
Security Operations DevOps Engineer
Security Operations DevOps Engineer at Companies House in United Kingdom
About the role
Job summary
Please note : Applicants should review all aspects of this advert to ensure a thorough understanding. If reviewing via a screen reader, please note that the Job summary, Job description, Person specification and Things you need to know sections have been emphasised
About The Role
Join Companies House as a Security Operations DevSecOps Engineer and help shape the future of our Security Operations capability.
This is a hands-on engineering role where you'll design, build and automate the cloud infrastructure, tooling and platforms that support our security monitoring and response services. Working across AWS, Azure and Microsoft Sentinel , you'll develop secure, scalable and resilient solutions using Terraform, GitHub, Infrastructure as Code and CI/CD practices .
You'll play a key role in improving automation, integrating security technologies, and enhancing the reliability of our security platforms, enabling the Security Operations team to respond to threats more effectively and independently.
This is an exciting opportunity to take ownership of significant technical challenges while helping to build a modern, engineering-led Security Operations function.
Technical Frameworks
This role aligns with the Government Security Profession Secure Development Framework and the Government Digital and Data (GDaD) DevOps Engineer Capability Framework. Candidates may find these useful when preparing examples for their personal statement and demonstrating relevant technical skills and experience.
- Government Security Profession: Secure Development Framework
Secure Development - UK Government Security - Beta
- Government Digital and Data Profession: DevOps Engineer Capability Framework
https://ddat-capability-framework.service.gov.uk/role/development-operations-devops-engineer
About the Team
The Security Operations team plays a critical role in protecting Companies House systems, services and data from cyber threats. We are responsible for monitoring, detecting and responding to security incidents, while continuously improving our security capabilities across a complex multi-cloud environment.
As part of a growing and evolving function, we are building greater in-house engineering capability to enhance our security tooling, automation and monitoring platforms. Working closely with colleagues across Security, Platform Engineering and Digital teams, we develop innovative solutions that strengthen our security posture and support the delivery of secure public services.
This is an exciting opportunity to join a collaborative team where you'll have the freedom to influence how security technology is designed, built and operated, while helping to shape the future of Security Operations at Companies House.
Find out more about what a great place Companies House is to work
Job description
To be eligible for this role you also need to meet our Nationality requirements which are outlined below and also successful candidates must meet the security requirements for Security Clearance (SC) before they can be appointed. To gain (SC) clearance you will need to have been a UK resident for a minimum of 3 years out of the last 5 years. For more details, please refer to the ‘Things you need to know’ section below.
As a Security Operations DevSecOps Engineer, you will:
- Design, build and maintain security infrastructure across AWS and Azure environments.
- Develop and manage Infrastructure as Code solutions using Terraform.
- Build and maintain secure CI/CD pipelines and deployment processes.
- Engineer and support Microsoft Sentinel, including data connectors, integrations and automation.
- Develop integrations and data pipelines that collect, process and route security telemetry.
- Create automated solutions to improve monitoring, investigation and response activities.
- Monitor, maintain and enhance the reliability, resilience and security of security platforms and services.
- Work closely with Security Operations analysts and engineering teams to develop scalable detection and monitoring solutions.
- Take technical ownership of security engineering initiatives and drive continuous improvement across the Security Operations capability.
Please note - Companies House cannot offer Visa sponsorship to candidates through this campaign.
Where will you be working?
You will be aligned to either the Cardiff or Edinburgh office, where you will be expected to attend at least once a week. We are currently using a hybrid approach to the way we work which provides opportunities for you to be adaptable in the way you work so that you can achieve a healthy balance between your work and home life. Your manager will agree regular patterns of attendance with you; however, you may be required to make yourself available to attend the office more frequently when required to meet business needs.
Person specification
What we’re looking for
The successful candidate will be an experienced cloud and security engineer with strong hands-on technical skills and the ability to design, build, automate and maintain security infrastructure across a multi-cloud environment.
Experience
- Strong hands-on experience engineering and supporting Amazon Web Services environments, including cloud infrastructure, security services, logging and integrations.
- Strong practical experience using Terraform and Infrastructure as Code to build, configure and manage cloud infrastructure.
- Strong practical experience using GitHub for source control, versioning, code review and engineering workflows.
- Experience developing and maintaining continuous integration and deployment pipelines using Concourse or comparable deployment technologies.
- Experience working with Microsoft Azure and Microsoft Sentinel, including security monitoring, data ingestion, integrations, configuration and automation.
- Experience developing integrations and automation between cloud platforms and security technologies using scripting, application programming interfaces and automated workflows.
- Experience supporting operational cloud platforms and troubleshooting complex infrastructure, deployment, integration and data pipeline issues.
- Ability to take technical ownership of security engineering problems, design effective solutions and troubleshoot complex issues across cloud infrastructure, deployment pipelines and security platforms.
- Ability to work collaboratively with Security Operations, platform and engineering teams, translating security requirements into reliable, secure, scalable and maintainable technical solutions.
Behaviours
We'll assess you against these behaviours during the selection process:
- Working Together
- Delivering at Pace
Technical skills
We'll assess you against these technical skills during the selection process:
- Strong knowledge of Terraform and Infrastructure as Code, including state management, reusable infrastructure, testing and automated deployment practices. (This will be assessed at Stage 2 of the selection process)
- Strong knowledge of GitHub and modern source control and deployment practices. (This will be assessed at Stage 2 of the selection process)
- Strong understanding of cloud and DevSecOps engineering principles, including secrets management, access control, testing, change management, deployment resilience, rollback and recovery. (This will be assessed at Stage 2 of the selection process)
- Strong knowledge of Amazon Web Services architecture and security, including identity and access management, logging, monitoring and security services. (This will be assessed at Stage 3 of the selection process)
- Good working knowledge of Concourse or equivalent continuous integration and deployment technologies, including secure and resilient pipeline design. (This will be assessed at Stage 3 of the selection process)
- Good knowledge of Microsoft Azure and Microsoft Sentinel, including security monitoring architecture, data connectors, integrations and automation. (This will be assessed at Stage 3 of the selection process)
- Practical scripting and automation skills using Python, PowerShell, Bash or equivalent technologies. (This will be assessed at Stage 3 of the selection process)
- Understanding of security telemetry and the engineering required to reliably collect, process and route security data across cloud and security platforms. (This will be assessed at Stage 3 of the selection process)
Benefits
Alongside your salary of £62,881, Companies House contributes
£18,216 towards you being a member of the Civil Service Defined Benefit Pension scheme.
Find out what benefits a Civil Service Pension provides (opens in a new window).
We believe that our success is driven by the well-being and satisfaction of our team members at all levels of the organisation. At Companies House we’re committed to providing a comprehensive benefits package that goes beyond the ordinary, ensuring your career journey with us is not only fulfilling, but also rewarding. We pride ourselves on offering a quality work-life balance with our employee wellbeing being central to our working practices.
We offer a comprehensive range of benefits designed to support your wellbeing, professional development and financial security, including:
- Flexible working arrangements, with no core hours and working patterns available between 6am and 8pm.
- Hybrid working opportunities, helping you balance office collaboration with home working.
- 30 days annual leave, plus bank holidays, increasing with service.
- Civil Service Pension Scheme, with an average employer contribution of 28%.
- A strong commitment to learning, development and career progression.
- Access to wellbeing support, resources and initiatives that promote positive physical and mental health.
- A collaborative and inclusive working environment where colleagues are encouraged to bring their whole selves to work.
Head to Our benefits - Working for us - Recruitment (companieshouse.gov.uk) to find out more about the fantastic benefits package we have at Companies House.
Things you need to know
Artificial intelligence
Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use.
Selection process details
This vacancy is using Success Profiles (opens in a new window) , and will assess your Behaviours, Experience and Technical skills.
Additional details on security and vetting
Successful candidates must meet the security requirements for Security Check (SC) before they can be appointed. Further information on the vetting process can be found at National security vetting: clearance levels - GOV.UK .
To be eligible for SC clearance, candidates must meet the vetting criteria and have been a resident in the UK for at least 3 out of the last 5 years . Failure to meet the residency requirements will result in your security clearance application being rejected.
Please review our vetting charter to understand what you can expect from the process - The vetting charter - GOV.UK
If you have questions regarding this or are unsure if you meet the eligibility criteria, please contact recruitmentch@companieshouse.gov.uk
What will the process look like?
Communications will be electronic via email therefore it is important that you check your Civil Service Jobs account regularly, as well as your spam/junk email folder.
We welcome applications in Welsh / Rydym yn croesawi ceisiadau yn y Gymraeg.
Key Dates