SonicJobs Logo
Login
Left arrow iconBack to search

Devops Engineer

Vallum Associates
Posted 2 days ago, valid for 15 days
Location

Sheffield, South Yorkshire S11 9BA, England

Salary

£40,000 - £48,000 per year

info
Contract type

Full Time

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The position is for a DevOps Engineer on a contract basis inside IR35 with a hybrid work model.
  • Candidates are required to have at least 7 years of engineering experience, with a minimum of 3 years focused on CI/CD platforms or DevSecOps.
  • The role involves designing Groovy pipeline steps, extending Python tooling for security and performance optimization, and mentoring other engineers.
  • Essential skills include strong expertise in Jenkins and Groovy, advanced Python automation, and knowledge of supply-chain security practices.
  • The salary for this position is competitive and commensurate with experience.

Devops Engineer- Contract inside ir35- Hybrid

Core Responsibilities:

  • Design and maintain Groovy pipeline steps (build, test, package, scan, deploy).
  • Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (SonarQube, Sonatype IQ,SAST/Container).
  • Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency prefetch).
  • Ensure artifact integrity (correct SHA1/SHA256 mapping, reproducible inputs, evidence modeling).
  • Refactor legacy scripts (remove global state, consolidate hashing, standardize templates).
  • Document ci-config.yaml standards and usage patterns.
  • Mentor engineers on secure pipeline developme

Essential Skills: -

  • 7+ years engineering; 3+ in CI/CD platform or DevSecOps.
  • StrongJenkins + Groovy shared library expertise.
  • Advanced Python automation (JSON/YAML processing, tooling scripts).
  • Deep Maven/NPM/Python packaging knowledge; exposure to Helm/Terraform and container image metadata.
  • Supply-chain security (SLSA, CycloneDX SBOM, digests).
  • Experience with SonarQube, Sonatype IQ, container and SAST scanning.
  • Proven performance tuning (caching, parallelization, dependency pruning).
  • Compliance Awareness.

Apply now in a few quick clicks

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.