Lead InfoSec Engineer, DevSecOps
We are seeking a Lead InfoSec Engineer, DevSecOps to strengthen security across the software development lifecycle and help build secure, scalable engineering practices. In this role, you will lead the integration of security into development, delivery, and operational processes, working closely with software engineers, platform teams, architects, and risk stakeholders. You will help shape security strategy while remaining hands-on with the tools, technologies, and processes that protect applications, infrastructure, and sensitive data.
Key responsibilities include designing and maintaining DevSecOps capabilities across CI/CD pipelines, cloud environments, infrastructure as code, container platforms, and source-control systems. You will establish security controls, automate vulnerability detection and remediation, and improve the management of code, dependency, container, configuration, and cloud security risks. You will lead threat modelling, secure design reviews, and security testing activities, ensuring findings are prioritised and addressed effectively. The role will also involve defining security standards and engineering patterns, supporting incident response and investigations, contributing to security architecture decisions, and producing clear metrics and reporting for technical and senior stakeholders. You will mentor engineers, promote security awareness, and champion practical, risk-based improvements across delivery teams.
The successful candidate will have substantial experience in information security engineering, DevSecOps, application security, cloud security, or a closely related discipline, together with proven experience leading technical initiatives. You should be confident working with CI/CD tooling, security scanning technologies, scripting or software development, and modern cloud-native environments. Experience with containers, Kubernetes, infrastructure as code, identity and access management, threat modelling, and recognised security frameworks is highly desirable. Strong knowledge of secure development practices, vulnerability management, and security automation is essential. Relevant professional certifications are welcome but not required. We are looking for an analytical and collaborative leader who can communicate complex security matters clearly, influence teams without relying on authority, and balance robust controls with the need to deliver reliable products at pace.
Lead InfoSec Engineer, DevSecOps
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...