DevSecOps Security Engineer - AWS, Security

Cambridge
4 days ago
Create job alert

DevSecOps Security Engineer - AWS, Cloud, Security

Cambridge / Hybrid - £80,000 - £100,000 (DOE)

About the Company

A rare opportunity to join one of Cambridge's leading AI innovators, a business shaping the future of intelligent automation and rapidly outpacing its competitors. This is a chance to be part of a high‑growth technical environment where engineering excellence and security maturity sit at the heart of the organisation's ambitions.

Role Overview

We are seeking a DevSecOps Security Engineer to help elevate security across cloud platforms, delivery tooling, and production environments. You'll play a central role in embedding modern defensive practices, advancing automation, and strengthening engineering resilience across the organisation.

This position requires being on‑site in Cambridge three days per week, so applicants should be comfortable with a regular hybrid working pattern.

Platform Security & Automation

* Introduce protective validation steps throughout software delivery workflows, covering code quality, open‑source components, and container images.

* Engineer automated mechanisms that streamline compliance reporting and reduce operational overhead.

* Enforce policy‑driven safeguards within infrastructure deployment processes.

* Improve credential management approaches and mature access governance practices.

Exposure Management & Technical Controls

* Assist in reviewing weaknesses across applications and infrastructure and support risk‑based prioritisation.

* Partner with engineering teams to resolve issues efficiently and pragmatically.

* Refine detection tooling by tuning logic and reducing unnecessary or inaccurate alerts.

Operational Readiness & Observability

* Strengthen visibility across systems through improved log pipelines, alerting pathways, and monitoring strategies.

* Contribute to updating response guidelines, runbooks, and incident‑handling materials.

* Support initiatives aimed at enhancing defensive posture and operational robustness across platforms.

Core Requirements

* Strong experience in DevSecOps, cloud security, or infrastructure security functions.

* Hands‑on knowledge of modern CI/CD pipelines and automation tooling.

* Proven background securing AWS environments (Azure or GCP is also valuable).

* Practical experience with security scanning, vulnerability tooling, and tuning to improve accuracy.

* Proficiency in automation or scripting languages such as Python or Bash.

* Experience delivering infrastructure through IaC tooling such as Terraform or CloudFormation.

Preferred Background & Additional Capabilities

* Knowledge of securing containerised environments and orchestration platforms.

* Experience working within assurance‑focused frameworks including ISO 27001, SOC 2, or NIST.

* Familiarity with automated governance and policy‑driven cloud controls.

* Exposure to investigative, detection, or security operations workflows.

Qualifications That Would Be Beneficial

* Industry security certifications such as CISSP, CISM, CCSP, or GSEC.

* Cloud‑focused qualifications like AWS Security Specialty, AWS Solutions Architect, Azure Security Engineer Associate, or Google Professional Cloud Security Engineer.

* DevOps and automation‑related certifications such as Terraform Associate, CKA/CKAD, or Kubernetes Security Specialist (CKS).

* Compliance and governance accreditations including ISO 27001 Lead Implementer/Lead Auditor, CompTIA Security+, or NIST‑aligned training.

* Relevant computing or cybersecurity degree (BSc/MSc) or equivalent practical experience.

Keywords

DevSecOps, Cloud Security, AWS, Azure, GCP, CI/CD, Secure Software Delivery, Static Analysis, Dynamic Analysis, Dependency Scanning, Container Security, Kubernetes Security, Infrastructure as Code, Terraform, CloudFormation, Pipeline Security, Cloud Governance, Policy as Code, Secrets Management, Identity and Access Management, Vulnerability Remediation, Threat Detection, Observability, Logging, Automation Engineering, Python, Bash, Zero Trust, Security Hardening, Cloud Monitoring, Least Privilege, Compliance Automation, Security Orchestration

About Adecco

Adecco is acting as an Employment Agency. We are proud to be an equal opportunities employer. We are on the client's supplier list for this role

Related Jobs

View all jobs

Senior Security Engineer

Lead DevOps Engineer - Cyber Security

Cybersecurity Architect

DevSecOps Engineer

DevOps Engineer

Cyber Security Consultant (MOD/Defence)

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Advertising cyber security jobs in the UK requires a different approach to most technical hiring. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Penetration Tester Jobs in the UK: What Employers Actually Want in 2026

The demand for skilled professionals in cyber security has never been higher, and penetration testers sit at the very heart of this rapidly evolving industry. As organisations across the UK continue to digitise their operations, protect sensitive data, and defend against increasingly sophisticated threats, the need for ethical hackers has grown dramatically. If you are considering a career in this field—or looking to advance within it—it is essential to understand what employers are really looking for in 2026. This guide breaks down the current expectations, required skills, certifications, and practical experience that can help you stand out in a competitive job market.

SOC Analyst Jobs UK 2026: Salaries, Skills & How to Get Hired

Cyber security is one of the UK's fastest-growing career paths — and SOC analyst is where most people begin. It's in high demand, genuinely accessible, and you don't need a degree or years of experience to get started. But knowing what UK employers actually want in 2026 — what they pay, which certs matter, and how to stand out — is a different matter. This guide covers all of it.