DevSecOps Developer

Sky UK
Charing Cross, United Kingdom
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Job location

Remote
Charing Cross, United Kingdom

Tech stack

JavaScript
PHP
API
Amazon Web Services (AWS)
Software System Penetration Testing
Computing Platforms
User Authentication
Cloud Database
DevOps
Distributed Systems
Python
Key Management
Systems Development Life Cycle
Secure Coding
Software Engineering
Systems Integration
Software Vulnerability Management
Data Logging
Cloud Platform System
Spring Cloud
Software Security
Backend
Event Driven Architecture
REST
Devsecops

Job description

The AppSec Tooling team at Sky is responsible for enabling secure software development practices across the organisation. We build and operate platforms that support penetration testing activities, including the scheduling, organisation, and management of testing engagements, as well as capabilities for threat modelling, security reporting, and vulnerability remediation.

This is an exciting opportunity to join the AppSec Tooling function at Sky as we continue to scale our platforms and services. We are expanding our UK-based capability to ensure software security is embedded by default across Sky's engineering estate.

This role requires strong hands-on software security knowledge, the ability to investigate and respond to application-level security vulnerabilities and incidents, and the confidence to influence engineering teams toward secure-by-design outcomes at scale.

.

What you'll do

  • Work closely with software engineering, platform, and DevOps teams to embed security into the end-to-end software delivery lifecycle across AWS-based environments
  • Support and guide the secure development of cloud-native applications, APIs, and backend services using technologies such as Python, JavaScript, and PHP
  • Provide practical guidance on secure application design, authentication, access control, secrets management, and resilient cloud architectures
  • Integrate security, testing, and automation controls into CI/CD pipelines and development workflows while maintaining a strong developer experience
  • Contribute to the development and maintenance of infrastructure as code, cloud automation, and scalable platform capabilities within AWS environments
  • Drive the adoption of engineering guardrails, reusable security patterns, and automation that enable teams to deliver securely and efficiently at scale
  • Support the identification, investigation, triage, and remediation of application and platform vulnerabilities in collaboration with engineering teams
  • Contribute to security incident response activities, including root cause analysis, remediation support, and continuous improvement initiatives
  • Work with platform and engineering teams to improve monitoring, logging, alerting, and observability practices across distributed systems
  • Promote a positive engineering and security culture through coaching, collaboration, knowledge sharing, and day-to-day engagement with development teams

Requirements

Do you have experience in Root cause analysis?, * Experience developing and supporting cloud-native applications using Python, JavaScript, and/or PHP within AWS-based environments

  • Familiarity with designing and integrating RESTful APIs, backend services, and event-driven architectures
  • Experience integrating security, testing, and automation controls into CI/CD pipelines and software delivery workflows
  • Hands-on experience with infrastructure as code and cloud automation to provision and manage scalable AWS environments
  • Experience working with containerised applications and modern platform technologies in distributed systems
  • Understanding of secure authentication, access control, secrets management, and security best practices in cloud environments
  • Experience implementing monitoring, logging, alerting, and observability practices for operational resilience and troubleshooting
  • Ability to investigate, triage, and help remediate application and platform security issues in collaboration with engineering teams
  • Strong problem-solving, collaboration, and communication skills, with the ability to work effectively across engineering, platform, and security teams in fast-paced environments

Benefits & conditions

Pulled from the full job description

  • Employee discount

  • Shuttle service provided

  • Company pension

  • Private medical insurance

  • Discounted gym membership, There's one thing people can't stop talking about when it comes to life at Sky: the perks. Here's a taster:""

  • Free Sky TV or NOW package, including Sky Sports and Sky Cinema"""

  • Pension package"with up to 9% employer contribution

  • Private healthcare"with mental health support"

  • Aviva Digital GP and dental insurance"

  • Discounts on Sky products, including Sky Mobile, Sky Broadband, Sky Glass and Sky Protect""

  • Sharesave and Tech schemes"

  • A range of Sky VIP rewards and experiences""

About the company

Working in Tech, Product or Data at Sky is about building the next and the new. From broadband to broadcast, streaming to mobile, Sky Stream to Sky Glass, we never stand still. We optimise and innovate. We turn big ideas into the products, content and services millions of people love. And we do it all right here at Sky.", At Sky, we want to be a community that thrives by being together. Flexible working remains a key part of that. We want our people to have the best of both worlds - time working at home, as well as time in the office., We're Sky, a leading media and entertainment company who connect millions with entertainment, sports, news and arts through innovative products and services. Working with us means you'll be bringing the joy of a better experience to more people, every day. All so we can do better and deliver better for our customers, colleagues and society.

Apply for this position