At a Glance
- Tasks: Design and maintain secure CI/CD pipelines while embedding security in cloud environments.
- Company: Rapidly growing tech organisation with a focus on innovation and collaboration.
- Benefits: Competitive salary, hybrid work model, 37 days leave, and company shares.
- Why this job: Join a high-performing team and lead the charge on modern security strategies.
- Qualifications: Experience in DevSecOps, CI/CD tools, and cloud security practices.
- Other info: Great opportunities for professional development and influencing security strategy.
The predicted salary is between 42000 - 84000 £ per year.
A rapidly growing technology-driven organisation is seeking a DevSecOps Engineer to strengthen security across cloud platforms and delivery pipelines. This role sits within a high-performing Platform Engineering function and blends security, DevOps and cloud engineering to embed security by design across modern, cloud-first environments. You will join a high-performing Platform Engineering team, working alongside cloud specialists, DevOps professionals, and software engineers to build secure, scalable platforms. This is an opportunity to be hands-on in architecture, engineering, and compliance, while leading the charge on modern, cloud-first security strategy.
DevSecOps Engineer Responsibilities:
- Design, build and maintain secure CI/CD pipelines, embedding security controls and tooling throughout the software development lifecycle.
- Integrate and manage security tooling for code analysis, dependency management, container security and vulnerability scanning.
- Implement and maintain security controls across cloud infrastructure using Infrastructure as Code, with a security-first mindset.
- Automate security testing processes, including SAST, DAST and IAST, enabling early detection and remediation of vulnerabilities.
- Conduct and support regular automated security assessments, vulnerability scans and remediation planning.
- Build and maintain monitoring, alerting and threat detection capabilities using SIEM and cloud-native monitoring platforms.
- Collaborate closely with DevOps, engineering and information security teams to promote a strong DevSecOps culture and best practices.
- Provide actionable security insights to reduce risk and strengthen platform resilience.
DevSecOps Engineer Requirements:
- Proven hands-on experience in DevSecOps or security-focused engineering roles within cloud environments.
- Strong experience with CI/CD tooling such as Jenkins, GitHub Actions, GitLab CI or similar.
- Practical expertise using Infrastructure as Code tools such as Terraform or CloudFormation.
- Deep knowledge of securing AWS-based environments, container platforms (Docker, Kubernetes) and cloud-native services.
- Experience implementing and managing security tools including SAST, DAST, vulnerability scanners and container security tools.
- Strong scripting and automation skills using Bash, Python or similar languages.
- Experience with monitoring, logging and SIEM platforms such as ELK, Elastic Cloud or Datadog.
- Solid understanding of secure coding principles, application security and compliance frameworks.
- Financial services or fintech experience is beneficial but not essential.
You will thrive if you are:
- Comfortable taking ownership and working autonomously in a high-accountability environment.
- Eager to learn and keep up with the latest in security practices and technologies.
- A confident communicator who can bridge the gap between technical and non-technical stakeholders.
- Passionate about secure-by-design principles and building secure systems from the ground up.
What's in it for me?
- Base Salary up to £70,000 (depending on experience).
- 5% company performance bonus.
- Value-based bonus of up to 10%.
- Hybrid working model with 3 days per week in the Leeds office.
- 37 days annual leave, inclusive of bank holidays, with flexibility to work public holidays and take alternative days off.
- Allocated company shares following successful completion of probation.
- Opportunities for professional development and technical growth.
- A collaborative, delivery-focused environment with scope to influence security strategy and mentor others.
We are an equal opportunities employer and welcome applications from all suitably qualified persons regardless of their race, sex, disability, religion/belief, sexual orientation or age.
Locations
DevSecOps Engineer in Leeds, Yorkshire employer: Fruition Group
Contact Detail:
Fruition Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land DevSecOps Engineer in Leeds, Yorkshire
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to DevSecOps. This gives potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by brushing up on common DevSecOps scenarios and challenges. Practising your responses will help you feel more confident and ready to impress.
✨Tip Number 4
Don’t forget to apply through our website! We love seeing applications directly from candidates who are excited about joining our team and contributing to our security strategy.
We think you need these skills to ace DevSecOps Engineer in Leeds, Yorkshire
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the DevSecOps Engineer role. Highlight your experience with CI/CD tools, cloud security, and any relevant projects that showcase your skills. We want to see how you fit into our tech-driven environment!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background aligns with our needs. We love seeing enthusiasm and a clear understanding of the role.
Showcase Your Skills: Don’t just list your skills; demonstrate them! If you've worked with tools like Terraform or Jenkins, mention specific projects where you used them. We’re looking for hands-on experience that shows you can hit the ground running.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and we’ll be able to track your application better. Plus, it shows you’re serious about joining our team!
How to prepare for a job interview at Fruition Group
✨Know Your Tech Stack
Make sure you’re well-versed in the specific tools and technologies mentioned in the job description. Brush up on your experience with CI/CD tools like Jenkins or GitHub Actions, and be ready to discuss how you've used Infrastructure as Code tools like Terraform in past projects.
✨Showcase Your Security Mindset
Prepare examples that highlight your experience with security practices in cloud environments. Be ready to talk about how you've integrated security into the software development lifecycle and any specific challenges you've faced in maintaining secure CI/CD pipelines.
✨Communicate Clearly
Since this role involves bridging technical and non-technical teams, practice explaining complex concepts in simple terms. Think of scenarios where you’ve had to communicate security insights to stakeholders who may not have a technical background.
✨Demonstrate Continuous Learning
Show your enthusiasm for staying updated with the latest security trends and technologies. Mention any recent courses, certifications, or conferences you've attended that relate to DevSecOps or cloud security, and how they’ve influenced your approach to secure system design.