Cyber Security Analyst, DevSecOps
Cyber Security Analyst, DevSecOps

Cyber Security Analyst, DevSecOps

Full-Time 36000 - 60000 £ / year (est.) Home office (partial)
E

At a Glance

  • Tasks: Secure development practices, monitor security, and foster collaboration in a dynamic environment.
  • Company: Heathrow, the world's most iconic airport, leading in sustainability and innovation.
  • Benefits: Competitive salary, performance bonuses, generous leave, and private health insurance.
  • Why this job: Join a team making a real impact on aviation's future while developing your skills.
  • Qualifications: 3+ years in Cyber Security or DevSecOps with strong application security knowledge.
  • Other info: Hybrid working model and a commitment to diversity and inclusion.

The predicted salary is between 36000 - 60000 £ per year.

Together, we’re working to welcome millions more passengers while ensuring aviation can continue to be a force for good by leading global efforts in sustainability. At Heathrow, you can be part of this providing solutions that make every journey better for millions each year. That means ensuring we meet the changing needs of the passengers, colleagues and partners who use our airport to work, travel, trade, shop, eat, explore and connect.

Our Solutions team covers project management, process improvement, business change, technology, cyber defence, masterplanning, infrastructure and procurement. It brings together people with the skills to deliver prestigious and often large-scale projects, from transforming terminals to making big reductions in our carbon emissions.

Your role will involve:

  • Secure Development & SDLC Integration: Embed secure development practices across all stages of the SDLC, from design and build through to deployment and maintenance. Ensure security requirements, patterns and controls are incorporated early into application and platform design. Promote and enable secure-by-design and security-by-default principles across the development community.
  • Advisory & Assessment: Provide hands-on security advisory support to software engineering teams, architects and product owners. Conduct security design reviews, code assessments and threat modelling activities. Assess development pipelines, tooling and environments to identify security weaknesses and improvement opportunities.
  • Monitoring & Detection: Monitor development environments, repositories and pipelines for poor security practices, exposed secrets, credentials and misconfigurations. Support the identification, triage and remediation of security findings in collaboration with development teams.
  • Security Automation & Tooling: Design, implement and maintain automated security checks within CI/CD pipelines, including static, dynamic and dependency scanning. Enable consistent and scalable security controls through automation, reducing manual overhead and improving developer experience. Work with platform and tooling teams to integrate security capabilities into development ecosystems.
  • Collaboration & Culture: Foster a collaborative, trust-based relationship between the Cyber Security team and the development community. Act as a security champion, influencing ways of working and promoting security awareness and ownership within engineering teams. Build strong working relationships with internal and external colleagues, partners and suppliers.
  • Continuous Improvement: Stay current with emerging threats, secure coding techniques and DevSecOps best practices. Contribute to the evolution of secure development standards, patterns and guidance. Support continuous improvement of Heathrow's application security maturity.

Experience: Minimum 3 years relevant technical experience in Cyber Security, application security, secure development or DevSecOps. Practical experience working within software development environments and modern SDLC practices. Proven experience working collaboratively within multi-disciplinary teams.

Essential Skills: Strong understanding of application security principles and common vulnerabilities (e.g., OWASP Top 10). Experience embedding security into SDLC and CI/CD pipelines. Ability to assess code, architectures and development practices from a security perspective. Familiarity with security tooling such as SAST, DAST, dependency scanning and secrets detection. Strong stakeholder engagement and relationship-building skills. Ability to communicate security concepts clearly and pragmatically to technical and non-technical audiences. Collaborative mindset with a focus on enablement rather than control.

About Us: There’s something so special about working at the world’s most iconic airport. Its sights. Its sounds. Its constant air of excitement. Heathrow is an amazing backdrop to a career filled with unique opportunities. Every day, you’ll discover a world full of fresh possibilities and end the day buzzing with stories to tell, as you encounter people from all cultures, nationalities and experiences. A world full of pride for what we do and no end of exciting career prospects to explore. It brings out the best in all of us. And inspires everyone to deliver on our ambitious plans.

Our rewards: We offer competitive salaries and excellent benefits that will support you now and the future. As well as performance-based annual bonuses and our longer-term Share in Success Bonus plans, we also offer generous annual leave allowances and market-leading pensions. With family friendly policies, access to private health insurance and a wide range of wellbeing tools, we’ll support you to be at your best inside and outside work. And of course, we’ll provide varied learning and development opportunities too. Here you’ll find everything you need for a fulfilling career journey that can take you in exciting directions.

Working Location: Our Hybrid working approach offers the opportunity for colleagues in some roles to work from home for an average of two days a week, providing the flexibility to work in an agile way whilst ensuring we deliver for the operational needs of Heathrow. Working arrangements vary from team to team and will be confirmed during the recruitment process. You’ll need to be based in the UK and within a commutable distance to Heathrow.

Sustainable Travel to work: Heathrow’s Sustainable Travel Guide sets out easy and sustainable travel options that everyone can access.

Equal Opportunities: As an equal opportunities employer, we encourage applications from all. We believe that diverse talent makes us stronger not least because we welcome passengers from all corners of the globe, every single day. Heathrow is an accessible place to work. With five diversity networks, we champion inclusivity and celebrate individuality.

Take the next step: Join Heathrow and discover unlimited opportunities to make a difference.

Cyber Security Analyst, DevSecOps employer: Entertainity AB

Heathrow Airport is an exceptional employer, offering a dynamic work environment where innovation meets sustainability. As a Cyber Security Analyst in the Solutions team, you'll enjoy competitive salaries, generous benefits, and a commitment to employee growth through varied learning opportunities. With a hybrid working model and a strong focus on inclusivity, you'll be part of a collaborative culture that values your contributions while making a positive impact on millions of passengers each year.
E

Contact Detail:

Entertainity AB Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Security Analyst, DevSecOps

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups or webinars, and connect with current employees at Heathrow. Building relationships can open doors that a CV just can't.

✨Tip Number 2

Show off your skills! If you’ve got a portfolio or any projects that highlight your cyber security expertise, make sure to share them during interviews. Real-world examples can really set you apart from the crowd.

✨Tip Number 3

Prepare for those tricky questions! Brush up on common interview scenarios related to DevSecOps and application security. Practising your responses will help you feel more confident and ready to impress.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of the Heathrow team.

We think you need these skills to ace Cyber Security Analyst, DevSecOps

Secure Development Practices
SDLC Integration
Security Advisory Support
Security Design Reviews
Code Assessments
Threat Modelling
Monitoring Development Environments
Security Automation
CI/CD Pipelines
SAST
DAST
Dependency Scanning
Stakeholder Engagement
Communication Skills
Collaborative Mindset

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cyber Security Analyst role. Highlight your experience with secure development practices and any relevant projects you've worked on. We want to see how your skills align with our needs!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you can contribute to our mission at Heathrow. Keep it engaging and personal – we love to see your personality!

Showcase Your Collaboration Skills: Since this role involves working closely with various teams, make sure to highlight your collaborative experiences. Share examples of how you've built relationships and influenced others in your previous roles – we value teamwork!

Apply Through Our Website: Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about what we do at Heathrow!

How to prepare for a job interview at Entertainity AB

✨Know Your Cyber Security Basics

Make sure you brush up on your understanding of application security principles and common vulnerabilities, especially the OWASP Top 10. Being able to discuss these concepts confidently will show that you’re not just familiar with the theory but can apply it in real-world scenarios.

✨Showcase Your DevSecOps Experience

Prepare specific examples from your past work where you've successfully embedded security into the SDLC and CI/CD pipelines. Highlight any tools you've used, like SAST or DAST, and how they improved security practices within your team.

✨Demonstrate Collaboration Skills

Since this role involves working closely with software engineering teams, be ready to discuss how you've built strong relationships in previous roles. Share examples of how you’ve acted as a security champion and influenced positive changes in security culture.

✨Stay Current with Trends

Research the latest trends in cyber security and DevSecOps best practices. Being able to discuss emerging threats and secure coding techniques during your interview will demonstrate your commitment to continuous improvement and staying ahead in the field.

Cyber Security Analyst, DevSecOps
Entertainity AB

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

E
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>