develop
DevSecOps & Governance Architect

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
DevSecOps & Governance - Outside IR35 - rate negotiable - remote UK - Start date mid October - Must have active SC clearance
An opportunity has arisen for an experienced DevSecOps & Governance Architect to play a key role in shaping secure engineering and platform architecture within a complex, security-conscious enterprise environment.
The successful individual will sit at the intersection of DevSecOps, platform engineering, cyber security and enterprise architecture, defining how modern engineering platforms can operate securely at scale without unnecessarily restricting developer productivity.
This is not simply a security governance position. The role requires someone who understands the engineering behind modern software delivery and can translate security policies and risk requirements into practical, automated and reusable technical patterns.
They will help define target and transitional architectures, assess technology and vendor options, establish appropriate platform guardrails and create reference architectures that can be adopted across multiple domains.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Key Responsibilities
- Define target and transitional architectures for enterprise DevSecOps and engineering platforms.
- Design secure software supply-chain approaches covering SCA, vulnerability scanning, secrets detection, licence controls, SBOMs, signing and provenance.
- Establish architectural patterns across CI/CD, artefact repositories, containerised environments and runtime provisioning.
- Design appropriate identity, SSO, RBAC, logging and auditing controls.
- Introduce policy-as-code and automated security enforcement into engineering workflows.
- Assess vendor platforms, tooling and deployment options against architectural and security requirements.
- Define approved, controlled and unsupported technology usage patterns.
- Design governance models covering exceptions, risk acceptance and security decision-making.
- Ensure platform designs align with wider enterprise architecture and security obligations.
- Develop reusable reference architectures and patterns that can scale across teams and domains.
- Facilitate architecture workshops and support technical decision-making across engineering, security and business stakeholders.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Essential Skills & Experience
- Enterprise DevSecOps architecture and/or platform architecture.
- Secure software supply chains and modern software-delivery practices.
- CI/CD architecture and engineering tooling.
- SCA, vulnerability management/scanning and secrets detection.
- SBOMs, software signing and provenance.
- Artefact repositories and container platforms.
- Identity, SSO and RBAC.
- Logging, auditability and security-control design.
- Policy-as-code and automated security enforcement.
- Enterprise architecture and security governance.
- Translating cyber/security policies into practical engineering controls.
- Architecture workshops, technical decision-making and stakeholder engagement.
- Balancing strong security controls with developer experience and productivity.
- Working across security, architecture, engineering and delivery functions.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location