Job Summary

The DevSecOps Engineer is a hands-on security engineering role responsible for embedding security into the way SGX designs, builds and operates mission-critical financial market systems. Sitting within the Market Engineering team, you will design secure delivery pipelines, automate security controls and help engineering teams ship resilient, compliant software at speed.

This is a high-impact role for a security-minded engineer who enjoys building platforms, codifying guardrails and influencing engineering practices at scale. You will work across application, platform and cyber security teams to champion “secure by design” and “shift-left” practices without slowing delivery.

Job Responsibilities

  • CI/CD Engineering: Define enterprise pipeline standards and automation practices.
  • Infrastructure as Code: Establish IaC standards and platform automation capabilities.
  • DevSecOps: Establish DevSecOps standards and security automation patterns.
  • Developer Experience (DevEx): Lead developer experience initiatives and engineering enablement.
  • Platform Engineering: Lead platform engineering practices and capabilities.
  • Environment Management: Lead environment strategy and engineering self-service adoption.
  • Engineering Tooling: Define engineering tooling standards and governance.
  • Automation Engineering: Lead enterprise workflow automation programmes.
  • Compliance Automation: Establish policy-as-code and compliance automation standards.
  • Platform Leadership: Lead DevOps capability development and standardisation across teams.
  • Agentic AI for Platform & Operations: Lead the domain's design of reusable agentic platform services that reduce engineering toil, improve DevEx, automate compliance evidence and integrate agents into CI/CD, cloud, environment, security and observability workflows.
  • Own high-visibility projects or workstreams, with clear accountability for outcomes, delivery milestones, risks, dependencies and senior management updates.
  • Provide senior-level security architecture input, threat modelling and secure design guidance for new products, platforms and major technology changes.

Job Requirements

  • Experience: ~5-10 years of experience in DevSecOps, security engineering, platform engineering or technology leadership within complex, high-availability environments; financial services or regulated industry experience is strongly advantageous.
  • Track record: Proven ability to lead projects, workstreams or engineering teams with clear accountability for outcomes, stakeholder alignment, risk management and execution quality, including delivering work with high management visibility.
  • Technical stack: Strong hands-on knowledge of secure SDLC, CI/CD, SAST/DAST, SCA, container security, secrets management, compliance-as-code and policy-as-code, with practical expertise across Jenkins, GitLab CI/CD, Terraform, Docker, Kubernetes, AWS, Azure, GCP, Python, Bash or PowerShell, and observability platforms such as ELK, Datadog and Coralogix.
  • Standards & environment: Strong grounding in IAM, encryption, secure configuration, vulnerability management, incident response, technology risk and security standards such as OWASP, NIST and CIS Benchmarks.
  • Communication & leadership: Strong communication, influencing and stakeholder management skills, with the confidence to challenge constructively and guide teams toward secure, pragmatic and sustainable outcomes.
  • Education & certifications: Degree in Computer Science, Engineering, Information Security or related discipline; relevant cloud, DevOps, security or architecture certifications are advantageous.
Similar jobs