DevSecOps Engineer

DevSecOps Engineer

Full-Time 48000 - 72000 £ / year (est.) No home office possible
Teya Services Ltd

At a Glance

  • Tasks: Join us to embed security into our CI/CD pipelines and enhance developer workflows.
  • Company: Teya, a dynamic payment and software service provider based in London.
  • Benefits: Enjoy competitive salary, continuous learning, and a supportive community.
  • Why this job: Make a real impact on small businesses while working with cutting-edge security technologies.
  • Qualifications: 5+ years in security engineering or DevSecOps with hands-on CI/CD experience.
  • Other info: Be part of an inclusive team that values diverse perspectives and fosters growth.

The predicted salary is between 48000 - 72000 £ per year.

Hello! We’re Teya. Teya is a payment and software service provider, headquartered in London serving small, local businesses across Europe. Founded in 2019, we build easy to use, integrated tools that enable our members to accept payments and boost business performance. At Teya we believe small, local businesses are the lifeblood of our communities. We’re here because we don’t believe there’s a level playing field that gives small businesses with a fighting chance against the giants of the high street. We’re here because we see banks and legacy service providers making things harder for them. We don’t think the best technology or the best service should be reserved for those with the biggest headquarters. We’re here to fight for a future where small, local businesses can thrive, and to commit the same dedication they offer all of us. Become a part of our story. We’re looking for exceptional talent to join our mission. We offer a chance to create impact in a high-energy and connected culture, while benefiting from continuous learning opportunities, a supportive community which is proud to serve our mission, and comprehensive benefits.

Your Mission

As a Senior DevSecOps Engineer (Security Tooling & Enablement), you will be responsible for embedding automated security controls and guardrails into our CI/CD pipelines, cloud platforms, and developer workflows. You’ll build and operate internal security tooling and integrations that enable secure delivery at scale—focusing on automation, low-friction developer experience, and high-quality security feedback loops. You will partner closely with platform, cloud, AppSec, and SecOps teams to deliver scalable, reliable, and friction-reducing security capabilities across the engineering organisation.

Responsibilities

  • Security in CI/CD & Delivery Workflows
    • Integrate and maintain security checks (SAST, DAST, SCA, secrets scanning) into CI/CD pipelines.
    • Provide fast, actionable, low-noise feedback to developers.
    • Embed infrastructure and application scanning into automated deployments.
  • Security Tooling & Platform Engineering
    • Design, build, and operate internal security services, APIs, CLIs, and automation workflows.
    • Apply strong software engineering practices to security tooling (testing, observability, version control).
    • Treat security tooling as a product with clear documentation and support.
  • Policy-as-Code & Guardrails
    • Implement and maintain policy-as-code guardrails for IaC, Kubernetes manifests, cloud accounts and identity configurations.
    • Work with platform teams to define secure defaults and self-service patterns.
  • Platform Security & Detection Pipelines
    • Support vulnerability scanning platforms and security telemetry pipelines.
    • Ensure high-quality structured security data flows to SIEM/log platforms.
    • Enable automated response actions via integrations and runbooks.
  • DevSecOps Culture & Enablement
    • Champion secure engineering practices and a shared responsibility mindset.
    • Drive enablement activities (office hours, guides, training) to improve adoption of secure patterns.
    • Contribute to blameless post-incident reviews and continuous improvement.
  • Automation, AI & Operational Metrics
    • Leverage automation and AI to reduce manual toil and enrich security findings.
    • Define and track metrics such as time-to-feedback, signal-to-noise, and tooling adoption.

Requirements

  • 5+ years in security engineering, DevSecOps, or platform engineering with significant security integration experience.
  • Hands-on experience embedding security into CI/CD (SAST/DAST/SCA, container scanning, secrets detection).
  • Proficiency with CI/CD platforms (e.g., GitHub Actions, GitLab CI, Jenkins) and IaC (e.g., Terraform).
  • Strong software engineering and automation skills (Python, Go, Bash, or similar).
  • Deep cloud-native experience (AWS preferred), including IAM, networking, and logging.
  • Experience designing and implementing policy-as-code and security guardrails.
  • Ability to collaborate cross-functionally, balancing security with delivery velocity.

Nice-to-Haves

  • Experience in fintech or regulated environments.
  • Familiarity with WAF/DDoS tools, Zero Trust, and vulnerability management programmes.
  • Exposure to SOAR or security automation platforms.
  • Relevant certifications (AWS Security, Kubernetes Security, GIAC, CISSP, etc.).

Ways of working

  • Extreme ownership: You take end-to-end responsibility for outcomes, not just findings or tooling output.
  • Pragmatic and delivery-aware: You balance risk reduction with product velocity, focusing on changes that materially reduce risk.
  • Low-ego and collaborative: You build trust with engineers, product, and operations teams, influencing through credibility and partnership.
  • Impact-driven: You measure success through outcomes—risk reduction, adoption, and time-to-remediate—not activity.
  • Data-informed: You use metrics and trends to guide priorities and demonstrate impact.
  • High bar for craft: You produce clear documentation, reusable patterns, and automation that scale across teams.
  • AI-first mindset: You actively look for opportunities to use automation and AI to improve security outcomes.

Teya is proud to be an equal opportunity employer. We are committed to creating an inclusive environment where everyone regardless of race, ethnicity, gender identity or expression, sexual orientation, age, disability, religion, or background can thrive and do their best work. We believe that a diverse team leads to better ideas, stronger outcomes, and a more supportive workplace for all. If you require any reasonable adjustments at any stage of the recruitment process whether for interviews, assessments, or other parts of the application—we encourage you to let us know. We are committed to ensuring that every candidate has a fair and accessible experience with us.

DevSecOps Engineer employer: Teya Services Ltd

At Teya, we pride ourselves on being an exceptional employer that champions the growth of small, local businesses across Europe. Our vibrant work culture fosters collaboration and innovation, providing continuous learning opportunities and comprehensive benefits to our team members. Join us in a mission-driven environment where your contributions directly impact the success of our community-focused initiatives, all while enjoying the dynamic atmosphere of our London headquarters.
Teya Services Ltd

Contact Detail:

Teya Services Ltd Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land DevSecOps Engineer

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with Teya employees on LinkedIn. A personal touch can make all the difference when it comes to landing that interview.

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your DevSecOps projects. This gives us a tangible way to see your expertise and passion for security tooling and automation.

✨Tip Number 3

Prepare for the interview by brushing up on common DevSecOps scenarios. Think about how you would integrate security into CI/CD pipelines or handle vulnerabilities. We love candidates who can think on their feet!

✨Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows us you’re genuinely interested in being part of Teya's mission to support local businesses.

We think you need these skills to ace DevSecOps Engineer

Security Engineering
DevSecOps
CI/CD Integration
SAST
DAST
SCA
Container Scanning
Secrets Detection
CI/CD Platforms (e.g., GitHub Actions, GitLab CI, Jenkins)
Infrastructure as Code (IaC) (e.g., Terraform)
Software Engineering (Python, Go, Bash)
Cloud-Native Experience (AWS preferred)
Policy-as-Code Implementation
Collaboration Skills
Automation and AI Utilisation

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the DevSecOps role. Highlight your experience with CI/CD, security tooling, and any relevant programming skills. We want to see how your background aligns with our mission at Teya!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for supporting small businesses and how your skills can help us achieve our goals. Keep it engaging and personal—let us know why you want to join Teya!

Showcase Your Projects: If you've worked on any relevant projects, make sure to mention them! Whether it's embedding security into CI/CD pipelines or developing automation tools, we love seeing real examples of your work that demonstrate your expertise.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets to us quickly and efficiently. Plus, it shows you're keen on joining our team at Teya!

How to prepare for a job interview at Teya Services Ltd

✨Know Your Tech Inside Out

Make sure you’re well-versed in the technologies mentioned in the job description, like CI/CD platforms and security tools. Brush up on your knowledge of SAST, DAST, and IaC. Being able to discuss these topics confidently will show that you're not just familiar with them, but that you can apply them effectively.

✨Showcase Your Problem-Solving Skills

Prepare to discuss specific challenges you've faced in previous roles, especially those related to security integration. Use the STAR method (Situation, Task, Action, Result) to structure your answers. This will help you demonstrate your ability to think critically and act decisively under pressure.

✨Emphasise Collaboration

Teya values a collaborative approach, so be ready to talk about how you've worked cross-functionally in the past. Share examples of how you’ve partnered with different teams to achieve security goals while maintaining delivery velocity. Highlighting your teamwork skills will resonate well with their culture.

✨Ask Insightful Questions

Prepare thoughtful questions that show your interest in Teya’s mission and culture. Inquire about their current security challenges or how they measure success in their DevSecOps practices. This not only demonstrates your enthusiasm but also helps you gauge if the company aligns with your values.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>