
Enable job alerts via email!
Generate a tailored resume in minutes
Land an interview and earn more. Learn more
A leading fintech company in London is looking for a DevSecOps Lead to maintain security across their engineering infrastructure. The ideal candidate will have extensive experience in security engineering, specifically within AWS and compliance frameworks like SOC 2. You'll implement and manage security controls, enhance CI/CD security, and engage with engineering teams on secure development practices. This role offers a competitive salary, stock options, and a chance to significantly influence the company's security posture.
Light exists to replace factory-era ERPs with software that feels alive. Our Smart Financial Platform gives modern, global companies superpowers-automated accounting, real-time reporting, and financial flows that move at the speed of the business.
We build with our customers, ship fast, and obsess over craft. In a short time, Light has gone from idea to the operating core for leading companies like Lovable, Legora, and Keyshot. People don't just use Light—they enjoy it.
We're an early team defining a new software category. Think engineers who love debits and credits, designers who care about reconciliation states, and operators who treat finance as a product. If you're excited to modernize how the world runs money-one workflow at a time-you're in the right place.
Backed by world-class investors and advised by industry titans, we're building category-defining products with the freedom to ship ambitiously and own outcomes. Come help us make Light the global default for next-gen finance.
UK Visa sponsorship available for exceptional candidates.
As DevSecOps Lead, you'll own security across Light's engineering infrastructure and development lifecycle. You'll establish the security controls and compliance posture that enterprise fintech customers require, whilst embedding security practices that scale with our rapidly growing engineering team.
This is a hands-on technical role with strategic scope. You'll split your time between infrastructure security engineering (Terraform, AWS security services, CI/CD hardening), compliance programme execution (SOC 2, GDPR, ISO 27001), and partnering with engineering teams to build security into their workflows from the start.
You'll design and implement security controls across our AWS environment, harden our EKS cluster security, and secure our CI/CD pipelines. You'll establish security controls for our AI workflows, including Bedrock integrations, prompt validation, and model access governance. You'll lead our SOC 2 Type II compliance programme, establish security policies for GDPR and ISO 27001, and implement automated compliance monitoring.
Day-to-day, you'll write Terraform, review architecture designs, triage security alerts, build security into development workflows, coordinate penetration testing, and partner with engineering on threat modelling and secure development practices.
You’ll also respond to customer security questionnaires, document controls for auditors, establish incident response procedures, and work with our Head of Engineering on security roadmap and priorities.
You combine deep technical knowledge with strategic judgment, knowing how to balance real-world risks with business speed. You're hands-on when needed, but equally capable of driving policy, compliance programmes, and long-term security maturity. You've led security in high-growth environments before - and you're ready to do it again, with impact.
In addition to being part of a great team and working in a really fun and innovative environment, we offer:
At Light, we're building the most trusted financial platform in the world - and trust starts with security. As our InfoSec & Cybersecurity Lead, you'll help us earn that trust every day.
Join the rocket ship while it's taking off