Summary
Help build and mature cloud security for a rapidly expanding technology platform. You'll automate security operations, improve deployment pipelines, and work closely with engineering teams to establish scalable security practices in a cloud-native environment.
Highlights
Remote opportunity to shape cloud security in a growing engineering organization with competitive compensation, bonus, and significant ownership.
Description
DevSecOps Engineer | Cloud Security | AWS
Security-leaning platform role at a fast-scaling fintech
Remote - Applicants must already be living in the UK with the correct right to work.
Our client builds a data platform used by financial services firms to process and act on time-sensitive market information at speed.
They've just secured significant new investment to accelerate growth, and engineering is scaling fast across the board.
We're hiring a DevSecOps Engineer to sit alongside the platform and security functions, owning the technical side of cloud security and helping shape how the team ships safely as it grows.
You'll work closely with the CISO and platform engineering, taking on the hands-on security engineering work that needs real focus rather than being squeezed between other priorities.
This is a genuinely early-stage opportunity in the truest sense.
Process here isn't fully defined yet, and that's deliberate.
They want someone who can come in, see what's missing, and help build it, not someone waiting to be handed a finished playbook.
What you'll be doing
Owning and maturing cloud security posture across AWS, using Wiz or a comparable CNAPP platform to triage, tune, and close down exposure pathsAutomating vulnerability management and CVE pipeline processes, reducing manual overhead wherever possibleSupporting compliance and audit work alongside the CISO as the business matures its security postureWriting scripts and tooling (Python, Go, or similar) to support security automation, including exploring how AI and agent-based tooling can speed this upBuilding and improving GitOps and CI/CD workflows, with ArgoCD and infrastructure-as-code at the coreWorking alongside the platform team on Kubernetes, contributing to security controls including workload identity, network policy, and runtime security
What we're looking for
Hands-on experience with Wiz, a comparable CNAPP/CSPM platform, or demonstrated cloud security posture management through your own tooling and automationAWS experience in a production environment, with a security-first mindsetA background in security engineering or a platform/DevOps role with a clear, demonstrable lean toward security ownershipComfortable scripting in Python, Go, or similar for security automationGitOps experience, ideally ArgoCD, alongside solid CI/CD fundamentalsSomeone who's energised by ambiguity and wants a hand in shaping how things get built, not just following an existing process
Nice to have
Kubernetes experience is a plus, particularly around security controls, though the team has existing Kubernetes depth so this is not the primary focusExperience with streaming platforms (Kafka or MSK) from a security perspectiveExposure to identity and access tooling (Auth0, Entra ID, or similar)Interest or hands-on experience using AI tooling to support security or platform automation
Salary: £80,000 to £95,000 + 20% bonus and benefits
Interested? Drop me a message and I'll share more context on the business and the role.