Marie Curie
Title: Development Security Operations (DevSecOPs) Lead Salary: £55,424 per annum Hours/Contract: 35-hours per week Contract Type: Permanent, full-time Based: Hybrid location – home and London office based (expectation: office one-day per week) Closing date: 23 January -2023 Interview date: Week commencing 30-January-2023 Marie Curie is seeking an experienced Development, Security and Operations lead within its cyber security function. The mission for this person will be to lead a small team of DevSecOps professionals focused on reinforcing good practice, developing tools and linking systems to create joined up and effective services. The DevSecOps lead will build and maintain a business capacity to deliver change at a rapid pace, providing development, coding and consultancy services to effectively integrate new products via APIs and ensuring our cloud-based services are configured correctly and optimised to deliver efficient services. As a core team within cyber security, the DevSecOps lead will also be responsible for patching, mitigating and managing servers in an Azure cloud environment, escalating to the IT Architecture team and acting as a security liaison. The successful candidate will have non-technical skills (relationship management, organisational capability development) and technical skills (C++ or .Net programming skills) that will be required to ensure effective configuration management – identifying the configuration of various assets and determining the relationships between systems and services. The ability to suggest and control changes to the environment is vital for the DevSecOps Lead, as well as to verify and audit systems for compliance with specified internal and external environments. With an understanding of the principles of risk management, privacy management and project management, the role will be responsible for managing the relationship with the managed security service provider, identifying vulnerabilities in systema and processes and ensuring improvement works are undertaken to reduce our overall risk. Managing a technical team of Development Security Operations (DevSecOps) specialists, the Cyber Security Operations Manager will ensure that the relationships between security provider and vendors are managed effectively, and that the impacts of business decisions are known and where necessary, mitigated in cooperation with out service provider. Essential criteria- Software Development/Programming – REST API experience including deployment, security and orchestration, Web frameworks (e.g. React, Knockout and JQuery), Windows Forms (WinForms) and WCF, Azure DevOps for work item management, source control and CI/CD, PowerShell experience. Please note that we may require a code sample or skills test to confirm these skills. – Experience – BSc or MS (or equivalent experience) in Computer Science with a history of producing secure and clean code that is stable, operational and well-performing. A skills test may be required to demonstrate capability. – Platform as a Service – Experience with Public Cloud technologies (AWS and Azure preferred). Experience with Infrastructure-as-code (IaC) security scanning tools Experience with container security tools, working knowledge of firewalls, WAFs, network segmentation, VLANs, VPNs, and DoS/DDoS mitigation. – Service Management and Incident Management – ITIL foundation skills that demonstrate knowledge of incident, request and service management in general, to ensure effective management of services and customer relationships. Desirable Criteria- Relevant certification such as AWS/Azure Certified Security or equivalent – ISO 27000-1 experience of implementing security controls and best-practice for data security and privacy management. – Experience of managing and mentoring junior developers at an earlier stage of their career and building teams. Marie Curie are here for people living with any terminal illness, and their families. Marie Curie offers expert care, guidance, and support to help them get the most from the time they have left.Our Marie Curie nurses, and healthcare assistants work night and day, in people’s homes across the UK, providing hands-on care and vital emotional support. Our Marie Curie hospices offer specialist round-the-clock care. And Marie Curie support people throughout their illness by giving practical information, support from trained volunteers and being there when someone wants to talk. What’s in it for you: – Continued access to NHS Pension Scheme (subject to eligibility) – Marie Curie Group Personal Pension Scheme – Season ticket loan – Loan schemes for bikes; computers and satellite navigation systems – Continuous development – Industry leading training programmes – Employee Assistance Programme – Flexible Working The role will be subject to standard disclosure checks. Marie Curie is committed to its values, which underpin our work. We take stringent steps to ensure that the people who join our organisation through employment or volunteering, are suitable for their roles and are committed to safeguarding all our people from harm. This includes our staff, volunteers and all those who use or come into contact with our services. We are dedicated to creating not just a safe place to work but also a supportive and rewarding one.We are committed to a world where everyone can thrive and fulfil their potential. We are devoted to the social justice imperatives and organisational benefits of full diversity, inclusion and equity in the workplace, and are a Stonewall champion. We actively encourage and welcome applications from candidates of diverse cultures, perspectives and lived experiences.