As a DevSecOps Engineer you will be responsible for embedding security at every stage of the software development lifecycle. You will work closely with development, operations and security teams to design, implement and manage security controls within CI/CD pipelines ensuring compliance with industry standards and best practices. This role offers the opportunity to work in a dynamic, collaborative environment where security, automation and innovation go hand in hand. KEY RESPONSIBILIIES Integrate security tools and automation into CI/CD pipelines to enhance application security. Conduct vulnerability assessments, security audits and risk mitigation strategies. Develop and enforce security policies, ensuring adherence to regulatory and compliance requirements. Implement and manage security frameworks, including zero-trust architecture and identity management solutions. Monitor and respond to security threats, incidents and vulnerabilities in real time. Champion security best practices across the development and infrastructure teams. THE ESSENTIALS Degree in computer science, information technology, cybersecurity, or a related field. AWS Certified Security - Specialty or equivalent cloud security certification. Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP) Certified Kubernetes Security Specialist (CKS) GIAC Cloud Security Automation (GCSA) or similar DevSecOps-focused certification. Proven experience in DevSecOps, Cloud security or Application security. Hands-on experience with CI/CD pipelines (Jenkins, GitLab CI/CD, Azure, DevOps or similar) Strong knowledge of Cloud security (AWS, Azure or Google Cloud Platforms) Expertise in security tools such as SAST, DAST, container security and infrastructure as code (IaC) security. Experience with Kubernetes, Docker and microservices security. Proficiency in scripting languages (Python, Bash or PowerShell) for automation. Strong understanding of Identity and access management (IAM) , secrets management and encryption practices. Familiarity with compliance frameworks such as ISO27001 , NIST , CIS or SOC 2