Location: London (2 days per week in office) Contract: 6 Month Fixed-Term Contract A leading international professional services firm is seeking an experienced SOC Engineer to join its Information Security team on a 6-month fixed-term basis. This is an excellent opportunity for a security professional with strong SIEM engineering expertise who enjoys building and enhancing security monitoring capabilities rather than purely operating within a traditional analyst function. Working closely with the Information Security Operations Manager and wider security team, you will play a key role in driving the maturity of the organisation's SIEM platform, improving detection capabilities, onboarding new log sources, and supporting security operations across a global environment. Key Responsibilities Enhance and optimise SIEM performance, coverage and detection capability Onboard and integrate new log sources across cloud, infrastructure, endpoint, identity and application platforms Develop and maintain parsers, connectors and ingestion workflows Build, test and tune detection use cases aligned to MITRE ATT&CK methodologies Create and improve correlation rules, dashboards and alerting mechanisms Support SOC investigations through advanced querying, enrichment and data analysis Implement automation and orchestration capabilities to improve incident response processes Produce and maintain technical documentation relating to SIEM architecture, data models and detection content Collaborate with internal technology teams and third-party vendors to improve security visibility and monitoring Required Experience Strong hands-on experience administering and engineering enterprise SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, LogRhythm, Exabeam, ArcSight or Elastic Experience onboarding and integrating diverse log sources Strong understanding of log formats including JSON, Syslog, XML and CEF Experience building and tuning correlation rules, detections, searches and dashboards Knowledge of SOAR technologies and security automation Good understanding of infrastructure, networking, cloud platforms, endpoint security and identity technologies Experience with Scripting and automation using Python and/or PowerShell Strong understanding of cyber security frameworks including MITRE ATT&CK and threat hunting methodologies Desirable Experience Experience within highly regulated environments Knowledge of Microsoft Defender and SentinelOne Experience with DLP technologies Exposure to cloud services including Azure, AWS or GCP Threat intelligence and threat hunting experience Relevant industry certifications such as SC-200, SC-100, CISSP, SSCP, GIAC or equivalent What's on Offer? Opportunity to make a genuine impact on the maturity of a global security operation Exposure to enterprise-scale security tooling and projects Collaborative and supportive security team Flexible hybrid working arrangement International professional services environment Please note that this position requires attendance in the London office two days per week and is offered as a fixed-term employment contract rather than a day-rate consultancy engagement.
20/07/2026
Location: London (2 days per week in office) Contract: 6 Month Fixed-Term Contract A leading international professional services firm is seeking an experienced SOC Engineer to join its Information Security team on a 6-month fixed-term basis. This is an excellent opportunity for a security professional with strong SIEM engineering expertise who enjoys building and enhancing security monitoring capabilities rather than purely operating within a traditional analyst function. Working closely with the Information Security Operations Manager and wider security team, you will play a key role in driving the maturity of the organisation's SIEM platform, improving detection capabilities, onboarding new log sources, and supporting security operations across a global environment. Key Responsibilities Enhance and optimise SIEM performance, coverage and detection capability Onboard and integrate new log sources across cloud, infrastructure, endpoint, identity and application platforms Develop and maintain parsers, connectors and ingestion workflows Build, test and tune detection use cases aligned to MITRE ATT&CK methodologies Create and improve correlation rules, dashboards and alerting mechanisms Support SOC investigations through advanced querying, enrichment and data analysis Implement automation and orchestration capabilities to improve incident response processes Produce and maintain technical documentation relating to SIEM architecture, data models and detection content Collaborate with internal technology teams and third-party vendors to improve security visibility and monitoring Required Experience Strong hands-on experience administering and engineering enterprise SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, LogRhythm, Exabeam, ArcSight or Elastic Experience onboarding and integrating diverse log sources Strong understanding of log formats including JSON, Syslog, XML and CEF Experience building and tuning correlation rules, detections, searches and dashboards Knowledge of SOAR technologies and security automation Good understanding of infrastructure, networking, cloud platforms, endpoint security and identity technologies Experience with Scripting and automation using Python and/or PowerShell Strong understanding of cyber security frameworks including MITRE ATT&CK and threat hunting methodologies Desirable Experience Experience within highly regulated environments Knowledge of Microsoft Defender and SentinelOne Experience with DLP technologies Exposure to cloud services including Azure, AWS or GCP Threat intelligence and threat hunting experience Relevant industry certifications such as SC-200, SC-100, CISSP, SSCP, GIAC or equivalent What's on Offer? Opportunity to make a genuine impact on the maturity of a global security operation Exposure to enterprise-scale security tooling and projects Collaborative and supportive security team Flexible hybrid working arrangement International professional services environment Please note that this position requires attendance in the London office two days per week and is offered as a fixed-term employment contract rather than a day-rate consultancy engagement.
Converge Technology Solutions UK
Stafford, Staffordshire
Posted Tuesday 14 July 2026 at 00:00 Expires Friday 31 July 2026 at 23:59 Converge Technology Solutions UK: A Commitment to Inclusivity, Innovation, and Sustainability Converge Technology Solutions UK, the trading names of Stone Technologies Limited based in Staffordshire, UK, designing industry specific IT solutions for each and every client. An IT reseller and IT manufacturer as well as having an award-winning IT recycling facility. Standing out as an innovative, highly accredited market leader with exceptional employee engagement. Our core values are clear, with sustainability at the heart of our activities. Inclusivity and Support: We believe that everyone is welcome and will always be supported in their career with us. We encourage our people to bring their authentic selves to work, ensuring that everyone has an equal opportunity to reach their full potential. Our Disability Confident Employer, Care Leaver Covenant and Foster Friendly accreditations are a testament to our commitment to these principles. Nurturing Diversity: Our support for employees and embrace of diversity go beyond policies and procedures. We provide an environment that nurtures inclusivity and engagement. From comprehensive training programs and a wide variety of apprenticeships to opportunities for community support with up to three days a year to volunteer, we create a space where employees can thrive. Sustainable Practices: Built around sustainable business methods and a true dedication to delivering the best possible service to our customers, we believe in our people to always work with integrity and continually innovate. We understand that taking inclusion and diversity seriously is imperative to living up to our values. Department: Managed Services Contract: Full-time, Permanent Converge is growing, and we're looking for a skilled and customer-focused Cloud Engineer to strengthen our Managed Services capability. If you're passionate about Microsoft cloud technologies, confident working across multiple customer environments, and enjoy solving complex technical challenges, this role offers the perfect blend of consultancy, delivery, and BAU support. About the Role You'll provide end-to-end Microsoft cloud engineering expertise across pre-sales, technical delivery, and BAU operations. Working closely with Managed Services, Service Operations, Sales, Projects and Account Management, you'll help design, implement, transition and support Microsoft-led cloud solutions that are secure, scalable and commercially sound. This role is ideal for someone who thrives in a multi-customer environment, enjoys being a trusted technical advisor, and has hands-on experience across Microsoft 365, Azure, Entra ID, endpoint management and cloud security. What You'll Be Doing Deliver 2nd/3rd line BAU support for Microsoft cloud services, escalated incidents, service requests, changes and technical problems. Administer, maintain and improve Microsoft 365, Azure, Entra ID, Exchange Online, SharePoint Online, Teams, OneDrive, Intune, endpoint management, security, backup and related infrastructure services. Act as a trusted advisor to customers, providing practical guidance on governance, security, compliance, adoption, configuration, licensing and operational best practice. Support pre-sales activity by reviewing requirements, shaping solution options, identifying risks, assumptions and dependencies, and contributing to effort estimates and service wrap considerations. Contribute to the design, delivery and continual improvement of Microsoft cloud services across Converge's managed service portfolio. Work with Project teams to deliver approved solutions, support technical implementation, produce handover documentation and ensure smooth transition into Managed Services. Carry out proactive monitoring, health checks, patching, secure score reviews, configuration reviews and remediation activity to improve stability, performance and security. Maintain compliance with recognised frameworks and standards, supporting the achievement and retention of accreditations such as ISO 27001 and Cyber Essentials Plus through effective governance, documentation and continuous improvement activities. Investigate recurring incidents, contribute to problem management and help reduce repeat issues through continual service improvement. Create and maintain technical documentation, SOPs, knowledge articles, design notes, configuration records and service transition packs. Provide coaching and knowledge transfer to Service Desk and Managed Services colleagues to improve first-time fix and escalation quality. Support onboarding of new customers by reviewing cloud environments, identifying risks and recommending improvements. Maintain awareness of Microsoft roadmap changes, licensing updates, product developments and managed service opportunities. What You Bring We're looking for someone with strong hands-on experience across Microsoft cloud technologies and a solid understanding of modern cloud operating environments. You'll bring: Strong working knowledge of Microsoft 365, Azure, Entra ID, Intune, endpoint management and cloud security. Experience designing, administering or managing Microsoft tenants in production environments. Background in a Managed Services Provider (MSP) or multi-customer support environment. Good working knowledge of networking fundamentals and how they underpin cloud services. Practical experience with security scanning platforms such as Nessus, or similar vulnerability management tools. Experience delivering 2nd/3rd line support for Microsoft cloud or infrastructure services. Strong troubleshooting capability across identity, access, compliance, backup, networking, business continuity and cloud governance. Ability to translate customer requirements into practical, commercially aware cloud recommendations. Experience supporting incidents, service requests, changes, problem investigations and service improvement activity. Excellent communication skills with the ability to explain technical concepts clearly to technical and non-technical audiences. Strong documentation skills covering knowledge articles, technical procedures, design notes and handover packs. Commercial awareness and the ability to identify opportunities to improve customer value, security posture and adoption of Microsoft cloud services. Qualifications & Desirable Skills Relevant technical qualification or equivalent professional experience. Strong knowledge of Microsoft cloud technologies and supporting infrastructure. Full UK driving licence. Microsoft certifications such as MS-900, MS-700, MS-102, AZ-900, AZ-104, SC-900, SC-300, MD-102, PL-900 or equivalent. Experience with security, automation, scripting, networking, virtualisation or cloud governance. Exposure to ISO-aligned, security-focused or ITIL-based operating environments. Who You Are You're customer-focused, proactive and confident building trusted relationships. You're organised, curious, and committed to continuous learning in a fast-moving Microsoft cloud landscape. You're collaborative, adaptable and comfortable working with both technical and non-technical audiences. We reserve the right to close this advert early if we are in receipt of sufficient applications for this position. Equality, diversity and inclusion: Converge maintains an equality, diversity and inclusion policy to support this approach. To discuss any reasonable adjustment or request a paper based application form as an alternative, please contact People Operations.
20/07/2026
Full time
Posted Tuesday 14 July 2026 at 00:00 Expires Friday 31 July 2026 at 23:59 Converge Technology Solutions UK: A Commitment to Inclusivity, Innovation, and Sustainability Converge Technology Solutions UK, the trading names of Stone Technologies Limited based in Staffordshire, UK, designing industry specific IT solutions for each and every client. An IT reseller and IT manufacturer as well as having an award-winning IT recycling facility. Standing out as an innovative, highly accredited market leader with exceptional employee engagement. Our core values are clear, with sustainability at the heart of our activities. Inclusivity and Support: We believe that everyone is welcome and will always be supported in their career with us. We encourage our people to bring their authentic selves to work, ensuring that everyone has an equal opportunity to reach their full potential. Our Disability Confident Employer, Care Leaver Covenant and Foster Friendly accreditations are a testament to our commitment to these principles. Nurturing Diversity: Our support for employees and embrace of diversity go beyond policies and procedures. We provide an environment that nurtures inclusivity and engagement. From comprehensive training programs and a wide variety of apprenticeships to opportunities for community support with up to three days a year to volunteer, we create a space where employees can thrive. Sustainable Practices: Built around sustainable business methods and a true dedication to delivering the best possible service to our customers, we believe in our people to always work with integrity and continually innovate. We understand that taking inclusion and diversity seriously is imperative to living up to our values. Department: Managed Services Contract: Full-time, Permanent Converge is growing, and we're looking for a skilled and customer-focused Cloud Engineer to strengthen our Managed Services capability. If you're passionate about Microsoft cloud technologies, confident working across multiple customer environments, and enjoy solving complex technical challenges, this role offers the perfect blend of consultancy, delivery, and BAU support. About the Role You'll provide end-to-end Microsoft cloud engineering expertise across pre-sales, technical delivery, and BAU operations. Working closely with Managed Services, Service Operations, Sales, Projects and Account Management, you'll help design, implement, transition and support Microsoft-led cloud solutions that are secure, scalable and commercially sound. This role is ideal for someone who thrives in a multi-customer environment, enjoys being a trusted technical advisor, and has hands-on experience across Microsoft 365, Azure, Entra ID, endpoint management and cloud security. What You'll Be Doing Deliver 2nd/3rd line BAU support for Microsoft cloud services, escalated incidents, service requests, changes and technical problems. Administer, maintain and improve Microsoft 365, Azure, Entra ID, Exchange Online, SharePoint Online, Teams, OneDrive, Intune, endpoint management, security, backup and related infrastructure services. Act as a trusted advisor to customers, providing practical guidance on governance, security, compliance, adoption, configuration, licensing and operational best practice. Support pre-sales activity by reviewing requirements, shaping solution options, identifying risks, assumptions and dependencies, and contributing to effort estimates and service wrap considerations. Contribute to the design, delivery and continual improvement of Microsoft cloud services across Converge's managed service portfolio. Work with Project teams to deliver approved solutions, support technical implementation, produce handover documentation and ensure smooth transition into Managed Services. Carry out proactive monitoring, health checks, patching, secure score reviews, configuration reviews and remediation activity to improve stability, performance and security. Maintain compliance with recognised frameworks and standards, supporting the achievement and retention of accreditations such as ISO 27001 and Cyber Essentials Plus through effective governance, documentation and continuous improvement activities. Investigate recurring incidents, contribute to problem management and help reduce repeat issues through continual service improvement. Create and maintain technical documentation, SOPs, knowledge articles, design notes, configuration records and service transition packs. Provide coaching and knowledge transfer to Service Desk and Managed Services colleagues to improve first-time fix and escalation quality. Support onboarding of new customers by reviewing cloud environments, identifying risks and recommending improvements. Maintain awareness of Microsoft roadmap changes, licensing updates, product developments and managed service opportunities. What You Bring We're looking for someone with strong hands-on experience across Microsoft cloud technologies and a solid understanding of modern cloud operating environments. You'll bring: Strong working knowledge of Microsoft 365, Azure, Entra ID, Intune, endpoint management and cloud security. Experience designing, administering or managing Microsoft tenants in production environments. Background in a Managed Services Provider (MSP) or multi-customer support environment. Good working knowledge of networking fundamentals and how they underpin cloud services. Practical experience with security scanning platforms such as Nessus, or similar vulnerability management tools. Experience delivering 2nd/3rd line support for Microsoft cloud or infrastructure services. Strong troubleshooting capability across identity, access, compliance, backup, networking, business continuity and cloud governance. Ability to translate customer requirements into practical, commercially aware cloud recommendations. Experience supporting incidents, service requests, changes, problem investigations and service improvement activity. Excellent communication skills with the ability to explain technical concepts clearly to technical and non-technical audiences. Strong documentation skills covering knowledge articles, technical procedures, design notes and handover packs. Commercial awareness and the ability to identify opportunities to improve customer value, security posture and adoption of Microsoft cloud services. Qualifications & Desirable Skills Relevant technical qualification or equivalent professional experience. Strong knowledge of Microsoft cloud technologies and supporting infrastructure. Full UK driving licence. Microsoft certifications such as MS-900, MS-700, MS-102, AZ-900, AZ-104, SC-900, SC-300, MD-102, PL-900 or equivalent. Experience with security, automation, scripting, networking, virtualisation or cloud governance. Exposure to ISO-aligned, security-focused or ITIL-based operating environments. Who You Are You're customer-focused, proactive and confident building trusted relationships. You're organised, curious, and committed to continuous learning in a fast-moving Microsoft cloud landscape. You're collaborative, adaptable and comfortable working with both technical and non-technical audiences. We reserve the right to close this advert early if we are in receipt of sufficient applications for this position. Equality, diversity and inclusion: Converge maintains an equality, diversity and inclusion policy to support this approach. To discuss any reasonable adjustment or request a paper based application form as an alternative, please contact People Operations.
Overview dunnhumby is the global leader in Customer Data Science, partnering with the world's most ambitious retailers and brands to put the customer at the heart of every decision. We combine deep insight, advanced technology, and close collaboration to help our clients grow, innovate, and deliver measurable value for their customers. dunnhumby employs nearly 2,500 experts in offices throughout Europe, Asia, Africa, and the Americas working for transformative, iconic brands such as Tesco, Coca-Cola, Nestlé, Unilever and Metro. Key Responsibilities Microsoft 365 E5 Full-Stack Service: Own and continuously improve the Microsoft 365 E5 service stack across Exchange Online, SharePoint Online, Microsoft Teams, OneDrive, Entra ID, Intune, Defender, Purview and Power Platform services. Act as a full-stack Microsoft 365 engineer, translating business requirements into secure, scalable and supportable workplace technology solutions. Design, configure and support identity, access and governance controls across Entra ID, Conditional Access, MFA, privileged access, lifecycle management and group-based access models. Manage endpoint and device services across Intune, Windows Autopilot, Windows 11, macOS, application deployment, configuration profiles, compliance policies and device lifecycle standards. Support Microsoft Defender capabilities across endpoint security, vulnerability management, attack surface reduction, device compliance and security operations integration. Drive Microsoft Purview and compliance capabilities, including information protection, retention, data loss prevention, sensitivity labels, eDiscovery readiness and audit controls. Optimise collaboration and communication services across Teams, SharePoint, OneDrive, Exchange Online, Teams Rooms and meeting room technology to improve employee experience. Develop automation, reporting and operational controls using PowerShell, Microsoft Graph, Power Platform, Azure Automation, APIs and Infrastructure as Code practices. Provide third-line engineering support, root cause analysis, service improvement and technical leadership across the Microsoft 365 E5 workplace estate. Copilot & AI Enablement Responsibilities Copilot adoption: Drive Microsoft 365 Copilot adoption working with business teams to identify use cases, improve productivity and embed AI-enabled workflows. Copilot Studio agents: Build, manage and improve Copilot Studio agents for business workflows, including API integrations and reusable automation patterns. AI governance: Ensure AI solutions align with enterprise standards, security requirements, data grounding principles, responsible AI practices and compliance expectations. Reporting and cost controls: Build Power BI dashboards and provide actionable insights across Copilot adoption, agent usage, AI token consumption, platform value and cost controls. Training and enablement: Grow the AI champions community, deliver monthly lunch-and-learn sessions, develop prompt frameworks and support wider adoption of Copilot features. Skills & Experience Microsoft 365 E5: 7 to 8 years of strong experience across the Microsoft 365 ecosystem, including Exchange Online, SharePoint Online, Microsoft Teams, OneDrive, Entra ID, Intune and core E5 services. Endpoint management: Strong experience managing Windows 11, macOS, Kandji. Intune, Autopilot, application deployment, configuration policies and device compliance. Automation and engineering: pro-level scripting, automation, application packaging and repeatable engineering practices, with the ability to simplify manual processes and improve operational consistency. AI and Copilot: Strong experience with Microsoft 365 Copilot, Copilot Studio, AI solution design, deployment, monitoring and business adoption, including exposure to broader AI vendor platforms. DevOps and delivery: Experience working with DevOps environments, CI/CD pipelines, controlled release practices and code-led configuration management. Security and compliance: Good grounding in endpoint security, patching, vulnerability management, compliance controls and Microsoft Purview capabilities. Stakeholder engagement: Strong communication skills, with the ability to work confidently with technical and non-technical audiences and maintain a clear delivery mindset. Preferred Certifications AZ-104 - Azure Administrator Associate MD-102 - Endpoint Administrator M S-102 - Microsoft 365 Administrator SC-200 / SC-300 - Security & Identity
20/07/2026
Full time
Overview dunnhumby is the global leader in Customer Data Science, partnering with the world's most ambitious retailers and brands to put the customer at the heart of every decision. We combine deep insight, advanced technology, and close collaboration to help our clients grow, innovate, and deliver measurable value for their customers. dunnhumby employs nearly 2,500 experts in offices throughout Europe, Asia, Africa, and the Americas working for transformative, iconic brands such as Tesco, Coca-Cola, Nestlé, Unilever and Metro. Key Responsibilities Microsoft 365 E5 Full-Stack Service: Own and continuously improve the Microsoft 365 E5 service stack across Exchange Online, SharePoint Online, Microsoft Teams, OneDrive, Entra ID, Intune, Defender, Purview and Power Platform services. Act as a full-stack Microsoft 365 engineer, translating business requirements into secure, scalable and supportable workplace technology solutions. Design, configure and support identity, access and governance controls across Entra ID, Conditional Access, MFA, privileged access, lifecycle management and group-based access models. Manage endpoint and device services across Intune, Windows Autopilot, Windows 11, macOS, application deployment, configuration profiles, compliance policies and device lifecycle standards. Support Microsoft Defender capabilities across endpoint security, vulnerability management, attack surface reduction, device compliance and security operations integration. Drive Microsoft Purview and compliance capabilities, including information protection, retention, data loss prevention, sensitivity labels, eDiscovery readiness and audit controls. Optimise collaboration and communication services across Teams, SharePoint, OneDrive, Exchange Online, Teams Rooms and meeting room technology to improve employee experience. Develop automation, reporting and operational controls using PowerShell, Microsoft Graph, Power Platform, Azure Automation, APIs and Infrastructure as Code practices. Provide third-line engineering support, root cause analysis, service improvement and technical leadership across the Microsoft 365 E5 workplace estate. Copilot & AI Enablement Responsibilities Copilot adoption: Drive Microsoft 365 Copilot adoption working with business teams to identify use cases, improve productivity and embed AI-enabled workflows. Copilot Studio agents: Build, manage and improve Copilot Studio agents for business workflows, including API integrations and reusable automation patterns. AI governance: Ensure AI solutions align with enterprise standards, security requirements, data grounding principles, responsible AI practices and compliance expectations. Reporting and cost controls: Build Power BI dashboards and provide actionable insights across Copilot adoption, agent usage, AI token consumption, platform value and cost controls. Training and enablement: Grow the AI champions community, deliver monthly lunch-and-learn sessions, develop prompt frameworks and support wider adoption of Copilot features. Skills & Experience Microsoft 365 E5: 7 to 8 years of strong experience across the Microsoft 365 ecosystem, including Exchange Online, SharePoint Online, Microsoft Teams, OneDrive, Entra ID, Intune and core E5 services. Endpoint management: Strong experience managing Windows 11, macOS, Kandji. Intune, Autopilot, application deployment, configuration policies and device compliance. Automation and engineering: pro-level scripting, automation, application packaging and repeatable engineering practices, with the ability to simplify manual processes and improve operational consistency. AI and Copilot: Strong experience with Microsoft 365 Copilot, Copilot Studio, AI solution design, deployment, monitoring and business adoption, including exposure to broader AI vendor platforms. DevOps and delivery: Experience working with DevOps environments, CI/CD pipelines, controlled release practices and code-led configuration management. Security and compliance: Good grounding in endpoint security, patching, vulnerability management, compliance controls and Microsoft Purview capabilities. Stakeholder engagement: Strong communication skills, with the ability to work confidently with technical and non-technical audiences and maintain a clear delivery mindset. Preferred Certifications AZ-104 - Azure Administrator Associate MD-102 - Endpoint Administrator M S-102 - Microsoft 365 Administrator SC-200 / SC-300 - Security & Identity
Senior Software Engineer, Core (C++)Applylocations: Cambridge, Cambridgeshire, United Kingdomtime type: Full timeposted on: Posted Todayjob requisition id: Senior Software Engineer, Core (C++) Description - HP Wolf Security is changing the future of endpoint security through delivering secure PCs with advanced hardware-enforced security features. We are growing the R&D team in Cambridge, UK and we're looking for an experienced software developer to join the HP Wolf Security R&D team. You will be designing and developing our innovative security solution based on micro-virtualization and contributing to new features and products. To see what our engineering teams are working on, check out our technical blogs: will be working on solving some challenging problems in letting our customers get the most out of our nifty yet secure micro-virtual machines (micro-VMs). You will be working in a small team which is responsible for ensuring that complex Windows applications run seamlessly inside these micro-VMs .We offer a comprehensive benefits package and career development opportunities. Responsibilities for the Software Engineer: Developing and maintaining core features of an enterprise class product that's deployed on millions of desktops Improving reliability and performance of the product Writing unit tests and automated tests Working in a fast-paced environment that iterates and evolves rapidly Requirements for the Software Engineer: Programming experience in C or C++ Experience with development on the Windows platform Bachelor's degree in Computer Science or related technical field or equivalent A great Software Engineer will have exposure to the following: Familiarity with .NET and PowerShell Location & working model This role is based in HP's Cambridge office under a hybrid working arrangement, with a minimum requirement to be onsite three days per week. As a people focused senior role, regular in person collaboration is encouraged.HP has invested in a new, modern site, including ergonomic workspaces and well stocked kitchen facilities that included a wide selection of coffee. About you: You're out to reimagine and reinvent what's possible- in your career as well as the world around you. So are we. We love taking on tough challenges, disrupting the status quo, and creating what's next. We're in search of talented people who are inspired by big challenges, driven to learn and grow, and dedicated to making a meaningful difference. Why join HP Wolf Security HP Wolf Security is central to HP's strategy in the PC market, with security designed into hardware, firmware, and software. This integrated approach enables HP to differentiate through built in, enterprise grade protection and manageability. This role sits at the heart of that strategy, helping deliver the tools that allow customers to deploy, manage, and trust secure PCs at scale.The primary focus of the HP Wolf Security team is developing cyber security solutions to protect our customers devices and data. The digital threat landscape is ever-changing and as the cyber security industry reacts and adapts to changes, so too do the malware authors. Our unique micro-virtualization technology ensures that customers are protected from even the most bleeding edge cyber security threats. That micro-virtualization technology forms a key pillar in a wider cyber security suite that we're actively developing. Our history: Inspired by the isolation principles of traditional virtualization, our team known then as Bromium, created a game-changing technology called micro-virtualization to protect end users against advanced malware. Every task the user performs, such as opening a document or clicking on a link, is isolated in its own micro-VM, with access to just the resources required for that task, and existing just for the life of the task. Protection is thus provided through isolation, without relying on detection, hence reliably defending the user from polymorphic and even zero-day malware. Bromium was acquired by HP Inc on 19 September 2019 forming HP Wolf Security. For more information, visit our website: Job - Software Schedule - Full time Shift - No shift premium (United Kingdom) Travel - Relocation - Equal Opportunity Employer (EEO) - HP, Inc. provides equal employment opportunity to all employees and prospective employees, without regard to race, color, religion, sex, national origin, ancestry, citizenship, sexual orientation, age, disability, or status as a protected veteran, marital status, familial status, physical or mental disability, medical condition, pregnancy, genetic predisposition or carrier status, uniformed service status, political affiliation or any other characteristic protected by applicable national, federal, state, and local law(s).Please be assured that you will not be subject to any adverse treatment if you choose to disclose the information requested. This information is provided voluntarily. The information obtained will be kept in strict confidence.For more information, review HP's EEO Policy or read about your rights as an applicant under the law here: "Know Your Rights: Workplace Discrimination is Illegal"
20/07/2026
Full time
Senior Software Engineer, Core (C++)Applylocations: Cambridge, Cambridgeshire, United Kingdomtime type: Full timeposted on: Posted Todayjob requisition id: Senior Software Engineer, Core (C++) Description - HP Wolf Security is changing the future of endpoint security through delivering secure PCs with advanced hardware-enforced security features. We are growing the R&D team in Cambridge, UK and we're looking for an experienced software developer to join the HP Wolf Security R&D team. You will be designing and developing our innovative security solution based on micro-virtualization and contributing to new features and products. To see what our engineering teams are working on, check out our technical blogs: will be working on solving some challenging problems in letting our customers get the most out of our nifty yet secure micro-virtual machines (micro-VMs). You will be working in a small team which is responsible for ensuring that complex Windows applications run seamlessly inside these micro-VMs .We offer a comprehensive benefits package and career development opportunities. Responsibilities for the Software Engineer: Developing and maintaining core features of an enterprise class product that's deployed on millions of desktops Improving reliability and performance of the product Writing unit tests and automated tests Working in a fast-paced environment that iterates and evolves rapidly Requirements for the Software Engineer: Programming experience in C or C++ Experience with development on the Windows platform Bachelor's degree in Computer Science or related technical field or equivalent A great Software Engineer will have exposure to the following: Familiarity with .NET and PowerShell Location & working model This role is based in HP's Cambridge office under a hybrid working arrangement, with a minimum requirement to be onsite three days per week. As a people focused senior role, regular in person collaboration is encouraged.HP has invested in a new, modern site, including ergonomic workspaces and well stocked kitchen facilities that included a wide selection of coffee. About you: You're out to reimagine and reinvent what's possible- in your career as well as the world around you. So are we. We love taking on tough challenges, disrupting the status quo, and creating what's next. We're in search of talented people who are inspired by big challenges, driven to learn and grow, and dedicated to making a meaningful difference. Why join HP Wolf Security HP Wolf Security is central to HP's strategy in the PC market, with security designed into hardware, firmware, and software. This integrated approach enables HP to differentiate through built in, enterprise grade protection and manageability. This role sits at the heart of that strategy, helping deliver the tools that allow customers to deploy, manage, and trust secure PCs at scale.The primary focus of the HP Wolf Security team is developing cyber security solutions to protect our customers devices and data. The digital threat landscape is ever-changing and as the cyber security industry reacts and adapts to changes, so too do the malware authors. Our unique micro-virtualization technology ensures that customers are protected from even the most bleeding edge cyber security threats. That micro-virtualization technology forms a key pillar in a wider cyber security suite that we're actively developing. Our history: Inspired by the isolation principles of traditional virtualization, our team known then as Bromium, created a game-changing technology called micro-virtualization to protect end users against advanced malware. Every task the user performs, such as opening a document or clicking on a link, is isolated in its own micro-VM, with access to just the resources required for that task, and existing just for the life of the task. Protection is thus provided through isolation, without relying on detection, hence reliably defending the user from polymorphic and even zero-day malware. Bromium was acquired by HP Inc on 19 September 2019 forming HP Wolf Security. For more information, visit our website: Job - Software Schedule - Full time Shift - No shift premium (United Kingdom) Travel - Relocation - Equal Opportunity Employer (EEO) - HP, Inc. provides equal employment opportunity to all employees and prospective employees, without regard to race, color, religion, sex, national origin, ancestry, citizenship, sexual orientation, age, disability, or status as a protected veteran, marital status, familial status, physical or mental disability, medical condition, pregnancy, genetic predisposition or carrier status, uniformed service status, political affiliation or any other characteristic protected by applicable national, federal, state, and local law(s).Please be assured that you will not be subject to any adverse treatment if you choose to disclose the information requested. This information is provided voluntarily. The information obtained will be kept in strict confidence.For more information, review HP's EEO Policy or read about your rights as an applicant under the law here: "Know Your Rights: Workplace Discrimination is Illegal"
The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands on technical role focused on identifying, analysing, and responding to cyber threats across the client's environment, working closely with Security Engineering and broader security stakeholders. This role will be a part of a 24/7 team and cover one of two shifts: Sunday-Thursday 9:00 am-5:00 pm GMT or Tuesday-Saturday 9:00 am-5:00 pm GMT Responsibilities Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems. Support incident response activities including analysis, containment, remediation, and documentation. Execute established incident response playbooks and contribute to their continuous improvement. Perform threat hunting activities to identify potential compromises and gaps in detection coverage. Leverage threat intelligence to inform investigations and detection tuning. Collaborate with Security Engineering to tune detection logic and improve security controls. Produce clear, concise incident reports and support root cause analysis and remediation efforts. Support on call rotations and escalation processes as part of a 24/7 detection and response capability. Qualifications 3-5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense. Hands on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike). Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST. Familiarity with threat hunting, malware analysis, or forensic investigation techniques. Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred. Strong analytical and problem solving skills, with the ability to communicate technical findings clearly. Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.
20/07/2026
Full time
The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands on technical role focused on identifying, analysing, and responding to cyber threats across the client's environment, working closely with Security Engineering and broader security stakeholders. This role will be a part of a 24/7 team and cover one of two shifts: Sunday-Thursday 9:00 am-5:00 pm GMT or Tuesday-Saturday 9:00 am-5:00 pm GMT Responsibilities Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems. Support incident response activities including analysis, containment, remediation, and documentation. Execute established incident response playbooks and contribute to their continuous improvement. Perform threat hunting activities to identify potential compromises and gaps in detection coverage. Leverage threat intelligence to inform investigations and detection tuning. Collaborate with Security Engineering to tune detection logic and improve security controls. Produce clear, concise incident reports and support root cause analysis and remediation efforts. Support on call rotations and escalation processes as part of a 24/7 detection and response capability. Qualifications 3-5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense. Hands on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike). Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST. Familiarity with threat hunting, malware analysis, or forensic investigation techniques. Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred. Strong analytical and problem solving skills, with the ability to communicate technical findings clearly. Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.
10am - 7pm shift The Service Desk Engineer serves as the primary technical point of contact for RFA's global client base, delivering exceptional white-glove support across endpoint, cloud, security, and collaboration technologies. This role is responsible for providing first and second-level technical support, resolving incidents, fulfilling service requests, and maintaining high levels of customer satisfaction while supporting a diverse portfolio of managed IT services. The Service Desk Engineer utilizes modern troubleshooting methodologies, automation tools, AI-assisted support platforms, and cybersecurity best practices to efficiently resolve issues and improve the client experience. Successful candidates demonstrate strong technical aptitude, exceptional communication skills, a customer-first mindset, and the ability to thrive in a fast-paced Managed Service Provider (MSP) environment. Responsibilities Utilize AI-enabled support tools and knowledge platforms to improve incident resolution times and service quality. Support Microsoft 365, Entra ID, Intune, Defender, Teams, SharePoint Online, and related cloud services. Assist with endpoint management, mobile device management (MDM), and device compliance monitoring. Respond to security-related incidents including phishing reports, compromised accounts, malware alerts, and suspicious user activity. Maintain accurate documentation, knowledge base articles, standard operating procedures, and technical runbooks. Monitor service queues and proactively identify trends, recurring issues, and opportunities for automation. Participate in onboarding and offboarding processes including provisioning, deprovisioning, access reviews, and asset management. Support hybrid and remote workforce technologies including VPN, virtual desktops, collaboration platforms, and cloud applications. Meet established service metrics including SLA attainment, ticket quality, first-contact resolution, and customer satisfaction goals. Participate in after-hours support, escalation rotations, and major incident response activities as required. All other responsibilities delegated by the Management team. May be asked to provide on-site technical support to system users by troubleshooting issues and working directly with vendors to resolve major hardware and software problems. Qualifications Associate's or Bachelor's degree in Information Technology, Computer Science, or related field, or equivalent professional experience. 2+ years of experience in a Service Desk, Help Desk, Technical Support, or Managed Services environment. Strong knowledge of Microsoft 365, Entra ID (Azure AD), Exchange Online, Intune, Teams, SharePoint Online, and Active Directory. Experience supporting Windows 11, macOS, iOS, and Android platforms. Working knowledge of cybersecurity concepts including MFA, Conditional Access, endpoint protection, phishing prevention, and identity management. Familiarity with Azure, AWS, virtual desktop infrastructure (VDI), and SaaS application administration. Experience with ITSM platforms such as ConnectWise, ServiceNow, HaloPSA, Autotask, or similar systems. Knowledge of ITIL service management principles. Strong written and verbal communication skills with the ability to explain technical concepts to non-technical users. Preferred Certifications: CompTIA A+, Network+, Security+, ITIL Foundation, Microsoft Fundamentals, AZ-900, or equivalent. Experience supporting financial services, hedge funds, legal firms, or highly regulated industries preferred. Preferred Qualifications & Development Potential Associate degree in Information Technology, Computer Science, or related field, or equivalent professional experience. 1-3 years of experience in a Service Desk, Help Desk, Technical Support, or Managed Services environment. Foundational IT certifications such as CompTIA A+, Network+, Security+, Microsoft Fundamentals, or equivalent coursework demonstrating core technical knowledge. Demonstrated hands on technical experience through internships, help desk roles, school IT programs, volunteer IT work, home labs, or other practical troubleshooting environments. Exposure to scripting, automation, or technical problem solving through coursework, personal projects, or professional experience. Basic familiarity with PowerShell, Python, batch scripting, or other automation tools preferred. Strong understanding of Microsoft Windows, Microsoft 365, Active Directory/Entra ID, endpoint management, and common business productivity applications. Excellent customer service, communication, documentation, and troubleshooting skills. Ability to learn new technologies quickly and adapt in a fast-paced MSP environment. Nice-to-Have Qualifications Experience supporting Microsoft 365, Entra ID, Intune, Azure, AWS, or similar cloud platforms. Experience with ITSM/ticketing systems such as ConnectWise, HaloPSA, Autotask, or ServiceNow. Knowledge of cybersecurity fundamentals including MFA, endpoint security, phishing awareness, and identity management. ITIL Foundation, Microsoft, CompTIA, or cloud certifications. Experience supporting financial services, legal, healthcare, or other regulated industries. AI Competencies Demonstrates familiarity with AI powered productivity tools such as Microsoft Copilot, ChatGPT, or approved company AI platforms. Uses AI tools to assist with troubleshooting, documentation, knowledge searches, and drafting communications while validating accuracy. Understands basic AI concepts, limitations, risks, and data privacy requirements. Follows company policies regarding the secure and responsible use of AI technologies. Leverages AI generated recommendations to improve ticket resolution efficiency and customer service quality. Demonstrates curiosity and willingness to learn emerging AI technologies relevant to IT support.
20/07/2026
Full time
10am - 7pm shift The Service Desk Engineer serves as the primary technical point of contact for RFA's global client base, delivering exceptional white-glove support across endpoint, cloud, security, and collaboration technologies. This role is responsible for providing first and second-level technical support, resolving incidents, fulfilling service requests, and maintaining high levels of customer satisfaction while supporting a diverse portfolio of managed IT services. The Service Desk Engineer utilizes modern troubleshooting methodologies, automation tools, AI-assisted support platforms, and cybersecurity best practices to efficiently resolve issues and improve the client experience. Successful candidates demonstrate strong technical aptitude, exceptional communication skills, a customer-first mindset, and the ability to thrive in a fast-paced Managed Service Provider (MSP) environment. Responsibilities Utilize AI-enabled support tools and knowledge platforms to improve incident resolution times and service quality. Support Microsoft 365, Entra ID, Intune, Defender, Teams, SharePoint Online, and related cloud services. Assist with endpoint management, mobile device management (MDM), and device compliance monitoring. Respond to security-related incidents including phishing reports, compromised accounts, malware alerts, and suspicious user activity. Maintain accurate documentation, knowledge base articles, standard operating procedures, and technical runbooks. Monitor service queues and proactively identify trends, recurring issues, and opportunities for automation. Participate in onboarding and offboarding processes including provisioning, deprovisioning, access reviews, and asset management. Support hybrid and remote workforce technologies including VPN, virtual desktops, collaboration platforms, and cloud applications. Meet established service metrics including SLA attainment, ticket quality, first-contact resolution, and customer satisfaction goals. Participate in after-hours support, escalation rotations, and major incident response activities as required. All other responsibilities delegated by the Management team. May be asked to provide on-site technical support to system users by troubleshooting issues and working directly with vendors to resolve major hardware and software problems. Qualifications Associate's or Bachelor's degree in Information Technology, Computer Science, or related field, or equivalent professional experience. 2+ years of experience in a Service Desk, Help Desk, Technical Support, or Managed Services environment. Strong knowledge of Microsoft 365, Entra ID (Azure AD), Exchange Online, Intune, Teams, SharePoint Online, and Active Directory. Experience supporting Windows 11, macOS, iOS, and Android platforms. Working knowledge of cybersecurity concepts including MFA, Conditional Access, endpoint protection, phishing prevention, and identity management. Familiarity with Azure, AWS, virtual desktop infrastructure (VDI), and SaaS application administration. Experience with ITSM platforms such as ConnectWise, ServiceNow, HaloPSA, Autotask, or similar systems. Knowledge of ITIL service management principles. Strong written and verbal communication skills with the ability to explain technical concepts to non-technical users. Preferred Certifications: CompTIA A+, Network+, Security+, ITIL Foundation, Microsoft Fundamentals, AZ-900, or equivalent. Experience supporting financial services, hedge funds, legal firms, or highly regulated industries preferred. Preferred Qualifications & Development Potential Associate degree in Information Technology, Computer Science, or related field, or equivalent professional experience. 1-3 years of experience in a Service Desk, Help Desk, Technical Support, or Managed Services environment. Foundational IT certifications such as CompTIA A+, Network+, Security+, Microsoft Fundamentals, or equivalent coursework demonstrating core technical knowledge. Demonstrated hands on technical experience through internships, help desk roles, school IT programs, volunteer IT work, home labs, or other practical troubleshooting environments. Exposure to scripting, automation, or technical problem solving through coursework, personal projects, or professional experience. Basic familiarity with PowerShell, Python, batch scripting, or other automation tools preferred. Strong understanding of Microsoft Windows, Microsoft 365, Active Directory/Entra ID, endpoint management, and common business productivity applications. Excellent customer service, communication, documentation, and troubleshooting skills. Ability to learn new technologies quickly and adapt in a fast-paced MSP environment. Nice-to-Have Qualifications Experience supporting Microsoft 365, Entra ID, Intune, Azure, AWS, or similar cloud platforms. Experience with ITSM/ticketing systems such as ConnectWise, HaloPSA, Autotask, or ServiceNow. Knowledge of cybersecurity fundamentals including MFA, endpoint security, phishing awareness, and identity management. ITIL Foundation, Microsoft, CompTIA, or cloud certifications. Experience supporting financial services, legal, healthcare, or other regulated industries. AI Competencies Demonstrates familiarity with AI powered productivity tools such as Microsoft Copilot, ChatGPT, or approved company AI platforms. Uses AI tools to assist with troubleshooting, documentation, knowledge searches, and drafting communications while validating accuracy. Understands basic AI concepts, limitations, risks, and data privacy requirements. Follows company policies regarding the secure and responsible use of AI technologies. Leverages AI generated recommendations to improve ticket resolution efficiency and customer service quality. Demonstrates curiosity and willingness to learn emerging AI technologies relevant to IT support.
Infrastructure & Security Engineer Location: Central London (Office Based) Salary: 50,000 - 55,000 Contract: Permanent, Full-Time We're working with a well-established organisation looking to strengthen its technology function with the addition of an Infrastructure & Security Engineer. This role offers the opportunity to take ownership across infrastructure, cloud, networking, and security, supporting a modern multi site environment spanning head office, operational locations, and customer-facing technology platforms. You'll work closely with both technical and non-technical stakeholders while contributing to the delivery of secure, resilient, and scalable infrastructure solutions that underpin critical business operations. Key Responsibilities Provide 2nd and 3rd line support across infrastructure and security technologies Maintain and optimise Microsoft environments including Azure, Microsoft 365, Entra ID, Intune, Windows Server, and Active Directory Support and enhance virtualised infrastructure using VMware technologies Manage and improve network infrastructure, including switching, routing, wireless, and firewall technologies Lead vulnerability management, security remediation, and compliance initiatives Support identity and access management, endpoint security, and threat protection activities Contribute to disaster recovery planning, testing, and business continuity initiatives Work with internal teams and third-party suppliers to deliver infrastructure improvements and security enhancements Support and secure end-user technologies across corporate, retail, and operational environments, including device deployment through Intune and Autopilot Create and maintain technical documentation, standards, and operational procedures Support ongoing infrastructure modernisation and continuous improvement projects. Required Experience Experience in an Infrastructure Engineer, Infrastructure Analyst, Systems Engineer, or similar role Strong Microsoft infrastructure experience including Windows Server, Active Directory, Microsoft 365, Azure, Entra ID, and Intune Experience supporting virtualised environments using VMware technologies Good understanding of networking principles including TCP/IP, switching, routing, wireless networking, and firewalls Experience with vulnerability management, endpoint security, and patch management Knowledge of identity and access management, including MFA and role-based access controls Experience supporting backup, disaster recovery, and business continuity processes Strong troubleshooting, analytical, and problem-solving skills Ability to communicate effectively with both technical and business stakeholders Desirable Experience Exposure to Microsoft Defender, Sentinel, or other security tooling Experience working within PCI-DSS, NIST, ISO 27001, or similar compliance frameworks PowerShell scripting experience Experience with Cisco networking technologies and Meraki environments Experience supporting retail, hospitality, leisure, or other customer-facing multi-site environments Knowledge of Zero Trust security principles Experience with monitoring platforms such as SolarWinds, PRTG, or similar Microsoft, Azure, or Cisco certifications Exposure to automation tools such as Azure CLI or Terraform. What's on Offer Competitive salary and benefits package Exposure to modern cloud, infrastructure, and security technologies Opportunity to work on a variety of infrastructure transformation and security projects Exposure to a fast-paced, customer-focused environment where technology plays a critical role in day-to-day operations Ongoing learning and professional development opportunities Supportive and collaborative team environment Opportunity to influence technical direction and infrastructure strategy Clear opportunities for career progression This is an excellent opportunity for an Infrastructure & Security Engineer looking to further develop their skills while working across a broad technology estate within a forward-thinking organisation that continues to invest heavily in infrastructure, cyber security, and the technology that supports a complex multi-site operation.
20/07/2026
Full time
Infrastructure & Security Engineer Location: Central London (Office Based) Salary: 50,000 - 55,000 Contract: Permanent, Full-Time We're working with a well-established organisation looking to strengthen its technology function with the addition of an Infrastructure & Security Engineer. This role offers the opportunity to take ownership across infrastructure, cloud, networking, and security, supporting a modern multi site environment spanning head office, operational locations, and customer-facing technology platforms. You'll work closely with both technical and non-technical stakeholders while contributing to the delivery of secure, resilient, and scalable infrastructure solutions that underpin critical business operations. Key Responsibilities Provide 2nd and 3rd line support across infrastructure and security technologies Maintain and optimise Microsoft environments including Azure, Microsoft 365, Entra ID, Intune, Windows Server, and Active Directory Support and enhance virtualised infrastructure using VMware technologies Manage and improve network infrastructure, including switching, routing, wireless, and firewall technologies Lead vulnerability management, security remediation, and compliance initiatives Support identity and access management, endpoint security, and threat protection activities Contribute to disaster recovery planning, testing, and business continuity initiatives Work with internal teams and third-party suppliers to deliver infrastructure improvements and security enhancements Support and secure end-user technologies across corporate, retail, and operational environments, including device deployment through Intune and Autopilot Create and maintain technical documentation, standards, and operational procedures Support ongoing infrastructure modernisation and continuous improvement projects. Required Experience Experience in an Infrastructure Engineer, Infrastructure Analyst, Systems Engineer, or similar role Strong Microsoft infrastructure experience including Windows Server, Active Directory, Microsoft 365, Azure, Entra ID, and Intune Experience supporting virtualised environments using VMware technologies Good understanding of networking principles including TCP/IP, switching, routing, wireless networking, and firewalls Experience with vulnerability management, endpoint security, and patch management Knowledge of identity and access management, including MFA and role-based access controls Experience supporting backup, disaster recovery, and business continuity processes Strong troubleshooting, analytical, and problem-solving skills Ability to communicate effectively with both technical and business stakeholders Desirable Experience Exposure to Microsoft Defender, Sentinel, or other security tooling Experience working within PCI-DSS, NIST, ISO 27001, or similar compliance frameworks PowerShell scripting experience Experience with Cisco networking technologies and Meraki environments Experience supporting retail, hospitality, leisure, or other customer-facing multi-site environments Knowledge of Zero Trust security principles Experience with monitoring platforms such as SolarWinds, PRTG, or similar Microsoft, Azure, or Cisco certifications Exposure to automation tools such as Azure CLI or Terraform. What's on Offer Competitive salary and benefits package Exposure to modern cloud, infrastructure, and security technologies Opportunity to work on a variety of infrastructure transformation and security projects Exposure to a fast-paced, customer-focused environment where technology plays a critical role in day-to-day operations Ongoing learning and professional development opportunities Supportive and collaborative team environment Opportunity to influence technical direction and infrastructure strategy Clear opportunities for career progression This is an excellent opportunity for an Infrastructure & Security Engineer looking to further develop their skills while working across a broad technology estate within a forward-thinking organisation that continues to invest heavily in infrastructure, cyber security, and the technology that supports a complex multi-site operation.
Manchester, Glasgow, London or Newbury/Hybrid A bit about us At Gamma, we're a dynamic, forward-thinking team revolutionizing the way businesses connect and communicate. We provide voice, data, and mobile solutions to businesses across the UK, Germany, Spain, and the Benelux region. We're expanding rapidly to bring digital automation and Gamma-powered services to Enterprise, Public Sector and Small to medium businesses, both direct and through a growing network of channel partners. We move fast with a start up mindset, but we have the stability of a leading European business. Our team thrives on collaboration, innovation, and the belief that diverse perspectives make us stronger. Join us, and you'll have the opportunity to make an impact, grow your career, and be part of a company that celebrates inclusivity and fresh ideas. Who are we looking for? We are seeking a skilled and client focused Security Engineer with strong expertise in Vulnerability Management and Network Security engineering. This role operates within a managed service provider environment, delivering security services to enterprise clients, with a primary focus on risk based vulnerability management alongside network security, firewall optimisation and access control. The successful candidate will be responsible for identifying, assessing, prioritising and driving remediation of vulnerabilities across complex enterprise environments. In addition, they will contribute to strengthening overall cyber resilience by aligning vulnerability management with Managed Detection and Response (MDR) operations, supporting Secure Access Service Edge (SASE) frameworks and advancing Zero Trust security models across network, identity and access control layers. This is a hands on engineering role requiring deep technical expertise across vulnerability management and network security, combined with strong stakeholder engagement. The role ensures security risks are proactively reduced, controls are optimised and remediation is delivered in line with contractual SLAs and cyber security best practices. What will you be doing day to day? Key Responsibilities Vulnerability Management Services Deliver end to end vulnerability management services to clients, including discovery, assessment, prioritisation, reporting and remediation tracking Operate and maintain vulnerability scanning tools (e.g. Qualys, Nessus, Rapid7) across multiple client environments Perform regular vulnerability scans, validation and re testing to ensure remediation effectiveness Analyse vulnerability data, eliminate false positives and provide actionable remediation guidance tailored to client environments Prioritise vulnerabilities using risk based methodologies (CVSS, exploitability, business impact, threat intelligence) Track remediation activities and ensure closure within agreed SLAs and service metrics Produce client facing reports, dashboards and service reviews, highlighting risk posture, trends and key improvement areas Act as a trusted advisor to clients, providing best practice recommendations on vulnerability and risk reduction strategies Security Engineering & Detection Support deployment and optimisation of Microsoft Sentinel and SIEM/XDR platforms Contribute to detection engineering (use case development, rule tuning, alert optimisation) Onboard and integrate telemetry across network, endpoint, cloud and identity sources Support threat detection across SIEM, NDR and identity platforms Collaborate with SOC teams to improve detection coverage and reduce false positives Align vulnerability insights with MDR workflows and threat detection use cases Network Security & Remediation Identify, analyse and manage network and system vulnerabilities across enterprise environments Collaborate with infrastructure, cloud and application teams to drive remediation activities to completion Troubleshoot and resolve network/security issues linked to vulnerabilities and access controls Support secure network architecture and ensure adherence to security and compliance standards Support SASE architectures (e.g. Prisma, Cisco Secure) and secure connectivity models Contribute to Zero Trust implementation, including least privilege and identity controls Strengthen security posture across hybrid environments (network, cloud, SaaS, identity) Support pre sales activities, including solution design and vulnerability management offerings Provide SME input into RFPs, bids and technical workshops Assist with onboarding clients and transitioning services into BAU Build strong client relationships and act as a trusted technical advisor Support service adoption and continuous improvement initiatives Governance, Reporting & Documentation Maintain accurate records of vulnerabilities, remediation plans and audit evidence Support client audits, compliance requirements and security assessments Contribute to service improvement initiatives, automation and process optimisation Ensure adherence to ITIL based service management practices where applicable Breach Attack Simulation (BAS) Design, implement and maintain BAS scenarios to continuously validate the effectiveness of security controls across the enterprise Configure and operate BAS platforms to simulate real world threat actor techniques (MITRE ATT&CK aligned) and identify control gaps Analyse BAS results to prioritise vulnerabilities, misconfigurations and detection gaps, feeding findings into the vulnerability management lifecycle What you'll need: Strong experience in delivering vulnerability management services, ideally within a managed service or consultancy environment Deep understanding of vulnerability lifecycle management (discovery / assessment / remediation / validation / reporting) Hands on experience with Tufin (SecureTrack / SecureChange) or similar tools such as Palo Alto Panorama or Cisco Defense Orchestrator Proficiency with vulnerability scanning tools (Qualys, Nessus, Rapid7) Solid knowledge of network security principles (firewalls, VPNs, segmentation, protocols) Experience working with client stakeholders and managing competing priorities Ability to translate technical vulnerabilities into business risk and remediation actions Strong analytical, troubleshooting and communication skills Nice to haves Certifications such as CCNA / Security+ / CEH / CISSP (or working towards) Experience in multi client or managed security service provider (MSSP) environments Familiarity with multi vendor firewalls (Cisco, Palo Alto, Check Point) Knowledge of compliance frameworks (ISO 27001, NIST, CIS, PCI DSS) Exposure to risk based vulnerability management and threat intelligence integration Understanding of ITIL service delivery and SLA driven environments Experience with SASE, Zero Trust, MDR/XDR platforms Experience with RSA Authentication Manager or similar IAM solutions What do we offer you? At Gamma, we believe in work life balance, which is why we offer 25 days of annual leave, plus an extra day off for your birthday. Giving back is important to us, so we also provide a volunteer day to support a charity that matters to you. Family matters, too. With enhanced maternity and paternity pay and childcare vouchers, we're here to support you as a parent and help you thrive in your career. We care about your future, so our pension plan helps you save for the years ahead with contributions of 4.59% from Gamma, alongside your own contributions. Your well being is our priority. We offer group income protection and life assurance (four times your salary) to ensure peace of mind for you and your loved ones. We want you to share in our success. That's why we offer tax efficient share save and share incentive plans, giving you the opportunity to benefit from Gamma's growth. We're committed to health, both physical and mental, and provide private medical insurance through Vitality, which extends to your immediate family. And, because we care about the environment, we offer an Electric Vehicle scheme through Octopus and a Cycle to Work scheme, making it easier to get around sustainably. A few things to note Unfortunately, we can't offer visa sponsorship or relocation support for this role. This role is hybrid but with 3 days a week onsite at either our Manchester, Glasgow, London or Newbury sites. If you feel you could be a good fit for Gamma but do not think that you meet all the requirements, we still encourage you to apply as you could be the person that we are looking for! Gamma is an equal opportunity employer. We care about inclusion and believe in having diverse teams where everyone can be their true authentic selves. We value each person and their range of backgrounds and actively encourage people from underrepresented backgrounds to apply. We don't discriminate based on any protected characteristics e.g., race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, marital status, disability or age. We are a family friendly employer with a culture based on trust, autonomy and flexibility to help you create a work life balance and enjoy working here at Gamma. . click apply for full job details
20/07/2026
Full time
Manchester, Glasgow, London or Newbury/Hybrid A bit about us At Gamma, we're a dynamic, forward-thinking team revolutionizing the way businesses connect and communicate. We provide voice, data, and mobile solutions to businesses across the UK, Germany, Spain, and the Benelux region. We're expanding rapidly to bring digital automation and Gamma-powered services to Enterprise, Public Sector and Small to medium businesses, both direct and through a growing network of channel partners. We move fast with a start up mindset, but we have the stability of a leading European business. Our team thrives on collaboration, innovation, and the belief that diverse perspectives make us stronger. Join us, and you'll have the opportunity to make an impact, grow your career, and be part of a company that celebrates inclusivity and fresh ideas. Who are we looking for? We are seeking a skilled and client focused Security Engineer with strong expertise in Vulnerability Management and Network Security engineering. This role operates within a managed service provider environment, delivering security services to enterprise clients, with a primary focus on risk based vulnerability management alongside network security, firewall optimisation and access control. The successful candidate will be responsible for identifying, assessing, prioritising and driving remediation of vulnerabilities across complex enterprise environments. In addition, they will contribute to strengthening overall cyber resilience by aligning vulnerability management with Managed Detection and Response (MDR) operations, supporting Secure Access Service Edge (SASE) frameworks and advancing Zero Trust security models across network, identity and access control layers. This is a hands on engineering role requiring deep technical expertise across vulnerability management and network security, combined with strong stakeholder engagement. The role ensures security risks are proactively reduced, controls are optimised and remediation is delivered in line with contractual SLAs and cyber security best practices. What will you be doing day to day? Key Responsibilities Vulnerability Management Services Deliver end to end vulnerability management services to clients, including discovery, assessment, prioritisation, reporting and remediation tracking Operate and maintain vulnerability scanning tools (e.g. Qualys, Nessus, Rapid7) across multiple client environments Perform regular vulnerability scans, validation and re testing to ensure remediation effectiveness Analyse vulnerability data, eliminate false positives and provide actionable remediation guidance tailored to client environments Prioritise vulnerabilities using risk based methodologies (CVSS, exploitability, business impact, threat intelligence) Track remediation activities and ensure closure within agreed SLAs and service metrics Produce client facing reports, dashboards and service reviews, highlighting risk posture, trends and key improvement areas Act as a trusted advisor to clients, providing best practice recommendations on vulnerability and risk reduction strategies Security Engineering & Detection Support deployment and optimisation of Microsoft Sentinel and SIEM/XDR platforms Contribute to detection engineering (use case development, rule tuning, alert optimisation) Onboard and integrate telemetry across network, endpoint, cloud and identity sources Support threat detection across SIEM, NDR and identity platforms Collaborate with SOC teams to improve detection coverage and reduce false positives Align vulnerability insights with MDR workflows and threat detection use cases Network Security & Remediation Identify, analyse and manage network and system vulnerabilities across enterprise environments Collaborate with infrastructure, cloud and application teams to drive remediation activities to completion Troubleshoot and resolve network/security issues linked to vulnerabilities and access controls Support secure network architecture and ensure adherence to security and compliance standards Support SASE architectures (e.g. Prisma, Cisco Secure) and secure connectivity models Contribute to Zero Trust implementation, including least privilege and identity controls Strengthen security posture across hybrid environments (network, cloud, SaaS, identity) Support pre sales activities, including solution design and vulnerability management offerings Provide SME input into RFPs, bids and technical workshops Assist with onboarding clients and transitioning services into BAU Build strong client relationships and act as a trusted technical advisor Support service adoption and continuous improvement initiatives Governance, Reporting & Documentation Maintain accurate records of vulnerabilities, remediation plans and audit evidence Support client audits, compliance requirements and security assessments Contribute to service improvement initiatives, automation and process optimisation Ensure adherence to ITIL based service management practices where applicable Breach Attack Simulation (BAS) Design, implement and maintain BAS scenarios to continuously validate the effectiveness of security controls across the enterprise Configure and operate BAS platforms to simulate real world threat actor techniques (MITRE ATT&CK aligned) and identify control gaps Analyse BAS results to prioritise vulnerabilities, misconfigurations and detection gaps, feeding findings into the vulnerability management lifecycle What you'll need: Strong experience in delivering vulnerability management services, ideally within a managed service or consultancy environment Deep understanding of vulnerability lifecycle management (discovery / assessment / remediation / validation / reporting) Hands on experience with Tufin (SecureTrack / SecureChange) or similar tools such as Palo Alto Panorama or Cisco Defense Orchestrator Proficiency with vulnerability scanning tools (Qualys, Nessus, Rapid7) Solid knowledge of network security principles (firewalls, VPNs, segmentation, protocols) Experience working with client stakeholders and managing competing priorities Ability to translate technical vulnerabilities into business risk and remediation actions Strong analytical, troubleshooting and communication skills Nice to haves Certifications such as CCNA / Security+ / CEH / CISSP (or working towards) Experience in multi client or managed security service provider (MSSP) environments Familiarity with multi vendor firewalls (Cisco, Palo Alto, Check Point) Knowledge of compliance frameworks (ISO 27001, NIST, CIS, PCI DSS) Exposure to risk based vulnerability management and threat intelligence integration Understanding of ITIL service delivery and SLA driven environments Experience with SASE, Zero Trust, MDR/XDR platforms Experience with RSA Authentication Manager or similar IAM solutions What do we offer you? At Gamma, we believe in work life balance, which is why we offer 25 days of annual leave, plus an extra day off for your birthday. Giving back is important to us, so we also provide a volunteer day to support a charity that matters to you. Family matters, too. With enhanced maternity and paternity pay and childcare vouchers, we're here to support you as a parent and help you thrive in your career. We care about your future, so our pension plan helps you save for the years ahead with contributions of 4.59% from Gamma, alongside your own contributions. Your well being is our priority. We offer group income protection and life assurance (four times your salary) to ensure peace of mind for you and your loved ones. We want you to share in our success. That's why we offer tax efficient share save and share incentive plans, giving you the opportunity to benefit from Gamma's growth. We're committed to health, both physical and mental, and provide private medical insurance through Vitality, which extends to your immediate family. And, because we care about the environment, we offer an Electric Vehicle scheme through Octopus and a Cycle to Work scheme, making it easier to get around sustainably. A few things to note Unfortunately, we can't offer visa sponsorship or relocation support for this role. This role is hybrid but with 3 days a week onsite at either our Manchester, Glasgow, London or Newbury sites. If you feel you could be a good fit for Gamma but do not think that you meet all the requirements, we still encourage you to apply as you could be the person that we are looking for! Gamma is an equal opportunity employer. We care about inclusion and believe in having diverse teams where everyone can be their true authentic selves. We value each person and their range of backgrounds and actively encourage people from underrepresented backgrounds to apply. We don't discriminate based on any protected characteristics e.g., race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, marital status, disability or age. We are a family friendly employer with a culture based on trust, autonomy and flexibility to help you create a work life balance and enjoy working here at Gamma. . click apply for full job details
Support our Scotland manufacturing site and Chromalloy's global infrastructure team. You'll combine hands on on site support with Tier III engineering and security focused improvement of our Tiger proprietary system. Working pattern: Hybrid (1-2 days on site, 3-4 remote), aligned to GMT/BST Location: Glasgow, Scotland facility (TSL) Reporting line: Regional EU/UK IT Manager About the role We're looking for a Global Senior IT Systems Administrator to support our TSL manufacturing facility in Scotland and the wider Chromalloy global infrastructure team. This hybrid role (1-2 days on site, 3-4 remote) blends hands on site support with Tier III engineering and security focused improvement of our Tiger proprietary system. What you'll do Be the on-site Tier III escalation point for TSL Scotland, supporting infrastructure, networking and end user computing. Provision, image, troubleshoot and refresh desktops/laptops. Maintain and troubleshoot site networking and connectivity (switching, Wi Fi, cabling and corporate links). Support on-site servers/storage including patching, monitoring and performance optimisation. Partner with site leadership to prioritise incidents/requests and deliver small projects. Maintain IT asset security and compliance, including physical security and access controls. Support meeting room/AV and collaboration tools. Provide Tier III support to the global infrastructure team and administer core platforms (Windows Server, AD/Entra ID, VMware, Azure/AWS and enterprise networking). Resolve complex issues across sites; contribute to security monitoring, backup/DR/business continuity, and migrations/upgrades. Lead end-to-end vulnerability remediation for the Tiger proprietary system: plan and prioritise with the Tiger SME/IT Security, apply patches/hardening, document architecture/dependencies, and report progress and risk reduction. What we're looking for 5-7+ years' experience in enterprise IT infrastructure/systems administration and/or network engineering. Strong Tier III troubleshooting skills across servers, identity, networking and endpoints. Hands on experience with several of: Windows Server, Active Directory/Entra ID, VMware, Azure/AWS, and enterprise networking (e.g., Cisco/Palo Alto or equivalent). Proven vulnerability remediation and security hardening (patching, configuration, CVE prioritisation, change control). Working knowledge of cybersecurity frameworks (NIST 800-171, CMMC) and operating in controlled environments. Clear communicator who's comfortable collaborating across time zones and documenting work. Able to work independently, manage priorities and keep stakeholders updated. Able to work hybrid, with 1-2 days per week on site at TSL Scotland. Eligible for security vetting appropriate to a defence contracting environment. Nice to have Certifications (e.g., Microsoft, CCNA/CCNP, Security+/CySA+ or similar). Security tooling experience (e.g., CrowdStrike, Rapid7, SailPoint or equivalent). Regulated environment experience (e.g., ITAR/EAR) and its impact on IT systems/data handling. Aerospace, defence or manufacturing IT background. Exposure to OT/IT convergence or proprietary industrial/engineering systems. Scripting/automation (e.g., PowerShell) and a continuous improvement mindset. ITIL Foundation (or practical ITSM/change management experience). Working pattern Hybrid: 1-2 days per week on site at TSL Scotland; the remainder remote. Some work in industrial/production areas (PPE provided as required). Occasional travel to other Chromalloy sites for projects, training or collaboration. Hours aligned to GMT/BST, with occasional out of hours support for critical incidents or planned maintenance. Participation in an on call rota may be required. What we offer We offer a competitive package including base salary, annual bonus eligibility, pension contributions, private medical insurance, and professional development support (including certification reimbursement, salary depending on skills and experience. How to apply Submit your CV/resume and a short cover note highlighting your infrastructure and security experience. If shortlisted, we'll contact you with next steps.
19/07/2026
Full time
Support our Scotland manufacturing site and Chromalloy's global infrastructure team. You'll combine hands on on site support with Tier III engineering and security focused improvement of our Tiger proprietary system. Working pattern: Hybrid (1-2 days on site, 3-4 remote), aligned to GMT/BST Location: Glasgow, Scotland facility (TSL) Reporting line: Regional EU/UK IT Manager About the role We're looking for a Global Senior IT Systems Administrator to support our TSL manufacturing facility in Scotland and the wider Chromalloy global infrastructure team. This hybrid role (1-2 days on site, 3-4 remote) blends hands on site support with Tier III engineering and security focused improvement of our Tiger proprietary system. What you'll do Be the on-site Tier III escalation point for TSL Scotland, supporting infrastructure, networking and end user computing. Provision, image, troubleshoot and refresh desktops/laptops. Maintain and troubleshoot site networking and connectivity (switching, Wi Fi, cabling and corporate links). Support on-site servers/storage including patching, monitoring and performance optimisation. Partner with site leadership to prioritise incidents/requests and deliver small projects. Maintain IT asset security and compliance, including physical security and access controls. Support meeting room/AV and collaboration tools. Provide Tier III support to the global infrastructure team and administer core platforms (Windows Server, AD/Entra ID, VMware, Azure/AWS and enterprise networking). Resolve complex issues across sites; contribute to security monitoring, backup/DR/business continuity, and migrations/upgrades. Lead end-to-end vulnerability remediation for the Tiger proprietary system: plan and prioritise with the Tiger SME/IT Security, apply patches/hardening, document architecture/dependencies, and report progress and risk reduction. What we're looking for 5-7+ years' experience in enterprise IT infrastructure/systems administration and/or network engineering. Strong Tier III troubleshooting skills across servers, identity, networking and endpoints. Hands on experience with several of: Windows Server, Active Directory/Entra ID, VMware, Azure/AWS, and enterprise networking (e.g., Cisco/Palo Alto or equivalent). Proven vulnerability remediation and security hardening (patching, configuration, CVE prioritisation, change control). Working knowledge of cybersecurity frameworks (NIST 800-171, CMMC) and operating in controlled environments. Clear communicator who's comfortable collaborating across time zones and documenting work. Able to work independently, manage priorities and keep stakeholders updated. Able to work hybrid, with 1-2 days per week on site at TSL Scotland. Eligible for security vetting appropriate to a defence contracting environment. Nice to have Certifications (e.g., Microsoft, CCNA/CCNP, Security+/CySA+ or similar). Security tooling experience (e.g., CrowdStrike, Rapid7, SailPoint or equivalent). Regulated environment experience (e.g., ITAR/EAR) and its impact on IT systems/data handling. Aerospace, defence or manufacturing IT background. Exposure to OT/IT convergence or proprietary industrial/engineering systems. Scripting/automation (e.g., PowerShell) and a continuous improvement mindset. ITIL Foundation (or practical ITSM/change management experience). Working pattern Hybrid: 1-2 days per week on site at TSL Scotland; the remainder remote. Some work in industrial/production areas (PPE provided as required). Occasional travel to other Chromalloy sites for projects, training or collaboration. Hours aligned to GMT/BST, with occasional out of hours support for critical incidents or planned maintenance. Participation in an on call rota may be required. What we offer We offer a competitive package including base salary, annual bonus eligibility, pension contributions, private medical insurance, and professional development support (including certification reimbursement, salary depending on skills and experience. How to apply Submit your CV/resume and a short cover note highlighting your infrastructure and security experience. If shortlisted, we'll contact you with next steps.
Protect identities at global scale. We're hiring a hands-on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity-based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. You'll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high-fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk.What you'll doLead identity threat monitoring and triageOperate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijackingValidate true/false positives, prioritize by business impact, and escalate per playbooks/SLAsDrive rapid containment and remediationExecute containment actions (disable accounts, revoke sessions/tokens, isolate hosts)Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closureOwn identity-focused incident responseLead IR for credential compromise, privilege escalation, directory persistence, and lateral movementEnsure evidence handling, root cause analysis, post incident reviews, and lessons learnedEngineer detections and hunt for threatsBuild and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CKClose visibility gaps, reduce false positives, and expand privileged activity monitoringStrengthen privileged access controlsDetect anomalous privileged behavior via SIEM/UEBA and Netskope telemetryRecommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAMRespond to dark web/credential exposureIntegrate sources like CyberInt; assess exposure and targeted campaignsOrchestrate takedowns, forced resets, token revocation, and Conditional Access updatesAdminister platforms and sustain hygieneMaintain coverage/health for identity monitoring; manage upgrades and changes via CABKeep operational runbooks, SOPs, and playbooks currentAutomate and orchestrate at scaleUse PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelityShape identity policy and controlsAdvise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAMReport outcomes and support auditsProduce executive-ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time)Maintain audit-ready evidence and support internal/external auditsWhat you'll bringBachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience8+ years in IT/cybersecurity, including 3+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM)Hands-on enterprise experience administering/operating CrowdStrike Identity ProtectionProficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigationsDemonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma)Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOARClear communication and documentation skills; comfortable producing executive ready reports and audit evidenceOperates effectively within change control/CAB and under pressure during high severity incidentsBonus pointsCertifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalentDeep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow)Experience with JIT/JEA, PAM concepts, and global on call rotationsLocation, work style, and travelOpportunities in the United States, United Kingdom, and DenmarkOnsite or hybrid depending on location and business needsOccasional on call coverage may be requiredWhy you'll love it hereOwn a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygieneSolve complex problems from dark web exposure to directory persistence and lateral movementCollaborate with experienced global teams and leading vendors to continuously raise the barGrow your career in a modern, data driven security operations environmentThis is a global position that will support all our FUJIFILM Biotechnologies sites. This position can be based at any of our locations around the globe. Benefits and compensation will be governed by the location that you are based from and considered your home site.As part of any recruitment process, FUJIFILM Diosynth Biotechnologies collects and processes personal data relating to job applicants. The organization is committed to being transparent about how it collects and uses that data and to meeting its data protection obligations and may share this as part of the global recruitment process with hiring managers in Europe and the United States.Please, no phone calls or emails to any employee of FUJIFILM about this requisition. All resumes submitted by search firms/employment agencies to any employee at FUJIFILM via-email, the internet or in any form and/or method will be deemed the sole property of FUJIFILM, unless such search firms/employment agencies were engaged by FUJIFILM for this requisition and a valid agreement with FUJIFILM is in place. In the event a candidate who was submitted outside of the FUJIFILM agency engagement process is hired, no fee or payment of any kind will be paid.
19/07/2026
Full time
Protect identities at global scale. We're hiring a hands-on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity-based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. You'll serve as the enterprise SME/administrator for CrowdStrike Identity Protection, tune high-fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk.What you'll doLead identity threat monitoring and triageOperate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijackingValidate true/false positives, prioritize by business impact, and escalate per playbooks/SLAsDrive rapid containment and remediationExecute containment actions (disable accounts, revoke sessions/tokens, isolate hosts)Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closureOwn identity-focused incident responseLead IR for credential compromise, privilege escalation, directory persistence, and lateral movementEnsure evidence handling, root cause analysis, post incident reviews, and lessons learnedEngineer detections and hunt for threatsBuild and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CKClose visibility gaps, reduce false positives, and expand privileged activity monitoringStrengthen privileged access controlsDetect anomalous privileged behavior via SIEM/UEBA and Netskope telemetryRecommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAMRespond to dark web/credential exposureIntegrate sources like CyberInt; assess exposure and targeted campaignsOrchestrate takedowns, forced resets, token revocation, and Conditional Access updatesAdminister platforms and sustain hygieneMaintain coverage/health for identity monitoring; manage upgrades and changes via CABKeep operational runbooks, SOPs, and playbooks currentAutomate and orchestrate at scaleUse PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelityShape identity policy and controlsAdvise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAMReport outcomes and support auditsProduce executive-ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time)Maintain audit-ready evidence and support internal/external auditsWhat you'll bringBachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience8+ years in IT/cybersecurity, including 3+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM)Hands-on enterprise experience administering/operating CrowdStrike Identity ProtectionProficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigationsDemonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma)Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOARClear communication and documentation skills; comfortable producing executive ready reports and audit evidenceOperates effectively within change control/CAB and under pressure during high severity incidentsBonus pointsCertifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalentDeep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow)Experience with JIT/JEA, PAM concepts, and global on call rotationsLocation, work style, and travelOpportunities in the United States, United Kingdom, and DenmarkOnsite or hybrid depending on location and business needsOccasional on call coverage may be requiredWhy you'll love it hereOwn a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygieneSolve complex problems from dark web exposure to directory persistence and lateral movementCollaborate with experienced global teams and leading vendors to continuously raise the barGrow your career in a modern, data driven security operations environmentThis is a global position that will support all our FUJIFILM Biotechnologies sites. This position can be based at any of our locations around the globe. Benefits and compensation will be governed by the location that you are based from and considered your home site.As part of any recruitment process, FUJIFILM Diosynth Biotechnologies collects and processes personal data relating to job applicants. The organization is committed to being transparent about how it collects and uses that data and to meeting its data protection obligations and may share this as part of the global recruitment process with hiring managers in Europe and the United States.Please, no phone calls or emails to any employee of FUJIFILM about this requisition. All resumes submitted by search firms/employment agencies to any employee at FUJIFILM via-email, the internet or in any form and/or method will be deemed the sole property of FUJIFILM, unless such search firms/employment agencies were engaged by FUJIFILM for this requisition and a valid agreement with FUJIFILM is in place. In the event a candidate who was submitted outside of the FUJIFILM agency engagement process is hired, no fee or payment of any kind will be paid.
Our IT Managed Services business enables customers to innovate, transform, and seize new opportunities. The Technical Operations function underpins this mission by delivering enterprise-grade, 24x7x365 technical support to mid-market clients across both public and private sectors. We operate a shared services model aligned with ITIL v4, underpinned by ServiceNow, automation, and generative and agentic AI. Our 24x7 Operations squads are responsible for maintaining the stability, security, and continuous improvement of customer environments across cloud, infrastructure, and modern workplace services. As a Microsoft 365 Specialist (Modern Workplace), you will specialise in Microsoft 365 and endpoint management services. You will support live service operations across multiple customer environments, ensuring that collaboration platforms, identity services, and end-user technologies remain secure, stable, and well governed. You will contribute to incident resolution, proactive service management, and continuous improvement, while developing deeper technical capability across the Microsoft ecosystem and adjacent automation platforms. What You Will Be Doing Provide second-line operational support across Microsoft 365 services, including Exchange Online, SharePoint Online, Teams, OneDrive and Entra ID. Administer and support Microsoft Intune and endpoint management solutions, including device compliance, configuration profiles, and application deployment. Resolve incidents, fulfil service requests, and implement standard changes in line with defined runbooks and ITIL practices. Monitor service health, security posture, and platform alerts, taking proactive action to prevent incidents and improve stability. Support identity and access management activities, including conditional access, MFA, and role-based access controls. Contribute to patching, policy enforcement, and configuration management across Modern Workplace services. Use ServiceNow effectively to manage work, maintain accurate records, and ensure Configuration Items are correctly updated within the CMDB. Participate fully in shift handovers, maintaining clear and structured communication of risks, actions, and service status. Identify repeat issues, inefficiencies, or gaps in documentation and take ownership of improvement opportunities. Contribute to the development and maintenance of knowledge articles, runbooks, and operational standards. Support and adopt automation practices using PowerShell, Power Platform, or other tooling to reduce manual effort and improve consistency. Collaborate with engineers across infrastructure, network, and security domains to resolve cross-platform issues. Strong working knowledge of Microsoft 365 administration in an operational environment. Experience supporting Intune / Endpoint Manager and Windows device management. Understanding of Entra ID (Azure AD), identity controls, and access governance. Practical experience working within an ITIL-aligned support model (Incident, Change, Problem). Strong troubleshooting capability, with a structured and methodical approach. Experience using ITSM tooling such as ServiceNow. Ability to manage workload effectively in a shared services, multi-customer environment. Clear and concise communication skills, both written and verbal. A disciplined approach to documentation and knowledge sharing. Willingness to work a 24x7 shift pattern including nights, weekends, and public holidays. Eligibility for UK Government Security Check (SC) clearance. Desirable Skills And Experience Experience supporting Microsoft Teams telephony and collaboration services. Exposure to Power Platform (Power Automate, Power Apps) for operational improvement. Scripting or automation experience using PowerShell. Awareness of security frameworks and controls (e.g. conditional access, endpoint security baselines). Experience working in an MSP or shared service environment. Microsoft 365 Certified: Endpoint Administrator Associate. Microsoft 365 Certified: Administrator Expert. Microsoft Certified: Identity and Access Administrator Associate. Please note, applicants must have the legal right to work in the UK at the time of application. Wellbeing that means something 26 days' holiday + bank holidays (and the option to buy more) plus 1 paid volunteering day every year Exceptional family leave, 26 weeks fully paid maternity/adoption, 4 weeks fully paid paternity, 22 weeks fully paid shared parental leave, plus 5 days paid bereavement leave Robust sick pay of up to 13 weeks full pay + 13 weeks half pay 24/7 Employee Assistance Programme for confidential support Private medical insurance for everyone, no medical-history exclusions Financial Benefits That Have Your Back Performance-based rewards tailored to your role, from company-wide bonuses to OTE and commission structures Income protection: up to 75% salary for 5 years if you ever need it Grow your career with us SkillsHub learning platform with leadership pathways, future-manager training, and a huge online library Access to external training and apprenticeships Making a Difference MatchIt! Fundraise for a cause close to your heart and OneAdvanced will match part of the funding Pennies from Heaven donate the pennies from your pay check to help make a difference without lifting a finger Additional Flexible Benefits ULEV car scheme with 1,000+ models Dental insurance, Health Cash Plan, Critical Illness Cover, Partner Life Cover
19/07/2026
Full time
Our IT Managed Services business enables customers to innovate, transform, and seize new opportunities. The Technical Operations function underpins this mission by delivering enterprise-grade, 24x7x365 technical support to mid-market clients across both public and private sectors. We operate a shared services model aligned with ITIL v4, underpinned by ServiceNow, automation, and generative and agentic AI. Our 24x7 Operations squads are responsible for maintaining the stability, security, and continuous improvement of customer environments across cloud, infrastructure, and modern workplace services. As a Microsoft 365 Specialist (Modern Workplace), you will specialise in Microsoft 365 and endpoint management services. You will support live service operations across multiple customer environments, ensuring that collaboration platforms, identity services, and end-user technologies remain secure, stable, and well governed. You will contribute to incident resolution, proactive service management, and continuous improvement, while developing deeper technical capability across the Microsoft ecosystem and adjacent automation platforms. What You Will Be Doing Provide second-line operational support across Microsoft 365 services, including Exchange Online, SharePoint Online, Teams, OneDrive and Entra ID. Administer and support Microsoft Intune and endpoint management solutions, including device compliance, configuration profiles, and application deployment. Resolve incidents, fulfil service requests, and implement standard changes in line with defined runbooks and ITIL practices. Monitor service health, security posture, and platform alerts, taking proactive action to prevent incidents and improve stability. Support identity and access management activities, including conditional access, MFA, and role-based access controls. Contribute to patching, policy enforcement, and configuration management across Modern Workplace services. Use ServiceNow effectively to manage work, maintain accurate records, and ensure Configuration Items are correctly updated within the CMDB. Participate fully in shift handovers, maintaining clear and structured communication of risks, actions, and service status. Identify repeat issues, inefficiencies, or gaps in documentation and take ownership of improvement opportunities. Contribute to the development and maintenance of knowledge articles, runbooks, and operational standards. Support and adopt automation practices using PowerShell, Power Platform, or other tooling to reduce manual effort and improve consistency. Collaborate with engineers across infrastructure, network, and security domains to resolve cross-platform issues. Strong working knowledge of Microsoft 365 administration in an operational environment. Experience supporting Intune / Endpoint Manager and Windows device management. Understanding of Entra ID (Azure AD), identity controls, and access governance. Practical experience working within an ITIL-aligned support model (Incident, Change, Problem). Strong troubleshooting capability, with a structured and methodical approach. Experience using ITSM tooling such as ServiceNow. Ability to manage workload effectively in a shared services, multi-customer environment. Clear and concise communication skills, both written and verbal. A disciplined approach to documentation and knowledge sharing. Willingness to work a 24x7 shift pattern including nights, weekends, and public holidays. Eligibility for UK Government Security Check (SC) clearance. Desirable Skills And Experience Experience supporting Microsoft Teams telephony and collaboration services. Exposure to Power Platform (Power Automate, Power Apps) for operational improvement. Scripting or automation experience using PowerShell. Awareness of security frameworks and controls (e.g. conditional access, endpoint security baselines). Experience working in an MSP or shared service environment. Microsoft 365 Certified: Endpoint Administrator Associate. Microsoft 365 Certified: Administrator Expert. Microsoft Certified: Identity and Access Administrator Associate. Please note, applicants must have the legal right to work in the UK at the time of application. Wellbeing that means something 26 days' holiday + bank holidays (and the option to buy more) plus 1 paid volunteering day every year Exceptional family leave, 26 weeks fully paid maternity/adoption, 4 weeks fully paid paternity, 22 weeks fully paid shared parental leave, plus 5 days paid bereavement leave Robust sick pay of up to 13 weeks full pay + 13 weeks half pay 24/7 Employee Assistance Programme for confidential support Private medical insurance for everyone, no medical-history exclusions Financial Benefits That Have Your Back Performance-based rewards tailored to your role, from company-wide bonuses to OTE and commission structures Income protection: up to 75% salary for 5 years if you ever need it Grow your career with us SkillsHub learning platform with leadership pathways, future-manager training, and a huge online library Access to external training and apprenticeships Making a Difference MatchIt! Fundraise for a cause close to your heart and OneAdvanced will match part of the funding Pennies from Heaven donate the pennies from your pay check to help make a difference without lifting a finger Additional Flexible Benefits ULEV car scheme with 1,000+ models Dental insurance, Health Cash Plan, Critical Illness Cover, Partner Life Cover
Cyber Security Analyst (SOC) - Microsoft Security 24/7 Operations Hybrid work - office in Leeds and home based nights. Permanent role. 24/7 rotating shift pattern - 12 hour shifts, 4 on / 4 off. Salary package: £58,620 (£48,654.60 base salary + £9,965.40 shift allowance). Overview Established international technology and cybersecurity services provider investing heavily in Security Operations. Looking to appoint multiple Security Analysts to a 24/7 cyber defence team based in Leeds. Opportunity to work within a dedicated SOC supporting a highly regulated customer estate, taking ownership of security incidents from detection through to investigation, containment, remediation and post incident review. Unlike many traditional SOC roles focused purely on alert monitoring, this position offers genuine involvement across threat hunting, vulnerability management, exposure validation, security tooling optimisation and proactive security operations. If you want to develop incident response capability, deepen Microsoft security expertise, and work with modern security tooling, this could be an excellent next step. The Role As a Senior Security Analyst, you will play a key role in protecting critical business systems and responding to evolving cyber threats. Key responsibilities include: Monitoring and investigating security events across endpoint, cloud, identity and network environments Managing security incidents through the full incident lifecycle Performing detailed investigations and root cause analysis Conducting threat hunting activities and proactive security investigations Querying and analysing data within Microsoft Sentinel using KQL Working with Microsoft Defender XDR technologies Validating indicators of compromise and assessing business impact Coordinating containment and remediation activities with technical teams Supporting vulnerability management activities and security posture improvements Contributing to detection engineering and alert tuning initiatives Producing technical documentation, incident reports and recommendations Supporting compliance and security governance requirements within a regulated environment Technology Environment You will gain exposure to a modern enterprise security stack including: Microsoft Sentinel Qualys XM Cyber Security automation and detection tooling What We Are Looking For We're looking for professionals with experience in: SOC Operations Security Monitoring Threat Hunting Detection Engineering Security Operations Engineering Cyber Defence Vulnerability Management Candidate background may include roles such as: Senior SOC Analyst SOC Analyst Cyber Security Analyst Security Analyst Security Operations Analyst Blue Team Analyst Experience with Microsoft Sentinel, KQL and the wider Microsoft security ecosystem is highly advantageous. Knowledge of frameworks such as NIST, ISO27001, CIS Controls and MITRE ATT&CK is also beneficial. Candidates must be eligible to undergo UK security screening requirements. Benefits Package 25 days annual leave from day one (27 days after 2 years) Birthday day off every year Holiday buy and sell scheme (up to 3 days) Home based night shifts Pension scheme (employer contributions up to 5%) Income Protection Scheme Life Assurance cover up to 4x salary, with options to increase cover Critical illness cover options available Season ticket loan scheme Private medical insurance Mental health first aid network Wellbeing initiatives and support programmes Employee wellbeing forums and resources Enhanced maternity leave Enhanced paternity leave Dependency leave support Cycle to work scheme Discounted gym memberships with access to over 2,500 clubs Modern office environment with social spaces Dedicated learning & development support Protected training time Industry leading instructor led training Technical certification support (Microsoft, AWS, Cisco, Fortinet) Access to recognised professional qualifications Charity and volunteering programmes Global career prospects To apply, submit your CV. Proof of right to work in the UK is required. Contact number:
19/07/2026
Full time
Cyber Security Analyst (SOC) - Microsoft Security 24/7 Operations Hybrid work - office in Leeds and home based nights. Permanent role. 24/7 rotating shift pattern - 12 hour shifts, 4 on / 4 off. Salary package: £58,620 (£48,654.60 base salary + £9,965.40 shift allowance). Overview Established international technology and cybersecurity services provider investing heavily in Security Operations. Looking to appoint multiple Security Analysts to a 24/7 cyber defence team based in Leeds. Opportunity to work within a dedicated SOC supporting a highly regulated customer estate, taking ownership of security incidents from detection through to investigation, containment, remediation and post incident review. Unlike many traditional SOC roles focused purely on alert monitoring, this position offers genuine involvement across threat hunting, vulnerability management, exposure validation, security tooling optimisation and proactive security operations. If you want to develop incident response capability, deepen Microsoft security expertise, and work with modern security tooling, this could be an excellent next step. The Role As a Senior Security Analyst, you will play a key role in protecting critical business systems and responding to evolving cyber threats. Key responsibilities include: Monitoring and investigating security events across endpoint, cloud, identity and network environments Managing security incidents through the full incident lifecycle Performing detailed investigations and root cause analysis Conducting threat hunting activities and proactive security investigations Querying and analysing data within Microsoft Sentinel using KQL Working with Microsoft Defender XDR technologies Validating indicators of compromise and assessing business impact Coordinating containment and remediation activities with technical teams Supporting vulnerability management activities and security posture improvements Contributing to detection engineering and alert tuning initiatives Producing technical documentation, incident reports and recommendations Supporting compliance and security governance requirements within a regulated environment Technology Environment You will gain exposure to a modern enterprise security stack including: Microsoft Sentinel Qualys XM Cyber Security automation and detection tooling What We Are Looking For We're looking for professionals with experience in: SOC Operations Security Monitoring Threat Hunting Detection Engineering Security Operations Engineering Cyber Defence Vulnerability Management Candidate background may include roles such as: Senior SOC Analyst SOC Analyst Cyber Security Analyst Security Analyst Security Operations Analyst Blue Team Analyst Experience with Microsoft Sentinel, KQL and the wider Microsoft security ecosystem is highly advantageous. Knowledge of frameworks such as NIST, ISO27001, CIS Controls and MITRE ATT&CK is also beneficial. Candidates must be eligible to undergo UK security screening requirements. Benefits Package 25 days annual leave from day one (27 days after 2 years) Birthday day off every year Holiday buy and sell scheme (up to 3 days) Home based night shifts Pension scheme (employer contributions up to 5%) Income Protection Scheme Life Assurance cover up to 4x salary, with options to increase cover Critical illness cover options available Season ticket loan scheme Private medical insurance Mental health first aid network Wellbeing initiatives and support programmes Employee wellbeing forums and resources Enhanced maternity leave Enhanced paternity leave Dependency leave support Cycle to work scheme Discounted gym memberships with access to over 2,500 clubs Modern office environment with social spaces Dedicated learning & development support Protected training time Industry leading instructor led training Technical certification support (Microsoft, AWS, Cisco, Fortinet) Access to recognised professional qualifications Charity and volunteering programmes Global career prospects To apply, submit your CV. Proof of right to work in the UK is required. Contact number:
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle. The Senior Vulnerability Management Engineer owns the enterprise vulnerability management program across cloud, endpoint, and application surfaces, driving risk-based identification, prioritization, automated remediation, and verified closure in partnership with IT, Cloud, and Product teams. Operating with minimal guidance, this role combines hands on technical engineering depth with program ownership-designing and implementing scanning architectures, automated patching workflows, and data pipelines alongside governing the policies, SLAs, and metrics that drive measurable risk reduction. The role leads others to solve complex, cross-domain problems, shapes program methods and measures, and influences adjacent teams to achieve remediation SLAs and reduce measurable exposure. It aligns with company standards for vulnerability governance, remediation schedules, and exception management. Essential Functions/Responsibilities Govern the end-to-end vulnerability management lifecycle-intake, scanning, triage, risk scoring, remediation orchestration, verification, and reporting-in alignment with the company Vulnerability & Patch Management Security Standard. Apply CVSS, EPSS, and CISA KEV signals for risk-based vulnerability prioritization; codify triage logic into policy, SOPs, and dashboards. Enforce remediation SLAs; manage risk acceptances and time-bound exceptions; report exception aging trends to leadership. Drive complete and accurate asset coverage across servers, endpoints, containers, cloud services, and applications; partner with CMDB and asset owners to close inventory gaps. Design, administer, and optimize enterprise vulnerability scanners for infrastructure, cloud, container, and application layers; integrate scan results into ITSM workflows for timely remediation. Design, implement, and maintain enterprise automated patching capabilities across server, endpoint, and cloud workloads; integrate with change management and ITSM processes; validate patch success rates and drive MTTR reduction aligned to NIST SP 800-40r4. Collaborate with Threat Intelligence and Incident Response to dynamically adjust priority queues based on active exploitation, KEV entries, and zero day disclosures. Partner with IT/Cloud Ops and Product/SWE teams to integrate patch and mitigation planning into CI/CD and infrastructure as code pipelines; champion automated remediation over manual processes. Maintain executive ready metrics covering exposure, SLA adherence, backlog, exception aging, asset coverage, and patch automation coverage; deliver regular status and risk narratives to Directors and Vice Presidents. Tune risk models, scanning frequency, authenticated coverage, change windows, and patch validation methods to continuously reduce exposure and MTTR; lead automation initiatives that eliminate manual toil across the vulnerability lifecycle. Serve as a technical resource and mentor for less experienced team members; lead cross team workstreams and champion engineering best practices and program rigor consistent with senior IC leadership. Maintain program evidence-findings, decisions, exceptions, verifications, and patch records-in audit ready condition to support internal and external compliance reviews. Proactively identify, assess, and remediate configuration weaknesses in enterprise SaaS applications and cloud platforms; enforce compliance with security baselines through automated and manual review. Other tasks and activities as assigned. Required Education/Experience & Skills 5-7+ years in vulnerability management or closely related cybersecurity/IT engineering roles, operating independently and leading others to solve complex, cross domain problems. Proven hands on experience with enterprise vulnerability scanning technologies (infrastructure, cloud, container, application), authenticated scanning, and ITSM/CMDB integrations. Hands on design and operation of enterprise automated patching Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.
19/07/2026
Full time
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle. The Senior Vulnerability Management Engineer owns the enterprise vulnerability management program across cloud, endpoint, and application surfaces, driving risk-based identification, prioritization, automated remediation, and verified closure in partnership with IT, Cloud, and Product teams. Operating with minimal guidance, this role combines hands on technical engineering depth with program ownership-designing and implementing scanning architectures, automated patching workflows, and data pipelines alongside governing the policies, SLAs, and metrics that drive measurable risk reduction. The role leads others to solve complex, cross-domain problems, shapes program methods and measures, and influences adjacent teams to achieve remediation SLAs and reduce measurable exposure. It aligns with company standards for vulnerability governance, remediation schedules, and exception management. Essential Functions/Responsibilities Govern the end-to-end vulnerability management lifecycle-intake, scanning, triage, risk scoring, remediation orchestration, verification, and reporting-in alignment with the company Vulnerability & Patch Management Security Standard. Apply CVSS, EPSS, and CISA KEV signals for risk-based vulnerability prioritization; codify triage logic into policy, SOPs, and dashboards. Enforce remediation SLAs; manage risk acceptances and time-bound exceptions; report exception aging trends to leadership. Drive complete and accurate asset coverage across servers, endpoints, containers, cloud services, and applications; partner with CMDB and asset owners to close inventory gaps. Design, administer, and optimize enterprise vulnerability scanners for infrastructure, cloud, container, and application layers; integrate scan results into ITSM workflows for timely remediation. Design, implement, and maintain enterprise automated patching capabilities across server, endpoint, and cloud workloads; integrate with change management and ITSM processes; validate patch success rates and drive MTTR reduction aligned to NIST SP 800-40r4. Collaborate with Threat Intelligence and Incident Response to dynamically adjust priority queues based on active exploitation, KEV entries, and zero day disclosures. Partner with IT/Cloud Ops and Product/SWE teams to integrate patch and mitigation planning into CI/CD and infrastructure as code pipelines; champion automated remediation over manual processes. Maintain executive ready metrics covering exposure, SLA adherence, backlog, exception aging, asset coverage, and patch automation coverage; deliver regular status and risk narratives to Directors and Vice Presidents. Tune risk models, scanning frequency, authenticated coverage, change windows, and patch validation methods to continuously reduce exposure and MTTR; lead automation initiatives that eliminate manual toil across the vulnerability lifecycle. Serve as a technical resource and mentor for less experienced team members; lead cross team workstreams and champion engineering best practices and program rigor consistent with senior IC leadership. Maintain program evidence-findings, decisions, exceptions, verifications, and patch records-in audit ready condition to support internal and external compliance reviews. Proactively identify, assess, and remediate configuration weaknesses in enterprise SaaS applications and cloud platforms; enforce compliance with security baselines through automated and manual review. Other tasks and activities as assigned. Required Education/Experience & Skills 5-7+ years in vulnerability management or closely related cybersecurity/IT engineering roles, operating independently and leading others to solve complex, cross domain problems. Proven hands on experience with enterprise vulnerability scanning technologies (infrastructure, cloud, container, application), authenticated scanning, and ITSM/CMDB integrations. Hands on design and operation of enterprise automated patching Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.
Black Duck Software, Inc. seeks a Senior Vulnerability Management Engineer to own the enterprise program across cloud, endpoint, and application surfaces. You will drive risk-based identification, automated remediation, and verified closure in partnership with IT, Cloud, and Product teams. Leading scanning architectures and data pipelines, you will govern policies, SLAs, and metrics that reduce exposure and MTTR while aligning with security standards and compliance requirements.
19/07/2026
Full time
Black Duck Software, Inc. seeks a Senior Vulnerability Management Engineer to own the enterprise program across cloud, endpoint, and application surfaces. You will drive risk-based identification, automated remediation, and verified closure in partnership with IT, Cloud, and Product teams. Leading scanning architectures and data pipelines, you will govern policies, SLAs, and metrics that reduce exposure and MTTR while aligning with security standards and compliance requirements.
Senior Cloud Engineer - Cloud COE Responsibilities Build, configure, and manage Azure infrastructure services including compute, storage, networking, backup, and platform services. Support deployment of enterprise landing zones, shared services, and workload environments. Implement cloud solutions aligned with architecture patterns and enterprise standards. Work closely with Tech Lead and Architecture teams to deliver strategic cloud initiatives. Develop and maintain Terraform modules and reusable infrastructure components. Deliver infrastructure provisioning via CI/CD pipelines (GitHub / Azure DevOps). Ensure infrastructure deployments are consistent, version controlled, and policy compliant. Manage drift detection, environment consistency, and release governance. Azure Core Platform Skills Hands on engineering across Subscriptions, Management Groups, RBAC, Policy, Virtual Machines, Storage, Backup, DR, Azure Monitor, Log Analytics, Private Endpoints and secure service exposure. Implement secure by design configurations aligned to enterprise cloud controls. Azure Kubernetes Service (AKS) Deploy, configure, and support AKS clusters. Manage cluster scaling, patching, upgrades, and networking integration. Support container platform operations including monitoring and reliability. Collaborate with application teams for containerised workload deployments. Azure VMware Solution (AVS) Support AVS environments including connectivity, operations, and monitoring. Assist with workload migrations and integration with Azure native services. Work with infrastructure teams to ensure stable hybrid VMware cloud operations. Azure Arc & Hybrid Cloud Implement and manage Azure Arc enabled servers and services. Apply governance, policy, and monitoring across hybrid estates. Support consistency of operations across on prem, AVS, and Azure native environments. Cloud Networking & Connectivity Configure and manage VNets, NSGs, UDRs, VPN Gateway, ExpressRoute, Private Endpoints, DNS. Troubleshoot hybrid connectivity and latency issues. Support secure network design and segmentation. Identity, Access & Security Support Microsoft Entra ID (Azure AD) configurations and integrations. Implement RBAC, SSO, and least privilege access models. Assist with security controls, compliance policies, and remediation activities. Monitoring, BAU & Incident Management Support business as usual (BAU) cloud operations across environments. Monitor cloud services using Azure Monitor, Log Analytics, and alerting tools. Investigate incidents, perform root cause analysis, and implement fixes. Maintain platform stability, uptime, and service performance. Collaboration & Engineering Excellence Work closely with Cloud COE team, Platform Engineering, Security and Architecture teams to contribute to internal Tech Architecture Board. Contribute to reusable templates, standards, and best practice. Drive automation first mindset and continuous improvement. Must Have Skills 5+ years of hands on cloud engineering experience with Microsoft Azure. Strong Terraform (IaC) experience - module design, pipelines, governance. Deep knowledge of core Azure services (compute, storage, networking, identity). Hands on experience with Azure Kubernetes Service (AKS), Azure networking, Microsoft Entra ID / RBAC. Experience supporting BAU operations, incident management, and troubleshooting. Strong scripting skills (PowerShell, Bash, or Python). Experience with CI/CD pipelines (GitHub / Azure DevOps). Understanding of cloud security and governance best practices. Experience working in enterprise scale environments. Nice to Have Skills Experience with Azure VMware Solution (AVS). Experience with Azure Arc (hybrid governance and management). Exposure to FinOps / cost optimization practices. Certifications: AZ 104, AZ 305, AZ 700, Terraform certification. Experience in financial services or regulated environments. Benefits & Expectations Hybrid working and reasonable accommodations. Generous holiday policies. Excellent health and wellbeing benefits. Paid volunteer time. Professional development and certifications. Parental leave benefits. Access to Headspace. Employee events and networking opportunities. Subsidised lunch allowance. Annual discretionary bonus opportunity. Regulatory and Ethical Requirements You will be expected to understand the regulatory obligations of the firm and abide by the regulated entity requirements and JHI policies applicable for your role. You should be willing to adhere to the provisions of our Investment Advisory Code of Ethics related to personal securities activities and other disclosure and certification requirements, including past political contributions and political activities. Janus Henderson Investors is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. All applications are subject to background checks. Janus Henderson (including its subsidiaries) will not maintain existing or sponsor new industry registrations or licenses where not supported by an employee's job functions (as determined by Janus Henderson at its sole discretion).
19/07/2026
Full time
Senior Cloud Engineer - Cloud COE Responsibilities Build, configure, and manage Azure infrastructure services including compute, storage, networking, backup, and platform services. Support deployment of enterprise landing zones, shared services, and workload environments. Implement cloud solutions aligned with architecture patterns and enterprise standards. Work closely with Tech Lead and Architecture teams to deliver strategic cloud initiatives. Develop and maintain Terraform modules and reusable infrastructure components. Deliver infrastructure provisioning via CI/CD pipelines (GitHub / Azure DevOps). Ensure infrastructure deployments are consistent, version controlled, and policy compliant. Manage drift detection, environment consistency, and release governance. Azure Core Platform Skills Hands on engineering across Subscriptions, Management Groups, RBAC, Policy, Virtual Machines, Storage, Backup, DR, Azure Monitor, Log Analytics, Private Endpoints and secure service exposure. Implement secure by design configurations aligned to enterprise cloud controls. Azure Kubernetes Service (AKS) Deploy, configure, and support AKS clusters. Manage cluster scaling, patching, upgrades, and networking integration. Support container platform operations including monitoring and reliability. Collaborate with application teams for containerised workload deployments. Azure VMware Solution (AVS) Support AVS environments including connectivity, operations, and monitoring. Assist with workload migrations and integration with Azure native services. Work with infrastructure teams to ensure stable hybrid VMware cloud operations. Azure Arc & Hybrid Cloud Implement and manage Azure Arc enabled servers and services. Apply governance, policy, and monitoring across hybrid estates. Support consistency of operations across on prem, AVS, and Azure native environments. Cloud Networking & Connectivity Configure and manage VNets, NSGs, UDRs, VPN Gateway, ExpressRoute, Private Endpoints, DNS. Troubleshoot hybrid connectivity and latency issues. Support secure network design and segmentation. Identity, Access & Security Support Microsoft Entra ID (Azure AD) configurations and integrations. Implement RBAC, SSO, and least privilege access models. Assist with security controls, compliance policies, and remediation activities. Monitoring, BAU & Incident Management Support business as usual (BAU) cloud operations across environments. Monitor cloud services using Azure Monitor, Log Analytics, and alerting tools. Investigate incidents, perform root cause analysis, and implement fixes. Maintain platform stability, uptime, and service performance. Collaboration & Engineering Excellence Work closely with Cloud COE team, Platform Engineering, Security and Architecture teams to contribute to internal Tech Architecture Board. Contribute to reusable templates, standards, and best practice. Drive automation first mindset and continuous improvement. Must Have Skills 5+ years of hands on cloud engineering experience with Microsoft Azure. Strong Terraform (IaC) experience - module design, pipelines, governance. Deep knowledge of core Azure services (compute, storage, networking, identity). Hands on experience with Azure Kubernetes Service (AKS), Azure networking, Microsoft Entra ID / RBAC. Experience supporting BAU operations, incident management, and troubleshooting. Strong scripting skills (PowerShell, Bash, or Python). Experience with CI/CD pipelines (GitHub / Azure DevOps). Understanding of cloud security and governance best practices. Experience working in enterprise scale environments. Nice to Have Skills Experience with Azure VMware Solution (AVS). Experience with Azure Arc (hybrid governance and management). Exposure to FinOps / cost optimization practices. Certifications: AZ 104, AZ 305, AZ 700, Terraform certification. Experience in financial services or regulated environments. Benefits & Expectations Hybrid working and reasonable accommodations. Generous holiday policies. Excellent health and wellbeing benefits. Paid volunteer time. Professional development and certifications. Parental leave benefits. Access to Headspace. Employee events and networking opportunities. Subsidised lunch allowance. Annual discretionary bonus opportunity. Regulatory and Ethical Requirements You will be expected to understand the regulatory obligations of the firm and abide by the regulated entity requirements and JHI policies applicable for your role. You should be willing to adhere to the provisions of our Investment Advisory Code of Ethics related to personal securities activities and other disclosure and certification requirements, including past political contributions and political activities. Janus Henderson Investors is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. All applications are subject to background checks. Janus Henderson (including its subsidiaries) will not maintain existing or sponsor new industry registrations or licenses where not supported by an employee's job functions (as determined by Janus Henderson at its sole discretion).
Job Description We are looking for an Azure Infrastructure and Platform Engineer to provide L2/L3 support for business critical Azure hosted solutions. The role focuses on operating and supporting Azure infrastructure, networking, platform services, integrations, monitoring, and security controls. The successful candidate will be comfortable troubleshooting cloud native applications and working closely with development teams while remaining primarily focused on platform operations, reliability, and service management. Experience working within enterprise Azure Landing Zone environments, including governance, connectivity, and security controls, would be advantageous. Security Clearance: The role requires the successful candidate to hold, or be eligible to obtain, UK Government SC (Security Check) clearance. Benefits Hitachi Solutions offers competitive compensation packages (including bonuses), pension and benefits plans. Work/life balance is an essential part of our culture, and all employees are home workers, although you will be expected to come into our or customers' offices regularly. We operate a comprehensive career development programme that includes mentoring and training plans to ensure that you will continue to grow and develop your career at Hitachi. Key Responsibilities Platform & Infrastructure Support: Own incidents through to resolution across the Azure platforms and infrastructure underpinning cloud native applications, meeting agreed service levels and operational targets. PaaS & Integration: Operate, monitor, and troubleshoot Azure platform services including App Services, Functions, Logic Apps, storage, databases, Service Bus, Event Grid, and API Management (APIM). Monitoring & Observability: Maintain platform and application health using Azure Monitor, Application Insights, Log Analytics, and automated alerting, acting proactively to prevent service disruption. Incident & Problem Management: Diagnose issues across infrastructure, platform, application, and integration layers. Perform root cause analysis and implement corrective actions to prevent recurrence. DevOps & Release Management: Support CI/CD pipelines, infrastructure-as-code deployments, environment promotion, and controlled releases across development, test, and production environments. Security & Governance: Support Azure security, identity, governance, and compliance controls including RBAC, PIM, Conditional Access, Azure Policy, Key Vault, and Microsoft Defender for Cloud. Developer Collaboration: Troubleshoot application issues, analyse logs and telemetry, debug straightforward defects, and work closely with development teams to resolve platform and application concerns. Operational Improvement: Identify opportunities to improve reliability, performance, monitoring, automation, documentation, and operational processes. On-Call Availability: Participate in a paid on-call and out-of-hours support rota to maintain service availability outside core business hours. Qualifications Azure Infrastructure & Platform Demonstrable experience running and supporting cloud native Azure environments. Deep working knowledge of Azure Networking & Connectivity; Design, operate and troubleshoot hub spoke networking, Azure Firewall, Application Gateway/WAF, Private Endpoints, DNS, VPN/ExpressRoute, routing, network security controls and hybrid connectivity across platform and workload landing zones Experience in Identity & Access Management (IAM); Manage RBAC, PIM, Conditional Access, Managed Identities and Service Principals, ensuring secure access, least privilege governance and compliance Experience supporting Azure governance and security capabilities including Azure Policy, Management Groups, Key Vault, Microsoft Defender for Cloud, and subscription governance. Strong working knowledge of Azure PaaS services including App Services, Functions, Logic Apps, Storage Accounts, and Azure databases, including configuration, scaling, resilience, and performance optimisation. Experience with Azure Monitor, Application Insights, Log Analytics, alerting, dashboards, and KQL-based troubleshooting. Strong understanding of SQL Server and Azure SQL, with exposure to Cosmos DB, Entra ID, Single Sign-On (SSO), and core Azure IaaS, PaaS, and SaaS services. Experience operating within enterprise Azure Landing Zone environments, including governance, connectivity, and security controls. Exposure to Azure Kubernetes Service (AKS), Azure Container Apps, or containerised workloads would be advantageous. Support, Operations & DevOps Experience providing application and platform support, including incident, problem, and service request management to agreed service levels. ITIL awareness is desirable. Experience supporting Git based source control, Azure DevOps pipelines (CI/CD), infrastructure as code deployments, and controlled releases across development, test, and production environments. Experience with Infrastructure as Code using Bicep, ARM Templates, Terraform, or equivalent automation technologies. Development Fluency Sufficient C# /.NET knowledge to debug, trace, and troubleshoot application issues, with awareness of REST APIs and modern front end frameworks such as React, Angular, or Blazor is desirable. Comfortable working with development teams as a technical peer, contributing to issue resolution across both platform and application layers. Experience using modern developer productivity tools, including GitHub Copilot, is desirable. Other Requirements Strong communication, stakeholder management, and problem solving skills, with experience working in Agile delivery and/or managed service environments. Azure certifications desirable, particularly AZ 104 (Azure Administrator), AZ 400 (DevOps Engineer), AZ 700 (Azure Network Engineer) Active SC clearance, or willingness and eligibility to undergo SC vetting. Willingness to participate in a paid on call and out of hours support rota. Ability to work directly with clients, technical leads, architects, and delivery teams within regulated and public sector environments.
19/07/2026
Full time
Job Description We are looking for an Azure Infrastructure and Platform Engineer to provide L2/L3 support for business critical Azure hosted solutions. The role focuses on operating and supporting Azure infrastructure, networking, platform services, integrations, monitoring, and security controls. The successful candidate will be comfortable troubleshooting cloud native applications and working closely with development teams while remaining primarily focused on platform operations, reliability, and service management. Experience working within enterprise Azure Landing Zone environments, including governance, connectivity, and security controls, would be advantageous. Security Clearance: The role requires the successful candidate to hold, or be eligible to obtain, UK Government SC (Security Check) clearance. Benefits Hitachi Solutions offers competitive compensation packages (including bonuses), pension and benefits plans. Work/life balance is an essential part of our culture, and all employees are home workers, although you will be expected to come into our or customers' offices regularly. We operate a comprehensive career development programme that includes mentoring and training plans to ensure that you will continue to grow and develop your career at Hitachi. Key Responsibilities Platform & Infrastructure Support: Own incidents through to resolution across the Azure platforms and infrastructure underpinning cloud native applications, meeting agreed service levels and operational targets. PaaS & Integration: Operate, monitor, and troubleshoot Azure platform services including App Services, Functions, Logic Apps, storage, databases, Service Bus, Event Grid, and API Management (APIM). Monitoring & Observability: Maintain platform and application health using Azure Monitor, Application Insights, Log Analytics, and automated alerting, acting proactively to prevent service disruption. Incident & Problem Management: Diagnose issues across infrastructure, platform, application, and integration layers. Perform root cause analysis and implement corrective actions to prevent recurrence. DevOps & Release Management: Support CI/CD pipelines, infrastructure-as-code deployments, environment promotion, and controlled releases across development, test, and production environments. Security & Governance: Support Azure security, identity, governance, and compliance controls including RBAC, PIM, Conditional Access, Azure Policy, Key Vault, and Microsoft Defender for Cloud. Developer Collaboration: Troubleshoot application issues, analyse logs and telemetry, debug straightforward defects, and work closely with development teams to resolve platform and application concerns. Operational Improvement: Identify opportunities to improve reliability, performance, monitoring, automation, documentation, and operational processes. On-Call Availability: Participate in a paid on-call and out-of-hours support rota to maintain service availability outside core business hours. Qualifications Azure Infrastructure & Platform Demonstrable experience running and supporting cloud native Azure environments. Deep working knowledge of Azure Networking & Connectivity; Design, operate and troubleshoot hub spoke networking, Azure Firewall, Application Gateway/WAF, Private Endpoints, DNS, VPN/ExpressRoute, routing, network security controls and hybrid connectivity across platform and workload landing zones Experience in Identity & Access Management (IAM); Manage RBAC, PIM, Conditional Access, Managed Identities and Service Principals, ensuring secure access, least privilege governance and compliance Experience supporting Azure governance and security capabilities including Azure Policy, Management Groups, Key Vault, Microsoft Defender for Cloud, and subscription governance. Strong working knowledge of Azure PaaS services including App Services, Functions, Logic Apps, Storage Accounts, and Azure databases, including configuration, scaling, resilience, and performance optimisation. Experience with Azure Monitor, Application Insights, Log Analytics, alerting, dashboards, and KQL-based troubleshooting. Strong understanding of SQL Server and Azure SQL, with exposure to Cosmos DB, Entra ID, Single Sign-On (SSO), and core Azure IaaS, PaaS, and SaaS services. Experience operating within enterprise Azure Landing Zone environments, including governance, connectivity, and security controls. Exposure to Azure Kubernetes Service (AKS), Azure Container Apps, or containerised workloads would be advantageous. Support, Operations & DevOps Experience providing application and platform support, including incident, problem, and service request management to agreed service levels. ITIL awareness is desirable. Experience supporting Git based source control, Azure DevOps pipelines (CI/CD), infrastructure as code deployments, and controlled releases across development, test, and production environments. Experience with Infrastructure as Code using Bicep, ARM Templates, Terraform, or equivalent automation technologies. Development Fluency Sufficient C# /.NET knowledge to debug, trace, and troubleshoot application issues, with awareness of REST APIs and modern front end frameworks such as React, Angular, or Blazor is desirable. Comfortable working with development teams as a technical peer, contributing to issue resolution across both platform and application layers. Experience using modern developer productivity tools, including GitHub Copilot, is desirable. Other Requirements Strong communication, stakeholder management, and problem solving skills, with experience working in Agile delivery and/or managed service environments. Azure certifications desirable, particularly AZ 104 (Azure Administrator), AZ 400 (DevOps Engineer), AZ 700 (Azure Network Engineer) Active SC clearance, or willingness and eligibility to undergo SC vetting. Willingness to participate in a paid on call and out of hours support rota. Ability to work directly with clients, technical leads, architects, and delivery teams within regulated and public sector environments.
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril's family of systems is powered by Lattice OS, an AI powered operating system that turns thousands of data streams into a real time, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years. About the Team Our team is dedicated to supporting the secure and seamless operation of enterprise technology across identity, endpoint management, infrastructure, classified, and user support services. We work in close collaboration with our Security, Infrastructure, and Engineering teams to ensure our employees have reliable access to the systems and tools they need, all while maintaining strict compliance and security requirements within a regulated environment. We're responsible for a broad mix of activities, including identity lifecycle management, endpoint support, operational troubleshooting, onboarding processes, and maintaining critical enterprise platforms. Team members gain valuable exposure to cutting edge cloud technologies, infrastructure tooling, advanced security practices, and foster cross functional collaboration in a dynamic, fast paced environment. This role offers an exceptional opportunity to build deep experience across enterprise IT and security operations, directly contributing to initiatives that enhance reliability, scalability, and user experience for the entire organization. About the Role We are seeking a proactive and skilled IT/Infrastructure professional to play a pivotal role in supporting our enterprise systems and day to day operations across identity, endpoint, and security related platforms. You'll be instrumental in assisting with Okta administration, troubleshooting SSO/MFA issues, managing endpoints, streamlining onboarding processes, providing operational support, and collaborating closely with our Security and Infrastructure teams. You'll work alongside experienced engineers and key stakeholders, contributing to the maintenance of secure, reliable services while gaining significant exposure to cloud infrastructure, automation, critical compliance requirements, and a wide array of enterprise technologies. This role is ideally suited for someone who thrives on problem solving, enjoys learning new systems, and is eager to work across a variety of technical domains. What You Will Do Perform Okta administration and support identity lifecycle management. Troubleshoot SSO/MFA issues and provide comprehensive user support. Coordinate effectively with security and infrastructure teams on critical initiatives. Participate in follow the sun operational support to ensure continuous service availability. Provide managed local IT support and deliver white glove assistance to users. Manage IT asset lifecycles, including local stock and device management. Support secure onboarding processes for employees and contractors. Contribute to documentation and ensure process adherence in regulated environments. Required Qualifications Ability to obtain and maintain a UK security clearance to minimum SC level. Bachelor's degree in a STEM field or equivalent practical engineering experience. 5+ years of relevant engineering, infrastructure, or technical program execution experience. Willingness to travel domestically and internationally as required (typically around 10%). Technical Expertise Demonstrable technical depth in one or more of the following domains: DevSecOps, software engineering, infrastructure engineering, or cloud infrastructure. Hands on experience with: Infrastructure as Code: Terraform Cloud Platforms: AWS Network Security: TLS, PKI, firewalls, VLANs Virtualisation Technology: VMWare, KVM/QEMU Linux Operating Systems: Scripting and automation tooling, particularly Ubuntu and RHEL Experience with IAM/security platforms such as Okta, Entra ID/Azure AD, Google Workspace, and MDM tools. Proficiency in endpoint management platforms (e.g., Jamf, Intune, Kandji, SCCM). Familiarity with asset management and ticketing systems. Experience in enterprise support operations. Strong stakeholder communication skills and a customer service mindset. Preferred Qualifications Experience designing or maintaining distributed systems, secure networks, or infrastructure supporting autonomy, AI/ML, or big data workloads. Demonstrated ability to work across technical disciplines, influence without authority, and operate effectively in ambiguous and fast paced environments. Experience working with international partners or navigating multi nation technical or policy workflows. Hands on experience with physical hardware, including rack mounted storage, compute, and networking. Knowledge of network cryptography and VPN solutions (both software and accelerated/dedicated hardware). Familiarity with hardening standards such as FIPS, STIG, and CIS. Understanding of compliance standards like ISO, NIST, and Secure by Design principles. Experience with air gapped or highly restricted networks Benefits At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you're supported in health, recovery, and whatever comes next.
18/07/2026
Full time
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril's family of systems is powered by Lattice OS, an AI powered operating system that turns thousands of data streams into a real time, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years. About the Team Our team is dedicated to supporting the secure and seamless operation of enterprise technology across identity, endpoint management, infrastructure, classified, and user support services. We work in close collaboration with our Security, Infrastructure, and Engineering teams to ensure our employees have reliable access to the systems and tools they need, all while maintaining strict compliance and security requirements within a regulated environment. We're responsible for a broad mix of activities, including identity lifecycle management, endpoint support, operational troubleshooting, onboarding processes, and maintaining critical enterprise platforms. Team members gain valuable exposure to cutting edge cloud technologies, infrastructure tooling, advanced security practices, and foster cross functional collaboration in a dynamic, fast paced environment. This role offers an exceptional opportunity to build deep experience across enterprise IT and security operations, directly contributing to initiatives that enhance reliability, scalability, and user experience for the entire organization. About the Role We are seeking a proactive and skilled IT/Infrastructure professional to play a pivotal role in supporting our enterprise systems and day to day operations across identity, endpoint, and security related platforms. You'll be instrumental in assisting with Okta administration, troubleshooting SSO/MFA issues, managing endpoints, streamlining onboarding processes, providing operational support, and collaborating closely with our Security and Infrastructure teams. You'll work alongside experienced engineers and key stakeholders, contributing to the maintenance of secure, reliable services while gaining significant exposure to cloud infrastructure, automation, critical compliance requirements, and a wide array of enterprise technologies. This role is ideally suited for someone who thrives on problem solving, enjoys learning new systems, and is eager to work across a variety of technical domains. What You Will Do Perform Okta administration and support identity lifecycle management. Troubleshoot SSO/MFA issues and provide comprehensive user support. Coordinate effectively with security and infrastructure teams on critical initiatives. Participate in follow the sun operational support to ensure continuous service availability. Provide managed local IT support and deliver white glove assistance to users. Manage IT asset lifecycles, including local stock and device management. Support secure onboarding processes for employees and contractors. Contribute to documentation and ensure process adherence in regulated environments. Required Qualifications Ability to obtain and maintain a UK security clearance to minimum SC level. Bachelor's degree in a STEM field or equivalent practical engineering experience. 5+ years of relevant engineering, infrastructure, or technical program execution experience. Willingness to travel domestically and internationally as required (typically around 10%). Technical Expertise Demonstrable technical depth in one or more of the following domains: DevSecOps, software engineering, infrastructure engineering, or cloud infrastructure. Hands on experience with: Infrastructure as Code: Terraform Cloud Platforms: AWS Network Security: TLS, PKI, firewalls, VLANs Virtualisation Technology: VMWare, KVM/QEMU Linux Operating Systems: Scripting and automation tooling, particularly Ubuntu and RHEL Experience with IAM/security platforms such as Okta, Entra ID/Azure AD, Google Workspace, and MDM tools. Proficiency in endpoint management platforms (e.g., Jamf, Intune, Kandji, SCCM). Familiarity with asset management and ticketing systems. Experience in enterprise support operations. Strong stakeholder communication skills and a customer service mindset. Preferred Qualifications Experience designing or maintaining distributed systems, secure networks, or infrastructure supporting autonomy, AI/ML, or big data workloads. Demonstrated ability to work across technical disciplines, influence without authority, and operate effectively in ambiguous and fast paced environments. Experience working with international partners or navigating multi nation technical or policy workflows. Hands on experience with physical hardware, including rack mounted storage, compute, and networking. Knowledge of network cryptography and VPN solutions (both software and accelerated/dedicated hardware). Familiarity with hardening standards such as FIPS, STIG, and CIS. Understanding of compliance standards like ISO, NIST, and Secure by Design principles. Experience with air gapped or highly restricted networks Benefits At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you're supported in health, recovery, and whatever comes next.
FLBK FUJIFILM Diosynth Biotechnologies UK Limited
Billingham, Yorkshire
Protect identities at global scale. We're hiring a hands on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. What you'll do Lead identity threat monitoring and triage Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijacking Validate true/false positives, prioritize by business impact, and expedite per playbooks/SLAs Drive rapid containment and remediation Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts) Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure Own identity focused incident response; lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement Ensure evidence handling, root cause analysis, post incident reviews, and lessons learned Engineer detections and hunt for threats Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK Close visibility gaps, reduce false positives, and expand privileged activity monitoring Strengthen privileged access controls; detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry Recommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAM Respond to dark web/credential exposure; integrate sources like CyberInt; assess exposure and targeted campaigns Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates Administer platforms and sustain hygiene; maintain coverage/health for identity monitoring; manage upgrades and changes via CAB Keep operational runbooks, SOPs, and playbooks current Automate and orchestrate at scale using PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) Shape identity policy and controls; advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAM Report outcomes and support audits; produce executive ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time) Maintain audit ready evidence and support internal/external audits What you'll bring Bachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience 8+ years in IT/cybersecurity, including 3+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM) Hands on enterprise experience administering/operating CrowdStrike Identity Protection Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations Demonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma) Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR Clear communication and documentation skills; comfortable producing executive ready reports and audit evidence Operates effectively within change control/CAB and under pressure during high severity incidents Bonus points Certifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow) Experience with JIT/JEA, PAM concepts, and global on call rotations Location, work style, and travel Opportunities in the United States, United Kingdom, and Denmark. Onsite or hybrid depending on location and business needs. Occasional on call coverage may be required. Why you'll love it here Own a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygiene Solve complex problems from dark web exposure to directory persistence and lateral movement Collaborate with experienced global teams and leading vendors to continuously raise the bar Grow your career in a modern, data driven security operations environment Benefits and compensation will be governed by the location where you are based and considered your home site. This is a global position that will support all our FUJIFILM Biotechnologies sites.
18/07/2026
Full time
Protect identities at global scale. We're hiring a hands on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity based threats across Microsoft Entra ID/Azure AD, on prem Active Directory, and connected SaaS/IaaS. What you'll do Lead identity threat monitoring and triage Operate and tune CrowdStrike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign ins, MFA fatigue, and session hijacking Validate true/false positives, prioritize by business impact, and expedite per playbooks/SLAs Drive rapid containment and remediation Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts) Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure Own identity focused incident response; lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement Ensure evidence handling, root cause analysis, post incident reviews, and lessons learned Engineer detections and hunt for threats Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK Close visibility gaps, reduce false positives, and expand privileged activity monitoring Strengthen privileged access controls; detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry Recommend/enforce JIT, break glass patterns, and mover/leaver privilege hygiene with IAM Respond to dark web/credential exposure; integrate sources like CyberInt; assess exposure and targeted campaigns Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates Administer platforms and sustain hygiene; maintain coverage/health for identity monitoring; manage upgrades and changes via CAB Keep operational runbooks, SOPs, and playbooks current Automate and orchestrate at scale using PowerShell/Python and REST/Graph/CrowdStrike APIs (and SOAR where applicable) Shape identity policy and controls; advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared responsibility model with IAM Report outcomes and support audits; produce executive ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time) Maintain audit ready evidence and support internal/external audits What you'll bring Bachelor's degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience 8+ years in IT/cybersecurity, including 3+ years focused on identity security/operations (Entra ID/Azure AD, on prem AD, MFA, Conditional Access, SSO/SCIM) Hands on enterprise experience administering/operating CrowdStrike Identity Protection Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations Demonstrated experience in identity centric IR, threat hunting, and detection engineering (KQL/SQL/regex/Sigma) Scripting/automation with PowerShell and Python; experience with REST/Graph/CrowdStrike APIs and SOAR Clear communication and documentation skills; comfortable producing executive ready reports and audit evidence Operates effectively within change control/CAB and under pressure during high severity incidents Bonus points Certifications: Microsoft SC 200/SC 300; Okta Certified Administrator/Professional; CISSP, SSCP, Security+; GIAC (GMON, GCIH, GCDA) or equivalent Deep knowledge of identity attack paths and protocols (Kerberos/NTLM), token/session abuse, and persistence techniques (e.g., Golden/Silver Ticket, DCShadow) Experience with JIT/JEA, PAM concepts, and global on call rotations Location, work style, and travel Opportunities in the United States, United Kingdom, and Denmark. Onsite or hybrid depending on location and business needs. Occasional on call coverage may be required. Why you'll love it here Own a mission critical identity defense stack and make measurable impact on MTTD/MTTR and privilege hygiene Solve complex problems from dark web exposure to directory persistence and lateral movement Collaborate with experienced global teams and leading vendors to continuously raise the bar Grow your career in a modern, data driven security operations environment Benefits and compensation will be governed by the location where you are based and considered your home site. This is a global position that will support all our FUJIFILM Biotechnologies sites.
Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers. From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines. About the Team Roku's IT Infrastructure & Support organization keeps every Roku employee productive and secure, from day-one onboarding through daily support and endpoint protection. We run a modern, cloud-first stack and are actively reshaping IT into an agent-assisted operating model that puts fast, self-serve resolution ahead of ticket queues. This role owns a global slice of the employee support experience through a team based across EMEA and India, and is the primary IT point of contact and escalation point for the EMEA and APAC regions. Team: IT Infrastructure & Support (Enterprise Engineering) Reports to: Director, IT Infrastructure & Support Scope: People-manager role leading a distributed IT support team based across EMEA and India, delivering support to Roku employees across all offices globally, and serving as the primary IT point of contact and escalation point for the EMEA and APAC regions. The Role You will lead a decentralized IT support team with staff based across EMEA and India (Bengaluru). While your team is anchored in these regions, your mandate is global: the team you lead supports Roku employees across all offices, using its time-zone spread to extend responsive coverage well beyond any single region. You are accountable for support quality, responsiveness, and consistency for the employees your team serves, and you are the primary IT point of contact and escalation point for the EMEA and APAC regions. This is a hands-on leadership role: you set the process, coach the team, and step into the hardest problems yourself. What You'll Do Lead, coach, and grow a distributed IT support team based across EMEA and India (Bengaluru), setting clear expectations and owning hiring, performance, and development. Deliver a consistent, high-quality support experience to Roku employees across all offices globally, using the team's time-zone distribution to provide broad, responsive coverage. Build and run a follow-the-sun coverage model that leverages EMEA and India working hours to extend support across the global employee base, with clear cross-region handoffs. Own end-to-end employee support for your scope: incident response, request fulfillment, onboarding, offboarding, and white-glove support for leadership and executives. Define and hold SLAs and quality standards; track ticket volume, resolution time, first-contact resolution, onboarding completion, and CSAT, and report performance to IT leadership. Own the service desk workflow and ticketing (Jira Service Management), including intake, triage, routing, and escalation, and drive continuous improvement of runbooks and knowledge. Manage endpoint support across Windows (Intune), macOS (JAMF), and Linux, including enrollment, compliance remediation, and hardware lifecycle, in partnership with the Secure Device Management team. Support identity and access operations, including MFA enrollment, sign-in troubleshooting, and access requests through our provisioning workflows, escalating policy issues to the Identity & Access team. Partner with Network Engineering on connectivity (Meraki, Tailscale, Umbrella) and with AV Technology on conference room and all-hands support across sites. Own IT readiness for office moves, expansions, new-site builds, and executive or company events within your regions, and support global events as needed. Lead onboarding and offboarding execution so new hires are fully set up on day one and leavers are cleanly deprovisioned, in coordination with People and the identity team. Manage IT vendors, contractors, and smart-hands providers in your regions, and track hardware and license consumption. Champion Roku's shift to an agent-assisted, self-serve IT operating model: identify high-volume, repetitive work suited to automation and help move the team from queue-clearing toward higher-value support and governance. Serve as the primary IT point of contact and escalation point for the EMEA and APAC regions. What We're Looking For 8+ years in IT support / end-user computing, with 4+ years managing teams, including managing staff remotely across multiple countries and time zones. Proven track record leading a distributed or multi-site support function that serves a global user base; experience managing a team or hub in India (Bengaluru) is strongly preferred. Deep hands-on knowledge of a modern enterprise endpoint and identity stack, with cross-platform endpoint support experience across Windows, macOS, and Linux (Microsoft Entra ID / Azure AD, Intune, JAMF, Microsoft 365, and endpoint security tooling). Strong service management discipline: SLA ownership, ITSM process design, and experience running a ticketing platform (Jira Service Management or equivalent). Track record of building metrics-driven support operations and reporting outcomes to senior stakeholders. Excellent communication and stakeholder-management skills, comfortable supporting and interfacing with executives and senior leadership. Able to work effectively across global time zones and travel occasionally between sites. Bias toward automation and self-service; genuine interest in how AI and agent-based tooling can reshape IT support. Nice to Have Experience standing up or scaling IT support for a new or growing international office. Familiarity with zero-trust networking (Tailscale), SD-WAN/wireless (Meraki), and DNS security (Umbrella). Exposure to AV / conference-room support at scale (Zoom Rooms and similar). Experience partnering with Security, People, and Finance functions on cross-functional programs. Relevant certifications (ITIL, Microsoft, Apple) are a plus, not a requirement. What are some of the benefits? Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Employees are supported in taking time off, in accordance with local leave policies and other personal needs to support their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter. Accommodations Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to .
18/07/2026
Full time
Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers. From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines. About the Team Roku's IT Infrastructure & Support organization keeps every Roku employee productive and secure, from day-one onboarding through daily support and endpoint protection. We run a modern, cloud-first stack and are actively reshaping IT into an agent-assisted operating model that puts fast, self-serve resolution ahead of ticket queues. This role owns a global slice of the employee support experience through a team based across EMEA and India, and is the primary IT point of contact and escalation point for the EMEA and APAC regions. Team: IT Infrastructure & Support (Enterprise Engineering) Reports to: Director, IT Infrastructure & Support Scope: People-manager role leading a distributed IT support team based across EMEA and India, delivering support to Roku employees across all offices globally, and serving as the primary IT point of contact and escalation point for the EMEA and APAC regions. The Role You will lead a decentralized IT support team with staff based across EMEA and India (Bengaluru). While your team is anchored in these regions, your mandate is global: the team you lead supports Roku employees across all offices, using its time-zone spread to extend responsive coverage well beyond any single region. You are accountable for support quality, responsiveness, and consistency for the employees your team serves, and you are the primary IT point of contact and escalation point for the EMEA and APAC regions. This is a hands-on leadership role: you set the process, coach the team, and step into the hardest problems yourself. What You'll Do Lead, coach, and grow a distributed IT support team based across EMEA and India (Bengaluru), setting clear expectations and owning hiring, performance, and development. Deliver a consistent, high-quality support experience to Roku employees across all offices globally, using the team's time-zone distribution to provide broad, responsive coverage. Build and run a follow-the-sun coverage model that leverages EMEA and India working hours to extend support across the global employee base, with clear cross-region handoffs. Own end-to-end employee support for your scope: incident response, request fulfillment, onboarding, offboarding, and white-glove support for leadership and executives. Define and hold SLAs and quality standards; track ticket volume, resolution time, first-contact resolution, onboarding completion, and CSAT, and report performance to IT leadership. Own the service desk workflow and ticketing (Jira Service Management), including intake, triage, routing, and escalation, and drive continuous improvement of runbooks and knowledge. Manage endpoint support across Windows (Intune), macOS (JAMF), and Linux, including enrollment, compliance remediation, and hardware lifecycle, in partnership with the Secure Device Management team. Support identity and access operations, including MFA enrollment, sign-in troubleshooting, and access requests through our provisioning workflows, escalating policy issues to the Identity & Access team. Partner with Network Engineering on connectivity (Meraki, Tailscale, Umbrella) and with AV Technology on conference room and all-hands support across sites. Own IT readiness for office moves, expansions, new-site builds, and executive or company events within your regions, and support global events as needed. Lead onboarding and offboarding execution so new hires are fully set up on day one and leavers are cleanly deprovisioned, in coordination with People and the identity team. Manage IT vendors, contractors, and smart-hands providers in your regions, and track hardware and license consumption. Champion Roku's shift to an agent-assisted, self-serve IT operating model: identify high-volume, repetitive work suited to automation and help move the team from queue-clearing toward higher-value support and governance. Serve as the primary IT point of contact and escalation point for the EMEA and APAC regions. What We're Looking For 8+ years in IT support / end-user computing, with 4+ years managing teams, including managing staff remotely across multiple countries and time zones. Proven track record leading a distributed or multi-site support function that serves a global user base; experience managing a team or hub in India (Bengaluru) is strongly preferred. Deep hands-on knowledge of a modern enterprise endpoint and identity stack, with cross-platform endpoint support experience across Windows, macOS, and Linux (Microsoft Entra ID / Azure AD, Intune, JAMF, Microsoft 365, and endpoint security tooling). Strong service management discipline: SLA ownership, ITSM process design, and experience running a ticketing platform (Jira Service Management or equivalent). Track record of building metrics-driven support operations and reporting outcomes to senior stakeholders. Excellent communication and stakeholder-management skills, comfortable supporting and interfacing with executives and senior leadership. Able to work effectively across global time zones and travel occasionally between sites. Bias toward automation and self-service; genuine interest in how AI and agent-based tooling can reshape IT support. Nice to Have Experience standing up or scaling IT support for a new or growing international office. Familiarity with zero-trust networking (Tailscale), SD-WAN/wireless (Meraki), and DNS security (Umbrella). Exposure to AV / conference-room support at scale (Zoom Rooms and similar). Experience partnering with Security, People, and Finance functions on cross-functional programs. Relevant certifications (ITIL, Microsoft, Apple) are a plus, not a requirement. What are some of the benefits? Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Employees are supported in taking time off, in accordance with local leave policies and other personal needs to support their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter. Accommodations Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to .
Here at Acorn we are looking for a passionate Cyber security Analyst to join our cyber side of the business where you will be supporting the SOC Manager and the wider security function in a first line of defence role, safeguarding the organization's infrastructure and systems by monitoring, analysing, and responding to security incidents. There will be collaborative working with any external with SOC with shared and specific responsibilities to ensure all events are managed and risk efficiently identified and escalated to resolver groups. Your day-to-day duties will include managing processes & security checks and reporting incidents, whilst engaging our technical teams to mitigate any issues or improve process/, performing regular tasks including security updates, vulnerability management and mitigation. Role: Cyber Security Analyst Location: Liverpool City Centre Key Responsibilities Monitor, review, log and elevate security incidents as part of daily security operations. Manage and configure SIEM logging and monitoring tools to identify potential security threats, respond to alerts, and elevate incidents where required. Coordinate 2nd-line remediation of identified vulnerabilities, working with technology teams, the business and the IT Support Desk. Track the deployment and health of security products across the business, validating and following up on incorrect findings or reporting anomalies. Ensure endpoint security tools (AV and EDR) are functioning correctly and maintain accurate records of security activity and findings. Provide weekly status reports on security tasks, incident resolutions and monitoring processes created by Cyber Security Engineers. Investigate and resolve phishing-related tickets promptly, escalating complex incidents to security engineers when required. Document resolutions, update knowledge base articles and assist with secure configuration reviews of desktops and laptops. Troubleshoot security related issues impacting end user systems, supporting both security and operational continuity. Report on patching and software update activity in coordination with IT teams, supporting security checks, analysis and technical engineering tasks. Assist with penetration test and vulnerability scan reviews, supporting remediation tracking and follow-up actions. Support central security logging by analysing, mitigating, recording and reporting on identified security threats. Support security audits, certification programmes and internal security initiatives across the business. Maintain a library of standard operating procedures and processes to support the onboarding of cyber analysts. Essential Qualifications Min 1 year experience working in an L1 security analyst role, or equivalent experience within a technical support role that incorporates security related responsibilities or a graduate with a cyber security focused degree. Experience of securing Windows and MacOS operating systems. Familiarity with Active Directory, Group Policy, and endpoint security management tools. Basic knowledge of networking concepts (TCP/IP, DNS, VPN). Experience with anti virus, EDR, and email security solutions. Awareness of phishing techniques and social engineering threats. Ability to interpret security alerts and logs. Excellent communication and problem solving abilities. Strong attention to detail and ability to follow processes. Ability to work independently and collaborate with cross functional teams. Knowledge of at least one scripting language, such as PowerShell. Knowledge of KQL. Working knowledge of ITIL. Exposure to cyber security frameworks (NIST, ISO 27001) is a plus. Certifications such as CompTIA Security+, Microsoft Certified: Security Fundamentals, or similar. Visa Requirements Because our training is quite comprehensive, we can only consider applicants who have at least one year remaining on their Graduate or Post-Study Work visa. At the moment, we are not able to offer visa sponsorship.
18/07/2026
Full time
Here at Acorn we are looking for a passionate Cyber security Analyst to join our cyber side of the business where you will be supporting the SOC Manager and the wider security function in a first line of defence role, safeguarding the organization's infrastructure and systems by monitoring, analysing, and responding to security incidents. There will be collaborative working with any external with SOC with shared and specific responsibilities to ensure all events are managed and risk efficiently identified and escalated to resolver groups. Your day-to-day duties will include managing processes & security checks and reporting incidents, whilst engaging our technical teams to mitigate any issues or improve process/, performing regular tasks including security updates, vulnerability management and mitigation. Role: Cyber Security Analyst Location: Liverpool City Centre Key Responsibilities Monitor, review, log and elevate security incidents as part of daily security operations. Manage and configure SIEM logging and monitoring tools to identify potential security threats, respond to alerts, and elevate incidents where required. Coordinate 2nd-line remediation of identified vulnerabilities, working with technology teams, the business and the IT Support Desk. Track the deployment and health of security products across the business, validating and following up on incorrect findings or reporting anomalies. Ensure endpoint security tools (AV and EDR) are functioning correctly and maintain accurate records of security activity and findings. Provide weekly status reports on security tasks, incident resolutions and monitoring processes created by Cyber Security Engineers. Investigate and resolve phishing-related tickets promptly, escalating complex incidents to security engineers when required. Document resolutions, update knowledge base articles and assist with secure configuration reviews of desktops and laptops. Troubleshoot security related issues impacting end user systems, supporting both security and operational continuity. Report on patching and software update activity in coordination with IT teams, supporting security checks, analysis and technical engineering tasks. Assist with penetration test and vulnerability scan reviews, supporting remediation tracking and follow-up actions. Support central security logging by analysing, mitigating, recording and reporting on identified security threats. Support security audits, certification programmes and internal security initiatives across the business. Maintain a library of standard operating procedures and processes to support the onboarding of cyber analysts. Essential Qualifications Min 1 year experience working in an L1 security analyst role, or equivalent experience within a technical support role that incorporates security related responsibilities or a graduate with a cyber security focused degree. Experience of securing Windows and MacOS operating systems. Familiarity with Active Directory, Group Policy, and endpoint security management tools. Basic knowledge of networking concepts (TCP/IP, DNS, VPN). Experience with anti virus, EDR, and email security solutions. Awareness of phishing techniques and social engineering threats. Ability to interpret security alerts and logs. Excellent communication and problem solving abilities. Strong attention to detail and ability to follow processes. Ability to work independently and collaborate with cross functional teams. Knowledge of at least one scripting language, such as PowerShell. Knowledge of KQL. Working knowledge of ITIL. Exposure to cyber security frameworks (NIST, ISO 27001) is a plus. Certifications such as CompTIA Security+, Microsoft Certified: Security Fundamentals, or similar. Visa Requirements Because our training is quite comprehensive, we can only consider applicants who have at least one year remaining on their Graduate or Post-Study Work visa. At the moment, we are not able to offer visa sponsorship.