Let us know you agree to cookiesWe use cookies to provide you with the best possible browsing experience on our website. You can find out more here.
Cookies are small text files that can be used by websites to make a user's experience more efficient. The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies we need your permission. This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.
+Essential
Essential cookies let you move around the website and use essential features such as secure areas. We use Essential cookies to: Remember information that you have entered on web order forms when you visit different pages in the same session. Balance the overall volume of website visitors between our computer servers. These cookies will not be used to gather information that could be used for marketing or to remember visitor information outside of a single session.
ResolutionUsed to ensure the correct version of the site is displayed to your device.
SessionThese cookies allow the website to keep track of the pages you visit, so that you don’t have to repeatedly enter the same information during one session, or on each new visit.
rm-cookies-consent
Cloudflare
VimeoWe use Vimeo to embed videos on our website, and these videos may set essential cookies that ensure secure video playback. These cookies are necessary for the secure operation of the video player and help manage requests and prevent misuse. No additional tracking or analytics cookies are applied via this function.

+Analytics and advertising
Advertising cookies are employed to deliver advertisements that are more relevant to you and your interests. These cookies track your online behaviour, such as the pages you visit, the products you view, and the links you click. The information collected is used to display targeted advertisements across websites, aiming to provide you with content that aligns with your preferences. Advertisers may also use these cookies to measure the effectiveness of their campaigns. Rest assured, we prioritise your privacy, and these cookies do not store personally identifiable information. If you choose to allow advertising cookies, you may receive a more personalised and engaging advertising experience while using our website.
Google AnalyticsWe employ Google Analytics as a third-party analytics service. This helps us analyse how users interact with our website. Google Analytics IP address anonymisation is also employed, meaning we do not store personal information.
Yes
No

Apply0saved jobsaved jobsViewView all

Job search

Other / Miscellaneous
Contractor
2025-07-10 16:55:30Bridge of HopeCompany Logo
25733, UK

Lead DevSecOps Engineer

Ref: 92473_1752162930
Other / Miscellaneous
£600 - £650 per day

Lead DevSecOps Engineer required to work with a government department. This is an initial 6 month contract, paying £650 per day, inside IR35, hybrid working (2-3 days per week onsite in London)

You will have active SC clearance prior to commencing this assignment

Summary and Responsibilities:

As a Lead DevSecOps Engineer, you will ensure that security is built into every part of the development lifecycle, specifically ensuring that security tooling (native and non-native) is properly embedded into CI/CD pipelines. You will be part of transformation programmes including tech debt replacement and migration, embedding security to ensure seamless integration of new systems/ features and workflows.

You will be responsible for ensuring that the replacement systems are security compliant, adhering to standards such as Secure by Design and GovAssure, utilising a shift left mentality to fix problems before production. This is as part of highly complex legacy replacements involving approximately 90,000 users.

Essential Skills and Experience Required:

  • Strong hands-on expertise in DevSecOps practices, particularly security automation in CI/CD and infrastructure-as-code pipelines.
  • Deep understanding of modern DevOps tooling (e.g., GitHub Actions/ CircleCI, Terraform, Kubernetes, Docker) with secure configurations.
  • Experience implementing security controls in cloud-native environments (e.g., AWS or Azure) including IAM, network policies, and container security.
  • Proven track record of using tools such as Snyk, Trivy, Checkov, OPA/Gatekeeper/ OWASP ZAP, or similar to enforce pipeline and platform security.
  • Familiarity with compliance requirements (e.g., NIST, ISO 27001, CIS Benchmarks) and their implementation via code.
  • Ability to lead and mentor teams on secure coding, threat modelling, and secure architecture patterns.
  • Experience with monitoring, logging, and security telemetry platforms (e.g., Prometheus, Loki, ELK, XDR/SIEM integrations).

Please apply should you meet the above criteria

Attenti Consulting is acting as an Employment Business in relation to this vacancy.

25733
Other / Miscellaneous
£600 - £650 per day
ApplyFilled
Apply