Cyber Security Engineer - SC Cleared - 6 monthsRate: £700 per dayIR35 - InsideLocation - 2 days per week on-site (London)The role:A Central Government Institution are seeking a Cyber Security Engineer, with experience of DevSecOps principles and tools, to undertake an initial 6 month contract.You will be joining Application Security Team who are focused on building security automation into delivery pipelines and conducting security focused tests against digital services.Skills & experience required bullet points Key Responsibilities
- Perform penetration testing and vulnerability assessments of web applications, APIs, and cloud infrastructure.
- Evaluate the automated security tooling into CI/CD pipelines (SAST, DAST, dependency checking, IaC etc), and make necessary recommendations.
- Collaborate with developers to remediate identified vulnerabilities and ensure secure code practices.
- Provide expert input on cloud security (AWS, Azure, or GCP) and DevSecOps tooling.
- Assist in maintaining security assurance across the SDLC in line with NCSC guidelines.
Essential Criteria
- Demonstrable experience with:
- Penetration testing, ethical hacking, or vulnerability assessments.
- Security testing tools (e.g., Burp Suite, OWASP ZAP, Nikto, Nmap, Metasploit, etc.).
- DevSecOps principles and tools (e.g., Veracode, SonarQube, GitHub Advanced Security, IaC scanning, etc.).
- Secure Cloud Infrastructure, specifically AWS and Azure.
- Scripting and automation using Python and Bash.
- Certifications: OSCP or CREST / TIGER Scheme.
- Strong communication skills and the ability to explain security issues to technical and non-technical stakeholders.
Desirable
- Experience delivering assessments under the CHECK scheme (e.g., as a CHECK Team Member/Leader).
- Knowledge of UK public sector security and data protection standards (e.g., NCSC, Cyber Essentials Plus).
- Threat modelling and secure design practices.
If you are availabale and interested, please aplly in the first instance and you will be contacted to discuss the position further.