Senior DevSecOps Engineer

Senior DevSecOps Engineer

Full-Time 60000 - 80000 £ / year (est.) No home office possible
H

At a Glance

  • Tasks: Design and build secure cloud capabilities while embedding security across the software delivery lifecycle.
  • Company: Join Holland & Barrett, a leader in health and wellness with a focus on innovation.
  • Benefits: Enjoy competitive salary, health cash plan, flexible working, and exclusive discounts.
  • Other info: Be part of a diverse team with excellent learning and development opportunities.
  • Why this job: Shape the future of security in software delivery and make a real impact.
  • Qualifications: Experience in DevSecOps, AWS, and strong communication skills required.

The predicted salary is between 60000 - 80000 £ per year.

We're building a secure, cloud-native platform that underpins how software is delivered across the organisation. Following a major digital transformation, our platform enables teams to ship high-quality software quickly, safely, and consistently—by default. As we continue to scale, security, reliability, and developer experience are treated as first-class concerns, designed in from the start. This role sits at the heart of that mission, shaping how security is applied at scale and how engineering teams confidently move from idea to production.

About The Role

As a DevSecOps Engineer, you'll be a hands‑on contributor to the design, build, and operation of our internal platform. This is a delivery-focused role, working closely with SRE, Cloud, and Application Security teams to embed security controls, guardrails, and best practices directly into tooling, pipelines, and infrastructure. You'll help define how security is applied at scale in a pragmatic, developer-friendly way, influencing engineering culture through code, automation, and clear technical standards—raising the baseline for security and operational excellence across the organisation.

The Tech Stack

  • Cloud & Networking: AWS (multi-account, IAM, VPC, managed services), hybrid/on-prem connectivity
  • Containers & Orchestration: Docker, Kubernetes (EKS, ECS)
  • Infrastructure as Code: OpenTofu, Terragrunt, CloudFormation
  • CI/CD: GitLab CI, reusable components, self-hosted runners
  • Security & Identity: Microsoft Entra, AWS IAM, OIDC, secrets management, policy-as-code
  • Observability: Centralised logging, metrics, tracing (e.g. Datadog, OpenTelemetry)
  • Platform Automation: Declarative configuration and infrastructure management
  • Internal Tooling: Developer-facing tools and services built with Python, Go, and modern frontend frameworks
  • Version Control: Git, merge requests, and code review workflows

What You’ll Do

  • Design, build, and operate secure cloud and platform capabilities
  • Embed security controls across the software delivery lifecycle by default
  • Build and maintain fast, reliable, secure CI/CD pipelines and reusable components
  • Automate security, compliance, and operational checks
  • Partner with engineering teams to remove friction and improve workflows
  • Contribute to platform architecture, standards, and technical direction
  • Promote ownership, continuous improvement, and pragmatic DevSecOps practice

Key Requirements

  • Hands‑on experience as a DevSecOps Engineer, Platform Engineer, Cloud Security Engineer, or similar role
  • Strong understanding of DevSecOps principles, including CI/CD, infrastructure as code, and security automation
  • Solid experience working in AWS environments
  • Practical knowledge of containerised workloads and Kubernetes
  • Clear communication skills and the ability to work effectively across teams
  • A focus on raising engineering standards through practical, scalable solutions

Why Holland & Barrett?

You will be joining at a point where the platform is still being actively shaped, with real scope to influence how security and delivery work across the organisation. This role offers autonomy, technical ownership, and the opportunity to build foundational capabilities that directly impact hundreds of engineers. We offer a competitive salary, comprehensive benefits, and flexible working arrangements.

What We Offer

  • Wellbeing & Lifestyle Benefits
  • Health Cash Plan
  • Life Assurance
  • Incentive Scheme - Based on company & personal performance
  • Virtual GP
  • Private Medical care
  • FREE at-home blood test kit
  • Holiday Purchase option
  • Pension Contribution scheme
  • Access to ‘Wellhub' with gyms, studios and wellbeing apps
  • Discounts & Savings
  • 25% Colleague Discount with FREE Standard Delivery
  • Exclusive Discounts from a wide range of partners
  • £/€50 Annual Product Allowance to spend in store
  • Learning & Development
  • Access to a variety of learning opportunities, including Level 2-5 Apprenticeships, Workshops and our Digital Learning Library AND MORE!

Holland and Barrett is an equal opportunity employer. We welcome diverse perspectives and are committed to creating an inclusive environment for all colleagues. We understand that when our colleagues are listened to, respected and valued for who they are, we build an organisation with belonging at its heart – making health and wellness a way of life for everyone.

Senior DevSecOps Engineer employer: Holland & Barrett

Holland & Barrett is an exceptional employer, offering a unique opportunity for a Senior DevSecOps Engineer to shape the future of our secure, cloud-native platform. With a strong focus on employee wellbeing, comprehensive benefits, and a culture that promotes continuous learning and technical ownership, you will play a pivotal role in enhancing security practices while enjoying flexible working arrangements and a supportive environment that values diverse perspectives.
H

Contact Detail:

Holland & Barrett Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior DevSecOps Engineer

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current employees at Holland & Barrett. A friendly chat can sometimes lead to opportunities that aren’t even advertised!

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to DevSecOps. This gives you a chance to demonstrate your hands-on experience and problem-solving abilities.

✨Tip Number 3

Prepare for the interview by brushing up on your knowledge of AWS, CI/CD, and security automation. Be ready to discuss how you've applied these in real-world scenarios—this is your time to shine!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the team at Holland & Barrett.

We think you need these skills to ace Senior DevSecOps Engineer

DevSecOps Principles
CI/CD
Infrastructure as Code
Security Automation
AWS
Kubernetes
Docker
GitLab CI
Python
Go
Clear Communication Skills
Collaboration Across Teams
Platform Architecture
Technical Standards

Some tips for your application 🫡

Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Senior DevSecOps Engineer role. Highlight your hands-on experience with AWS, CI/CD, and security automation to show us you’re the right fit!

Craft a Compelling Cover Letter: Use your cover letter to tell us why you’re passionate about DevSecOps and how you can contribute to our mission. Share specific examples of how you've embedded security in previous projects to demonstrate your expertise.

Showcase Your Technical Skills: Don’t hold back on showcasing your technical skills! Mention your experience with tools like Docker, Kubernetes, and GitLab CI. We want to see how you’ve used these technologies to improve workflows and security.

Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and get you into our system quickly!

How to prepare for a job interview at Holland & Barrett

✨Know Your Tech Stack

Familiarise yourself with the specific technologies mentioned in the job description, like AWS, Docker, and Kubernetes. Be ready to discuss your hands-on experience with these tools and how you've used them to enhance security and streamline CI/CD pipelines.

✨Showcase Your DevSecOps Mindset

Prepare examples that demonstrate your understanding of DevSecOps principles. Talk about how you've embedded security controls into the software delivery lifecycle and how you’ve collaborated with engineering teams to improve workflows and remove friction.

✨Communicate Clearly

Since this role involves working closely with various teams, practice articulating your thoughts clearly and concisely. Be prepared to explain complex concepts in a way that’s easy for others to understand, showcasing your ability to bridge gaps between technical and non-technical stakeholders.

✨Emphasise Continuous Improvement

Highlight your commitment to raising engineering standards through practical solutions. Discuss any initiatives you've led or contributed to that focused on automation, compliance checks, or operational excellence, and how they positively impacted your previous teams.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>