At a Glance
- Tasks: Join a dynamic team to secure hybrid research environments and automate infrastructure.
- Company: Be part of a cutting-edge organisation focused on high-performance computing and cloud solutions.
- Benefits: Enjoy flexible work options, competitive salary, and opportunities for professional growth.
- Why this job: Make an impact by embedding security in innovative research tools and workflows.
- Qualifications: 5+ years in DevSecOps or cloud security; strong programming skills in Python or Go required.
- Other info: Experience with Docker and Kubernetes is a plus; collaborate with top researchers and engineers.
The predicted salary is between 48000 - 72000 £ per year.
About the Role
We are seeking an experienced DevSecOps Engineer with deep domain knowledge in security-as-code practices to join a high-performance infrastructure engineering team. This team supports one of the world’s most advanced hybrid research environments, combining high-performance computing (HPC), large-scale data storage, and public cloud infrastructure. This hands-on technical role will focus on enabling secure, seamless workload portability between on-premise and cloud-based research platforms. You’ll architect and engineer solutions that enforce security from the ground up—partnering closely with infrastructure, research, and software teams.
Core Focus Areas
- Identity and Access Management (IAM)
- Secrets Management (e.g., HashiCorp Vault)
- Policy-as-Code (e.g., OPA, Kyverno, Gatekeeper)
Key Responsibilities
- Design, implement, and manage IAM systems, including provisioning, authentication, authorization, and role management across hybrid environments
- Develop and maintain DevSecOps pipelines that integrate compliance, secrets management, and access control as code
- Collaborate with researchers and infrastructure engineers to embed security-by-design into tools, workflows, and infrastructure platforms
- Build integrations with secrets management platforms, such as HashiCorp Vault
- Automate infrastructure deployments and compliance with Terraform, Ansible, and other IAC tools
- Monitor platform health and risk using Prometheus, Grafana, Splunk, and similar observability tools
- Write scalable, maintainable tooling in Python or Go to support platform automation and security
Preferred Qualifications
- 5+ years in DevSecOps, platform engineering, or cloud security roles
- Proven experience in designing and operating hybrid infrastructure environments (on-prem + AWS preferred)
- Deep understanding of security protocols like SAML, OAuth2, OIDC, LDAP
- Experience with policy-as-code frameworks such as OPA, Kyverno, Gatekeeper, or Sentinel
- Proficiency in secrets management, especially HashiCorp Vault
- Strong programming and scripting skills in Python or Golang
- Familiarity with Docker and Kubernetes is a plus
- Strong understanding of CI/CD pipelines using tools such as GitLab, Jenkins, GitHub Actions
DevSecOps Engineer employer: Levy Global
Contact Detail:
Levy Global Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land DevSecOps Engineer
✨Tip Number 1
Familiarise yourself with the specific tools and technologies mentioned in the job description, such as HashiCorp Vault, Terraform, and CI/CD pipelines. Having hands-on experience or projects showcasing these skills can set you apart during discussions.
✨Tip Number 2
Network with professionals in the DevSecOps field, especially those who work with hybrid infrastructures. Engaging in relevant online communities or attending industry meetups can provide insights and connections that may lead to opportunities.
✨Tip Number 3
Prepare to discuss real-world scenarios where you've implemented security-as-code practices. Be ready to share specific examples of how you've integrated security into workflows and infrastructure, as this will demonstrate your practical knowledge.
✨Tip Number 4
Stay updated on the latest trends and best practices in DevSecOps and cloud security. Being knowledgeable about current challenges and solutions in the field can help you engage in meaningful conversations during interviews.
We think you need these skills to ace DevSecOps Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in DevSecOps, platform engineering, and cloud security. Emphasise your familiarity with security-as-code practices and any specific tools mentioned in the job description, such as HashiCorp Vault or Terraform.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for security and infrastructure engineering. Discuss how your previous experiences align with the responsibilities of the role, particularly in designing IAM systems and developing DevSecOps pipelines.
Showcase Technical Skills: In your application, clearly outline your technical skills, especially in programming languages like Python or Go, and your experience with CI/CD pipelines. Mention any projects where you implemented security protocols or automated infrastructure deployments.
Highlight Collaboration Experience: Since the role involves working closely with researchers and infrastructure teams, include examples of past collaborations. Describe how you embedded security-by-design into workflows and tools, demonstrating your ability to work in a team-oriented environment.
How to prepare for a job interview at Levy Global
✨Showcase Your Security Knowledge
Make sure to highlight your experience with security-as-code practices during the interview. Be prepared to discuss specific projects where you implemented IAM systems or secrets management, particularly with tools like HashiCorp Vault.
✨Demonstrate Your Technical Skills
Since this role requires hands-on technical expertise, be ready to talk about your proficiency in programming languages like Python or Go. You might even want to prepare a small coding example or discuss a relevant project that showcases your skills.
✨Familiarise Yourself with Hybrid Environments
Understanding hybrid infrastructure is crucial for this position. Brush up on your knowledge of both on-premise and cloud environments, especially AWS, and be ready to discuss how you've designed or operated such systems in the past.
✨Prepare for Collaboration Questions
This role involves working closely with researchers and infrastructure engineers. Think of examples where you've successfully collaborated across teams to embed security into workflows and tools, and be ready to share those experiences.