At a Glance
- Tasks: Join us as a Cyber Security Engineer, focusing on DevSecOps and ensuring secure coding practices.
- Company: Summer-Browning Associates supports clients in the Public Sector with top-notch cyber security solutions.
- Benefits: Enjoy hybrid working in London and gain valuable experience in a dynamic environment.
- Why this job: Make a real impact in cyber security while working with cutting-edge tools and technologies.
- Qualifications: Active SC Clearance and experience in DevSecOps, penetration testing, and cloud security are essential.
- Other info: Relevant certifications like OSCP or CREST/TIGER Scheme are a plus.
The predicted salary is between 43200 - 72000 £ per year.
Summer-Browning Associates is currently assisting our client in the Public Sector, who is looking for a Cyber Security Engineer for an initial six-month assignment.
Location: Hybrid working - London
Essential Skills:
- The ideal candidate will hold active SC Clearance and have a proven background in DevSecOps Cyber Security Engineering, showcasing the following skills and experience:
- Experience in penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure.
- Experience in integrating automated security tools into CI/CD pipelines (SAST, DAST, dependency checking, IaC, etc.) and making necessary recommendations.
- Proficiency in security testing tools such as Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.
- Ability to identify vulnerabilities and ensure secure coding practices.
- Experience in maintaining security assurance across the SDLC in line with NCSC guidelines.
- Knowledge of DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.).
- Expertise in securing cloud infrastructure, specifically in AWS and Azure.
- Experience in scripting and automation using Python and Bash.
- Relevant certifications, such as OSCP or CREST/TIGER Scheme.
- Experience delivering assessments under the CHECK scheme, either as a CHECK Team Member or Leader.
- Knowledge of UK public sector security and data protection standards, including NCSC guidelines and Cyber Essentials Plus.
To apply, please submit your latest CV for review.
Cyber Security Engineer - DevSecOp employer: Summer-Browning Associates Ltd
Contact Detail:
Summer-Browning Associates Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Engineer - DevSecOp
✨Tip Number 1
Make sure to network with professionals in the Cyber Security field, especially those who have experience in DevSecOps. Attend industry events or webinars where you can connect with potential colleagues and learn more about the latest trends and tools.
✨Tip Number 2
Familiarise yourself with the specific security tools mentioned in the job description, such as Burp Suite and OWASP ZAP. Consider setting up a personal project or lab environment to practice using these tools effectively.
✨Tip Number 3
Stay updated on the latest NCSC guidelines and UK public sector security standards. This knowledge will not only help you in interviews but also demonstrate your commitment to maintaining security assurance across the SDLC.
✨Tip Number 4
If you have relevant certifications like OSCP or CREST/TIGER Scheme, be prepared to discuss how you've applied what you've learned in real-world scenarios. If you don't have these yet, consider starting the certification process to enhance your qualifications.
We think you need these skills to ace Cyber Security Engineer - DevSecOp
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in DevSecOps and Cyber Security Engineering. Focus on relevant skills such as penetration testing, vulnerability assessments, and your proficiency with security tools like Burp Suite and OWASP ZAP.
Highlight Relevant Certifications: If you hold certifications like OSCP or CREST/TIGER Scheme, be sure to prominently feature these in your application. This demonstrates your commitment and expertise in the field.
Showcase Your Experience: Detail your experience with integrating automated security tools into CI/CD pipelines and maintaining security assurance across the SDLC. Use specific examples to illustrate your contributions and achievements.
Follow Application Instructions: Ensure you submit your latest CV as requested. Double-check for any additional requirements mentioned in the job description, and make sure your application is complete before hitting send.
How to prepare for a job interview at Summer-Browning Associates Ltd
✨Showcase Your Technical Skills
Be prepared to discuss your experience with penetration testing and vulnerability assessments. Highlight specific projects where you've used tools like Burp Suite or OWASP ZAP, and be ready to explain how you integrated security into CI/CD pipelines.
✨Demonstrate Your Knowledge of DevSecOps
Familiarise yourself with the principles and tools of DevSecOps. Be ready to discuss how you've applied these in previous roles, particularly in relation to securing cloud infrastructure in AWS and Azure.
✨Understand the Public Sector Standards
Research UK public sector security and data protection standards, including NCSC guidelines and Cyber Essentials Plus. Showing that you understand these regulations will demonstrate your commitment to compliance and security best practices.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would handle specific vulnerabilities or security incidents, and be ready to articulate your thought process clearly.