Senior DevSecOps Cloud Engineer

Synechron — United Kingdom · Posted ~10 hours ago

Senior Full-time Visa History ✓

Skills

AWS Kubernetes GitLab DevSecOps cloud infrastructure CI/CD application security platform automation ASPM cloud security

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

Join a technology and security engineering team as an experienced DevSecOps Engineer. You will design and operate AWS cloud infrastructure, secure CI/CD pipelines, implement application security controls, and automate platform services using Kubernetes and modern source-control and delivery tooling.

Highlights

Experienced cloud security engineering role focused on designing, securing, and operating cloud infrastructure and delivery pipelines. Provides exposure to Kubernetes, application security controls, platform automation, and modern DevSecOps practices in a large technology environment.

Description

Synechron is a leading digital consulting firm with 17,000+ collaborative employees in 60+ global offices across 20+ countries. From our solid financial services industry foundation, we have become a prominent global digital consulting firm for large financial services and technology firms. With a key focus on trust, and in partnership with our clients, we’re leading modernization and digital optimization journeys with expertise that spans Consulting, Data, Design, Cloud and Engineering across various industries. We can provide you with customized end-to-end solutions that drive business value. We are looking for an experienced and motivated DevSecOps Engineer – AWS, Kubernetes, GitLab & ASPM to join our technology and security engineering team. The successful candidate will be responsible for designing, implementing, securing, and operating cloud infrastructure, CI/CD pipelines, application security controls, and platform automation services. The role will work closely with Security, Platform, Engineering, and DevOps teams to drive secure engineering practices, platform adoption, and continuous improvement. Job Description: Responsibilities Design, deploy, operate, and secure AWS infrastructure across enterprise environments.Work with AWS services including VPC, IAM, EC2, ECS/EKS, Lambda, S3, CloudWatch, Route 53, RDS, Secrets Manager, AWS Inspector, and AWS Security Hub.Design secure AWS networking architectures, including network segmentation, access controls, routing, connectivity, and monitoring.Design, implement, optimize, and troubleshoot GitLab CI/CD pipelines.Integrate DevSecOps controls into GitLab workflows, including security testing, quality gates, vulnerability scanning, and compliance checks.Implement and operate Application Security Posture Management (ASPM) solutions, preferably Apiiro or Legit Security.Integrate SAST, DAST, SCA, container security, secret detection, and infrastructure security tools into CI/CD pipelines.Develop platform automation services and operational tooling using advanced Python, REST APIs, and scripting.Build and maintain Terraform modules for cloud infrastructure, security controls, Kubernetes platforms, and shared services.Design, deploy, and secure Kubernetes and Amazon EKS environments.Apply container security principles across Docker images, registries, workloads, configurations, and runtime environments.Improve platform observability through monitoring, metrics, logs, tracing, dashboards, and alerting.Work with tools such as Prometheus, Grafana, OpenTelemetry, and AWS-native monitoring services.Support integrations with ServiceNow and CMDB platforms where required.Troubleshoot cloud, pipeline, security, application, and container-related issues.Collaborate with Security, Platform, Engineering, DevOps, and Architecture teams to improve secure software delivery.Provide technical leadership, mentoring, documentation, and engineering enablement.Drive adoption of cloud security, DevSecOps, automation, and secure platform practices. Required Skills & Experience 5+ years of experience deploying and operating AWS infrastructure.Strong knowledge of AWS services, including VPC, IAM, EC2, ECS/EKS, Lambda, S3, CloudWatch, Route 53, RDS, Secrets Manager, AWS Inspector, and Security Hub.Experience designing secure AWS networking architectures.Strong hands-on experience with Terraform and Infrastructure as Code.Experience designing and implementing GitLab CI/CD pipelines.Experience optimizing and troubleshooting CI/CD workflows.Practical experience implementing DevSecOps controls in GitLab.Experience with ASPM tools, preferably Apiiro or Legit Security.Strong understanding of vulnerability management, SAST, DAST, SCA, container security, secret detection, and infrastructure security.Advanced Python skills, including automation scripting, REST API integrations, and platform automation.Strong experience with Kubernetes, Amazon EKS, and Docker.Understanding of container security concepts and secure image management.Experience integrating security tooling into CI/CD workflows.Strong stakeholder management, communication, documentation, problem-solving, and collaboration skills.Experience working across Security, Platform, Engineering, and DevOps teams. Additional Experience Experience with one or more of the following will be an advantage: QualysJFrog ArtifactoryPrometheusGrafanaOpenTelemetryServiceNowCMDB integrationsHelmJenkinsDatadog, Splunk, or similar observability platforms What You’ll Bring A security-first approach to cloud and platform engineering.Strong technical ownership and a continuous-improvement mindset.The ability to translate security requirements into practical engineering controls.Strong communication skills across technical and non-technical stakeholders.A willingness to mentor engineers and drive platform adoption.The ability to operate effectively in a fast-paced, collaborative environment.