it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

41 jobs found

Email me jobs like this
Refine Search
Current Search
zscaler security engineer
Oscar Associates Ltd
DLP Engineer
Oscar Associates Ltd
DLP Policy Engineer | 6 month contract initially | £500 p/d | Inside IR35 | Remote We are seeking an experienced DLP Policy Engineer to support a major enterprise data security transformation. This role will focus on migrating Symantec DLP policies and controls to the Zscaler Data Loss Prevention (DLP) platform, ensuring business-critical security requirements are maintained throughout the transition. Key Responsibilities Analyse and understand the client's existing Symantec (Broadcom) DLP environment, policies, and data protection controls. Review current DLP policies across multiple data channels and identify migration requirements. Design, build, and implement equivalent DLP policies within the Zscaler DLP platform. Work closely with Zscaler specialists, internal engineering teams, and key stakeholders throughout the migration. Produce clear technical documentation covering policy design, configuration, testing outcomes, and implementation processes. Collaborate with Project Managers and cross-functional teams to deliver project milestones on schedule. Provide knowledge transfer, training, and operational support to internal teams Required Skills & Experience Extensive hands-on experience with Symantec (Broadcom) DLP is essential. Experience designing, configuring, and maintaining enterprise DLP policies within Symantec/Broadcom DLP. Experience with Zscaler DLP, including policy creation, migration, or administration, is highly desirable. Proven experience delivering DLP policy migration or transformation projects. Strong troubleshooting and analytical skills within large enterprise environments. Solid understanding of DLP policy testing, validation, and quality assurance. If you're a DLP specialist with strong Symantec/Broadcom DLP expertise and experience working with or migrating to Zscaler DLP, we'd love to hear from you. DLP Policy Engineer | 6 month contract initially | £500 p/d | Inside IR35 | Remote Oscar Associates (UK) Limited is acting as an Employment Business in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
06/08/2026
Contractor
DLP Policy Engineer | 6 month contract initially | £500 p/d | Inside IR35 | Remote We are seeking an experienced DLP Policy Engineer to support a major enterprise data security transformation. This role will focus on migrating Symantec DLP policies and controls to the Zscaler Data Loss Prevention (DLP) platform, ensuring business-critical security requirements are maintained throughout the transition. Key Responsibilities Analyse and understand the client's existing Symantec (Broadcom) DLP environment, policies, and data protection controls. Review current DLP policies across multiple data channels and identify migration requirements. Design, build, and implement equivalent DLP policies within the Zscaler DLP platform. Work closely with Zscaler specialists, internal engineering teams, and key stakeholders throughout the migration. Produce clear technical documentation covering policy design, configuration, testing outcomes, and implementation processes. Collaborate with Project Managers and cross-functional teams to deliver project milestones on schedule. Provide knowledge transfer, training, and operational support to internal teams Required Skills & Experience Extensive hands-on experience with Symantec (Broadcom) DLP is essential. Experience designing, configuring, and maintaining enterprise DLP policies within Symantec/Broadcom DLP. Experience with Zscaler DLP, including policy creation, migration, or administration, is highly desirable. Proven experience delivering DLP policy migration or transformation projects. Strong troubleshooting and analytical skills within large enterprise environments. Solid understanding of DLP policy testing, validation, and quality assurance. If you're a DLP specialist with strong Symantec/Broadcom DLP expertise and experience working with or migrating to Zscaler DLP, we'd love to hear from you. DLP Policy Engineer | 6 month contract initially | £500 p/d | Inside IR35 | Remote Oscar Associates (UK) Limited is acting as an Employment Business in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
TechOps Generalist
Gofractional Manchester, Lancashire
TechOps Generalist - 12 Month FTC Location: London / Manchester Type: Fixed Term Contract / Hybrid What is TechOps? TechOps at Kraken is a modern, lean evolution of traditional enterprise IT. We span everything from hands-on frontline support through to high-impact technical projects and long-term strategic improvements. We are building a small, highly effective TechOps team and are looking for an ambitious, experienced TechOps Generalist to help us scale Kraken safely, securely, and with a strong focus on people. This is a broad role with a huge amount of variety. You'll work across identity, devices, SaaS, networking, automation, and office infrastructure - often at the same time. Ambiguity is a constant, and we're looking for someone who enjoys making sense of it and turning it into action. We operate almost entirely in the cloud, so you'll be exposed to a wide range of modern tools and technologies across the business. Where you'll fit in As a TechOps Generalist, you'll be a core contributor to the day-to-day delivery of TechOps services, working closely with the TechOps Lead and the wider global TechOps team. This is a role with real ownership. You'll be trusted to take responsibility for problems and projects end-to-end, contribute to technical decision-making, and help shape how TechOps operates as we grow. We strongly believe that great TechOps starts with empathy. You'll spend a significant portion of your time supporting Kraken employees directly, seeing first-hand the problems they face and helping ensure technology enables rather than blocks great work. We prioritise friendly, human support over SLAs or ticket numbers. Our aim is to deliver such a good experience that technology fades into the background, and when support is needed, it's easy, human, and effective. What you'll own Provide hands-on 1st, 2nd, and 3rd line support across the business Own and deliver TechOps work across identity, devices, SaaS, networking, and office infrastructure Work closely with the TechOps Lead to balance reactive support with proactive, planned improvements Contribute to technical projects that improve security, reliability, and scalability Design, improve, and automate systems and processes to reduce manual effort and operational risk Collaborate closely with Security, Engineering, and other teams to balance security, productivity, and user experience Support our offices across the globe Identify recurring problems and help build long-term solutions rather than short-term workarounds Example TechOps projects include: macOS and Windows MDM improvements and migrations Identity provider and SSO improvements Device trust and posture compliance solutions Replacing insecure authentication factors with phishing-resistant alternatives Office networking, AV, and access control improvements SaaS migrations and integrations What you bring to the party Must have Strong hands-on experience in an IT, TechOps, or systems-focused role Deep knowledge of Windows and macOS, with confident troubleshooting skills Hands-on experience providing 1st, 2nd, and 3rd line support Comfort operating in highly ambiguous environments and managing competing priorities A strong technical foundation across identity, MDM, SaaS, and networking Ability to communicate clearly with both technical and non-technical stakeholders A people-first mindset and a conscientious approach to decision-making Should have Experience supporting macOS, Windows, iOS, and Android environments Experience with Identity & Access Management platforms (e.g. Okta, Google Workspace, Microsoft Entra) Understanding of SSO technologies such as OAuth, SAML, and SCIM Enjoyment of scripting, APIs, and automating repetitive or error-prone tasksExperience working across time zones or with distributed teams Bonus points A foundational understanding of programming or software engineering Familiarity with security tooling such as CrowdStrike, Kolide, osquery, or Zscaler Experience with office networking (we use Cisco Meraki) Exposure to cloud platforms such as AWS
06/08/2026
Full time
TechOps Generalist - 12 Month FTC Location: London / Manchester Type: Fixed Term Contract / Hybrid What is TechOps? TechOps at Kraken is a modern, lean evolution of traditional enterprise IT. We span everything from hands-on frontline support through to high-impact technical projects and long-term strategic improvements. We are building a small, highly effective TechOps team and are looking for an ambitious, experienced TechOps Generalist to help us scale Kraken safely, securely, and with a strong focus on people. This is a broad role with a huge amount of variety. You'll work across identity, devices, SaaS, networking, automation, and office infrastructure - often at the same time. Ambiguity is a constant, and we're looking for someone who enjoys making sense of it and turning it into action. We operate almost entirely in the cloud, so you'll be exposed to a wide range of modern tools and technologies across the business. Where you'll fit in As a TechOps Generalist, you'll be a core contributor to the day-to-day delivery of TechOps services, working closely with the TechOps Lead and the wider global TechOps team. This is a role with real ownership. You'll be trusted to take responsibility for problems and projects end-to-end, contribute to technical decision-making, and help shape how TechOps operates as we grow. We strongly believe that great TechOps starts with empathy. You'll spend a significant portion of your time supporting Kraken employees directly, seeing first-hand the problems they face and helping ensure technology enables rather than blocks great work. We prioritise friendly, human support over SLAs or ticket numbers. Our aim is to deliver such a good experience that technology fades into the background, and when support is needed, it's easy, human, and effective. What you'll own Provide hands-on 1st, 2nd, and 3rd line support across the business Own and deliver TechOps work across identity, devices, SaaS, networking, and office infrastructure Work closely with the TechOps Lead to balance reactive support with proactive, planned improvements Contribute to technical projects that improve security, reliability, and scalability Design, improve, and automate systems and processes to reduce manual effort and operational risk Collaborate closely with Security, Engineering, and other teams to balance security, productivity, and user experience Support our offices across the globe Identify recurring problems and help build long-term solutions rather than short-term workarounds Example TechOps projects include: macOS and Windows MDM improvements and migrations Identity provider and SSO improvements Device trust and posture compliance solutions Replacing insecure authentication factors with phishing-resistant alternatives Office networking, AV, and access control improvements SaaS migrations and integrations What you bring to the party Must have Strong hands-on experience in an IT, TechOps, or systems-focused role Deep knowledge of Windows and macOS, with confident troubleshooting skills Hands-on experience providing 1st, 2nd, and 3rd line support Comfort operating in highly ambiguous environments and managing competing priorities A strong technical foundation across identity, MDM, SaaS, and networking Ability to communicate clearly with both technical and non-technical stakeholders A people-first mindset and a conscientious approach to decision-making Should have Experience supporting macOS, Windows, iOS, and Android environments Experience with Identity & Access Management platforms (e.g. Okta, Google Workspace, Microsoft Entra) Understanding of SSO technologies such as OAuth, SAML, and SCIM Enjoyment of scripting, APIs, and automating repetitive or error-prone tasksExperience working across time zones or with distributed teams Bonus points A foundational understanding of programming or software engineering Familiarity with security tooling such as CrowdStrike, Kolide, osquery, or Zscaler Experience with office networking (we use Cisco Meraki) Exposure to cloud platforms such as AWS
TechOps Generalist
Gofractional
TechOps Generalist - 12 Month FTC Location: London / Manchester Type: Fixed Term Contract / Hybrid What is TechOps? TechOps at Kraken is a modern, lean evolution of traditional enterprise IT. We span everything from hands-on frontline support through to high-impact technical projects and long-term strategic improvements. We are building a small, highly effective TechOps team and are looking for an ambitious, experienced TechOps Generalist to help us scale Kraken safely, securely, and with a strong focus on people. This is a broad role with a huge amount of variety. You'll work across identity, devices, SaaS, networking, automation, and office infrastructure - often at the same time. Ambiguity is a constant, and we're looking for someone who enjoys making sense of it and turning it into action. We operate almost entirely in the cloud, so you'll be exposed to a wide range of modern tools and technologies across the business. Where you'll fit in As a TechOps Generalist, you'll be a core contributor to the day-to-day delivery of TechOps services, working closely with the TechOps Lead and the wider global TechOps team. This is a role with real ownership. You'll be trusted to take responsibility for problems and projects end-to-end, contribute to technical decision-making, and help shape how TechOps operates as we grow. We strongly believe that great TechOps starts with empathy. You'll spend a significant portion of your time supporting Kraken employees directly, seeing first-hand the problems they face and helping ensure technology enables rather than blocks great work. We prioritise friendly, human support over SLAs or ticket numbers. Our aim is to deliver such a good experience that technology fades into the background, and when support is needed, it's easy, human, and effective. What you'll own Provide hands-on 1st, 2nd, and 3rd line support across the business Own and deliver TechOps work across identity, devices, SaaS, networking, and office infrastructure Work closely with the TechOps Lead to balance reactive support with proactive, planned improvements Contribute to technical projects that improve security, reliability, and scalability Design, improve, and automate systems and processes to reduce manual effort and operational risk Collaborate closely with Security, Engineering, and other teams to balance security, productivity, and user experience Support our offices across the globe Identify recurring problems and help build long-term solutions rather than short-term workarounds Example TechOps projects include: macOS and Windows MDM improvements and migrations Identity provider and SSO improvements Device trust and posture compliance solutions Replacing insecure authentication factors with phishing-resistant alternatives Office networking, AV, and access control improvements SaaS migrations and integrations What you bring to the party Must have Strong hands-on experience in an IT, TechOps, or systems-focused role Deep knowledge of Windows and macOS, with confident troubleshooting skills Hands-on experience providing 1st, 2nd, and 3rd line support Comfort operating in highly ambiguous environments and managing competing priorities A strong technical foundation across identity, MDM, SaaS, and networking Ability to communicate clearly with both technical and non-technical stakeholders A people-first mindset and a conscientious approach to decision-making Should have Experience supporting macOS, Windows, iOS, and Android environments Experience with Identity & Access Management platforms (e.g. Okta, Google Workspace, Microsoft Entra) Understanding of SSO technologies such as OAuth, SAML, and SCIM Enjoyment of scripting, APIs, and automating repetitive or error-prone tasksExperience working across time zones or with distributed teams Bonus points A foundational understanding of programming or software engineering Familiarity with security tooling such as CrowdStrike, Kolide, osquery, or Zscaler Experience with office networking (we use Cisco Meraki) Exposure to cloud platforms such as AWS
06/08/2026
Full time
TechOps Generalist - 12 Month FTC Location: London / Manchester Type: Fixed Term Contract / Hybrid What is TechOps? TechOps at Kraken is a modern, lean evolution of traditional enterprise IT. We span everything from hands-on frontline support through to high-impact technical projects and long-term strategic improvements. We are building a small, highly effective TechOps team and are looking for an ambitious, experienced TechOps Generalist to help us scale Kraken safely, securely, and with a strong focus on people. This is a broad role with a huge amount of variety. You'll work across identity, devices, SaaS, networking, automation, and office infrastructure - often at the same time. Ambiguity is a constant, and we're looking for someone who enjoys making sense of it and turning it into action. We operate almost entirely in the cloud, so you'll be exposed to a wide range of modern tools and technologies across the business. Where you'll fit in As a TechOps Generalist, you'll be a core contributor to the day-to-day delivery of TechOps services, working closely with the TechOps Lead and the wider global TechOps team. This is a role with real ownership. You'll be trusted to take responsibility for problems and projects end-to-end, contribute to technical decision-making, and help shape how TechOps operates as we grow. We strongly believe that great TechOps starts with empathy. You'll spend a significant portion of your time supporting Kraken employees directly, seeing first-hand the problems they face and helping ensure technology enables rather than blocks great work. We prioritise friendly, human support over SLAs or ticket numbers. Our aim is to deliver such a good experience that technology fades into the background, and when support is needed, it's easy, human, and effective. What you'll own Provide hands-on 1st, 2nd, and 3rd line support across the business Own and deliver TechOps work across identity, devices, SaaS, networking, and office infrastructure Work closely with the TechOps Lead to balance reactive support with proactive, planned improvements Contribute to technical projects that improve security, reliability, and scalability Design, improve, and automate systems and processes to reduce manual effort and operational risk Collaborate closely with Security, Engineering, and other teams to balance security, productivity, and user experience Support our offices across the globe Identify recurring problems and help build long-term solutions rather than short-term workarounds Example TechOps projects include: macOS and Windows MDM improvements and migrations Identity provider and SSO improvements Device trust and posture compliance solutions Replacing insecure authentication factors with phishing-resistant alternatives Office networking, AV, and access control improvements SaaS migrations and integrations What you bring to the party Must have Strong hands-on experience in an IT, TechOps, or systems-focused role Deep knowledge of Windows and macOS, with confident troubleshooting skills Hands-on experience providing 1st, 2nd, and 3rd line support Comfort operating in highly ambiguous environments and managing competing priorities A strong technical foundation across identity, MDM, SaaS, and networking Ability to communicate clearly with both technical and non-technical stakeholders A people-first mindset and a conscientious approach to decision-making Should have Experience supporting macOS, Windows, iOS, and Android environments Experience with Identity & Access Management platforms (e.g. Okta, Google Workspace, Microsoft Entra) Understanding of SSO technologies such as OAuth, SAML, and SCIM Enjoyment of scripting, APIs, and automating repetitive or error-prone tasksExperience working across time zones or with distributed teams Bonus points A foundational understanding of programming or software engineering Familiarity with security tooling such as CrowdStrike, Kolide, osquery, or Zscaler Experience with office networking (we use Cisco Meraki) Exposure to cloud platforms such as AWS
La Fosse Associates
Senior Azure Virtual Desktop (AVD) Engineer
La Fosse Associates Preston, Lancashire
Senior Azure Virtual Desktop (AVD) Engineer / Azure Infrastructure Consultant Preston / North West - Hybrid (up to 3 days per week in office) £400-£4500 per day Inside IR35 Initial 6-month contract ASAP start We're looking for a Senior Azure Virtual Desktop (AVD) Engineer to join a large-scale technology integration programme following a major acquisition. This is a senior, hands-on role where you'll act as the AVD SME, working across Azure infrastructure, identity, security and modern end-user computing to deliver integration and migration outcomes. Key responsibilities: Design, build, configure and support Azure Virtual Desktop (AVD) environments. Manage Host Pools, Application Groups, Workspaces, Session Hosts and Scaling Plans. Design and implement Azure infrastructure aligned to approved architecture. Create and optimise golden images and automate image build/deployment processes. Work with FSLogix Profiles and App Masking. Support application packaging, virtualisation and deployment. Configure and administer Microsoft Entra ID, PIM and Identity Governance. Implement Zero Trust security principles and RBAC. Develop PowerShell automation and support IaC initiatives. Troubleshoot complex technical issues and perform root cause analysis. Essential experience: Strong hands-on Azure Virtual Desktop experience. Deep knowledge of Microsoft Azure infrastructure. FSLogix Profiles & App Masking. Microsoft Entra ID, PIM and Identity Governance. Strong PowerShell skills. Azure Networking and Azure Security. Windows Server and Windows 11 Enterprise. Strong troubleshooting and technical problem-solving skills. Desirable: Zscaler / Zscaler Private Access (ZPA) and ZTNA. MSIX, App-V or similar application packaging technologies. Azure Image Builder. Azure DevOps and CI/CD. Terraform, Bicep or ARM Templates. Microsoft Intune / Endpoint Manager. Experience delivering M&A integration programmes. Utilities, energy or critical national infrastructure experience.
06/08/2026
Full time
Senior Azure Virtual Desktop (AVD) Engineer / Azure Infrastructure Consultant Preston / North West - Hybrid (up to 3 days per week in office) £400-£4500 per day Inside IR35 Initial 6-month contract ASAP start We're looking for a Senior Azure Virtual Desktop (AVD) Engineer to join a large-scale technology integration programme following a major acquisition. This is a senior, hands-on role where you'll act as the AVD SME, working across Azure infrastructure, identity, security and modern end-user computing to deliver integration and migration outcomes. Key responsibilities: Design, build, configure and support Azure Virtual Desktop (AVD) environments. Manage Host Pools, Application Groups, Workspaces, Session Hosts and Scaling Plans. Design and implement Azure infrastructure aligned to approved architecture. Create and optimise golden images and automate image build/deployment processes. Work with FSLogix Profiles and App Masking. Support application packaging, virtualisation and deployment. Configure and administer Microsoft Entra ID, PIM and Identity Governance. Implement Zero Trust security principles and RBAC. Develop PowerShell automation and support IaC initiatives. Troubleshoot complex technical issues and perform root cause analysis. Essential experience: Strong hands-on Azure Virtual Desktop experience. Deep knowledge of Microsoft Azure infrastructure. FSLogix Profiles & App Masking. Microsoft Entra ID, PIM and Identity Governance. Strong PowerShell skills. Azure Networking and Azure Security. Windows Server and Windows 11 Enterprise. Strong troubleshooting and technical problem-solving skills. Desirable: Zscaler / Zscaler Private Access (ZPA) and ZTNA. MSIX, App-V or similar application packaging technologies. Azure Image Builder. Azure DevOps and CI/CD. Terraform, Bicep or ARM Templates. Microsoft Intune / Endpoint Manager. Experience delivering M&A integration programmes. Utilities, energy or critical national infrastructure experience.
Network Engineer (Visa Sponsorship Available)
Techwaka
Job Description £36k - £48k per annum Purpose of the roleTo build and maintain infrastructure platforms and products that support applications and data systems, using hardware, software, networks, and cloud computing platforms as required with the aim of ensuring that the infrastructure is reliable, scalable, and secure. Ensure the reliability, availability, and scalability of the systems, platforms, and technology through the application of software engineering techniques, automation, and best practices in incident response. Accountabilities Build Engineering: Development, delivery, and maintenance of high-quality infrastructure solutions to fulfil business requirements ensuring measurable reliability, performance, availability, and ease of use. Including the identification of the appropriate technologies and solutions to meet business, optimisation, and resourcing requirements. Incident Management: Monitoring of IT infrastructure and system performance to measure, identify, address, and resolve any potential issues, vulnerabilities, or outages. Use of data to drive down mean time to resolution. Automation: Development and implementation of automated tasks and processes to improve efficiency and reduce manual intervention, utilising software scripting/coding disciplines. Security: Implementation of a secure configuration and measures to protect infrastructure against cyber-attacks, vulnerabilities, and other security threats, including protection of hardware, software, and data from unauthorised access. Teamwork: Cross-functional collaboration with product managers, architects, and other engineers to define IT Infrastructure requirements, devise solutions, and ensure seamless integration and alignment with business objectives via a data driven approach. Learning: Stay informed of industry technology trends and innovations, and actively contribute to the organization's technology communities to foster a culture of technical excellence and growth. Vice President Expectations Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave. Join us as a Lead Complex Delivery Networks Engineer at Barclays where you'll spearhead the evolution of our digital landscape, driving innovation and excellence. You'll harness cutting-edge technology to revolutionise our digital offerings, ensuring unapparelled customer experiences. You may be assessed on the key critical skills relevant for success in role, such as Cisco, FortiGate and F5 LTM/GTM experience, as well as job-specific technical skills.Additional relevant skills in Cisco, Juniper Routing and Switching, F5 Load Balancers, Cisco Campus Wireless, Bluecoat / Symantec Proxy / zScaler are highly valued.This role can be based out of both Glasgow and Knutsford. Barclays is required by law to confirm that you have the Legal Right to Work in any role that you apply for. If you currently hold a work visa sponsored by Barclays, or you would require sponsorship from Barclays, you must declare this as part of your application. Sponsored visas are role and entity specific and any changes must be reviewed. It is important that you ensure you are working on the correct visa at all times. Failure to accurately disclose your visa status or Legal Right to Work may result in your application or any employment offer being withdrawn at any time.
05/08/2026
Full time
Job Description £36k - £48k per annum Purpose of the roleTo build and maintain infrastructure platforms and products that support applications and data systems, using hardware, software, networks, and cloud computing platforms as required with the aim of ensuring that the infrastructure is reliable, scalable, and secure. Ensure the reliability, availability, and scalability of the systems, platforms, and technology through the application of software engineering techniques, automation, and best practices in incident response. Accountabilities Build Engineering: Development, delivery, and maintenance of high-quality infrastructure solutions to fulfil business requirements ensuring measurable reliability, performance, availability, and ease of use. Including the identification of the appropriate technologies and solutions to meet business, optimisation, and resourcing requirements. Incident Management: Monitoring of IT infrastructure and system performance to measure, identify, address, and resolve any potential issues, vulnerabilities, or outages. Use of data to drive down mean time to resolution. Automation: Development and implementation of automated tasks and processes to improve efficiency and reduce manual intervention, utilising software scripting/coding disciplines. Security: Implementation of a secure configuration and measures to protect infrastructure against cyber-attacks, vulnerabilities, and other security threats, including protection of hardware, software, and data from unauthorised access. Teamwork: Cross-functional collaboration with product managers, architects, and other engineers to define IT Infrastructure requirements, devise solutions, and ensure seamless integration and alignment with business objectives via a data driven approach. Learning: Stay informed of industry technology trends and innovations, and actively contribute to the organization's technology communities to foster a culture of technical excellence and growth. Vice President Expectations Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment. Manage and mitigate risks through assessment, in support of the control and governance agenda. Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does. Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies. Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions. Adopt and include the outcomes of extensive research in problem solving processes. Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave. Join us as a Lead Complex Delivery Networks Engineer at Barclays where you'll spearhead the evolution of our digital landscape, driving innovation and excellence. You'll harness cutting-edge technology to revolutionise our digital offerings, ensuring unapparelled customer experiences. You may be assessed on the key critical skills relevant for success in role, such as Cisco, FortiGate and F5 LTM/GTM experience, as well as job-specific technical skills.Additional relevant skills in Cisco, Juniper Routing and Switching, F5 Load Balancers, Cisco Campus Wireless, Bluecoat / Symantec Proxy / zScaler are highly valued.This role can be based out of both Glasgow and Knutsford. Barclays is required by law to confirm that you have the Legal Right to Work in any role that you apply for. If you currently hold a work visa sponsored by Barclays, or you would require sponsorship from Barclays, you must declare this as part of your application. Sponsored visas are role and entity specific and any changes must be reviewed. It is important that you ensure you are working on the correct visa at all times. Failure to accurately disclose your visa status or Legal Right to Work may result in your application or any employment offer being withdrawn at any time.
Information Security Solutions
Cyber Platform Engineer
Information Security Solutions
Overview Title: Cyber Platform Engineer Reference No: 2160 Company: FTSE 100 Reports to: Security Platform Engineering Manager Location: London Working Pattern: 37.5 hours per week, Monday - Friday. Location: London/Peterborough, with potential travel to divisional sites as required by advisory engagements (hybrid working arrangements in place). Salary: £59,000 - £72,000 Benefits: Bupa, Matched pension contributions. The Role Group Cyber Security Overview The Group Cyber Security (GCS) team is responsible for managing cyber risk appropriately across the Group and has recently refreshed its cyber strategy, with a renewed focus on embedding cyber security as part of the culture and DNA. This is a highly federated business model spanning 11 divisions and over 50 countries, and the cyber strategy has been designed to build materially improved security capabilities whilst working with a divisional focus. It is an exciting time to join GCS. We are in a period of significant investment, with a multi-year transformation programme under way to build new security capabilities at pace. GCS is responsible for setting the Group cyber standard, measuring compliance against it across all the businesses, and delivering a portfolio of centrally managed security services that divisions can rely on. The Security Platform Engineering function is central to that portfolio - responsible for ensuring that the security tools the Group invests in are deeply understood, expertly configured, continuously improved, and consistently delivering their intended security and business value. Role Summary Reporting to the Security Platform Engineering Manager, the Cyber Platform Engineer is a hands-on technical specialist responsible for the day-to-day engineering, configuration, and operational health of one or more security platforms within the GCS portfolio. The role sits at the technical heart of the platform engineering function - doing the detailed, expert work that keeps the security tools performing at their best, configured to the right standards, and evolving in line with the Group's needs and the vendor's roadmap. The platforms in scope include Microsoft Defender (across the M365 Defender suite), Zscaler, Qualys, Abnormal Security, and Axonius. The Cyber Platform Engineer will typically own deep expertise in one or two of these platforms and maintain solid working knowledge across the others. The role shares the mindset that defines the whole function: genuine curiosity about the tools under its care, a desire to understand and exploit their full capability, and an instinct to identify where existing platform features can be applied creatively to address new problems rather than defaulting to new tooling. The Cyber Platform Engineer works closely with the SOC and security operations teams to ensure platforms are tuned for effective detection and response, and provides technical support and configuration guidance to divisional IT and security teams who are deploying or operating centrally managed platforms in their environments. Role Responsibilities / Accountabilities Platform Engineering & Technical Configuration Own the technical configuration and day-to-day engineering of assigned platforms within the GCS portfolio; maintain configurations to the approved baseline, apply updates and changes through the change management process, and ensure platform health is actively monitored and maintained. Develop and maintain detailed configuration documentation, runbooks, and change records for assigned platforms; ensure that configuration state is consistently documented, version-controlled, and auditable by the Security Platform Engineering Manager or by assurance functions. Utilising the Run team - Identify and implement improvements to platform configurations that improve security outcomes, reduce operational noise, or unlock additional capability; bring well-evidenced proposals to the Security Platform Engineering Manager for review before implementation. Maintain deep, current technical knowledge of assigned platforms; stay ahead of vendor releases, patch notes, and roadmap updates, and flag relevant developments to the Security Platform Engineering Manager with a view on their implications. Policy Configuration & Standards Alignment Translate Group cyber technical standards into platform-level policy configurations; ensure that policy settings in assigned platforms enforce the correct security controls, are consistently applied across all in-scope environments, and align with the Group cyber enterprise architecture. Identify and report divergence between the approved configuration baseline and the as-built state of assigned platforms; investigate root causes, assess risk, and work with the Security Platform Engineering Manager to agree and implement remediation. Provide technical configuration guidance to divisional IT and security teams deploying or operating centrally managed platforms in their environments; act as the technical point of contact for platform-specific queries, ensuring divisional implementations meet Group standards. SOC Support & Operational Tuning Work closely with the SOC and security operations teams to tune platform configurations for effective detection and response; adjust detection rules, alert thresholds, and data feeds in response to operational feedback, ensuring SOC analysts receive high-fidelity, actionable alerts. Act as the technical escalation point for platform-related operational issues raised by the SOC; diagnose platform problems, engage vendor support where required, and drive issues to resolution with minimal impact on SOC operational effectiveness. Develop and maintain platform integration configurations that connect assigned platforms to the SIEM, SOAR, and other operational tooling; ensure data feeds are reliable, well-formed, and provide the SOC with the visibility needed to detect and respond to threats effectively. Platform Capability Development & Innovation Actively explore the full capability of assigned platforms; identify licensable features, beta capabilities, and underused functionality that could improve the security posture, and bring well-structured proposals to the Security Platform Engineering Manager for consideration. Design and implement automation and integration workflows that improve the efficiency and effectiveness of platform operations; develop scripts, API integrations, and orchestration logic that reduce manual effort and enable platform capabilities to be delivered at scale. Support the delivery of platform deployments, upgrades, and new capability rollouts as part of the GCS transformation programme; plan and execute engineering work with precision, minimising disruption to the business and to SOC operations throughout. Vendor Engagement & Licence Management Maintain productive working relationships with vendor technical teams for assigned platforms; engage effectively with vendor support for issue resolution, participate in technical briefings and product roadmap sessions, and escalate product deficiencies through appropriate channels. Maintain accurate records of licence entitlements, feature adoption, and consumption for assigned platforms; flag any discrepancies, unused entitlements, or upcoming renewal milestones to the Security Platform Engineering Manager in a timely manner. Experience, Knowledge, Skills & Attributes Essential Experience 4+ years in a cyber security engineering or security operations technology role, with hands-on technical experience configuring and managing enterprise security platforms. Demonstrable, deep technical expertise in at least one platform from the portfolio - Microsoft Defender / M365 Defender suite, Zscaler, Qualys, Abnormal Security, or Axonius - including hands-on configuration, policy management, and operational tuning at enterprise scale. Experience working closely with a SOC or security operations team, with an understanding of how platform configuration decisions affect detection quality, alert fidelity, and analyst workflow. Experience maintaining configuration documentation and operating within a structured change management process for security platforms. Experience engaging with vendor technical support teams, logging and escalating issues effectively, and driving platform problems to resolution. Knowledge & Skills Genuine technical curiosity: the instinct to explore platforms beyond surface-level familiarity, understand their full capability depth, and think creatively about how features can be applied to solve real security problems. Strong working knowledge of the Microsoft security stack, including Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Defender for Office 365, and M365 security policy configuration. Understanding of security platform integration patterns, including API connectivity, SIEM/SOAR data feeds, and log forwarding; practical experience implementing or maintaining at least one such integration. Ability to produce clear technical documentation - configuration records, runbooks, change requests - to a consistent and auditable standard. Qualifications Degree-level education in computer science, information security, or a related technical discipline; or equivalent professional experience. Vendor certification in at least one of the platforms in scope (e.g . click apply for full job details
04/08/2026
Full time
Overview Title: Cyber Platform Engineer Reference No: 2160 Company: FTSE 100 Reports to: Security Platform Engineering Manager Location: London Working Pattern: 37.5 hours per week, Monday - Friday. Location: London/Peterborough, with potential travel to divisional sites as required by advisory engagements (hybrid working arrangements in place). Salary: £59,000 - £72,000 Benefits: Bupa, Matched pension contributions. The Role Group Cyber Security Overview The Group Cyber Security (GCS) team is responsible for managing cyber risk appropriately across the Group and has recently refreshed its cyber strategy, with a renewed focus on embedding cyber security as part of the culture and DNA. This is a highly federated business model spanning 11 divisions and over 50 countries, and the cyber strategy has been designed to build materially improved security capabilities whilst working with a divisional focus. It is an exciting time to join GCS. We are in a period of significant investment, with a multi-year transformation programme under way to build new security capabilities at pace. GCS is responsible for setting the Group cyber standard, measuring compliance against it across all the businesses, and delivering a portfolio of centrally managed security services that divisions can rely on. The Security Platform Engineering function is central to that portfolio - responsible for ensuring that the security tools the Group invests in are deeply understood, expertly configured, continuously improved, and consistently delivering their intended security and business value. Role Summary Reporting to the Security Platform Engineering Manager, the Cyber Platform Engineer is a hands-on technical specialist responsible for the day-to-day engineering, configuration, and operational health of one or more security platforms within the GCS portfolio. The role sits at the technical heart of the platform engineering function - doing the detailed, expert work that keeps the security tools performing at their best, configured to the right standards, and evolving in line with the Group's needs and the vendor's roadmap. The platforms in scope include Microsoft Defender (across the M365 Defender suite), Zscaler, Qualys, Abnormal Security, and Axonius. The Cyber Platform Engineer will typically own deep expertise in one or two of these platforms and maintain solid working knowledge across the others. The role shares the mindset that defines the whole function: genuine curiosity about the tools under its care, a desire to understand and exploit their full capability, and an instinct to identify where existing platform features can be applied creatively to address new problems rather than defaulting to new tooling. The Cyber Platform Engineer works closely with the SOC and security operations teams to ensure platforms are tuned for effective detection and response, and provides technical support and configuration guidance to divisional IT and security teams who are deploying or operating centrally managed platforms in their environments. Role Responsibilities / Accountabilities Platform Engineering & Technical Configuration Own the technical configuration and day-to-day engineering of assigned platforms within the GCS portfolio; maintain configurations to the approved baseline, apply updates and changes through the change management process, and ensure platform health is actively monitored and maintained. Develop and maintain detailed configuration documentation, runbooks, and change records for assigned platforms; ensure that configuration state is consistently documented, version-controlled, and auditable by the Security Platform Engineering Manager or by assurance functions. Utilising the Run team - Identify and implement improvements to platform configurations that improve security outcomes, reduce operational noise, or unlock additional capability; bring well-evidenced proposals to the Security Platform Engineering Manager for review before implementation. Maintain deep, current technical knowledge of assigned platforms; stay ahead of vendor releases, patch notes, and roadmap updates, and flag relevant developments to the Security Platform Engineering Manager with a view on their implications. Policy Configuration & Standards Alignment Translate Group cyber technical standards into platform-level policy configurations; ensure that policy settings in assigned platforms enforce the correct security controls, are consistently applied across all in-scope environments, and align with the Group cyber enterprise architecture. Identify and report divergence between the approved configuration baseline and the as-built state of assigned platforms; investigate root causes, assess risk, and work with the Security Platform Engineering Manager to agree and implement remediation. Provide technical configuration guidance to divisional IT and security teams deploying or operating centrally managed platforms in their environments; act as the technical point of contact for platform-specific queries, ensuring divisional implementations meet Group standards. SOC Support & Operational Tuning Work closely with the SOC and security operations teams to tune platform configurations for effective detection and response; adjust detection rules, alert thresholds, and data feeds in response to operational feedback, ensuring SOC analysts receive high-fidelity, actionable alerts. Act as the technical escalation point for platform-related operational issues raised by the SOC; diagnose platform problems, engage vendor support where required, and drive issues to resolution with minimal impact on SOC operational effectiveness. Develop and maintain platform integration configurations that connect assigned platforms to the SIEM, SOAR, and other operational tooling; ensure data feeds are reliable, well-formed, and provide the SOC with the visibility needed to detect and respond to threats effectively. Platform Capability Development & Innovation Actively explore the full capability of assigned platforms; identify licensable features, beta capabilities, and underused functionality that could improve the security posture, and bring well-structured proposals to the Security Platform Engineering Manager for consideration. Design and implement automation and integration workflows that improve the efficiency and effectiveness of platform operations; develop scripts, API integrations, and orchestration logic that reduce manual effort and enable platform capabilities to be delivered at scale. Support the delivery of platform deployments, upgrades, and new capability rollouts as part of the GCS transformation programme; plan and execute engineering work with precision, minimising disruption to the business and to SOC operations throughout. Vendor Engagement & Licence Management Maintain productive working relationships with vendor technical teams for assigned platforms; engage effectively with vendor support for issue resolution, participate in technical briefings and product roadmap sessions, and escalate product deficiencies through appropriate channels. Maintain accurate records of licence entitlements, feature adoption, and consumption for assigned platforms; flag any discrepancies, unused entitlements, or upcoming renewal milestones to the Security Platform Engineering Manager in a timely manner. Experience, Knowledge, Skills & Attributes Essential Experience 4+ years in a cyber security engineering or security operations technology role, with hands-on technical experience configuring and managing enterprise security platforms. Demonstrable, deep technical expertise in at least one platform from the portfolio - Microsoft Defender / M365 Defender suite, Zscaler, Qualys, Abnormal Security, or Axonius - including hands-on configuration, policy management, and operational tuning at enterprise scale. Experience working closely with a SOC or security operations team, with an understanding of how platform configuration decisions affect detection quality, alert fidelity, and analyst workflow. Experience maintaining configuration documentation and operating within a structured change management process for security platforms. Experience engaging with vendor technical support teams, logging and escalating issues effectively, and driving platform problems to resolution. Knowledge & Skills Genuine technical curiosity: the instinct to explore platforms beyond surface-level familiarity, understand their full capability depth, and think creatively about how features can be applied to solve real security problems. Strong working knowledge of the Microsoft security stack, including Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Defender for Office 365, and M365 security policy configuration. Understanding of security platform integration patterns, including API connectivity, SIEM/SOAR data feeds, and log forwarding; practical experience implementing or maintaining at least one such integration. Ability to produce clear technical documentation - configuration records, runbooks, change requests - to a consistent and auditable standard. Qualifications Degree-level education in computer science, information security, or a related technical discipline; or equivalent professional experience. Vendor certification in at least one of the platforms in scope (e.g . click apply for full job details
Information Security Solutions
Cyber Platform Engineer Hybrid: Defender & Zscaler Expert
Information Security Solutions
Information Security Solutions is seeking a Cyber Platform Engineer to focus on the engineering and operational health of security platforms. The role involves close collaboration with the Security Platform Engineering Manager and SOC teams to ensure effective security deployment. Candidates should have 4+ years in cyber security, proven experience with Microsoft Defender or similar platforms, and possess strong technical curiosity. This position offers hybrid working arrangements and a competitive salary of £59,000 to £72,000, alongside benefits like Bupa and matched pension contributions.
04/08/2026
Full time
Information Security Solutions is seeking a Cyber Platform Engineer to focus on the engineering and operational health of security platforms. The role involves close collaboration with the Security Platform Engineering Manager and SOC teams to ensure effective security deployment. Candidates should have 4+ years in cyber security, proven experience with Microsoft Defender or similar platforms, and possess strong technical curiosity. This position offers hybrid working arrangements and a competitive salary of £59,000 to £72,000, alongside benefits like Bupa and matched pension contributions.
Security Engineer
ApplyMint
POS-7094 Job Overview: We are seeking a Security Engineer with expertise in implementing and troubleshooting security tools to enhance and support our security infrastructure. This role focuses on evaluating, deploying, and maintaining a suite of security technologies that protect our organization's assets. The ideal candidate will have extensive experience in security engineering, hands on tool deployment, and troubleshooting complex issues within various security solutions. Key Responsibilities Security Tool Implementation: Lead the planning, deployment, and configuration of security tools, ensuring they meet organizational needs and integrate seamlessly with existing systems. Experience with SASE tools such as (Netskope/Zscaler), EDR tools such as (Crowdstrike/SentinelOne), Endpoint Privilege Management, Application Allowlisting, Email Security, SIEM Management and Detection Engineering. Troubleshooting and Support: Diagnose and resolve issues with security tools in real time to maintain their effectiveness, reduce downtime, and ensure optimal performance. Tool Evaluation and Testing: Research, test, and recommend new security technologies based on the latest threat landscape and organizational needs. Lead proof of concept (POC) projects to assess potential new tools. System Integration: Work closely with IT and other teams to ensure security tools are effectively integrated with various systems, including cloud and on premises environments. Automation and Optimization: Develop scripts and automation processes to improve the efficiency and reliability of security tools, minimizing repetitive tasks and reducing time to response. Documentation and Knowledge Sharing: Create and maintain detailed documentation of security tool configurations, troubleshooting procedures, and best practices to ensure consistent processes and knowledge transfer. Collaboration: Collaborate with other security teams, such as incident response and vulnerability management, to identify tool requirements, share insights, and improve overall security capabilities. Training and Mentorship: Act as a subject matter expert on security tools, providing training and guidance to junior team members and stakeholders. Qualifications Experience: 3+ years of experience in cybersecurity, with a focus on security engineering, tool deployment, and troubleshooting. Education: Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience). Certifications: Relevant certifications, such as CISSP, GIAC, CEH, or vendor specific certifications for security tools (e.g., CrowdStrike, Netskope, Tenable, or similar). Technical Skills: Strong hands on experience with a variety of security tools, such as endpoint protection, SIEM, vulnerability management, EDR, DLP, and network security tools. Deep troubleshooting skills across both hardware and software security solutions. Familiarity with scripting languages (Python, PowerShell, Bash) for automation of tasks related to tool deployment and management. Understanding of network protocols, cloud environments, and security frameworks (MITRE ATT&CK, NIST, CIS). Experience with configuring and managing tools in cloud environments (AWS, Azure, or GCP). Soft Skills: Strong analytical and problem solving abilities with attention to detail. Excellent communication skills to collaborate across teams and convey technical information effectively. Ability to work independently and manage multiple projects in a fast paced environment. If you need accommodations or assistance due to a disability, please reach out to us using this form. Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Germany Applicants: (m/f/d) India Applicants:
04/08/2026
Full time
POS-7094 Job Overview: We are seeking a Security Engineer with expertise in implementing and troubleshooting security tools to enhance and support our security infrastructure. This role focuses on evaluating, deploying, and maintaining a suite of security technologies that protect our organization's assets. The ideal candidate will have extensive experience in security engineering, hands on tool deployment, and troubleshooting complex issues within various security solutions. Key Responsibilities Security Tool Implementation: Lead the planning, deployment, and configuration of security tools, ensuring they meet organizational needs and integrate seamlessly with existing systems. Experience with SASE tools such as (Netskope/Zscaler), EDR tools such as (Crowdstrike/SentinelOne), Endpoint Privilege Management, Application Allowlisting, Email Security, SIEM Management and Detection Engineering. Troubleshooting and Support: Diagnose and resolve issues with security tools in real time to maintain their effectiveness, reduce downtime, and ensure optimal performance. Tool Evaluation and Testing: Research, test, and recommend new security technologies based on the latest threat landscape and organizational needs. Lead proof of concept (POC) projects to assess potential new tools. System Integration: Work closely with IT and other teams to ensure security tools are effectively integrated with various systems, including cloud and on premises environments. Automation and Optimization: Develop scripts and automation processes to improve the efficiency and reliability of security tools, minimizing repetitive tasks and reducing time to response. Documentation and Knowledge Sharing: Create and maintain detailed documentation of security tool configurations, troubleshooting procedures, and best practices to ensure consistent processes and knowledge transfer. Collaboration: Collaborate with other security teams, such as incident response and vulnerability management, to identify tool requirements, share insights, and improve overall security capabilities. Training and Mentorship: Act as a subject matter expert on security tools, providing training and guidance to junior team members and stakeholders. Qualifications Experience: 3+ years of experience in cybersecurity, with a focus on security engineering, tool deployment, and troubleshooting. Education: Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience). Certifications: Relevant certifications, such as CISSP, GIAC, CEH, or vendor specific certifications for security tools (e.g., CrowdStrike, Netskope, Tenable, or similar). Technical Skills: Strong hands on experience with a variety of security tools, such as endpoint protection, SIEM, vulnerability management, EDR, DLP, and network security tools. Deep troubleshooting skills across both hardware and software security solutions. Familiarity with scripting languages (Python, PowerShell, Bash) for automation of tasks related to tool deployment and management. Understanding of network protocols, cloud environments, and security frameworks (MITRE ATT&CK, NIST, CIS). Experience with configuring and managing tools in cloud environments (AWS, Azure, or GCP). Soft Skills: Strong analytical and problem solving abilities with attention to detail. Excellent communication skills to collaborate across teams and convey technical information effectively. Ability to work independently and manage multiple projects in a fast paced environment. If you need accommodations or assistance due to a disability, please reach out to us using this form. Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Germany Applicants: (m/f/d) India Applicants:
Network Infrastructure Engineer
MyDentist Radcliffe, Lancashire
Your role as a Network Infrastructure Engineer at MyDentistThe role is full-time and initially an 18-month fixed-term contractAn additional role for the Infrastructure Team to support business growthThe role can be a flexible hybrid role with our Support Centre based in Kearsley, M26 1GGYou will benefit from free onsite parking, and Kearsley train station is just a short walk awayWith an on-site mini market shop and casual seating space inside and outside (for the sunnier days)Your future, with usWorking at mydentist means you'll be part of the UK's leading dental network. Here, you'll be trusted to do your best work, balancing your career around your life. We're ambitious, focusing on the big picture and transforming how we deliver dentistry. Supported by a talented and driven team, everyone is free to be themselves, where respect is a given, and we're always there for one another.Your future, your benefitsHolidays rising to 27 days per year with service (plus bank holidays)Annual Support Centre bonus schemeHealth and well-being benefits, including a virtual GP service and Employee Assistance Programme helpline, which includes free counselling sessionsAccess to fantastic discounts at cinemas, major retail brands, restaurants and coffee chains - simple and easy to access, making it possible to save hundreds of pounds a yearRecognition schemes, including Support Centre Heroes and service awardsYour future, your roleAs a Network Infrastructure Engineer, you'll be:Playing a key role in designing, implementing, maintaining, and optimising our IT infrastructure to ensure security, scalability, and reliability across our enterprise environmentDesigning, deploying, and maintaining enterprise network infrastructure with a focus on Cisco and Meraki technologies as well as network access controlAdministering and optimising Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)Managing, identifying and accessing services using Microsoft Entra (formerly Azure Active Directory), including conditional access, MFA, and SSO configurationsOverseeing and supporting Nutanix HCI (Hyper-Converged Infrastructure), including configuration, storage provisioning, and cluster managementAdministering and supporting existing FortiGate firewall appliancesYou will have:4+ years of experience in infrastructure engineering or a similar technical roleKnowledge and hands-on experience with Cisco Nexus and Catalyst, Meraki dashboard, and associated LAN/WAN/Wi-Fi technologiesSolid experience with cloud networking technologyExperience with network access controlExperience with FortiGate firewalls and associated toolsSolid understanding of networking protocols (BGP, OSPF, VPN, VLAN, etc.) and enterprise firewall and proxy solutionsFamiliarity with scripting and automation tools (e.g., PowerShell, Python) for infrastructure tasksEnjoy being part of a team that's passionate about supporting our practices and ultimately helping the nation smile.Your future starts hereBuild a fulfilling career with us, where you'll find the opportunity to develop your skills and shape your work life with a caring and inclusive team that supports one another.Click to apply now!MYDSC
03/08/2026
Full time
Your role as a Network Infrastructure Engineer at MyDentistThe role is full-time and initially an 18-month fixed-term contractAn additional role for the Infrastructure Team to support business growthThe role can be a flexible hybrid role with our Support Centre based in Kearsley, M26 1GGYou will benefit from free onsite parking, and Kearsley train station is just a short walk awayWith an on-site mini market shop and casual seating space inside and outside (for the sunnier days)Your future, with usWorking at mydentist means you'll be part of the UK's leading dental network. Here, you'll be trusted to do your best work, balancing your career around your life. We're ambitious, focusing on the big picture and transforming how we deliver dentistry. Supported by a talented and driven team, everyone is free to be themselves, where respect is a given, and we're always there for one another.Your future, your benefitsHolidays rising to 27 days per year with service (plus bank holidays)Annual Support Centre bonus schemeHealth and well-being benefits, including a virtual GP service and Employee Assistance Programme helpline, which includes free counselling sessionsAccess to fantastic discounts at cinemas, major retail brands, restaurants and coffee chains - simple and easy to access, making it possible to save hundreds of pounds a yearRecognition schemes, including Support Centre Heroes and service awardsYour future, your roleAs a Network Infrastructure Engineer, you'll be:Playing a key role in designing, implementing, maintaining, and optimising our IT infrastructure to ensure security, scalability, and reliability across our enterprise environmentDesigning, deploying, and maintaining enterprise network infrastructure with a focus on Cisco and Meraki technologies as well as network access controlAdministering and optimising Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)Managing, identifying and accessing services using Microsoft Entra (formerly Azure Active Directory), including conditional access, MFA, and SSO configurationsOverseeing and supporting Nutanix HCI (Hyper-Converged Infrastructure), including configuration, storage provisioning, and cluster managementAdministering and supporting existing FortiGate firewall appliancesYou will have:4+ years of experience in infrastructure engineering or a similar technical roleKnowledge and hands-on experience with Cisco Nexus and Catalyst, Meraki dashboard, and associated LAN/WAN/Wi-Fi technologiesSolid experience with cloud networking technologyExperience with network access controlExperience with FortiGate firewalls and associated toolsSolid understanding of networking protocols (BGP, OSPF, VPN, VLAN, etc.) and enterprise firewall and proxy solutionsFamiliarity with scripting and automation tools (e.g., PowerShell, Python) for infrastructure tasksEnjoy being part of a team that's passionate about supporting our practices and ultimately helping the nation smile.Your future starts hereBuild a fulfilling career with us, where you'll find the opportunity to develop your skills and shape your work life with a caring and inclusive team that supports one another.Click to apply now!MYDSC
Principal Security Engineer
Lindar St. Albans, Hertfordshire
Mr Who? MrQ - we're an awesome, award winning online casino launched in 2018. We're big on tech, big on performance and most of all - big on fun. Over the years, we have experienced explosive growth - which means we need more rock stars to join our quest for total world domination. This is a founding security engineering role. There is no existing function, no inherited tooling, no playbooks to follow while you're building it. We need someone who can own the entire security engineering discipline end to end: define the strategy, architect the solutions, deploy and manage the tooling, write the policies, run the operations, and report on posture to the business. You'll work as a direct partner to the IT Ops Specialist. The two of you will shape how security and IT operations work together across the organisation. This means you need to be technically exceptional while also being the person who builds the governance, drives compliance, and ensures security has a seat at every strategic decision. You will own the security roadmap, influence technology and platform choices, and be accountable for the security posture of the business. This is not a support role, it's a senior position that demands both engineering depth and strategic ownership. What You Will Do 1. Security Strategy & Technical Leadership Strategic Ownership: Define and own the enterprise security strategy and multi-year roadmap. Identify gaps, set priorities, allocate effort and deliver. This feeds directly into business-level risk decisions. Technical Authority: Be the definitive technical voice on security across the organisation. Evaluate threats, make architectural decisions, and set the standard for how security is implemented across every platform and system. Partnership: Operate as a strategic partner to the IT Ops Specialist. Jointly shape how security and IT operations integrate shared tooling decisions, aligned processes, unified incident response, single view of risk. Stakeholder Influence: Present security posture, risk appetite and investment cases to senior leadership. Translate technical risk into business impact. Ensure security is embedded into every major technology and product decision. 2. Security Architecture, Tooling & Engineering Security Stack: Evaluate, select, deploy, configure and manage the full enterprise security tooling suite from scratch - EDR/XDR (CrowdStrike/SentinelOne), SASE/SWG (Netskope/Zscaler), SIEM, email security, DLP, endpoint privilege management, application allowlisting. Architecture: Design and implement enterprise security architecture built on zero trust and secure-by-default principles. Own the technical blueprint across cloud (AWS), SaaS, endpoints, network and identity. Detection Engineering: Build, tune and maintain detection rules, correlation logic and alerting across SIEM and EDR. Engineer high-fidelity detections mapped to MITRE ATT&CK. Continuously reduce false positives and expand coverage. Automation: Engineer automation for security operations at scale - scripting (Python, Bash, PowerShell) for response orchestration, access reviews, compliance checks, vulnerability reporting, threat intel enrichment. Integration & Evaluation: Ensure all security tooling integrates with existing infrastructure and identity platforms. Lead POCs, vendor evaluations and build-vs-buy decisions for new security technologies. 3. Security Operations & Incident Response IR Leadership: Own the full incident response lifecycle - detection, triage, containment, eradication, recovery, post-incident review. Author and maintain IR playbooks, runbooks and escalation procedures. Threat Intelligence: Investigate security events, perform root cause analysis, and apply threat intelligence to improve defensive posture. Understand attacker TTPs and operationalise frameworks like MITRE ATT&CK and NIST CSF. Vulnerability Management: Own the vulnerability management programme end to end - scanning, prioritisation, remediation tracking, SLA enforcement and executive reporting across infrastructure, endpoints and applications. Application & API Security: Assess the security of internal applications, third-party integrations, APIs, payment flows and authentication systems. Identify both technical vulnerabilities and product-level abuse scenarios. 4. Identity, Access & Endpoint Security IAM & Zero Trust: Architect and enforce the identity strategy - SSO, MFA, SAML, OAuth, SCIM, conditional access, passwordless authentication. Design and enforce least-privilege and zero trust access policies across all systems. Endpoint Security: Define and enforce endpoint security standards at scale - hardening, patching, disk encryption, MDM, device compliance. Own the endpoint security posture across the full macOS and Windows fleet. Access Governance: Design and run access review and certification programmes. Proactively identify over-provisioned access, orphaned accounts, shadow IT and policy gaps. Maintain a clean, auditable access estate. 5. Governance, Risk, Compliance & Documentation Build the Framework: Establish the security governance framework from the ground up policies, standards, procedures and controls aligned to ISO 27001, SOC 2, Cyber Essentials and GDPR. Audit & Compliance: Maintain continuous audit readiness. Own evidence collection, control testing, gap analysis and remediation tracking. Be the person who sits with auditors and delivers clear, documented, defensible answers. Risk Management: Conduct threat modelling and risk assessments. Own the risk register, drive treatment plans, and report on residual risk to leadership. Ensure risk management is embedded into project and change processes. Documentation: Build and maintain the full security documentation estate architecture diagrams, tool configurations, runbooks, incident reports, risk registers, process maps, policy library. Set the standard for what good documentation looks like. Security Awareness: Own the security awareness programme - phishing simulations, training campaigns, onboarding security inductions, policy rollouts. Be the visible face of security across the business. What We're Looking For 6+ years in security engineering, enterprise security or security operations with demonstrated impact building or significantly maturing a security function. Deep hands on experience deploying, configuring, managing and troubleshooting enterprise security tools - EDR/XDR, SASE/SWG, SIEM, DLP, email security, endpoint privilege management, MDM. Expert level knowledge of identity and access management SSO, SAML, OAuth, SCIM, conditional access, MFA, passwordless with proven zero trust implementation in production. Led incident response investigations end to end - built playbooks, managed containment and drove remediation across real world security incidents. Strong scripting and automation capability (Python, Bash, PowerShell) applied to detection engineering, security operations and compliance automation. Direct experience building security governance - writing policies, implementing controls, preparing for and leading audit engagements (ISO 27001, SOC 2, Cyber Essentials, GDPR). Fluent in security frameworks and threat methodologies (MITRE ATT&CK, NIST CSF, CIS Controls, OWASP) with practical application, not just theoretical knowledge. Experience securing cloud native and SaaS heavy environments (AWS preferred). Strategic thinker who can define a roadmap, influence stakeholders and make security decisions that balance risk with business enablement. Highly Desirable Experience in iGaming, fintech or another heavily regulated industry with understanding of gaming regulatory frameworks and player data protection. Background in application security, API security testing, secure SDLC or product security within a platform based business. Hands on SIEM detection engineering - writing correlation rules, building dashboards, tuning alert logic at scale. Experience with cloud security tooling (AWS GuardDuty, Security Hub, CloudTrail, Config), SSPM, CASB or DLP platforms. Relevant senior certifications (CISSP, CISM, GIAC GSEC/GCIH/GCIA, CySA+, vendor specific: CrowdStrike CCFA/CCFR, Netskope) or equivalent proven track record. Experience mentoring engineers, building team capability or shaping security culture across an organisation. What We Offer At MrQ, we take pride in providing an array of fantastic benefits to our valued team members. Enjoy a competitive salary package that recognizes your hard work and dedication. Need some extra time off? We've got you covered with additional leave days, and we believe in celebrating life's special moments, including your birthday, with dedicated birthday leave. Family matters to us, too, which is why we offer a generous four week parental leave. Your well being is our priority, supported by international health and life insurance. Stay motivated with wellness incentives and seize opportunities for personal and professional growth with our growth allowance. Embrace a flexible working environment that caters to your needs, and join our friendly and multinational team, where collaboration and camaraderie flourish. At MrQ, we're committed to ensuring that your experience with us goes beyond just a job - it's a fulfilling journey with a supportive community. We are committed to fostering a workplace that values and celebrates diversity. We welcome individuals of all backgrounds and experiences . click apply for full job details
03/08/2026
Full time
Mr Who? MrQ - we're an awesome, award winning online casino launched in 2018. We're big on tech, big on performance and most of all - big on fun. Over the years, we have experienced explosive growth - which means we need more rock stars to join our quest for total world domination. This is a founding security engineering role. There is no existing function, no inherited tooling, no playbooks to follow while you're building it. We need someone who can own the entire security engineering discipline end to end: define the strategy, architect the solutions, deploy and manage the tooling, write the policies, run the operations, and report on posture to the business. You'll work as a direct partner to the IT Ops Specialist. The two of you will shape how security and IT operations work together across the organisation. This means you need to be technically exceptional while also being the person who builds the governance, drives compliance, and ensures security has a seat at every strategic decision. You will own the security roadmap, influence technology and platform choices, and be accountable for the security posture of the business. This is not a support role, it's a senior position that demands both engineering depth and strategic ownership. What You Will Do 1. Security Strategy & Technical Leadership Strategic Ownership: Define and own the enterprise security strategy and multi-year roadmap. Identify gaps, set priorities, allocate effort and deliver. This feeds directly into business-level risk decisions. Technical Authority: Be the definitive technical voice on security across the organisation. Evaluate threats, make architectural decisions, and set the standard for how security is implemented across every platform and system. Partnership: Operate as a strategic partner to the IT Ops Specialist. Jointly shape how security and IT operations integrate shared tooling decisions, aligned processes, unified incident response, single view of risk. Stakeholder Influence: Present security posture, risk appetite and investment cases to senior leadership. Translate technical risk into business impact. Ensure security is embedded into every major technology and product decision. 2. Security Architecture, Tooling & Engineering Security Stack: Evaluate, select, deploy, configure and manage the full enterprise security tooling suite from scratch - EDR/XDR (CrowdStrike/SentinelOne), SASE/SWG (Netskope/Zscaler), SIEM, email security, DLP, endpoint privilege management, application allowlisting. Architecture: Design and implement enterprise security architecture built on zero trust and secure-by-default principles. Own the technical blueprint across cloud (AWS), SaaS, endpoints, network and identity. Detection Engineering: Build, tune and maintain detection rules, correlation logic and alerting across SIEM and EDR. Engineer high-fidelity detections mapped to MITRE ATT&CK. Continuously reduce false positives and expand coverage. Automation: Engineer automation for security operations at scale - scripting (Python, Bash, PowerShell) for response orchestration, access reviews, compliance checks, vulnerability reporting, threat intel enrichment. Integration & Evaluation: Ensure all security tooling integrates with existing infrastructure and identity platforms. Lead POCs, vendor evaluations and build-vs-buy decisions for new security technologies. 3. Security Operations & Incident Response IR Leadership: Own the full incident response lifecycle - detection, triage, containment, eradication, recovery, post-incident review. Author and maintain IR playbooks, runbooks and escalation procedures. Threat Intelligence: Investigate security events, perform root cause analysis, and apply threat intelligence to improve defensive posture. Understand attacker TTPs and operationalise frameworks like MITRE ATT&CK and NIST CSF. Vulnerability Management: Own the vulnerability management programme end to end - scanning, prioritisation, remediation tracking, SLA enforcement and executive reporting across infrastructure, endpoints and applications. Application & API Security: Assess the security of internal applications, third-party integrations, APIs, payment flows and authentication systems. Identify both technical vulnerabilities and product-level abuse scenarios. 4. Identity, Access & Endpoint Security IAM & Zero Trust: Architect and enforce the identity strategy - SSO, MFA, SAML, OAuth, SCIM, conditional access, passwordless authentication. Design and enforce least-privilege and zero trust access policies across all systems. Endpoint Security: Define and enforce endpoint security standards at scale - hardening, patching, disk encryption, MDM, device compliance. Own the endpoint security posture across the full macOS and Windows fleet. Access Governance: Design and run access review and certification programmes. Proactively identify over-provisioned access, orphaned accounts, shadow IT and policy gaps. Maintain a clean, auditable access estate. 5. Governance, Risk, Compliance & Documentation Build the Framework: Establish the security governance framework from the ground up policies, standards, procedures and controls aligned to ISO 27001, SOC 2, Cyber Essentials and GDPR. Audit & Compliance: Maintain continuous audit readiness. Own evidence collection, control testing, gap analysis and remediation tracking. Be the person who sits with auditors and delivers clear, documented, defensible answers. Risk Management: Conduct threat modelling and risk assessments. Own the risk register, drive treatment plans, and report on residual risk to leadership. Ensure risk management is embedded into project and change processes. Documentation: Build and maintain the full security documentation estate architecture diagrams, tool configurations, runbooks, incident reports, risk registers, process maps, policy library. Set the standard for what good documentation looks like. Security Awareness: Own the security awareness programme - phishing simulations, training campaigns, onboarding security inductions, policy rollouts. Be the visible face of security across the business. What We're Looking For 6+ years in security engineering, enterprise security or security operations with demonstrated impact building or significantly maturing a security function. Deep hands on experience deploying, configuring, managing and troubleshooting enterprise security tools - EDR/XDR, SASE/SWG, SIEM, DLP, email security, endpoint privilege management, MDM. Expert level knowledge of identity and access management SSO, SAML, OAuth, SCIM, conditional access, MFA, passwordless with proven zero trust implementation in production. Led incident response investigations end to end - built playbooks, managed containment and drove remediation across real world security incidents. Strong scripting and automation capability (Python, Bash, PowerShell) applied to detection engineering, security operations and compliance automation. Direct experience building security governance - writing policies, implementing controls, preparing for and leading audit engagements (ISO 27001, SOC 2, Cyber Essentials, GDPR). Fluent in security frameworks and threat methodologies (MITRE ATT&CK, NIST CSF, CIS Controls, OWASP) with practical application, not just theoretical knowledge. Experience securing cloud native and SaaS heavy environments (AWS preferred). Strategic thinker who can define a roadmap, influence stakeholders and make security decisions that balance risk with business enablement. Highly Desirable Experience in iGaming, fintech or another heavily regulated industry with understanding of gaming regulatory frameworks and player data protection. Background in application security, API security testing, secure SDLC or product security within a platform based business. Hands on SIEM detection engineering - writing correlation rules, building dashboards, tuning alert logic at scale. Experience with cloud security tooling (AWS GuardDuty, Security Hub, CloudTrail, Config), SSPM, CASB or DLP platforms. Relevant senior certifications (CISSP, CISM, GIAC GSEC/GCIH/GCIA, CySA+, vendor specific: CrowdStrike CCFA/CCFR, Netskope) or equivalent proven track record. Experience mentoring engineers, building team capability or shaping security culture across an organisation. What We Offer At MrQ, we take pride in providing an array of fantastic benefits to our valued team members. Enjoy a competitive salary package that recognizes your hard work and dedication. Need some extra time off? We've got you covered with additional leave days, and we believe in celebrating life's special moments, including your birthday, with dedicated birthday leave. Family matters to us, too, which is why we offer a generous four week parental leave. Your well being is our priority, supported by international health and life insurance. Stay motivated with wellness incentives and seize opportunities for personal and professional growth with our growth allowance. Embrace a flexible working environment that caters to your needs, and join our friendly and multinational team, where collaboration and camaraderie flourish. At MrQ, we're committed to ensuring that your experience with us goes beyond just a job - it's a fulfilling journey with a supportive community. We are committed to fostering a workplace that values and celebrates diversity. We welcome individuals of all backgrounds and experiences . click apply for full job details
IT Networks Product Manager
Bentley Motors Crewe, Cheshire
Select how often (in days) to receive an alert: Function: IT Contract: Full time - Permanent Location: Pyms Lane, Crewe, CW1 3PL with flexible hybrid working Eligibility: Candidates must have the right to work in the UK without requiring visa sponsorship Be part of an extraordinary British brand. At Bentley, you'll collaborate with industry-leading experts, build on a heritage of excellence, and define the next 100 years. Purpose of the Role Join Bentley's Information Technology team as the IT Networks Product Manager, where you will shape the vision, strategy, and roadmap for our enterprise network services. In this pivotal role, you will lead the lifecycle management and continuous enhancement of network products, ensuring they remain secure, resilient, scalable, and aligned with evolving business needs. You will be responsible for defining strategic priorities, managing investment decisions, and overseeing the delivery and performance of network services across the organisation. Working closely with internal stakeholders, managed service providers, and technology partners, you will drive the development of high-performing network solutions that enable business success and support Bentley's future ambitions. Reporting to the Infrastructure & Service Manager / Head of Infrastructure, your main responsibilities will include: Own the end-to-end lifecycle of network products and services, developing the roadmap, setting the product vision, and identifying opportunities to innovate, modernise, automate, and optimise Define costed roadmaps, manage product retirement and replacement activities, and ensure services meet agreed availability, performance, and security targets Drive continual service improvement, support major incident and problem management, maintain resilience and disaster recovery capabilities, and ensure third party partners deliver against SLAs and KPIs Act as the primary business contact for networking services, engaging stakeholders to understand current and future requirements Present product strategies, roadmaps, and investment proposals to senior stakeholders, supporting governance forums, architecture reviews, and investment decisions Manage relationships with network service providers and technology vendors, leading contract reviews, renewals, and commercial negotiations while monitoring supplier performance Ensure network services comply with security standards and regulatory requirements, partnering with Cyber Security teams to address vulnerabilities, support audits, and maintain secure network designs Lead the delivery of network transformation initiatives, reviewing solution designs, coordinating infrastructure changes, and ensuring a seamless transition into operational support About the Team The Network Product Manager role is part of Bentley Motors' Information Technology (IT) function and delivers the secure, reliable and innovative connectivity services that power Bentley's global operations. Working in a collaborative and forward thinking environment, you will partner with colleagues across the business, VW Group and the IT function inclusive of leading technology providers to shape the future of enterprise networking. This is an exciting opportunity to influence strategic technology decisions and drive digital transformation through modern, secure and resilient network services. Our work directly supports Bentley's Beyond100+ strategy by enabling sustainable business growth, global collaboration and innovation through cloud networking and cybersecurity. About you - Skills and Experience Extensive experience managing enterprise network technologies, with certifications such as Cisco, Palo Alto, Aruba, Juniper, or equivalent highly desirable Strong knowledge of LAN/WAN, SD-WAN, Wi Fi, VPNs, network security, firewalls, DNS/DHCP/IPAM, data centre networking, and Azure/AWS connectivity Experience developing technology roadmaps, managing suppliers and contracts, and driving service performance through SLAs and KPIs Good understanding of ITIL, business case development, investment proposals, and stakeholder management Expertise in Cisco, Cisco ISE, HPE Aruba, Palo Alto, Fortinet, or equivalent technologies, with knowledge of Zscaler and ZPA Strong troubleshooting and problem solving skills, with the ability to resolve complex network issues PRINCE2, Agile, SAFe, or Product Management certifications, alongside experience in manufacturing, automotive, or regulated environments, are advantageous Knowledge of Zero Trust, Azure Network Engineer Associate, and AWS Advanced Networking is desirable Strategic, customer focused, and delivery oriented, with excellent leadership, communication, and influencing skills What Bentley Offers Hybrid working options 35 days annual leave inclusive of UK bank holidays Progression pathways and programmes, mentoring, and study support opportunities available Optional car lease scheme with discounted access to brand new VW Group cars (VW, Seat, Skoda, Audi) up to every six months Health and life assurance benefits providing up to five times annual salary Annual salary reviews and competitive bonus scheme Contributory pension scheme - you put in 6% we put in 10% Access to a wide range of resources to support your health and well being including an online GP, the choice to join BUPA health plans, a mental health counsellor, and onsite physio Paid volunteering days dedicated to community giving Discounts portal offering direct discounts, cashback offers or voucher savings from a wide range of retailers. The Bentley Campus Our Crewe campus offers unrivalled facilities including green spaces, free parking, an onsite restaurant, coffee shops, rest & relaxation rooms and sports facilities. We bring people together through a shared purpose, a place of integrity, where everyone has a voice with influence and individuality is celebrated. We firmly believe in equal opportunities for all, helping all colleagues thrive as their authentic selves and reach their highest potential. We believe that everyone, regardless of their background or beliefs, belongs at Bentley. Everyone is entitled to respect and dignity and we positively celebrate the differences between people. Beyond100+ Bentley's bold vision to create the next experience benchmark in performance and luxury for generations to come. It represents how we lead change that contributes to the long term success of our brand. Designed, developed, and built at our headquarters in Crewe, our models offer ever evolving experiences that blend craftmanship, innovation, and sustainability. Join us as we advance the boundaries of excellence.
03/08/2026
Full time
Select how often (in days) to receive an alert: Function: IT Contract: Full time - Permanent Location: Pyms Lane, Crewe, CW1 3PL with flexible hybrid working Eligibility: Candidates must have the right to work in the UK without requiring visa sponsorship Be part of an extraordinary British brand. At Bentley, you'll collaborate with industry-leading experts, build on a heritage of excellence, and define the next 100 years. Purpose of the Role Join Bentley's Information Technology team as the IT Networks Product Manager, where you will shape the vision, strategy, and roadmap for our enterprise network services. In this pivotal role, you will lead the lifecycle management and continuous enhancement of network products, ensuring they remain secure, resilient, scalable, and aligned with evolving business needs. You will be responsible for defining strategic priorities, managing investment decisions, and overseeing the delivery and performance of network services across the organisation. Working closely with internal stakeholders, managed service providers, and technology partners, you will drive the development of high-performing network solutions that enable business success and support Bentley's future ambitions. Reporting to the Infrastructure & Service Manager / Head of Infrastructure, your main responsibilities will include: Own the end-to-end lifecycle of network products and services, developing the roadmap, setting the product vision, and identifying opportunities to innovate, modernise, automate, and optimise Define costed roadmaps, manage product retirement and replacement activities, and ensure services meet agreed availability, performance, and security targets Drive continual service improvement, support major incident and problem management, maintain resilience and disaster recovery capabilities, and ensure third party partners deliver against SLAs and KPIs Act as the primary business contact for networking services, engaging stakeholders to understand current and future requirements Present product strategies, roadmaps, and investment proposals to senior stakeholders, supporting governance forums, architecture reviews, and investment decisions Manage relationships with network service providers and technology vendors, leading contract reviews, renewals, and commercial negotiations while monitoring supplier performance Ensure network services comply with security standards and regulatory requirements, partnering with Cyber Security teams to address vulnerabilities, support audits, and maintain secure network designs Lead the delivery of network transformation initiatives, reviewing solution designs, coordinating infrastructure changes, and ensuring a seamless transition into operational support About the Team The Network Product Manager role is part of Bentley Motors' Information Technology (IT) function and delivers the secure, reliable and innovative connectivity services that power Bentley's global operations. Working in a collaborative and forward thinking environment, you will partner with colleagues across the business, VW Group and the IT function inclusive of leading technology providers to shape the future of enterprise networking. This is an exciting opportunity to influence strategic technology decisions and drive digital transformation through modern, secure and resilient network services. Our work directly supports Bentley's Beyond100+ strategy by enabling sustainable business growth, global collaboration and innovation through cloud networking and cybersecurity. About you - Skills and Experience Extensive experience managing enterprise network technologies, with certifications such as Cisco, Palo Alto, Aruba, Juniper, or equivalent highly desirable Strong knowledge of LAN/WAN, SD-WAN, Wi Fi, VPNs, network security, firewalls, DNS/DHCP/IPAM, data centre networking, and Azure/AWS connectivity Experience developing technology roadmaps, managing suppliers and contracts, and driving service performance through SLAs and KPIs Good understanding of ITIL, business case development, investment proposals, and stakeholder management Expertise in Cisco, Cisco ISE, HPE Aruba, Palo Alto, Fortinet, or equivalent technologies, with knowledge of Zscaler and ZPA Strong troubleshooting and problem solving skills, with the ability to resolve complex network issues PRINCE2, Agile, SAFe, or Product Management certifications, alongside experience in manufacturing, automotive, or regulated environments, are advantageous Knowledge of Zero Trust, Azure Network Engineer Associate, and AWS Advanced Networking is desirable Strategic, customer focused, and delivery oriented, with excellent leadership, communication, and influencing skills What Bentley Offers Hybrid working options 35 days annual leave inclusive of UK bank holidays Progression pathways and programmes, mentoring, and study support opportunities available Optional car lease scheme with discounted access to brand new VW Group cars (VW, Seat, Skoda, Audi) up to every six months Health and life assurance benefits providing up to five times annual salary Annual salary reviews and competitive bonus scheme Contributory pension scheme - you put in 6% we put in 10% Access to a wide range of resources to support your health and well being including an online GP, the choice to join BUPA health plans, a mental health counsellor, and onsite physio Paid volunteering days dedicated to community giving Discounts portal offering direct discounts, cashback offers or voucher savings from a wide range of retailers. The Bentley Campus Our Crewe campus offers unrivalled facilities including green spaces, free parking, an onsite restaurant, coffee shops, rest & relaxation rooms and sports facilities. We bring people together through a shared purpose, a place of integrity, where everyone has a voice with influence and individuality is celebrated. We firmly believe in equal opportunities for all, helping all colleagues thrive as their authentic selves and reach their highest potential. We believe that everyone, regardless of their background or beliefs, belongs at Bentley. Everyone is entitled to respect and dignity and we positively celebrate the differences between people. Beyond100+ Bentley's bold vision to create the next experience benchmark in performance and luxury for generations to come. It represents how we lead change that contributes to the long term success of our brand. Designed, developed, and built at our headquarters in Crewe, our models offer ever evolving experiences that blend craftmanship, innovation, and sustainability. Join us as we advance the boundaries of excellence.
BNY Mellon
Vice President, Infrastructure Engineering
BNY Mellon Manchester, Lancashire
We are seeking a senior level Network professional to lead the design, delivery, and operation of secure, resilient network solutions across campus, branch, and data center environments. This role owns end to end solution delivery and works in close partnership with infrastructure, security, real estate, risk, and audit teams to drive operational excellence, regulatory compliance, and continuous improvement. The ideal candidate brings deep technical expertise, strong delivery leadership, and the ability to operate effectively in complex, highly regulated enterprise environments. We're seeking a future team member for the role of Production Services Network Engineer to join our Technology Services Group (TSG) - Network Services team. This position is based in Manchester, UK. Key Responsibilities Lead complex DMZ projects involving routing, remote access, onboarding, segmentation, migration, and perimeter connectivity activities. CCIE or demonstratable equivalent skill. Deliver routing, path, failover, and connectivity changes for DMZ-hosted and externally connected services. Execute Cisco network changes supporting DMZ services. Provide SME support across data centre and perimeter connectivity technologies. Support onboarding of new applications and services into the DMZ. Drive automation opportunities across repetitive perimeter services and help define self service patterns for standard requests. Partner with stakeholders to simplify intake, standardize delivery, and improve operational scalability. Requirements SME-level knowledge of Cisco ACI, Cisco SD WAN, BGP, routing, VRFs, GRE, IPsec and related connectivity technologies. Strong hands on experience designing and executing Cisco network changes in perimeter and DMZ environments. Experience with automation tooling, workflow orchestration, or infrastructure as code approaches. Use of Terraform, Ansible and Python. Experience with Cloud networking, Azure, AWS, Aviatrix, beneficial. Experience with F5 and proxies beneficial. Experience with Zscaler and GlobalProtect or in perimeter or secure access use cases beneficial. Demonstrated experience leading complex network or perimeter delivery projects across multiple stakeholders. Experience identifying manual processes and converting them into automated or self service delivery patterns. Strong troubleshooting, change planning, implementation validation, and stakeholder management skills. Experience working within controlled change processes using Jira. Experience supporting segmentation, migration, and failover testing initiatives. Experience working in large enterprise network environments, and associated monitoring tools such as Orion, Splunk and Forward Networks.
02/08/2026
Full time
We are seeking a senior level Network professional to lead the design, delivery, and operation of secure, resilient network solutions across campus, branch, and data center environments. This role owns end to end solution delivery and works in close partnership with infrastructure, security, real estate, risk, and audit teams to drive operational excellence, regulatory compliance, and continuous improvement. The ideal candidate brings deep technical expertise, strong delivery leadership, and the ability to operate effectively in complex, highly regulated enterprise environments. We're seeking a future team member for the role of Production Services Network Engineer to join our Technology Services Group (TSG) - Network Services team. This position is based in Manchester, UK. Key Responsibilities Lead complex DMZ projects involving routing, remote access, onboarding, segmentation, migration, and perimeter connectivity activities. CCIE or demonstratable equivalent skill. Deliver routing, path, failover, and connectivity changes for DMZ-hosted and externally connected services. Execute Cisco network changes supporting DMZ services. Provide SME support across data centre and perimeter connectivity technologies. Support onboarding of new applications and services into the DMZ. Drive automation opportunities across repetitive perimeter services and help define self service patterns for standard requests. Partner with stakeholders to simplify intake, standardize delivery, and improve operational scalability. Requirements SME-level knowledge of Cisco ACI, Cisco SD WAN, BGP, routing, VRFs, GRE, IPsec and related connectivity technologies. Strong hands on experience designing and executing Cisco network changes in perimeter and DMZ environments. Experience with automation tooling, workflow orchestration, or infrastructure as code approaches. Use of Terraform, Ansible and Python. Experience with Cloud networking, Azure, AWS, Aviatrix, beneficial. Experience with F5 and proxies beneficial. Experience with Zscaler and GlobalProtect or in perimeter or secure access use cases beneficial. Demonstrated experience leading complex network or perimeter delivery projects across multiple stakeholders. Experience identifying manual processes and converting them into automated or self service delivery patterns. Strong troubleshooting, change planning, implementation validation, and stakeholder management skills. Experience working within controlled change processes using Jira. Experience supporting segmentation, migration, and failover testing initiatives. Experience working in large enterprise network environments, and associated monitoring tools such as Orion, Splunk and Forward Networks.
Technical Customer Engineer
Starhold
Technical Customer Engineer, UK - Job application Cloudi-Fi is on a mission: to become the Security Gateway for all unidentified devices connecting to Wi-Fi. Our 100% cloud-based solution combines best-in-class marketing features, global personal data compliance, and a Zero-Trust security framework. Thanks to strong technology partnerships and integrations with major cloud security and networking vendors, Cloudi-Fi is now trusted by over 150 leading global brands including Total Energies, Atos, System U (see our success stories). Recognized as one of Europe's most promising SaaS startups by the Financial Times, Cloudi-Fi brings together a passionate, multicultural team working toward a safer and more seamless internet experience for everyone. We are building a world-class Customer Engineering team that sits at the intersection of technical expertise, deployment excellence, and Customer success / Service adoption. If you love solving complex network problems, thrive in direct customer relationships, and are equally comfortable owning a support ticket, planning & deploying integration projects and leading a QBR - we want to hear from you. Position overview In this role, handling tickets is not a side task - it is the engine. Every ticket is a window into how a customer is actually experiencing our solutions. Resolving them with rigor and speed builds trust, drives successful deployments, and defines what customer success means for each client - because success is not a template; it is what the customer needs it to be. Key Responsibilities Ticket & Technical Operations - your daily foundation Own incoming customer requests end-to-end - triage with urgency/priority, document thoroughly, and escalate fast when needed, never let tickets go stale. Troubleshoot and resolve complex technical issues across Meraki, Fortinet, HP Aruba, Cisco WLC, and Zscaler environments and more to come - digging into root cause, not just symptoms. Use every resolved ticket as a learning artifact: update the knowledge base, flag recurring patterns, and turn individual fixes into systemic improvements. Treat ticket quality as a proxy for customer health - a well-handled issue strengthens the relationship; a poorly handled one erodes it. Deployment - turning tickets into lasting solutions Lead technical onboarding: configure, deploy, and validate our solutions in live customer environments - on site or remote. Convert recurring support patterns into proactive deployment improvements so the same issue never becomes a ticket twice. Stay current with emerging network and security technologies - and share what you learn with the team. Collaborate cross functionally with Product, Engineering, and Sales to close the loop on issues and drive continuous improvement. Service Adoption - defined by each customer, owned by you Build trusted advisor relationships with your assigned enterprise clients - you are their go to, across finance, retail, healthcare, and transport. Lead recurring reviews (QBR/EBR): present health scores, surface insights from ticket data, and align on roadmap priorities. Proactively identify risks and blockers before they become escalations - using data, pattern recognition, and customer knowledge. Deliver structured voice of customer feedback that directly influences our roadmap. What we are looking for Must have 3 years minimum in a support role CP/IP fundamentals: OSI, routing, DNS, NAT VPN Troubleshooting (IPSEC, GRE) Root cause analysis (RCA) methodology Ticketing systems and structured documentation (ITIL Standard) Technical onboarding and customer training Fluent or native English (client facing level) Strong bonus Zero Trust / ZTNA concepts Experience running QBRs / EBRs Cross functional collaboration (PS, Support, Product) Traffic analysis & network monitoring German fluency (client facing) Expertise on different cybersecurity vendor Bonus Wireshark / HAR capture analysis Basic scripting (Python, bash) for automation or log parsing French or Spanish fluency The mindset we hire for A team player above all - a learner, a can do & accountability attitude Comfortable with role fluidity: in the same week, you might close a P1 ticket, run a deployment, and present a QBR. Customer first in everything: you optimise for outcomes, not convenience. What we offer Opportunity to join a fast growing cybersecurity company with international ambitions - dynamic and collaborative work environment - exposure to strategic enterprise customers and innovative cybersecurity projects - flexible and hybrid work environment - international coworking spaces, or remote experience with sponsored home office equipment - career growth and leadership opportunities - continuous training & learning. A personalized program with all the tools and resources needed. Hiring process Submit the application form with your technical answers (see next page) Culture fit interview with our Chief People Officer Technical interview with a Technical Customer Engineer Role play interview with the Head of Customer Service
02/08/2026
Full time
Technical Customer Engineer, UK - Job application Cloudi-Fi is on a mission: to become the Security Gateway for all unidentified devices connecting to Wi-Fi. Our 100% cloud-based solution combines best-in-class marketing features, global personal data compliance, and a Zero-Trust security framework. Thanks to strong technology partnerships and integrations with major cloud security and networking vendors, Cloudi-Fi is now trusted by over 150 leading global brands including Total Energies, Atos, System U (see our success stories). Recognized as one of Europe's most promising SaaS startups by the Financial Times, Cloudi-Fi brings together a passionate, multicultural team working toward a safer and more seamless internet experience for everyone. We are building a world-class Customer Engineering team that sits at the intersection of technical expertise, deployment excellence, and Customer success / Service adoption. If you love solving complex network problems, thrive in direct customer relationships, and are equally comfortable owning a support ticket, planning & deploying integration projects and leading a QBR - we want to hear from you. Position overview In this role, handling tickets is not a side task - it is the engine. Every ticket is a window into how a customer is actually experiencing our solutions. Resolving them with rigor and speed builds trust, drives successful deployments, and defines what customer success means for each client - because success is not a template; it is what the customer needs it to be. Key Responsibilities Ticket & Technical Operations - your daily foundation Own incoming customer requests end-to-end - triage with urgency/priority, document thoroughly, and escalate fast when needed, never let tickets go stale. Troubleshoot and resolve complex technical issues across Meraki, Fortinet, HP Aruba, Cisco WLC, and Zscaler environments and more to come - digging into root cause, not just symptoms. Use every resolved ticket as a learning artifact: update the knowledge base, flag recurring patterns, and turn individual fixes into systemic improvements. Treat ticket quality as a proxy for customer health - a well-handled issue strengthens the relationship; a poorly handled one erodes it. Deployment - turning tickets into lasting solutions Lead technical onboarding: configure, deploy, and validate our solutions in live customer environments - on site or remote. Convert recurring support patterns into proactive deployment improvements so the same issue never becomes a ticket twice. Stay current with emerging network and security technologies - and share what you learn with the team. Collaborate cross functionally with Product, Engineering, and Sales to close the loop on issues and drive continuous improvement. Service Adoption - defined by each customer, owned by you Build trusted advisor relationships with your assigned enterprise clients - you are their go to, across finance, retail, healthcare, and transport. Lead recurring reviews (QBR/EBR): present health scores, surface insights from ticket data, and align on roadmap priorities. Proactively identify risks and blockers before they become escalations - using data, pattern recognition, and customer knowledge. Deliver structured voice of customer feedback that directly influences our roadmap. What we are looking for Must have 3 years minimum in a support role CP/IP fundamentals: OSI, routing, DNS, NAT VPN Troubleshooting (IPSEC, GRE) Root cause analysis (RCA) methodology Ticketing systems and structured documentation (ITIL Standard) Technical onboarding and customer training Fluent or native English (client facing level) Strong bonus Zero Trust / ZTNA concepts Experience running QBRs / EBRs Cross functional collaboration (PS, Support, Product) Traffic analysis & network monitoring German fluency (client facing) Expertise on different cybersecurity vendor Bonus Wireshark / HAR capture analysis Basic scripting (Python, bash) for automation or log parsing French or Spanish fluency The mindset we hire for A team player above all - a learner, a can do & accountability attitude Comfortable with role fluidity: in the same week, you might close a P1 ticket, run a deployment, and present a QBR. Customer first in everything: you optimise for outcomes, not convenience. What we offer Opportunity to join a fast growing cybersecurity company with international ambitions - dynamic and collaborative work environment - exposure to strategic enterprise customers and innovative cybersecurity projects - flexible and hybrid work environment - international coworking spaces, or remote experience with sponsored home office equipment - career growth and leadership opportunities - continuous training & learning. A personalized program with all the tools and resources needed. Hiring process Submit the application form with your technical answers (see next page) Culture fit interview with our Chief People Officer Technical interview with a Technical Customer Engineer Role play interview with the Head of Customer Service
Network Security Support Engineer
Kerv Northallerton, Yorkshire
Please note: This is a hybrid working role which will require to attend an office based in Northallerton (DL6 postcode) 2-3 times a week. About Kerv Connect Cloud Kerv Connect ed Cloud is the networking , security and Azure Cloud practice of the Kerv Group. We support digital transformation initiatives with secure, automated and simple to manage solutions for the data centre, branch office and cloud. We provide our customers with the answers to real-world business challenges through the effective and considered deployment of technology and its supporting processes. Our services and solutions portfolio focus ing on network and security technologies, transforming the data centre and branch architecture to better support the demands of digital transformation. All About You We're looking for an experienced Network & Security Support Engineer to join our Network Support Team. This role requires at least 4-5 years' experience supporting complex customer environments with technologies such as SD-WAN, Firewalls, Routing (OSPF/BGP), and ISP management. You'll be part of a high-performing team, providing advanced triage, incident response, and change implementation, while acting as an escalation point for junior engineers. The role is hybrid, with time split between home working, our Richmond and occasional presence at our London HQ office. Your part to play Provide advanced support for network and security incidents & service requests Lead implementation of change requests and project tasks Act as an escalation point for Level-1/2 engineers, providing guidance and mentorship Troubleshoot complex networking/security issues across customer environments Manage ISP circuits and liaise with providers as needed Maintain high-quality documentation and ensure knowledge sharing within the team Participate in the out-of-hours on-call rota and flexible shift coverage Required Expertise 4-5 years' experience in a network & security support role Security technologies (firewall policies, IPS/IDS, web filtering, secure web gateways) Switching (Layer 2/3) Monitoring tools (SNMP, API-based platforms) Technical Skills: VeloCloud, SilverPeak, Fortinet, Zscaler, Infoblox (training provided for gaps) What You Bring Strong technical problem-solving and troubleshooting skills Ability to create and maintain high-quality documentation Excellent communication and customer service skills Time management and task prioritisation in fast-paced environments Professional, proactive, and collaborative approach Location United Kingdom Job Type Full Time Application Closing Date 31st August 2026
01/08/2026
Full time
Please note: This is a hybrid working role which will require to attend an office based in Northallerton (DL6 postcode) 2-3 times a week. About Kerv Connect Cloud Kerv Connect ed Cloud is the networking , security and Azure Cloud practice of the Kerv Group. We support digital transformation initiatives with secure, automated and simple to manage solutions for the data centre, branch office and cloud. We provide our customers with the answers to real-world business challenges through the effective and considered deployment of technology and its supporting processes. Our services and solutions portfolio focus ing on network and security technologies, transforming the data centre and branch architecture to better support the demands of digital transformation. All About You We're looking for an experienced Network & Security Support Engineer to join our Network Support Team. This role requires at least 4-5 years' experience supporting complex customer environments with technologies such as SD-WAN, Firewalls, Routing (OSPF/BGP), and ISP management. You'll be part of a high-performing team, providing advanced triage, incident response, and change implementation, while acting as an escalation point for junior engineers. The role is hybrid, with time split between home working, our Richmond and occasional presence at our London HQ office. Your part to play Provide advanced support for network and security incidents & service requests Lead implementation of change requests and project tasks Act as an escalation point for Level-1/2 engineers, providing guidance and mentorship Troubleshoot complex networking/security issues across customer environments Manage ISP circuits and liaise with providers as needed Maintain high-quality documentation and ensure knowledge sharing within the team Participate in the out-of-hours on-call rota and flexible shift coverage Required Expertise 4-5 years' experience in a network & security support role Security technologies (firewall policies, IPS/IDS, web filtering, secure web gateways) Switching (Layer 2/3) Monitoring tools (SNMP, API-based platforms) Technical Skills: VeloCloud, SilverPeak, Fortinet, Zscaler, Infoblox (training provided for gaps) What You Bring Strong technical problem-solving and troubleshooting skills Ability to create and maintain high-quality documentation Excellent communication and customer service skills Time management and task prioritisation in fast-paced environments Professional, proactive, and collaborative approach Location United Kingdom Job Type Full Time Application Closing Date 31st August 2026
Network Security Support Engineer
Kerv Richmond, Surrey
Please note: This is a hybrid working role which will require to attend an office based in Northallerton (DL6 postcode) 2-3 times a week. About Kerv Connect Cloud Kerv Connect ed Cloud is the networking , security and Azure Cloud practice of the Kerv Group. We support digital transformation initiatives with secure, automated and simple to manage solutions for the data centre, branch office and cloud. We provide our customers with the answers to real-world business challenges through the effective and considered deployment of technology and its supporting processes. Our services and solutions portfolio focus ing on network and security technologies, transforming the data centre and branch architecture to better support the demands of digital transformation. All About You We're looking for an experienced Network & Security Support Engineer to join our Network Support Team. This role requires at least 4-5 years' experience supporting complex customer environments with technologies such as SD-WAN, Firewalls, Routing (OSPF/BGP), and ISP management. You'll be part of a high-performing team, providing advanced triage, incident response, and change implementation, while acting as an escalation point for junior engineers. The role is hybrid, with time split between home working, our Richmond and occasional presence at our London HQ office. Your part to play Provide advanced support for network and security incidents & service requests Lead implementation of change requests and project tasks Act as an escalation point for Level-1/2 engineers, providing guidance and mentorship Troubleshoot complex networking/security issues across customer environments Manage ISP circuits and liaise with providers as needed Maintain high-quality documentation and ensure knowledge sharing within the team Participate in the out-of-hours on-call rota and flexible shift coverage Required Expertise 4-5 years' experience in a network & security support role Security technologies (firewall policies, IPS/IDS, web filtering, secure web gateways) Switching (Layer 2/3) Monitoring tools (SNMP, API-based platforms) Technical Skills: VeloCloud, SilverPeak, Fortinet, Zscaler, Infoblox (training provided for gaps) What You Bring Strong technical problem-solving and troubleshooting skills Ability to create and maintain high-quality documentation Excellent communication and customer service skills Time management and task prioritisation in fast-paced environments Professional, proactive, and collaborative approach Location United Kingdom Job Type Full Time Application Closing Date 31st August 2026
01/08/2026
Full time
Please note: This is a hybrid working role which will require to attend an office based in Northallerton (DL6 postcode) 2-3 times a week. About Kerv Connect Cloud Kerv Connect ed Cloud is the networking , security and Azure Cloud practice of the Kerv Group. We support digital transformation initiatives with secure, automated and simple to manage solutions for the data centre, branch office and cloud. We provide our customers with the answers to real-world business challenges through the effective and considered deployment of technology and its supporting processes. Our services and solutions portfolio focus ing on network and security technologies, transforming the data centre and branch architecture to better support the demands of digital transformation. All About You We're looking for an experienced Network & Security Support Engineer to join our Network Support Team. This role requires at least 4-5 years' experience supporting complex customer environments with technologies such as SD-WAN, Firewalls, Routing (OSPF/BGP), and ISP management. You'll be part of a high-performing team, providing advanced triage, incident response, and change implementation, while acting as an escalation point for junior engineers. The role is hybrid, with time split between home working, our Richmond and occasional presence at our London HQ office. Your part to play Provide advanced support for network and security incidents & service requests Lead implementation of change requests and project tasks Act as an escalation point for Level-1/2 engineers, providing guidance and mentorship Troubleshoot complex networking/security issues across customer environments Manage ISP circuits and liaise with providers as needed Maintain high-quality documentation and ensure knowledge sharing within the team Participate in the out-of-hours on-call rota and flexible shift coverage Required Expertise 4-5 years' experience in a network & security support role Security technologies (firewall policies, IPS/IDS, web filtering, secure web gateways) Switching (Layer 2/3) Monitoring tools (SNMP, API-based platforms) Technical Skills: VeloCloud, SilverPeak, Fortinet, Zscaler, Infoblox (training provided for gaps) What You Bring Strong technical problem-solving and troubleshooting skills Ability to create and maintain high-quality documentation Excellent communication and customer service skills Time management and task prioritisation in fast-paced environments Professional, proactive, and collaborative approach Location United Kingdom Job Type Full Time Application Closing Date 31st August 2026
Network Security Support Engineer
Kerv
Please note: This is a hybrid working role which will require to attend an office based in Northallerton (DL6 postcode) 2-3 times a week. About Kerv Connect Cloud Kerv Connect ed Cloud is the networking , security and Azure Cloud practice of the Kerv Group. We support digital transformation initiatives with secure, automated and simple to manage solutions for the data centre, branch office and cloud. We provide our customers with the answers to real-world business challenges through the effective and considered deployment of technology and its supporting processes. Our services and solutions portfolio focus ing on network and security technologies, transforming the data centre and branch architecture to better support the demands of digital transformation. All About You We're looking for an experienced Network & Security Support Engineer to join our Network Support Team. This role requires at least 4-5 years' experience supporting complex customer environments with technologies such as SD-WAN, Firewalls, Routing (OSPF/BGP), and ISP management. You'll be part of a high-performing team, providing advanced triage, incident response, and change implementation, while acting as an escalation point for junior engineers. The role is hybrid, with time split between home working, our Richmond and occasional presence at our London HQ office. Your part to play Provide advanced support for network and security incidents & service requests Lead implementation of change requests and project tasks Act as an escalation point for Level-1/2 engineers, providing guidance and mentorship Troubleshoot complex networking/security issues across customer environments Manage ISP circuits and liaise with providers as needed Maintain high-quality documentation and ensure knowledge sharing within the team Participate in the out-of-hours on-call rota and flexible shift coverage Required Expertise 4-5 years' experience in a network & security support role Security technologies (firewall policies, IPS/IDS, web filtering, secure web gateways) Switching (Layer 2/3) Monitoring tools (SNMP, API-based platforms) Technical Skills: VeloCloud, SilverPeak, Fortinet, Zscaler, Infoblox (training provided for gaps) What You Bring Strong technical problem-solving and troubleshooting skills Ability to create and maintain high-quality documentation Excellent communication and customer service skills Time management and task prioritisation in fast-paced environments Professional, proactive, and collaborative approach Location United Kingdom Job Type Full Time Application Closing Date 31st August 2026
01/08/2026
Full time
Please note: This is a hybrid working role which will require to attend an office based in Northallerton (DL6 postcode) 2-3 times a week. About Kerv Connect Cloud Kerv Connect ed Cloud is the networking , security and Azure Cloud practice of the Kerv Group. We support digital transformation initiatives with secure, automated and simple to manage solutions for the data centre, branch office and cloud. We provide our customers with the answers to real-world business challenges through the effective and considered deployment of technology and its supporting processes. Our services and solutions portfolio focus ing on network and security technologies, transforming the data centre and branch architecture to better support the demands of digital transformation. All About You We're looking for an experienced Network & Security Support Engineer to join our Network Support Team. This role requires at least 4-5 years' experience supporting complex customer environments with technologies such as SD-WAN, Firewalls, Routing (OSPF/BGP), and ISP management. You'll be part of a high-performing team, providing advanced triage, incident response, and change implementation, while acting as an escalation point for junior engineers. The role is hybrid, with time split between home working, our Richmond and occasional presence at our London HQ office. Your part to play Provide advanced support for network and security incidents & service requests Lead implementation of change requests and project tasks Act as an escalation point for Level-1/2 engineers, providing guidance and mentorship Troubleshoot complex networking/security issues across customer environments Manage ISP circuits and liaise with providers as needed Maintain high-quality documentation and ensure knowledge sharing within the team Participate in the out-of-hours on-call rota and flexible shift coverage Required Expertise 4-5 years' experience in a network & security support role Security technologies (firewall policies, IPS/IDS, web filtering, secure web gateways) Switching (Layer 2/3) Monitoring tools (SNMP, API-based platforms) Technical Skills: VeloCloud, SilverPeak, Fortinet, Zscaler, Infoblox (training provided for gaps) What You Bring Strong technical problem-solving and troubleshooting skills Ability to create and maintain high-quality documentation Excellent communication and customer service skills Time management and task prioritisation in fast-paced environments Professional, proactive, and collaborative approach Location United Kingdom Job Type Full Time Application Closing Date 31st August 2026
Senior Network Security Specialist
HKEX Group
Senior Network Security Specialist Shift Pattern: Standard 40 Hour Week (United Kingdom) Scheduled Weekly Hours: 40 Corporate Grade: D - Assistant Vice President Reporting Line: (UK Division) Information Technology Location: UK-London Worker Type: Permanent About the London Metal Exchange The London Metal Exchange (LME) is the world centre for industrial metals trading. Most of the world's global non-ferrous futures business is conducted on the LME's three trading platforms totalling $21 trillion, 191 million lots and 4 billion tonnes notional with a market open interest high of 2.1 million lots in 2025.The metals community uses the LME, an HKEX Group company, as a venue to transfer or take on price risk, as a physical market of last resort and as the provider of transparent global reference prices. Overall Purpose of Role As a Senior Network Security Specialist, you will design, implement and govern the network security controls that protect our modern, high performance enterprise network. You will take a hands on lead role in shaping the network security roadmap, defining policies and standards and driving the adoption of Zero Trust and micro segmentation across the organisation.Working within the Connectivity Engineering Team, you will collaborate closely with Information Security, Platform, Infrastructure and Application teams to ensure security is embedded by design. Your expertise will be applied across on premises, cloud, and containerised environments, ensuring consistent and robust protection across all connectivity layers. You will also support the organisation's LAN, WAN, Campus and Data Centre network services, ensuring reliability, resilience, and high performance. You will maintain and develop core network standards across related systems, coordinate network activities across multiple technology projects, contribute deep technical expertise and produce both high and low level designs. As a subject matter expert, you will also provide 3rd line escalation support when required.This role reports directly to the Network Manager and may include participation in an on call rota, as well as occasional evening and weekend work. TOIL or overtime compensation will be available. Responsibilities: Design, implement, and maintain enterprise network security controls including firewalls, proxies and secure access services aligned to business and regulatory requirements. Act as the technical authority for Fortinet, Palo Alto Networks and Zscaler platforms. Ensure security policies are consistently enforced across data centre, campus, cloud and hybrid environments. Lead complex troubleshooting of network security issues, balancing security, performance and availability. Own and define the network security roadmap, aligned with wider technology and security strategies. Design and evolve Zero Trust network architectures, including identity-aware access and least-privilege principles. Define and implement micro-segmentation strategies for traditional and containerised workloads. Provide design input into new initiatives (cloud adoption, Kubernetes/OpenShift, automation, AI platforms). Evaluate new security technologies and patterns, producing clear recommendations and design artefacts Develop and maintain network security standards, patterns and policy definitions. Ensure adherence to security policies through design reviews, operational controls and continuous improvement. Partner with Information Security to translate policy into enforceable technical controls. Support audits, risk assessments and regulatory obligations by providing clear evidence of control implementation. Act as a senior technical leader within the Network Team, mentoring engineers and setting best practice. Work closely with Infrastructure, Platform, and Application teams to embed security by design. Provide subject-matter expertise to project teams and senior stakeholders. Desired Academic and Professional Qualifications: The ideal candidate will have experience working within an ITIL governed environment and established infrastructure support frameworks. They will hold a bachelor's degree in Computer Science, Information Technology, or a related discipline, or possess an equivalent combination of education, technical training, and practical experience.Relevant industry certifications (e.g. PCNSE, NSE, CCNP Security, or CISSP) or substantial real world application are expected, while ITIL and/or PMI certification is considered an advantage. Required Knowledge and Level of Experience: Experience defining and implementing network segmentation and micro segmentation strategies. Strong understanding of Zero Trust networking principles and identity aware access controls. Strong experience designing, implementing and optimising firewall and proxy security policies. Deep hands-on experience with: + Palo Alto Networks (PAN OS, Panorama, policy design) + Fortinet (FortiGate, FortiManager, FortiAnalyzer) + Zscaler (ZIA, ZPA, Zero Trust Exchange) Experience securing hybrid environments spanning on prem, cloud, and containerised platforms. Exposure to security controls and design for Kubernetes/OpenShift. Experience with automation and infrastructure-as-code approaches for deploying security controls. Wide exposure to routing, switching, load balancing and security architectures, with extensive operational and engineering experience. Strong grounding in core networking technologies and protocols, including: + TCP/IP, BGP, OSPF, VLANs, VRF, VPN, VXLAN, NAT, ACLs, DNS. Hands on experience with packet capture and network analytics and monitoring tools. Strong understanding of ITILv3 processes, including incident, problem, and change management. Skills and Competencies: Ability to translate high level security policies into practical, scalable technical designs. Strong analytical and diagnostic skills for assessing complex network and security environments. Competence in designing and optimising security architectures, network policies and segmentation models. Ability to work across hybrid and distributed environments (on prem, cloud, container platforms). Strong capability to apply automation and IaC concepts to enhance security controls and operational efficiency. Ability to collaborate with cross-functional teams in highly regulated, high availability environments. Methodical, working approach aligned to ITILv3 best practices with and proven ability to implement processes. Willingness to challenge existing approaches and drive change. Comfortable working under pressure, with changing priorities. A strong delivery mindset, setting and achieving realistic and timely execution of project deliverables across the portfolio. Core Functional Responsibilities of an AVP: Day-to-day focus is on resolution of complex problems or transactions, where expertise is required to interpret against policies, guidelines or processes Role at this level usually has full ownership for one or more processes, reports, procedures or products, and may also be considered analytical or procedural experts representing a unit or team on cross-function process or project deliverables. Experience Criteria of an AVP: Roles at this level typically require an individual emerging as an expert in a specific skill set, business area or product who remains focused primarily on daily execution.Hong Kong Exchanges and Clearing Limited (HKEX) is a publicly-traded company (HKEX Stock Code:388) and one of the world's leading global exchange groups, offering a range of equity, derivative, commodity, fixed income and other financial markets, products and services, including the London Metals Exchange.As a superconnector and gateway between East and West, HKEX facilitates the two-way flow of capital, ideas and dialogue between China and the rest of world, through
01/08/2026
Full time
Senior Network Security Specialist Shift Pattern: Standard 40 Hour Week (United Kingdom) Scheduled Weekly Hours: 40 Corporate Grade: D - Assistant Vice President Reporting Line: (UK Division) Information Technology Location: UK-London Worker Type: Permanent About the London Metal Exchange The London Metal Exchange (LME) is the world centre for industrial metals trading. Most of the world's global non-ferrous futures business is conducted on the LME's three trading platforms totalling $21 trillion, 191 million lots and 4 billion tonnes notional with a market open interest high of 2.1 million lots in 2025.The metals community uses the LME, an HKEX Group company, as a venue to transfer or take on price risk, as a physical market of last resort and as the provider of transparent global reference prices. Overall Purpose of Role As a Senior Network Security Specialist, you will design, implement and govern the network security controls that protect our modern, high performance enterprise network. You will take a hands on lead role in shaping the network security roadmap, defining policies and standards and driving the adoption of Zero Trust and micro segmentation across the organisation.Working within the Connectivity Engineering Team, you will collaborate closely with Information Security, Platform, Infrastructure and Application teams to ensure security is embedded by design. Your expertise will be applied across on premises, cloud, and containerised environments, ensuring consistent and robust protection across all connectivity layers. You will also support the organisation's LAN, WAN, Campus and Data Centre network services, ensuring reliability, resilience, and high performance. You will maintain and develop core network standards across related systems, coordinate network activities across multiple technology projects, contribute deep technical expertise and produce both high and low level designs. As a subject matter expert, you will also provide 3rd line escalation support when required.This role reports directly to the Network Manager and may include participation in an on call rota, as well as occasional evening and weekend work. TOIL or overtime compensation will be available. Responsibilities: Design, implement, and maintain enterprise network security controls including firewalls, proxies and secure access services aligned to business and regulatory requirements. Act as the technical authority for Fortinet, Palo Alto Networks and Zscaler platforms. Ensure security policies are consistently enforced across data centre, campus, cloud and hybrid environments. Lead complex troubleshooting of network security issues, balancing security, performance and availability. Own and define the network security roadmap, aligned with wider technology and security strategies. Design and evolve Zero Trust network architectures, including identity-aware access and least-privilege principles. Define and implement micro-segmentation strategies for traditional and containerised workloads. Provide design input into new initiatives (cloud adoption, Kubernetes/OpenShift, automation, AI platforms). Evaluate new security technologies and patterns, producing clear recommendations and design artefacts Develop and maintain network security standards, patterns and policy definitions. Ensure adherence to security policies through design reviews, operational controls and continuous improvement. Partner with Information Security to translate policy into enforceable technical controls. Support audits, risk assessments and regulatory obligations by providing clear evidence of control implementation. Act as a senior technical leader within the Network Team, mentoring engineers and setting best practice. Work closely with Infrastructure, Platform, and Application teams to embed security by design. Provide subject-matter expertise to project teams and senior stakeholders. Desired Academic and Professional Qualifications: The ideal candidate will have experience working within an ITIL governed environment and established infrastructure support frameworks. They will hold a bachelor's degree in Computer Science, Information Technology, or a related discipline, or possess an equivalent combination of education, technical training, and practical experience.Relevant industry certifications (e.g. PCNSE, NSE, CCNP Security, or CISSP) or substantial real world application are expected, while ITIL and/or PMI certification is considered an advantage. Required Knowledge and Level of Experience: Experience defining and implementing network segmentation and micro segmentation strategies. Strong understanding of Zero Trust networking principles and identity aware access controls. Strong experience designing, implementing and optimising firewall and proxy security policies. Deep hands-on experience with: + Palo Alto Networks (PAN OS, Panorama, policy design) + Fortinet (FortiGate, FortiManager, FortiAnalyzer) + Zscaler (ZIA, ZPA, Zero Trust Exchange) Experience securing hybrid environments spanning on prem, cloud, and containerised platforms. Exposure to security controls and design for Kubernetes/OpenShift. Experience with automation and infrastructure-as-code approaches for deploying security controls. Wide exposure to routing, switching, load balancing and security architectures, with extensive operational and engineering experience. Strong grounding in core networking technologies and protocols, including: + TCP/IP, BGP, OSPF, VLANs, VRF, VPN, VXLAN, NAT, ACLs, DNS. Hands on experience with packet capture and network analytics and monitoring tools. Strong understanding of ITILv3 processes, including incident, problem, and change management. Skills and Competencies: Ability to translate high level security policies into practical, scalable technical designs. Strong analytical and diagnostic skills for assessing complex network and security environments. Competence in designing and optimising security architectures, network policies and segmentation models. Ability to work across hybrid and distributed environments (on prem, cloud, container platforms). Strong capability to apply automation and IaC concepts to enhance security controls and operational efficiency. Ability to collaborate with cross-functional teams in highly regulated, high availability environments. Methodical, working approach aligned to ITILv3 best practices with and proven ability to implement processes. Willingness to challenge existing approaches and drive change. Comfortable working under pressure, with changing priorities. A strong delivery mindset, setting and achieving realistic and timely execution of project deliverables across the portfolio. Core Functional Responsibilities of an AVP: Day-to-day focus is on resolution of complex problems or transactions, where expertise is required to interpret against policies, guidelines or processes Role at this level usually has full ownership for one or more processes, reports, procedures or products, and may also be considered analytical or procedural experts representing a unit or team on cross-function process or project deliverables. Experience Criteria of an AVP: Roles at this level typically require an individual emerging as an expert in a specific skill set, business area or product who remains focused primarily on daily execution.Hong Kong Exchanges and Clearing Limited (HKEX) is a publicly-traded company (HKEX Stock Code:388) and one of the world's leading global exchange groups, offering a range of equity, derivative, commodity, fixed income and other financial markets, products and services, including the London Metals Exchange.As a superconnector and gateway between East and West, HKEX facilitates the two-way flow of capital, ideas and dialogue between China and the rest of world, through
Network Security Specialist
The London Metal Exchange
Senior Network Security Specialist - Shift Pattern: Standard 40 Hour Week (United Kingdom), Scheduled Weekly Hours: 40, Corporate Grade: D - Assistant Vice President. Reporting Line: (UK Division) Information Technology. Location: UK - London. Worker Type: Permanent. About the London Metal Exchange: The London Metal Exchange (LME) is the world centre for industrial metals trading. Most of the world's global non-ferrous futures business is conducted on the LME's three trading platforms totalling $21 trillion, 191 million lots and 4 billion tonnes notional with a market open interest high of 2.1 million lots in 2025. The metals community uses the LME, an HKEX Group company, as a venue to transfer or take on price risk, as a physical market of last resort and as the provider of transparent global reference prices. Overall Purpose of Role: As a Network Security Specialist, you will help design, implement and govern the network security controls that protect our modern, high performance enterprise network. You will take a hands on role in shaping the network security roadmap, defining security policies and standards that drive the adoption of Zero Trust and micro segmentation across the organisation. Working within the Connectivity Engineering Team, you will collaborate closely with Information Security, Platform, Infrastructure and Application teams to ensure security is embedded by design. Your expertise will be applied across on premises, cloud, and containerised environments, ensuring consistent and robust protection across all connectivity layers. You will also support the organisation's LAN, WAN, Campus and Data Centre network services, ensuring reliability, resilience and high performance. You will maintain and develop core network standards across related systems, coordinate network activities across multiple technology projects, contribute deep technical expertise and produce both high and low level designs. As a subject matter expert, you will also provide 3rd line escalation support when required. This role reports directly to the Network Manager and may include participation in an on call rota, as well as occasional evening and weekend work. TOIL or overtime compensation will be available. Responsibilities Design, implement and maintain enterprise network security controls including firewalls, proxies and secure access services aligned to business and regulatory requirements. Act as the technical authority for Fortinet, PaloAltoNetworks and Zscaler platforms. Ensure security policies are consistently enforced across data centre, campus, cloud and hybrid environments. Lead complex troubleshooting of network security issues, balancing security, performance and availability. Help to define the network security roadmap, aligned with wider technology and security strategies. Design and evolve Zero Trust network architectures, including identity aware access and least privilege principles. Define and implement micro segmentation strategies for traditional and containerised workloads. Provide design input into new initiatives (cloud adoption, Kubernetes/OpenShift, automation, AI platforms). Evaluate new security technologies and patterns, producing clear recommendations and design artefacts. Develop and maintain network security standards, patterns and policy definitions. Ensure adherence to security policies through design reviews, operational controls and continuous improvement. Partner with Information Security to translate policy into enforceable technical controls. Support audits, risk assessments and regulatory obligations by providing clear evidence of control implementation. Act as a technical leader within the Connectivity Engineering Team, mentoring engineers and setting best practice. Work closely with Infrastructure, Platform, and Application teams to embed security by design. Provide subject matter expertise to project teams and senior stakeholders. Desired Academic and Professional Qualifications The ideal candidate will have experience working within an ITIL governed environment and established infrastructure support frameworks. They will hold a bachelor's degree in Computer Science, Information Technology, or a related discipline, or possess an equivalent combination of education, technical training, and practical experience. Relevant industry certifications (e.g., PCNSE, NSE, CCNP Security, or CISSP) or substantial real world application are expected, while ITIL and/or PMI certification is considered an advantage. Required Knowledge and Level of Experience Minimum 5 years' experience operating in regulated, mission critical environments (e.g., financial services, critical infrastructure), with deep hands on expertise in enterprise network security engineering and large scale network infrastructure support. Experience defining and implementing network segmentation and micro segmentation strategies. Strong understanding of Zero Trust networking principles and identity aware access controls. Strong experience designing, implementing and optimizing firewall and proxy security policies. Deep hands on experience with PaloAltoNetworks (PAN OS, Panorama, policy design), Fortinet (FortiGate, FortiManager, FortiAnalyzer), and Zscaler (ZIA, ZPA, Zero Trust Exchange). Experience securing hybrid environments spanning on prem, cloud, and containerised platforms. Exposure to security controls and design for Kubernetes/OpenShift. Experience with automation and infrastructure as code approaches for deploying security controls. Wide exposure to routing, switching, load balancing and security architectures, with extensive operational and engineering experience. Strong grounding in core networking technologies and protocols, including TCP/IP, BGP, OSPF, VLANs, VRF, VPN, VXLAN, NAT, ACLs and DNS. Hands on experience with packet capture and network analytics and monitoring tools. Strong understanding of ITILv3 processes, including incident, problem and change management. Skills and Competencies Ability to translate high level security policies into practical, scalable technical designs. Strong analytical and diagnostic skills for assessing complex network and security environments. Competence in designing and optimizing security architectures, network policies and segmentation models. Ability to work across hybrid and distributed environments (on prem, cloud, container platforms). Strong capability to apply automation and IaC concepts to enhance security controls and operational efficiency. Ability to collaborate with cross functional teams in highly regulated, high availability environments. Methodical working approach, aligned to ITILv3 best practices with proven ability to implement processes. Willingness to challenge existing approaches and drive change. Strong attention to detail with a focus on operational excellence. Comfortable working under pressure, with changing priorities. A strong delivery mindset, setting and achieving realistic and timely execution of project deliverables across the portfolio. Personal Qualities Strong communicator with the ability to engage effectively with engineers, architects and senior management. Pragmatic and security focused, balancing robust controls with delivery oriented execution. Strategic thinker with a hands on approach, comfortable navigating fast paced and evolving technology landscapes. Analytical, detail driven and process oriented, able to translate complexity into clear actions and documentation. Skilled at influencing, persuading and guiding others toward the best technical and business outcomes. Collaborative team player and leader, with strong interpersonal skills and a passion for mentoring and developing others. Adaptable and dependable, able to work effectively across organisational boundaries and understand wider business drivers. Customer focused and responsive, demonstrating a strong sense of urgency and commitment to service. Innovative and proactive, continually seeking improvements in problem solving, processes, and solution design. Equal Opportunity Employer The LME is committed to creating a diverse environment and is proud to be an equal opportunity employer. In recruiting for our teams, we welcome the unique contributions that you can bring in terms of education, ethnicity, race, sex, gender identity, expression & reassignment, nation of origin, age, languages spoken, colour, religion, disability, sexual orientation and beliefs. In doing so, we want every LME employee to feel our commitment to showing respect for all and encouraging open collaboration and communication.
01/08/2026
Full time
Senior Network Security Specialist - Shift Pattern: Standard 40 Hour Week (United Kingdom), Scheduled Weekly Hours: 40, Corporate Grade: D - Assistant Vice President. Reporting Line: (UK Division) Information Technology. Location: UK - London. Worker Type: Permanent. About the London Metal Exchange: The London Metal Exchange (LME) is the world centre for industrial metals trading. Most of the world's global non-ferrous futures business is conducted on the LME's three trading platforms totalling $21 trillion, 191 million lots and 4 billion tonnes notional with a market open interest high of 2.1 million lots in 2025. The metals community uses the LME, an HKEX Group company, as a venue to transfer or take on price risk, as a physical market of last resort and as the provider of transparent global reference prices. Overall Purpose of Role: As a Network Security Specialist, you will help design, implement and govern the network security controls that protect our modern, high performance enterprise network. You will take a hands on role in shaping the network security roadmap, defining security policies and standards that drive the adoption of Zero Trust and micro segmentation across the organisation. Working within the Connectivity Engineering Team, you will collaborate closely with Information Security, Platform, Infrastructure and Application teams to ensure security is embedded by design. Your expertise will be applied across on premises, cloud, and containerised environments, ensuring consistent and robust protection across all connectivity layers. You will also support the organisation's LAN, WAN, Campus and Data Centre network services, ensuring reliability, resilience and high performance. You will maintain and develop core network standards across related systems, coordinate network activities across multiple technology projects, contribute deep technical expertise and produce both high and low level designs. As a subject matter expert, you will also provide 3rd line escalation support when required. This role reports directly to the Network Manager and may include participation in an on call rota, as well as occasional evening and weekend work. TOIL or overtime compensation will be available. Responsibilities Design, implement and maintain enterprise network security controls including firewalls, proxies and secure access services aligned to business and regulatory requirements. Act as the technical authority for Fortinet, PaloAltoNetworks and Zscaler platforms. Ensure security policies are consistently enforced across data centre, campus, cloud and hybrid environments. Lead complex troubleshooting of network security issues, balancing security, performance and availability. Help to define the network security roadmap, aligned with wider technology and security strategies. Design and evolve Zero Trust network architectures, including identity aware access and least privilege principles. Define and implement micro segmentation strategies for traditional and containerised workloads. Provide design input into new initiatives (cloud adoption, Kubernetes/OpenShift, automation, AI platforms). Evaluate new security technologies and patterns, producing clear recommendations and design artefacts. Develop and maintain network security standards, patterns and policy definitions. Ensure adherence to security policies through design reviews, operational controls and continuous improvement. Partner with Information Security to translate policy into enforceable technical controls. Support audits, risk assessments and regulatory obligations by providing clear evidence of control implementation. Act as a technical leader within the Connectivity Engineering Team, mentoring engineers and setting best practice. Work closely with Infrastructure, Platform, and Application teams to embed security by design. Provide subject matter expertise to project teams and senior stakeholders. Desired Academic and Professional Qualifications The ideal candidate will have experience working within an ITIL governed environment and established infrastructure support frameworks. They will hold a bachelor's degree in Computer Science, Information Technology, or a related discipline, or possess an equivalent combination of education, technical training, and practical experience. Relevant industry certifications (e.g., PCNSE, NSE, CCNP Security, or CISSP) or substantial real world application are expected, while ITIL and/or PMI certification is considered an advantage. Required Knowledge and Level of Experience Minimum 5 years' experience operating in regulated, mission critical environments (e.g., financial services, critical infrastructure), with deep hands on expertise in enterprise network security engineering and large scale network infrastructure support. Experience defining and implementing network segmentation and micro segmentation strategies. Strong understanding of Zero Trust networking principles and identity aware access controls. Strong experience designing, implementing and optimizing firewall and proxy security policies. Deep hands on experience with PaloAltoNetworks (PAN OS, Panorama, policy design), Fortinet (FortiGate, FortiManager, FortiAnalyzer), and Zscaler (ZIA, ZPA, Zero Trust Exchange). Experience securing hybrid environments spanning on prem, cloud, and containerised platforms. Exposure to security controls and design for Kubernetes/OpenShift. Experience with automation and infrastructure as code approaches for deploying security controls. Wide exposure to routing, switching, load balancing and security architectures, with extensive operational and engineering experience. Strong grounding in core networking technologies and protocols, including TCP/IP, BGP, OSPF, VLANs, VRF, VPN, VXLAN, NAT, ACLs and DNS. Hands on experience with packet capture and network analytics and monitoring tools. Strong understanding of ITILv3 processes, including incident, problem and change management. Skills and Competencies Ability to translate high level security policies into practical, scalable technical designs. Strong analytical and diagnostic skills for assessing complex network and security environments. Competence in designing and optimizing security architectures, network policies and segmentation models. Ability to work across hybrid and distributed environments (on prem, cloud, container platforms). Strong capability to apply automation and IaC concepts to enhance security controls and operational efficiency. Ability to collaborate with cross functional teams in highly regulated, high availability environments. Methodical working approach, aligned to ITILv3 best practices with proven ability to implement processes. Willingness to challenge existing approaches and drive change. Strong attention to detail with a focus on operational excellence. Comfortable working under pressure, with changing priorities. A strong delivery mindset, setting and achieving realistic and timely execution of project deliverables across the portfolio. Personal Qualities Strong communicator with the ability to engage effectively with engineers, architects and senior management. Pragmatic and security focused, balancing robust controls with delivery oriented execution. Strategic thinker with a hands on approach, comfortable navigating fast paced and evolving technology landscapes. Analytical, detail driven and process oriented, able to translate complexity into clear actions and documentation. Skilled at influencing, persuading and guiding others toward the best technical and business outcomes. Collaborative team player and leader, with strong interpersonal skills and a passion for mentoring and developing others. Adaptable and dependable, able to work effectively across organisational boundaries and understand wider business drivers. Customer focused and responsive, demonstrating a strong sense of urgency and commitment to service. Innovative and proactive, continually seeking improvements in problem solving, processes, and solution design. Equal Opportunity Employer The LME is committed to creating a diverse environment and is proud to be an equal opportunity employer. In recruiting for our teams, we welcome the unique contributions that you can bring in terms of education, ethnicity, race, sex, gender identity, expression & reassignment, nation of origin, age, languages spoken, colour, religion, disability, sexual orientation and beliefs. In doing so, we want every LME employee to feel our commitment to showing respect for all and encouraging open collaboration and communication.
Senior Security Engineer
Copper.co
Since being founded in 2018, Copper has been building the standard for institutional digital asset infrastructure with a focus on custody, collateral management, and prime services. Led by Amar Kuchinad, Copper's Global CEO, the firm provides a comprehensive suite of custody, trading and settlement solutions that reduce counterparty risk and bring greater capital and operational efficiency to digital asset markets. At the heart of Copper's offering is Multi-Party Computation (MPC) technology - the gold standard in secure custody. Copper's multi-award winning custody system is unique in that it can be connected to centralised exchanges, DeFi applications and even staking pools without the assets leaving the custody. Built on top of this state-of-the-art custody, ClearLoop is the first solution in the market that overcomes a growing industry challenge; counterparty risk with exchanges. This solution underpins a full prime services offering, connecting global exchanges, and enabling customers to trade and settle directly from the safety of their MPC-secured wallets. By reducing settlement time for transfers to a few milliseconds (without blockchain network dependency) and offering enhanced security measures, ClearLoop is rapidly reshaping the way asset managers trade and manage capital. In addition to industry-leading security certifications, Copper has one of the strongest insurance coverages in the industry from an A+ rated insurer, positioning the firm as the partner of choice for institutions seeking to safeguard their assets. Department Purpose We aim to achieve a balance between corporate culture and start-up culture, and at the same time be close to product solutions. Therefore, we divide our department into small self-sufficient teams that can make decisions on their own. This applies to all stages of product production: from conceptualisation to architecture, to build, to release, to iteration and support. Team Purpose Copper's Information Security department keep the business' systems and network resources secure and protect the company, employees, and client data.The Infrastructure Security team focuses on providing objective oversight and validation of Copper's infrastructure security controls and processes. Role Purpose As a Senior Security Engineer, you will play a key role in strengthening Copper's security posture through the design, implementation, and continuous improvement of security controls, identity services, cloud security solutions, and governance processes. Working closely with technology, infrastructure, and business teams, you will lead initiatives to protect Copper's systems, data, and digital assets. You will be responsible for enhancing our security capabilities across identity and access management, cloud platforms, endpoint security, vulnerability management, automation, and security monitoring, ensuring security controls remain effective, scalable, and aligned to business and regulatory requirements. This is a hands-on technical role requiring strong security engineering expertise, a proactive approach to risk reduction, and the ability to influence security best practices across the organisation. Key Responsibilities: Identity and Access Management (IAM) Design, implement, and maintain Identity and Access Management (IAM) solutions, including Microsoft Entra ID, Entra Identity Governance, AWS IAM Identity Centre, and supporting authentication and authorisation services. Manage permission settings and access controls to ensure secure and efficient user access to company resources. Security Systems Configuration and Analysis Ensure security systems are configured according to specified requirements and industry best practices. Assess security configurations across cloud and endpoint platforms, benchmark controls against CIS, STIG, SOC2, and internal security standards, and drive remediation activities to improve security posture. Security Solution Inventory and Maintenance Own the administration, configuration, and lifecycle management of security platforms across cloud, endpoint, identity, and network domains. Maintain accurate inventories of security tooling and integrations. Evaluate new technologies and recommend enhancements to improve security effectiveness and operational efficiency. Partner with vendors and internal stakeholders to troubleshoot issues and maximise platform value. Security Practices and Technical Advice Act as a trusted security advisor to technical teams, business stakeholders, and senior leadership, providing guidance on security architecture, risk reduction, and regulatory compliance. Provide technical advice on security measures and potential enhancements. Create or update policies and procedures to align with industry regulations and best practices. Security Risk Management Manage vulnerability management activities across cloud infrastructure, endpoints, SaaS applications, and identity platforms using tools such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports and metrics demonstrating security posture, control effectiveness, and remediation progress. Scripting and Automation Develop and maintain automation solutions using PowerShell, Python, Bash, and APIs to improve operational efficiency and reduce manual effort. Design, implement, and support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience: Microsoft Entra ID / Identity Governance: Extensive experience administering Microsoft Entra ID, including Conditional Access, Identity Protection, Privileged Identity Management (PIM), Entitlement Management, Access Reviews, Lifecycle Workflows, and application integrations. Experience of implementing governance controls within hybrid Microsoft and AWS environments. AWS Security: Experience securing AWS environments using services such as IAM, Security Hub, GuardDuty, CloudTrail, Config, AWS Organizations, Route 53, and Key Management Service (KMS). Microsoft 365 and Azure Security: Strong experience with Microsoft security technologies including Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Intune, Entra ID, Azure Security services, and Information Protection capabilities. Scripting and Automation: Demonstrated ability in using scripting languages like PowerShell, Bash, and Python to automate security tasks, streamline processes, and enhance system efficiencies. System and Application Hardening: Skilled in the assessment and hardening of operating systems and SaaS applications, adhering to CIS and STIG standards. This includes a comprehensive understanding of the best practices in system security and the application of these practices to ensure robust defence against cyber threats. SaaS Security: Experience securing and administering SaaS platforms through SSO, SCIM provisioning, Conditional Access, entitlement governance, and lifecycle management. Endpoint Security: Experience managing endpoint security solutions across Windows and macOS environments, including EDR, device hardening, application control, and compliance monitoring. Network Perimeter Security - Experience securing enterprise networks using firewalls, Web Application Firewalls (WAF), Secure Web Gateways (SWG), Zero Trust Network Access (ZTNA), DNS security solutions, and cloud-native network controls. Secure Web Gateway Management: Experience in configuring and managing Secure Web Gateways, such as Zscaler, iBoss, and Netskope, to protect against web-based threats and enforce company security policies. Binary Execution Control: Experience with solutions like AppLocker, Defender Application Control, Santa, ThreatLocker across both Mac and Windows endpoints Why Copper? At Copper, wekeep innovation, openness, and curiosity at thecentreofeverythingwe do. Here, boldideas get the spotlight, learning is constant, and diversity shapes our team from the ground up. Jump into a fast-moving, dynamic team that loves a challenge and knows how to have fun along the way.Collaboration is just as important as results-you'llbe surrounded bysmart,drivencolleagues in London and across our APAC, Switzerland, UAE, and US offices. Hybrid working model - we believe in the value of bringing people together and at the same time we embrace theadaptability offlexibly working. Diversity and inclusionmatterto us-they'rewoven intoCopperlife.From employee-led groups like Women at Copper to a committee focused on community and wellbeing,you'llhave a network that supports you from day one. Everyonevoice matters. Ifyou'relooking toramp up your career, orkeen todo something new in your field,with us,you'llkeep moving forward. Ready to make your mark, keep growing, and join a supportive, dynamic team? Copper's the place. . click apply for full job details
01/08/2026
Full time
Since being founded in 2018, Copper has been building the standard for institutional digital asset infrastructure with a focus on custody, collateral management, and prime services. Led by Amar Kuchinad, Copper's Global CEO, the firm provides a comprehensive suite of custody, trading and settlement solutions that reduce counterparty risk and bring greater capital and operational efficiency to digital asset markets. At the heart of Copper's offering is Multi-Party Computation (MPC) technology - the gold standard in secure custody. Copper's multi-award winning custody system is unique in that it can be connected to centralised exchanges, DeFi applications and even staking pools without the assets leaving the custody. Built on top of this state-of-the-art custody, ClearLoop is the first solution in the market that overcomes a growing industry challenge; counterparty risk with exchanges. This solution underpins a full prime services offering, connecting global exchanges, and enabling customers to trade and settle directly from the safety of their MPC-secured wallets. By reducing settlement time for transfers to a few milliseconds (without blockchain network dependency) and offering enhanced security measures, ClearLoop is rapidly reshaping the way asset managers trade and manage capital. In addition to industry-leading security certifications, Copper has one of the strongest insurance coverages in the industry from an A+ rated insurer, positioning the firm as the partner of choice for institutions seeking to safeguard their assets. Department Purpose We aim to achieve a balance between corporate culture and start-up culture, and at the same time be close to product solutions. Therefore, we divide our department into small self-sufficient teams that can make decisions on their own. This applies to all stages of product production: from conceptualisation to architecture, to build, to release, to iteration and support. Team Purpose Copper's Information Security department keep the business' systems and network resources secure and protect the company, employees, and client data.The Infrastructure Security team focuses on providing objective oversight and validation of Copper's infrastructure security controls and processes. Role Purpose As a Senior Security Engineer, you will play a key role in strengthening Copper's security posture through the design, implementation, and continuous improvement of security controls, identity services, cloud security solutions, and governance processes. Working closely with technology, infrastructure, and business teams, you will lead initiatives to protect Copper's systems, data, and digital assets. You will be responsible for enhancing our security capabilities across identity and access management, cloud platforms, endpoint security, vulnerability management, automation, and security monitoring, ensuring security controls remain effective, scalable, and aligned to business and regulatory requirements. This is a hands-on technical role requiring strong security engineering expertise, a proactive approach to risk reduction, and the ability to influence security best practices across the organisation. Key Responsibilities: Identity and Access Management (IAM) Design, implement, and maintain Identity and Access Management (IAM) solutions, including Microsoft Entra ID, Entra Identity Governance, AWS IAM Identity Centre, and supporting authentication and authorisation services. Manage permission settings and access controls to ensure secure and efficient user access to company resources. Security Systems Configuration and Analysis Ensure security systems are configured according to specified requirements and industry best practices. Assess security configurations across cloud and endpoint platforms, benchmark controls against CIS, STIG, SOC2, and internal security standards, and drive remediation activities to improve security posture. Security Solution Inventory and Maintenance Own the administration, configuration, and lifecycle management of security platforms across cloud, endpoint, identity, and network domains. Maintain accurate inventories of security tooling and integrations. Evaluate new technologies and recommend enhancements to improve security effectiveness and operational efficiency. Partner with vendors and internal stakeholders to troubleshoot issues and maximise platform value. Security Practices and Technical Advice Act as a trusted security advisor to technical teams, business stakeholders, and senior leadership, providing guidance on security architecture, risk reduction, and regulatory compliance. Provide technical advice on security measures and potential enhancements. Create or update policies and procedures to align with industry regulations and best practices. Security Risk Management Manage vulnerability management activities across cloud infrastructure, endpoints, SaaS applications, and identity platforms using tools such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports and metrics demonstrating security posture, control effectiveness, and remediation progress. Scripting and Automation Develop and maintain automation solutions using PowerShell, Python, Bash, and APIs to improve operational efficiency and reduce manual effort. Design, implement, and support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience: Microsoft Entra ID / Identity Governance: Extensive experience administering Microsoft Entra ID, including Conditional Access, Identity Protection, Privileged Identity Management (PIM), Entitlement Management, Access Reviews, Lifecycle Workflows, and application integrations. Experience of implementing governance controls within hybrid Microsoft and AWS environments. AWS Security: Experience securing AWS environments using services such as IAM, Security Hub, GuardDuty, CloudTrail, Config, AWS Organizations, Route 53, and Key Management Service (KMS). Microsoft 365 and Azure Security: Strong experience with Microsoft security technologies including Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Intune, Entra ID, Azure Security services, and Information Protection capabilities. Scripting and Automation: Demonstrated ability in using scripting languages like PowerShell, Bash, and Python to automate security tasks, streamline processes, and enhance system efficiencies. System and Application Hardening: Skilled in the assessment and hardening of operating systems and SaaS applications, adhering to CIS and STIG standards. This includes a comprehensive understanding of the best practices in system security and the application of these practices to ensure robust defence against cyber threats. SaaS Security: Experience securing and administering SaaS platforms through SSO, SCIM provisioning, Conditional Access, entitlement governance, and lifecycle management. Endpoint Security: Experience managing endpoint security solutions across Windows and macOS environments, including EDR, device hardening, application control, and compliance monitoring. Network Perimeter Security - Experience securing enterprise networks using firewalls, Web Application Firewalls (WAF), Secure Web Gateways (SWG), Zero Trust Network Access (ZTNA), DNS security solutions, and cloud-native network controls. Secure Web Gateway Management: Experience in configuring and managing Secure Web Gateways, such as Zscaler, iBoss, and Netskope, to protect against web-based threats and enforce company security policies. Binary Execution Control: Experience with solutions like AppLocker, Defender Application Control, Santa, ThreatLocker across both Mac and Windows endpoints Why Copper? At Copper, wekeep innovation, openness, and curiosity at thecentreofeverythingwe do. Here, boldideas get the spotlight, learning is constant, and diversity shapes our team from the ground up. Jump into a fast-moving, dynamic team that loves a challenge and knows how to have fun along the way.Collaboration is just as important as results-you'llbe surrounded bysmart,drivencolleagues in London and across our APAC, Switzerland, UAE, and US offices. Hybrid working model - we believe in the value of bringing people together and at the same time we embrace theadaptability offlexibly working. Diversity and inclusionmatterto us-they'rewoven intoCopperlife.From employee-led groups like Women at Copper to a committee focused on community and wellbeing,you'llhave a network that supports you from day one. Everyonevoice matters. Ifyou'relooking toramp up your career, orkeen todo something new in your field,with us,you'llkeep moving forward. Ready to make your mark, keep growing, and join a supportive, dynamic team? Copper's the place. . click apply for full job details
Senior Security Engineer
SLAMcore
Since being founded in 2018, Copper has been building the standard for institutional digital asset infrastructure with a focus on custody, collateral management, and prime services. Led by Amar Kuchinad, Copper's Global CEO, the firm provides a comprehensive suite of custody, trading and settlement solutions that reduce counterparty risk and bring greater capital and operational efficiency to digital asset markets. At the heart of Copper's offering is Multi-Party Computation (MPC) technology - the gold standard in secure custody. Copper's multi-award winning custody system is unique in that it can be connected to centralised exchanges, DeFi applications and even staking pools without the assets leaving the custody. Built on top of this state-of-the-art custody, ClearLoop is the first solution in the market that overcomes a growing industry challenge; counterparty risk with exchanges. This solution underpins a full prime services offering, connecting global exchanges, and enabling customers to trade and settle directly from the safety of their MPC-secured wallets. By reducing settlement time for transfers to a few milliseconds (without blockchain network dependency) and offering enhanced security measures, ClearLoop is rapidly reshaping the way asset managers trade and manage capital. In addition to industry-leading security certifications, Copper has one of the strongest insurance coverages in the industry from an A+ rated insurer, positioning the firm as the partner of choice for institutions seeking to safeguard their assets. Department Purpose We aim to achieve a balance between corporate culture and start-up culture, and at the same time be close to product solutions. Therefore, we divide our department into small self-sufficient teams that can make decisions on their own. This applies to all stages of product production: from conceptualisation to architecture, to build, to release, to iteration and support. Team Purpose Copper's Information Security department keep the business' systems and network resources secure and protect the company, employees, and client data. The Infrastructure Security team focuses on providing objective oversight and validation of Copper's infrastructure security controls and processes. Role Purpose As a Senior Security Engineer, you will play a key role in strengthening Copper's security posture through the design, implementation, and continuous improvement of security controls, identity services, cloud security solutions, and governance processes. Working closely with technology, infrastructure, and business teams, you will lead initiatives to protect Copper's systems, data, and digital assets. You will be responsible for enhancing our security capabilities across identity and access management, cloud platforms, endpoint security, vulnerability management, automation, and security monitoring, ensuring security controls remain effective, scalable, and aligned to business and regulatory requirements. This is a hands on technical role requiring strong security engineering expertise, a proactive approach to risk reduction, and the ability to influence security best practices across the organisation. Key Responsibilities Identity and Access Management (IAM) Design, implement, and maintain Identity and Access Management (IAM) solutions, including Microsoft Entra ID, Entra Identity Governance, AWS IAM Identity Centre, and supporting authentication and authorisation services. Manage permission settings and access controls to ensure secure and efficient user access to company resources. Security Systems Configuration and Analysis Ensure security systems are configured according to specified requirements and industry best practices. Assess security configurations across cloud and endpoint platforms, benchmark controls against CIS, STIG, SOC2, and internal security standards, and drive remediation activities to improve security posture. Security Solution Inventory and Maintenance Own the administration, configuration, and lifecycle management of security platforms across cloud, endpoint, identity, and network domains. Maintain accurate inventories of security tooling and integrations. Evaluate new technologies and recommend enhancements to improve security effectiveness and operational efficiency. Partner with vendors and internal stakeholders to troubleshoot issues and maximise platform value. Security Practices and Technical Advice Act as a trusted security advisor to technical teams, business stakeholders, and senior leadership, providing guidance on security architecture, risk reduction, and regulatory compliance. Provide technical advice on security measures and potential enhancements. Create or update policies and procedures to align with industry regulations and best practices. Security Risk Management Manage vulnerability management activities across cloud infrastructure, endpoints, SaaS applications, and identity platforms using tools such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports and metrics demonstrating security posture, control effectiveness, and remediation progress. Scripting and Automation Develop and maintain automation solutions using PowerShell, Python, Bash, and APIs to improve operational efficiency and reduce manual effort. Design, implement, and support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience Essential Microsoft Entra ID / Identity Governance: Extensive experience administering Microsoft Entra ID, including Conditional Access, Identity Protection, Privileged Identity Management (PIM), Entitlement Management, Access Reviews, Lifecycle Workflows, and application integrations. Experience of implementing governance controls within hybrid Microsoft and AWS environments. AWS Security: Experience securing AWS environments using services such as IAM, Security Hub, GuardDuty, CloudTrail, Config, AWS Organizations, Route 53, and Key Management Service (KMS). Microsoft 365 and Azure Security: Strong experience with Microsoft security technologies including Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Intune, Entra ID, Azure Security services, and Information Protection capabilities. Scripting and Automation: Demonstrated ability in using scripting languages like PowerShell, Bash, and Python to automate security tasks, streamline processes, and enhance system efficiencies. System and Application Hardening: Skilled in the assessment and hardening of operating systems and SaaS applications, adhering to CIS and STIG standards. This includes a comprehensive understanding of the best practices in system security and the application of these practices to ensure robust defence against cyber threats. SaaS Security: Experience securing and administering SaaS platforms through SSO, SCIM provisioning, Conditional Access, entitlement governance, and lifecycle management. Endpoint Security: Experience managing endpoint security solutions across Windows and macOS environments, including EDR, device hardening, application control, and compliance monitoring. Network Perimeter Security - Experience securing enterprise networks using firewalls, Web Application Firewalls (WAF), Secure Web Gateways (SWG), Zero Trust Network Access (ZTNA), DNS security solutions, and cloud-native network controls. Desirable Secure Web Gateway Management: Experience in configuring and managing Secure Web Gateways, such as Zscaler, iBoss, and Netskope, to protect against web-based threats and enforce company security policies. Binary Execution Control: Experience with solutions like AppLocker, Defender Application Control, Santa, ThreatLocker across both Mac and Windows endpoints Why Copper? At Copper, we keep innovation, openness, and curiosity at the centre of everything we do. Here, bold ideas get the spotlight, learning is constant, and diversity shapes our team from the ground up. Jump into a fast-moving, dynamic team that loves a challenge and knows how to have fun along the way. Collaboration is just as important as results-you'll be surrounded by smart, driven colleagues in London and across our APAC, Switzerland, UAE, and US offices. Hybrid working model - we believe in the value of bringing people together and at the same time we embrace the adaptability of flexibly working. Diversity and inclusion matter to us - they're woven into Copper life. From employee-led groups like Women at Copper to a committee focused on community and wellbeing, you'll have a network that supports you from day one. Everyone voice matters. If you're looking to ramp up your career, or keen to do something new in your field, with us, you'll keep moving forward. Ready to make your mark, keep growing, and join a supportive, dynamic team? Copper's the place. . click apply for full job details
30/07/2026
Full time
Since being founded in 2018, Copper has been building the standard for institutional digital asset infrastructure with a focus on custody, collateral management, and prime services. Led by Amar Kuchinad, Copper's Global CEO, the firm provides a comprehensive suite of custody, trading and settlement solutions that reduce counterparty risk and bring greater capital and operational efficiency to digital asset markets. At the heart of Copper's offering is Multi-Party Computation (MPC) technology - the gold standard in secure custody. Copper's multi-award winning custody system is unique in that it can be connected to centralised exchanges, DeFi applications and even staking pools without the assets leaving the custody. Built on top of this state-of-the-art custody, ClearLoop is the first solution in the market that overcomes a growing industry challenge; counterparty risk with exchanges. This solution underpins a full prime services offering, connecting global exchanges, and enabling customers to trade and settle directly from the safety of their MPC-secured wallets. By reducing settlement time for transfers to a few milliseconds (without blockchain network dependency) and offering enhanced security measures, ClearLoop is rapidly reshaping the way asset managers trade and manage capital. In addition to industry-leading security certifications, Copper has one of the strongest insurance coverages in the industry from an A+ rated insurer, positioning the firm as the partner of choice for institutions seeking to safeguard their assets. Department Purpose We aim to achieve a balance between corporate culture and start-up culture, and at the same time be close to product solutions. Therefore, we divide our department into small self-sufficient teams that can make decisions on their own. This applies to all stages of product production: from conceptualisation to architecture, to build, to release, to iteration and support. Team Purpose Copper's Information Security department keep the business' systems and network resources secure and protect the company, employees, and client data. The Infrastructure Security team focuses on providing objective oversight and validation of Copper's infrastructure security controls and processes. Role Purpose As a Senior Security Engineer, you will play a key role in strengthening Copper's security posture through the design, implementation, and continuous improvement of security controls, identity services, cloud security solutions, and governance processes. Working closely with technology, infrastructure, and business teams, you will lead initiatives to protect Copper's systems, data, and digital assets. You will be responsible for enhancing our security capabilities across identity and access management, cloud platforms, endpoint security, vulnerability management, automation, and security monitoring, ensuring security controls remain effective, scalable, and aligned to business and regulatory requirements. This is a hands on technical role requiring strong security engineering expertise, a proactive approach to risk reduction, and the ability to influence security best practices across the organisation. Key Responsibilities Identity and Access Management (IAM) Design, implement, and maintain Identity and Access Management (IAM) solutions, including Microsoft Entra ID, Entra Identity Governance, AWS IAM Identity Centre, and supporting authentication and authorisation services. Manage permission settings and access controls to ensure secure and efficient user access to company resources. Security Systems Configuration and Analysis Ensure security systems are configured according to specified requirements and industry best practices. Assess security configurations across cloud and endpoint platforms, benchmark controls against CIS, STIG, SOC2, and internal security standards, and drive remediation activities to improve security posture. Security Solution Inventory and Maintenance Own the administration, configuration, and lifecycle management of security platforms across cloud, endpoint, identity, and network domains. Maintain accurate inventories of security tooling and integrations. Evaluate new technologies and recommend enhancements to improve security effectiveness and operational efficiency. Partner with vendors and internal stakeholders to troubleshoot issues and maximise platform value. Security Practices and Technical Advice Act as a trusted security advisor to technical teams, business stakeholders, and senior leadership, providing guidance on security architecture, risk reduction, and regulatory compliance. Provide technical advice on security measures and potential enhancements. Create or update policies and procedures to align with industry regulations and best practices. Security Risk Management Manage vulnerability management activities across cloud infrastructure, endpoints, SaaS applications, and identity platforms using tools such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports and metrics demonstrating security posture, control effectiveness, and remediation progress. Scripting and Automation Develop and maintain automation solutions using PowerShell, Python, Bash, and APIs to improve operational efficiency and reduce manual effort. Design, implement, and support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience Essential Microsoft Entra ID / Identity Governance: Extensive experience administering Microsoft Entra ID, including Conditional Access, Identity Protection, Privileged Identity Management (PIM), Entitlement Management, Access Reviews, Lifecycle Workflows, and application integrations. Experience of implementing governance controls within hybrid Microsoft and AWS environments. AWS Security: Experience securing AWS environments using services such as IAM, Security Hub, GuardDuty, CloudTrail, Config, AWS Organizations, Route 53, and Key Management Service (KMS). Microsoft 365 and Azure Security: Strong experience with Microsoft security technologies including Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Intune, Entra ID, Azure Security services, and Information Protection capabilities. Scripting and Automation: Demonstrated ability in using scripting languages like PowerShell, Bash, and Python to automate security tasks, streamline processes, and enhance system efficiencies. System and Application Hardening: Skilled in the assessment and hardening of operating systems and SaaS applications, adhering to CIS and STIG standards. This includes a comprehensive understanding of the best practices in system security and the application of these practices to ensure robust defence against cyber threats. SaaS Security: Experience securing and administering SaaS platforms through SSO, SCIM provisioning, Conditional Access, entitlement governance, and lifecycle management. Endpoint Security: Experience managing endpoint security solutions across Windows and macOS environments, including EDR, device hardening, application control, and compliance monitoring. Network Perimeter Security - Experience securing enterprise networks using firewalls, Web Application Firewalls (WAF), Secure Web Gateways (SWG), Zero Trust Network Access (ZTNA), DNS security solutions, and cloud-native network controls. Desirable Secure Web Gateway Management: Experience in configuring and managing Secure Web Gateways, such as Zscaler, iBoss, and Netskope, to protect against web-based threats and enforce company security policies. Binary Execution Control: Experience with solutions like AppLocker, Defender Application Control, Santa, ThreatLocker across both Mac and Windows endpoints Why Copper? At Copper, we keep innovation, openness, and curiosity at the centre of everything we do. Here, bold ideas get the spotlight, learning is constant, and diversity shapes our team from the ground up. Jump into a fast-moving, dynamic team that loves a challenge and knows how to have fun along the way. Collaboration is just as important as results-you'll be surrounded by smart, driven colleagues in London and across our APAC, Switzerland, UAE, and US offices. Hybrid working model - we believe in the value of bringing people together and at the same time we embrace the adaptability of flexibly working. Diversity and inclusion matter to us - they're woven into Copper life. From employee-led groups like Women at Copper to a committee focused on community and wellbeing, you'll have a network that supports you from day one. Everyone voice matters. If you're looking to ramp up your career, or keen to do something new in your field, with us, you'll keep moving forward. Ready to make your mark, keep growing, and join a supportive, dynamic team? Copper's the place. . click apply for full job details

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board