- Company Name
- Ellison Institute of Technology Oxford
- Job Title
- DevSecOps Engineer - Pathogen
- Job Description
-
**Job Title:** DevSecOps Engineer – Pathogen
**Role Summary:**
Drive the design, automation, and security of a cloud‑based data platform supporting pathogen research. Build and maintain OCI infrastructure, IaC, CI/CD pipelines, and monitoring while embedding security and compliance throughout the development lifecycle. Collaborate with bioinformaticians, engineers, and security teams to deliver reliable, scalable, and secure solutions.
**Expectations:**
- Deliver secure, repeatable infrastructure and deployment processes.
- Integrate security testing and compliance checks into CI/CD workflows.
- Proactively identify and remediate vulnerabilities.
- Ensure platform reliability, performance, and real‑time incident response.
- Communicate effectively across cross‑functional teams and manage multiple priorities in a fast‑paced environment.
**Key Responsibilities:**
- Design, implement, and maintain OCI cloud infrastructure.
- Develop IaC using Terraform (or equivalent) for automated, auditable deployments.
- Build and operate CI/CD pipelines (e.g., GitHub Actions) with integrated security testing.
- Containerize applications with Docker and orchestrate via Kubernetes.
- Configure IAM, network security, encryption, and access controls per best practices.
- Implement monitoring/alerting (Prometheus, Grafana, ELK) and incident response procedures.
- Automate vulnerability assessments and coordinate remediation.
- Collaborate with bioinformatics and engineering teams to ensure pipelines are secure‑by‑design and version‑controlled.
- Support compliance with standards such as ISO 27001, SOC 2, GDPR, HIPAA, ISO 13485.
- Conduct root‑cause analysis of production issues and continuously improve security processes.
**Required Skills:**
- Hands‑on experience with Oracle Cloud Infrastructure (provisioning, services, security).
- Proficiency in Terraform (or similar IaC tools).
- Expertise in CI/CD pipeline creation and automation (GitHub Actions, Jenkins, etc.).
- Strong knowledge of containerization (Docker) and orchestration (Kubernetes).
- Deep understanding of cloud security (IAM, network controls, encryption).
- Experience with monitoring/observability tools (Prometheus, Grafana, ELK).
- Solid version control skills (Git).
- Ability to script/automate (Shell, Python, etc.).
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or related field (or equivalent experience).
- Preferred certifications: Oracle Cloud Infrastructure (OCI) Associate/Professional, AWS/GCP certifications, ISO 27001 Lead Implementer, or similar security credentials.