Ready to Own More Than the Ticket Queue? You've built solid 3rd Line infrastructure experience. You know how to get to the bottom of complex technical problems, understand the importance of security and you're ready for more ownership. This could be that step. Join Bulk , one of Europe's leading active nutrition brands, and take ownership across the infrastructure and cyber security environment supporting our fast-moving digital business. You'll work across cloud, networks, endpoints and security, strengthen our email security, help lead our upcoming Cyber Essentials project and tackle the security challenges that come with our rapidly evolving use of AI. We're ahead of the curve when it comes to building with AI, so you'll get extensive exposure to new tools, integrations and systems - with the freedom to get involved in other technical projects as the business evolves. If you're a strong 3rd Line Engineer with cyber security credentials who's ready to broaden your remit and take genuine ownership, we'd love to hear from you. The Role at a Glance IT Infrastructure & Cyber Security Engineer Colchester, Essex Hybrid - 3 Days Office / 2 Days Home Occasional out-of-hours working and travel to London will be required. Competitive Salary + Excellent Benefits Full Time Permanent Focus: Infrastructure Cyber Security Cloud AI Enablement Your Background / Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling Who We Are Bulk is on an incredible journey, with a mission to evolve from a manufacturing-led retailer into a destination brand for active nutrition. We're shaking up the sports nutrition industry through innovative products, disruptive marketing and bold digital thinking that encourages people to see our brand differently. We want passionate risk-takers. People who challenge our thinking, live and breathe digital and aren't afraid to find a better way of doing things. And as our technology continues to evolve - particularly through AI - we need the infrastructure and security behind it to evolve just as quickly. The Opportunity As our IT Infrastructure & Cyber Security Engineer, you'll take ownership of Bulk's infrastructure and cyber security environment, supported by our IT Service Desk Team Lead and wider team. This is a broad, hands-on technical role with some clear priorities. You'll help upgrade our email security, manage the security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. And we're not expecting you to walk through the door knowing every technology on our list. We're looking for someone with strong infrastructure foundations and genuine cyber security capability who can demonstrate experience across roughly 80% of our technical environment, with the curiosity and ability to pick up the rest. What You'll Be Doing Infrastructure • Manage and maintain Bulk s on-premise and cloud infrastructure, including Azure, Google Workspace, networks, firewalls and VPNs. • Ensure systems are secure, reliable, resilient and up to date. • Lead infrastructure projects from planning through to deployment, including budgets and contracts. • Provide Tier 3 support for complex issues and maintain clear technical documentation and handovers. • Support wider technical projects as business requirements evolve. Cyber Security • Develop and improve Bulk s security environment, with particular focus on email security. • Monitor, investigate and respond to security threats, incidents and data breaches. • Manage and optimise security technologies including SIEM, SOAR, EDR/MDR/XDR, CASB, ZTNA and SASE. • Lead Cyber Essentials activity and support wider compliance, including ISO 27001. • Assess vendor security and work with stakeholders to implement secure technology solutions. AI Tooling & Security • Support the secure adoption and scaling of AI tools across Bulk. • Manage AI platforms including Claude Code, GitHub Copilot, Codex-style tools, MCP servers, integrations and connectors. • Own user access, permissions and governance, applying least-privilege principles. • Support teams onboarding new AI technologies, balancing innovation and productivity with security and compliance. • Develop appropriate controls as agentic AI, MCP and connector-based technologies evolve. About You You're probably already operating at strong 3rd Line Engineer level and looking for the opportunity to take broader ownership across infrastructure and cyber security. You enjoy getting hands-on with technology, but you're also interested in the bigger picture - resilience, security, risk, projects and how technology can enable the business to move faster. You don't need to tick every technology box. Breadth, strong foundations and the ability to learn matter here. You'll likely bring: • Around 2-3 years' experience in a similar role, operating at 3rd Line Engineer level or equivalent. • At least one cyber security certification. • Hands-on experience across approximately 80% of the technologies and environments outlined within this advert. • Strong infrastructure experience spanning cloud and on-premise environments. • Good working knowledge of Azure, Google Workspace, networking, endpoint management and security. • Experience across technologies such as CrowdStrike, Cisco, VMware vSphere, Windows Server, Mac/Windows, Jamf, Intune, Automox and VPNs. • Strong security monitoring, incident response and threat-analysis knowledge, including IOC investigation and remediation. • Experience or knowledge of security frameworks and compliance, ideally including Cyber Essentials and ISO 27001. • The confidence and technical capability to handle complex Tier 3 escalations. • Strong problem-solving skills and a proactive approach to improving infrastructure and security. • Excellent communication skills and the confidence to work with colleagues, suppliers and senior leadership. • Willingness to undertake occasional out-of-hours work and travel to London. Even Better If You Bring • Hands-on experience administering AI coding or agent tools, including Claude Code, GitHub Copilot or Codex. • Experience configuring MCP servers, connectors, permissions and access controls. • Familiarity with emerging agentic AI infrastructure and its associated security considerations. • Experience working with Netskope. • Hands-on Netskope CASB/SSE experience covering areas such as SSL/TLS inspection, DLP, Zero Trust architecture, CASB policy design and SCIM-based provisioning. • ITIL or project management certification such as PRINCE2. • Additional cyber security certifications such as CISSP, CISM or CompTIA. Why Join Bulk ? This is a great opportunity if you're ready to move beyond traditional 3rd Line support and build broader experience across infrastructure, cyber security and AI. You'll have genuine ownership, support from the wider IT team and exposure to a broad technology landscape within a business that's actively embracing new ways of working. Because Bulk is already pushing ahead with AI, you'll also be solving security and infrastructure challenges that many businesses haven't encountered yet. You'll also enjoy: • Monthly Bulk Bank Benefits Allowance, including subsidised gym membership. • 60% discount on Bulk products. • Birthday day off. • PerkBox subscription. • Flexi Start. • Optional additional annual leave. • Teammate pension scheme. • Life Assurance. • Medicash. • Volunteering day. • Cycle to Work Scheme. • Enhanced maternity and paternity leave. • Workplace nursery scheme. • Fully stocked Bulk Pantry. • Happy Hour drinks fridge on Thursdays and Fridays. • Summer working hours. • Hybrid working - 3 days in the Colchester office / 2 days from home. Your Experience / Background / Previous Roles May Include 3rd Line Engineer, Senior 3rd Line Engineer, Infrastructure Engineer, IT Infrastructure Engineer, Infrastructure & Security Engineer, IT Security Engineer, Systems & Security Engineer, Senior IT Engineer, Cloud Infrastructure Engineer, Cyber Security Engineer or Infrastructure Support Engineer. Apply Now If you've built strong 3rd Line foundations and you're ready for a role where you can take genuine ownership across infrastructure, cyber security and emerging AI technology, we'd love to hear from you. Bring your technical breadth, security mindset and curiosity about what's coming next - and help build the resilient, secure technology foundation behind Bulk's continued growth. Bulk is an equal opportunities employer and is committed to building a diverse and inclusive team. We welcome applications regardless of age, disability, race, gender, religion, sexual orientation, education, neurodiversity or any other protected characteristic. Application notice We take your privacy seriously . click apply for full job details
24/08/2026
Full time
Ready to Own More Than the Ticket Queue? You've built solid 3rd Line infrastructure experience. You know how to get to the bottom of complex technical problems, understand the importance of security and you're ready for more ownership. This could be that step. Join Bulk , one of Europe's leading active nutrition brands, and take ownership across the infrastructure and cyber security environment supporting our fast-moving digital business. You'll work across cloud, networks, endpoints and security, strengthen our email security, help lead our upcoming Cyber Essentials project and tackle the security challenges that come with our rapidly evolving use of AI. We're ahead of the curve when it comes to building with AI, so you'll get extensive exposure to new tools, integrations and systems - with the freedom to get involved in other technical projects as the business evolves. If you're a strong 3rd Line Engineer with cyber security credentials who's ready to broaden your remit and take genuine ownership, we'd love to hear from you. The Role at a Glance IT Infrastructure & Cyber Security Engineer Colchester, Essex Hybrid - 3 Days Office / 2 Days Home Occasional out-of-hours working and travel to London will be required. Competitive Salary + Excellent Benefits Full Time Permanent Focus: Infrastructure Cyber Security Cloud AI Enablement Your Background / Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling Who We Are Bulk is on an incredible journey, with a mission to evolve from a manufacturing-led retailer into a destination brand for active nutrition. We're shaking up the sports nutrition industry through innovative products, disruptive marketing and bold digital thinking that encourages people to see our brand differently. We want passionate risk-takers. People who challenge our thinking, live and breathe digital and aren't afraid to find a better way of doing things. And as our technology continues to evolve - particularly through AI - we need the infrastructure and security behind it to evolve just as quickly. The Opportunity As our IT Infrastructure & Cyber Security Engineer, you'll take ownership of Bulk's infrastructure and cyber security environment, supported by our IT Service Desk Team Lead and wider team. This is a broad, hands-on technical role with some clear priorities. You'll help upgrade our email security, manage the security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. And we're not expecting you to walk through the door knowing every technology on our list. We're looking for someone with strong infrastructure foundations and genuine cyber security capability who can demonstrate experience across roughly 80% of our technical environment, with the curiosity and ability to pick up the rest. What You'll Be Doing Infrastructure • Manage and maintain Bulk s on-premise and cloud infrastructure, including Azure, Google Workspace, networks, firewalls and VPNs. • Ensure systems are secure, reliable, resilient and up to date. • Lead infrastructure projects from planning through to deployment, including budgets and contracts. • Provide Tier 3 support for complex issues and maintain clear technical documentation and handovers. • Support wider technical projects as business requirements evolve. Cyber Security • Develop and improve Bulk s security environment, with particular focus on email security. • Monitor, investigate and respond to security threats, incidents and data breaches. • Manage and optimise security technologies including SIEM, SOAR, EDR/MDR/XDR, CASB, ZTNA and SASE. • Lead Cyber Essentials activity and support wider compliance, including ISO 27001. • Assess vendor security and work with stakeholders to implement secure technology solutions. AI Tooling & Security • Support the secure adoption and scaling of AI tools across Bulk. • Manage AI platforms including Claude Code, GitHub Copilot, Codex-style tools, MCP servers, integrations and connectors. • Own user access, permissions and governance, applying least-privilege principles. • Support teams onboarding new AI technologies, balancing innovation and productivity with security and compliance. • Develop appropriate controls as agentic AI, MCP and connector-based technologies evolve. About You You're probably already operating at strong 3rd Line Engineer level and looking for the opportunity to take broader ownership across infrastructure and cyber security. You enjoy getting hands-on with technology, but you're also interested in the bigger picture - resilience, security, risk, projects and how technology can enable the business to move faster. You don't need to tick every technology box. Breadth, strong foundations and the ability to learn matter here. You'll likely bring: • Around 2-3 years' experience in a similar role, operating at 3rd Line Engineer level or equivalent. • At least one cyber security certification. • Hands-on experience across approximately 80% of the technologies and environments outlined within this advert. • Strong infrastructure experience spanning cloud and on-premise environments. • Good working knowledge of Azure, Google Workspace, networking, endpoint management and security. • Experience across technologies such as CrowdStrike, Cisco, VMware vSphere, Windows Server, Mac/Windows, Jamf, Intune, Automox and VPNs. • Strong security monitoring, incident response and threat-analysis knowledge, including IOC investigation and remediation. • Experience or knowledge of security frameworks and compliance, ideally including Cyber Essentials and ISO 27001. • The confidence and technical capability to handle complex Tier 3 escalations. • Strong problem-solving skills and a proactive approach to improving infrastructure and security. • Excellent communication skills and the confidence to work with colleagues, suppliers and senior leadership. • Willingness to undertake occasional out-of-hours work and travel to London. Even Better If You Bring • Hands-on experience administering AI coding or agent tools, including Claude Code, GitHub Copilot or Codex. • Experience configuring MCP servers, connectors, permissions and access controls. • Familiarity with emerging agentic AI infrastructure and its associated security considerations. • Experience working with Netskope. • Hands-on Netskope CASB/SSE experience covering areas such as SSL/TLS inspection, DLP, Zero Trust architecture, CASB policy design and SCIM-based provisioning. • ITIL or project management certification such as PRINCE2. • Additional cyber security certifications such as CISSP, CISM or CompTIA. Why Join Bulk ? This is a great opportunity if you're ready to move beyond traditional 3rd Line support and build broader experience across infrastructure, cyber security and AI. You'll have genuine ownership, support from the wider IT team and exposure to a broad technology landscape within a business that's actively embracing new ways of working. Because Bulk is already pushing ahead with AI, you'll also be solving security and infrastructure challenges that many businesses haven't encountered yet. You'll also enjoy: • Monthly Bulk Bank Benefits Allowance, including subsidised gym membership. • 60% discount on Bulk products. • Birthday day off. • PerkBox subscription. • Flexi Start. • Optional additional annual leave. • Teammate pension scheme. • Life Assurance. • Medicash. • Volunteering day. • Cycle to Work Scheme. • Enhanced maternity and paternity leave. • Workplace nursery scheme. • Fully stocked Bulk Pantry. • Happy Hour drinks fridge on Thursdays and Fridays. • Summer working hours. • Hybrid working - 3 days in the Colchester office / 2 days from home. Your Experience / Background / Previous Roles May Include 3rd Line Engineer, Senior 3rd Line Engineer, Infrastructure Engineer, IT Infrastructure Engineer, Infrastructure & Security Engineer, IT Security Engineer, Systems & Security Engineer, Senior IT Engineer, Cloud Infrastructure Engineer, Cyber Security Engineer or Infrastructure Support Engineer. Apply Now If you've built strong 3rd Line foundations and you're ready for a role where you can take genuine ownership across infrastructure, cyber security and emerging AI technology, we'd love to hear from you. Bring your technical breadth, security mindset and curiosity about what's coming next - and help build the resilient, secure technology foundation behind Bulk's continued growth. Bulk is an equal opportunities employer and is committed to building a diverse and inclusive team. We welcome applications regardless of age, disability, race, gender, religion, sexual orientation, education, neurodiversity or any other protected characteristic. Application notice We take your privacy seriously . click apply for full job details
Senior SecOps Engineer - Microsoft Security UK | Predominantly Remote | Occasional presence in London Permanent We are partnering with a specialist Microsoft Security organisation looking to appoint two highly experienced Senior SecOps Engineers to its growing Microsoft Cyber Engineering team. This is not a traditional SOC Analyst position. We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments. The organisation works extensively across the Microsoft Security portfolio and is looking for individuals who can bring significant technical depth while remaining hands-on with complex customer environments. The Role Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender/Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and Scripting Improving security event detection and response capabilities Conducting Microsoft tenant health checks, security audits and architecture reviews Analysing cloud security risks and recommending appropriate security controls Supporting complex incident triage and resolution Designing and documenting security engineering standards and processes Researching and implementing new Microsoft security capabilities Producing high-quality technical and customer-facing documentation Working directly with customers and technical stakeholders Supporting and mentoring more junior members of the engineering team Essential Experience To be considered, you should have strong commercial experience across the following: Microsoft Sentinel/Azure Sentinel Microsoft Defender/Defender XDR Strong KQL/Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, Scripting, SOAR or Sentinel playbooks Cloud security assessments, controls and risk analysis Designing and documenting security processes Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: Microsoft Purview Microsoft Defender for Endpoint Defender for Cloud Defender for Identity Defender for Office 365 Microsoft Entra ID Intune Azure security architecture Logic Apps/Sentinel playbooks PowerShell or Python MITRE ATT&CK Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft , or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. Microsoft Certifications Relevant Microsoft certifications are strongly preferred, particularly: SC-200 - Microsoft Security Operations Analyst AZ-500 - Azure Security Engineer Associate AZ-104 - Azure Administrator Associate AZ-305 - Azure Solutions Architect Expert Equivalent or additional Microsoft Security certifications will also be considered. The Opportunity This is an opportunity to join a highly specialised Microsoft Security environment rather than a broad IT or generalist cybersecurity function. You'll work alongside experienced security professionals on complex customer engagements, with significant exposure to the wider Microsoft Security ecosystem and continued investment in technical training and development. The position would particularly suit an established Microsoft Security Engineer who wants to remain technically hands-on while taking greater ownership of solution design, engineering standards, customer environments and the development of security operations capabilities. If your core expertise sits across Microsoft Sentinel, Defender and Security Operations Engineering , email your CV If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
24/08/2026
Full time
Senior SecOps Engineer - Microsoft Security UK | Predominantly Remote | Occasional presence in London Permanent We are partnering with a specialist Microsoft Security organisation looking to appoint two highly experienced Senior SecOps Engineers to its growing Microsoft Cyber Engineering team. This is not a traditional SOC Analyst position. We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments. The organisation works extensively across the Microsoft Security portfolio and is looking for individuals who can bring significant technical depth while remaining hands-on with complex customer environments. The Role Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender/Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and Scripting Improving security event detection and response capabilities Conducting Microsoft tenant health checks, security audits and architecture reviews Analysing cloud security risks and recommending appropriate security controls Supporting complex incident triage and resolution Designing and documenting security engineering standards and processes Researching and implementing new Microsoft security capabilities Producing high-quality technical and customer-facing documentation Working directly with customers and technical stakeholders Supporting and mentoring more junior members of the engineering team Essential Experience To be considered, you should have strong commercial experience across the following: Microsoft Sentinel/Azure Sentinel Microsoft Defender/Defender XDR Strong KQL/Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, Scripting, SOAR or Sentinel playbooks Cloud security assessments, controls and risk analysis Designing and documenting security processes Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: Microsoft Purview Microsoft Defender for Endpoint Defender for Cloud Defender for Identity Defender for Office 365 Microsoft Entra ID Intune Azure security architecture Logic Apps/Sentinel playbooks PowerShell or Python MITRE ATT&CK Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft , or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. Microsoft Certifications Relevant Microsoft certifications are strongly preferred, particularly: SC-200 - Microsoft Security Operations Analyst AZ-500 - Azure Security Engineer Associate AZ-104 - Azure Administrator Associate AZ-305 - Azure Solutions Architect Expert Equivalent or additional Microsoft Security certifications will also be considered. The Opportunity This is an opportunity to join a highly specialised Microsoft Security environment rather than a broad IT or generalist cybersecurity function. You'll work alongside experienced security professionals on complex customer engagements, with significant exposure to the wider Microsoft Security ecosystem and continued investment in technical training and development. The position would particularly suit an established Microsoft Security Engineer who wants to remain technically hands-on while taking greater ownership of solution design, engineering standards, customer environments and the development of security operations capabilities. If your core expertise sits across Microsoft Sentinel, Defender and Security Operations Engineering , email your CV If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Contract: OT SME Location: London, Sheffield or Birmingham - 3 days per week onsite Start Date: ASAP, subject to completion of background checks Duration: 6 months Rate: £500-£550 per day, inside IR35 Reference: 20687 Overview We are seeking an experienced OT Enterprise Solutions Engineer to lead the development and evolution of enterprise Operational Technology (OT) architecture across a complex, global environment. This role is responsible for defining future-state OT architecture, establishing standards and governance, and ensuring alignment across technology, engineering, cybersecurity, facilities and operational teams. You will translate strategic objectives into practical, secure and deliverable solutions across a diverse OT estate. The environment includes corporate buildings, critical facilities, data centres and operational environments , with technologies spanning Building Management Systems (BMS), HVAC, electrical power, fire systems, lifts, smart building platforms and other cyber-physical systems. Working within established architecture governance, you will act as a technical authority for OT architecture, driving standardisation, secure-by-design principles, integration and best practice across a complex and diverse estate. A key focus will be the uplift and transformation of Legacy or immature OT environments , helping establish appropriate architecture, security controls, governance and risk management practices while taking account of different site risk profiles and operational constraints. Key Responsibilities Own and develop the enterprise OT architecture strategy, roadmap and target-state designs. Define architecture principles, standards, reference architectures and design patterns for OT environments. Lead the integration of OT with IT, IoT, cloud and edge technologies while maintaining appropriate security and operational boundaries. Design and advise on secure BMS, smart building, cyber-physical and industrial OT environments . Apply IEC 62443 concepts and secure-by-design principles in real-world OT and building technology environments. Develop and apply structured approaches to OT security assessment, risk scoring and security level attribution . Apply Purdue-aligned network segmentation and reference architecture principles to OT environments. Support the assessment and uplift of Legacy OT environments, moving from immature or inconsistent controls towards defined architecture, security and governance standards. Ensure architecture aligns with business objectives, resilience, safety, security and operational requirements. Consider relevant regulatory and resilience requirements, including NIS2, DORA, ISO 27001 and NIST frameworks , where applicable. Chair and contribute to architecture governance, design reviews and technical decision-making. Collaborate with engineering, infrastructure, cybersecurity, facilities, operations and delivery teams to produce integrated end-to-end solutions. Provide architectural guidance throughout delivery, from concept through implementation and transition into service. Review remediation evidence and produce clear, concise validation outcomes and recommendations. Identify and manage architecture risks, dependencies and technical decisions. Evaluate supplier solutions and ensure technology choices align with enterprise architecture rather than vendor-led designs. Support third-party and vendor management within the OT environment. Contribute to OT risk management frameworks, maturity assessments and target operating model development. Produce high-quality, traceable technical documentation, architecture artefacts, decisions and recommendations. Work effectively within sprint-based/agile delivery environments, managing multiple priorities and delivering outputs to agreed timescales. Skills & Experience Essential 10+ years' experience working with Operational Technology within large, complex estates, ideally across corporate buildings, critical facilities, data centres, industrial, utilities or manufacturing environments. 5+ years' experience designing, operating or securing OT systems , including BMS, HVAC, electrical power systems, fire systems, lifts and/or smart building platforms. Extensive experience designing enterprise OT/ICS architectures across complex programmes. Proven experience leading OT architecture, security and network design. Strong practical understanding of IT/OT convergence and enterprise integration . Demonstrable experience applying IEC 62443 in real-world OT and building technology environments, with the ability to tailor controls to different site risk profiles and operational constraints. Experience uplifting Legacy or immature OT environments , including the development of appropriate security, architecture and governance controls. Experience with cyber-physical systems (CPS) , including deployment, configuration, risk management and reporting. Strong understanding of Purdue-aligned network segmentation and OT reference architecture concepts. Knowledge of industrial and building automation protocols such as Modbus, OPC-UA, Profinet and DNP3 . Familiarity with OT/building automation vendors such as Siemens, Schneider Electric, Honeywell and Johnson Controls , or equivalent. Experience developing architecture standards, governance frameworks and reference designs. Strong stakeholder management skills, with the ability to influence technical and business leaders and communicate effectively with both technical and non-technical audiences. Strong documentation discipline, with the ability to produce clear, accurate and traceable technical artefacts, decisions, validation reports and recommendations. Familiarity with enterprise architecture and security frameworks such as TOGAF, SABSA, ISO 27001 and NIST CSF . Understanding of relevant regulatory and resilience frameworks, including NIS2 and DORA , and their implications for OT design and operations. Comfortable working in agile/sprint-based delivery environments and managing multiple priorities. Networking People (UK) is acting as an Employment Business in relation to this vacancy.
24/08/2026
Contractor
Contract: OT SME Location: London, Sheffield or Birmingham - 3 days per week onsite Start Date: ASAP, subject to completion of background checks Duration: 6 months Rate: £500-£550 per day, inside IR35 Reference: 20687 Overview We are seeking an experienced OT Enterprise Solutions Engineer to lead the development and evolution of enterprise Operational Technology (OT) architecture across a complex, global environment. This role is responsible for defining future-state OT architecture, establishing standards and governance, and ensuring alignment across technology, engineering, cybersecurity, facilities and operational teams. You will translate strategic objectives into practical, secure and deliverable solutions across a diverse OT estate. The environment includes corporate buildings, critical facilities, data centres and operational environments , with technologies spanning Building Management Systems (BMS), HVAC, electrical power, fire systems, lifts, smart building platforms and other cyber-physical systems. Working within established architecture governance, you will act as a technical authority for OT architecture, driving standardisation, secure-by-design principles, integration and best practice across a complex and diverse estate. A key focus will be the uplift and transformation of Legacy or immature OT environments , helping establish appropriate architecture, security controls, governance and risk management practices while taking account of different site risk profiles and operational constraints. Key Responsibilities Own and develop the enterprise OT architecture strategy, roadmap and target-state designs. Define architecture principles, standards, reference architectures and design patterns for OT environments. Lead the integration of OT with IT, IoT, cloud and edge technologies while maintaining appropriate security and operational boundaries. Design and advise on secure BMS, smart building, cyber-physical and industrial OT environments . Apply IEC 62443 concepts and secure-by-design principles in real-world OT and building technology environments. Develop and apply structured approaches to OT security assessment, risk scoring and security level attribution . Apply Purdue-aligned network segmentation and reference architecture principles to OT environments. Support the assessment and uplift of Legacy OT environments, moving from immature or inconsistent controls towards defined architecture, security and governance standards. Ensure architecture aligns with business objectives, resilience, safety, security and operational requirements. Consider relevant regulatory and resilience requirements, including NIS2, DORA, ISO 27001 and NIST frameworks , where applicable. Chair and contribute to architecture governance, design reviews and technical decision-making. Collaborate with engineering, infrastructure, cybersecurity, facilities, operations and delivery teams to produce integrated end-to-end solutions. Provide architectural guidance throughout delivery, from concept through implementation and transition into service. Review remediation evidence and produce clear, concise validation outcomes and recommendations. Identify and manage architecture risks, dependencies and technical decisions. Evaluate supplier solutions and ensure technology choices align with enterprise architecture rather than vendor-led designs. Support third-party and vendor management within the OT environment. Contribute to OT risk management frameworks, maturity assessments and target operating model development. Produce high-quality, traceable technical documentation, architecture artefacts, decisions and recommendations. Work effectively within sprint-based/agile delivery environments, managing multiple priorities and delivering outputs to agreed timescales. Skills & Experience Essential 10+ years' experience working with Operational Technology within large, complex estates, ideally across corporate buildings, critical facilities, data centres, industrial, utilities or manufacturing environments. 5+ years' experience designing, operating or securing OT systems , including BMS, HVAC, electrical power systems, fire systems, lifts and/or smart building platforms. Extensive experience designing enterprise OT/ICS architectures across complex programmes. Proven experience leading OT architecture, security and network design. Strong practical understanding of IT/OT convergence and enterprise integration . Demonstrable experience applying IEC 62443 in real-world OT and building technology environments, with the ability to tailor controls to different site risk profiles and operational constraints. Experience uplifting Legacy or immature OT environments , including the development of appropriate security, architecture and governance controls. Experience with cyber-physical systems (CPS) , including deployment, configuration, risk management and reporting. Strong understanding of Purdue-aligned network segmentation and OT reference architecture concepts. Knowledge of industrial and building automation protocols such as Modbus, OPC-UA, Profinet and DNP3 . Familiarity with OT/building automation vendors such as Siemens, Schneider Electric, Honeywell and Johnson Controls , or equivalent. Experience developing architecture standards, governance frameworks and reference designs. Strong stakeholder management skills, with the ability to influence technical and business leaders and communicate effectively with both technical and non-technical audiences. Strong documentation discipline, with the ability to produce clear, accurate and traceable technical artefacts, decisions, validation reports and recommendations. Familiarity with enterprise architecture and security frameworks such as TOGAF, SABSA, ISO 27001 and NIST CSF . Understanding of relevant regulatory and resilience frameworks, including NIS2 and DORA , and their implications for OT design and operations. Comfortable working in agile/sprint-based delivery environments and managing multiple priorities. Networking People (UK) is acting as an Employment Business in relation to this vacancy.
Senior SecOps Engineer - Microsoft Security UK Predominantly Remote Occasional presence in London Permanent We are partnering with a specialist Microsoft Security organisation looking to appoint two highly experienced Senior SecOps Engineers to its growing Microsoft Cyber Engineering team. This is not a traditional SOC Analyst position. We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments. The organisation works extensively across the Microsoft Security portfolio and is looking for individuals who can bring significant technical depth while remaining hands-on with complex customer environments. The Role Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender / Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and scripting Improving security event detection and response capabilities Conducting Microsoft tenant health checks, security audits and architecture reviews Analysing cloud security risks and recommending appropriate security controls Supporting complex incident triage and resolution Designing and documenting security engineering standards and processes Researching and implementing new Microsoft security capabilities Producing high-quality technical and customer-facing documentation Working directly with customers and technical stakeholders Supporting and mentoring more junior members of the engineering team Essential Experience To be considered, you should have strong commercial experience across the following: Microsoft Sentinel / Azure Sentinel Microsoft Defender / Defender XDR Strong KQL / Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, scripting, SOAR or Sentinel playbooks Cloud security assessments, controls and risk analysis Designing and documenting security processes Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: Microsoft Purview Microsoft Defender for Endpoint Defender for Cloud Defender for Identity Defender for Office 365 Microsoft Entra ID Intune Azure security architecture Logic Apps / Sentinel playbooks PowerShell or Python MITRE ATT&CK Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft , or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. Microsoft Certifications Relevant Microsoft certifications are strongly preferred, particularly: SC-200 - Microsoft Security Operations Analyst AZ-500 - Azure Security Engineer Associate AZ-104 - Azure Administrator Associate AZ-305 - Azure Solutions Architect Expert Equivalent or additional Microsoft Security certifications will also be considered. The Opportunity This is an opportunity to join a highly specialised Microsoft Security environment rather than a broad IT or generalist cybersecurity function. You'll work alongside experienced security professionals on complex customer engagements, with significant exposure to the wider Microsoft Security ecosystem and continued investment in technical training and development. The position would particularly suit an established Microsoft Security Engineer who wants to remain technically hands-on while taking greater ownership of solution design, engineering standards, customer environments and the development of security operations capabilities. If your core expertise sits across Microsoft Sentinel, Defender and Security Operations Engineering , email your CV If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
23/08/2026
Full time
Senior SecOps Engineer - Microsoft Security UK Predominantly Remote Occasional presence in London Permanent We are partnering with a specialist Microsoft Security organisation looking to appoint two highly experienced Senior SecOps Engineers to its growing Microsoft Cyber Engineering team. This is not a traditional SOC Analyst position. We are looking for technically strong Microsoft Security Engineers with genuine hands-on experience designing, implementing, engineering and optimising Microsoft Sentinel and Defender solutions within enterprise customer environments. The organisation works extensively across the Microsoft Security portfolio and is looking for individuals who can bring significant technical depth while remaining hands-on with complex customer environments. The Role Working alongside Security Engineers, SOC Analysts and wider delivery teams, you will take responsibility for the implementation, optimisation and ongoing improvement of Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender / Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and scripting Improving security event detection and response capabilities Conducting Microsoft tenant health checks, security audits and architecture reviews Analysing cloud security risks and recommending appropriate security controls Supporting complex incident triage and resolution Designing and documenting security engineering standards and processes Researching and implementing new Microsoft security capabilities Producing high-quality technical and customer-facing documentation Working directly with customers and technical stakeholders Supporting and mentoring more junior members of the engineering team Essential Experience To be considered, you should have strong commercial experience across the following: Microsoft Sentinel / Azure Sentinel Microsoft Defender / Defender XDR Strong KQL / Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, scripting, SOAR or Sentinel playbooks Cloud security assessments, controls and risk analysis Designing and documenting security processes Customer-facing technical delivery Candidates whose experience is predominantly L1/L2 SOC monitoring without hands-on Sentinel and Defender engineering are unlikely to be suitable for this position. Highly Desirable Experience across any of the following would be particularly valuable: Microsoft Purview Microsoft Defender for Endpoint Defender for Cloud Defender for Identity Defender for Office 365 Microsoft Entra ID Intune Azure security architecture Logic Apps / Sentinel playbooks PowerShell or Python MITRE ATT&CK Microsoft Security architecture and tenant assessments Previous experience working directly for Microsoft , or within a leading Microsoft Security Partner, MSSP or specialist Microsoft consultancy, would be highly advantageous. Microsoft Certifications Relevant Microsoft certifications are strongly preferred, particularly: SC-200 - Microsoft Security Operations Analyst AZ-500 - Azure Security Engineer Associate AZ-104 - Azure Administrator Associate AZ-305 - Azure Solutions Architect Expert Equivalent or additional Microsoft Security certifications will also be considered. The Opportunity This is an opportunity to join a highly specialised Microsoft Security environment rather than a broad IT or generalist cybersecurity function. You'll work alongside experienced security professionals on complex customer engagements, with significant exposure to the wider Microsoft Security ecosystem and continued investment in technical training and development. The position would particularly suit an established Microsoft Security Engineer who wants to remain technically hands-on while taking greater ownership of solution design, engineering standards, customer environments and the development of security operations capabilities. If your core expertise sits across Microsoft Sentinel, Defender and Security Operations Engineering , email your CV If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Senior Network Security Consultant Base Salary: £60-75k Benefits: 25 days holiday, private healthcare, twice-yearly bonus + funded professional qualifications Location: Remote (UK) Travel: Occasional travel to customer sites and company offices as required The opportunity: If you re already working at a senior level within network security and want a role where you can take genuine technical ownership of customer environments, this is worth a look. We re working with a growing specialist network and connectivity business that designs, builds and supports complex network environments for large organisations across the UK. Due to continued growth, they re looking to add a Senior Network Security Consultant to the team. This is much more than a 3rd line support position. You ll take projects from initial customer requirements and solution design through to implementation, documentation and ongoing technical ownership. You ll work closely with customers and the commercial team at the pre-sales stage, gathering requirements, designing solutions and presenting those back to the customer before taking the technical lead through delivery. It s a genuinely hands-on consultancy position, but one where you ll have much more ownership around architecture, customer strategy and technical direction. There s a strong investment in technical development too, with relevant professional qualifications and certifications funded as part of the role. Day to day You ll be designing, implementing and supporting network security solutions across complex customer environments. That will include enterprise firewalls, LAN/WAN, VPNs, SD-WAN, ZTNA, SASE, authentication and wider network security technologies, alongside maintaining a strong understanding of routing, switching and networking fundamentals. You ll lead technical projects throughout their lifecycle, producing detailed designs and implementation plans before taking responsibility for successful delivery. There s also an increasing focus on modern security operations, so exposure to areas such as SIEM, SOAR and XDR would be useful. Beyond project delivery, you ll act as a senior technical escalation point, carry out customer security audits and health checks, make recommendations around improving existing environments and provide ongoing technical ownership for nominated customers. You ll also help develop other engineers within the team through technical mentoring, knowledge sharing and internal training. The environments are business-critical, so there is an out-of-hours/on-call element to the role alongside occasional planned maintenance. Who we are looking for You could currently be a Senior Network Security Engineer, Network Security Consultant, Senior Network & Security Engineer or already operating at Network Security Architect level. The important thing is that you ve moved beyond simply supporting network environments. You ll have experience designing solutions, leading implementations and taking technical ownership of customer projects. We re looking for strong networking fundamentals alongside detailed experience across enterprise firewalls, LAN/WAN, VPN, SD-WAN and modern network security architecture. Experience within an MSP, ISP, network integrator or consultancy would translate particularly well, particularly if you re used to working across multiple customers and complex environments. You ll need to be comfortable gathering requirements, producing technical designs, presenting solutions to customers and then remaining involved through implementation and ongoing support. Experience around security compliance frameworks and public-sector environments would be useful, as would exposure to SIEM, SOAR, XDR and infrastructure automation. More than anything, they want somebody who can take technical ownership. Someone who can get into the detail when needed, communicate confidently with customers and be the person other engineers turn to when things get complicated. The Next Steps If you re already working within network security but feel like your current role has become too support-heavy, this is an opportunity to move further into design, consultancy and technical ownership without moving away from the hands-on technology. The role can be based remotely, with occasional travel when needed for customer projects and meetings. If this sounds like the sort of move you ve been looking for, drop me a message or contact Joe White at CRG TEC for a confidential chat about the role.
22/08/2026
Full time
Senior Network Security Consultant Base Salary: £60-75k Benefits: 25 days holiday, private healthcare, twice-yearly bonus + funded professional qualifications Location: Remote (UK) Travel: Occasional travel to customer sites and company offices as required The opportunity: If you re already working at a senior level within network security and want a role where you can take genuine technical ownership of customer environments, this is worth a look. We re working with a growing specialist network and connectivity business that designs, builds and supports complex network environments for large organisations across the UK. Due to continued growth, they re looking to add a Senior Network Security Consultant to the team. This is much more than a 3rd line support position. You ll take projects from initial customer requirements and solution design through to implementation, documentation and ongoing technical ownership. You ll work closely with customers and the commercial team at the pre-sales stage, gathering requirements, designing solutions and presenting those back to the customer before taking the technical lead through delivery. It s a genuinely hands-on consultancy position, but one where you ll have much more ownership around architecture, customer strategy and technical direction. There s a strong investment in technical development too, with relevant professional qualifications and certifications funded as part of the role. Day to day You ll be designing, implementing and supporting network security solutions across complex customer environments. That will include enterprise firewalls, LAN/WAN, VPNs, SD-WAN, ZTNA, SASE, authentication and wider network security technologies, alongside maintaining a strong understanding of routing, switching and networking fundamentals. You ll lead technical projects throughout their lifecycle, producing detailed designs and implementation plans before taking responsibility for successful delivery. There s also an increasing focus on modern security operations, so exposure to areas such as SIEM, SOAR and XDR would be useful. Beyond project delivery, you ll act as a senior technical escalation point, carry out customer security audits and health checks, make recommendations around improving existing environments and provide ongoing technical ownership for nominated customers. You ll also help develop other engineers within the team through technical mentoring, knowledge sharing and internal training. The environments are business-critical, so there is an out-of-hours/on-call element to the role alongside occasional planned maintenance. Who we are looking for You could currently be a Senior Network Security Engineer, Network Security Consultant, Senior Network & Security Engineer or already operating at Network Security Architect level. The important thing is that you ve moved beyond simply supporting network environments. You ll have experience designing solutions, leading implementations and taking technical ownership of customer projects. We re looking for strong networking fundamentals alongside detailed experience across enterprise firewalls, LAN/WAN, VPN, SD-WAN and modern network security architecture. Experience within an MSP, ISP, network integrator or consultancy would translate particularly well, particularly if you re used to working across multiple customers and complex environments. You ll need to be comfortable gathering requirements, producing technical designs, presenting solutions to customers and then remaining involved through implementation and ongoing support. Experience around security compliance frameworks and public-sector environments would be useful, as would exposure to SIEM, SOAR, XDR and infrastructure automation. More than anything, they want somebody who can take technical ownership. Someone who can get into the detail when needed, communicate confidently with customers and be the person other engineers turn to when things get complicated. The Next Steps If you re already working within network security but feel like your current role has become too support-heavy, this is an opportunity to move further into design, consultancy and technical ownership without moving away from the hands-on technology. The role can be based remotely, with occasional travel when needed for customer projects and meetings. If this sounds like the sort of move you ve been looking for, drop me a message or contact Joe White at CRG TEC for a confidential chat about the role.
CyberArk SME - 6 Month Contract - Hybrid in London - Inside IR35 Role Overview An experienced CyberArk Subject Matter Expert to lead Privileged Access Management initiatives across a large enterprise. The position is responsible for the end-to-end implementation, enhancement, governance, and compliance of CyberArk PAM solutions, with a strong focus on platform stability, risk reduction, and continuous maturity improvement. A CyberArk Defender certification is mandatory for this role. Key Responsibilities Lead end-to-end CyberArk implementation, deployment, upgrades, patching, and disaster recovery setup across all PAS components. Design CyberArk architecture and configure safes, platforms, and security policies aligned to enterprise standards. Develop and maintain CPM plugins and PSM connectors, performing advanced troubleshooting across PSM, CPM, Vault, and integrations to ensure platform stability. Integrate CyberArk with AD/LDAP, IGA tools, SIEM, and ServiceNow, including REST API-based automation, while supporting audits, compliance, and regulatory reporting. Drive account discovery and onboarding, identify and remediate privileged access risks, and lead continuous PAM maturity improvement through process automation and operational excellence. Top 5 Skills CyberArk PAM expertise - 8+ years of IT experience with deep, hands-on CyberArk knowledge across solution design, implementation, upgrades, migration, and platform architecture; CyberArk Defender (PAM-Defender) certification is mandatory. PSM connector & CPM plugin development - Proven experience developing and maintaining PSM connectors and CPM plugins, with strong troubleshooting capability across Vault, PSM, and CPM components. PAM governance & compliance - Demonstrated ability to define and implement PAM strategy and frameworks, support audits, and meet regulatory and internal governance requirements. Third-party integrations - Experience integrating CyberArk with SIEM, IAM tools, AD/LDAP, ServiceNow, and cloud platforms, including REST API-based automation and Credential Provider (CP, CCP, AIM) experience. Account discovery & onboarding - Hands-on experience driving discovery and onboarding of Servers, databases, network devices, and service accounts, with knowledge of IAM concepts and Windows/Linux environments. Contract Details Rate: £500 per day Inside IR35 Location: Hybrid 4x a week in London Duration: 6 Month Contract
20/08/2026
Contractor
CyberArk SME - 6 Month Contract - Hybrid in London - Inside IR35 Role Overview An experienced CyberArk Subject Matter Expert to lead Privileged Access Management initiatives across a large enterprise. The position is responsible for the end-to-end implementation, enhancement, governance, and compliance of CyberArk PAM solutions, with a strong focus on platform stability, risk reduction, and continuous maturity improvement. A CyberArk Defender certification is mandatory for this role. Key Responsibilities Lead end-to-end CyberArk implementation, deployment, upgrades, patching, and disaster recovery setup across all PAS components. Design CyberArk architecture and configure safes, platforms, and security policies aligned to enterprise standards. Develop and maintain CPM plugins and PSM connectors, performing advanced troubleshooting across PSM, CPM, Vault, and integrations to ensure platform stability. Integrate CyberArk with AD/LDAP, IGA tools, SIEM, and ServiceNow, including REST API-based automation, while supporting audits, compliance, and regulatory reporting. Drive account discovery and onboarding, identify and remediate privileged access risks, and lead continuous PAM maturity improvement through process automation and operational excellence. Top 5 Skills CyberArk PAM expertise - 8+ years of IT experience with deep, hands-on CyberArk knowledge across solution design, implementation, upgrades, migration, and platform architecture; CyberArk Defender (PAM-Defender) certification is mandatory. PSM connector & CPM plugin development - Proven experience developing and maintaining PSM connectors and CPM plugins, with strong troubleshooting capability across Vault, PSM, and CPM components. PAM governance & compliance - Demonstrated ability to define and implement PAM strategy and frameworks, support audits, and meet regulatory and internal governance requirements. Third-party integrations - Experience integrating CyberArk with SIEM, IAM tools, AD/LDAP, ServiceNow, and cloud platforms, including REST API-based automation and Credential Provider (CP, CCP, AIM) experience. Account discovery & onboarding - Hands-on experience driving discovery and onboarding of Servers, databases, network devices, and service accounts, with knowledge of IAM concepts and Windows/Linux environments. Contract Details Rate: £500 per day Inside IR35 Location: Hybrid 4x a week in London Duration: 6 Month Contract
Jackson Hogg Ltd
Newcastle Upon Tyne, Tyne And Wear
OT & Automation Engineer Newcastle Upon Tyne Up to 52,000 basic + competitive benefits We are seeking an OT & Automation Engineer to support the development, maintenance and continuous improvement of Operational Technology (OT) and Industrial Control Systems (ICS) within a manufacturing environment. This role will be responsible for supporting automation projects, maintaining control systems, enhancing cyber security compliance, and helping drive digital transformation initiatives across site operations. Key Responsibilities OT & Industrial Control Systems Provide technical support for control system maintenance, troubleshooting and improvement activities. Support design modifications and automation projects across site operations. Develop and maintain Industrial Control System network architecture documentation, including equipment locations, network addresses and communication routes. Implement and maintain control system backup and recovery processes. Support business continuity planning for control systems. Maintain and support control system spare parts inventories. Assist with the deployment of digital manufacturing initiatives and operational technology improvements. Automation Projects Work with automation integrators to develop technical solutions and project specifications. Support vendor selection and automation project execution. Contribute to project feasibility assessments, cost estimates and implementation plans. Collaborate with site engineering, IT and external suppliers to deliver automation solutions. Cyber Security Act as a key point of contact for OT cyber security activities. Ensure cyber security standards and policies are implemented and maintained. Carry out cyber security risk and vulnerability assessments. Support threat identification and mitigation activities. Maintain records of Industrial Control System assets and lifecycle management. Deliver awareness training and support compliance initiatives. Process Safety & Compliance Maintain control system documentation including logic diagrams, interlocks and operating limits. Support functional safety activities and process hazard reviews. Identify and manage critical control system equipment. Contribute to safe and reliable plant operations. Skills & Experience Degree in Electronics, Automation, Industrial Control, Electrical Engineering or a related discipline. Minimum 3 years' experience in an automation or control systems engineering role. Experience maintaining industrial control systems within a manufacturing environment. Strong knowledge of PLC programming and troubleshooting. Experience with platforms such as Siemens, Allen-Bradley, Honeywell, ABB or similar. Understanding of industrial communication protocols including Profibus, Modbus, Ethernet and wireless networks. Knowledge of cyber security principles, network architecture and data acquisition systems. Experience with databases such as SQL and OPC environments. Experience working with field instrumentation and plant control systems.
19/08/2026
Full time
OT & Automation Engineer Newcastle Upon Tyne Up to 52,000 basic + competitive benefits We are seeking an OT & Automation Engineer to support the development, maintenance and continuous improvement of Operational Technology (OT) and Industrial Control Systems (ICS) within a manufacturing environment. This role will be responsible for supporting automation projects, maintaining control systems, enhancing cyber security compliance, and helping drive digital transformation initiatives across site operations. Key Responsibilities OT & Industrial Control Systems Provide technical support for control system maintenance, troubleshooting and improvement activities. Support design modifications and automation projects across site operations. Develop and maintain Industrial Control System network architecture documentation, including equipment locations, network addresses and communication routes. Implement and maintain control system backup and recovery processes. Support business continuity planning for control systems. Maintain and support control system spare parts inventories. Assist with the deployment of digital manufacturing initiatives and operational technology improvements. Automation Projects Work with automation integrators to develop technical solutions and project specifications. Support vendor selection and automation project execution. Contribute to project feasibility assessments, cost estimates and implementation plans. Collaborate with site engineering, IT and external suppliers to deliver automation solutions. Cyber Security Act as a key point of contact for OT cyber security activities. Ensure cyber security standards and policies are implemented and maintained. Carry out cyber security risk and vulnerability assessments. Support threat identification and mitigation activities. Maintain records of Industrial Control System assets and lifecycle management. Deliver awareness training and support compliance initiatives. Process Safety & Compliance Maintain control system documentation including logic diagrams, interlocks and operating limits. Support functional safety activities and process hazard reviews. Identify and manage critical control system equipment. Contribute to safe and reliable plant operations. Skills & Experience Degree in Electronics, Automation, Industrial Control, Electrical Engineering or a related discipline. Minimum 3 years' experience in an automation or control systems engineering role. Experience maintaining industrial control systems within a manufacturing environment. Strong knowledge of PLC programming and troubleshooting. Experience with platforms such as Siemens, Allen-Bradley, Honeywell, ABB or similar. Understanding of industrial communication protocols including Profibus, Modbus, Ethernet and wireless networks. Knowledge of cyber security principles, network architecture and data acquisition systems. Experience with databases such as SQL and OPC environments. Experience working with field instrumentation and plant control systems.
Senior Controls & Automation Engineer Employment Type: Permanent Reporting to: Engineering Manager Sector: Industrial Automation / Special Purpose Machinery The Role An established engineering business is looking for a Senior Controls & Automation Engineer to lead the development and standardisation of machine control systems across complex automated machinery. The role combines hands-on engineering with technical leadership, covering PLC software, motion control, automation, functional safety and machine connectivity . A key focus will be supporting the transition from Allen-Bradley to Siemens , while developing engineering standards and mentoring other engineers. Key Responsibilities Define and develop controls and software architecture standards. Lead the transition from Allen-Bradley to Siemens platforms. Design and develop PLC software using Siemens TIA Portal and S7-1500 PLCs . Configure and commission SINAMICS drives, Siemens safety systems and WinCC HMIs . Develop servo and multi-axis motion-control applications, including interpolation and synchronisation. Develop HMI/SCADA solutions, machine diagnostics and predictive maintenance functionality. Lead controls development for complex machinery and automated handling systems. Integrate conveyors, robotics, gantries and third-party automation equipment . Support machinery risk assessments, validation and CE/UKCA compliance . Ensure designs meet relevant functional safety, international standards and cybersecurity requirements. Support machine commissioning, FAT and SAT activities. Provide technical support for complex troubleshooting, modifications and upgrades. Mentor junior controls and electrical engineers and support continuous improvement. Technical Experience The successful candidate should have strong experience within controls engineering, industrial automation or special purpose machinery , including: Significant PLC programming experience. Strong Siemens TIA Portal experience. S7-1500 PLCs . SINAMICS drives . Siemens safety systems . WinCC HMI/SCADA development. Servo systems and multi-axis motion control . Automated handling and material-handling systems. Experience with conveyors, robotics and/or gantries . Complex machinery or special purpose machinery projects. Industrial communications including Profinet, Ethernet/IP, OPC UA and Modbus . Practical understanding of machine safety legislation. CE/UKCA compliance experience. Understanding of functional safety principles and standards. Machinery risk assessments and validation. Industrial cybersecurity awareness. Allen-Bradley experience would be beneficial, particularly alongside Siemens migration projects. Leadership & Personal Skills Experience mentoring and supporting other engineers. Ability to influence technical direction and engineering standards. Strong problem-solving and stakeholder-management skills. Comfortable communicating with customers, suppliers and senior management. Able to work collaboratively across mechanical, electrical, service and project teams. Health & Safety You will be expected to comply with all relevant health, safety and company procedures, ensuring machinery and engineering activities are undertaken safely and in accordance with applicable standards.
19/08/2026
Full time
Senior Controls & Automation Engineer Employment Type: Permanent Reporting to: Engineering Manager Sector: Industrial Automation / Special Purpose Machinery The Role An established engineering business is looking for a Senior Controls & Automation Engineer to lead the development and standardisation of machine control systems across complex automated machinery. The role combines hands-on engineering with technical leadership, covering PLC software, motion control, automation, functional safety and machine connectivity . A key focus will be supporting the transition from Allen-Bradley to Siemens , while developing engineering standards and mentoring other engineers. Key Responsibilities Define and develop controls and software architecture standards. Lead the transition from Allen-Bradley to Siemens platforms. Design and develop PLC software using Siemens TIA Portal and S7-1500 PLCs . Configure and commission SINAMICS drives, Siemens safety systems and WinCC HMIs . Develop servo and multi-axis motion-control applications, including interpolation and synchronisation. Develop HMI/SCADA solutions, machine diagnostics and predictive maintenance functionality. Lead controls development for complex machinery and automated handling systems. Integrate conveyors, robotics, gantries and third-party automation equipment . Support machinery risk assessments, validation and CE/UKCA compliance . Ensure designs meet relevant functional safety, international standards and cybersecurity requirements. Support machine commissioning, FAT and SAT activities. Provide technical support for complex troubleshooting, modifications and upgrades. Mentor junior controls and electrical engineers and support continuous improvement. Technical Experience The successful candidate should have strong experience within controls engineering, industrial automation or special purpose machinery , including: Significant PLC programming experience. Strong Siemens TIA Portal experience. S7-1500 PLCs . SINAMICS drives . Siemens safety systems . WinCC HMI/SCADA development. Servo systems and multi-axis motion control . Automated handling and material-handling systems. Experience with conveyors, robotics and/or gantries . Complex machinery or special purpose machinery projects. Industrial communications including Profinet, Ethernet/IP, OPC UA and Modbus . Practical understanding of machine safety legislation. CE/UKCA compliance experience. Understanding of functional safety principles and standards. Machinery risk assessments and validation. Industrial cybersecurity awareness. Allen-Bradley experience would be beneficial, particularly alongside Siemens migration projects. Leadership & Personal Skills Experience mentoring and supporting other engineers. Ability to influence technical direction and engineering standards. Strong problem-solving and stakeholder-management skills. Comfortable communicating with customers, suppliers and senior management. Able to work collaboratively across mechanical, electrical, service and project teams. Health & Safety You will be expected to comply with all relevant health, safety and company procedures, ensuring machinery and engineering activities are undertaken safely and in accordance with applicable standards.
Essential skills/knowledge/experience: Very strong experience in security engineering, offensive security, or security architecture, with hands-on involvement in evaluating and deploying security tools. Strong Linux administration skills, including system hardening, service management, troubleshooting, network tuning, secure baseline implementation, and service orchestration. Practical cloud management experience, including CI/CD pipeline design and implementation. Proven experience running vendor evaluations, proof-of-concepts, and selecting enterprise security platforms. Solid understanding of offensive techniques and their mapping to detection and tooling capabilities, aligned to frameworks such as MITRE ATT&CK. Strong understanding of cloud architectures and operational considerations for hosting security tooling. Excellent stakeholder management, cross-functional coordination, and technical communication skills. Ability to translate technical trade-offs into business-focused decisions supported by clear pro-and-con analyses. Experience integrating security tool outputs into SIEM platforms, engineering workflows, and adjacent security tooling. Prior experience with tools such as SafeBreach, BloodHound, Microsoft EASM, or similar technologies.
19/08/2026
Full time
Essential skills/knowledge/experience: Very strong experience in security engineering, offensive security, or security architecture, with hands-on involvement in evaluating and deploying security tools. Strong Linux administration skills, including system hardening, service management, troubleshooting, network tuning, secure baseline implementation, and service orchestration. Practical cloud management experience, including CI/CD pipeline design and implementation. Proven experience running vendor evaluations, proof-of-concepts, and selecting enterprise security platforms. Solid understanding of offensive techniques and their mapping to detection and tooling capabilities, aligned to frameworks such as MITRE ATT&CK. Strong understanding of cloud architectures and operational considerations for hosting security tooling. Excellent stakeholder management, cross-functional coordination, and technical communication skills. Ability to translate technical trade-offs into business-focused decisions supported by clear pro-and-con analyses. Experience integrating security tool outputs into SIEM platforms, engineering workflows, and adjacent security tooling. Prior experience with tools such as SafeBreach, BloodHound, Microsoft EASM, or similar technologies.
Ganymede Solutions
Middleton St. George, County Durham
PLC Software Contractor Rate: £50.00 - £57.00p/h (Outside IR35) North Yorkshire Are you an experienced PLC Software Engineer with Siemens TIA Portal expertise and a background in Defence or regulated industrial environments, looking for a hands-on contract supporting a genuinely high-profile automation project? Do you enjoy working from specification through to implementation, validation and commissioning on complex control systems? My client is an established manufacturer of precision sensing and monitoring technology, delivering solutions used across a range of regulated sectors including defence, energy, and industrial environments. They've built a strong reputation for reliability and operational integrity, with products used in demanding and safety-critical settings. Deliver PLC Software for a Live MOD Project This is a hands-on contract supporting the software delivery phase of a specialist automation and alarm monitoring system, with the architectural design already complete. You'll be working from specification through to implementation, taking ownership of PLC software development, digital communications and platform management system integration. You'll be working closely with a small, focused project team, reporting into the Embedded Software Engineering Manager. Your responsibilities: Your day-to-day work will involve developing and validating PLC software using Siemens TIA Portal, working across the full scope from function blocks down to structured text. You'll need a strong understanding of automation systems, taking designs from specification through to implementation, and will play a key role in validating logic and estimating effort accurately across the project. You'll also need to work within defined standards and compliance requirements relevant to the sector, and will be integrating digital communications and platform management systems as part of the wider project delivery. What We're Looking For To be successful in this role, you'll need proven experience as a Siemens TIA Portal expert, with a strong understanding of automation systems and the ability to work confidently from specification through to implementation. You should be comfortable working to defined standards and compliance requirements, with good estimating and validation skills. Experience within Defence, MOD or other regulated industrial environments would be a strong advantage. You'll need to be eligible to work on UK Defence projects and hold the required security clearance (SC). Why Apply? This is a genuine opportunity to deliver hands-on PLC software work on a fascinating, high-integrity project, for a well-established business with a strong reputation in precision sensing technology. You'll be working in a fully office-based, close-knit team environment, with real ownership over the software delivery phase of the project. Ganymede is committed to creating a diverse workforce and is an equal opportunities employer. We welcome applications from all suitably qualified persons regardless of age, disability, gender, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, and sexual orientation
19/08/2026
Contractor
PLC Software Contractor Rate: £50.00 - £57.00p/h (Outside IR35) North Yorkshire Are you an experienced PLC Software Engineer with Siemens TIA Portal expertise and a background in Defence or regulated industrial environments, looking for a hands-on contract supporting a genuinely high-profile automation project? Do you enjoy working from specification through to implementation, validation and commissioning on complex control systems? My client is an established manufacturer of precision sensing and monitoring technology, delivering solutions used across a range of regulated sectors including defence, energy, and industrial environments. They've built a strong reputation for reliability and operational integrity, with products used in demanding and safety-critical settings. Deliver PLC Software for a Live MOD Project This is a hands-on contract supporting the software delivery phase of a specialist automation and alarm monitoring system, with the architectural design already complete. You'll be working from specification through to implementation, taking ownership of PLC software development, digital communications and platform management system integration. You'll be working closely with a small, focused project team, reporting into the Embedded Software Engineering Manager. Your responsibilities: Your day-to-day work will involve developing and validating PLC software using Siemens TIA Portal, working across the full scope from function blocks down to structured text. You'll need a strong understanding of automation systems, taking designs from specification through to implementation, and will play a key role in validating logic and estimating effort accurately across the project. You'll also need to work within defined standards and compliance requirements relevant to the sector, and will be integrating digital communications and platform management systems as part of the wider project delivery. What We're Looking For To be successful in this role, you'll need proven experience as a Siemens TIA Portal expert, with a strong understanding of automation systems and the ability to work confidently from specification through to implementation. You should be comfortable working to defined standards and compliance requirements, with good estimating and validation skills. Experience within Defence, MOD or other regulated industrial environments would be a strong advantage. You'll need to be eligible to work on UK Defence projects and hold the required security clearance (SC). Why Apply? This is a genuine opportunity to deliver hands-on PLC software work on a fascinating, high-integrity project, for a well-established business with a strong reputation in precision sensing technology. You'll be working in a fully office-based, close-knit team environment, with real ownership over the software delivery phase of the project. Ganymede is committed to creating a diverse workforce and is an equal opportunities employer. We welcome applications from all suitably qualified persons regardless of age, disability, gender, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, and sexual orientation
Head of IT Bristol Hybrid Working Competitive Salary 90k circa DOE + Benefits Full Time 40 Hours per Week (Monday to Friday) We are recruiting for a Head of IT to take full ownership of a growing and evolving technology estate within a highly regulated environment. Reporting directly to the CEO, you will play a key role in shaping technology strategy whilst leading day-to-day IT operations, infrastructure, security and compliance. This is not a role where you simply set the direction and delegate everything else. We are looking for a hands-on technology leader who can move seamlessly from discussions around budgets, risk and future technology roadmaps to reviewing infrastructure, managing suppliers, strengthening cybersecurity and supporting complex technical projects when required. The Role Based at our clients headquarters in Bristol , with an expected on-site presence of approximately three days per week, you will lead a small IT team and take responsibility for the entire technology function. Key areas of responsibility include: IT infrastructure, networks and cloud architecture AWS and hybrid/on-premise environments Microsoft Entra ID, Active Directory and Microsoft Intune Cybersecurity, EDR and SIEM platforms Information security, UK GDPR and regulatory compliance Business continuity and disaster recovery planning IT strategy, systems optimisation and application rationalisation Supplier management, contracts and technology budgets End-user support and access management Developing, mentoring and growing the internal IT team Operating within a highly regulated and customer-focused environment, security, resilience and compliance are central to this role. We are keen to speak with experienced IT professionals who can combine strategic leadership with strong technical expertise. You will ideally have: Extensive experience across IT operations, systems engineering and infrastructure management Previous experience leading, developing and mentoring IT teams Strong hands-on knowledge of AWS and hybrid infrastructure environments Good working knowledge of Microsoft Entra ID and Microsoft Intune Strong networking fundamentals Practical cybersecurity experience Experience working within regulated or compliance-driven environments Proven experience managing third-party suppliers, contracts and technology budgets
18/08/2026
Full time
Head of IT Bristol Hybrid Working Competitive Salary 90k circa DOE + Benefits Full Time 40 Hours per Week (Monday to Friday) We are recruiting for a Head of IT to take full ownership of a growing and evolving technology estate within a highly regulated environment. Reporting directly to the CEO, you will play a key role in shaping technology strategy whilst leading day-to-day IT operations, infrastructure, security and compliance. This is not a role where you simply set the direction and delegate everything else. We are looking for a hands-on technology leader who can move seamlessly from discussions around budgets, risk and future technology roadmaps to reviewing infrastructure, managing suppliers, strengthening cybersecurity and supporting complex technical projects when required. The Role Based at our clients headquarters in Bristol , with an expected on-site presence of approximately three days per week, you will lead a small IT team and take responsibility for the entire technology function. Key areas of responsibility include: IT infrastructure, networks and cloud architecture AWS and hybrid/on-premise environments Microsoft Entra ID, Active Directory and Microsoft Intune Cybersecurity, EDR and SIEM platforms Information security, UK GDPR and regulatory compliance Business continuity and disaster recovery planning IT strategy, systems optimisation and application rationalisation Supplier management, contracts and technology budgets End-user support and access management Developing, mentoring and growing the internal IT team Operating within a highly regulated and customer-focused environment, security, resilience and compliance are central to this role. We are keen to speak with experienced IT professionals who can combine strategic leadership with strong technical expertise. You will ideally have: Extensive experience across IT operations, systems engineering and infrastructure management Previous experience leading, developing and mentoring IT teams Strong hands-on knowledge of AWS and hybrid infrastructure environments Good working knowledge of Microsoft Entra ID and Microsoft Intune Strong networking fundamentals Practical cybersecurity experience Experience working within regulated or compliance-driven environments Proven experience managing third-party suppliers, contracts and technology budgets
Seeking an experienced CyberArk Consultant with a proven track record of designing, implementing, and deploying CyberArk Privileged Access Management (PAM) solutions in enterprise environments. Key Requirements Strong solution architecture experience with enterprise security platforms. Hands-on experience implementing and deploying CyberArk PAM from design through production. Demonstrated experience delivering CyberArk implementations for at least one previous organization, with end-to-end ownership of the deployment. Strong knowledge of CyberArk components, including the Digital Vault, PVWA, CPM, PSM, and Privileged Threat Analytics (PTA) (where applicable). Experience integrating CyberArk with enterprise infrastructure such as Active Directory, LDAP, SIEM, IAM, and cloud platforms. Ability to define architecture, lead technical design workshops, and provide implementation best practices. Strong troubleshooting, migration, and upgrade experience for CyberArk environments. Excellent stakeholder management and communication skills, with the ability to work across security, infrastructure, and application teams. Preferred CyberArk certifications (eg, Defender, Sentry, or Guardian). Experience with hybrid or multi-cloud environments (eg, AWS, Azure, GCP). Knowledge of broader identity and privileged access management technologies.
18/08/2026
Contractor
Seeking an experienced CyberArk Consultant with a proven track record of designing, implementing, and deploying CyberArk Privileged Access Management (PAM) solutions in enterprise environments. Key Requirements Strong solution architecture experience with enterprise security platforms. Hands-on experience implementing and deploying CyberArk PAM from design through production. Demonstrated experience delivering CyberArk implementations for at least one previous organization, with end-to-end ownership of the deployment. Strong knowledge of CyberArk components, including the Digital Vault, PVWA, CPM, PSM, and Privileged Threat Analytics (PTA) (where applicable). Experience integrating CyberArk with enterprise infrastructure such as Active Directory, LDAP, SIEM, IAM, and cloud platforms. Ability to define architecture, lead technical design workshops, and provide implementation best practices. Strong troubleshooting, migration, and upgrade experience for CyberArk environments. Excellent stakeholder management and communication skills, with the ability to work across security, infrastructure, and application teams. Preferred CyberArk certifications (eg, Defender, Sentry, or Guardian). Experience with hybrid or multi-cloud environments (eg, AWS, Azure, GCP). Knowledge of broader identity and privileged access management technologies.
Radius is seeking a talented Cyber Security Consultant for our client based in East London. You must have strong experience within recognised frameworks and regulations including ISO 27001, SOC2, NIST Cyber Security Framework, NIST 800-61, GDPR, NIS2, Cyber Essentials. Minimum five years' experience in Cyber Security. Must have knowledge of the following: EDR, SIEM, NDR, applications, security architecture, IAM, PAM encryption technologies, network security, Zero Trust, secure interconnection patterns and cyber security principles. Experience within Security Operations, Incident Response, Security Assurance, or GRC functions. Experience managing or overseeing MSSP, SOC activities, third party management. Strong understanding of: ISO 27001, SOC2, NIST Cyber Security Framework, Incident Response methodologies, Cyber Security Governance, GDPR and regulatory compliance Certifications (one or more) CISSP CISM CRISC The Cyber Security Assurance & Incident Response Lead is responsible for strengthening and maintaining Telehouse's cyber security posture through effective security assurance, incident response coordination, vulnerability management, security governance, and operational security support. Whilst primarily focused on security assurance, governance, and incident response leadership, the successful candidate will possess sufficient technical capability to support investigations, security monitoring activities, threat analysis, vulnerability management, and major cyber incidents when required.
17/08/2026
Full time
Radius is seeking a talented Cyber Security Consultant for our client based in East London. You must have strong experience within recognised frameworks and regulations including ISO 27001, SOC2, NIST Cyber Security Framework, NIST 800-61, GDPR, NIS2, Cyber Essentials. Minimum five years' experience in Cyber Security. Must have knowledge of the following: EDR, SIEM, NDR, applications, security architecture, IAM, PAM encryption technologies, network security, Zero Trust, secure interconnection patterns and cyber security principles. Experience within Security Operations, Incident Response, Security Assurance, or GRC functions. Experience managing or overseeing MSSP, SOC activities, third party management. Strong understanding of: ISO 27001, SOC2, NIST Cyber Security Framework, Incident Response methodologies, Cyber Security Governance, GDPR and regulatory compliance Certifications (one or more) CISSP CISM CRISC The Cyber Security Assurance & Incident Response Lead is responsible for strengthening and maintaining Telehouse's cyber security posture through effective security assurance, incident response coordination, vulnerability management, security governance, and operational security support. Whilst primarily focused on security assurance, governance, and incident response leadership, the successful candidate will possess sufficient technical capability to support investigations, security monitoring activities, threat analysis, vulnerability management, and major cyber incidents when required.
Job Title: Privileged Access Manager Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a Senior SME role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
07/08/2026
Contractor
Job Title: Privileged Access Manager Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a Senior SME role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Job Title: Privileged Access Management Architect Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a PAM Architect role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
07/08/2026
Contractor
Job Title: Privileged Access Management Architect Contract :6 months Location:Erskine , Scotland(5 days onsite) Location:Corsham, UK(Hybrid -2 days a week) The Opportunity We are seeking an experienced Privileged Access Management (PAM) Architect to lead the design, implementation, and optimization of enterprise PAM solutions, with a strong focus on CyberArk. You will play a critical role in securing critical systems and sensitive data within a highly secure, high-assurance environment. Mandatory Security Requirements Clearance: Must hold an active, fully transferrable DV (Developed Vetting) Clearance . Nationality: Strictly UK Nationals only Key Responsibilities Architecture & Design: Lead the end-to-end architecture, design, and deployment of CyberArk PAM solutions (PAS, CPM, PSM, PVWA, PTA). Documentation: Produce high-quality documentation, including High-Level Designs (HLDs), Low-Level Designs (LLDs), security architectures, and runbooks. Implementation: Define and implement privileged access policies, credential management, session monitoring, and vaulting strategies. Integration: Integrate PAM controls with existing enterprise environments, including Active Directory/LDAP, SIEM, and ITSM tools. Leadership & Advisory: Act as the technical SME, providing mentorship to internal teams and advising on industry standards (NIST, ISO 27001). Stakeholder Engagement: Engage directly with stakeholders, including visiting secure customer sites to build trusted relationships and ensure successful delivery. Required Skills & Experience Proven track record in a PAM Architect role within enterprise-scale environments. Deep, hands-on technical expertise with CyberArk capabilities and architecture. Strong understanding of Identity and Access Management (IAM) principles, privileged credential lifecycle management, and least privilege models. Prior experience delivering secure systems into high-assurance, regulated sectors (Defence and/or Aerospace is highly desirable). Familiarity with DevSecOps and secrets management is advantageous. Desirable Certifications CyberArk Certified Delivery Engineer (CDE) / Defender (CDP) / Sentry CISSP, CISM, or equivalent security certifications TOGAF or similar architecture frameworks If interested please reply with your CV to (url removed) or call me at (phone number removed). Randstad Technologies is acting as an Employment Business in relation to this vacancy.
Title: Senior Security Operations Analyst Location: Hybrid - Manchester or Leeds 3 days per week, 2 days remote Salary: From £54,000 Who we are: interactive investor is an award-winning investment platform that puts its customers in control of their financial future. We've been helping investors for nearly 30 years. We've seen market highs and lows and been resilient throughout. We're now the UK's number one flat-fee investment platform, with assets under administration approaching £75 billion and over 500,000 customers. For a simple, flat monthly fee we provide a secure home for your pensions, ISAs and investments. We offer a wide choice of over 20,000 UK and international investment options, including shares, funds, trusts and ETFs. We also bring impartial, expert content from our award-winning financial journalists, highly engaged community of investors, and daily newsletters and insights. Purpose of the Role We are recruiting for a Senior Security Operations Analyst to join the Information Security Team to support our continued growth. You will help maintain and protect our key business assets from threats and risks by monitoring, detecting, analysing, and responding to security incidents. Key Responsibilities Oversee the day to day running of our SIEM solution (Chronicle) working closely with Infrastructure, Networks, DevOps and our outsourced Security Operations Centre (SOC) team. Define and facilitate the creation of new rules or fine-tuning existing rules within SIEM. Investigate SIEM alerts and other security incidents through to completion. Work within the Information Security Team to provide a dynamic monitoring and incident response capability. Monitor and analyse security events identifying trends, attacks, and potential threats. Identify and raise problems. Communicate & raise these via the appropriate channels and track through to remediation. Monitoring and gathering Threat intelligence and coordinating subsequent Threat Hunting. Assess security threats from multiple sources and plan mitigation/remediation. Gather relevant data, analyse and respond to cyber security incidents. Research and stay current on the latest trends, best practices, and technology developments for all things cyber. Assist in the design, management, and documentation of security policies, solutions, standards, and processes. Designing effective test methods for logical security controls. Day to day management of Endpoint Detection and Response (EDR). REQUIREMENTS A good understanding of technical and network security requirements. Ability to proactively identify control weakness and vulnerabilities. Knowledge and use of SIEM tooling i.e., Splunk, Chronicle, Sentinel etc and event log data. Experience in understanding Firewalls and IDS/IPS and Windows Security Event Logs. Strong verbal and written communication skills with the ability to articulate complex ideas in easy to comprehend business terms. Comfortable taking ownership for own work, identifying the need for action whilst working effectively within a team. Ability to quickly understand existing infrastructure, network security principles, data flow and security architectures. Knowledge of the fundamentals of cloud infrastructure as well as traditional technologies. Degree in IT / Cyber preferred or industry recognised qualification. BENEFITS Group Personal Pension Plan - 8% employer contribution and 4% employee contribution Life Assurance and Group Income Protection Private Medical Insurance - Provided by Bupa 25 Days Annual Leave, plus bank holidays Staff Discounts on our investment products Personal & Well-being Fund - Supporting your physical and mental wellness Retail Discounts - Savings at a wide range of high street and online retailers Voluntary Flexible Benefits - Tailor your benefits to suit your lifestyle
06/08/2026
Full time
Title: Senior Security Operations Analyst Location: Hybrid - Manchester or Leeds 3 days per week, 2 days remote Salary: From £54,000 Who we are: interactive investor is an award-winning investment platform that puts its customers in control of their financial future. We've been helping investors for nearly 30 years. We've seen market highs and lows and been resilient throughout. We're now the UK's number one flat-fee investment platform, with assets under administration approaching £75 billion and over 500,000 customers. For a simple, flat monthly fee we provide a secure home for your pensions, ISAs and investments. We offer a wide choice of over 20,000 UK and international investment options, including shares, funds, trusts and ETFs. We also bring impartial, expert content from our award-winning financial journalists, highly engaged community of investors, and daily newsletters and insights. Purpose of the Role We are recruiting for a Senior Security Operations Analyst to join the Information Security Team to support our continued growth. You will help maintain and protect our key business assets from threats and risks by monitoring, detecting, analysing, and responding to security incidents. Key Responsibilities Oversee the day to day running of our SIEM solution (Chronicle) working closely with Infrastructure, Networks, DevOps and our outsourced Security Operations Centre (SOC) team. Define and facilitate the creation of new rules or fine-tuning existing rules within SIEM. Investigate SIEM alerts and other security incidents through to completion. Work within the Information Security Team to provide a dynamic monitoring and incident response capability. Monitor and analyse security events identifying trends, attacks, and potential threats. Identify and raise problems. Communicate & raise these via the appropriate channels and track through to remediation. Monitoring and gathering Threat intelligence and coordinating subsequent Threat Hunting. Assess security threats from multiple sources and plan mitigation/remediation. Gather relevant data, analyse and respond to cyber security incidents. Research and stay current on the latest trends, best practices, and technology developments for all things cyber. Assist in the design, management, and documentation of security policies, solutions, standards, and processes. Designing effective test methods for logical security controls. Day to day management of Endpoint Detection and Response (EDR). REQUIREMENTS A good understanding of technical and network security requirements. Ability to proactively identify control weakness and vulnerabilities. Knowledge and use of SIEM tooling i.e., Splunk, Chronicle, Sentinel etc and event log data. Experience in understanding Firewalls and IDS/IPS and Windows Security Event Logs. Strong verbal and written communication skills with the ability to articulate complex ideas in easy to comprehend business terms. Comfortable taking ownership for own work, identifying the need for action whilst working effectively within a team. Ability to quickly understand existing infrastructure, network security principles, data flow and security architectures. Knowledge of the fundamentals of cloud infrastructure as well as traditional technologies. Degree in IT / Cyber preferred or industry recognised qualification. BENEFITS Group Personal Pension Plan - 8% employer contribution and 4% employee contribution Life Assurance and Group Income Protection Private Medical Insurance - Provided by Bupa 25 Days Annual Leave, plus bank holidays Staff Discounts on our investment products Personal & Well-being Fund - Supporting your physical and mental wellness Retail Discounts - Savings at a wide range of high street and online retailers Voluntary Flexible Benefits - Tailor your benefits to suit your lifestyle
Job Description: Salary Range: £44,171 - £61,950 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Are you ready to take the next step in your engineering career and lead the delivery of critical platforms that protect national security? At Leonardo, our Senior Platform Engineers combine technical expertise with leadership, driving the design, integration, and support of complex systems that underpin our customers' missions. Your work at Leonardo UK will see you take the lead in solving customer problems in an agile, innovative and team-centric manner. The role may involve a blended hybrid working model, with a mixture of working from home and working on site at one of our Leonardo offices to ensure close collaboration with the wider team and with our customers. Leonardo UK is seeking a Senior Platform Engineer to join the Cyber & Security Solutions Division team. This role is focused on delivering, maintaining, and improving platform and systems engineering solutions that underpin critical defence, government and public sector services. What you will do as a Senior Platform Engineer Lead the design, build, and support of secure platforms on-premise and hybrid environments. Take ownership of engineering delivery for one or more work packages, including planning, estimation, execution, and reporting. Develop and review system architectures, low-level designs, and technical documentation. Integrate and test platform components, ensuring compliance with security and performance requirements. Provide mentoring, guidance, and technical leadership to Platform Engineers and Technicians. Collaborate with stakeholders, project teams, and customers to ensure solutions meet requirements. Drive continuous improvement initiatives and contribute to internal engineering standards. What you'll bring Strong technical ability with experience of delivering and supporting complex platforms. Ability to balance hands on engineering with technical leadership and mentoring responsibilities. Confidence to take ownership of solutions and represent engineering in technical discussions. Core areas (must have) Windows and Linux operating systems Virtualisation platforms (VMware, Hyper V) VMware Cloud Foundation (VCF) stack (vSphere, vSAN, NSX T, Aria Suite) Design, build and operation of software defined datacentre platforms Network virtualisation and micro segmentation concepts (NSX, platform integrated) Networking concepts (TCP/IP, DNS, DHCP, firewalls) Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform) Knowledge of cyber security controls and accreditation requirements Experience across the systems engineering lifecycle Integration of compute, storage, and network layers into a unified platform Delivery within secure / enterprise / defence environments Desirable VCP Certification Expertise with cloud platforms (AWS) and Infrastructure as Code Experience integrating enterprise services (Active Directory, PKI, monitoring, SIEM) Hands on use of DevSecOps tools and CI/CD pipelines VxRail and hyper converged infrastructure Automation of VCF lifecycle (patching, upgrades, deployment) Integration with enterprise identity and security services (AD, PKI, PAM) Containerisation platforms (Kubernetes, Docker) This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn. Security Clearance This role is subject to pre employment screening in line with the UK Government's Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) will apply. This role requires Developed Vetting (DV) clearance prior to starting. For more information and guidance please visit: Location This role will be based at one of our UK sites - Yeovil. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company funded benefits package that supports your wellbeing, career development, and work life balance. Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi days each year. Secure your Future: Award winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee led networks. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships. Flexible Working: Flexible hours with hybrid working options. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team-they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Primary Location: GB - Yeovil - Lysander Rd Contract Type: Permanent Hybrid Working: Onsite
06/08/2026
Full time
Job Description: Salary Range: £44,171 - £61,950 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Are you ready to take the next step in your engineering career and lead the delivery of critical platforms that protect national security? At Leonardo, our Senior Platform Engineers combine technical expertise with leadership, driving the design, integration, and support of complex systems that underpin our customers' missions. Your work at Leonardo UK will see you take the lead in solving customer problems in an agile, innovative and team-centric manner. The role may involve a blended hybrid working model, with a mixture of working from home and working on site at one of our Leonardo offices to ensure close collaboration with the wider team and with our customers. Leonardo UK is seeking a Senior Platform Engineer to join the Cyber & Security Solutions Division team. This role is focused on delivering, maintaining, and improving platform and systems engineering solutions that underpin critical defence, government and public sector services. What you will do as a Senior Platform Engineer Lead the design, build, and support of secure platforms on-premise and hybrid environments. Take ownership of engineering delivery for one or more work packages, including planning, estimation, execution, and reporting. Develop and review system architectures, low-level designs, and technical documentation. Integrate and test platform components, ensuring compliance with security and performance requirements. Provide mentoring, guidance, and technical leadership to Platform Engineers and Technicians. Collaborate with stakeholders, project teams, and customers to ensure solutions meet requirements. Drive continuous improvement initiatives and contribute to internal engineering standards. What you'll bring Strong technical ability with experience of delivering and supporting complex platforms. Ability to balance hands on engineering with technical leadership and mentoring responsibilities. Confidence to take ownership of solutions and represent engineering in technical discussions. Core areas (must have) Windows and Linux operating systems Virtualisation platforms (VMware, Hyper V) VMware Cloud Foundation (VCF) stack (vSphere, vSAN, NSX T, Aria Suite) Design, build and operation of software defined datacentre platforms Network virtualisation and micro segmentation concepts (NSX, platform integrated) Networking concepts (TCP/IP, DNS, DHCP, firewalls) Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform) Knowledge of cyber security controls and accreditation requirements Experience across the systems engineering lifecycle Integration of compute, storage, and network layers into a unified platform Delivery within secure / enterprise / defence environments Desirable VCP Certification Expertise with cloud platforms (AWS) and Infrastructure as Code Experience integrating enterprise services (Active Directory, PKI, monitoring, SIEM) Hands on use of DevSecOps tools and CI/CD pipelines VxRail and hyper converged infrastructure Automation of VCF lifecycle (patching, upgrades, deployment) Integration with enterprise identity and security services (AD, PKI, PAM) Containerisation platforms (Kubernetes, Docker) This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn. Security Clearance This role is subject to pre employment screening in line with the UK Government's Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) will apply. This role requires Developed Vetting (DV) clearance prior to starting. For more information and guidance please visit: Location This role will be based at one of our UK sites - Yeovil. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company funded benefits package that supports your wellbeing, career development, and work life balance. Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi days each year. Secure your Future: Award winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee led networks. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships. Flexible Working: Flexible hours with hybrid working options. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team-they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Primary Location: GB - Yeovil - Lysander Rd Contract Type: Permanent Hybrid Working: Onsite
Information and Cyber Security Operations Engineer We are searching for an experienced Information and Cyber Security Operations Engineer. Make an Impact at RSM UK The Cyber Security Operations Engineer will be responsible for working in conjunction with our MSSP to monitor, detect and respond to security incidents to protect our systems, networks and information assets. This role involves working closely with our MSSP and various departments to ensure the security of our digital infrastructure and compliance with security policies. Responsibilities Define and govern security configurations across Microsoft security tools and key third party platforms (e.g., Mimecast, Palo Alto, Cortex), including policies, settings, and exemptions. Oversee MSSP performance, ensuring effective monitoring, detection, and incident response, and acting as a key escalation and response partner during incidents. Prioritise and manage security use cases, rules, and alerts for MSSP implementation, focusing on improving detection coverage and effectiveness. Develop and maintain SecOps continuous improvement (RSM UK and MSSP), including automation, optimisation of processes, and enhancement of detection capabilities. Define, document, and maintain operational knowledge, including incident response processes, run books, and a central knowledge base for MDR/XDR alerts. Qualifications Strong understanding of networking and security fundamentals, including protocols, architectures, and security methodologies. Proven experience in security operations, with solid application of core security principles and best practices. Hands on expertise with security tools such as SIEM, firewalls, IDS/IPS, malware protection, and vulnerability scanning. Experience with Microsoft security stack, including its core security and threat protection capabilities. Excellent analytical, problem solving, and communication skills, with the ability to collaborate effectively across teams and respond to incidents. Benefits Hybrid and Flexible working 26 Days Holiday (with the option of purchasing additional days) Lifestyle, Health, and Wellbeing including financial wellbeing benefits such as financial tools, electric car scheme and access to a virtual GP Access to a suite of 300+ courses on demand developed by our in house Talent Development team Location: London Job Type: Permanent Experienced Hire
06/08/2026
Full time
Information and Cyber Security Operations Engineer We are searching for an experienced Information and Cyber Security Operations Engineer. Make an Impact at RSM UK The Cyber Security Operations Engineer will be responsible for working in conjunction with our MSSP to monitor, detect and respond to security incidents to protect our systems, networks and information assets. This role involves working closely with our MSSP and various departments to ensure the security of our digital infrastructure and compliance with security policies. Responsibilities Define and govern security configurations across Microsoft security tools and key third party platforms (e.g., Mimecast, Palo Alto, Cortex), including policies, settings, and exemptions. Oversee MSSP performance, ensuring effective monitoring, detection, and incident response, and acting as a key escalation and response partner during incidents. Prioritise and manage security use cases, rules, and alerts for MSSP implementation, focusing on improving detection coverage and effectiveness. Develop and maintain SecOps continuous improvement (RSM UK and MSSP), including automation, optimisation of processes, and enhancement of detection capabilities. Define, document, and maintain operational knowledge, including incident response processes, run books, and a central knowledge base for MDR/XDR alerts. Qualifications Strong understanding of networking and security fundamentals, including protocols, architectures, and security methodologies. Proven experience in security operations, with solid application of core security principles and best practices. Hands on expertise with security tools such as SIEM, firewalls, IDS/IPS, malware protection, and vulnerability scanning. Experience with Microsoft security stack, including its core security and threat protection capabilities. Excellent analytical, problem solving, and communication skills, with the ability to collaborate effectively across teams and respond to incidents. Benefits Hybrid and Flexible working 26 Days Holiday (with the option of purchasing additional days) Lifestyle, Health, and Wellbeing including financial wellbeing benefits such as financial tools, electric car scheme and access to a virtual GP Access to a suite of 300+ courses on demand developed by our in house Talent Development team Location: London Job Type: Permanent Experienced Hire
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk - ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits.
06/08/2026
Full time
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk - ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits.
BMS Technical Solutions Engineer Location: London (Hybrid - 3 days office / 2 days home) Salary: Competitive DOE + Travel Expenses + Excellent Benefits We're recruiting for an experienced BMS Technical Solutions Engineer to join a growing smart buildings business delivering complex Building Management System (BMS) projects across prestigious commercial and critical infrastructure sites. This is an ideal opportunity for a senior BMS engineer who enjoys designing complete technical solutions, solving complex integration challenges and working closely with clients, rather than focusing solely on commissioning or service. The Role You'll act as the technical lead across the full project lifecycle, taking ownership of BMS solution design, systems integration and technical delivery from concept through to commissioning and handover. Working alongside project, networking and commercial teams, you'll develop robust, future-proof smart building solutions while providing technical leadership across the business. Key Responsibilities Design complete BMS solutions, control strategies, points schedules and system architectures. Survey existing installations and develop upgrade and migration strategies. Deliver integrations using BACnet, Modbus, MQTT, REST APIs and other open protocols. Integrate BMS with HVAC, lighting, access control, fire alarms, PLC/SCADA, energy monitoring and other smart building technologies. Design OT network architectures including BACnet routing, VLANs and secure connectivity. Support IoT, cloud-connected and Smart Building solutions. Lead technical delivery including FAT/SAT, commissioning, testing, live migrations and client handover. Provide high-level technical support and act as the escalation point for complex issues. Build strong client relationships and lead technical workshops. About You You'll have extensive experience delivering Building Management Systems and be confident owning technical solutions from design through to delivery. You'll ideally have: 10+ years' experience within BMS or Smart Buildings. Strong knowledge of platforms such as Tridium Niagara, Trend, Schneider EcoStruxure, Siemens, Honeywell or Distech. Excellent understanding of BACnet, Modbus and system integration. Experience with HVAC controls, plant optimisation and IP networking. A track record of delivering projects from design through commissioning. Excellent communication and client-facing skills. Desirable Experience within data centres, airports, government, defence or other critical infrastructure. Knowledge of OT cybersecurity, Cisco networking, Azure or energy management platforms. Relevant manufacturer certifications (Tridium, Trend etc.), HNC/HND/Degree, ECS/CSCS or CCNA. What's on Offer Hybrid working (3 days office / 2 days home). Travel expenses covered. Excellent benefits package. Competitive salary tailored to experience. Opportunity to become the technical authority within a growing smart buildings business, working on some of the UK's most technically challenging BMS projects.
06/08/2026
Full time
BMS Technical Solutions Engineer Location: London (Hybrid - 3 days office / 2 days home) Salary: Competitive DOE + Travel Expenses + Excellent Benefits We're recruiting for an experienced BMS Technical Solutions Engineer to join a growing smart buildings business delivering complex Building Management System (BMS) projects across prestigious commercial and critical infrastructure sites. This is an ideal opportunity for a senior BMS engineer who enjoys designing complete technical solutions, solving complex integration challenges and working closely with clients, rather than focusing solely on commissioning or service. The Role You'll act as the technical lead across the full project lifecycle, taking ownership of BMS solution design, systems integration and technical delivery from concept through to commissioning and handover. Working alongside project, networking and commercial teams, you'll develop robust, future-proof smart building solutions while providing technical leadership across the business. Key Responsibilities Design complete BMS solutions, control strategies, points schedules and system architectures. Survey existing installations and develop upgrade and migration strategies. Deliver integrations using BACnet, Modbus, MQTT, REST APIs and other open protocols. Integrate BMS with HVAC, lighting, access control, fire alarms, PLC/SCADA, energy monitoring and other smart building technologies. Design OT network architectures including BACnet routing, VLANs and secure connectivity. Support IoT, cloud-connected and Smart Building solutions. Lead technical delivery including FAT/SAT, commissioning, testing, live migrations and client handover. Provide high-level technical support and act as the escalation point for complex issues. Build strong client relationships and lead technical workshops. About You You'll have extensive experience delivering Building Management Systems and be confident owning technical solutions from design through to delivery. You'll ideally have: 10+ years' experience within BMS or Smart Buildings. Strong knowledge of platforms such as Tridium Niagara, Trend, Schneider EcoStruxure, Siemens, Honeywell or Distech. Excellent understanding of BACnet, Modbus and system integration. Experience with HVAC controls, plant optimisation and IP networking. A track record of delivering projects from design through commissioning. Excellent communication and client-facing skills. Desirable Experience within data centres, airports, government, defence or other critical infrastructure. Knowledge of OT cybersecurity, Cisco networking, Azure or energy management platforms. Relevant manufacturer certifications (Tridium, Trend etc.), HNC/HND/Degree, ECS/CSCS or CCNA. What's on Offer Hybrid working (3 days office / 2 days home). Travel expenses covered. Excellent benefits package. Competitive salary tailored to experience. Opportunity to become the technical authority within a growing smart buildings business, working on some of the UK's most technically challenging BMS projects.