Senior GCP DevSecOps Engineer

HelloKindred


Job Location:

Sheffield - UK

Monthly Salary: Not Disclosed
Posted on: 15 hours ago
Vacancies: 1 Vacancy

Job Summary

Anticipated Contract End Date/Length: ASAP - July 31st 2027
Work set up: Hybrid (3 days onsite is mandatory)

Our client in the Information Technology and Services industry is looking for a highly technical Senior GCP DevSecOps Engineer with strong hands-on Google Cloud Platform (GCP) experience. The successful candidate should be able to build secure cloud platforms automate infrastructure embed security into delivery pipelines and operate within a regulated enterprise banking environment.

What you will do:

  • Build deploy and manage components of the HSBC GCP foundation platform using Google Cloud services (e.g. GKE BigQuery Cloud Build Cloud Run) and automation-first engineering practices.
  • Engineer repeatable platform and security capabilities using Infrastructure as Code (IaC) such as Terraform and/or Config Connector following established engineering standards.
  • Implement and enhance preventive security controls and guardrails centrally to improve overall cloud security posture and reduce operational risk.
  • Integrate configure deploy and manage common cloud services across IAM networking logging/monitoring operating systems and container platforms.
  • Embed security into delivery pipelines by building and supporting CI/CD and continuous testing capabilities (e.g. Cloud Build GitOps tooling such as FluxCD Helm).
  • Ensure alignment and compliance with centrally defined Cloud Security Standards and contribute to auditability through evidence controls mapping and documentation.
  • Operate within agreed change management practices producing impact assessments where required and ensuring controlled traceable deployments.
  • Maintain high-quality operational documentation runbooks and support procedures to enable sustainable operations and effective handover.

Qualifications :

  • Hands-on demonstrable experience on GCP building and operating cloud services in production (hands-on GCP experience is essential).
  • Strong experience with core GCP services; exposure to GKE BigQuery Cloud Build and/or Cloud Run is highly desirable.
  • Expert understanding of cloud security principles and GCP-specific best practices including IAM design logging/monitoring network security controls and workload security.
  • Strong understanding of DevOps/SRE principles including reliability observability incident response supportability and engineering for resilience.
  • Proven experience implementing Infrastructure as code using Terraform (and/or Config Connector) including module design environments policy-driven controls and automated deployment patterns.
  • Experience building and operation CI/CD and related tooling (e.g. Cloud Build GitOps FluxCD Helm) with security controls embedded into delivery workflows.
  • Good programming/scripting skills in at least one of: Python Go Bash with practical mindset for automation and operational tooling.
  • Security and compliance experience including auditability control evidence configuration management and the ability to work with compliance/auditing/monitoring tooling.
  • Strong communication and stakeholder management skills with the ability ot explain complex technical topics clearly to engineers and non-engineers.
  • A solid understanding of risk management and proven experience ensuring compliance with relevant regulatory and internal control requirements.

Essential skills:

  • Building secure and compliant GCP capabilities using automation-first approaches.
  • Implementing and operating preventive controls and guardrails at scale.
  • Strong troubleshooting capability across cloud infrastructure Kubernetes/container platforms and CI/CD pipelines.
  • Ability to drive continuous improvement simplify operational processes and resource oil through automation.

Desirable skills:

  • GCP certifications (e.g. Professional Cloud Security Engineer Professional Cloud DevOps Engineer Professional Cloud Architect).
  • Experience operation regulated workloads in a large enterprise environment.
  • Experience with container security patterns and Kubernetes hardening approaches.
  • Familiarity integrating security findings and policy checks into DevSecOps workflows and reporting.
     

Additional Information :

Candidates must be legally authorized to live and work in the country where the position is based without requiring employer sponsorship.

HelloKindred is committed to fair transparent and inclusive hiring practices. We assess candidates based on skills experience and role-related requirements.

We appreciate your interest in this opportunity. While we review every application carefully only candidates selected for an interview will be contacted.

HelloKindred is an equal opportunity employer. We welcome applicants of all backgrounds and do not discriminate on the basis of race colour religion sex gender identity or expression sexual orientation age national origin disability veteran status or any other protected characteristic under applicable law.


Remote Work :

No


Employment Type :

Contract

Anticipated Contract End Date/Length: ASAP - July 31st 2027Work set up: Hybrid (3 days onsite is mandatory)Our client in the Information Technology and Services industry is looking for a highly technical Senior GCP DevSecOps Engineer with strong hands-on Google Cloud Platform (GCP) experience. The s...

About Company

Who is HelloKindred?HelloKindred are specialists in staffing marketing, creative and technology roles, offering a range of talent solutions that can be delivered on-site, remotely or hybrid.Our vision is to make work accessible and people’s lives better. We do this by disrupting tradi ... View more

View Profile View Profile