At a Glance
- Tasks: Design and maintain secure cloud infrastructure while collaborating with developers and product teams.
- Company: Join Immediate, home to beloved UK brands like Radio Times and Good Food.
- Benefits: Enjoy 25 days holiday, flexible working, and a supportive well-being culture.
- Why this job: Make a real impact on security and automation in a dynamic tech environment.
- Qualifications: Experience in AWS, CI/CD, and strong problem-solving skills required.
- Other info: Be part of a progressive culture with excellent career development opportunities.
The predicted salary is between 50400 - 67200 £ per year.
Immediate is home to some of the biggest and most loved consumer brands in the UK, including Radio Times, Good Food and BBC Gardeners World magazine. Our trusted, quality content reaches millions of people a month across digital, print, video, podcasts, apps and live events. We are here to inspire, fuel, encourage and educate.
About the role
We are seeking a DevSecOps Engineer to join our growing Platforms & Security team. This is a hands-on role for someone passionate about automation, cloud operations, and security by design. You will be responsible for ensuring our platforms, products, and infrastructure are secure, resilient, and scalable while working closely with developers, QA, and product teams.
Responsibilities
- Design, build, and maintain secure and scalable infrastructure in AWS using Terraform, Kubernetes, and Docker.
- Embed security into the CI/CD pipeline (Jenkins, GitHub Actions, CodePipeline) including SAST/DAST and dependency scanning.
- Collaborate with developers and product teams to promote DevSecOps practices, threat modelling, and secure coding standards.
- Conduct security assessments of applications, services, and infrastructure, identifying vulnerabilities and recommending remediation.
- Operate, tune, and extend monitoring, logging, and alerting systems for both performance and security.
- Manage DNS, CDN, caching, firewalls, load balancers, and WAFs to ensure secure and performant web delivery.
- Respond to and resolve security incidents and platform issues, driving continuous improvement and automation of responses.
- Keep documentation current, including runbooks, incident playbooks, and security procedures.
- Stay ahead of industry trends, emerging threats, and new DevSecOps tools.
Requirements
- Strong background in cloud infrastructure (AWS preferred: EC2, Lambda, RDS, Route53, ELBs, EKS).
- Proven experience with CI/CD automation and infrastructure-as-code (Terraform, Ansible, Jenkins, Git/GitHub).
- Proficiency in containerisation (Docker, Kubernetes) and managing production workloads.
- Solid understanding of security frameworks (CIS, OWASP) and common vulnerabilities (OWASP Top 10, misconfigurations, supply chain risks).
- Experience with application and infrastructure monitoring (e.g., Prometheus, Grafana, ELK, CloudWatch).
- Knowledge of Linux-based systems (LAMP stack, Nginx, Varnish, MySQL/Postgres, Mongo) with performance tuning and hardening experience.
- Strong grasp of networking and security protocols (TCP/IP, SSL/TLS, DNS, NAT, firewalls, load balancers, WAFs).
- Familiarity with code security tools (SAST, DAST, dependency scanners) and integrating them into pipelines.
- Excellent problem-solving, communication, and cross-team collaboration skills.
- Disaster recovery process and GDPR awareness.
Desired
- Knowledge of PCI DSS.
Benefits
- A relaxed working environment with regular socials including a summer festival.
- Supportive well-being initiatives and benefits, talks & workshops, and Mental Health First Aiders & Champions.
- 25 days holiday plus a day for your birthday.
- Our offices will be closed between Christmas and New Year's which are in addition to your annual entitlement.
- Tailored training and development through our in-house learning platform and LinkedIn Learning.
- A progressive and transparent culture focused on your development.
- Flexible / hybrid working plus early finish Fridays.
- Cycle to work scheme.
- Enhanced Family Policies including paternity, adoption and surrogacy leave.
- We also provide a pregnancy loss, fertility, and carers policy.
- Competitive pension plans and Life Assurance.
- A newly renovated modern office with lots of collaborative spaces.
Seniority level Mid-Senior level
Employment type Full-time
Equal Opportunity Employer Immediate is an equal opportunities employer. We will never treat anyone less favourably because of their sex, gender reassignment, pregnancy and maternity, marital/civil partnerships, sexual orientation, race, nationality, ethnic origin, age, religion or belief or disability. We are also committed to supporting applications from those who are returning to work following a career break, maternity leave or caring responsibilities.
DevSecOps Engineer in London employer: Immediate
Contact Detail:
Immediate Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land DevSecOps Engineer in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to DevSecOps. This gives potential employers a taste of what you can do and sets you apart from the crowd.
✨Tip Number 3
Prepare for interviews by brushing up on common DevSecOps questions and scenarios. Practice explaining your thought process and how you tackle security challenges. Confidence is key, so get comfortable talking about your experience!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are genuinely interested in joining our team at Immediate.
We think you need these skills to ace DevSecOps Engineer in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the DevSecOps Engineer role. Highlight your experience with AWS, Terraform, and CI/CD tools. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for automation and security by design. Let us know why you’re excited about joining our Platforms & Security team at Immediate.
Showcase Your Projects: If you've worked on relevant projects, don’t hold back! Include links to your GitHub or any other platforms where we can see your work. We love seeing practical examples of your skills in action.
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you get the best experience possible. We can't wait to hear from you!
How to prepare for a job interview at Immediate
✨Know Your Tech Stack
Make sure you’re well-versed in the technologies mentioned in the job description, especially AWS, Terraform, and Docker. Brush up on your knowledge of CI/CD pipelines and security frameworks like OWASP. Being able to discuss these confidently will show that you're ready to hit the ground running.
✨Showcase Your Problem-Solving Skills
Prepare to discuss specific examples where you've tackled security issues or improved infrastructure resilience. Use the STAR method (Situation, Task, Action, Result) to structure your answers. This will help interviewers see how you approach challenges and your ability to collaborate with teams.
✨Stay Current with Industry Trends
Familiarise yourself with the latest trends in DevSecOps and emerging threats. Mention any recent tools or practices you've explored, as this shows your commitment to continuous learning and improvement. It’s a great way to demonstrate your passion for the field.
✨Ask Insightful Questions
Prepare thoughtful questions about the company’s current projects, team dynamics, or their approach to security. This not only shows your interest in the role but also helps you gauge if the company culture aligns with your values. Plus, it gives you a chance to engage in a meaningful conversation.