At a Glance
- Tasks: Design and build secure cloud platforms while embedding security into the software delivery lifecycle.
- Company: Join Holland & Barrett, a leader in health and wellness with a focus on innovation.
- Benefits: Enjoy competitive salary, health benefits, flexible working, and learning opportunities.
- Why this job: Make a real impact by shaping security practices for hundreds of engineers.
- Qualifications: Experience in DevSecOps, AWS, and strong communication skills are essential.
- Other info: Be part of a diverse team committed to creating an inclusive environment.
The predicted salary is between 48000 - 72000 £ per year.
About H&B
We are building a secure, cloud-native platform that underpins how software is delivered across the organisation. Following a major digital transformation, our platform enables teams to ship high-quality software quickly, safely, and consistently by default. As we continue to scale, security, reliability, and developer experience are treated as first-class concerns, designed in from the start. This role sits at the heart of that mission, shaping how security is applied at scale and how engineering teams confidently move from idea to production.
About the Role
As a DevSecOps Engineer, you’ll be a hands-on contributor to the design, build, and operation of our internal platform. This is a delivery-focused role, working closely with SRE, Cloud, and Application Security teams to embed security controls, guardrails, and best practices directly into tooling, pipelines, and infrastructure. You’ll help define how security is applied at scale in a pragmatic, developer-friendly way, influencing engineering culture through code, automation, and clear technical standards, raising the baseline for security and operational excellence across the organisation.
The Tech Stack
- Cloud & Networking: AWS (multi-account, IAM, VPC, managed services), hybrid/on-prem connectivity
- Containers & Orchestration: Docker, Kubernetes (EKS, ECS)
- Infrastructure as Code: OpenTofu, Terragrunt, CloudFormation
- CI/CD: GitLab CI, reusable components, self-hosted runners
- Security & Identity: Microsoft Entra, AWS IAM, OIDC, secrets management, policy-as-code
- Observability: Centralised logging, metrics, tracing (e.g. Datadog, OpenTelemetry)
- Platform Automation: Declarative configuration and infrastructure management
- Internal Tooling: Developer-facing tools and services built with Python, Go, and modern frontend frameworks
- Version Control: Git, merge requests, and code review workflows
We value strong fundamentals over specific tools—if you understand the principles, you’ll thrive here.
What You’ll Do
- Design, build, and operate secure cloud and platform capabilities
- Embed security controls across the software delivery lifecycle by default
- Build and maintain fast, reliable, secure CI/CD pipelines and reusable components
- Automate security, compliance, and operational checks
- Partner with engineering teams to remove friction and improve workflows
- Contribute to platform architecture, standards, and technical direction
- Promote ownership, continuous improvement, and pragmatic DevSecOps practices
Key Requirement
- Hands-on experience as a DevSecOps Engineer, Platform Engineer, Cloud Security Engineer, or similar role
- Strong understanding of DevSecOps principles, including CI/CD, infrastructure as code, and security automation
- Solid experience working in AWS environments
- Practical knowledge of containerised workloads and Kubernetes
- Clear communication skills and the ability to work effectively across teams
- A focus on raising engineering standards through practical, scalable solutions
Why Holland & Barrett?
You will be joining at a point where the platform is still being actively shaped, with real scope to influence how security and delivery work across the organisation. This role offers autonomy, technical ownership, and the opportunity to build foundational capabilities that directly impact hundreds of engineers. We offer a competitive salary, comprehensive benefits, and flexible working arrangements. If you enjoy building secure platforms that developers actually love, we’d love to hear from you.
What we offer
- Health Cash Plan
- Life Assurance
- Bonus Scheme - Based on company & personal performance
- Virtual GP
- Private Medical care
- FREE at-home blood test kit
- Holiday Purchase option
- Pension Contribution scheme
- Access to 'Wellhub' with gyms, studios and wellbeing apps
Discounts & Savings
- 25% Colleague Discount with FREE Standard Delivery
- Exclusive Discounts from a wide range of partners
- £/€50 Annual Product Allowance to spend in store
Learning & Development
Access to a variety of learning opportunities, including Level 2-5 Apprenticeships, Workshops and our Digital Learning Library AND MORE!
Holland and Barrett is an equal opportunity employer. We welcome diverse perspectives and are committed to creating an inclusive environment for all colleagues. We understand that when our colleagues are listened to, respected and valued for who they are, we build an organisation with belonging at its heart - making health and wellness a way of life for everyone.
Senior DevSecOps Engineer (38873) employer: Holland and Barrett
Contact Detail:
Holland and Barrett Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior DevSecOps Engineer (38873)
✨Tip Number 1
Network like a pro! Reach out to current employees at H&B on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for the interview process. It’s all about making connections!
✨Tip Number 2
Prepare for technical interviews by brushing up on your DevSecOps principles. Make sure you can discuss CI/CD, infrastructure as code, and security automation confidently. Practice coding challenges related to AWS and Kubernetes to show off your skills.
✨Tip Number 3
Showcase your hands-on experience! Be ready to share specific examples of how you've embedded security controls in previous roles. Use the STAR method (Situation, Task, Action, Result) to structure your answers during interviews.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining the team at H&B. Good luck!
We think you need these skills to ace Senior DevSecOps Engineer (38873)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Senior DevSecOps Engineer role. Highlight your hands-on experience with AWS, CI/CD, and security automation to show us you’re the right fit!
Craft a Compelling Cover Letter: Use your cover letter to tell us why you’re passionate about building secure platforms. Share specific examples of how you've embedded security in previous roles and how you can contribute to our mission.
Showcase Your Technical Skills: Don’t hold back on showcasing your technical prowess! Mention your experience with tools like Docker, Kubernetes, and infrastructure as code. We want to see how you can influence our engineering culture through your expertise.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any updates regarding your application status!
How to prepare for a job interview at Holland and Barrett
✨Know Your Tech Stack
Familiarise yourself with the specific technologies mentioned in the job description, like AWS, Docker, and Kubernetes. Be ready to discuss your hands-on experience with these tools and how you've applied DevSecOps principles in real-world scenarios.
✨Showcase Your Problem-Solving Skills
Prepare examples of how you've tackled security challenges in previous roles. Highlight your ability to embed security controls into CI/CD pipelines and how you've improved workflows for engineering teams. This will demonstrate your practical understanding of the role.
✨Communicate Clearly
Since this role involves working closely with various teams, practice articulating your thoughts clearly and concisely. Be prepared to explain complex concepts in a way that’s easy to understand, showcasing your communication skills and ability to collaborate effectively.
✨Emphasise Continuous Improvement
Discuss your commitment to raising engineering standards and promoting best practices. Share any experiences where you’ve contributed to platform architecture or influenced technical direction, as this aligns with the company’s focus on ownership and continuous improvement.