Lead InfoSec Engineer, DevSecOps
We are seeking a Lead InfoSec Engineer, DevSecOps to strengthen security across the software development lifecycle and help build secure, scalable engineering practices. In this role, you will lead the integration of security into development, delivery, and operational processes, working closely with software engineers, platform teams, architects, and risk stakeholders. You will help shape security strategy while remaining hands-on with the tools, technologies, and processes that protect applications, infrastructure, and sensitive data.
Key responsibilities include designing and maintaining DevSecOps capabilities across CI/CD pipelines, cloud environments, infrastructure as code, container platforms, and source-control systems. You will establish security controls, automate vulnerability detection and remediation, and improve the management of code, dependency, container, configuration, and cloud security risks. You will lead threat modelling, secure design reviews, and security testing activities, ensuring findings are prioritised and addressed effectively. The role will also involve defining security standards and engineering patterns, supporting incident response and investigations, contributing to security architecture decisions, and producing clear metrics and reporting for technical and senior stakeholders. You will mentor engineers, promote security awareness, and champion practical, risk-based improvements across delivery teams.
The successful candidate will have substantial experience in information security engineering, DevSecOps, application security, cloud security, or a closely related discipline, together with proven experience leading technical initiatives. You should be confident working with CI/CD tooling, security scanning technologies, scripting or software development, and modern cloud-native environments. Experience with containers, Kubernetes, infrastructure as code, identity and access management, threat modelling, and recognised security frameworks is highly desirable. Strong knowledge of secure development practices, vulnerability management, and security automation is essential. Relevant professional certifications are welcome but not required. We are looking for an analytical and collaborative leader who can communicate complex security matters clearly, influence teams without relying on authority, and balance robust controls with the need to deliver reliable products at pace.
Lead InfoSec Engineer, DevSecOps
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- Security Consultant
- IT Security Manager
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Cyber SOC Specialist - ESN
- End User Platform Vulnerabilit...
- Lead Security Engineer
- Member of Technical Staff (Sof...
- Cyber Security Consultant - As...
- Cyber Security Analyst - Enter...
- Technical Leader - Splunk Secu...
- Digital & Cyber Resilience – M...
- Data Protection Engineer
- Security Advisor
- Information Security Engineer
- Test Automation Engineer - Sec...
TOP SEARCHES
LOCATIONS
- Engineer
- Data Scientist
- Senior Data Scientist
- Head of Data Science
- Trainee Data Scientist
- Data Science Graduate
- Senior Financial Accountant
- Management Accountant
- Cost Accountant
- Civil Engineer
- Senior Civil Engineer
- Civil Design Engineer