At a Glance
- Tasks: Integrate security into every phase of software development and automate compliance checks.
- Company: Dynamic fintech company focused on innovation and security.
- Benefits: Competitive salary up to £90k, hybrid work model, and professional growth opportunities.
- Other info: Exciting role with excellent career advancement in a fast-paced environment.
- Why this job: Join a high-impact team and secure cutting-edge cloud infrastructure.
- Qualifications: Experience in GCP, Kubernetes, and security tooling required.
The predicted salary is between 63000 - 77000 £ per year.
Dev Sec Ops Engineer, London, Hybrid, Up to £90k base, Fintech, GCP
We are looking for a Dev Sec Ops Engineer to be a key driver in integrating security into every phase of our Software Development Lifecycle.
You will join a high-impact team, responsible for securing a highly available, multi-tenant platform built on GCP and Kubernetes.
This role requires a proactive and automated approach to security.
You will be laying down the foundational security posture, automating compliance checks, and ensuring we not only meet but exceed the security requirements necessary for regulated financial services.
Key Responsibilities
- Own Security Tooling: Select, integrate, and maintain security tooling within our environments and CI/CD pipelines.
- Engineer Security Guardrails: Design, implement, and enforce automated security guardrails and policies across our cloud estate and CI/CD pipeline.
- GCP Security: Harden and secure our Google Cloud Platform environment, including IAM policies, network security, and resource configuration management.
- Compliance Automation: Work with compliance and governance teams to translate requirements into automated, verifiable infrastructure and deployment practices.
- Vulnerability & Patch
Management: Automate and manage the end-to-end process for identifying, triaging, and remediating security vulnerabilities in infrastructure, applications, and third-party dependencies.
- Developer Empowerment: Build and maintain 'golden path' templates for secure service deployment, enabling feature teams to ship code confidently and safely.
- Incident Response: Contribute expertise to the security incident response team, helping to swiftly manage and resolve security events.
- Deep, practical experience designing, managing, and securing high-availability infrastructure within GCP.
- Proficient in API security — reviewing, providing patterns, and upskilling engineers.
- Expert knowledge of Kubernetes (GKE) — network policies, container runtime security, and secrets management.
- Solid Infrastructure as Code (Ia C) skills using Terraform or Open Tofu.
- Hands-on experience with security tooling such as Aqua Security, Falco, Prisma Cloud, or similar CSPM/CWPP/CNAPP solutions.
- Proficient in at least one scripting/development language: Python, Golang, or Shell.
- Proven ability to build secure CI/CD pipelines with mandatory security checks (Git Lab CI, Git Hub Actions).
- Experience with Fin Tech-related certifications or frameworks: SOC2, ISO 27001, PCI DSS, DORA, or similar regulated environments.
- Relevant certifications: Google Cloud Professional Security Engineer, CKS (Certified Kubernetes Security Specialist), or CISSP.
- #J-18808-Ljbffr
DevSecOps Engineer, London, Hybrid, Up to £90k base, Fintech, GCP employer: Space Executive
Join a pioneering deep tech startup in the UK that is revolutionising industries by eliminating outdated systems and enabling real-world work to move at software speed. With a world-class team and a culture of high trust and ownership, you'll have the opportunity to make a significant impact from day one, backed by substantial funding and a clear path for growth. This is not just a job; it's a chance to be part of something transformative in a high-intensity environment where your contributions truly matter.