

Now Resourcing
Senior DevSecOps Engineer
⭐ - Featured Role | Apply direct with Data Freelance Hub
This role is for a Senior DevSecOps Engineer, offering £500 - £525 pd for a 12-month contract in the UK. Key skills include 7+ years in software engineering, Jenkins, Groovy, Python, and supply chain security practices.
🌎 - Country
United States
💱 - Currency
£ GBP
-
💰 - Day rate
525
-
🗓️ - Date
April 2, 2026
🕒 - Duration
More than 6 months
-
🏝️ - Location
Unknown
-
📄 - Contract
Inside IR35
-
🔒 - Security
Unknown
-
📍 - Location detailed
United Kingdom
-
🧠 - Skills detailed
#Jenkins #AWS (Amazon Web Services) #Automation #Python #YAML (YAML Ain't Markup Language) #Groovy #Containers #Security #Java #JSON (JavaScript Object Notation) #SonarQube #GCP (Google Cloud Platform) #Terraform #DevSecOps #Maven #Deployment #Compliance
Role description
Senior DevSecOps Engineer (CI/CD & Supply Chain Security)
£500 - £525 pd, Inside IR35
12 month contract
UK, ASAP start
A leading consultancy is seeking a Senior DevSecOps Engineer to join their platform engineering team for a 12 month engagement. This role offers the chance to own a critical CI/CD platform, shape modern supply chain security practices and tackle high-impact performance and security challenges at scale.
The Role
You will own and evolve the Jenkins Shared Library powering multi-language pipelines (Java, Node, Python, Terraform, Helm, containers). You will design high-performance, secure pipelines and embed best-in-class software supply chain practices (SLSA, SBOMs, provenance) across teams.
Key Responsibilities
• Develop and maintain Jenkins pipeline steps in Groovy
• Build pipelines for build, test, security scanning, packaging and deployment
• Extend Python tooling for SBOMs, provenance and scan aggregation
• Optimise pipelines with caching, parallel execution and dependency prefetching
• Ensure artifact integrity with digests, reproducibility and traceability
• Refactor legacy scripts and enforce standard CI patterns
• Support teams on secure pipelines and troubleshoot failures
Essential Skills & Experience
• 7+ years software engineering (3+ in CI/CD / DevSecOps)
• Jenkins Shared Library + Groovy pipelines
• Python automation (JSON/YAML, tooling scripts)
• Build ecosystems: Maven, NPM, Python; Helm/Terraform familiarity
• Supply chain security: SLSA, SBOMs, artifact digests
• Security tooling: SonarQube, Sonatype IQ, SAST, container scans
• CI/CD performance tuning and troubleshooting
• Security and compliance best practices
Desirable Skills
Artifact signing (Cosign/OCI), GitOps/release automation, AWS/GCP experience
Senior DevSecOps Engineer (CI/CD & Supply Chain Security)
£500 - £525 pd, Inside IR35
12 month contract
UK, ASAP start
A leading consultancy is seeking a Senior DevSecOps Engineer to join their platform engineering team for a 12 month engagement. This role offers the chance to own a critical CI/CD platform, shape modern supply chain security practices and tackle high-impact performance and security challenges at scale.
The Role
You will own and evolve the Jenkins Shared Library powering multi-language pipelines (Java, Node, Python, Terraform, Helm, containers). You will design high-performance, secure pipelines and embed best-in-class software supply chain practices (SLSA, SBOMs, provenance) across teams.
Key Responsibilities
• Develop and maintain Jenkins pipeline steps in Groovy
• Build pipelines for build, test, security scanning, packaging and deployment
• Extend Python tooling for SBOMs, provenance and scan aggregation
• Optimise pipelines with caching, parallel execution and dependency prefetching
• Ensure artifact integrity with digests, reproducibility and traceability
• Refactor legacy scripts and enforce standard CI patterns
• Support teams on secure pipelines and troubleshoot failures
Essential Skills & Experience
• 7+ years software engineering (3+ in CI/CD / DevSecOps)
• Jenkins Shared Library + Groovy pipelines
• Python automation (JSON/YAML, tooling scripts)
• Build ecosystems: Maven, NPM, Python; Helm/Terraform familiarity
• Supply chain security: SLSA, SBOMs, artifact digests
• Security tooling: SonarQube, Sonatype IQ, SAST, container scans
• CI/CD performance tuning and troubleshooting
• Security and compliance best practices
Desirable Skills
Artifact signing (Cosign/OCI), GitOps/release automation, AWS/GCP experience






