DevSecOps Engineer
Location:
Mere, Cheshire, North West, England
Salary:
£600 - £650 per day
Job Type:
Contract
Date Posted:
1 day ago
Expiry Date:
16/01/2026
Job Ref:
BH-124275
Start Date:
02/12/2025
Contact:
Shakir Muhammad
Contact Email:
shakir.muhammad@xcede.com
Specialism:
Cloud Engineering & ArchitectureCloudSecurity Architecture & EngineeringNetwork Security & OperationsDevOpsEngland
DevSecOps Engineer
Inside IR35
6-month contract
Hybrid - Onsite Manchester
We are looking for an experienced DevSecOps Engineer to support a Financial client with a high-impact security initiative focused on strengthening our application security posture. The successful candidate will drive the implementation, optimisation, and integration of security tooling across the development lifecycle, ensuring security is embedded into every stage of our CI/CD workflows.
Key Responsibilities
Inside IR35
6-month contract
Hybrid - Onsite Manchester
We are looking for an experienced DevSecOps Engineer to support a Financial client with a high-impact security initiative focused on strengthening our application security posture. The successful candidate will drive the implementation, optimisation, and integration of security tooling across the development lifecycle, ensuring security is embedded into every stage of our CI/CD workflows.
Key Responsibilities
- Evaluate, implement, and configure SAST and SCA tools, including Wiz, Veracode, Checkmarx, Snyk, and SonarQube
- Integrate security tooling into CI/CD pipelines (GitHub, Jenkins, Bitbucket)
- Collaborate with engineering teams to support the secure migration of applications
- Develop and maintain documentation, dashboards, and reports for security findings and tool usage
- Provide guidance and enablement to developers on secure coding best practices
- Conduct codebase analysis, identify vulnerabilities, and assist with remediation activities
- Proven experience with SAST/SCA tooling and integrating them into modern development workflows
- Strong understanding of DevSecOps principles and secure SDLC methodologies
- Hands-on experience with CI/CD pipelines and automation
- Familiarity with major cloud platforms (AWS, Azure, GCP, OpenShift) and application migration best practices
- Knowledge of container security, including Docker and Kubernetes
- Excellent communication and documentation abilities
- Cloud security posture management across AWS, Azure, and/or GCP
- Understanding of cloud-native security risks, misconfiguration detection, and vulnerability management
- Ability to interpret Wiz findings and integrate them into remediation workflows and CI/CD processes
APPLY FOR THIS JOB
For your job application, please fill in the form below.
Shakir Muhammad
Specialisms: Cloud, Cyber, Network Security & Operations, Networks