Own cloud security posture including network segmentation, security group design, WAF implementation, and infrastructure hardening aligned to best practices (e.g. CIS benchmarks).
Maintain and improve CI/CD pipelines
Improve deployment safety, consistency, rollback capability and release quality
Establish best practices for build, test, deployment and environment promotion
Establish and enforce security gates to prevent deployment of high-risk code or misconfigured infrastructure
Own and operate a structured vulnerability management program, including scanning, prioritisation, remediation SLAs and reporting
Define and enforce identity and access management standards, including role-based access control, least privilege, and automated provisioning and deprovisioning
Support ISO 27001-aligned controls, audit readiness and technical compliance requirements
Lead or support root cause analysis for incidents, outages and major performance issues
Drive preventative improvements following production issues FMClarity
Help engineering move from reactive firefighting to disciplined operational management
Implement and manage centralised logging and security monitoring, with alerting aligned to security risks and incidents.
Partner with software engineers on infrastructure, deployment and operational best practices
Provide clear recommendations to engineering leadership on operational risk, priorities and trade-offs
Requirements
Strong experience in a senior DevOps, Platform Engineering, SRE or SecDevOps role
Hands-on AWS experience
Experience with CI/CD pipelines
Knowledge of infrastructure as code such as Terraform, CloudFormation or CDK
Strong Linux and scripting skills
Experience with monitoring and logging tools
Good understanding of security fundamentals
Confidence working in production and responding to incidents
Clear communication skills and a collaborative approach
Tech Stack
AWS
Cloud
Linux
Terraform
Benefits
Full-time permanent role with a flexible, hybrid work arrangement (2 days in office).
Ongoing professional development and training opportunities.