Secure Developer

Coltech

Romsey

Hybrid

GBP 60,000 - 80,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Opportunity to work on real-world endpoint security systems
Collaborative engineering environment focused on security-by-design

Job summary

Coltech is seeking a Secure Developer to enhance endpoint security and implement runtime protection solutions primarily in Linux environments. This role emphasizes hardening Ubuntu hosts, securing Docker containers, and integrating telemetry into SIEM pipelines.

The ideal candidate will have strong experience in Linux engineering, container security, and must hold active UK SC Clearance due to the sensitive nature of the work.

Qualifications

  • Strong experience with Linux systems engineering, especially Ubuntu.
  • Deep understanding of Linux kernel security controls and namespaces.
  • Hands-on experience with Docker container security and runtime hardening.

Responsibilities

  • Harden Ubuntu Linux hosts at kernel and OS level.
  • Implement and maintain auditd rules and host/container telemetry.
  • Secure Docker runtime environments through least-privilege execution models.

Skills

Linux systems engineering (Ubuntu preferred)
Linux kernel security controls and namespaces
Docker container security and runtime hardening
Scripting (Python, Bash)
Infrastructure automation tools (Ansible, Terraform)
CIS Benchmarks and secure configuration management
Security telemetry systems

Tools

Auditd
SIEM solutions
Kubernetes

Job description

Hybrid / UK-Based

Security Clearance Required (SC or higher preferred)

Overview

We are seeking a Secure Developer to design and implement advanced endpoint and runtime protection controls for critical software environments. This role focuses on Linux hardening, container security, and low-level system telemetry, helping reduce risk across core application and infrastructure layers.

You will work at the intersection of systems engineering, security, and DevSecOps, building robust protections directly into Ubuntu hosts and Docker environments, and integrating security telemetry into early-stage SIEM and detection pipelines.

This is a hands‑on engineering role requiring deep understanding of Linux internals, container runtimes, and security hardening standards.

Key Responsibilities
  • Harden Ubuntu Linux hosts at kernel and OS level using:
  • namespaces
  • AppArmor
  • Implement and maintain auditd rules, syscall-level logging, and host/container telemetry for detection, monitoring, and forensic analysis
  • Apply and enforce CIS Benchmarks (Level 2) for:
  • Docker containers and runtime environments
  • Hardened base image standards and secure configuration baselines
  • Secure Docker runtime environments through:
  • least‑privilege execution models
  • container isolation strategies
  • image provenance and signing
  • Integrate host and container logs into prototype SIEM pipelines, enabling correlation and early threat detection
  • Automate security controls, hardening processes, and compliance checks using:
  • scripting (Python / Bash)
Required Experience
  • Strong experience with Linux systems engineering (Ubuntu preferred)
  • Deep understanding of Linux kernel security controls and namespaces
  • Hands‑on experience with Docker container security and runtime hardening
  • Experience implementing auditd, syscall monitoring, or host‑based telemetry systems
  • Familiarity with CIS Benchmarks and secure configuration management
  • Strong scripting ability (Python, Bash, or similar)
  • Experience with infrastructure automation tools (Ansible, Terraform, or similar)
  • Understanding of endpoint security, runtime security, or EDR concepts
  • Experience building or integrating SIEM solutions or security pipelines
  • Knowledge of eBPF‑based monitoring or kernel instrumentation
  • Exposure to Kubernetes security hardening (optional but beneficial)
  • Experience in secure software development or DevSecOps environments
  • Familiarity with cloud security controls (AWS / Azure / GCP)
  • Experience working in defence, government, or highly regulated environments
Clearance Requirement

Applicants must hold active UK SC Clearance (or higher) due to the sensitive nature of the environment.

What’s on Offer
  • Opportunity to build real‑world endpoint security and runtime protection systems
  • Work on low‑level Linux security engineering and container hardening
  • High‑impact role improving resilience of core enterprise software
  • Exposure to advanced security engineering and prototype SIEM development
  • Collaborative engineering environment focused on security‑by‑design
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Secure Linux & Container Engineer (SC Cleared)
Secure Linux & Container Engineer (SC Cleared)

Coltech • Romsey

Hybrid
GBP 60,000 - 80,000
Opportunity to work on real-world endpoint security systems
Collaborative engineering environment focused on security-by-design
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Synergize Consulting Limited • Reading

On-site
GBP 81,000 - 115,000
SC Cleared Platform Engineer
SC Cleared Platform Engineer

Cleantech Impact Partners Ltd • Greater Manchester

On-site
GBP 55,000 - 80,000
Benefits package
DevSecOps Engineer
DevSecOps Engineer

SoCode Recruitment • Cambridge

Hybrid
GBP 45,000 - 60,000
SC Clearance preferable
No Sponsorship option
Senior Technical Engineer
Senior Technical Engineer

Experis UK • United Kingdom

On-site
GBP 90,000 - 120,000
Software Engineer - Linux
Software Engineer - Linux

Leonardo UK Ltd • Greater London

On-site
GBP 70,000 - 90,000
Security Platform Engineer
Security Platform Engineer

SiXworks • Farnborough

On-site
GBP 50,000 - 75,000
25 days annual leave + bank holidays
Private Medical cover
Generous pension scheme
Staff Product Security Engineer
Staff Product Security Engineer

Strativ Group • Greater London

On-site
GBP 110,000 - 140,000
Senior Application Security Specialist
Senior Application Security Specialist

Sanderson • Greater London

Hybrid
GBP 67,000 - 89,000
Contract DevOps Engineer (SC Cleared)
Contract DevOps Engineer (SC Cleared)

Searchability NS&D • Newcastle upon Tyne

On-site
GBP 60,000 - 80,000