At a Glance
- Tasks: Drive security automation and embed security into CI/CD pipelines.
- Company: Join a forward-thinking financial institution with a collaborative culture.
- Benefits: Competitive rate of Β£620/day, hybrid work model, and exposure to modern security practices.
- Why this job: Make a tangible impact on enterprise-scale security initiatives in a global organisation.
- Qualifications: Experience with SAST/SCA tools and CI/CD pipelines; strong communication skills.
- Other info: Work alongside elite engineers in a dynamic, engineering-driven environment.
The predicted salary is between 50000 - 70000 Β£ per year.
Job Description
DevSecOps Security Engineer β Β£620/day (PAYE via Umbrella)
Location: Knutsford (Hybrid β 60% office/40% remote)
Rate: Β£620/day (Inside IR35)
Duration: 12 Months
Join one of the UK's most forward-thinking financial institutions as a DevSecOps Security Engineer and play a key role in embedding security into every layer of modern software delivery. This is your chance to work on cutting-edge DevSecOps initiatives β scaling secure development practices, automating security controls, and integrating industry-leading tooling into enterprise CI/CD pipelines.
Responsibilities:
- Drive security automation by implementing and optimising SAST/SCA tools such as Veracode, Checkmarx, Snyk, Wiz, or SonarQube
- Embed security into CI/CD pipelines across GitHub, Jenkins, and BitBucket
- Collaborate with DevOps and Cloud teams on secure application migrations
- Champion secure coding β guide developers and improve remediation workflows
- Deliver clear reporting and visibility into vulnerabilities and tool performance
Your background:
- Proven track record integrating SAST/SCA tools into real-world development environments
- Deep understanding of DevSecOps principles and secure SDLC practices
- Hands-on experience with CI/CD pipelines and automation
- Familiarity with cloud environments ( AWS, Azure, or OpenShift )
- Understanding of container security ( Docker, Kubernetes )
- Strong communicator who thrives in cross-functional, engineering-driven teams
Why You'll Love It
- Work on a strategic, enterprise-scale security initiative
- Partner with elite DevOps, Cloud, and Security Engineers in a collaborative environment
- Gain exposure to modern security tooling and practices in a global organisation
If you're passionate about building security into the fabric of DevOps and want to make a tangible impact in a large-scale financial environment, we want to hear from you.
DevSecOps Security Engineer employer: Trust In SODA
Contact Detail:
Trust In SODA Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land DevSecOps Security Engineer
β¨Tip Number 1
Network like a pro! Reach out to your connections in the industry, especially those who work in DevSecOps. A friendly chat can lead to insider info about job openings or even referrals that could give you an edge.
β¨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects and contributions to security automation. This is a great way to demonstrate your hands-on experience with tools like Veracode or Snyk.
β¨Tip Number 3
Prepare for interviews by brushing up on your knowledge of CI/CD pipelines and secure coding practices. Be ready to discuss how you've integrated security into development processes in past roles.
β¨Tip Number 4
Donβt forget to apply through our website! Itβs the best way to ensure your application gets seen by the right people. Plus, we love hearing from passionate candidates who want to make a difference in the world of DevSecOps.
We think you need these skills to ace DevSecOps Security Engineer
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights your experience with SAST/SCA tools and DevSecOps principles. We want to see how your skills align with the role, so donβt be shy about showcasing relevant projects!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why youβre passionate about security in software delivery and how you can contribute to our team. Keep it concise but impactful!
Showcase Your Collaboration Skills: Since this role involves working closely with DevOps and Cloud teams, make sure to mention any past experiences where youβve successfully collaborated across different teams. We love a good team player!
Apply Through Our Website: We encourage you to apply directly through our website. Itβs the best way for us to receive your application and ensures youβre considered for this exciting opportunity. Donβt miss out!
How to prepare for a job interview at Trust In SODA
β¨Know Your Tools Inside Out
Make sure youβre well-versed in the SAST/SCA tools mentioned in the job description, like Veracode and Checkmarx. Be ready to discuss your hands-on experience with these tools and how you've integrated them into CI/CD pipelines.
β¨Showcase Your DevSecOps Knowledge
Brush up on DevSecOps principles and secure SDLC practices. Prepare to explain how youβve embedded security into development processes in previous roles, as this will demonstrate your understanding of the role's core responsibilities.
β¨Prepare for Technical Questions
Expect technical questions related to CI/CD pipelines, cloud environments, and container security. Practise articulating your experiences with AWS, Azure, Docker, and Kubernetes, as well as any challenges you faced and how you overcame them.
β¨Communicate Effectively
Since strong communication is key in cross-functional teams, practise explaining complex security concepts in simple terms. Think of examples where youβve successfully collaborated with developers or other teams to improve security practices.