Lead DevSecOps Engineer

Lead DevSecOps Engineer

Full-Time 63000 - 77000 £ / year (est.) Home office (partial)
Bloomon

At a Glance

  • Tasks: Lead security initiatives and embed security practices in our tech environment.
  • Company: Join Europe's largest flower and gifting business with a vibrant tech team.
  • Benefits: Enjoy flexible working, generous holiday, and health perks.
  • Other info: Work remotely or hybrid with excellent growth opportunities.
  • Why this job: Make a real impact on security in a fast-paced, innovative setting.
  • Qualifications: Deep experience in security within AWS and GCP environments.

The predicted salary is between 63000 - 77000 £ per year.

Location: UK, Netherlands, or Remote (Europe)

Tech Stack: AWS (Fargate/ECS), GCP, Ruby on Rails, Angular, PostgreSQL, Terraform, Datadog

About Tech at Bloom & Wild Group

We’re Europe’s largest direct-to-consumer flower and gifting business (incorporating Bloom & Wild, bloomon, and Bergamotte). Our 65+ person Tech team builds the software powering our e-commerce platforms, production, and delivery logistics across Europe.

The Role

As our first Lead DevSecOps Engineer, you’ll own security across our product and technology estate. Operating at the Lead level and reporting into our Engineering Director, you'll act as a deep subject matter specialist, defining our 12–18 month security roadmap and embedding security into our "paved road" so doing the secure thing is the fast, default option for every engineer.

You’ll split your time roughly between:

  • Strategic Security Roadmap & Governance: Defining priorities (OWASP SAMM audits), managing vendors, responsible disclosures, and advising leadership on risk trade-offs with commercial clarity.
  • Shift-Left Controls & Developer Experience: Partnering with DX to build security into CI/CD pipelines (code/dependency scanning, secrets management, policy-as-code, feature flagging).
  • AI-First Security & Hands-On Engineering: Hardening authentication, securing agentic AI workflows against prompt injection and data leakage, and using agentic coding tools (e.g. Claude Code, Cursor) to accelerate remediation.

What we're looking for...

  • Deep experience embedding security into fast-moving product engineering environments across AWS (ECS/Fargate) and GCP.
  • Expertise in infrastructure-as-code, CI/CD security, least-privilege identity, policy-as-code, and continuous monitoring.
  • Real, personal experience using agentic coding tools to accelerate security workflows, and a strong awareness of how to secure AI systems themselves.
  • Ability to operate as an individual contributor/expert without a team beneath you, influencing squads and translating technical risk for senior stakeholders with candour and clarity.

Perks & Benefits

  • Flexibility: Core hours (10–4), hybrid or remote working, plus up to 45 days per year to work abroad.
  • Time Off: 25 days holiday + birthday + flexible bank holidays + a volunteering day + a day for wedding or moving house + the option to buy more annual leave.
  • Growth & Support: Health cash plan, equity option, flexible training framework, workplace nursery scheme, and generous product discounts.

Lead DevSecOps Engineer employer: Bloomon

At bloomon, we pride ourselves on being an excellent employer that fosters a dynamic and inclusive work culture. Our remote work flexibility, combined with weekly office collaboration, allows for a perfect balance of autonomy and teamwork, while our commitment to employee growth ensures that you will have ample opportunities to develop your skills and advance your career in performance marketing. Join us to be part of a creative team that values innovation and measurable impact in a vibrant environment.

Bloomon

Contact Details:

Bloomon Recruitment Team

We think you need these skills to ace Lead DevSecOps Engineer

AWS (ECS/Fargate)
GCP
Ruby on Rails
Angular
PostgreSQL
Terraform
Datadog