At a Glance
- Tasks: Join us as a DevSec Engineer and secure innovative gaming applications.
- Company: Super Group, a leading digital gaming company with a global presence.
- Benefits: Growth opportunities, supportive environment, and employee assistance programmes.
- Other info: Dynamic culture focused on innovation, adaptability, and teamwork.
- Why this job: Be part of a thrilling journey in the online gaming world and make a real impact.
- Qualifications: Strong application security knowledge and collaborative mindset required.
The predicted salary is between 60000 - 80000 € per year.
Kick-start your career in the online gaming world and experience the very latest in technology and innovation. Our global customer base is exploding and we need your skills to support us on this exciting journey!
We’re Super Group, the NYSE-listed digital gaming company behind some of the world’s leading Sports and iGaming brands, including Betway and Jackpot City. We’re a powerhouse built on decades of expertise across 22 countries – and with over 2,800 bright minds, we’re changing the game for good. Our mission is to give our customers a superclass entertainment experience.
We’re on a thrilling journey of growth and innovation, and we need passionate, driven individuals to join us. At Super Group, every day is action-packed, and we expect you to bring your A-game. In return, you’ll find a supportive environment where your skills can flourish and your career can soar.
As our DevSec Engineer you’ll play a key part in delivering secure applications and hands-on security support to our developers to ensure they are fixing the right things. Your drive and ideas will help us move faster, improve smarter, and stay ahead of the game.
Acting as a technical authority across development, platform, operations, and information security, the DevSec Engineer is a multi-disciplinary engineering role with a focus on application and platform security controls, working closely with development teams to improve security outcomes.
What you’ll do
- Take ownership of work that gives us our competitive edge, including:
- Integrate and operate application security controls within CI/CD pipelines, including:
- Static Application Security Testing (SAST)
- Dynamic Application Security Testing (DAST)
- Software Composition Analysis (SCA)
- Secrets detection and dependency risk scanning
- Support secure SDLC practices such as:
- Branch protection and quality gates
- Secure build and release controls
- Artifact integrity and validation checks
- Assist with threat modelling and secure design reviews in collaboration with architecture teams.
- Support developers in vulnerability triage and remediation.
- Tune security tools to reduce false positives and developer friction.
- Support audit, compliance, and evidence generation activities.
- Participate in security incident investigation related to application flaws.
- Ensure secure, compliant approaches are the default and easiest options for development teams to adopt.
- Configure and maintain security tooling integrations within CI/CD systems (e.g. GitHub Actions, GitLab CI, Jenkins, Azure DevOps) under agreed architectural standards.
- Ensure security controls operate consistently across teams and repositories.
- Governance, Risk & Assurance
- Define and document DevSec security standards, patterns, and decisions.
- Provide evidence and control mappings to support audits, risk assessments, and regulatory reviews.
- Identify and track DevSec-related risks and technical debt, driving remediation through process improvements rather than manual controls.
- Stakeholder Collaboration
- Influence security outcomes through collaboration and technical leadership rather than enforcement.
- Contribute to security enablement, awareness, and uplift initiatives focused on cloud-native and container security practices.
This list covers your core responsibilities – with plenty of room to stretch, explore and take on new challenges as we grow.
What you’ll bring
- Clear, confident communication (written and verbal), and the ability to breakdown complex ideas.
- A collaborative mindset, working smoothly with cross-functional teams to hit shared goals.
- Strong organisational skills and the ability to manage multiple projects without dropping the ball.
- Exceptional attention to detail and a commitment to high-quality work.
- Adaptability – you stay sharp, productive and positive in fast-moving environments.
- Strong grounding in application security concepts.
- Secure coding knowledge (OWASP Top 10, API security, dependency risk).
- Strong knowledge of SAST, DAST, SCA, and software supply-chain security concepts.
- Strong advocate for enablement-first security. Ability to influence engineering teams through collaboration and technical credibility.
- Hands-on expertise with containers and orchestration platforms (e.g. Docker, Kubernetes).
- Demonstrated experience implementing container security across build, registry, and runtime.
- Proven experience securing CI/CD pipelines and developer toolchains.
- Knowledge of Infrastructure as Code (Terraform, Bicep, CloudFormation, etc.).
- Secrets and key management.
- Cloud identity and access management.
- Solid understanding of information security frameworks (e.g. ISO 27001).
- Experience operating in regulated or audited environments.
- Able to design controls that are auditable without slowing delivery.
Desirable skills you’ve got up your sleeve
- In-depth knowledge of sports betting markets, including odds calculation, betting types and market trends.
- Previous experience in the online gaming or casino industry, with a strong understanding of player behaviour and industry regulations.
- Familiarity with gambling regulations and compliance requirements in various jurisdictions, ensuring adherence to legal standards.
- Experience in developing and executing customer retention strategies.
- Experience operating at scale in multi-team or multinational environments.
- Prior involvement in audits, regulatory reviews, or formal assurance activities.
Our values are non-negotiables
Our culture is underpinned by core values that are linked to key behavioural competencies. These competencies are essential for all employees in order for you to embed in and drive our culture forward:
- Adaptability
- Ownership and accountability
- Initiating action
- Resilience
- Team orientation
- Integrity
- Innovation
What you’ll get back
We invest in your growth and wellbeing, so you can bring your best:
- Supergrowth is real here. Our learning and development programmes give you the tools, training and opportunities to level up fast.
- Your progress matters. Our Performance tool ensures you get meaningful feedback to support your development and superdrive your career.
- Support that has your back. Our Employee Assistance Programme offers resources for you and your family.
At Super Group, your experience matters. We’re honest, fair, and focused on helping you succeed – and your work will have real impact from day one.
Should you not hear from us within 2 weeks, please assume your application has not been successful.
DevSec Engineer in London employer: Betway Group
At Super Group, we pride ourselves on being an exceptional employer that fosters a vibrant and innovative work culture. As a DevSec Engineer, you'll thrive in an environment that champions creativity and collaboration, with ample opportunities for professional growth through our dedicated learning and development programmes. Located in the heart of the online gaming industry, we offer a supportive atmosphere where your contributions will have a meaningful impact from day one.
StudySmarter Expert Advice🤫
We think this is how you could land DevSec Engineer in London
✨Tip Number 1
Get your networking game on! Connect with folks in the gaming industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to application security. This is your chance to demonstrate your technical prowess and creativity.
✨Tip Number 3
Prepare for interviews like a pro! Research common DevSec Engineer interview questions and practice your responses. Be ready to discuss your experience with SAST, DAST, and CI/CD pipelines in detail.
✨Tip Number 4
Don’t forget to apply through our website! It’s quick and easy, and it shows you’re genuinely interested in joining the Betway family. Plus, we love seeing applications come directly from our site!
We think you need these skills to ace DevSec Engineer in London
Some tips for your application 🫡
Be Yourself:When you're writing your application, let your personality shine through! We want to see the real you, so don’t be afraid to show off your unique skills and experiences that make you a great fit for the DevSec Engineer role.
Tailor Your Application:Make sure to customise your application to highlight how your skills align with what we’re looking for. Mention specific experiences that relate to application security and collaboration, as these are key for us at Super Group.
Keep It Clear and Concise:We appreciate clarity! Use straightforward language and get to the point quickly. Remember, we’re looking for strong communication skills, so make sure your application reflects that by being well-structured and easy to read.
Apply Through Our Website:Don’t forget to submit your application through our website! It’s quick and easy, and it ensures that your application gets to the right place. Plus, it shows us you’re keen to join the Betway family!
How to prepare for a job interview at Betway Group
✨Know Your Stuff
Make sure you brush up on application security concepts, especially the OWASP Top 10. Be ready to discuss how you've implemented security controls in CI/CD pipelines and your hands-on experience with tools like SAST and DAST.
✨Show Your Collaborative Side
Since this role involves working closely with development teams, be prepared to share examples of how you've successfully collaborated in the past. Highlight your ability to influence outcomes through teamwork rather than enforcement.
✨Be Ready for Technical Questions
Expect some deep dives into your technical knowledge. Prepare to explain complex ideas clearly and confidently, as communication is key in this role. Think about how you can break down intricate security concepts for non-technical stakeholders.
✨Demonstrate Your Adaptability
This position requires someone who thrives in fast-paced environments. Share experiences where you've had to adapt quickly to changes or challenges, showcasing your resilience and ability to manage multiple projects without dropping the ball.