DevSecOps Lead
๐ About Us
It's hard to build a reliable system. It's harder to make sure that what you've built is really reliable.
Synthesized is redefining software testing with agentic AI. Our platform automates test data, test cases, and test environments - empowering enterprise teams to ship faster, reduce compliance risks, and modernise QA at scale.
Our products are used by some of the world's leading organizations, such as Deutsche Bank, UBS, the European Commission, and others.
Weโre an ambitious VC-backed startup, having just gone through Series A with leading global investors including IQ Capital, Seedcamp, and Deutsche Bank. We have ambitious growth plans for 2026, and we are so keen for you to join us on the journey.
๐ The Role
We're expanding our cloud offering capabilities and seeking a DevSecOps Lead to strengthen our foundation for future growth. You'll support our cloud automation strategy, creating scalable, secure infrastructure through code. This role has a significant impact on both our development teams and customers' engineering teams. You'll help shape our cloud architecture decisions from the ground up with significant growth opportunities as you build solutions that enable faster development and deployment without compromising security.
๐ Key Responsibilities
Collaborate with leadership on risk management, security posture, and compliance roadmap
Act as the technical authority for cloud security, platform reliability, and DevOps best practices
Drive shift-left security practices across engineering teams
Own identity and access management (IAM), secrets management, and network security
Embed security into CI/CD pipelines (SAST, DAST, dependency scanning, container scanning)
Implement zero-trust principles and least-privilege access controls
Oversee vulnerability management and remediation processes
Mentor and lead DevSecOps engineers, setting standards and best practices
Manage cloud resource utilisation and cost management
๐ฑ About You
Essential qualities
Understanding of DevSecOps principles and practices
Understanding of cloud security best practices and implementing security controls as code
Proven experience with AWS
Experience with infrastructure as code tools and methodologies
Knowledge of containerisation technologies (Docker, Kubernetes)
Familiarity with CI/CD concepts and tools (GitHub Actions)
Experience with monitoring and observability implementation
What sets you apart
Programming skills in languages relevant to cloud automation (Python, JavaScript/TypeScript, PowerShell, shell scripts, etc.)
Industry-recognized cloud and security certifications
Hands-on experience implementing technical controls for compliance frameworks such as SOC2 and ISO-27001
Experience with serverless architectures and function-as-a-service implementations
Knowledge of security scanning and testing tools for infrastructure code
Familiarity with secret management solutions
Ability to maintain good humour when explaining for the fifth time why "turning it off and on again" isn't always the solution to cloud problems
โจ What We Offer
๐ฐ Competitive salary and meaningful equity
๐ด 25 days annual leave
๐ข Hybrid, flexible working
๐ Learning & development budget for coaching, courses, and conferences
โ๏ธ Private medical, dental, and vision cover
โ๏ธ Regular team socials and offsites
๐ค Working with a team thatโs smart, ambitious, and deeply collaborative
๐ค Generous Family leave
๐ Equal Opportunities
We are committed to an inclusive and diverse workplace at Synthesized. Synthesized is an equal opportunity employer. We do not discriminate based on race, ethnicity, colour, ancestry, national origin, religion, sex, sexual orientation, gender identity, age, disability, veteran status, genetic information, marital status or any other legally protected status.
- Department
- Engineering
- Locations
- London
- Remote status
- Hybrid
About Synthesized
Synthesized is redefining software testing with agentic AI. Our platform automates test data, test cases, and test environments โ empowering enterprise teams to ship faster, reduce compliance risks, and modernize QA at scale.