DevX Build Pipeline Engineer DevOps Engineer CGEMJP
Job in
Sheffield, South Yorkshire, S5, England, UK
Listed on 2026-06-01
Listing for:
Experis - ManpowerGroup
Part Time
position Listed on 2026-06-01
Job specializations:
-
IT/Tech
Systems Engineer, Cloud Computing, Cybersecurity, Data Engineer
Job Description & How to Apply Below
Role
Title:
DevX Build Pipeline Engineer
Duration: contract to run until 30/11/2026
Location: Sheffield. Hybrid, 3 days per week onsite
Rate: up to £529 p/d Umbrella inside IR35
Role purpose / summaryOwn and evolve our Jenkins Shared Library powering multi-language builds (Java/Maven, Node/NPM, Python, Helm, Terraform, containers). Deliver fast, secure, provenance-rich pipelines (SLSA, SBOM, digests) and strengthen supply chain integrity across teams.
Core Responsibilities- Design and maintain Groovy pipeline steps (build, test, package, scan, deploy).
- Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (Sonar Qube, Sonatype IQ, SAST/Container).
- Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency prefetch).
- Ensure artifact integrity (correct SHA1/SHA
256 mapping, reproducible inputs, evidence modelling). - Refactor legacy scripts (remove global state, consolidate hashing, standardize templates).
- Document ci-config.yaml standards and usage patterns.
- Mentor engineers on secure pipeline development and supply-chain practices. Troubleshoot and prevent pipeline incidents.
- 7+ years engineering; 3+ in CI/CD platform or Dev Sec Ops .
- Strong Jenkins + Groovy shared library expertise.
- Advanced Python automation (JSON/YAML processing, tooling scripts).
- Deep Maven/NPM/Python packaging knowledge; exposure to Helm/Terraform and container image metadata.
- Supply-chain security (SLSA, Cyclone
DX SBOM, digests). - Experience with Sonar Qube, Sonatype IQ, container and SAST scanning.
- Proven performance tuning (caching, parallelization, dependency pruning). Compliance Awareness.
- Artifact signing / attestations (cosign, OCI).
- Terraform module and Helm chart publishing patterns.
- Git Ops or release automation experience.
- GCP/AWS cloud experience
- Precise communicator documentation discipline.
- Ownership mindset, able to operate with minimal supervision.
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×