DevSecOps Engineer
New Today
Overview
Bondsmith is a fast growing digital cash savings platform focused on helping customers make the most of their money by offering access to a wide range of savings products. We work with financial institutions like wealth managers, fintechs, banks, and advisors, providing tools to get better returns on cash, engage more effectively with clients, and simplify operations. Our goal is to help savers get the most out of their cash. We’re regulated by the Financial Conduct Authority in the UK.
Role
We’re seeking a DevSecOps Engineer to join the Infrastructure Team at Bondsmith. In this role, you’ll shape and secure our infrastructure and tooling, define best practices for delivering secure code at scale, and contribute to a growing security function that underpins a product handling sensitive financial data. If you’re enthusiastic about embedding security into modern infrastructure and pipelines, and motivated by finding the right balance between risk and innovation, we’d love to hear from you! You will work closely with Development and QA teams to embed robust security practices across the software development lifecycle (SDLC).
This is a hybrid role - you will be required to work from the London office at least 3 days a week.
Responsibilities
- Define and lead the security vision for our infrastructure and pipelines, with a focus on automation, guardrails, and golden paths.
- Develop and own Infrastructure-as-Code (IaC) security policies, including automation to detect and remediate misconfigurations.
- Strengthen security across Kubernetes and AWS by implementing robust controls to harden cloud and cluster environments.
- Partner with Developer Experience and SRE teams to establish and maintain secure CI/CD practices.
- Drive organisation-wide initiatives for secure cloud and DevOps practices
- Coach and support engineering teams on secure deployment strategies and configuration best practices
- Prioritise and manage the security roadmap within your area of expertise
Qualifications / You’ll thrive in this role if you have
- Strong communication skills and a collaborative mindset – you know security is a team sport
- A pragmatic approach to problem-solving – you design secure systems that are still usable
- Deep knowledge of cloud platforms and security hardening techniques, particularly AWS and Kubernetes
- Experience automating security checks in CI/CD pipelines
- A strong foundation in Terraform
- A passion for complex systems and applying creative thinking to technical challenges
- A growth mindset – you enjoy learning and tackling new domains
Experience bonus
- Securing JVM-based applications (e.g. Java)
- Familiarity with ISO 27001, SOC 2, GDPR or related technical compliance areas
How you’ll develop in this role
In Your First 6 Months At Bondsmith, You Will
- Lead security automation initiatives within infrastructure and deployment pipelines
- Define and execute a roadmap for DevSecOps at Bondsmith, aligning security with our product growth
- Partner with engineering teams to build secure-by-default solutions into our systems and tools
About You
- Confident & Motivated: You take initiative and are eager to tackle new challenges.
- Independent: You’re comfortable working on tasks autonomously but enjoy collaborating with a team.
- Quick to Learn: You’re excited to dive into new technologies and constantly improve your skills.
- Team-Oriented: You value working with a high-performance team and contributing to a positive culture.
- Dedicated & Resourceful: You bring a strong work ethic and a solutions-oriented mindset.
- Customer-Focused: You’re driven by the chance to create solutions that make a difference for our customers.
Why Join Bondsmith?
- Bondsmith is a fintech success story in the making. We’re a small, focused team delivering real value to major enterprise clients, and the demand for what we’re building continues to grow. As an early joiner, you’ll have the rare opportunity to make a meaningful impact, shape the future of our products, and grow alongside the company. If you\'re excited by high-growth environments and want your work to matter, Bondsmith is the place to be.
Company Benefits
- Competitive salary
- Hybrid working (average of 3 days a week expected in office)
- Healthcare
- Pension scheme
- Share scheme participation
- All the right equipment to make sure you’re working at your best
- Deliveroo for working late in the office
- Location:
- London, England, United Kingdom
- Salary:
- £125,000 - £150,000
- Job Type:
- FullTime
- Category:
- IT & Technology
We found some similar jobs based on your search
-
New Today
DevSecOps Engineer
-
London
- IT & Technology
Overview Bondsmith is a fast growing digital cash savings platform focused on helping customers make the most of their money by offering access to a wide range of savings products. We work with financial institutions like wealth managers, fintechs, b...
More Details -
-
New Today
DevSecOps Engineer
-
London, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Overview Bondsmith is a fast growing digital cash savings platform focused on helping customers make the most of their money by offering access to a wide range of savings products. We work with financial institutions like wealth managers, fintechs, b...
More Details -
-
2 Days Old
DevSecOps Engineer
-
Cambridge
-
£70,000 - £80,000
- Engineering
DevSecOps Engineer - Responsibilities:Collaborate with architects and developers to review application designs and code for security vulnerabilities. Establish and drive a threat modelling program, ensuring security is considered early in the design phase. Define and integrate security testing plans into the software development life...
More Details -
-
2 Days Old
Senior Engineer (Fullstack & DevSecOps)
-
Manchester, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Join to apply for the Senior Engineer (Fullstack & DevSecOps) role at IBM CIC. As a Senior Developer, you'll guide the design, development, and maintenance of our cloud-based applications while mentoring junior and mid-level developers. You will oversee the entire software development lifecycle.
More Details -
-
2 Days Old
Senior Engineer (Fullstack & DevSecOps)
-
Leicester, England, United Kingdom
-
£125,000 - £150,000
- IT & Technology
Senior Engineer (Fullstack & DevSecOps) role at IBM CIC in the UK. You'll work with leading professionals across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies. As a Senior Developer, you'll guide the design, development, and maintenance of our cloud-based applications while...
More Details -
-
2 Days Old
Site Reliability Engineer (SRE) | DevOps | DevSecOps
-
London, England, United Kingdom
-
£150,000 - £200,000
- IT & Technology
Site Reliability Engineer (SRE) - DevSecOps | Cloud Engineering | Production Environments | Observability. London. 6-month contract (Outside IR35) with long-term extension opportunities. London twice a week (hybrid model) SC level may be required.
More Details -