At a Glance
- Tasks: Lead secure software development practices and integrate security into CI/CD pipelines.
- Company: Join one of the UK's largest retail savings organisations managing over £200 billion.
- Benefits: Enjoy fully remote work and a contract role with potential for growth.
- Why this job: Make a real impact on security in a highly regulated environment while collaborating with tech experts.
- Qualifications: Experience in Application Security, DevSecOps, and familiarity with Cyber Assurance frameworks required.
- Other info: Contract duration is 3-6 months with opportunities to enhance your skills.
The predicted salary is between 24000 - 44000 £ per year.
Contract Duration: 3-6 months
Location: Fully Remote
Clearance: Eligible for SC or Active SC
About Us: We manage over £200 billion on behalf of the UK government and serve 25 million customers. As one of the UK’s largest retail savings organisations, security is central to everything we do.
Role Overview: We are seeking an experienced DevSecOps Security SME to join our technology team on a contract basis. In this pivotal role, you will drive the adoption of secure software development practices, integrate security controls into our CI/CD pipelines, and lead application and infrastructure security efforts within a complex and highly regulated environment.
Key Responsibilities:
- Champion application security best practices across development teams.
- Embed security into continuous integration and continuous deployment (CI/CD) pipelines, ensuring automated security testing and compliance.
- Collaborate with developers, engineers, and security teams to identify and remediate vulnerabilities early in the development lifecycle.
- Lead cyber assurance initiatives, maintaining security posture aligned with regulatory and organizational standards.
- Provide expert advice and guidance on secure development methodologies and tooling.
- Contribute to the design and implementation of secure infrastructure solutions.
Key Skills and Experience:
- Proven expertise in Application Security and vulnerability management.
- Strong background in DevSecOps, including experience with CI/CD pipeline security integration.
- Familiarity with Cyber Assurance frameworks and practices.
- Hands-on development experience with security automation and secure coding principles.
- In-depth knowledge of security tools, technologies, and best practices in cloud and on-premise environments.
- Ability to operate effectively in a regulated environment, balancing security with business needs.
Seniority level: Associate
Employment type: Contract
Job function: Finance and Information Technology
Industries: Government Relations Services, Financial Services, and Savings Institutions
AppSec Champion / DevSecOps Security SME employer: ManpowerGroup
Contact Detail:
ManpowerGroup Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land AppSec Champion / DevSecOps Security SME
✨Tip Number 1
Familiarise yourself with the latest trends and tools in DevSecOps. Being well-versed in current security practices and technologies will not only boost your confidence but also demonstrate your commitment to the role during discussions.
✨Tip Number 2
Network with professionals in the AppSec and DevSecOps communities. Engaging with others in the field can provide valuable insights and potentially lead to referrals, which can significantly increase your chances of landing the job.
✨Tip Number 3
Prepare to discuss specific examples of how you've implemented security measures in CI/CD pipelines. Real-world scenarios will showcase your expertise and problem-solving skills, making you a more attractive candidate.
✨Tip Number 4
Stay updated on regulatory standards relevant to the role. Understanding compliance requirements will help you align your experience with the company's needs, showing that you're ready to contribute from day one.
We think you need these skills to ace AppSec Champion / DevSecOps Security SME
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in application security and DevSecOps. Use specific examples that demonstrate your expertise in CI/CD pipeline security integration and vulnerability management.
Craft a Strong Cover Letter: In your cover letter, express your passion for security and how you can contribute to the company's mission. Mention your familiarity with cyber assurance frameworks and your ability to balance security with business needs.
Showcase Relevant Skills: Clearly list your technical skills related to security tools, technologies, and best practices in both cloud and on-premise environments. This will help the hiring team see your fit for the role at a glance.
Highlight Collaborative Experience: Since the role involves collaboration with developers and engineers, include examples of past projects where you successfully worked in a team to identify and remediate vulnerabilities early in the development lifecycle.
How to prepare for a job interview at ManpowerGroup
✨Showcase Your Expertise
Be prepared to discuss your experience in application security and DevSecOps. Highlight specific projects where you've successfully integrated security into CI/CD pipelines, as this will demonstrate your hands-on knowledge and ability to drive security initiatives.
✨Understand the Regulatory Landscape
Familiarise yourself with the regulatory standards relevant to the role. Be ready to explain how you have maintained compliance in previous positions and how you would approach this in a highly regulated environment.
✨Collaborative Mindset
Emphasise your ability to work collaboratively with developers and security teams. Prepare examples of how you've identified and remediated vulnerabilities early in the development lifecycle, showcasing your teamwork and communication skills.
✨Stay Current with Security Trends
Demonstrate your knowledge of the latest security tools and best practices. Discuss any recent developments in application security or DevSecOps that you find interesting, as this shows your commitment to continuous learning and staying ahead in the field.