At a Glance
- Tasks: Enhance security in cloud environments and support client migrations.
- Company: Dynamic tech company focused on cloud and security innovation.
- Benefits: Up to £75,000 salary, benefits, and career growth opportunities.
- Other info: Join a team targeting SOC 2 compliance and pioneering AI governance.
- Why this job: Transition your DevOps skills into a rewarding SecOps role with real impact.
- Qualifications: Strong background in DevOps or Cloud Engineering with a security mindset.
Salary: Up to £75,000 + benefits
Location: UK-based – 1 day per month in Shoreditch, London
Work Type: Permanent
Role
Are you a DevOps or Cloud Engineer who enjoys the security side of what you do and wants to make it a bigger part of your career? This is an opportunity to join a technology business at an important point in its cloud and security journey. Over the last two years, the business has been focused on moving its hosting into the cloud, predominantly across AWS, while continuing to grow its Azure footprint. There are still client environments being migrated, alongside a wider focus on improving security, reducing technical debt and strengthening the overall cloud platform. Security currently sits within the DevOps/Platform function, and with the business working towards SOC 2 compliance by Q1 2027, they’re looking for someone who can bring together strong DevOps fundamentals with a security-first mindset.
Responsibilities
- You'll work across DevOps, Cloud and Security, helping to build more secure, observable and resilient cloud environments.
- Improving security across AWS and Azure cloud environments
- Working with AWS security services including GuardDuty, CloudTrail, IAM and Security Hub
- Working across Azure security services such as Microsoft Defender for Cloud, Entra ID, Key Vault and Azure Policy
- Strengthening identity and access management, including RBAC, least-privilege access and authentication controls
- Building security controls and best practices into CI/CD pipelines
- Supporting Infrastructure as Code and embedding security into cloud deployments
- Improving cloud monitoring, logging, alerting and observability
- Identifying vulnerabilities, cloud misconfigurations and potential security risks
- Helping embed a Zero Trust approach across infrastructure and cloud services
- Automating repetitive security and infrastructure processes
- Supporting ongoing client migrations into AWS and Azure
- Working alongside the wider Platform/DevOps and Compliance functions as the business progresses towards SOC 2 compliance
- Helping shift security further left within the engineering lifecycle
Required Skills
You don't need to be a career Security Engineer. We're looking for someone with a strong DevOps, Platform or Cloud Engineering background who has naturally gravitated towards security and wants that to become a bigger part of their role. Experience across some of the following would be valuable:
- AWS experience, ideally with exposure to IAM, GuardDuty, CloudTrail and/or Security Hub
- Azure experience, particularly around Defender for Cloud, Entra ID/IAM, Key Vault, Azure Policy and cloud security best practices
- Infrastructure as Code such as Terraform or CloudFormation
- CI/CD tooling such as GitHub Actions, GitLab CI, Azure DevOps or Jenkins
- Linux environments
- Scripting and automation using Python, Bash or PowerShell
- Monitoring, logging and observability tooling
- Vulnerability management and cloud security scanning
- Secrets and key management
- IAM, RBAC and least-privilege access
Most importantly, you'll have a security-first mindset. You might currently be the DevOps Engineer who is always thinking about IAM policies, vulnerabilities, cloud configuration, access controls and how infrastructure could be made more secure. If that's the direction you want your career to go, this role gives you the opportunity to make that transition.
Why should I apply?
This isn't a role where you'll simply inherit a finished platform and keep the lights on. The business is still evolving its cloud environment, migrating clients, growing its Azure footprint and tackling technical debt, meaning there is plenty to get involved with and improve. There's also a clear security journey ahead. The business is targeting SOC 2 compliance by Q1 2027, while its work around AI and automation means security, compliance and governance are becoming increasingly important. They were also one of the first two companies in the UK to achieve ISO certification for AI Governance, giving you exposure to an environment where cloud, security, AI and governance increasingly overlap. For a DevOps/Cloud Engineer who wants to move towards DevSecOps/SecOps, this is an opportunity to take the security knowledge you've already built and make it a much bigger part of your career.
The interview process is straightforward:
- Stage 1: Interview with the hiring manager, including a technical round
- Stage 2: Interview with the wider team
Interested? Apply for the role today or send your CV to (url removed)
SecOps Engineer in London employer: WeDoTech
WeDoTech is an exceptional employer that champions innovation and collaboration in the tech industry. With a predominantly remote work culture, employees enjoy flexibility while engaging in meaningful projects that drive AI and digital transformation. The company prioritises professional growth, offering opportunities to enhance skills within Agile teams, making it an ideal place for those looking to make a significant impact in their careers.
StudySmarter Expert Advice🤫
We think this is how you could land SecOps Engineer in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including WeDoTech, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through WeDoTech
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at WeDoTech. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace SecOps Engineer in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at WeDoTech insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to WeDoTech that you’re committed to staying ahead in the game.
How to prepare for a job interview at WeDoTech
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at WeDoTech to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at WeDoTech.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.