We are seeking a DevOps Lead to own the operational delivery and automation for backend systems supporting terminal management and terminal configuration. You will implement and operate robust CI/CD pipelines integrate mandated cyber-security tooling (for example Fortify) and coordinate delivery with platform and domain teams across the organisation. The role is handson deliveryfocused and requires strong collaboration and technical leadership.
Key Responsibilities:
- Define and implement the DevOps delivery plan for POS terminal management systems (TMS) and terminal configuration systems (TCS): translate product and roadmap requirements into pipeline deployment and operational workstreams.
- Build and run CI/CD pipelines: design implement and maintain automated build test and deployment pipelines for backend services and terminal software artefacts (Jenkins GitLab CI GitHub Actions or equivalent).
- Integrate mandated security tooling: incorporate SAST (Fortify) SCA DAST and other security scans into pipelines to enable shiftleft security and ensure compliance gates are enforced.
- Infrastructure as Code and environment provisioning: author and maintain IaC (Terraform) configuration management and container orchestration (Kubernetes) for dev test and production environments.
- Secrets keys and configuration management: implement secure secrets management and key lifecycle controls; liaise with HSM and security teams on key management and crypto interfaces.
- Release orchestration and deployment strategy: design and run release patterns appropriate to terminal ecosystems (blue/green canary phased rollouts) manage artefact repositories (Nexus/Artifactory) and ensure safe auditable cutovers.
- Observability and resilience: instrument services for monitoring logging and tracing (Splunk/Dynatrace) define SLOs/SLIs and lead incident response and postincident reviews.
- Performance capacity and cost optimisation: define runbooks perform capacity planning tune platform resources and drive costefficient cloud/native architectures.
- Compliance and change control: ensure deployments meet regulatory and internal audit requirements lead CI/CD changecontrol processes and support certification activities where required.
- Crossteam coordination: work closely with platform security product QA Android/terminal engineering and operations teams to manage dependencies environment stability and release readiness.
- Automation and test integration: embed automated testing into pipelines (unit integration contract and E2E) coordinate devicefarm or emulator test runs for terminal images and support QA automation needs.
Primary Objectives:
- Deliver reliable repeatable CI/CD and deployment processes for POS TMS and TCS that reduce lead time for changes and minimise risk to production terminals.
- Fully integrate mandated security scans (including Fortify) into the pipeline with clear pass/fail gates and rapid remediation workflows.
- Improve platform stability and observability to reduce incident frequency and mean time to resolution.
- Ensure releases to terminal fleets are auditable compliant and executed with low consumer impact through robust orchestration and rollout strategies.
- Provide concise accurate status and risk reporting to programme and senior stakeholders; escalate issues promptly and propose pragmatic mitigations.
Qualifications :
Knowledge & Skills:
- Proven handson experience in DevOps/Platform roles within large enterprises preferably in payments fintech or POS ecosystems.
- Strong experience with CI/CD tooling and pipeline design (GitLab CI GitHub Actions Azure DevOps etc.).
- Practical knowledge of SAST tools (Fortify) SCA/DAST tooling and how to integrate them into automated pipelines and governance.
- Solid expertise in IaC and container platforms: Terraform Docker Kubernetes and Helm.
- Experience with secure secrets and key management solutions (HSM interactions) and understanding of PCI and other payment security controls.
- Familiarity with backend technologies commonly used in payment systems (Java Kotlin Spring microservices REST APIs Kafka/message buses and relational/datastore technologies).
- Understanding of terminal management and configuration systems release packaging for terminals and constraints of device fleets.
- Observability and incident management skills: Prometheus Grafana Dynatrace tracing and structured logging.
- Good scripting and automation skills (Python Bash Groovy or relevant languages) and experience with artefact repositories (Nexus).
- Strong analytical and problemsolving ability with a methodical approach to debugging and root cause analysis in production environments.
- Excellent verbal and written communication and stakeholder management skills; able to produce clear delivery/status reports for technical and nontechnical audiences.
- Experience working with and influencing platform security and domain teams in matrix organisations.
Educational & Professional Requirements:
- Bachelors degree in Computer Science Engineering or equivalent practical experience.
- Professional DevOps cloud or security certifications are advantageous (AWS/Azure/GCP Certified Kubernetes Administrator CISSP or equivalents).
- Practical experience in regulated/financial environments and familiarity with payment compliance frameworks (PCI DSS) is highly desirable.
Additional Information :
Discover some of the global benefits that empower our people to become the best version of themselves:
- Finance: Competitive salary package share plan company performance bonuses value-based recognition awards referral bonus;
- Career Development: Career coaching global career opportunities non-linear career paths internal development programmes for management and technical leadership;
- Learning Opportunities: Complex projects rotations internal tech communities training certifications coaching online learning platforms subscriptions pass-it-on sessions workshops conferences;
- Work-Life Balance: Hybrid work and flexible working hours employee assistance programme;
- Health: Global internal wellbeing programme access to wellbeing apps;
- Community: Global internal tech communities hobby clubs and interest groups inclusion and diversity programmes events and celebrations.
At Endava were committed to creating an open inclusive and respectful environment where everyone feels safe valued and empowered to be their best. We welcome applications from people of all backgrounds experiences and perspectivesbecause we know that inclusive teams help us deliver smarter more innovative solutions for our customers. Hiring decisions are based on merit skills qualifications and potential. If you need adjustments or support during the recruitment process please let us know.
Remote Work :
No
Employment Type :
Full-time
We are seeking a DevOps Lead to own the operational delivery and automation for backend systems supporting terminal management and terminal configuration. You will implement and operate robust CI/CD pipelines integrate mandated cyber-security tooling (for example Fortify) and coordinate delivery wit...
We are seeking a DevOps Lead to own the operational delivery and automation for backend systems supporting terminal management and terminal configuration. You will implement and operate robust CI/CD pipelines integrate mandated cyber-security tooling (for example Fortify) and coordinate delivery with platform and domain teams across the organisation. The role is handson deliveryfocused and requires strong collaboration and technical leadership.
Key Responsibilities:
- Define and implement the DevOps delivery plan for POS terminal management systems (TMS) and terminal configuration systems (TCS): translate product and roadmap requirements into pipeline deployment and operational workstreams.
- Build and run CI/CD pipelines: design implement and maintain automated build test and deployment pipelines for backend services and terminal software artefacts (Jenkins GitLab CI GitHub Actions or equivalent).
- Integrate mandated security tooling: incorporate SAST (Fortify) SCA DAST and other security scans into pipelines to enable shiftleft security and ensure compliance gates are enforced.
- Infrastructure as Code and environment provisioning: author and maintain IaC (Terraform) configuration management and container orchestration (Kubernetes) for dev test and production environments.
- Secrets keys and configuration management: implement secure secrets management and key lifecycle controls; liaise with HSM and security teams on key management and crypto interfaces.
- Release orchestration and deployment strategy: design and run release patterns appropriate to terminal ecosystems (blue/green canary phased rollouts) manage artefact repositories (Nexus/Artifactory) and ensure safe auditable cutovers.
- Observability and resilience: instrument services for monitoring logging and tracing (Splunk/Dynatrace) define SLOs/SLIs and lead incident response and postincident reviews.
- Performance capacity and cost optimisation: define runbooks perform capacity planning tune platform resources and drive costefficient cloud/native architectures.
- Compliance and change control: ensure deployments meet regulatory and internal audit requirements lead CI/CD changecontrol processes and support certification activities where required.
- Crossteam coordination: work closely with platform security product QA Android/terminal engineering and operations teams to manage dependencies environment stability and release readiness.
- Automation and test integration: embed automated testing into pipelines (unit integration contract and E2E) coordinate devicefarm or emulator test runs for terminal images and support QA automation needs.
Primary Objectives:
- Deliver reliable repeatable CI/CD and deployment processes for POS TMS and TCS that reduce lead time for changes and minimise risk to production terminals.
- Fully integrate mandated security scans (including Fortify) into the pipeline with clear pass/fail gates and rapid remediation workflows.
- Improve platform stability and observability to reduce incident frequency and mean time to resolution.
- Ensure releases to terminal fleets are auditable compliant and executed with low consumer impact through robust orchestration and rollout strategies.
- Provide concise accurate status and risk reporting to programme and senior stakeholders; escalate issues promptly and propose pragmatic mitigations.
Qualifications :
Knowledge & Skills:
- Proven handson experience in DevOps/Platform roles within large enterprises preferably in payments fintech or POS ecosystems.
- Strong experience with CI/CD tooling and pipeline design (GitLab CI GitHub Actions Azure DevOps etc.).
- Practical knowledge of SAST tools (Fortify) SCA/DAST tooling and how to integrate them into automated pipelines and governance.
- Solid expertise in IaC and container platforms: Terraform Docker Kubernetes and Helm.
- Experience with secure secrets and key management solutions (HSM interactions) and understanding of PCI and other payment security controls.
- Familiarity with backend technologies commonly used in payment systems (Java Kotlin Spring microservices REST APIs Kafka/message buses and relational/datastore technologies).
- Understanding of terminal management and configuration systems release packaging for terminals and constraints of device fleets.
- Observability and incident management skills: Prometheus Grafana Dynatrace tracing and structured logging.
- Good scripting and automation skills (Python Bash Groovy or relevant languages) and experience with artefact repositories (Nexus).
- Strong analytical and problemsolving ability with a methodical approach to debugging and root cause analysis in production environments.
- Excellent verbal and written communication and stakeholder management skills; able to produce clear delivery/status reports for technical and nontechnical audiences.
- Experience working with and influencing platform security and domain teams in matrix organisations.
Educational & Professional Requirements:
- Bachelors degree in Computer Science Engineering or equivalent practical experience.
- Professional DevOps cloud or security certifications are advantageous (AWS/Azure/GCP Certified Kubernetes Administrator CISSP or equivalents).
- Practical experience in regulated/financial environments and familiarity with payment compliance frameworks (PCI DSS) is highly desirable.
Additional Information :
Discover some of the global benefits that empower our people to become the best version of themselves:
- Finance: Competitive salary package share plan company performance bonuses value-based recognition awards referral bonus;
- Career Development: Career coaching global career opportunities non-linear career paths internal development programmes for management and technical leadership;
- Learning Opportunities: Complex projects rotations internal tech communities training certifications coaching online learning platforms subscriptions pass-it-on sessions workshops conferences;
- Work-Life Balance: Hybrid work and flexible working hours employee assistance programme;
- Health: Global internal wellbeing programme access to wellbeing apps;
- Community: Global internal tech communities hobby clubs and interest groups inclusion and diversity programmes events and celebrations.
At Endava were committed to creating an open inclusive and respectful environment where everyone feels safe valued and empowered to be their best. We welcome applications from people of all backgrounds experiences and perspectivesbecause we know that inclusive teams help us deliver smarter more innovative solutions for our customers. Hiring decisions are based on merit skills qualifications and potential. If you need adjustments or support during the recruitment process please let us know.
Remote Work :
No
Employment Type :
Full-time
View more
View less