DevSecOps Engineer, Fintech, GCP, London (Hybrid), Up to £90k
- Hiring from
- United Kingdom
- Work type
- Hybrid
- Posted
- Sep 28, 2026
Is this job info correct?
DevSecOps Engineer, Fintech, GCP, London (Hybrid), Up to £90k
A regulated fintech is looking for a DevSecOps Engineer to build security into every stage of the SDLC on a highly available, multi-tenant platform built on GCP and Kubernetes. This is a foundational role: you'll define the security posture from the ground up, automate compliance, harden the infrastructure, and make secure delivery the default for every engineer.
What you'll be doing:
- Owning the security toolchain: choosing, integrating, and maintaining tools across environments and CI/CD
- Designing automated guardrails and policy enforcement across the cloud estate
- Hardening GCP, covering IAM, network security, and resource configuration
- Converting compliance requirements into automated, auditable controls
- Managing vulnerability and patching end to end
- Creating "golden path" templates that let feature teams move quickly and securely
- Contributing to incident response when issues arise
What you'll bring:
- Extensive hands-on experience securing high-availability GCP environments
- Strong API security skills, including reviewing APIs, defining patterns, and coaching other engineers
- Expert GKE knowledge, including network policies, container runtime security, and secrets management
- Proficiency with Infrastructure as Code (Terraform or OpenTofu)
- Experience with Aqua Security, Falco, Prisma Cloud, or comparable CSPM/CWPP/CNAPP tooling
- Confident scripting in Python, Go, or Shell
- Proven experience building secure CI/CD pipelines with enforced checks (GitLab CI, GitHub Actions)
Nice to have:
- Exposure to SOC2, ISO 27001, PCI DSS, or DORA
- GCP Professional Security Engineer, CKS, or CISSP certification