, IaC, etc.) and making necessary recommendations.
- Proficiency in security testing tools such as Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.
- Ability to identify vulnerabilities and ensure secure coding practices.
- Experience in maintaining security assurance across the SDLC in line with NCSC guidelines.
- Knowledge of DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.).
- Expertise in securing cloud infrastructure, specifically in AWS and Azure.
- Experience in scripting and automation using Python and Bash.
- Relevant certifications, such as OSCP or CREST/TIGER Scheme.
- Experience delivering assessments under the CHECK scheme, either as a CHECK Team Member or Leader.
- Knowledge of UK public sector security and data protection standards, including NCSC guidelines and Cyber Essentials Plus.
To apply, please submit your latest CV for review.
Cyber Security Engineer - DevSecOp employer: Summer Browning Associates
Contact Detail:
Summer Browning Associates Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Engineer - DevSecOp
✨Tip Number 1
Make sure to network with professionals in the Cyber Security field, especially those who have experience in DevSecOps. Attend industry meetups or webinars where you can connect with potential colleagues and learn more about the latest trends and tools.
✨Tip Number 2
Familiarise yourself with the specific security tools mentioned in the job description, such as Burp Suite and OWASP ZAP. Consider setting up a personal project or lab environment to practice using these tools, which will help you demonstrate your hands-on experience during interviews.
✨Tip Number 3
Stay updated on the latest NCSC guidelines and Cyber Essentials Plus standards. Being knowledgeable about these regulations will not only enhance your understanding but also show your commitment to maintaining security assurance across the SDLC.
✨Tip Number 4
If you hold any relevant certifications like OSCP or CREST/TIGER Scheme, be prepared to discuss how you've applied the knowledge gained from these certifications in real-world scenarios. This will help you stand out as a candidate who can effectively contribute to the team.
We think you need these skills to ace Cyber Security Engineer - DevSecOp
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in DevSecOps and Cyber Security Engineering. Emphasise your skills in penetration testing, vulnerability assessments, and the specific tools mentioned in the job description.
Showcase Relevant Experience: Include specific examples of projects where you've integrated automated security tools into CI/CD pipelines. Mention any relevant certifications like OSCP or CREST/TIGER Scheme to strengthen your application.
Highlight Security Knowledge: Demonstrate your understanding of UK public sector security standards and NCSC guidelines. This will show that you are well-versed in the necessary regulations and practices for the role.
Proofread Your Application: Before submitting, carefully proofread your CV to ensure there are no errors. A polished application reflects your attention to detail, which is crucial in Cyber Security roles.
How to prepare for a job interview at Summer Browning Associates
✨Showcase Your Technical Skills
Be prepared to discuss your experience with penetration testing and vulnerability assessments. Highlight specific projects where you've used tools like Burp Suite or OWASP ZAP, and be ready to explain how you integrated security into CI/CD pipelines.
✨Demonstrate Your Knowledge of DevSecOps
Familiarise yourself with the principles and tools of DevSecOps. Be ready to discuss how you've applied these in previous roles, particularly in relation to securing cloud infrastructure in AWS and Azure.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think about how you would handle specific vulnerabilities or security breaches, and be ready to articulate your thought process clearly.
✨Understand Public Sector Standards
Brush up on UK public sector security and data protection standards, including NCSC guidelines and Cyber Essentials Plus. Being knowledgeable about these will show your commitment to compliance and security best practices.