ECS Resource Group Ltd
DevSecOps & Security Architect
Job Description
Salary: £? - ? per year
Requirements:- Strong background in Enterprise DevSecOps and platform architecture.
- Extensive experience across CI/CD, artefact repositories, containers, runtime provisioning and enterprise integrations.
- Strong understanding of software supply-chain security, including SCA, vulnerability scanning, SBOMs, secrets management and software signing/provenance.
- Experience with Identity, SSO, RBAC, logging and auditable security controls.
- Knowledge of Policy-as-Code and automated security enforcement.
- Understanding of DSPT/CAF-style assurance, governance and security requirements.
- Proven ability to translate risk and policy into practical engineering solutions.
- Excellent architecture workshop, stakeholder management and decision-facilitation skills.
- Able to balance security, governance and developer experience/productivity.
- Define target and transitional DevSecOps platform architectures.
- Design secure software supply-chain capabilities including SCA, vulnerability scanning, secrets detection, licence controls, SBOMs, signing and provenance.
- Assess and recommend vendor solutions, technologies and deployment options.
- Establish approved, controlled and unsupported usage patterns.
- Design governance, exception handling and risk-acceptance mechanisms.
- Ensure platforms and solutions align with enterprise architecture, security and regulatory obligations.
- Create reusable reference architectures and patterns that can scale across multiple domains.
- Improve platform reliability, build success, performance and supportability.
- Work closely with security, architecture, engineering, delivery and business stakeholders.
- Architect
- CI/CD
- DevSecOps
- RBAC
- Security
More:
We are seeking an experienced DevSecOps & Governance Architect to join a major technology transformation programme, helping define secure, scalable and governed DevSecOps platforms across the enterprise. This is an architecture-focused role where we bridge security, governance and engineering, translating policy and risk requirements into practical, reusable technical patterns without unnecessarily impacting developer productivity. The role is fully remote, offered at a rate of £650 inside IR35, and the contract length is 5 months. ECS Recruitment Group Ltd is acting as an Employment Business in relation to this vacancy.
last updated 37 week of 2026
Interested in this role?
Submit your application now
How to Apply
About ECS Resource Group Ltd
ECS Resource Group Ltd
London
IT
Skills & Technologies
Inferred from job description