SonicJobs Logo
Login
Left arrow iconBack to search

Cyber Security Engineer - DevSecOp

Summer Browning Associates
Posted 12 hours ago, valid for 14 days
Location

London, Greater London SW1A2DX, England

Salary

£NEG Excellent Day Rates

info
Contract type

Full Time

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.

Sonic Summary

info
  • Summer-Browning Associates is seeking a Cyber Security Engineer with a focus on DevSecOps for a six-month assignment in London, offering hybrid working options.
  • The ideal candidate must have active SC Clearance and a solid background in DevSecOps Cyber Security Engineering, with experience in penetration testing and vulnerability assessments.
  • Candidates should be proficient in integrating automated security tools into CI/CD pipelines and familiar with security testing tools such as Burp Suite and OWASP ZAP.
  • Experience in securing cloud infrastructure, especially in AWS and Azure, along with scripting skills in Python and Bash, is essential.
  • Relevant certifications like OSCP or CREST/TIGER Scheme are required, and applicants should have experience in the UK public sector security standards.

Cyber Security Engineer - DevSecOp

Summer-Browning Associates is currently assisting our client in the Public Sector, who is looking for a Cyber Security Engineering for an initial six-month assignment.

Location: Hybrid working - London

Essential Skills: The ideal candidate will hold active SC Clearance and have a proven background in DevSecOps Cyber Security Engineering, showcasing the following skills and experience:

  • Experience in penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure.
  • Experience in integrating automated security tools into CI/CD pipelines (SAST, DAST, dependency checking, IaC, etc.) and making necessary recommendations.
  • Proficiency in security testing tools such as Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.
  • Ability to identify vulnerabilities and ensure secure coding practices.
  • Experience in maintaining security assurance across the SDLC in line with NCSC guidelines. -
  • Knowledge of DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.).
  • Expertise in securing cloud infrastructure, specifically in AWS and Azure.
  • Experience in scripting and automation using Python and Bash.
  • Relevant certifications, such as OSCP or CREST/TIGER Scheme.
  • Experience delivering assessments under the CHECK scheme, either as a CHECK Team Member or Leader.
  • Knowledge of UK public sector security and data protection standards, including NCSC guidelines and Cyber Essentials Plus.

To apply, please submit your latest CV for review.

Apply now in a few quick clicks

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.