IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a 'buy before build' environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years. Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget ). Key - 3rd party operational infrastructure vendor management - i.e management of managed service partners. Migration of Legacy VM based estates to SaaS and Cloud services platforms. Legacy tech to Azure knowledge/experience. Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
26/07/2026
Full time
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a 'buy before build' environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years. Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget ). Key - 3rd party operational infrastructure vendor management - i.e management of managed service partners. Migration of Legacy VM based estates to SaaS and Cloud services platforms. Legacy tech to Azure knowledge/experience. Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Xcede Recruitment Solutions is seeking an experienced Microsoft Security Engineer to join a high-profile cybersecurity programme in Greater London. This hands-on engineering role focuses on the design, implementation, and optimisation of security solutions across the Microsoft security ecosystem. The successful candidate will engineer enterprise-grade security solutions using Microsoft Defender, Sentinel, and Entra ID, and improve endpoint security posture. Experience in financial services or highly regulated environments is desirable.
24/07/2026
Full time
Xcede Recruitment Solutions is seeking an experienced Microsoft Security Engineer to join a high-profile cybersecurity programme in Greater London. This hands-on engineering role focuses on the design, implementation, and optimisation of security solutions across the Microsoft security ecosystem. The successful candidate will engineer enterprise-grade security solutions using Microsoft Defender, Sentinel, and Entra ID, and improve endpoint security posture. Experience in financial services or highly regulated environments is desirable.
Nomios' mission is to build a 'secure and connected' future. Organisations across Europe depend on us to help secure and connect their digital infrastructures. In support of our continued UK growth, we are seeking a Senior SOC Engineer to join our Security Operations team. This role presents a great opportunity to shape the direction of a modern, technology focused SOC that values engineering excellence, deep technical capability and a culture of innovation. You will work with a broad and diverse customer base that relies on Nomios to deliver meaningful and effective security outcomes. Your role as Senior SOC Engineer As a Senior SOC Engineer at Nomios, you'll lead the design, deployment, and ongoing improvement of the technologies that underpin our SOC, including SIEM, XDR, SOAR, scripting, and automation. From building custom log parsers and response workflows to developing platform architecture, you'll drive meaningful enhancements to our detection and response capabilities. You'll play a central role in security orchestration and automation, helping reduce time to detect and respond by refining playbooks and building intelligent workflows. You'll also lead customer onboarding in collaboration with SOC Operations, ensuring secure, efficient deployments aligned with our model. Working directly with SIEM/XDR platforms and custom tooling, you'll have access to dedicated SOC infrastructure: lab environments for malware analysis, detection testing, threat intel development, and proof of concepts. You'll be part of a high-performing team that values hands-on expertise, technical leadership, and continuous growth. Our SOC culture is built by engineers who've progressed through roles in security operations, threat intelligence, and engineering. You'll benefit from cyber ranges, training labs, and the freedom to shape your development path. As part of a leading MSSP, you'll gain exposure to a wide range of industries, from government and defence to healthcare, telecoms, legal, and manufacturing, broadening your knowledge of real-world security practices. Whether you're a seasoned Senior Engineer or ready to step up, this role offers ownership, impact, and the chance to help shape the mission. Key Responsibilities Build Mentor and guide SOC engineers and analysts, supporting their technical development and helping them grow within a high-performance team. Design, develop and maintain automation across key SOC workflows, improving efficiency, response speed and consistency. Create and manage log parsing and data normalisation across a variety of internal and external sources, ensuring high quality telemetry across the estate. Architect and implement SIEM and XDR environments tailored to both internal use and customer-facing deployments. Deploy, manage and continually enhance core SOC technologies, including SIEM, XDR, SOAR, vulnerability management and custom automation scripts, all supported by our dedicated in-house infrastructure and lab environments. Investigate Act as a senior escalation point during complex engineering incidents across both internal systems and managed customer environments. Work with the wider engineering team to document, maintain and improve internal wikis and deployment guides, ensuring consistent and high quality engineering delivery across the team. Improve Reporting to the Lead SOC Engineer, collaborate with the Head of Security Operations, on the ongoing development and execution of the SOC's engineering maturity roadmap. Continuously assess and deliver automation and process improvements, both internally and across customer environments, to enhance detection, response and operational efficiency. Apply lessons learned from incidents, threat intelligence and emerging attack techniques to refine and improve engineering output, ensuring the SOC remains agile, proactive and threat-driven. We hire result-orientated, smart, and high-energy individuals who bring a can-do attitude and a willingness to go the extra mile and deliver exceptional outcomes. You should be organised and rigorous, with excellent analytical skills. Good communication with customers and internal stakeholders is vital, as is the ability to work as part of a dynamic team. Required technical skills include: Expert Knowledge of SOAR - including developing custom automation and integrations. Preferred vendors: Palo Alto Cortex XSOAR, Logic Apps, Siemplify, Jupyter Notebooks Good Knowledge of Cloud Environments & Architecture - including developing custom automation and integrations via API with proficiency in at least one scripting language (preferably Python or GO). Preferred vendors: Azure, AWS, GCP Expert Knowledge of SIEM Architecture and Design - Including familiarity in SIEM deployment and architecture of at least one cloud environment (GCP, AWS, Azure, IBM). Preferred vendors: Microsoft Sentinel, Google SecOps, XSIAM Expert Knowledge of EDR/XDR - including configuration and deployment/maintenance. Preferred vendors: CrowdStrike, Microsoft Defender, Palo Alto XDR, SentinelOne Intermediate Knowledge of VM - including deployment, automation of reporting. Preferred vendors: Rapid 7, Tennable Intermediate Knowledge of CTI - including ingestion methodologies, and common ingestion and parsing methods (STIX/TAXII). Preferred vendors: Mandiant Additional requirements include: 3-5 years' experience working within a Security Operations Centre (SOC) as a security engineer. Proven experience in SOC automation, log source parsing and configuration of security toolsets. Fluent in English with excellent written and oral communication skills. Eligible for SC or DV clearance is required. Ability to use initiative and work independently. Strong team player. Job Specifics Location: This is a hybrid role, requiring attendance at our Basingstoke office (free hot & cold drinks, breakfast items, snacks, lunches, and regular takeaway Fridays are provided to all staff in the office!). Hours: Full-time, Monday-Friday, 9:00am-5:30pm Why would you choose to come and work with us? We invest in our people. You will get to work in a dynamic, fast-paced environment where you are free to use your initiative in support of our strategic objectives. You will work alongside high calibre sales, technical, and operational experts as part of a supportive, tight-knit team, within which every individual has an important part to play and makes a real difference. Nomios offers a highly competitive salary and commission scheme along with industry-leading benefits. Ready to make an impact? Apply now! Nomios is an equal opportunity employer and is committed to creating and sustaining an environment in which everyone is provided with an equal opportunity to grow and develop, and no individual will be unjustly discriminated against. This includes, but is not limited to, discrimination because of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion and belief, sex and sexual orientation.
24/07/2026
Full time
Nomios' mission is to build a 'secure and connected' future. Organisations across Europe depend on us to help secure and connect their digital infrastructures. In support of our continued UK growth, we are seeking a Senior SOC Engineer to join our Security Operations team. This role presents a great opportunity to shape the direction of a modern, technology focused SOC that values engineering excellence, deep technical capability and a culture of innovation. You will work with a broad and diverse customer base that relies on Nomios to deliver meaningful and effective security outcomes. Your role as Senior SOC Engineer As a Senior SOC Engineer at Nomios, you'll lead the design, deployment, and ongoing improvement of the technologies that underpin our SOC, including SIEM, XDR, SOAR, scripting, and automation. From building custom log parsers and response workflows to developing platform architecture, you'll drive meaningful enhancements to our detection and response capabilities. You'll play a central role in security orchestration and automation, helping reduce time to detect and respond by refining playbooks and building intelligent workflows. You'll also lead customer onboarding in collaboration with SOC Operations, ensuring secure, efficient deployments aligned with our model. Working directly with SIEM/XDR platforms and custom tooling, you'll have access to dedicated SOC infrastructure: lab environments for malware analysis, detection testing, threat intel development, and proof of concepts. You'll be part of a high-performing team that values hands-on expertise, technical leadership, and continuous growth. Our SOC culture is built by engineers who've progressed through roles in security operations, threat intelligence, and engineering. You'll benefit from cyber ranges, training labs, and the freedom to shape your development path. As part of a leading MSSP, you'll gain exposure to a wide range of industries, from government and defence to healthcare, telecoms, legal, and manufacturing, broadening your knowledge of real-world security practices. Whether you're a seasoned Senior Engineer or ready to step up, this role offers ownership, impact, and the chance to help shape the mission. Key Responsibilities Build Mentor and guide SOC engineers and analysts, supporting their technical development and helping them grow within a high-performance team. Design, develop and maintain automation across key SOC workflows, improving efficiency, response speed and consistency. Create and manage log parsing and data normalisation across a variety of internal and external sources, ensuring high quality telemetry across the estate. Architect and implement SIEM and XDR environments tailored to both internal use and customer-facing deployments. Deploy, manage and continually enhance core SOC technologies, including SIEM, XDR, SOAR, vulnerability management and custom automation scripts, all supported by our dedicated in-house infrastructure and lab environments. Investigate Act as a senior escalation point during complex engineering incidents across both internal systems and managed customer environments. Work with the wider engineering team to document, maintain and improve internal wikis and deployment guides, ensuring consistent and high quality engineering delivery across the team. Improve Reporting to the Lead SOC Engineer, collaborate with the Head of Security Operations, on the ongoing development and execution of the SOC's engineering maturity roadmap. Continuously assess and deliver automation and process improvements, both internally and across customer environments, to enhance detection, response and operational efficiency. Apply lessons learned from incidents, threat intelligence and emerging attack techniques to refine and improve engineering output, ensuring the SOC remains agile, proactive and threat-driven. We hire result-orientated, smart, and high-energy individuals who bring a can-do attitude and a willingness to go the extra mile and deliver exceptional outcomes. You should be organised and rigorous, with excellent analytical skills. Good communication with customers and internal stakeholders is vital, as is the ability to work as part of a dynamic team. Required technical skills include: Expert Knowledge of SOAR - including developing custom automation and integrations. Preferred vendors: Palo Alto Cortex XSOAR, Logic Apps, Siemplify, Jupyter Notebooks Good Knowledge of Cloud Environments & Architecture - including developing custom automation and integrations via API with proficiency in at least one scripting language (preferably Python or GO). Preferred vendors: Azure, AWS, GCP Expert Knowledge of SIEM Architecture and Design - Including familiarity in SIEM deployment and architecture of at least one cloud environment (GCP, AWS, Azure, IBM). Preferred vendors: Microsoft Sentinel, Google SecOps, XSIAM Expert Knowledge of EDR/XDR - including configuration and deployment/maintenance. Preferred vendors: CrowdStrike, Microsoft Defender, Palo Alto XDR, SentinelOne Intermediate Knowledge of VM - including deployment, automation of reporting. Preferred vendors: Rapid 7, Tennable Intermediate Knowledge of CTI - including ingestion methodologies, and common ingestion and parsing methods (STIX/TAXII). Preferred vendors: Mandiant Additional requirements include: 3-5 years' experience working within a Security Operations Centre (SOC) as a security engineer. Proven experience in SOC automation, log source parsing and configuration of security toolsets. Fluent in English with excellent written and oral communication skills. Eligible for SC or DV clearance is required. Ability to use initiative and work independently. Strong team player. Job Specifics Location: This is a hybrid role, requiring attendance at our Basingstoke office (free hot & cold drinks, breakfast items, snacks, lunches, and regular takeaway Fridays are provided to all staff in the office!). Hours: Full-time, Monday-Friday, 9:00am-5:30pm Why would you choose to come and work with us? We invest in our people. You will get to work in a dynamic, fast-paced environment where you are free to use your initiative in support of our strategic objectives. You will work alongside high calibre sales, technical, and operational experts as part of a supportive, tight-knit team, within which every individual has an important part to play and makes a real difference. Nomios offers a highly competitive salary and commission scheme along with industry-leading benefits. Ready to make an impact? Apply now! Nomios is an equal opportunity employer and is committed to creating and sustaining an environment in which everyone is provided with an equal opportunity to grow and develop, and no individual will be unjustly discriminated against. This includes, but is not limited to, discrimination because of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion and belief, sex and sexual orientation.
London, United Kingdom Posted on 20/07/2026 Engagement: Inside IR35 Start Date: ASAP Overview We are supporting a leading investment banking client in London who is seeking an experienced Cyber Technical Delivery Manager to join a large-scale Cyber Security Transformation Programme. This role will be responsible for the successful delivery of complex cyber security initiatives across multiple technology domains, including Identity & Access Management (IAM), Security Operations, Cloud Security, Vulnerability Management, Data Protection, and Regulatory Compliance. The successful candidate will act as the bridge between technical engineering teams, cyber security stakeholders, business leaders, and third party vendors, ensuring projects are delivered on time, within budget, and in line with regulatory and security requirements. Key Responsibilities Lead the end to end delivery of cyber security projects and workstreams. Develop and maintain project plans, milestones, RAID logs, budgets, and resource plans. Ensure delivery aligns with business objectives, security standards, and regulatory requirements. Manage dependencies across multiple technology and business teams. Drive project governance and reporting activities. Cyber Security Delivery Deliver initiatives across: Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with senior stakeholders across Cyber Security, Infrastructure, Cloud, Risk, Compliance, and Business Functions. Provide regular programme updates to senior management and governance forums. Manage relationships with third party suppliers and technology vendors. Facilitate workshops, steering committees, and technical review sessions. Identify, manage, and mitigate project risks and issues. Ensure compliance with internal security policies and regulatory frameworks. Support audit, risk, and compliance activities. Track and report programme KPIs and delivery metrics. Requirements Required Skills & Experience Cyber Security Experience Strong understanding of enterprise cyber security principles and controls. IAM and Access Governance PAM Solutions SIEM and Security Monitoring Vulnerability Management Data Protection Security Compliance Programmes Familiarity with security frameworks and standards such as: NIST ISO 27001 CIS Controls Cyber Essentials Regulatory requirements within Financial Services Technical Knowledge Good understanding of: Microsoft Azure AWS Active Directory / Entra ID Security Monitoring Platforms Identity Management Solutions Network and Infrastructure Security Ability to engage effectively with technical architects, engineers, and security specialists. Delivery Management Proven experience delivering complex technology or cyber programmes within large enterprise environments. Strong project and programme management experience. Experience managing multiple workstreams simultaneously. Excellent RAID management and governance skills. Strong budget and financial management experience. Previous experience working within Investment Banking, Banking, or Financial Services. Experience delivering cyber security transformation programmes. Experience operating within regulated environments. Strong stakeholder management skills with the ability to engage at Executive and C Level. Experience managing third party suppliers and system integrators. Experience with: Microsoft Sentinel Splunk SailPoint CyberArk Okta CrowdStrike Microsoft Defender Suite Knowledge of DevSecOps practices. Exposure to cloud migration and security transformation programmes. Experience supporting regulatory remediation initiatives. Qualifications & Certifications One or more of the following would be advantageous: PMP CISSP CISM CISA CRISC Personal Attributes Strong leadership and organisational skills. Excellent communication and presentation abilities. Ability to influence stakeholders at all levels. Strong analytical and problem solving mindset. Ability to operate effectively in fast paced, complex environments. Self motivated with a strong focus on delivery and outcomes. Successful delivery of cyber security projects and workstreams. Effective management of risks, issues, and dependencies. Timely implementation of security controls and technologies. Improved cyber security posture and compliance alignment. High quality governance reporting and stakeholder engagement.
23/07/2026
Full time
London, United Kingdom Posted on 20/07/2026 Engagement: Inside IR35 Start Date: ASAP Overview We are supporting a leading investment banking client in London who is seeking an experienced Cyber Technical Delivery Manager to join a large-scale Cyber Security Transformation Programme. This role will be responsible for the successful delivery of complex cyber security initiatives across multiple technology domains, including Identity & Access Management (IAM), Security Operations, Cloud Security, Vulnerability Management, Data Protection, and Regulatory Compliance. The successful candidate will act as the bridge between technical engineering teams, cyber security stakeholders, business leaders, and third party vendors, ensuring projects are delivered on time, within budget, and in line with regulatory and security requirements. Key Responsibilities Lead the end to end delivery of cyber security projects and workstreams. Develop and maintain project plans, milestones, RAID logs, budgets, and resource plans. Ensure delivery aligns with business objectives, security standards, and regulatory requirements. Manage dependencies across multiple technology and business teams. Drive project governance and reporting activities. Cyber Security Delivery Deliver initiatives across: Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with senior stakeholders across Cyber Security, Infrastructure, Cloud, Risk, Compliance, and Business Functions. Provide regular programme updates to senior management and governance forums. Manage relationships with third party suppliers and technology vendors. Facilitate workshops, steering committees, and technical review sessions. Identify, manage, and mitigate project risks and issues. Ensure compliance with internal security policies and regulatory frameworks. Support audit, risk, and compliance activities. Track and report programme KPIs and delivery metrics. Requirements Required Skills & Experience Cyber Security Experience Strong understanding of enterprise cyber security principles and controls. IAM and Access Governance PAM Solutions SIEM and Security Monitoring Vulnerability Management Data Protection Security Compliance Programmes Familiarity with security frameworks and standards such as: NIST ISO 27001 CIS Controls Cyber Essentials Regulatory requirements within Financial Services Technical Knowledge Good understanding of: Microsoft Azure AWS Active Directory / Entra ID Security Monitoring Platforms Identity Management Solutions Network and Infrastructure Security Ability to engage effectively with technical architects, engineers, and security specialists. Delivery Management Proven experience delivering complex technology or cyber programmes within large enterprise environments. Strong project and programme management experience. Experience managing multiple workstreams simultaneously. Excellent RAID management and governance skills. Strong budget and financial management experience. Previous experience working within Investment Banking, Banking, or Financial Services. Experience delivering cyber security transformation programmes. Experience operating within regulated environments. Strong stakeholder management skills with the ability to engage at Executive and C Level. Experience managing third party suppliers and system integrators. Experience with: Microsoft Sentinel Splunk SailPoint CyberArk Okta CrowdStrike Microsoft Defender Suite Knowledge of DevSecOps practices. Exposure to cloud migration and security transformation programmes. Experience supporting regulatory remediation initiatives. Qualifications & Certifications One or more of the following would be advantageous: PMP CISSP CISM CISA CRISC Personal Attributes Strong leadership and organisational skills. Excellent communication and presentation abilities. Ability to influence stakeholders at all levels. Strong analytical and problem solving mindset. Ability to operate effectively in fast paced, complex environments. Self motivated with a strong focus on delivery and outcomes. Successful delivery of cyber security projects and workstreams. Effective management of risks, issues, and dependencies. Timely implementation of security controls and technologies. Improved cyber security posture and compliance alignment. High quality governance reporting and stakeholder engagement.
HM Land Registry (HMLR) are looking for a Senior Infrastructure Engineer in the Security Cluster to help protect the critical infrastructure and digital services that support land and property ownership across England and Wales. Permanent role, salary £48,400 - £59,300 (based on interview assessment), 29% employer pension contribution plus full Civil Service benefits. Flexible, hybrid working from Plymouth. About the role This is a specialist role within HMLR's IT Operations Practice, working as part of an established Security function responsible for protecting systems, platforms and services across a varied technology estate. You will help design, implement and improve technical security controls across cloud, on-premise and legacy environments. The role will involve resolving complex technical issues, managing security risks, improving vulnerability tooling and providing security advice to operational and project teams. You will work across technologies including Windows, Linux, mainframe, AWS and Azure, while collaborating with infrastructure teams, security colleagues, suppliers and wider stakeholders. Responsibilities Design, implement and improve technical security systems and controls across HMLR's infrastructure. Investigate and resolve complex security issues arising from incidents, operational activity and service development. Identify and manage technical security risks, vulnerabilities and appropriate mitigations. Develop and maintain security monitoring, vulnerability and threat-detection tooling. Provide technical guidance, assurance and mentoring to operational teams, projects and colleagues. Essential skills Strong experience designing and implementing technical security systems and controls. Advanced knowledge of at least three security technologies, such as SIEM, Defender, Sentinel, EDR/XDR, Active Directory, Nessus, PAM, AWS IAM or Entra. Extensive knowledge of security controls across Windows, Linux, mainframe, AWS or Azure environments. Strong analytical and problem-solving skills, including threat analysis and security incident response. Ability to manage priorities, communicate technical risks clearly and demonstrate leadership through coaching or mentoring. Desirable criteria Experience working across both cloud and on-premise environments. Knowledge of identity and access management, privileged access, cryptography or network security. Experience using automation, scripting or coding to improve operational security. Experience supporting customer-facing digital services within a large or complex organisation. Previous experience working within government, a regulated environment or another organisation operating critical services. Benefits Alongside your salary of £48,400 plus any allowance up to £59,300 HM Land Registry contributes £14,021 towards you being a member of the Civil Service Defined Benefit Pension scheme along with the following: Annual leave of 28.5 days' paid holiday during each holiday year plus 8 days public holidays A clear progression pathway inc. personalised training and development plans including expensed accreditations with training days set aside Over 29% employer pension contribution Flexi-time scheme (You decide what working hours work best for you) Opportunity to work condensed hours Social and sports club Access to our employee assistance programme for counselling and support on a wide range of issues Interest-free loan for season tickets Cycle to work scheme (salary sacrifice). HMLR have a strong and positive culture, a commitment to inclusivity, an emphasis on continuous learning and development and flexible ways of working. Additional information Locations - Plymouth. Expectation is to be working from the Plymouth office 60% of your time across the month (typically 3 days/week), hours are flexible and condensed hours are an option. HMLR are unable to sponsor any individuals for Skilled Worker Sponsorship. For SC eligibility, you must have resided in the UK for the last 5 years continuously Why join HMLR? This is an opportunity to help protect critical national infrastructure and digital services relied upon across England and Wales. You will work at significant scale, strengthening the security and resilience of a complex technology estate that supports millions of property transactions and users. You will also have substantial scope to develop your career. The breadth of HMLR's environment will give you exposure to cloud, on-premise, legacy and modern security technologies, alongside opportunities to deepen your expertise, broaden into new areas and learn from experienced specialists across the wider security function. Apply now or contact Inspire People in complete confidence.
22/07/2026
Full time
HM Land Registry (HMLR) are looking for a Senior Infrastructure Engineer in the Security Cluster to help protect the critical infrastructure and digital services that support land and property ownership across England and Wales. Permanent role, salary £48,400 - £59,300 (based on interview assessment), 29% employer pension contribution plus full Civil Service benefits. Flexible, hybrid working from Plymouth. About the role This is a specialist role within HMLR's IT Operations Practice, working as part of an established Security function responsible for protecting systems, platforms and services across a varied technology estate. You will help design, implement and improve technical security controls across cloud, on-premise and legacy environments. The role will involve resolving complex technical issues, managing security risks, improving vulnerability tooling and providing security advice to operational and project teams. You will work across technologies including Windows, Linux, mainframe, AWS and Azure, while collaborating with infrastructure teams, security colleagues, suppliers and wider stakeholders. Responsibilities Design, implement and improve technical security systems and controls across HMLR's infrastructure. Investigate and resolve complex security issues arising from incidents, operational activity and service development. Identify and manage technical security risks, vulnerabilities and appropriate mitigations. Develop and maintain security monitoring, vulnerability and threat-detection tooling. Provide technical guidance, assurance and mentoring to operational teams, projects and colleagues. Essential skills Strong experience designing and implementing technical security systems and controls. Advanced knowledge of at least three security technologies, such as SIEM, Defender, Sentinel, EDR/XDR, Active Directory, Nessus, PAM, AWS IAM or Entra. Extensive knowledge of security controls across Windows, Linux, mainframe, AWS or Azure environments. Strong analytical and problem-solving skills, including threat analysis and security incident response. Ability to manage priorities, communicate technical risks clearly and demonstrate leadership through coaching or mentoring. Desirable criteria Experience working across both cloud and on-premise environments. Knowledge of identity and access management, privileged access, cryptography or network security. Experience using automation, scripting or coding to improve operational security. Experience supporting customer-facing digital services within a large or complex organisation. Previous experience working within government, a regulated environment or another organisation operating critical services. Benefits Alongside your salary of £48,400 plus any allowance up to £59,300 HM Land Registry contributes £14,021 towards you being a member of the Civil Service Defined Benefit Pension scheme along with the following: Annual leave of 28.5 days' paid holiday during each holiday year plus 8 days public holidays A clear progression pathway inc. personalised training and development plans including expensed accreditations with training days set aside Over 29% employer pension contribution Flexi-time scheme (You decide what working hours work best for you) Opportunity to work condensed hours Social and sports club Access to our employee assistance programme for counselling and support on a wide range of issues Interest-free loan for season tickets Cycle to work scheme (salary sacrifice). HMLR have a strong and positive culture, a commitment to inclusivity, an emphasis on continuous learning and development and flexible ways of working. Additional information Locations - Plymouth. Expectation is to be working from the Plymouth office 60% of your time across the month (typically 3 days/week), hours are flexible and condensed hours are an option. HMLR are unable to sponsor any individuals for Skilled Worker Sponsorship. For SC eligibility, you must have resided in the UK for the last 5 years continuously Why join HMLR? This is an opportunity to help protect critical national infrastructure and digital services relied upon across England and Wales. You will work at significant scale, strengthening the security and resilience of a complex technology estate that supports millions of property transactions and users. You will also have substantial scope to develop your career. The breadth of HMLR's environment will give you exposure to cloud, on-premise, legacy and modern security technologies, alongside opportunities to deepen your expertise, broaden into new areas and learn from experienced specialists across the wider security function. Apply now or contact Inspire People in complete confidence.
Kainos is looking for a mid-level Cloud Security Engineer to join our Security Engineering team. This role is the first dedicated hire for cloud security within the organisation and will be critical in defining, implementing, and managing security controls across our Azure, AWS and SaaS environments. The successful candidate will work independently, reporting to the Head of Security Engineering, while collaborating with SOC, GRC, IT, Modern Workplace and Systems Engineering teams to build and mature our cloud security posture. Key Responsibilities Cloud Security Framework Define and implement the cloud security Framework in collaboration with IT Systems, SOC leadership, and GRC. Implementation Recommending security best practices and implementing controls for Cloud Security and governance. Implementation of automated security tooling to validate security requirements and identify potential issues. Threat Detection & Incident Response Define threat detection and incident response processes and playbooks for cloud environments. Collaborate with the SOC to operationalise detection rules and incident handling. Compliance & Audit Support GRC in meeting evidence and compliance requirements for ISO27001, NCSC Cloud Security Principles, and SOC2. Reviewing the outputs from security tools and security practices. You will filter and prioritise these into security stories that can be understood and actioned by the delivery teams. Collaboration & Enablement Influence and guide junior engineers and developers to adopt secure practices. Upskill and train the wider security team in cloud security topics and tooling. Identity & Access Management Provide input into IAM strategy and policy (RBAC, Conditional Access, MFA, least privilege), working closely with the IT and Systems teams. Optional / Beneficial Areas Support automation of cloud security (IaC scanning, CI/CD integration). Document standards, runbooks, and training material where appropriate. Required Skills & Experience Previous experience in cloud security engineering or related roles. Working knowledge of industry cloud security frameworks and best practice (CSA STAR, NCSC Cloud Security Principles). Experience with automation and scripting (Python, PowerShell, Bash). Proficiency with: Azure security services: Defender for Cloud, Entra ID, Sentinel etc. AWS security services: Security Hub, GuardDuty, IAM, Config, CloudTrail, CloudWatch. Working knowledge of cloud incident response processes and procedures Strong understanding of security best practices in multi-cloud environments. Desirable Skills & Experience Familiarity with Infrastructure as Code (Terraform) Knowledge of cloud network security concepts (firewalls, NSGs, VPCs, private endpoints). Exposure to compliance frameworks (ISO27001, SOC2, NCSC Cloud Security Principles). Security certifications such as AZ-500, SC-100, AWS Security Specialty, CISSP, or CCSK. Embracing our differences At Kainos, we believe in the power of diversity, equity and inclusion. We are committed to building a team that is as diverse as the world we live in, where everyone is valued, respected, and given an equal chance to thrive. We actively seek out talented people from all backgrounds, regardless of age, race, ethnicity, gender, sexual orientation, religion, disability, or any other characteristic that makes them who they are. We also believe every candidate deserves a level playing field. Our friendly talent acquisition team is here to support you every step of the way, so if you require any accommodations or adjustments, we encourage you to reach out. We understand that everyone's journey is different, and by having a private conversation we can ensure that our recruitment process is tailored to your needs.
14/07/2026
Full time
Kainos is looking for a mid-level Cloud Security Engineer to join our Security Engineering team. This role is the first dedicated hire for cloud security within the organisation and will be critical in defining, implementing, and managing security controls across our Azure, AWS and SaaS environments. The successful candidate will work independently, reporting to the Head of Security Engineering, while collaborating with SOC, GRC, IT, Modern Workplace and Systems Engineering teams to build and mature our cloud security posture. Key Responsibilities Cloud Security Framework Define and implement the cloud security Framework in collaboration with IT Systems, SOC leadership, and GRC. Implementation Recommending security best practices and implementing controls for Cloud Security and governance. Implementation of automated security tooling to validate security requirements and identify potential issues. Threat Detection & Incident Response Define threat detection and incident response processes and playbooks for cloud environments. Collaborate with the SOC to operationalise detection rules and incident handling. Compliance & Audit Support GRC in meeting evidence and compliance requirements for ISO27001, NCSC Cloud Security Principles, and SOC2. Reviewing the outputs from security tools and security practices. You will filter and prioritise these into security stories that can be understood and actioned by the delivery teams. Collaboration & Enablement Influence and guide junior engineers and developers to adopt secure practices. Upskill and train the wider security team in cloud security topics and tooling. Identity & Access Management Provide input into IAM strategy and policy (RBAC, Conditional Access, MFA, least privilege), working closely with the IT and Systems teams. Optional / Beneficial Areas Support automation of cloud security (IaC scanning, CI/CD integration). Document standards, runbooks, and training material where appropriate. Required Skills & Experience Previous experience in cloud security engineering or related roles. Working knowledge of industry cloud security frameworks and best practice (CSA STAR, NCSC Cloud Security Principles). Experience with automation and scripting (Python, PowerShell, Bash). Proficiency with: Azure security services: Defender for Cloud, Entra ID, Sentinel etc. AWS security services: Security Hub, GuardDuty, IAM, Config, CloudTrail, CloudWatch. Working knowledge of cloud incident response processes and procedures Strong understanding of security best practices in multi-cloud environments. Desirable Skills & Experience Familiarity with Infrastructure as Code (Terraform) Knowledge of cloud network security concepts (firewalls, NSGs, VPCs, private endpoints). Exposure to compliance frameworks (ISO27001, SOC2, NCSC Cloud Security Principles). Security certifications such as AZ-500, SC-100, AWS Security Specialty, CISSP, or CCSK. Embracing our differences At Kainos, we believe in the power of diversity, equity and inclusion. We are committed to building a team that is as diverse as the world we live in, where everyone is valued, respected, and given an equal chance to thrive. We actively seek out talented people from all backgrounds, regardless of age, race, ethnicity, gender, sexual orientation, religion, disability, or any other characteristic that makes them who they are. We also believe every candidate deserves a level playing field. Our friendly talent acquisition team is here to support you every step of the way, so if you require any accommodations or adjustments, we encourage you to reach out. We understand that everyone's journey is different, and by having a private conversation we can ensure that our recruitment process is tailored to your needs.
Cyber Technical Delivery Manager Location: London (Hybrid - 4 Days per Week Onsite) Contract Length:12 Months Engagement:Inside IR35 Industry:Investment Banking / Financial Services Start Date:ASAP Overview We are supporting a leading investment banking client in London who is seeking an experienced Cyber Technical Delivery Manager to join a large-scale Cyber Security Transformation Programme. This role will be responsible for the successful delivery of complex cyber security initiatives across multiple technology domains, including Identity & Access Management (IAM), Security Operations, Cloud Security, Vulnerability Management, Data Protection, and Regulatory Compliance. The successful candidate will act as the bridge between technical engineering teams, cyber security stakeholders, business leaders, and third-party vendors, ensuring projects are delivered on time, within budget, and in line with regulatory and security requirements. Key Responsibilities Programme & Project Delivery Lead the end-to-end delivery of cyber security projects and workstreams. Develop and maintain project plans, milestones, RAID logs, budgets, and resource plans. Ensure delivery aligns with business objectives, security standards, and regulatory requirements. Manage dependencies across multiple technology and business teams. Drive project governance and reporting activities. Cyber Security Delivery Deliver initiatives across: Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with senior stakeholders across Cyber Security, Infrastructure, Cloud, Risk, Compliance, and Business Functions. Provide regular programme updates to senior management and governance forums. Manage relationships with third-party suppliers and technology vendors. Facilitate workshops, steering committees, and technical review sessions. Risk & Governance Identify, manage, and mitigate project risks and issues. Ensure compliance with internal security policies and regulatory frameworks. Support audit, risk, and compliance activities. Track and report programme KPIs and delivery metrics. Requirements Required Skills & Experience Cyber Security Experience Strong understanding of enterprise cyber security principles and controls. Experience delivering projects involving: IAM and Access Governance PAM Solutions SIEM and Security Monitoring Cloud Security Endpoint Security Vulnerability Management Data Protection Security Compliance Programmes Familiarity with security frameworks and standards such as: NIST ISO 27001 CIS Controls Cyber Essentials Regulatory requirements within Financial Services Technical Knowledge Good understanding of: Microsoft Azure AWS Active Directory / Entra ID Security Monitoring Platforms Identity Management Solutions Network and Infrastructure Security Ability to engage effectively with technical architects, engineers, and security specialists. Delivery Management Proven experience delivering complex technology or cyber programmes within large enterprise environments. Strong project and programme management experience. Experience managing multiple workstreams simultaneously. Excellent RAID management and governance skills. Strong budget and financial management experience. Essential Experience Previous experience working within Investment Banking, Banking, or Financial Services. Experience delivering cyber security transformation programmes. Experience operating within regulated environments. Strong stakeholder management skills with the ability to engage at Executive and C-Level. Experience managing third-party suppliers and system integrators. Desirable Skills Experience with: Microsoft Sentinel Splunk SailPoint CyberArk Okta CrowdStrike Microsoft Defender Suite Knowledge of DevSecOps practices. Exposure to cloud migration and security transformation programmes. Experience supporting regulatory remediation initiatives. Qualifications & Certifications One or more of the following would be advantageous: PRINCE2 Practitioner PMP Agile Practitioner / Scrum Certification CISSP CISM CISA CRISC Personal Attributes Strong leadership and organisational skills. Excellent communication and presentation abilities. Ability to influence stakeholders at all levels. Strong analytical and problem-solving mindset. Ability to operate effectively in fast-paced, complex environments. Self motivated with a strong focus on delivery and outcomes. Key Deliverables Successful delivery of cyber security projects and workstreams. Effective management of risks, issues, and dependencies. Timely implementation of security controls and technologies. Improved cyber security posture and compliance alignment. High quality governance reporting and stakeholder engagement.
08/07/2026
Full time
Cyber Technical Delivery Manager Location: London (Hybrid - 4 Days per Week Onsite) Contract Length:12 Months Engagement:Inside IR35 Industry:Investment Banking / Financial Services Start Date:ASAP Overview We are supporting a leading investment banking client in London who is seeking an experienced Cyber Technical Delivery Manager to join a large-scale Cyber Security Transformation Programme. This role will be responsible for the successful delivery of complex cyber security initiatives across multiple technology domains, including Identity & Access Management (IAM), Security Operations, Cloud Security, Vulnerability Management, Data Protection, and Regulatory Compliance. The successful candidate will act as the bridge between technical engineering teams, cyber security stakeholders, business leaders, and third-party vendors, ensuring projects are delivered on time, within budget, and in line with regulatory and security requirements. Key Responsibilities Programme & Project Delivery Lead the end-to-end delivery of cyber security projects and workstreams. Develop and maintain project plans, milestones, RAID logs, budgets, and resource plans. Ensure delivery aligns with business objectives, security standards, and regulatory requirements. Manage dependencies across multiple technology and business teams. Drive project governance and reporting activities. Cyber Security Delivery Deliver initiatives across: Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with senior stakeholders across Cyber Security, Infrastructure, Cloud, Risk, Compliance, and Business Functions. Provide regular programme updates to senior management and governance forums. Manage relationships with third-party suppliers and technology vendors. Facilitate workshops, steering committees, and technical review sessions. Risk & Governance Identify, manage, and mitigate project risks and issues. Ensure compliance with internal security policies and regulatory frameworks. Support audit, risk, and compliance activities. Track and report programme KPIs and delivery metrics. Requirements Required Skills & Experience Cyber Security Experience Strong understanding of enterprise cyber security principles and controls. Experience delivering projects involving: IAM and Access Governance PAM Solutions SIEM and Security Monitoring Cloud Security Endpoint Security Vulnerability Management Data Protection Security Compliance Programmes Familiarity with security frameworks and standards such as: NIST ISO 27001 CIS Controls Cyber Essentials Regulatory requirements within Financial Services Technical Knowledge Good understanding of: Microsoft Azure AWS Active Directory / Entra ID Security Monitoring Platforms Identity Management Solutions Network and Infrastructure Security Ability to engage effectively with technical architects, engineers, and security specialists. Delivery Management Proven experience delivering complex technology or cyber programmes within large enterprise environments. Strong project and programme management experience. Experience managing multiple workstreams simultaneously. Excellent RAID management and governance skills. Strong budget and financial management experience. Essential Experience Previous experience working within Investment Banking, Banking, or Financial Services. Experience delivering cyber security transformation programmes. Experience operating within regulated environments. Strong stakeholder management skills with the ability to engage at Executive and C-Level. Experience managing third-party suppliers and system integrators. Desirable Skills Experience with: Microsoft Sentinel Splunk SailPoint CyberArk Okta CrowdStrike Microsoft Defender Suite Knowledge of DevSecOps practices. Exposure to cloud migration and security transformation programmes. Experience supporting regulatory remediation initiatives. Qualifications & Certifications One or more of the following would be advantageous: PRINCE2 Practitioner PMP Agile Practitioner / Scrum Certification CISSP CISM CISA CRISC Personal Attributes Strong leadership and organisational skills. Excellent communication and presentation abilities. Ability to influence stakeholders at all levels. Strong analytical and problem-solving mindset. Ability to operate effectively in fast-paced, complex environments. Self motivated with a strong focus on delivery and outcomes. Key Deliverables Successful delivery of cyber security projects and workstreams. Effective management of risks, issues, and dependencies. Timely implementation of security controls and technologies. Improved cyber security posture and compliance alignment. High quality governance reporting and stakeholder engagement.
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
06/07/2026
Contractor
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
Role Overview Join the next generation of AI-driven cyber defence. We're looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting edge AI powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across a complex enterprise environment. This is an excellent opportunity for someone with a strong cyber engineering or SOC background who enjoys integrating security platforms, solving technical challenges and validating innovative security solutions. What you'll be doing Support the implementation of AI powered Security Operations (SOC) capabilities, intelligent assistants and security workflow automation. Integrate security technologies, data sources, APIs and third party platforms into the security ecosystem. Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams. Validate AI assisted detection, investigation and automated response workflows. Design and execute testing scenarios, attack simulations and operational readiness exercises. Identify integration issues, deployment risks and workflow improvements. Troubleshoot implementation challenges and support successful production deployments. Produce high quality technical documentation, implementation guides, test results and operational procedures. What we're looking for 3+ years' experience in Cyber Security Engineering, Security Operations, Threat Detection or Security Platform Implementation. Experience integrating enterprise security technologies into complex environments. Good understanding of SIEM, SOAR, EDR, Threat Intelligence and modern SOC operations. Knowledge of networking, APIs, authentication, Identity & Access Management (IAM) and cloud platforms. Experience with security testing, attack simulation, validation or Purple Team activities. Excellent analytical, troubleshooting and documentation skills. Exposure to AI powered security platforms, automation technologies or security orchestration tools would be highly desirable. Desirable technologies SIEM & SOAR platforms - Microsoft Sentinel, Splunk or QRadar Microsoft Defender, CrowdStrike or other EDR solutions Azure, AWS or Google Cloud APIs, REST integrations and automation Identity & Access Management (Entra ID, Active Directory or similar) Threat Intelligence platforms AI enabled Security Operations tools Rates depend on experience and client requirements
06/07/2026
Full time
Role Overview Join the next generation of AI-driven cyber defence. We're looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting edge AI powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across a complex enterprise environment. This is an excellent opportunity for someone with a strong cyber engineering or SOC background who enjoys integrating security platforms, solving technical challenges and validating innovative security solutions. What you'll be doing Support the implementation of AI powered Security Operations (SOC) capabilities, intelligent assistants and security workflow automation. Integrate security technologies, data sources, APIs and third party platforms into the security ecosystem. Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams. Validate AI assisted detection, investigation and automated response workflows. Design and execute testing scenarios, attack simulations and operational readiness exercises. Identify integration issues, deployment risks and workflow improvements. Troubleshoot implementation challenges and support successful production deployments. Produce high quality technical documentation, implementation guides, test results and operational procedures. What we're looking for 3+ years' experience in Cyber Security Engineering, Security Operations, Threat Detection or Security Platform Implementation. Experience integrating enterprise security technologies into complex environments. Good understanding of SIEM, SOAR, EDR, Threat Intelligence and modern SOC operations. Knowledge of networking, APIs, authentication, Identity & Access Management (IAM) and cloud platforms. Experience with security testing, attack simulation, validation or Purple Team activities. Excellent analytical, troubleshooting and documentation skills. Exposure to AI powered security platforms, automation technologies or security orchestration tools would be highly desirable. Desirable technologies SIEM & SOAR platforms - Microsoft Sentinel, Splunk or QRadar Microsoft Defender, CrowdStrike or other EDR solutions Azure, AWS or Google Cloud APIs, REST integrations and automation Identity & Access Management (Entra ID, Active Directory or similar) Threat Intelligence platforms AI enabled Security Operations tools Rates depend on experience and client requirements