Python Developer (DevOps Experience mandatory)

Overview: Own and evolve our Jenkins Shared Library powering multi-language builds (Java/Maven, Node/NPM, Python, Helm, Terraform, containers). Deliver fast, secure, provenance-rich pipelines (SLSA, SBOM, digests) and…

Pay rate £580 – £600/day
Contract type Contract
Posted 22 September 2026

Trusted. Transparent. Built for contractors. Thousands of UK contractors find their next contract on ContractorUK.

View all IT & technology jobs ›

About this contract

Overview:
Own and evolve our Jenkins Shared Library powering multi-language builds (Java/Maven, Node/NPM, Python, Helm, Terraform, containers). Deliver fast, secure, provenance-rich pipelines (SLSA, SBOM, digests) and strengthen supply‑chain integrity across teams.

Core Responsibilities:

Design and maintain Groovy pipeline steps (build, test, package, scan, deploy).
Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (SonarQube, Sonatype IQ, SAST/Container).
Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency prefetch).
Ensure artifact integrity (correct SHA1/SHA256 mapping, reproducible inputs, evidence modeling).
Refactor legacy scripts (remove global state, consolidate hashing, standardize templates).
Document ci-config.yaml standards and usage patterns.
Mentor engineers on secure pipeline development and supply-chain practices.
Troubleshoot and prevent pipeline incidents.

Essential Skills: -

7+ years engineering; 3+ in CI/CD platform or DevSecOps.
Ownership and collaborative mindsets, able to operate with minimal supervision.
Advanced Python development experience - (best coding practises, APIs, JSON/YAML processing, tooling scripts) - should demonstrate key projects in CV
Strong Jenkins + Groovy shared library expertise.
Deep Maven/NPM/Python packaging knowledge; exposure to Helm/Terraform and container image metadata.
Supply-chain security (SLSA, CycloneDX SBOM, digests).
Experience with SonarQube, Sonatype IQ, container and SAST scanning.
Proven performance tuning (caching, parallelization, dependency pruning).
Compliance Awareness.Nice-to-Have

Artifact signing / attestations (cosign, OCI).
Terraform module and Helm chart publishing patterns.
GitOps or release automation experience.
GCP/AWS cloud experienceGCS is acting as an Employment Business in relation to this vacancy

Apply for this job

You'll complete your application on CV-Library, our jobs partner.

← More IT & technology jobs

Set up for this contract

ContractorUK partners
Markel Direct IR35 and contractor insurance

Most agencies and clients ask for professional indemnity and public liability before you start.

Get your quote →
SG Accounting Contractor accountants

Working through your own limited company? A contractor-specialist accountant keeps the admin off your desk.

Find out more → Also: Caroola · Dolan Accountancy · Compare all accountants

Get new IT contracts by email

One email when new matches appear. Unsubscribe with one click.

Prefer to be found? Upload your CV to CV-Library — free