DevSecOps Engineer - Azure
Slough
View your shortlist now.
The Tesco Mobile Engineering team is a truly cross functional team responsible for both the functional software development as well as the running and operation of tailored and product / SaaS based IT solutions.
You will be working within a very diverse team of highly motivated and dedicated individuals on business-critical infrastructure management. Our teams are motivated and challenged, working in sprints across a range of technologies which together provide huge benefit to the wider business.
We are the Run and Operate Chapter which manages the platforms and infrastructure used by many of the business services needed in Tesco Mobile. This role is part of the DevSecOps squad and works with the Run and Operate Chapter Lead. The DevSecOps squad is responsible for the management of the infrastructure that powers all the Engineering systems and applications. The squad is also responsible for the software development tools and pipelines used across Tesco Mobile.
The Squad consists of -
DevSecOps Engineers - AWS
DevSecOps Engineers - Azure
Kubernetes Engineers
Platform Automation Engineers
Product Owner
QA Automation Engineers
As a DevSecOps Engineer you will be helping the team manage and deploy the environment in a secure and optimised manner. This will include managing the logging and SIEM aspects of the infrastructure and coordinating with application development teams to resolve issues. You will also work with the rest of the squad to incorporate more security checks into the CI/CD pipeline. The role will include validation of planned changes to ensure that they comply with best practice and will also involve working with the Tesco Mobile Cyber Security Team.
You will be responsible for:
Be a great teammate – live the Tesco Mobile values.
Work with the Chapter Lead to agree improvements to the security of the infrastructure and applications.
Define and refine infrastructure security standards.
Act as the domain authority for infrastructure security.
Work with the application development teams to refine logging to derive valid insights.
Work as part of the team to solve complex cross-business technical problems.
Creating business justifications for security improvements and present these to Product Owners and other stakeholders in an articulate manner for an audience that may not be technical.
Share knowledge with other members of the squad.
You will need:
Significant commercial experience with security operations management.
Significant experience with cloud providers (mainly Azure).
Experience automating tasks using PowerShell or Azure CLI.
Experience using Azure Security Hub and other tools to improve cloud security posture.
Experience maintaining and updating infrastructure using Terraform.
Willingness to learn new skills.
Nice to have:
Experience with AWS environments
Source code systems and branching strategies; Github and Github Actions.
Experience in a commercial setting using and managing Splunk including defining data streams, indices and ingests and dashboards.
Experience of CI/CD pipelines and adding security tooling to these.
Experience using SAST and other techniques to improve code security.
Automation experience using a variety of tools and languages including AWS CLI, python, etc.
Containerisation technologies; Docker and Kubernetes.
Exposure to Continuous Integration and Continuous Deployment techniques, approaches and tools, including experience with the GitHub and GitHub Actions.
#LI-AF2
#LI-Hybrid
What's in it for you:
We’re all about the little helps. That’s why we give our wonderful colleagues bags of benefits. Including wellbeing services, an award-winning pension scheme and much, much more, our colleague reward package keeps on giving. And helps make every day a little better for you and your family. These include but are not limited to:
Annual bonus scheme of up to 20% of base salary
Holiday starting at 25 days plus a personal day (plus Bank holidays)
Buy holiday salary sacrifice scheme (for salaried roles)
Private medical insurance
Retirement savings plan - save between 4% and 7.5% and Tesco will match your contribution
Life Assurance - 5 x contractual pay
26 weeks maternity and adoption leave (after 1 years’ service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay, we also offer 4 weeks fully paid paternity leave
The right to request flexible working from your first day with us
Free 24/7 virtual GP service, Employee Assistance Programme (EAP) for you and your family, free access to a range of experts to support your mental wellbeing
A Colleague Clubcard for you & a family member (after 3 months of service), giving you access to lots of discounts in-store & online
Great colleague deals and discounts, saving you money on everyday purchases, eating out and utility bills for the home
Access to our colleague networks providing a space for colleagues to come together from a range of backgrounds. For more information about our colleague networks please click here
Opportunities to get on - take advantage of our ongoing learning opportunities and award-winning training, to help you achieve the job and career you want
Click Here to read more about the full range of benefits we have available for our colleagues
About us:
Our vision at Tesco is to become every customer's favourite way to shop, whether they are at home or out on the move. Our core purpose is 'Serving our customers, communities and planet a little better every day'. Serving means more than a transactional relationship with our customers. It means acting as a responsible and sustainable business for all stakeholders, for the communities we are part of and for the planet.
We are proud to have an inclusive culture at Tesco where everyone truly feels able to be themselves. At Tesco, we not only celebrate diversity, but recognise the value and opportunity it brings. We're committed to creating a workplace where differences are valued, and make sure that all colleagues are given the same opportunities. We're a big business with diverse working patterns and many business areas which means that we can find something that works for you. Everyone is welcome at Tesco.
We have recently announced that we will be moving towards a more blended working week – combining office and remote working. Our offices will continue to be where we connect, collaborate and innovate. Please talk to us to about how this can work for you.
NOTE: Should you be successful in your application, your offer will be subject to and conditional upon you providing your bank account details on your agreed start date.
We're proud to have been accredited Disability Confident Leader and we're committed to providing a fully inclusive and accessible recruitment process. For further information on the accessibility support we can offer, please visit https://www.tesco-careers.com/accessibility