- Company Name
- Kryptos Technologies UK Limited
- Job Title
- DEVOPS LEAD
- Job Description
-
**Job title**
DevOps Lead – DevSecOps & Infrastructure-as-Code
**Role Summary**
Lead the enterprise DevSecOps transformation during large‑scale on‑prem to AWS migrations. Design and implement CI/CD, IaC, and security automation at the portfolio level, ensuring compliance, governance, and shift‑left practices across application, container, and infrastructure pipelines. Provide strategic direction, mentor cross‑functional squads, and collaborate with cloud, security, and SRE teams to enable modern cloud‑native delivery.
**Expectations**
- 14+ years of DevOps or platform engineering experience.
- Proven leadership in DevSecOps or IaC initiatives at an enterprise scale.
- Deep domain knowledge of AWS cloud services, CI/CD tooling, and security automation.
- Ability to translate complex migration requirements into actionable roadmap and governance.
**Key Responsibilities**
- Develop and execute a comprehensive DevSecOps strategy for lift‑and‑shift, replatforming, containerization, and modernization migrations.
- Architecture, standardize, and govern IaC for landing zones, networking, security, containers, and application infrastructure using Terraform, CloudFormation, CDK, and Ansible.
- Design and integrate end‑to‑end DevSecOps toolchains (GitHub Actions, GitLab, Jenkins, Azure DevOps, Snyk, Checkmarx, SonarQube, Prisma Cloud, Vault, ECS/EKS, Helm, ArgoCD/Flux).
- Implement security‑by‑default, shift‑left pipelines that automate SAST/DAST, container scanning, policy‑as‑code (OPA/ Rego), secrets scanning, and infrastructure compliance.
- Embed observability, logging, tracing, and automated quality gates; enable blue‑green, canary, and progressive delivery.
- Establish and enforce governance controls, compliance checks (CIS, NIST, ISO 27001), and KPI tracking (deployment frequency, MTTR, drift, security findings).
- Lead cross‑functional squads, mentor engineers on DevSecOps best practices, and liaise with program managers and senior leadership.
- Provide continuous improvement recommendations for cloud‑native operating models and transformation roadmaps.
**Required Skills**
- AWS cloud architecture (IAM, KMS, VPC, GuardDuty, Security Hub).
- IaC: Terraform, CloudFormation, CDK, Ansible; GitOps practices.
- CI/CD: GitHub Actions, GitLab, Azure DevOps, Jenkins; pipeline security controls.
- Runtime & toolchains: Docker, Kubernetes (EKS/ECS), Helm, ArgoCD/Flux.
- Security tooling: Snyk, Checkmarx, SonarQube, Prisma Cloud, Aqua, Twistlock, Vault.
- Observability: CloudWatch, ELK, Datadog.
- Policy‑as‑code: OPA/Conftest, Checkov.
- Experience with enterprise migration waves, large‑scale lift‑shift, replatforming, and modernization.
- Strong leadership, stakeholder communication, and mentoring.
**Required Education & Certifications**
- AWS DevOps Engineer – Professional (required).
- AWS Solutions Architect – Associate/Professional (preferred).
- HashiCorp Terraform Certification (preferred).
- Kubernetes certifications CKAD/CKA/CKS (preferred).
- DevSecOps or SRE certifications (nice to have).