eFinancialCareers
Own the secure engineering and automation layer for the AI platform. This role makes releases controlled, repeatable and auditable through GitHub, CI/CD, Terraform, GitOps, OPA/Rego, code scanning, security gates and release/change evidence.
Core responsibilities
- Design, maintain and troubleshoot secure CI/CD pipelines and GitHub workflows.
- Maintain branch protection, pull request checks, required approvals and deployment controls.
- Build and maintain Terraform / Infrastructure-as-Code modules and GitOps deployment patterns.
- Integrate OPA/Rego policy-as-code into CI/CD for pre-deployment guardrails.
- Implement and operate code scanning: SAST, dependency, secret, IaC and container scanning where applicable.
- Ensure critical/high findings block merge or deployment unless formally excepted.
- Support release management: environment consistency, promotion, rollback planning and post-release validation.
- Track security findings, policy exceptions and remediation evidence with clear reporting.
- Support repository standardisation, pipeline templates, deployment automation and audit evidence.
- Work closely with Cloud Engineer on Azure platform patterns and operational handover.
Required skills
- Strong DevOps / DevSecOps engineering experience in cloud environments.
- Strong GitHub, CI/CD, branch protection, pull request governance and deployment automation skills.
- Strong Terraform, Infrastructure-as-Code and GitOps capability.
- Experience with OPA/Rego or comparable policy-as-code tooling.
- Good understanding of secure software delivery and cloud security controls.
- Working knowledge of SAST, dependency scanning, secret scanning, IaC scanning and container scanning.
- Ability to troubleshoot pipelines, deployments, infrastructure, security gates and access issues.
- Good documentation discipline and ability to turn controls into repeatable standards.
Useful evidence when hiring
- Has built or standardised CI/CD pipelines and deployment controls in a regulated enterprise.
- Can explain Terraform state, environments, approval gates, rollback and drift control.
- Can explain how code/security scanning should work in pull requests and release pipelines.
- Has implemented policy-as-code or equivalent automated governance, not just written manual standards.
To apply for this job please visit www.reed.co.uk.
Make this application stronger
Use these quick checks before applying so your CV, interview preparation and job search are better matched to this vacancy.
Before you apply
Check the key details and make sure the role matches what you are looking for.
- Review the job title, company, location, salary and working pattern if provided.
- Check the skills, experience or qualifications requested by the employer.
- Make sure the commute, hours and contract type are realistic for you.
Tailor your CV
For IT Jobs, highlight the most relevant skills, experience and achievements linked to this type of work. Keep it honest, clear and focused on what the employer is asking for.
Use the CV Builder or browse Career Advice.
Prepare for interview
If your application is successful, prepare simple examples that show your motivation, strengths and suitability.
Keep searching smarter
Do not rely on one application. Keep searching similar roles and set up alerts so new vacancies reach you faster.
