Jobiglo

No results.

DevSecOps Engineer – Security Led Delivery (London/Hybrid)

Norton Blake · Londres et périphérie

New
Contract Hybrid 🇬🇧 English
GitHub administration GitHub Advanced Security CI/CD pipeline security SAST DAST CodeQL Semgrep OWASP ZAP secret scanning dependency scanning IaC scanning OIDC vulnerability management security remediation JIRA Agile delivery Datadog SIEM EDR container security

Job description

About the role

We are supporting a leading media & entertainment organisation that needs a hands‑on DevSecOps Engineer to drive security remediation, CI/CD security integration and tooling improvements across a large enterprise environment. This is a delivery‑focused, 6‑month contract role based in London with a hybrid working model.

Key responsibilities

  • Own security remediation activities and drive implementation of agreed security controls.
  • Integrate security checks into CI/CD pipelines and manage GitHub governance, including GitHub Advanced Security.
  • Maintain and enhance SAST/DAST tooling such as CodeQL, Semgrep and OWASP ZAP.
  • Implement secret, dependency, container and IaC scanning, and manage OIDC/short‑lived credentials.
  • Lead vulnerability management, security remediation and pen‑testing remediation efforts.
  • Collaborate with development, infrastructure, security and operations teams in an Agile/JIRA environment.

Required profile

  • Strong background in DevSecOps and application security engineering.
  • Proactive, organised and able to work across multiple technical domains.
  • Excellent stakeholder management and delivery ownership.

Required skills

  • GitHub administration and GitHub Advanced Security (GHAS).
  • CI/CD pipeline security integration.
  • SAST/DAST tools – CodeQL, Semgrep, OWASP ZAP.
  • Secret scanning, dependency scanning, container & IaC scanning.
  • OIDC and short‑lived credential management.
  • Vulnerability management and security remediation.
  • JIRA and Agile delivery methodologies.
  • Familiarity with Datadog, SIEM, EDR and cloud/container security concepts.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Norton Blake.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Le contrat proposé est un Contract basé à Londres et périphérie.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

Published 1 week ago

Expires 1 month from now

9 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Norton Blake

Londres et périphérie