> Markdown version of [/jobs/ext/3061790-devops-engineer](https://www.wearedevelopers.com/jobs/ext/3061790-devops-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevOps Engineer - **Company:** Xelix - **Location:** London, UK - **Experience:** Experienced - **Salary:** £66,261.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Amazon Elastic Compute Cloud, Amazon S3, Automation of Tests, Cloud Computing, Cloud Computing Security, Databases, Continuous Integration, Relational Databases, Linux, DevOps, Django Web Framework, Domain Name System (DNS), Github, Identity and Access Management, Python (Programming Language), Key Management, Network Architecture, Networking Basics, Routing, Octopus Deploy, Performance Tuning, Reliability Engineering, Prometheus, Runbook, Software Deployment, Tripwire, Datadog, Policy as Code, Scripting, Transport Layer Security, Load Balancing, Cloud Platform System, Delivery Pipeline, Grafana, Amazon Virtual Private Cloud (VPC), Containerization, Kubernetes, Infrastructure Automation Frameworks, Hashicorp, Route53, Functional Programming, Cloudwatch, Terraform, Prisma Cloud Platform, Devsecops, Docker, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** September 25, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5897391820 ## About the Role * 3-5 years of experience in a DevOps, Site Reliability Engineering, or Cloud Infrastructure role. * Strong hands-on experience with the AWS stack (e.g., EC2, VPC, IAM, S3, Lambda, ECS/EKS, CloudWatch, Route 53). * Proven experience managing infrastructure as code with Terraform in a team/GitOps workflow (PR-based review, remote state, modules, workspaces). * Practical experience with GitOps tooling and patterns (e.g., Argo CD, Flux, or equivalent PR-driven deployment models). * Proficiency in Python for automation, tooling, and scripting; Django experience is a plus. * Experience building and maintaining CI/CD pipelines in GitHub Actions (reusable workflows, custom actions, secrets management, environment gating). * Working knowledge of containerization and orchestration (Docker; ECS, EKS, or Kubernetes). * Familiarity with DevSecOps practices - shifting security left, integrating scanning tools into pipelines, and treating security findings as actionable engineering work. * Solid understanding of networking fundamentals (DNS, TLS, load balancing, VPC peering/routing). * Strong troubleshooting skills and comfort operating in a Linux environment. Preferred / Nice to Have * Experience with supply chain security practices and tooling. * Experience with cloud security posture management and tools such as AWS Security Hub, GuardDuty, Config, or third-party equivalents (Wiz, Prisma Cloud, etc.). * Familiarity with secrets management solutions (AWS Secrets Manager, HashiCorp Vault, SOPS) * Understanding of compliance frameworks relevant to cloud environments and experience with policy-as-code frameworks for automated compliance and guardrails. * Exposure to observability platforms such as Datadog, Prometheus/Grafana, or the OpenTelemetry ecosystem. * Experience with container image hardening and scanning (Trivy, Grype, or similar). * Experience with using AI tooling as well as a familiarity with security concerns around same. * Contributions to internal developer platforms or self-service infrastructure tooling. * Direct experience with scaling and supporting a production platform through a growth phase. * Relevant certifications (AWS Certified DevOps Engineer, AWS Certified Security - Specialty, HashiCorp Terraform Associate) are a plus but not required. Soft Skills & Working Style * Comfortable balancing competing priorities across platform reliability, feature delivery, and security remediation. * Strong written communication for documentation, incident write-ups, and cross-team collaboration. * A pragmatic, risk-aware approach to security - able to prioritise fixes by actual impact rather than treating every finding as equally urgent. * Collaborative mindset; willing to pair with developers to make secure, automated paths the easiest paths. * Curious and current on evolving DevOps and cloud-security practices, with a bias toward automation over manual process. ## Description We are looking for a mid-level DevOps Engineer to help operate and evolve our AWS-based infrastructure. You'll work at the intersection of infrastructure automation, application delivery, database operations, and security - using Terraform and GitOps workflows to manage cloud resources, GitHub Actions to power CI/CD, and Python to build the tooling that ties it all together. This role also plays a key part in our DevSecOps maturity, contributing to a cloud security improvement program and a software supply chain security initiative., * Design, provision, and maintain AWS infrastructure using Terraform, following GitOps principles (infrastructure changes proposed, reviewed, and merged via pull request, then applied through automated pipelines). * Own and evolve our GitHub Actions CI/CD pipelines, including build, test, security scanning, and deployment workflows across multiple environments. * Manage relational database infrastructure on RDS and Aurora, including provisioning, performance tuning, backup/restore strategy, patching, and failover testing. * Write Python-based tooling, automation scripts, and internal services to reduce manual toil and support platform operations. * Participate in on-call rotation, incident response, and post-incident reviews, driving toward blameless root-cause analysis and durable fixes. * Implement and maintain observability across infrastructure and applications (metrics, logs, traces, dashboards, and alerting). * Apply DevSecOps practices by embedding security checks into the development lifecycle (SAST/DAST, dependency scanning, container/image scanning, IaC scanning) rather than treating security as a separate gate. * Contribute to a cloud security improvement program: hardening IAM policies, reviewing network architecture and security groups, addressing findings from tools like AWS Security Hub/GuardDuty, and tracking remediation to closure. * Support a software supply chain security effort, including SBOM generation, dependency and artifact provenance, signing/verification of build artifacts, and vetting of third-party actions/images used in pipelines. * Help engineering teams to define infrastructure and deployment standards, and act as a resource for developers adopting IaC and CI/CD best practices. * Maintain clear documentation of infrastructure, runbooks, and security procedures., * Infrastructure changes flow through a reliable, auditable GitOps process with minimal manual intervention. * CI/CD pipelines are fast, secure, and trusted by engineering teams. * Database resources are reliable, well-monitored, and recoverable, with tested backup/restore procedures. * Measurable progress against the cloud security improvement program's roadmap (e.g., reduced high/critical findings, tightened IAM posture). * A maturing software supply chain security posture, with SBOMs, provenance, and artifact integrity checks integrated into standard delivery pipelines. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [My journey into DevOps world - How it all started!](https://www.wearedevelopers.com/videos/545-my-journey-into-devops-world-how-it-all-started) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)