DevSecOps Engineer

Jobtailor

Greater London

On-site

GBP 60,000 - 80,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Eye care
Employee Assistance Programme
Birthday off
Pension contributions
Cycle to work scheme
Private healthcare
Gym membership allowance

Job summary

Law Business Research is hiring a DevSecOps Engineer in London to enhance and maintain cloud security practices. You will collaborate with Development and Cloud Engineering teams to embed security into architectures, automating security checks in CI/CD pipelines.

With responsibilities that include monitoring threats and ensuring compliance, this role requires a solid understanding of Azure and Kubernetes security. An excellent opportunity for candidates passionate about cloud security in a dynamic work environment.

Qualifications

  • Experience with Azure security best practices and configuration.
  • Knowledge of Kubernetes security, including best practices.
  • Familiarity with CI/CD pipelines and secure coding.

Responsibilities

  • Ensure security in cloud infrastructure and applications.
  • Embed security checks in CI/CD pipelines using Azure.
  • Monitor and respond to security incidents.

Skills

Diagnosing complex cloud and security issues
Translating security requirements
Effective communication
Time management
Curiosity and proactiveness

Education

Relevant degree or equivalent experience

Tools

Terraform
Azure DevOps
Kubernetes
Python
Bash

Job description

DevSecOps Engineer

Department: Product & Technology

Employment Type: Full Time

Location: London

Description

As a DevSecOps Engineer at Centellic, your primary responsibility is to ensure the security of our cloud‑hosted infrastructure, applications, and CI/CD pipelines. You will embed security best practices throughout the software delivery lifecycle, enabling development and cloud engineering teams to build, deploy, and operate secure, scalable, and resilient systems.

You will work across our infrastructure landscape—Azure Kubernetes Services (AKS), Azure Virtual Machines, networking components, and application workloads—to ensure systems are protected from vulnerabilities, misconfigurations, and emerging threats. You’ll champion secure‑by‑design principles, automate security controls, and maintain strong monitoring and incident response practices.

The role requires close collaboration with Developers, Cloud Engineers, Product Managers, and external suppliers. You will also contribute to the continuous improvement of LBR’s cloud security posture, proactively identifying risks, recommending enhancements, and promoting a strong DevSecOps culture.

Key Responsibilities
Team & Collaboration
  • Work closely with Development, Cloud Engineering, and Product teams to embed security into cloud and application architectures.
  • Provide guidance on secure design patterns and technical security recommendations.
  • Support colleagues in understanding secure engineering principles and emerging threats.
Secure Implementation & Automation
  • Enhance and maintain secure IaC using Terraform, ensuring compliance with internal policies and standards.
  • Embed automated security checks into Azure DevOps CI/CD pipelines, including static analysis, dependency scanning, and IaC scanning.
  • Ensure Kubernetes workloads follow best practices: RBAC, network policies, secrets management, image security, and ingress protections.
  • Support secure configuration of Azure VMs hosting legacy or specialised products.
Vulnerability Management
  • Operate and enhance container vulnerability scanning.
  • Monitor CVEs relevant to Centellic’s stack and coordinate remediation activities with engineering teams.
  • Perform regular reviews of Terraform modules, container images, Helm charts, and AKS configurations to identify misconfigurations and risks.
Monitoring, Detection & Incident Response
  • Work with monitoring tooling (e.g., Datadog or Azure Monitor) to detect anomalous or suspicious activity.
  • Maintain alerting rules, dashboards, and security signals supporting rapid detection and response.
  • Participate in incident response alongside the Principal Developer, Cloud Engineer and developers, including root‑cause analysis and post‑incident improvements.
  • Contribute to 24/7 support rotations where required.
Security Governance & Compliance
  • Ensure infrastructure and deployments adhere to LBR policies, including identity management, least privilege, encryption, and network security requirements.
  • Maintain and improve secrets management using Azure Key Vault and Kubernetes secrets best practices.
  • Support audits, documentation requirements, and risk assessments.
Innovation & Continuous Improvement
  • Stay current with cloud‑security trends, threats, tools, and techniques.
  • Recommend and trial new technologies to enhance security, governance, automation, and efficiency.
  • Proactively identify opportunities to strengthen security posture across AKS, VM workloads, network layers, and CI/CD processes.
Skills Knowledge and Expertise
Core Competencies
  • Strong ability to diagnose and resolve complex cloud and security issues across infrastructure, applications, and DevOps tooling.
  • Ability to translate security requirements into practical engineering tasks.
  • Clear communicator able to explain security concepts to non‑security stakeholders.
  • Works calmly under pressure with strong time‑management skills.
  • Curious, proactive, and able to independently identify improvements.
Technical Expertise
  • Security best practices for Azure, including networking, RBAC, managed identities, logging, and monitoring.
  • Kubernetes security: network policies, PodSecurityStandards, RBAC, image security, secrets, ingress security, and high‑availability configurations.
  • Terraform and Terraform‑security concepts (policies, modules, scanning tools).
  • Azure DevOps CI/CD, including YAML pipelines, secure build pipelines, artifact management, and release governance.
  • Container technologies: container hardening, image optimisation, multi‑stage builds, secure base image selection.
  • Trivy (or similar), dependency scanning, and SAST/DAST tools.
  • Scripting with Python, Bash, or PowerShell for automation.
  • Git and branching strategies with a security‑focused approach.
  • Knowledge of WAF, API security, OWASP Top 10, and common cloud‑security frameworks.
  • WAF rules management, including creation, tuning, and monitoring.
  • SSL/TLS configuration best practices, certificate lifecycle management.
  • Experience with Cloudflare security features including WAF, SSL, and Zero Trust options.
Benefits
Start of employment
  • Eye care
  • Employee Assistance Programme
  • A day off for your birthday
After 3 months employment
  • Pension (4% employer contribution and 4% employee contribution)
After 4 months employment
  • Life assurance
After probation
  • Cycle to work scheme
  • Season ticket loan
  • £350 annual wellbeing allowance to contribute to gym memberships or fitness classes
  • Puregym access
  • Perks at work platform access
After 1 year service
  • Private healthcare
Additional Perks
  • Company socials
  • Access to Employee Affinity Networks
  • Mentoring scheme
  • Volunteering Day
  • Mortgage Advice
  • Work from anywhere (2 weeks)
  • Generous parental leave

We are proud to be an equal opportunities employer and are committed to ensuring that all candidates are given the same opportunity to succeed regardless of their sex, gender identity/expression or reassignment, sexual orientation, marital status, race, colour, nationality, ethnic or national origin, religion, age or disability.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Business Development Manager - Events
Business Development Manager - Events

Centellic • Greater London

On-site
GBP 35,000 - 55,000
Eye care
Employee Assistance Programme
Birthday off
+15
Senior Business Development Manager
Senior Business Development Manager

Centellic • Greater London

On-site
GBP 65,000 - 95,000
Eye care
Pension (4% employer contribution)
Life assurance
+6
Finance Applications Manager
Finance Applications Manager

Law Business Research Limited • Greater London

On-site
GBP 90,000 - 120,000
Eye care
Pension
Life assurance
+5
Innovation Analyst - Pacesetter Research
Innovation Analyst - Pacesetter Research

Centellic • Greater London

On-site
GBP 45,000 - 65,000
Eye care
Pension (employer contribution)
Private healthcare
+3
Senior Cloud Infrastructure Engineer
Senior Cloud Infrastructure Engineer

Hargreaves Lansdown • Bristol

Hybrid
GBP 55,000 - 75,000
Discretionary annual bonus
25 days holiday plus bank holidays
Flexible working options available
+5
Intermediate Platform Engineer
Intermediate Platform Engineer

CDL Software • Manchester

Hybrid
GBP 38,000 - 42,000
Hybrid working
Flexible working
25 days holiday
+4
Senior Business Development Manager
Senior Business Development Manager

Law Business Research Limited • Greater London

On-site
GBP 70,000 - 120,000
Eye care
Pension
Life assurance
+9
Intermediate Platform Engineer
Intermediate Platform Engineer

CDL Group • Cheadle

On-site
GBP 38,000 - 42,000
Hybrid Working
25 days holiday
Health and Wellbeing Programme
+5
Cloud Software Engineer
Cloud Software Engineer

BT Group • Cheltenham

On-site
GBP 70,000 - 90,000
DV allowance up to £5k per year
25 days annual leave
BT pension scheme
+5
Senior IT Systems Engineer
Senior IT Systems Engineer

Blue Light Card • Greater London

Hybrid
GBP 68,000 - 98,000
25 days annual leave
Private Medical Insurance
Hybrid working
+6