Enable job alerts via email!

Devsecops Engineer

JD GROUP

Bury

On-site

GBP 40,000 - 80,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking retailer as a DevSecOps Engineer, where you'll integrate security into the DevOps process. This role is crucial for ensuring the security of the software development lifecycle. You'll collaborate with diverse teams to implement security measures, conduct assessments, and develop automated testing tools. If you're passionate about security and development, this opportunity offers a dynamic environment to enhance your skills while contributing to a culture of operational excellence and continuous improvement. Be part of a team that values diversity and innovation in the retail industry.

Qualifications

  • Proven experience as a DevSecOps Engineer or similar role.
  • Strong understanding of DevOps principles and security practices.

Responsibilities

  • Implement and manage security tools within the CI/CD pipeline.
  • Conduct security assessments and vulnerability testing.

Skills

DevSecOps
CI/CD tools
Python
PowerShell
AWS
Azure
Docker
Kubernetes
Problem-solving
Communication

Education

Relevant certifications (e.g., CDP, CISSP)

Tools

AWS CodeBuild
Jenkins
GitLab
Azure DevOps
Terraform
CloudFormation
Ansible

Job description

The Company:

The JD Group is a leading omnichannel retailer of Sports Fashion, Street & Premium Fashion, Outdoors and Gyms with over 90,000 colleagues over 4,500 stores across several retail fascia's in over 36 countries around the world.

We are an equal opportunities employer who embraces and values differences. We recognise the importance of an inclusive workplace culture in which everyone can thrive irrespective of their background or identity.

To be a part of this successful and continuously growing company, you will have the desire to ingrain our strategic goals of being a people first, a digital leader and customer focused organisation which provides operational excellence and is continuous with identifying new areas of growth into our day-to-day.

Job Title: DevSecOps Engineer

Location: Bury
Job Type: Full-Time

Job Description:

We are seeking a skilled and motivated DevSecOps Engineer to join our growing Information Security team. The ideal candidate will have a strong background in both development and security operations, with a passion for integrating security practices into the DevOps process. As a DevSecOps Engineer, you will play a critical role in ensuring the security and integrity of our software development lifecycle.

Key Responsibilities:
  • Implement and manage security tools and practices within the CI/CD pipeline.
  • Collaborate with development, operations, and security teams to integrate security measures throughout the software development lifecycle.
  • Conduct security assessments and vulnerability testing to identify and mitigate risks.
  • Develop and maintain automated security testing scripts and tools.
  • Monitor and respond to security incidents and alerts.
  • Ensure compliance with industry standards and regulations.
  • Provide guidance and training to development teams on secure coding practices.
  • Continuously improve security processes and practices.
Skills & Experience:
  • Proven experience as a DevSecOps Engineer or in a similar role.
  • Strong understanding of DevOps principles and practices.
  • Experience with CI/CD tools such as AWS CodeBuild, Jenkins, GitLab, Azure DevOps.
  • Proficiency in scripting languages such as Python, PowerShell.
  • Knowledge of security tools and frameworks (e.g., OWASP, SCA, SAST, DAST).
  • Familiarity with one or more cloud platforms (AWS, Azure, GCP) and containerization technologies (Docker, Kubernetes).
  • Excellent problem-solving skills and attention to detail.
  • Strong communication and collaboration skills.
Preferred Qualifications:
  • Relevant certifications such as Certified DevSecOps Professional (CDP), Certified Information Systems Security Professional (CISSP), or AWS Certified Security Specialty.
  • Experience with infrastructure as code (IaC) tools like Terraform, CloudFormation, Ansible.
  • Knowledge of security frameworks, regulatory requirements and compliance standards (e.g. NIST, PCI DSS, GDPR).
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.