Location: Stone, Staffordshire Hybrid working, 2 days a week in our Stone Office)
Status: Permanent, Full Time
Package: Competitive Salary, Flexible Working, Development & Opportunity (Personal & Technical), Private Medical (Optical & Dental options), Matching Contributory Pension, 25 Days Leave + Public Holidays + Buy and Sell Scheme, Life Insurance, Referral Scheme, Employee Assistance Program, Benefits Hub.
Who’s Instem? Well, we’re a global provider of bespoke industry-leading software solutions and services, which facilitate the pre-clinical, and clinical phases of the drug discovery process. We have over fifteen products in our portfolio, used by over 700 pharmaceutical clients (including all the top 25!)
What’s the culture/environment like? For a global business of over 400 staff, we very much have a family feel. You’ll be part of a friendly, communal, solution based, flexible environment, where you’ll feel empowered, valued and accountable. We’ll invest in you as a person and encourage you to take part in companywide workshops for wellbeing, mental health, critical conversations, and strengths.
The mission of the Senior DevSecOps Engineer is to embed security into how our platforms are designed, built, and operated, while also advancing the security maturity of an existing, live estate.
This role sits within the Platform Engin
eering team and works closely with SRE, development teams, and our managed SOC. You will operate in an environment that includes established platforms, legacy patterns, and in flight migrations, alongside newer cloud native services. A key part of the role is understanding what exists today, identifying material risks and gaps and leading pragmatic improvements over time.
You will be expected to operate with a high degree of autonomy. This is a developing senior role for someone who can gather information, form a clear view of the current state, and advise on priorities and direction without needing a fully defined roadmap. You will influence platform security strategy through evidence, engineering judgement, and collaboration.
What are you responsible for?
- Assess the current security posture of our existing platforms, pipelines and cloud environments
- Gather and synthesise information across teams to build a clear view of current risks, gaps, and constraints
- Lead the definition of pragmatic, prioritised improvements to security maturity over time
- Embed security into platform architecture, infrastructure and CI/CD pipelines across the SDLC
Introduce and evolve a practical threat modelling approach appropriate to a mixed legacy and cloud native estateDesign, build and improve secure Azure landing zones and shared platform servicesEnsure migrations from managed data centres into Azure result in measurable security improvementsJointly own security monitoring and detection capabilities with the managed SOC, shaping alerts, workflows, and responsibilitiesOwn and evolve security guardrails using policy as code and automated controlsIntegrate security testing into delivery pipelines, including code, dependency, container and infrastructure scanningPartner with Platform Engineers to define secure by default patterns and reusable componentsWork with SREs to align runtime security, observability, and incident responseParticipate in security incidents and post incident reviews, driving long term corrective actionsEnable engineering teams through capture the flag exercises, threat scenarios and handson security learningProvide clear, evidence based security advice to platform, architecture and delivery leadership
Skills, Knowledge, Experience
Experience working alongside managed security providers or SOC teams
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, colour, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Instem stores and processes data using an Applicant Tracking System (ATS). For more information regarding our privacy policy use the following link: https://www.instem.com/privacy/