At a Glance
- Tasks: Join us in developing secure infrastructure and automating delivery for impactful public sector projects.
- Company: A leading IT consultancy transforming the public sector with a human touch.
- Benefits: Competitive pay, flexible working, and opportunities for professional growth.
- Why this job: Make a difference in public services while working with cutting-edge technology.
- Qualifications: Experience in Infrastructure as Code and a passion for security best practices.
- Other info: Collaborative environment with a focus on learning and innovation.
The predicted salary is between 36000 - 60000 Β£ per year.
Methods Business and Digital Technology Limited is a Β£100M+ IT Services Consultancy who has partnered with a range of central government departments and agencies to transform the way the public sector operates in the UK. Established over 30 years ago and UK-based, we apply our skills in transformation, delivery, and collaboration from across the Methods Group, to create end-to-end business and technical solutions that are people-centred, safe, and designed for the future. Our human touch sets us apart from other consultancies, system integrators and software houses - with people, technology, and data at the heart of who we are, we believe in creating value and sustainability through everything we do for our clients, staff, communities, and the planet. We support our clients in the success of their projects while working collaboratively to share skill sets and solve problems. At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them. Predominantly focused on the public-sector, Methods is now building a significant private sector client portfolio. Methods was acquired by the Alten Group in early 2022.
Requirements
- The development, management and supporting of the infrastructure that underpins the platforms, applications, and data which support the business.
- Automating where possible to facilitate the rapid delivery of approved capabilities to their respective environments in a secure manner.
- Must have good experience in developing Infrastructure as Code to automate the creation of infrastructure from development all the way to production.
- Should be passionate about improving ways of working and best practices by understanding the customer and the market trends.
- Understanding the needs of stakeholders and conveying this to the target audience.
- Testing and examining code written by others and providing an approval as part of the governance and review process.
- Ensuring that systems are safe and secure against cybersecurity threats when developing by keeping in mind that the systems must be secure by design.
- Familiar with the NCSC secure design principles.
- Familiar with managing the security of platforms whether theyβre on cloud or on-premises, including administration of secrets, tokens, and certificates.
- Working with the team (business, architecture, engineers, security, data) to ensure that development and delivery follows established processes and works as intended.
- Planning out projects and being involved in project management decisions.
- Responsible for the design, security, and maintenance of on-prem/cloud infrastructure.
- Making and guiding effective decisions, explaining clearly how the decision has been reached with the ability to understand and resolve technical disputes across varying levels of complexity and risk.
- Communicating effectively across organisational, technical, and political boundaries to understand the context and how to make complex and technical information and language simple and accessible for non-technical audiences.
- Understanding of how to expose data from systems (for example through APIs), link data from multiple systems, and deliver streaming services.
- Ensuring that risks associated with deployment are adequately understood and documented.
- Integrating security features in the software development life cycle.
- Identification and probable security risks, with their mitigating strategies.
- Implementation of security controls.
- Monitoring the infrastructure and the threat to security.
- Ensuring regulatory compliances for standards of security.
- Early detection of security vulnerabilities.
- Faster deployment of secure software.
- By following better compliance with security standards and regulations.
- Greater visibility into security risks and threats.
- Have experience or familiarity with working in an agile delivery methodology.
Ideal Candidates will demonstrate:
- Experience working with many teams especially security would be beneficial.
- Solid infrastructure design experience for on-prem environments to implement or migrate applications and databases.
- Have experience with hybrid designs between on-premise and cloud.
- Solid experience in a range of technologies and be able to make assessments as to what is best to be used for the projects and the organisation. As well as suggest and develop innovative approaches within constrained projects and environments.
- Strong experience in software development change/release management processes and technical governance to fully understand the typical lifecycle and maintenance of live systems.
- Ability to work with containerization platforms such as Kubernetes, PKS, Docker; provisioning software including Ansible, Terraform, YAML; and application/infrastructure/data performance analysis and monitoring.
- Experience of functional and non-functional testing.
- Experience with automated deployment of applications, databases and infrastructure.
- Understanding of the government digital service (GDS) manual and standards across Discovery/Alpha/Beta/Live phases.
- Understanding of SaaS, PaaS, IaaS technologies, and the implications of their use compared with bespoke development.
- Being able to provide training, support, and mentoring to the wider business.
- Knowledge of how to ensure that risks associated with deployment are adequately understood and documented.
Desirable Skills & Experience:
- Worked as part of a system support team managing live systems and triaging & resolving incidents to resolution, including management of known defects and issues.
- Worked as part of a multi-disciplinary project team.
- Experience with Terraform and YAML to deploy on-prem/cloud infrastructure.
- Experience with automation tools to build and deploy containerized applications.
- Experience implementing effective instrumentation to monitor applications.
- Experience implementing SAST and DAST tooling in deployment pipelines like Trivvy and SonarQube.
- Experience with on-prem DevOps tooling.
This role will require you to have or be willing to go through Security Clearance. As part of the onboarding process candidates will be asked to complete a Baseline Personnel Security Standard; details of the evidence required to apply may be found on the government website Gov.UK. If you are unable to meet this and any associated criteria, then your employment may be delayed, or rejected. Details of this will be discussed with you at interview.
DevSecOps (Contract) in Malvern employer: Methods Business and Digital Technology
Contact Detail:
Methods Business and Digital Technology Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land DevSecOps (Contract) in Malvern
β¨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works in DevSecOps. You never know who might have the inside scoop on job openings!
β¨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those involving Infrastructure as Code or security implementations. This gives potential employers a tangible look at what you can do and sets you apart from the crowd.
β¨Tip Number 3
Donβt be shy about reaching out directly to companies youβre interested in, like Methods! A quick email or LinkedIn message expressing your interest can go a long way. Plus, applying through our website shows you're serious about joining the team.
β¨Tip Number 4
Prepare for interviews by brushing up on your communication skills. Be ready to explain complex technical concepts in simple terms. Remember, itβs not just about what you know, but how well you can share that knowledge with others!
We think you need these skills to ace DevSecOps (Contract) in Malvern
Some tips for your application π«‘
Tailor Your CV: Make sure your CV is tailored to the DevSecOps role. Highlight your experience with Infrastructure as Code, automation, and security practices. We want to see how your skills align with what weβre looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why youβre passionate about this role and how your background makes you a great fit. Donβt forget to mention your understanding of the public sector and its unique challenges.
Showcase Your Projects: If youβve worked on relevant projects, make sure to include them! Whether itβs automating deployments or enhancing security measures, we love seeing real-world examples of your work and how youβve tackled challenges.
Apply Through Our Website: We encourage you to apply directly through our website. Itβs the best way to ensure your application gets into the right hands. Plus, it shows us youβre keen on joining our team at Methods!
How to prepare for a job interview at Methods Business and Digital Technology
β¨Know Your Tech Inside Out
Make sure youβre well-versed in the technologies mentioned in the job description, like Terraform, Kubernetes, and Docker. Brush up on your Infrastructure as Code skills and be ready to discuss how you've used these tools in past projects.
β¨Understand the Security Landscape
Since this role focuses heavily on security, familiarise yourself with NCSC secure design principles and be prepared to discuss how youβve integrated security into the software development lifecycle. Think of examples where you identified risks and implemented controls.
β¨Showcase Your Collaboration Skills
This position requires working with various teams, especially in a multi-disciplinary environment. Be ready to share experiences where you successfully collaborated with different stakeholders, explaining complex technical concepts to non-technical audiences.
β¨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving abilities and decision-making processes. Think of scenarios where you had to make tough calls regarding infrastructure design or security measures, and be ready to explain your thought process clearly.