DevSecOps Security Engineer - AWS, Security

Cambridge, United Kingdom
Last month
Applications closed

Related Jobs

View all jobs

Security Engineer - DevSecOps/Code Security

Keystone Recruitment Partners Ltd United Kingdom
£50,000 – £60,000 pa Remote

Cyber Security Engineer

Robert Half Oxford, United Kingdom
Hybrid

Senior Security Engineer

MUFG Pension & Market Services Leeds, West Yorkshire, United Kingdom
Hybrid

Cloud Security Engineer (AWS)

DMS Computer Recruitment London, United Kingdom
£65,000 – £90,000 pa Remote

DevOps Security Engineer

Addition Watford, United Kingdom
£95,000 pa Permanent

Application Security Engineer

Health Hero W1T1Af, W1T 1AF, United Kingdom
Hybrid
Posted
13 Apr 2026 (Last month)

DevSecOps Security Engineer - AWS, Cloud, Security

Cambridge / Hybrid - £80,000 - £100,000 (DOE)

About the Company

A rare opportunity to join one of Cambridge's leading AI innovators, a business shaping the future of intelligent automation and rapidly outpacing its competitors. This is a chance to be part of a high‑growth technical environment where engineering excellence and security maturity sit at the heart of the organisation's ambitions.

Role Overview

We are seeking a DevSecOps Security Engineer to help elevate security across cloud platforms, delivery tooling, and production environments. You'll play a central role in embedding modern defensive practices, advancing automation, and strengthening engineering resilience across the organisation.

This position requires being on‑site in Cambridge three days per week, so applicants should be comfortable with a regular hybrid working pattern.

Platform Security & Automation

* Introduce protective validation steps throughout software delivery workflows, covering code quality, open‑source components, and container images.

* Engineer automated mechanisms that streamline compliance reporting and reduce operational overhead.

* Enforce policy‑driven safeguards within infrastructure deployment processes.

* Improve credential management approaches and mature access governance practices.

Exposure Management & Technical Controls

* Assist in reviewing weaknesses across applications and infrastructure and support risk‑based prioritisation.

* Partner with engineering teams to resolve issues efficiently and pragmatically.

* Refine detection tooling by tuning logic and reducing unnecessary or inaccurate alerts.

Operational Readiness & Observability

* Strengthen visibility across systems through improved log pipelines, alerting pathways, and monitoring strategies.

* Contribute to updating response guidelines, runbooks, and incident‑handling materials.

* Support initiatives aimed at enhancing defensive posture and operational robustness across platforms.

Core Requirements

* Strong experience in DevSecOps, cloud security, or infrastructure security functions.

* Hands‑on knowledge of modern CI/CD pipelines and automation tooling.

* Proven background securing AWS environments (Azure or GCP is also valuable).

* Practical experience with security scanning, vulnerability tooling, and tuning to improve accuracy.

* Proficiency in automation or scripting languages such as Python or Bash.

* Experience delivering infrastructure through IaC tooling such as Terraform or CloudFormation.

Preferred Background & Additional Capabilities

* Knowledge of securing containerised environments and orchestration platforms.

* Experience working within assurance‑focused frameworks including ISO 27001, SOC 2, or NIST.

* Familiarity with automated governance and policy‑driven cloud controls.

* Exposure to investigative, detection, or security operations workflows.

Qualifications That Would Be Beneficial

* Industry security certifications such as CISSP, CISM, CCSP, or GSEC.

* Cloud‑focused qualifications like AWS Security Specialty, AWS Solutions Architect, Azure Security Engineer Associate, or Google Professional Cloud Security Engineer.

* DevOps and automation‑related certifications such as Terraform Associate, CKA/CKAD, or Kubernetes Security Specialist (CKS).

* Compliance and governance accreditations including ISO 27001 Lead Implementer/Lead Auditor, CompTIA Security+, or NIST‑aligned training.

* Relevant computing or cybersecurity degree (BSc/MSc) or equivalent practical experience.

Keywords

DevSecOps, Cloud Security, AWS, Azure, GCP, CI/CD, Secure Software Delivery, Static Analysis, Dynamic Analysis, Dependency Scanning, Container Security, Kubernetes Security, Infrastructure as Code, Terraform, CloudFormation, Pipeline Security, Cloud Governance, Policy as Code, Secrets Management, Identity and Access Management, Vulnerability Remediation, Threat Detection, Observability, Logging, Automation Engineering, Python, Bash, Zero Trust, Security Hardening, Cloud Monitoring, Least Privilege, Compliance Automation, Security Orchestration

About Adecco

Adecco is acting as an Employment Agency. We are proud to be an equal opportunities employer. We are on the client's supplier list for this role

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.