Security Engineer (DevSecOps) in London

Security Engineer (DevSecOps) in London

London Temporary 63000 - 77000 £ / year (est.) Home office (partial)
Sanderson Careers

At a Glance

  • Tasks: Build security into software and manage vulnerabilities across multiple teams.
  • Company: Dynamic tech company focused on innovative security solutions.
  • Benefits: Competitive pay, flexible work arrangements, and opportunities for professional growth.
  • Other info: Inclusive workplace valuing diversity and providing support throughout the recruitment process.
  • Why this job: Join a hands-on role that shapes the future of security in tech.
  • Qualifications: Experience in software engineering or DevOps with a strong focus on security.

The predicted salary is between 63000 - 77000 £ per year.

  • Security Engineer (Dev Sec Ops)
  • Rate -
  • Duration -
  • 6 months initial
  • Location -
  • London once a week on site

Reports to

Head of Security Architecture and Engineering

The role

This is a hands-on engineering role focused on building security into software as developed and deployed.

You'll work across three workstreams alongside three Senior Dev Sec Ops Engineers.

You'll pick up work where it's most needed, keep security consistent across all three workstreams and make sure nothing falls between them.

It suits a software, Dev Ops or platform engineer who has already built security into their day-to-day work and wants to take it further.

You'll get exposure to platform, AI and integration security.

What you'll do

  • Set up and tune security scanning in CI/CD pipelines, cut down false positives and help developers fix real issues.
  • Build shared security modules, policy libraries and templates that all three teams can reuse.
  • Review code, infrastructure-as-code and configuration changes for security issues.
  • Handle day-to-day vulnerability management, including pen test findings: prioritise what's genuinely exploitable, track fixes and check they've worked.
  • Help run threat modelling sessions in Irius Risk and turn the results into backlog tickets.
  • Look after secrets management, certificates and access reviews and keep security documentation, control evidence and CAB records up to date.
  • Be the go-to person when security is blocking a delivery team, cover for the senior engineers when priorities shift and flag where teams are solving the same problem in different ways.
  • What you'll need
  • Hands-on experience in software engineering, Dev Ops or platform engineering with a strong security focus, or in security engineering.
  • Experience with CI/CD and security scanning tools (SAST, SCA, secrets, Ia C and container scanning).
  • Python or Bash and Terraform.
  • AWS fundamentals including IAM, plus working knowledge of containers and Kubernetes.
  • A good grasp of vulnerability management, including CVSS, EPSS and judging whether an issue is really exploitable.
  • Clear written communication and comfortable switching between teams.
  • Nice to have
  • A security certification such as AWS Certified Security - CKS, Comp TIA Security+, GIAC or CISSP.
  • Exposure to policy-as-code or Istio.
  • Experience in a regulated environment.
  • An interest in AI security.

Reasonable Adjustments

Respect and equality are core values to us.

We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives.

Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason

, please let us know when you apply or talk to the recruiters directly so we can support you.

Security Engineer (DevSecOps) in London employer: Sanderson Careers

Join a forward-thinking company that values innovation and collaboration, offering a fully remote role as a Technical Architect. With a strong emphasis on employee growth, you will have access to continuous learning opportunities and the chance to mentor junior colleagues, all while contributing to impactful digital solutions. Our inclusive work culture fosters creativity and teamwork, making it an excellent environment for professionals looking to make a meaningful difference in technology.

Sanderson Careers

Contact Details:

Sanderson Careers Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Engineer (DevSecOps) in London

Get Engaged in Cybersecurity Communities

Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like Sanderson Careers.

Showcase Your Skills Publicly

Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.

Stay On Top of Temp Opportunities

Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like Sanderson Careers.

Make Contact with Recruiters Specialising in Cybersecurity

Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like Sanderson Careers.

We think you need these skills to ace Security Engineer (DevSecOps) in London

Security Engineering
DevSecOps
CI/CD Pipelines
Security Scanning Tools (SAST, SCA, IaC, Container Scanning)
Python
Bash
Terraform

Some tips for your application 🫡

Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives Sanderson Careers a clear view of your capabilities right off the bat.

Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.

Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at Sanderson Careers; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!

Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at Sanderson Careers.

How to prepare for a job interview at Sanderson Careers

Brush Up on Technical Skills

Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with Sanderson Careers for the Security Engineer (DevSecOps), be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.

Show Your Problem-Solving Prowess

Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!

Demonstrate Your Adaptability

As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at Sanderson Careers.

Bring Relevant Certifications

If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the Security Engineer (DevSecOps) role at Sanderson Careers.