Samba is an AI-powered media intelligence company on a mission to give marketers the complete picture of their audiences. Our AI indexes media consumption across millions of smart TVs and 2.5 billion web pages, combining that data with third-party signals through the Samba Knowledge Graph, a map of the real interests, behaviors, and purchase intent of 1.5 billion user profiles globally. Brands, agencies, publishers, and platforms use Samba to make smarter decisions across every stage of the marketing funnel. About Samba TV Samba TV tracks streaming and broadcast video across the world with our proprietary data and technology. We are on a mission to fundamentally transform the viewing experience for everyone. Our data enables media companies to connect with audiences for new shows and movies, and enables advertisers to engage viewers and measure reach across all their devices. We have an amazing story with a unique perspective on culture formed by a global footprint of data and AI-driven insights. Position Summary We are seeking a highly skilled and motivated IT Operations Manager (IC) to serve as the West Coast site lead for our San Francisco and Los Angeles offices. This role is designed for an experienced IT professional who can independently manage the full scope of corporate IT at their assigned locations - from end-user support and device management to identity and access management, office infrastructure, and security compliance. The IT Operations Manager will serve as a subject matter expert across multiple IT disciplines without direct team management responsibilities, operating autonomously day-to-day with strategic direction from the VP of Technology Operations. You will be the single point of ownership for all things IT at your sites. If an employee needs a laptop on day one, a conference room AV system fixed, an Okta access issue resolved, or audit evidence gathered - that's you. This role is ideal for a versatile IT professional who thrives on variety, takes pride in full ownership, and wants to be the person who keeps an entire office running smoothly. Key Responsibilities System Administration & End-User Support Serve as the primary IT contact for all employees at assigned West Coast office locations Maintain, monitor, and manage IT infrastructure including end-user devices, office networks, SaaS services, and AV systems Troubleshoot and resolve hardware, software, and connectivity issues with a focus on rapid resolution and high system availability Manage IT helpdesk tickets, ensuring issues are prioritized, tracked, and resolved within SLA targets Build and maintain a local knowledge base and self-service resources to empower users and reduce repeat requests Device Management & Procurement Own the full device lifecycle: procurement, imaging, deployment, maintenance, and decommissioning for Mac and PC environments Manage MDM platforms (Jamf, Intune, or similar) including device enrollment, policy enforcement, app deployment, and compliance monitoring Coordinate hardware procurement with vendors, managing orders, inventory tracking, and asset management Oversee hardware and software asset management, maintaining accurate records and ensuring devices meet organizational standards Employee Onboarding & Offboarding Execute the full IT onboarding workflow for new hires: account creation, device provisioning, application access, and day one readiness Manage IT offboarding processes including account deactivation, access revocation, device collection, and data handling Continuously refine onboarding and offboarding workflows to improve efficiency and employee experience Collaborate with HR, Finance, and hiring managers to ensure seamless technology transitions Identity & Access Management Administer Okta (or equivalent IdP) including user provisioning, SSO configurations, MFA enforcement, and group/policy management Process access requests, role changes, and entitlement reviews in alignment with security policies Implement and maintain security measures across the identity stack, monitoring for vulnerabilities and responding to incidents Troubleshoot authentication and authorization issues across the SaaS application stack Office Infrastructure & AV Manage and maintain office network infrastructure including Wi Fi, switches, and local connectivity Own conference room AV systems: setup, maintenance, troubleshooting, and upgrades Coordinate with building management and ISPs for connectivity issues and office moves Ensure office technology environments are reliable, secure, and support hybrid work requirements Security & Compliance Participate in ISO audit processes including evidence gathering, controls documentation, and audit walkthroughs Enforce endpoint security policies through MDM and ensure devices meet compliance standards Support vulnerability management and patch compliance at the endpoint level Establish and maintain IT policies, procedures, and best practices to improve operational efficiency and security posture Escalate security incidents appropriately and assist with incident response as needed Vendor & Partner Management Engage with external vendors for hardware, software, and services procurement Manage vendor relationships to ensure quality service delivery and cost-effectiveness Oversee contract renewals, maintenance agreements, and software licensing Evaluate new tools and technologies that could improve IT service delivery at your sites Project Management & Cross Functional Support Lead and execute IT projects at your sites, including system upgrades, office buildouts, and technology rollouts Define project scope, timelines, deliverables, and resource requirements for site level initiatives Collaborate with other departments such as HR, Finance, and Operations to ensure alignment on technology needs and implementations Provide input into long term IT strategy and roadmap development based on site level observations and needs Required Qualifications Bachelor's degree in Information Technology, Computer Science, or a related field, or equivalent practical experience 5+ years of experience in IT system administration, IT operations, or a similar multi discipline IT role Proven ability to independently manage corporate IT across multiple disciplines in a fast paced technology environment Strong hands on experience with macOS and Windows endpoint management in enterprise environments Proficiency with MDM platforms (Jamf, Intune, Kandji, or similar) including policy configuration, app deployment, and compliance enforcement Experience administering identity providers (Okta, Azure AD, or similar) including SSO, MFA, and user lifecycle management Working knowledge of networking fundamentals: Wi Fi, DNS, DHCP, VPNs, and basic firewall concepts Strong problem solving skills with the ability to work independently and manage multiple priorities simultaneously Excellent communication skills, with the ability to explain complex technical concepts to non technical stakeholders Preferred Qualifications Experience supporting technology teams in AdTech, MarTech, or data driven industries Relevant certifications (Apple Certified Support Professional, Jamf Certified, Okta Certified Professional, CompTIA, ITIL) Experience with IT service management tools (Jira Service Management, ServiceNow, Freshservice, or similar) Comfort with scripting and automation to streamline repetitive IT tasks (Bash, PowerShell, Python, or similar) Experience with AV/conference room technology setup and support Experience supporting distributed, international teams across multiple time zones Familiarity with cloud services (AWS, Azure, Google Cloud) in a supporting capacity Background scaling IT operations during rapid company growth phases Experience supporting ISO, SOC 2, or similar compliance frameworks in an IT capacity Knowledge of cybersecurity principles, including endpoint encryption, patch management, and data protection Cultural Fit Tenacious & Zealous: You take ownership of your sites and take pride in keeping everything running smoothly. No problem is someone else's problem. Courageous Voice: You advocate for the right technology decisions and raise concerns early, regardless of hierarchy. Simplify Complexity: You have the ability to manage complex IT environments but always seek the simplest, most maintainable solution. Fast Learner: Technology changes constantly and you stay current, adapting quickly to new tools and platforms. Humble & Grateful: No task is too small. You'll image a laptop, crawl under a desk to fix a cable, and present to leadership in the same day. Samba is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We strive to empower connection with one another, reflect the communities we serve, and tackle meaningful projects that make a real impact. Samba may collect personal information directly from you, as a job applicant, Samba may also receive personal information from third parties, for example, in connection with a background, employment or reference check, in accordance with the applicable law. For further details . click apply for full job details
27/07/2026
Full time
Samba is an AI-powered media intelligence company on a mission to give marketers the complete picture of their audiences. Our AI indexes media consumption across millions of smart TVs and 2.5 billion web pages, combining that data with third-party signals through the Samba Knowledge Graph, a map of the real interests, behaviors, and purchase intent of 1.5 billion user profiles globally. Brands, agencies, publishers, and platforms use Samba to make smarter decisions across every stage of the marketing funnel. About Samba TV Samba TV tracks streaming and broadcast video across the world with our proprietary data and technology. We are on a mission to fundamentally transform the viewing experience for everyone. Our data enables media companies to connect with audiences for new shows and movies, and enables advertisers to engage viewers and measure reach across all their devices. We have an amazing story with a unique perspective on culture formed by a global footprint of data and AI-driven insights. Position Summary We are seeking a highly skilled and motivated IT Operations Manager (IC) to serve as the West Coast site lead for our San Francisco and Los Angeles offices. This role is designed for an experienced IT professional who can independently manage the full scope of corporate IT at their assigned locations - from end-user support and device management to identity and access management, office infrastructure, and security compliance. The IT Operations Manager will serve as a subject matter expert across multiple IT disciplines without direct team management responsibilities, operating autonomously day-to-day with strategic direction from the VP of Technology Operations. You will be the single point of ownership for all things IT at your sites. If an employee needs a laptop on day one, a conference room AV system fixed, an Okta access issue resolved, or audit evidence gathered - that's you. This role is ideal for a versatile IT professional who thrives on variety, takes pride in full ownership, and wants to be the person who keeps an entire office running smoothly. Key Responsibilities System Administration & End-User Support Serve as the primary IT contact for all employees at assigned West Coast office locations Maintain, monitor, and manage IT infrastructure including end-user devices, office networks, SaaS services, and AV systems Troubleshoot and resolve hardware, software, and connectivity issues with a focus on rapid resolution and high system availability Manage IT helpdesk tickets, ensuring issues are prioritized, tracked, and resolved within SLA targets Build and maintain a local knowledge base and self-service resources to empower users and reduce repeat requests Device Management & Procurement Own the full device lifecycle: procurement, imaging, deployment, maintenance, and decommissioning for Mac and PC environments Manage MDM platforms (Jamf, Intune, or similar) including device enrollment, policy enforcement, app deployment, and compliance monitoring Coordinate hardware procurement with vendors, managing orders, inventory tracking, and asset management Oversee hardware and software asset management, maintaining accurate records and ensuring devices meet organizational standards Employee Onboarding & Offboarding Execute the full IT onboarding workflow for new hires: account creation, device provisioning, application access, and day one readiness Manage IT offboarding processes including account deactivation, access revocation, device collection, and data handling Continuously refine onboarding and offboarding workflows to improve efficiency and employee experience Collaborate with HR, Finance, and hiring managers to ensure seamless technology transitions Identity & Access Management Administer Okta (or equivalent IdP) including user provisioning, SSO configurations, MFA enforcement, and group/policy management Process access requests, role changes, and entitlement reviews in alignment with security policies Implement and maintain security measures across the identity stack, monitoring for vulnerabilities and responding to incidents Troubleshoot authentication and authorization issues across the SaaS application stack Office Infrastructure & AV Manage and maintain office network infrastructure including Wi Fi, switches, and local connectivity Own conference room AV systems: setup, maintenance, troubleshooting, and upgrades Coordinate with building management and ISPs for connectivity issues and office moves Ensure office technology environments are reliable, secure, and support hybrid work requirements Security & Compliance Participate in ISO audit processes including evidence gathering, controls documentation, and audit walkthroughs Enforce endpoint security policies through MDM and ensure devices meet compliance standards Support vulnerability management and patch compliance at the endpoint level Establish and maintain IT policies, procedures, and best practices to improve operational efficiency and security posture Escalate security incidents appropriately and assist with incident response as needed Vendor & Partner Management Engage with external vendors for hardware, software, and services procurement Manage vendor relationships to ensure quality service delivery and cost-effectiveness Oversee contract renewals, maintenance agreements, and software licensing Evaluate new tools and technologies that could improve IT service delivery at your sites Project Management & Cross Functional Support Lead and execute IT projects at your sites, including system upgrades, office buildouts, and technology rollouts Define project scope, timelines, deliverables, and resource requirements for site level initiatives Collaborate with other departments such as HR, Finance, and Operations to ensure alignment on technology needs and implementations Provide input into long term IT strategy and roadmap development based on site level observations and needs Required Qualifications Bachelor's degree in Information Technology, Computer Science, or a related field, or equivalent practical experience 5+ years of experience in IT system administration, IT operations, or a similar multi discipline IT role Proven ability to independently manage corporate IT across multiple disciplines in a fast paced technology environment Strong hands on experience with macOS and Windows endpoint management in enterprise environments Proficiency with MDM platforms (Jamf, Intune, Kandji, or similar) including policy configuration, app deployment, and compliance enforcement Experience administering identity providers (Okta, Azure AD, or similar) including SSO, MFA, and user lifecycle management Working knowledge of networking fundamentals: Wi Fi, DNS, DHCP, VPNs, and basic firewall concepts Strong problem solving skills with the ability to work independently and manage multiple priorities simultaneously Excellent communication skills, with the ability to explain complex technical concepts to non technical stakeholders Preferred Qualifications Experience supporting technology teams in AdTech, MarTech, or data driven industries Relevant certifications (Apple Certified Support Professional, Jamf Certified, Okta Certified Professional, CompTIA, ITIL) Experience with IT service management tools (Jira Service Management, ServiceNow, Freshservice, or similar) Comfort with scripting and automation to streamline repetitive IT tasks (Bash, PowerShell, Python, or similar) Experience with AV/conference room technology setup and support Experience supporting distributed, international teams across multiple time zones Familiarity with cloud services (AWS, Azure, Google Cloud) in a supporting capacity Background scaling IT operations during rapid company growth phases Experience supporting ISO, SOC 2, or similar compliance frameworks in an IT capacity Knowledge of cybersecurity principles, including endpoint encryption, patch management, and data protection Cultural Fit Tenacious & Zealous: You take ownership of your sites and take pride in keeping everything running smoothly. No problem is someone else's problem. Courageous Voice: You advocate for the right technology decisions and raise concerns early, regardless of hierarchy. Simplify Complexity: You have the ability to manage complex IT environments but always seek the simplest, most maintainable solution. Fast Learner: Technology changes constantly and you stay current, adapting quickly to new tools and platforms. Humble & Grateful: No task is too small. You'll image a laptop, crawl under a desk to fix a cable, and present to leadership in the same day. Samba is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We strive to empower connection with one another, reflect the communities we serve, and tackle meaningful projects that make a real impact. Samba may collect personal information directly from you, as a job applicant, Samba may also receive personal information from third parties, for example, in connection with a background, employment or reference check, in accordance with the applicable law. For further details . click apply for full job details
External Description Work with and lead talented people to achieve wonderful things at Liberty IT; for this is whereyou'llfind complex challenges, whereyou'llbe given the scope and the support to go further, dig deeper and fly higher. You'llbring theexpertise.We'llprovide the support and autonomy. Sound good? Whoyou'llbe working with: Join as a Principal Software Engineer to work on devising and scaling innovation to enable program management across Liberty mutual including creating new experiences for AIusage.Youwill alsohave the opportunity tosolve some of the biggest strategic questions in technology for our leaders using data to unlock the answers. Experience and skills we need: A minimum of five years, software development experience in a commercial environment. Experience in providing technical leadership to software engineers in the delivery of a feature set or enhancements of enterprise scale. Experiencein working with Typescript, Node and React In-depth knowledge and experience in agile software delivery and of DevOps as part of the SDLC. Experience in partnering closely with Product Owners and customer stakeholders to deliver software solutions. Extensive coaching and mentoring experience, including implementing engineering excellence best practises. Experience inidentifyingand implementing continuous improvement initiatives in the SDLC. Experience in technical communication with peers and non-technical stakeholders. Knowledge of and exposure to the Well-Architected Framework. Experience and skillswe'dlove: We'veincluded some further skills and experience that would be great. However,don'trule yourself out if youhaven'thad the opportunity to develop these yet, we have a learning culture at Liberty IT so we will support your career growth with us. Backend-TypeScript,Node,HonoandPostgresSQL Frontend-Typescript,React,Vite,TailwindCSSandLMDS Experience in working with the followingtechnologies:Cloudforge, Generative AI, Embedding / Semantic search Knowledge of and exposure to coaching frameworks Whatyou'llbe doing: Lead an agile team of Software Engineers to achieve their goals, and, with support from the Leadership and Support team, define the team's path to get there. Coach and mentor team members utilising suitable coaching framework/s. Be part of a team who are working to solve complex business problems by delivering high-quality software that provides an outstanding experience for our customers. Own complex use cases or tasks. Design and code solutions working with the most suitable programming language, technologies,toolsand frameworks. Contribute to the overall architecture through designing,documentingand implementing high quality, secure solutions and enhancements that satisfy the customers problems or requirements. Facilitate engineering excellence across the team through coaching and mentoring on best practices,definingand implementing team coding and testing standards, and creating accountability among all team members in relation to security and testing practices. Overviews the technical delivery roadmap and proactivelyidentifyingblockers or challenges to successful delivery in processes, tooling, deployment pipelines, or similar. Works with the team to resolve identified challenges. Regularly partner with the Product Owners to own backlog prioritisation, set deliverygoalsand manage dependencies across stakeholders,customersand integration partners. Promote a product focused mindset with your team and stakeholders. Encourage team wide experimentation with new practices or technology. Introduce suitable new practises or technologies to ensure your team deliver the best possible solution in line with your customer's needs and requiredtimeframe. Grow your knowledge of architecture and design best practices. Supported by the leaders across Liberty IT, seek opportunities to share and celebrate what you and your team have achieved through internal tech talks, blogging and external What's on offer Feel safe and secure whatever life brings, with health insurance (including access to a digital doctor), life assurance and income protection. Enjoy both today and tomorrow with employee discount schemes, annual bonuses and a competitive pension. Protect your wellbeing with flexible working and a real work-life balance. Grow yourself, your career and reputation through continuous learning, promotion opportunities and our generous recognition programme. About Us A little background on LIT Liberty IT is the tech wing of Liberty Mutual Insurance. Bringing peace of mind to all aspects of customer's lives, every day. We're an ideas company. Always. We thrive on engineering excellence and surpass with technical mastery. We build beautifully architected cloud solutions and reliably run high stability systems. We work alongside the best in the business and learn from the finest minds. Great Place to Work in UK & Ireland 2025 Best Workplaces for Women (UK) 2025 Top 5 Best Tech Workplace Centre of Excellence in Wellbeing Fair employment and equal opportunities Liberty IT is an equal opportunity employer, committed to inclusion and diversity. If you have a disability, accommodations are available on request when taking part in all aspects of the recruitment, assessment, and selection process. Now, it's over to you.
27/07/2026
Full time
External Description Work with and lead talented people to achieve wonderful things at Liberty IT; for this is whereyou'llfind complex challenges, whereyou'llbe given the scope and the support to go further, dig deeper and fly higher. You'llbring theexpertise.We'llprovide the support and autonomy. Sound good? Whoyou'llbe working with: Join as a Principal Software Engineer to work on devising and scaling innovation to enable program management across Liberty mutual including creating new experiences for AIusage.Youwill alsohave the opportunity tosolve some of the biggest strategic questions in technology for our leaders using data to unlock the answers. Experience and skills we need: A minimum of five years, software development experience in a commercial environment. Experience in providing technical leadership to software engineers in the delivery of a feature set or enhancements of enterprise scale. Experiencein working with Typescript, Node and React In-depth knowledge and experience in agile software delivery and of DevOps as part of the SDLC. Experience in partnering closely with Product Owners and customer stakeholders to deliver software solutions. Extensive coaching and mentoring experience, including implementing engineering excellence best practises. Experience inidentifyingand implementing continuous improvement initiatives in the SDLC. Experience in technical communication with peers and non-technical stakeholders. Knowledge of and exposure to the Well-Architected Framework. Experience and skillswe'dlove: We'veincluded some further skills and experience that would be great. However,don'trule yourself out if youhaven'thad the opportunity to develop these yet, we have a learning culture at Liberty IT so we will support your career growth with us. Backend-TypeScript,Node,HonoandPostgresSQL Frontend-Typescript,React,Vite,TailwindCSSandLMDS Experience in working with the followingtechnologies:Cloudforge, Generative AI, Embedding / Semantic search Knowledge of and exposure to coaching frameworks Whatyou'llbe doing: Lead an agile team of Software Engineers to achieve their goals, and, with support from the Leadership and Support team, define the team's path to get there. Coach and mentor team members utilising suitable coaching framework/s. Be part of a team who are working to solve complex business problems by delivering high-quality software that provides an outstanding experience for our customers. Own complex use cases or tasks. Design and code solutions working with the most suitable programming language, technologies,toolsand frameworks. Contribute to the overall architecture through designing,documentingand implementing high quality, secure solutions and enhancements that satisfy the customers problems or requirements. Facilitate engineering excellence across the team through coaching and mentoring on best practices,definingand implementing team coding and testing standards, and creating accountability among all team members in relation to security and testing practices. Overviews the technical delivery roadmap and proactivelyidentifyingblockers or challenges to successful delivery in processes, tooling, deployment pipelines, or similar. Works with the team to resolve identified challenges. Regularly partner with the Product Owners to own backlog prioritisation, set deliverygoalsand manage dependencies across stakeholders,customersand integration partners. Promote a product focused mindset with your team and stakeholders. Encourage team wide experimentation with new practices or technology. Introduce suitable new practises or technologies to ensure your team deliver the best possible solution in line with your customer's needs and requiredtimeframe. Grow your knowledge of architecture and design best practices. Supported by the leaders across Liberty IT, seek opportunities to share and celebrate what you and your team have achieved through internal tech talks, blogging and external What's on offer Feel safe and secure whatever life brings, with health insurance (including access to a digital doctor), life assurance and income protection. Enjoy both today and tomorrow with employee discount schemes, annual bonuses and a competitive pension. Protect your wellbeing with flexible working and a real work-life balance. Grow yourself, your career and reputation through continuous learning, promotion opportunities and our generous recognition programme. About Us A little background on LIT Liberty IT is the tech wing of Liberty Mutual Insurance. Bringing peace of mind to all aspects of customer's lives, every day. We're an ideas company. Always. We thrive on engineering excellence and surpass with technical mastery. We build beautifully architected cloud solutions and reliably run high stability systems. We work alongside the best in the business and learn from the finest minds. Great Place to Work in UK & Ireland 2025 Best Workplaces for Women (UK) 2025 Top 5 Best Tech Workplace Centre of Excellence in Wellbeing Fair employment and equal opportunities Liberty IT is an equal opportunity employer, committed to inclusion and diversity. If you have a disability, accommodations are available on request when taking part in all aspects of the recruitment, assessment, and selection process. Now, it's over to you.
About The Role We're looking for an experienced Vulnerability & Exposure Manager to lead and mature our vulnerability management capability. As a leading UK life and pensions mutual insurer with a proud history dating back to 1843, we exist to help people live financially confident lives - protecting their income while they work and maximising it when they stop. Today, over one million members and customers trust us to look after their futures, families and finances. Joining us means becoming part of a team that puts our members, customers and advisers at the heart of everything we do. We're committed to creating an inclusive culture where colleagues can thrive. We are proud to have built a workplace where our colleagues feel welcomed, respected, supported and valued - reflected in our recognition as one of the Financial Times UK's Best Employers in 2025 and 2026. We celebrate individuality and believe our differences make us stronger, so bring your true self and help shape the future of LV=. This is a highly visible role responsible for identifying, prioritising and driving the remediation of vulnerabilities across infrastructure, cloud platforms, applications, containers and third-party services. Working closely with Security Operations, Cloud Engineering, Platform Teams, Development Teams, Architecture and Technology leadership, you'll ensure that cyber risks are understood, prioritised and reduced through effective governance, intelligence-led decision making and strong stakeholder engagement. This is an excellent opportunity for someone who enjoys combining technical expertise, data-driven analysis and influencing skills to deliver measurable security outcomes. The role follows a hybrid working pattern, with regular attendance required at our Bournemouth office. Key Responsibilities Lead the organisation's end-to-end vulnerability management programme. Manage vulnerability scanning, analysis, prioritisation, reporting and remediation governance. Drive risk-based remediation using threat intelligence, exploitability data and business context. Partner with technology teams to reduce exposure across cloud, infrastructure, applications and endpoints. Maintain and optimise vulnerability management tooling and asset coverage. Produce executive-level reporting, dashboards and KPI metrics demonstrating risk reduction and programme effectiveness. Escalate high-risk or overdue vulnerabilities and influence remediation priorities. Identify systemic weaknesses and recommend strategic improvements to security architecture and operating practices. Support continuous improvement through automation, integration and enhanced asset visibility. About You You'll be comfortable operating at both a technical and strategic level, translating complex vulnerability data into clear risk-based actions. Essential Experience Proven experience in vulnerability management, security operations or security engineering Hands-on experience with vulnerability scanning platforms and remediation workflows Strong understanding of CVEs, CVSS, exploitability, patch management and security configuration practices Experience working with cloud technologies, modern infrastructure and enterprise applications Ability to analyse large datasets and identify trends, risks and systemic issues Strong stakeholder management skills with the confidence to challenge constructively and drive action Experience producing reports and presentations for senior stakeholders Technical Knowledge Experience with some of the following: Vulnerability platforms such as Rapid7, Tenable, Qualys or Microsoft Defender TVM Azure cloud environments Endpoint and patch management technologies SIEM, EDR and threat intelligence platforms Security tools supporting application and container security ITSM, ticketing and reporting solutions such as ServiceNow, Jira or Power BI Desirable Certifications CompTIA Security+ or CySA+ GIAC certifications (GSEC, GCIH, GSTRT) Microsoft SC-200 and/or AZ-500 Tenable, Qualys or Rapid7 certifications ITIL Foundation Rewards and Benefits At LV= Savings and Retirement, you'll go above and beyond to do the right thing for our customers. We'll reward your hard work with an attractive, competitive salary and benefits package, which includes: 30 days' holiday, with the option to buy up to 5 additional days Competitive pension scheme - LV= Life and Pensions will double-match the amount you pay, up to 14% (subject to National Minimum Wage requirements) An annual bonus scheme based on personal performance Single-cover private medical insurance (with the option for you to upgrade to family cover) Flexible benefits, including a cycle to work scheme, personal accident insurance, critical illness cover and dental insurance Up to 20% discount on our life products for you and your immediate family A group life assurance policy with 4 x your basic pay to go to your dependents (you'll have the option to increase to 8 x cover) Group Income Protection (if you become a member of the Pension scheme and reach 5 years of service) Access to our Employee Assistance Programme (EAP) for support when you need it A virtual GP service Shared parental leave Up to 20% discount on our life products for you and your immediate family. Please note that we are unable to offer Skilled Worker Visa Sponsorship for this role. Therefore, you must ensure that you are eligible to work in the UK without our sponsorship for your application to be considered. About Us We're proud of our inclusive culture at LV= and, as an equal-opportunity employer, we continually work to remove unconscious bias from our recruitment process. We value our colleagues for what they bring to our team regardless of any protected status or characteristics they may have. Talk to us about flexible working as part of your application; if it's right for you, our members and customers, and our business, then we'll do everything we can to make it happen.
26/07/2026
Full time
About The Role We're looking for an experienced Vulnerability & Exposure Manager to lead and mature our vulnerability management capability. As a leading UK life and pensions mutual insurer with a proud history dating back to 1843, we exist to help people live financially confident lives - protecting their income while they work and maximising it when they stop. Today, over one million members and customers trust us to look after their futures, families and finances. Joining us means becoming part of a team that puts our members, customers and advisers at the heart of everything we do. We're committed to creating an inclusive culture where colleagues can thrive. We are proud to have built a workplace where our colleagues feel welcomed, respected, supported and valued - reflected in our recognition as one of the Financial Times UK's Best Employers in 2025 and 2026. We celebrate individuality and believe our differences make us stronger, so bring your true self and help shape the future of LV=. This is a highly visible role responsible for identifying, prioritising and driving the remediation of vulnerabilities across infrastructure, cloud platforms, applications, containers and third-party services. Working closely with Security Operations, Cloud Engineering, Platform Teams, Development Teams, Architecture and Technology leadership, you'll ensure that cyber risks are understood, prioritised and reduced through effective governance, intelligence-led decision making and strong stakeholder engagement. This is an excellent opportunity for someone who enjoys combining technical expertise, data-driven analysis and influencing skills to deliver measurable security outcomes. The role follows a hybrid working pattern, with regular attendance required at our Bournemouth office. Key Responsibilities Lead the organisation's end-to-end vulnerability management programme. Manage vulnerability scanning, analysis, prioritisation, reporting and remediation governance. Drive risk-based remediation using threat intelligence, exploitability data and business context. Partner with technology teams to reduce exposure across cloud, infrastructure, applications and endpoints. Maintain and optimise vulnerability management tooling and asset coverage. Produce executive-level reporting, dashboards and KPI metrics demonstrating risk reduction and programme effectiveness. Escalate high-risk or overdue vulnerabilities and influence remediation priorities. Identify systemic weaknesses and recommend strategic improvements to security architecture and operating practices. Support continuous improvement through automation, integration and enhanced asset visibility. About You You'll be comfortable operating at both a technical and strategic level, translating complex vulnerability data into clear risk-based actions. Essential Experience Proven experience in vulnerability management, security operations or security engineering Hands-on experience with vulnerability scanning platforms and remediation workflows Strong understanding of CVEs, CVSS, exploitability, patch management and security configuration practices Experience working with cloud technologies, modern infrastructure and enterprise applications Ability to analyse large datasets and identify trends, risks and systemic issues Strong stakeholder management skills with the confidence to challenge constructively and drive action Experience producing reports and presentations for senior stakeholders Technical Knowledge Experience with some of the following: Vulnerability platforms such as Rapid7, Tenable, Qualys or Microsoft Defender TVM Azure cloud environments Endpoint and patch management technologies SIEM, EDR and threat intelligence platforms Security tools supporting application and container security ITSM, ticketing and reporting solutions such as ServiceNow, Jira or Power BI Desirable Certifications CompTIA Security+ or CySA+ GIAC certifications (GSEC, GCIH, GSTRT) Microsoft SC-200 and/or AZ-500 Tenable, Qualys or Rapid7 certifications ITIL Foundation Rewards and Benefits At LV= Savings and Retirement, you'll go above and beyond to do the right thing for our customers. We'll reward your hard work with an attractive, competitive salary and benefits package, which includes: 30 days' holiday, with the option to buy up to 5 additional days Competitive pension scheme - LV= Life and Pensions will double-match the amount you pay, up to 14% (subject to National Minimum Wage requirements) An annual bonus scheme based on personal performance Single-cover private medical insurance (with the option for you to upgrade to family cover) Flexible benefits, including a cycle to work scheme, personal accident insurance, critical illness cover and dental insurance Up to 20% discount on our life products for you and your immediate family A group life assurance policy with 4 x your basic pay to go to your dependents (you'll have the option to increase to 8 x cover) Group Income Protection (if you become a member of the Pension scheme and reach 5 years of service) Access to our Employee Assistance Programme (EAP) for support when you need it A virtual GP service Shared parental leave Up to 20% discount on our life products for you and your immediate family. Please note that we are unable to offer Skilled Worker Visa Sponsorship for this role. Therefore, you must ensure that you are eligible to work in the UK without our sponsorship for your application to be considered. About Us We're proud of our inclusive culture at LV= and, as an equal-opportunity employer, we continually work to remove unconscious bias from our recruitment process. We value our colleagues for what they bring to our team regardless of any protected status or characteristics they may have. Talk to us about flexible working as part of your application; if it's right for you, our members and customers, and our business, then we'll do everything we can to make it happen.
Senior Cyber Security Engineer / Architect / Lead Location: Farnborough Security Clearance Level High: DV - Developed Vetting Role Overview Everything we do is built on a commitment to do the right thing for our customers, our people and our community. Our mission and our values guide the way we do business. The foundation of our Leidos culture is our Values, Beliefs and Expectations by which we select, recognise and reward employees. They create the environment that drives us toward our mission. Inspired to make a difference, we are committed to solving the world's toughest problems. Passionate about customer success, we work closely with our stakeholders to understand, shape, and deliver secure solutions that enable critical outcomes. United as a team, we are bound together by our conviction that ethics and integrity are core to how we operate. In this role, you will be a trusted security practitioner, working with minimal direction on a critical programme and helping to raise the security bar across engineering and operations. Because of a key strategic development and a new exciting business opportunity, we have a requirement for a security-cleared Senior Cyber Security Engineer based in the UK working at our Farnborough site and remotely. Leidos has more than 30 years' experience of developing and running some of the largest government systems in the world. We are currently hiring to expand our UK based technical team who support our delivery for the UK Govt. Come join our team and further develop your skills as we deliver and support systems key to the defence of the UK and partner nations. Being part of the Leidos team is a commitment to push yourself and those around you to do better, constantly adapt and learn new technologies. We're a passionate team and are committed to developing and growing our staff. Leidos is a global science and technology solutions leader working to solve the world's toughest challenges in the defence, intelligence, homeland security, civil, and health markets. The company's 33,000 employees support vital missions for government and commercial customers. What Will You Be Doing? To support current program delivery, we currently have a permanent vacancy for a Senior Cyber Security Engineer to support the development and transition into live of a MOD application and infrastructure solution providing support to a critical operational end user. Leidos is seeking an enthusiastic protective security specialist to lead the implementation and assurance of security within a key defence project. You will contribute across the delivery lifecycle-shaping secure designs, defining and assuring controls, and providing senior-level security engineering support across protective and information security. You will have demonstrable experience applying recognised security frameworks (e.g., Government Functional Standard 007, NIST, CIS benchmarks) to real-world systems and services. You will be joining a team of highly skilled and highly motivated individuals who are working on one of the UKs leading programmes. Required Skills The Senior Cyber Security Engineer (T4) plays a critical role in protecting and enabling mission IT by combining deep technical expertise with pragmatic risk management. You will be able to work with minimal direction on a specific programme, taking responsibility for planning, implementing, and assuring security controls across infrastructure, platforms, and applications (including cloud services). You will provide clear security advice and assurance to stakeholders, typically aligned to HMG/MOD expectations and recognised standards (e.g., NIST, CIS benchmarks), and you will support teams by sharing knowledge and guiding good practice. Key Functions / Outputs Vulnerability Management, Reporting & Risk Prioritisation Endpoint, Identity & Cloud Security Engineering (AWS) Incident Response Leadership & Operational Security Secure Configuration, Hardening & Compliance Assurance Security Design Review, Change Impact Assessment & ST&V Stakeholder Engagement, Governance & Decision Support Documentation, Mentoring & Continuous Improvement Main Objectives Vulnerability Management, Reporting & Risk Prioritisation Perform regular vulnerability assessments and generate actionable reporting using approved toolsets. The process should focus on ensuring scanners and signatures are current, coverage is agreed, and findings are prioritised based on risk, mission impact, and exploitability. You will support (and where required lead) triage with engineering teams to drive remediation to closure and provide clear risk narratives to senior stakeholders. Code Scans: perform regular code scans to assess code quality, detect potential bugs, and identify security vulnerabilities; work with development teams to agree remediation approaches and prevent recurrence. Vulnerability Management Tooling: perform regular vulnerability management scans and ensure repositories/plugins are maintained to detect emerging vulnerabilities across endpoints, servers, and cloud workloads. Reporting: produce and quality assure recurring vulnerability and risk reporting for the cyber security and IA lead; highlight trends, systemic issues, and recommendations for control improvements. Endpoint, Identity & Cloud Security Engineering (AWS) Endpoint Protection: drive endpoint security posture through regular updates, policy tuning, and validation activities aligned to current threats and programme requirements. Antivirus and Anti malware Protection: perform assurance checks to ensure controls are deployed successfully, monitored, and kept up to date; define exceptions and compensating controls where needed. Network Controls: perform compliance checks and targeted audits of network security controls (e.g., firewall rules, segmentation, proxying) to ensure unauthorised access and threats are blocked and logged appropriately. Access Control & IAM: design and ensure access controls are implemented correctly to enforce least privilege and need to know across systems and data; provide oversight of privileged access, account lifecycle, and authentication policy. AWS Cloud Security: design and assure cloud security controls across networking, identity, logging/monitoring, and configuration management; validate guardrails and support secure landing zone patterns where applicable. Incident Response Leadership & Operational Security Incident Identification: help to recognise and confirm potential incidents through alerts, logs, and user reports; apply sound judgement to distinguish true threats from false positives. Incident Response: lead or provide senior support to containment, eradication, investigation, and recovery activities; coordinate with service owners and stakeholders to restore operations and capture lessons learning. Tickets & Requests: manage and resolve tickets raised to the Leidos Security group that require Cyber Security Engineering input; prioritise based on risk and impact, and mentor others through complex issues. Secure Configuration, Hardening & Compliance Assurance Patch Updates to Security Products: ensure security toolsets are kept up to date with patches and software updates; assess impact and coordinate change implementation in line with governance. System Compliance: perform and oversee regular compliance audits to ensure systems meet agreed baselines and best practices (e.g., CIS, STIG, NIST); manage exceptions with evidence based rationale and compensating controls. Security Enforcing Function Configuration: assist in the design, review, and improvement of security enforcing functions (e.g., GPOs, system policies, cloud guardrails) to ensure they are compliant, testable, and fit for purpose. Assurance Activities: conduct periodic technical assessments (configuration reviews, control testing, threat driven checks) to identify weaknesses and drive measurable improvements. Security Design Review, Change Impact Assessment & ST&V Security Impact Triage Tool (SITT): lead or support evaluation and impact assessment of proposed changes to security posture; provide clear recommendations, conditions, and required evidence for approval. Security Evaluation, Testing and Assurance (ST&V): plan and execute security evaluation and assurance activities for changes delivered through PI Planning; define test scope, coordinate evidence capture, and ensure outcomes are documented and traceable. Stakeholder Engagement, Governance & Decision Support Security Working Group (SWG) Customer/Supplier Security Forums Vulnerability Triage Security Workshop PI Planning Daily Standups (Blue/Green Team) Documentation, Mentoring & Continuous Improvement Senior Cyber Security Engineers are responsible for creating, maintaining, and reviewing high-quality documentation and security evidence. This includes High Level & Low Level Designs (HLD/LLD), Standard Operating Procedures (SOPs), risk assessments, and compliance/assurance reports. You will also support capability uplift through mentoring, knowledge sharing, and identifying opportunities to automate and improve security processes. Essential Experience Proven experience in a senior cyber security engineering role, delivering security outcomes across complex IT environments (on prem and/or cloud). . click apply for full job details
26/07/2026
Full time
Senior Cyber Security Engineer / Architect / Lead Location: Farnborough Security Clearance Level High: DV - Developed Vetting Role Overview Everything we do is built on a commitment to do the right thing for our customers, our people and our community. Our mission and our values guide the way we do business. The foundation of our Leidos culture is our Values, Beliefs and Expectations by which we select, recognise and reward employees. They create the environment that drives us toward our mission. Inspired to make a difference, we are committed to solving the world's toughest problems. Passionate about customer success, we work closely with our stakeholders to understand, shape, and deliver secure solutions that enable critical outcomes. United as a team, we are bound together by our conviction that ethics and integrity are core to how we operate. In this role, you will be a trusted security practitioner, working with minimal direction on a critical programme and helping to raise the security bar across engineering and operations. Because of a key strategic development and a new exciting business opportunity, we have a requirement for a security-cleared Senior Cyber Security Engineer based in the UK working at our Farnborough site and remotely. Leidos has more than 30 years' experience of developing and running some of the largest government systems in the world. We are currently hiring to expand our UK based technical team who support our delivery for the UK Govt. Come join our team and further develop your skills as we deliver and support systems key to the defence of the UK and partner nations. Being part of the Leidos team is a commitment to push yourself and those around you to do better, constantly adapt and learn new technologies. We're a passionate team and are committed to developing and growing our staff. Leidos is a global science and technology solutions leader working to solve the world's toughest challenges in the defence, intelligence, homeland security, civil, and health markets. The company's 33,000 employees support vital missions for government and commercial customers. What Will You Be Doing? To support current program delivery, we currently have a permanent vacancy for a Senior Cyber Security Engineer to support the development and transition into live of a MOD application and infrastructure solution providing support to a critical operational end user. Leidos is seeking an enthusiastic protective security specialist to lead the implementation and assurance of security within a key defence project. You will contribute across the delivery lifecycle-shaping secure designs, defining and assuring controls, and providing senior-level security engineering support across protective and information security. You will have demonstrable experience applying recognised security frameworks (e.g., Government Functional Standard 007, NIST, CIS benchmarks) to real-world systems and services. You will be joining a team of highly skilled and highly motivated individuals who are working on one of the UKs leading programmes. Required Skills The Senior Cyber Security Engineer (T4) plays a critical role in protecting and enabling mission IT by combining deep technical expertise with pragmatic risk management. You will be able to work with minimal direction on a specific programme, taking responsibility for planning, implementing, and assuring security controls across infrastructure, platforms, and applications (including cloud services). You will provide clear security advice and assurance to stakeholders, typically aligned to HMG/MOD expectations and recognised standards (e.g., NIST, CIS benchmarks), and you will support teams by sharing knowledge and guiding good practice. Key Functions / Outputs Vulnerability Management, Reporting & Risk Prioritisation Endpoint, Identity & Cloud Security Engineering (AWS) Incident Response Leadership & Operational Security Secure Configuration, Hardening & Compliance Assurance Security Design Review, Change Impact Assessment & ST&V Stakeholder Engagement, Governance & Decision Support Documentation, Mentoring & Continuous Improvement Main Objectives Vulnerability Management, Reporting & Risk Prioritisation Perform regular vulnerability assessments and generate actionable reporting using approved toolsets. The process should focus on ensuring scanners and signatures are current, coverage is agreed, and findings are prioritised based on risk, mission impact, and exploitability. You will support (and where required lead) triage with engineering teams to drive remediation to closure and provide clear risk narratives to senior stakeholders. Code Scans: perform regular code scans to assess code quality, detect potential bugs, and identify security vulnerabilities; work with development teams to agree remediation approaches and prevent recurrence. Vulnerability Management Tooling: perform regular vulnerability management scans and ensure repositories/plugins are maintained to detect emerging vulnerabilities across endpoints, servers, and cloud workloads. Reporting: produce and quality assure recurring vulnerability and risk reporting for the cyber security and IA lead; highlight trends, systemic issues, and recommendations for control improvements. Endpoint, Identity & Cloud Security Engineering (AWS) Endpoint Protection: drive endpoint security posture through regular updates, policy tuning, and validation activities aligned to current threats and programme requirements. Antivirus and Anti malware Protection: perform assurance checks to ensure controls are deployed successfully, monitored, and kept up to date; define exceptions and compensating controls where needed. Network Controls: perform compliance checks and targeted audits of network security controls (e.g., firewall rules, segmentation, proxying) to ensure unauthorised access and threats are blocked and logged appropriately. Access Control & IAM: design and ensure access controls are implemented correctly to enforce least privilege and need to know across systems and data; provide oversight of privileged access, account lifecycle, and authentication policy. AWS Cloud Security: design and assure cloud security controls across networking, identity, logging/monitoring, and configuration management; validate guardrails and support secure landing zone patterns where applicable. Incident Response Leadership & Operational Security Incident Identification: help to recognise and confirm potential incidents through alerts, logs, and user reports; apply sound judgement to distinguish true threats from false positives. Incident Response: lead or provide senior support to containment, eradication, investigation, and recovery activities; coordinate with service owners and stakeholders to restore operations and capture lessons learning. Tickets & Requests: manage and resolve tickets raised to the Leidos Security group that require Cyber Security Engineering input; prioritise based on risk and impact, and mentor others through complex issues. Secure Configuration, Hardening & Compliance Assurance Patch Updates to Security Products: ensure security toolsets are kept up to date with patches and software updates; assess impact and coordinate change implementation in line with governance. System Compliance: perform and oversee regular compliance audits to ensure systems meet agreed baselines and best practices (e.g., CIS, STIG, NIST); manage exceptions with evidence based rationale and compensating controls. Security Enforcing Function Configuration: assist in the design, review, and improvement of security enforcing functions (e.g., GPOs, system policies, cloud guardrails) to ensure they are compliant, testable, and fit for purpose. Assurance Activities: conduct periodic technical assessments (configuration reviews, control testing, threat driven checks) to identify weaknesses and drive measurable improvements. Security Design Review, Change Impact Assessment & ST&V Security Impact Triage Tool (SITT): lead or support evaluation and impact assessment of proposed changes to security posture; provide clear recommendations, conditions, and required evidence for approval. Security Evaluation, Testing and Assurance (ST&V): plan and execute security evaluation and assurance activities for changes delivered through PI Planning; define test scope, coordinate evidence capture, and ensure outcomes are documented and traceable. Stakeholder Engagement, Governance & Decision Support Security Working Group (SWG) Customer/Supplier Security Forums Vulnerability Triage Security Workshop PI Planning Daily Standups (Blue/Green Team) Documentation, Mentoring & Continuous Improvement Senior Cyber Security Engineers are responsible for creating, maintaining, and reviewing high-quality documentation and security evidence. This includes High Level & Low Level Designs (HLD/LLD), Standard Operating Procedures (SOPs), risk assessments, and compliance/assurance reports. You will also support capability uplift through mentoring, knowledge sharing, and identifying opportunities to automate and improve security processes. Essential Experience Proven experience in a senior cyber security engineering role, delivering security outcomes across complex IT environments (on prem and/or cloud). . click apply for full job details
11768AW £90k - 100k per year Information Security Manager Hybrid (3 days onsite) Are you an experienced Information Security professional looking for a role where you can genuinely influence an organisation's security strategy while remaining hands on with the latest technologies? We're working with a well established financial services organisation seeking an Information Security Manager to take ownership of its cyber security posture. This is an excellent opportunity for someone who enjoys balancing strategic security governance with technical delivery, while also supporting key networking initiatives. This is a 90% Information Security / 10% Network Engineering role, making it ideal for someone whose passion is cyber security but who is comfortable maintaining and supporting enterprise network infrastructure when required. Role responsibilities: Information Security (90%) Lead the organisation's information security strategy and technical security operations. Drive compliance with ISO 27001, NIST and CBEST frameworks. Review new infrastructure and cloud based services, ensuring they meet security standards. Conduct vulnerability management activities and coordinate external penetration testing. Work alongside outsourced SOC and security partners to investigate and respond to security incidents. Ensure comprehensive SIEM monitoring across the technology estate. Develop, implement and maintain information security policies, standards and procedures. Assess cyber risks and recommend appropriate mitigation strategies. Act as the internal security subject matter expert, engaging with stakeholders across the business. Networking (10%) Support the design and maintenance of secure LAN, WAN and VPN environments. Assist with Cisco networking infrastructure, firewalls and routing technologies. Contribute to disaster recovery planning, network resilience and high availability initiatives. Skills required: Enterprise firewall technologies including Cisco Firepower (ASA/FTD) and Palo Alto. Cisco networking technologies including Catalyst switching, Layer 2/3, OSPF and VPNs. Network security controls including Cisco ISE, TACACS, IPS and endpoint protection. Security monitoring and incident response within SIEM environments. Vulnerability management and penetration testing. Security governance aligned to ISO 27001, NIST and risk management frameworks. Developing security policies, conducting audits and managing security incidents. Desirable skills: Exposure to tools such as Rapid7, LogRhythm SIEM, Trellix and Symantec Endpoint Protection CCNP-level networking knowledge is highly desirable. Information Security Manager Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website
26/07/2026
Full time
11768AW £90k - 100k per year Information Security Manager Hybrid (3 days onsite) Are you an experienced Information Security professional looking for a role where you can genuinely influence an organisation's security strategy while remaining hands on with the latest technologies? We're working with a well established financial services organisation seeking an Information Security Manager to take ownership of its cyber security posture. This is an excellent opportunity for someone who enjoys balancing strategic security governance with technical delivery, while also supporting key networking initiatives. This is a 90% Information Security / 10% Network Engineering role, making it ideal for someone whose passion is cyber security but who is comfortable maintaining and supporting enterprise network infrastructure when required. Role responsibilities: Information Security (90%) Lead the organisation's information security strategy and technical security operations. Drive compliance with ISO 27001, NIST and CBEST frameworks. Review new infrastructure and cloud based services, ensuring they meet security standards. Conduct vulnerability management activities and coordinate external penetration testing. Work alongside outsourced SOC and security partners to investigate and respond to security incidents. Ensure comprehensive SIEM monitoring across the technology estate. Develop, implement and maintain information security policies, standards and procedures. Assess cyber risks and recommend appropriate mitigation strategies. Act as the internal security subject matter expert, engaging with stakeholders across the business. Networking (10%) Support the design and maintenance of secure LAN, WAN and VPN environments. Assist with Cisco networking infrastructure, firewalls and routing technologies. Contribute to disaster recovery planning, network resilience and high availability initiatives. Skills required: Enterprise firewall technologies including Cisco Firepower (ASA/FTD) and Palo Alto. Cisco networking technologies including Catalyst switching, Layer 2/3, OSPF and VPNs. Network security controls including Cisco ISE, TACACS, IPS and endpoint protection. Security monitoring and incident response within SIEM environments. Vulnerability management and penetration testing. Security governance aligned to ISO 27001, NIST and risk management frameworks. Developing security policies, conducting audits and managing security incidents. Desirable skills: Exposure to tools such as Rapid7, LogRhythm SIEM, Trellix and Symantec Endpoint Protection CCNP-level networking knowledge is highly desirable. Information Security Manager Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website
External Description Work with and lead talented people to achieve wonderful things at Liberty IT; for this is whereyou'llfind complex challenges, whereyou'llbe given the scope and the support to go further, dig deeper and fly higher. You'llbring theexpertise.We'llprovide the support and autonomy. Sound good? Whoyou'llbe working with: Join as a Principal Software Engineer to work on devising and scaling innovation to enable program management across Liberty mutual including creating new experiences for AIusage.Youwill alsohave the opportunity tosolve some of the biggest strategic questions in technology for our leaders using data to unlock the answers. Experience and skills we need: A minimum of five years, software development experience in a commercial environment. Experience in providing technical leadership to software engineers in the delivery of a feature set or enhancements of enterprise scale. Experiencein working with Typescript, Node and React In-depth knowledge and experience in agile software delivery and of DevOps as part of the SDLC. Experience in partnering closely with Product Owners and customer stakeholders to deliver software solutions. Extensive coaching and mentoring experience, including implementing engineering excellence best practises. Experience inidentifyingand implementing continuous improvement initiatives in the SDLC. Experience in technical communication with peers and non-technical stakeholders. Knowledge of and exposure to the Well-Architected Framework. Experience and skillswe'dlove: We'veincluded some further skills and experience that would be great. However,don'trule yourself out if youhaven'thad the opportunity to develop these yet, we have a learning culture at Liberty IT so we will support your career growth with us. Backend-TypeScript,Node,HonoandPostgresSQL Frontend-Typescript,React,Vite,TailwindCSSandLMDS Experience in working with the followingtechnologies:Cloudforge, Generative AI, Embedding / Semantic search Knowledge of and exposure to coaching frameworks Whatyou'llbe doing: Lead an agile team of Software Engineers to achieve their goals, and, with support from the Leadership and Support team, define the team's path to get there. Coach and mentor team members utilising suitable coaching framework/s. Be part of a team who are working to solve complex business problems by delivering high-quality software that provides an outstanding experience for our customers. Own complex use cases or tasks. Design and code solutions working with the most suitable programming language, technologies,toolsand frameworks. Contribute to the overall architecture through designing,documentingand implementing high quality, secure solutions and enhancements that satisfy the customers problems or requirements. Facilitate engineering excellence across the team through coaching and mentoring on best practices,definingand implementing team coding and testing standards, and creating accountability among all team members in relation to security and testing practices. Overviews the technical delivery roadmap and proactivelyidentifyingblockers or challenges to successful delivery in processes, tooling, deployment pipelines, or similar. Works with the team to resolve identified challenges. Regularly partner with the Product Owners to own backlog prioritisation, set deliverygoalsand manage dependencies across stakeholders,customersand integration partners. Promote a product focused mindset with your team and stakeholders. Encourage team wide experimentation with new practices or technology. Introduce suitable new practises or technologies to ensure your team deliver the best possible solution in line with your customer's needs and requiredtimeframe. Grow your knowledge of architecture and design best practices. Supported by the leaders across Liberty IT, seek opportunities to share and celebrate what you and your team have achieved through internal tech talks, blogging and external What's on offer Feel safe and secure whatever life brings, with health insurance (including access to a digital doctor), life assurance and income protection. Enjoy both today and tomorrow with employee discount schemes, annual bonuses and a competitive pension. Protect your wellbeing with flexible working and a real work-life balance. Grow yourself, your career and reputation through continuous learning, promotion opportunities and our generous recognition programme. About Us A little background on LIT Liberty IT is the tech wing of Liberty Mutual Insurance. Bringing peace of mind to all aspects of customer's lives, every day. We're an ideas company. Always. We thrive on engineering excellence and surpass with technical mastery. We build beautifully architected cloud solutions and reliably run high stability systems. We work alongside the best in the business and learn from the finest minds. Great Place to Work in UK & Ireland 2025 Best Workplaces for Women (UK) 2025 Top 5 Best Tech Workplace Centre of Excellence in Wellbeing Fair employment and equal opportunities Liberty IT is an equal opportunity employer, committed to inclusion and diversity. If you have a disability, accommodations are available on request when taking part in all aspects of the recruitment, assessment, and selection process. Now, it's over to you.
26/07/2026
Full time
External Description Work with and lead talented people to achieve wonderful things at Liberty IT; for this is whereyou'llfind complex challenges, whereyou'llbe given the scope and the support to go further, dig deeper and fly higher. You'llbring theexpertise.We'llprovide the support and autonomy. Sound good? Whoyou'llbe working with: Join as a Principal Software Engineer to work on devising and scaling innovation to enable program management across Liberty mutual including creating new experiences for AIusage.Youwill alsohave the opportunity tosolve some of the biggest strategic questions in technology for our leaders using data to unlock the answers. Experience and skills we need: A minimum of five years, software development experience in a commercial environment. Experience in providing technical leadership to software engineers in the delivery of a feature set or enhancements of enterprise scale. Experiencein working with Typescript, Node and React In-depth knowledge and experience in agile software delivery and of DevOps as part of the SDLC. Experience in partnering closely with Product Owners and customer stakeholders to deliver software solutions. Extensive coaching and mentoring experience, including implementing engineering excellence best practises. Experience inidentifyingand implementing continuous improvement initiatives in the SDLC. Experience in technical communication with peers and non-technical stakeholders. Knowledge of and exposure to the Well-Architected Framework. Experience and skillswe'dlove: We'veincluded some further skills and experience that would be great. However,don'trule yourself out if youhaven'thad the opportunity to develop these yet, we have a learning culture at Liberty IT so we will support your career growth with us. Backend-TypeScript,Node,HonoandPostgresSQL Frontend-Typescript,React,Vite,TailwindCSSandLMDS Experience in working with the followingtechnologies:Cloudforge, Generative AI, Embedding / Semantic search Knowledge of and exposure to coaching frameworks Whatyou'llbe doing: Lead an agile team of Software Engineers to achieve their goals, and, with support from the Leadership and Support team, define the team's path to get there. Coach and mentor team members utilising suitable coaching framework/s. Be part of a team who are working to solve complex business problems by delivering high-quality software that provides an outstanding experience for our customers. Own complex use cases or tasks. Design and code solutions working with the most suitable programming language, technologies,toolsand frameworks. Contribute to the overall architecture through designing,documentingand implementing high quality, secure solutions and enhancements that satisfy the customers problems or requirements. Facilitate engineering excellence across the team through coaching and mentoring on best practices,definingand implementing team coding and testing standards, and creating accountability among all team members in relation to security and testing practices. Overviews the technical delivery roadmap and proactivelyidentifyingblockers or challenges to successful delivery in processes, tooling, deployment pipelines, or similar. Works with the team to resolve identified challenges. Regularly partner with the Product Owners to own backlog prioritisation, set deliverygoalsand manage dependencies across stakeholders,customersand integration partners. Promote a product focused mindset with your team and stakeholders. Encourage team wide experimentation with new practices or technology. Introduce suitable new practises or technologies to ensure your team deliver the best possible solution in line with your customer's needs and requiredtimeframe. Grow your knowledge of architecture and design best practices. Supported by the leaders across Liberty IT, seek opportunities to share and celebrate what you and your team have achieved through internal tech talks, blogging and external What's on offer Feel safe and secure whatever life brings, with health insurance (including access to a digital doctor), life assurance and income protection. Enjoy both today and tomorrow with employee discount schemes, annual bonuses and a competitive pension. Protect your wellbeing with flexible working and a real work-life balance. Grow yourself, your career and reputation through continuous learning, promotion opportunities and our generous recognition programme. About Us A little background on LIT Liberty IT is the tech wing of Liberty Mutual Insurance. Bringing peace of mind to all aspects of customer's lives, every day. We're an ideas company. Always. We thrive on engineering excellence and surpass with technical mastery. We build beautifully architected cloud solutions and reliably run high stability systems. We work alongside the best in the business and learn from the finest minds. Great Place to Work in UK & Ireland 2025 Best Workplaces for Women (UK) 2025 Top 5 Best Tech Workplace Centre of Excellence in Wellbeing Fair employment and equal opportunities Liberty IT is an equal opportunity employer, committed to inclusion and diversity. If you have a disability, accommodations are available on request when taking part in all aspects of the recruitment, assessment, and selection process. Now, it's over to you.
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all round individual with expert knowledge and hands on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands on expertise in IT Infrastructure combined with Security and Risk - ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
26/07/2026
Full time
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all round individual with expert knowledge and hands on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands on expertise in IT Infrastructure combined with Security and Risk - ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a 'buy before build' environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years. Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget ). Key - 3rd party operational infrastructure vendor management - i.e management of managed service partners. Migration of Legacy VM based estates to SaaS and Cloud services platforms. Legacy tech to Azure knowledge/experience. Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
26/07/2026
Full time
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a 'buy before build' environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years. Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget ). Key - 3rd party operational infrastructure vendor management - i.e management of managed service partners. Migration of Legacy VM based estates to SaaS and Cloud services platforms. Legacy tech to Azure knowledge/experience. Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Security Architect (ZTA) DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone. Location: Farnborough (onsite 5 days per week) Security Clearance: Candidates are required to hold DV clearance due to the secure nature of the work and customer requirements. Key Responsibilities Security Strategy & Architecture Design - Design holistic security architectures incorporating people, process, and technology. Develop enterprise-wide security strategies aligned with MOD Classification Guides and Defence Security Policy. Architect defence in depth security solutions across network, application, data, and endpoint layers. Lead security architecture reviews and technical security assessments. Design zero trust security models and continuous verification frameworks. Cyber Threat & Risk Management - Assess cyber threat landscape and design threat informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence, and cyber defence capabilities. Architect security monitoring, detection, and response solutions. Design business continuity and cyber resilience frameworks. Compliance & Standards Implementation - Ensure security architectures comply with MOD security requirements and ITAR regulations. Design security solutions supporting ISMS compliance. Architect compliance and audit capabilities for regulatory reporting. Lead security standards implementation and controls frameworks. Security Solutions & Integration - Architect endpoint protection, data loss prevention (DLP), and advanced threat protection solutions. Design cloud security architectures supporting hybrid and multi cloud environments. Architect application security, API security, and secure SDLC integration. Design SOC capabilities and SIEM. Lead security technology evaluation and implementation programmes. Technical Leadership & Governance - Lead security technical teams and provide architectural mentoring. Establish security design standards, architecture patterns, and operational governance. Drive technical decision making through security design reviews. Document security architecture decisions and design specifications. Customer & Stakeholder Engagement - Serve as technical authority for security architecture discussions with customer leadership. Present security recommendations to defence programme teams and executive stakeholders. Lead security architecture workshops and customer engagement activities. What You'll Bring Previous background in information security within an architectural role. Proven experience designing enterprise scale security architectures. Strong background in defence, aerospace, or government security programmes. Demonstrated expertise with security operations, incident response, and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies, and best practices. Expert level knowledge of network security, endpoint security, and application security. Strong understanding of threat models, attack vectors, and defence in depth strategies. Proficiency in cloud security (AWS, Azure, or equivalent). Knowledge of security tools (SIEM, DLP, EDR, WAF, firewalls, etc.). Understanding of cryptography, encryption, and security protocols. Familiarity with MOD security requirements, Classification Guides, and defence standards. Knowledge of compliance frameworks (ISO27001, NISTCSF, etc.). Personal Attributes Exceptional strategic thinking combined with strong technical depth. Outstanding communication and stakeholder engagement skills. Strong problem solving and analytical capabilities. Proven ability to lead technical teams and influence executive stakeholders. Passion for security excellence and continuous improvement.
24/07/2026
Full time
Security Architect (ZTA) DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone. Location: Farnborough (onsite 5 days per week) Security Clearance: Candidates are required to hold DV clearance due to the secure nature of the work and customer requirements. Key Responsibilities Security Strategy & Architecture Design - Design holistic security architectures incorporating people, process, and technology. Develop enterprise-wide security strategies aligned with MOD Classification Guides and Defence Security Policy. Architect defence in depth security solutions across network, application, data, and endpoint layers. Lead security architecture reviews and technical security assessments. Design zero trust security models and continuous verification frameworks. Cyber Threat & Risk Management - Assess cyber threat landscape and design threat informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence, and cyber defence capabilities. Architect security monitoring, detection, and response solutions. Design business continuity and cyber resilience frameworks. Compliance & Standards Implementation - Ensure security architectures comply with MOD security requirements and ITAR regulations. Design security solutions supporting ISMS compliance. Architect compliance and audit capabilities for regulatory reporting. Lead security standards implementation and controls frameworks. Security Solutions & Integration - Architect endpoint protection, data loss prevention (DLP), and advanced threat protection solutions. Design cloud security architectures supporting hybrid and multi cloud environments. Architect application security, API security, and secure SDLC integration. Design SOC capabilities and SIEM. Lead security technology evaluation and implementation programmes. Technical Leadership & Governance - Lead security technical teams and provide architectural mentoring. Establish security design standards, architecture patterns, and operational governance. Drive technical decision making through security design reviews. Document security architecture decisions and design specifications. Customer & Stakeholder Engagement - Serve as technical authority for security architecture discussions with customer leadership. Present security recommendations to defence programme teams and executive stakeholders. Lead security architecture workshops and customer engagement activities. What You'll Bring Previous background in information security within an architectural role. Proven experience designing enterprise scale security architectures. Strong background in defence, aerospace, or government security programmes. Demonstrated expertise with security operations, incident response, and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies, and best practices. Expert level knowledge of network security, endpoint security, and application security. Strong understanding of threat models, attack vectors, and defence in depth strategies. Proficiency in cloud security (AWS, Azure, or equivalent). Knowledge of security tools (SIEM, DLP, EDR, WAF, firewalls, etc.). Understanding of cryptography, encryption, and security protocols. Familiarity with MOD security requirements, Classification Guides, and defence standards. Knowledge of compliance frameworks (ISO27001, NISTCSF, etc.). Personal Attributes Exceptional strategic thinking combined with strong technical depth. Outstanding communication and stakeholder engagement skills. Strong problem solving and analytical capabilities. Proven ability to lead technical teams and influence executive stakeholders. Passion for security excellence and continuous improvement.
The Role We are looking for an IT & Information Security Manager to take ownership of our IT systems, infrastructure and security. You'll manage our Microsoft 365 environment, devices and IT support for a hybrid workforce, while helping to modernize our technology through cloud migration and improved monitoring. You'll also lead our ISO 27001 and Cyber Essentials certifications, manage security policies and audits, oversee business continuity, and work with colleagues across the business to maintain a secure, reliable and compliant IT environment. This role has real autonomy, and it'll suit someone who wants to build something they're proud of rather than simply clock in and out. You'll be based in or near Birmingham, working hybrid with office visits as needed for hardware and infrastructure work. You'll have genuine autonomy and the space to shape how we do security and IT as the business grows including developing our ISMS into something you're proud of. Team culture is at the heart of what we do, so we're looking for someone who brings a positive, collaborative attitude. We value a supportive and ego free environment, where everyone can share ideas and grow together. If you're excited to be part of a team that builds each other up and tackles challenges together, we'd love to meet you! What you'll be doing IT & infrastructure Own office infrastructure and all staff hardware end to end procurement, setup, asset lifecycle, joiner/leaver provisioning, and day to day fixes for the Birmingham office. Own identity, access and endpoint management company wide across our Windows estate Entra ID, Microsoft 365, and Intune with most staff hybrid or fully remote, so remote provisioning and support is central to this role, not an edge case. Experience with Mac management would be a bonus. Own the relationship with our outsourced IT support provider performance, SLAs, escalations and renewals and act as the senior escalation point for IT. Help drive our ongoing move from remaining on premise infrastructure to cloud, and support the decommissioning that follows. Strengthen monitoring, logging and alerting so we can spot and investigate anomalies early. Contribute to IT planning and budgeting, and report on our security and IT posture to leadership as needed. Information security & compliance Take ownership of our ISO 27001 certified ISMS, carry it through its surveillance audits, and lead its continued development so it's genuinely embedded in how we work day to day, not just on paper. Keep certifications such as Cyber Essentials (and Cyber Essentials Plus) in good standing. Lead responses to client security questionnaires, audits and due diligence requests, a regular and important part of the role, particularly for our public sector and regulated financial services clients. Develop, maintain and enforce security policies, standards and procedures, and drive awareness of them across the business, including annual staff security training. Ensure compliance with data protection obligations (UK GDPR / DPA), working alongside our DPO trained and compliance colleagues you are not the sole owner of data protection here, but need to be conversant enough to run day to day queries and elevate appropriately. Run vendor and third party risk assessments, and keep our supplier risk posture under review. Own disaster recovery and business continuity planning, including periodic testing. Respond to security incidents, run root cause analysis, and feed lessons back into our controls. What you'll bring 5+ years in IT management, information security, or a closely related role, with genuine breadth across both security/compliance and hands on IT infrastructure - this is a hybrid role and we need someone who won't neglect one side in favour of the other. Essential: Proven, hands on experience taking an organisation through ISO 27001 certification or a substantial ISMS rebuild - not just maintaining a system someone else built. You'll be our sole owner of this, so you need to operate independently from day one. Familiarity with frameworks like NIST or CIS Controls is a plus. Experience responding to client security questionnaires and supporting audits and certifications. Solid working knowledge of enterprise identity and Windows endpoint tooling Entra ID/Okta, Microsoft 365, and Intune. Experience managing an outsourced IT provider / MSP, including holding them to SLAs. Vendor and third party risk assessment experience. Working knowledge of UK GDPR / Data Protection Act obligations you'll have support here, but need to be conversant, not a specialist. The ability to translate technical risk into clear, practical terms for non technical stakeholders. A recognised security or ISMS certification (e.g. ISO 27001 Lead Implementer/Auditor, CISM, Security+, CySA+, or equivalent). A proactive, ownership driven mindset comfortable being the go to security and IT person in a small, cross functional team, and comfortable with the unglamorous parts of the job (hardware, cabling, the office printer) as well as the strategic parts. Nice to have Awareness of cloud infrastructure environments (we are mid migration off on premise servers). Experience administering hosted VoIP / phone systems. Who we're looking for Most of all, we're looking for someone who genuinely loves this stuff. Technology and security are what you'd probably be tinkering with anyway - and you're the kind of person people are glad to have around, whether that's talking a nervous colleague through a problem or getting stuck in as part of the team. Curious by nature: you're the sort who follows where technology and security are heading and enjoys going down the odd rabbit hole, and that enthusiasm shows in your work. People friendly: approachable, patient and easy to deal with; you can explain a tricky issue to a non technical colleague without making them feel silly, and people trust you to help. A natural owner: you take initiative, follow things through, and care about doing them properly, so the ISMS becomes something genuinely lived rather than a box ticking exercise. Analytical and clear: you get to the root of a problem quickly, weigh risk sensibly, and can set it out plainly in a report, policy or audit response. Broad and hands on: comfortable across security, compliance and infrastructure, and just as happy with the strategic thinking as with the unglamorous fixes. Honest and dependable: integrity is essential to everyone at NetWatch, and especially in a role trusted with our systems, data and security. First 90 days will likely include: Getting up to speed on the ISMS and running a gap assessment ahead of the next surveillance audit. Reviewing our outsourced IT support arrangements and how we work with our provider. A review of Microsoft 365 licensing and device inventory. Benefits Package Remote working / hybrid On site gym Employee benefits and wellbeing program 24 days leave plus bank holidays, with a flexible holiday policy Buy and sell leave scheme Length of service rewards Company pension scheme Training and development opportunities Regular team social events and clubs Cycle to work scheme Casual dress code How to Apply Submit your CV and a covering letter via the "Apply now" icon below. Covering letters should detail your interest in our company, your passion for development, and why you'd be a great fit for this role. If successful, the hiring process is as follows: Accessibility Statement NetWatch Global is committed to creating an inclusive and accessible environment for all. If you require any accommodations during the application process, please call and ask for HR. More Than a Job. A Mission. Our work helps prevent fraud, speeds up justice, and makes investigations smarter. We hire exceptional people, give them world class tools and training, and trust them to deliver. Why work with us? Innovative - Always exploring new ways to improve investigations. Capable - Skilled professionals equipped with cutting edge tools. Trusted - Over a decade of partnership with global brands and policing. Human - Approachable, supportive, and easy to work with.
24/07/2026
Full time
The Role We are looking for an IT & Information Security Manager to take ownership of our IT systems, infrastructure and security. You'll manage our Microsoft 365 environment, devices and IT support for a hybrid workforce, while helping to modernize our technology through cloud migration and improved monitoring. You'll also lead our ISO 27001 and Cyber Essentials certifications, manage security policies and audits, oversee business continuity, and work with colleagues across the business to maintain a secure, reliable and compliant IT environment. This role has real autonomy, and it'll suit someone who wants to build something they're proud of rather than simply clock in and out. You'll be based in or near Birmingham, working hybrid with office visits as needed for hardware and infrastructure work. You'll have genuine autonomy and the space to shape how we do security and IT as the business grows including developing our ISMS into something you're proud of. Team culture is at the heart of what we do, so we're looking for someone who brings a positive, collaborative attitude. We value a supportive and ego free environment, where everyone can share ideas and grow together. If you're excited to be part of a team that builds each other up and tackles challenges together, we'd love to meet you! What you'll be doing IT & infrastructure Own office infrastructure and all staff hardware end to end procurement, setup, asset lifecycle, joiner/leaver provisioning, and day to day fixes for the Birmingham office. Own identity, access and endpoint management company wide across our Windows estate Entra ID, Microsoft 365, and Intune with most staff hybrid or fully remote, so remote provisioning and support is central to this role, not an edge case. Experience with Mac management would be a bonus. Own the relationship with our outsourced IT support provider performance, SLAs, escalations and renewals and act as the senior escalation point for IT. Help drive our ongoing move from remaining on premise infrastructure to cloud, and support the decommissioning that follows. Strengthen monitoring, logging and alerting so we can spot and investigate anomalies early. Contribute to IT planning and budgeting, and report on our security and IT posture to leadership as needed. Information security & compliance Take ownership of our ISO 27001 certified ISMS, carry it through its surveillance audits, and lead its continued development so it's genuinely embedded in how we work day to day, not just on paper. Keep certifications such as Cyber Essentials (and Cyber Essentials Plus) in good standing. Lead responses to client security questionnaires, audits and due diligence requests, a regular and important part of the role, particularly for our public sector and regulated financial services clients. Develop, maintain and enforce security policies, standards and procedures, and drive awareness of them across the business, including annual staff security training. Ensure compliance with data protection obligations (UK GDPR / DPA), working alongside our DPO trained and compliance colleagues you are not the sole owner of data protection here, but need to be conversant enough to run day to day queries and elevate appropriately. Run vendor and third party risk assessments, and keep our supplier risk posture under review. Own disaster recovery and business continuity planning, including periodic testing. Respond to security incidents, run root cause analysis, and feed lessons back into our controls. What you'll bring 5+ years in IT management, information security, or a closely related role, with genuine breadth across both security/compliance and hands on IT infrastructure - this is a hybrid role and we need someone who won't neglect one side in favour of the other. Essential: Proven, hands on experience taking an organisation through ISO 27001 certification or a substantial ISMS rebuild - not just maintaining a system someone else built. You'll be our sole owner of this, so you need to operate independently from day one. Familiarity with frameworks like NIST or CIS Controls is a plus. Experience responding to client security questionnaires and supporting audits and certifications. Solid working knowledge of enterprise identity and Windows endpoint tooling Entra ID/Okta, Microsoft 365, and Intune. Experience managing an outsourced IT provider / MSP, including holding them to SLAs. Vendor and third party risk assessment experience. Working knowledge of UK GDPR / Data Protection Act obligations you'll have support here, but need to be conversant, not a specialist. The ability to translate technical risk into clear, practical terms for non technical stakeholders. A recognised security or ISMS certification (e.g. ISO 27001 Lead Implementer/Auditor, CISM, Security+, CySA+, or equivalent). A proactive, ownership driven mindset comfortable being the go to security and IT person in a small, cross functional team, and comfortable with the unglamorous parts of the job (hardware, cabling, the office printer) as well as the strategic parts. Nice to have Awareness of cloud infrastructure environments (we are mid migration off on premise servers). Experience administering hosted VoIP / phone systems. Who we're looking for Most of all, we're looking for someone who genuinely loves this stuff. Technology and security are what you'd probably be tinkering with anyway - and you're the kind of person people are glad to have around, whether that's talking a nervous colleague through a problem or getting stuck in as part of the team. Curious by nature: you're the sort who follows where technology and security are heading and enjoys going down the odd rabbit hole, and that enthusiasm shows in your work. People friendly: approachable, patient and easy to deal with; you can explain a tricky issue to a non technical colleague without making them feel silly, and people trust you to help. A natural owner: you take initiative, follow things through, and care about doing them properly, so the ISMS becomes something genuinely lived rather than a box ticking exercise. Analytical and clear: you get to the root of a problem quickly, weigh risk sensibly, and can set it out plainly in a report, policy or audit response. Broad and hands on: comfortable across security, compliance and infrastructure, and just as happy with the strategic thinking as with the unglamorous fixes. Honest and dependable: integrity is essential to everyone at NetWatch, and especially in a role trusted with our systems, data and security. First 90 days will likely include: Getting up to speed on the ISMS and running a gap assessment ahead of the next surveillance audit. Reviewing our outsourced IT support arrangements and how we work with our provider. A review of Microsoft 365 licensing and device inventory. Benefits Package Remote working / hybrid On site gym Employee benefits and wellbeing program 24 days leave plus bank holidays, with a flexible holiday policy Buy and sell leave scheme Length of service rewards Company pension scheme Training and development opportunities Regular team social events and clubs Cycle to work scheme Casual dress code How to Apply Submit your CV and a covering letter via the "Apply now" icon below. Covering letters should detail your interest in our company, your passion for development, and why you'd be a great fit for this role. If successful, the hiring process is as follows: Accessibility Statement NetWatch Global is committed to creating an inclusive and accessible environment for all. If you require any accommodations during the application process, please call and ask for HR. More Than a Job. A Mission. Our work helps prevent fraud, speeds up justice, and makes investigations smarter. We hire exceptional people, give them world class tools and training, and trust them to deliver. Why work with us? Innovative - Always exploring new ways to improve investigations. Capable - Skilled professionals equipped with cutting edge tools. Trusted - Over a decade of partnership with global brands and policing. Human - Approachable, supportive, and easy to work with.
Job Description: DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone. Security Architect (ZTA) Location: Farnborough (onsite 5 days per week) Security Clearance: Due to the secure nature of the work and our customer requirement, candidate are required to hold DV clearance The Security Architect designs and implements comprehensive security architectures protecting defence and aerospace IT environments. You will develop enterprise security strategies, lead security programme implementations, architect integrated defence in depth solutions, and ensure compliance with stringent MOD security requirements. This role demands exceptional expertise in security architecture, risk management and defence security standards. Key Responsibilities Security Strategy & Architecture Design holistic security architectures incorporating people, process and technology security. Develop enterprise-wide security strategies aligned with MOD Classification Guides and Defence Security Policy. Architect defence in depth security solutions across network, application, data and endpoint layers. Lead security architecture reviews and technical security assessments. Design zero trust security models and continuous verification frameworks. Cyber Threat & Risk Management Assess cyber threat landscape and design threat informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence and cyber defence capabilities. Architect security monitoring, detection and response solutions. Design business continuity and cyber resilience frameworks. Compliance & Standards Implementation Ensure security architectures comply with MOD security requirements and ITAR regulations. Design security solutions supporting Information Security Management System (ISMS) compliance. Architect compliance and audit capabilities for regulatory reporting. Lead security standards implementation and controls frameworks. Security Solutions & Integration Architect endpoint protection, data loss prevention (DLP) and advanced threat protection solutions. Design cloud security architectures supporting hybrid and multi cloud environments. Architect application security, API security and secure SDLC integration. Design security operations centre (SOC) capabilities and security information and event management (SIEM). Lead security technology evaluation and implementation programmes. Technical Leadership & Governance Lead security technical teams and provide architectural mentoring. Establish security design standards, architecture patterns and operational governance. Drive technical decision making through security design reviews. Document security architecture decisions and design specifications. Customer & Stakeholder Engagement Serve as technical authority for security architecture discussions with customer leadership. Present security recommendations to defence programme teams and executive stakeholders. Lead security architecture workshops and customer engagement activities What You'll Bring Previous background in information security within a architectural role. Proven experience designing enterprise scale security architectures. Strong background in defence, aerospace or government security programmes. Demonstrated expertise with security operations, incident response and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies and best practices. Expert level knowledge of network security, endpoint security and application security. Strong understanding of threat models, attack vectors and defence in depth strategies. Proficiency in cloud security (AWS, Azure security, or equivalent). Knowledge of security tools (SIEM, DLP, EDR, WAF, firewalls, etc.). Understanding of cryptography, encryption and security protocols. Familiarity with MOD security requirements, Classification Guides and defence standards. Knowledge of compliance frameworks (ISO 27001, NIST CSF, etc.). Personal Attributes Exceptional strategic thinking combined with strong technical depth. Outstanding communication and stakeholder engagement skills. Strong problem solving and analytical capabilities. Proven ability to lead technical teams and influence executive stakeholders. Passion for security excellence and continuous improvement. At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritises in person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We're committed to fostering an inclusive environment where everyone can thrive.
24/07/2026
Full time
Job Description: DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone. Security Architect (ZTA) Location: Farnborough (onsite 5 days per week) Security Clearance: Due to the secure nature of the work and our customer requirement, candidate are required to hold DV clearance The Security Architect designs and implements comprehensive security architectures protecting defence and aerospace IT environments. You will develop enterprise security strategies, lead security programme implementations, architect integrated defence in depth solutions, and ensure compliance with stringent MOD security requirements. This role demands exceptional expertise in security architecture, risk management and defence security standards. Key Responsibilities Security Strategy & Architecture Design holistic security architectures incorporating people, process and technology security. Develop enterprise-wide security strategies aligned with MOD Classification Guides and Defence Security Policy. Architect defence in depth security solutions across network, application, data and endpoint layers. Lead security architecture reviews and technical security assessments. Design zero trust security models and continuous verification frameworks. Cyber Threat & Risk Management Assess cyber threat landscape and design threat informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence and cyber defence capabilities. Architect security monitoring, detection and response solutions. Design business continuity and cyber resilience frameworks. Compliance & Standards Implementation Ensure security architectures comply with MOD security requirements and ITAR regulations. Design security solutions supporting Information Security Management System (ISMS) compliance. Architect compliance and audit capabilities for regulatory reporting. Lead security standards implementation and controls frameworks. Security Solutions & Integration Architect endpoint protection, data loss prevention (DLP) and advanced threat protection solutions. Design cloud security architectures supporting hybrid and multi cloud environments. Architect application security, API security and secure SDLC integration. Design security operations centre (SOC) capabilities and security information and event management (SIEM). Lead security technology evaluation and implementation programmes. Technical Leadership & Governance Lead security technical teams and provide architectural mentoring. Establish security design standards, architecture patterns and operational governance. Drive technical decision making through security design reviews. Document security architecture decisions and design specifications. Customer & Stakeholder Engagement Serve as technical authority for security architecture discussions with customer leadership. Present security recommendations to defence programme teams and executive stakeholders. Lead security architecture workshops and customer engagement activities What You'll Bring Previous background in information security within a architectural role. Proven experience designing enterprise scale security architectures. Strong background in defence, aerospace or government security programmes. Demonstrated expertise with security operations, incident response and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies and best practices. Expert level knowledge of network security, endpoint security and application security. Strong understanding of threat models, attack vectors and defence in depth strategies. Proficiency in cloud security (AWS, Azure security, or equivalent). Knowledge of security tools (SIEM, DLP, EDR, WAF, firewalls, etc.). Understanding of cryptography, encryption and security protocols. Familiarity with MOD security requirements, Classification Guides and defence standards. Knowledge of compliance frameworks (ISO 27001, NIST CSF, etc.). Personal Attributes Exceptional strategic thinking combined with strong technical depth. Outstanding communication and stakeholder engagement skills. Strong problem solving and analytical capabilities. Proven ability to lead technical teams and influence executive stakeholders. Passion for security excellence and continuous improvement. At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritises in person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We're committed to fostering an inclusive environment where everyone can thrive.
Infrastructure Engineer An established financial services organisation is looking to appoint a Senior IT Infrastructure Engineer to play a key role in maintaining and developing its enterprise technology estate. This position combines hands-on technical engineering with infrastructure ownership, supporting business-critical platforms used across the organisation. Working within a highly regulated environment, you'll be responsible for the reliability, security and ongoing enhancement of server infrastructure, virtualisation, networking, endpoint technologies and core business applications. You'll also contribute to infrastructure projects, mentor colleagues and help shape future technology improvements. What You'll Be Doing As a senior member of the infrastructure team, you'll take ownership of day-to-day operations across the organisation's core technology platforms while supporting wider transformation initiatives. Your responsibilities will include: Managing Windows Server and Linux environments to ensure high availability and operational stability. Supporting and optimising VMware virtual infrastructure across production environments. Maintaining enterprise backup, recovery and disaster recovery capabilities using industry-leading technologies. Monitoring infrastructure performance and proactively resolving capacity, availability and resilience issues. Administering Microsoft 365 services and supporting hybrid infrastructure technologies. Managing Active Directory, Group Policy, identity administration and user access management. Supporting desktop operating systems, laptops, mobile devices and collaboration technologies across multiple office locations. Maintaining endpoint security controls, encryption technologies and vulnerability remediation processes. Working closely with cyber security teams to strengthen infrastructure security and reduce operational risk. Supporting enterprise patch management and software deployment across server and desktop environments. Troubleshooting complex infrastructure, networking and systems issues while acting as a senior technical escalation point. Contributing to infrastructure upgrades, technology refresh programmes and strategic improvement projects. Producing technical documentation, operational procedures and infrastructure standards. Working alongside third-party suppliers and internal stakeholders to deliver stable, secure technology services. Enterprise Systems The environment includes a range of specialist financial platforms supporting treasury operations, payments, market data, secure financial messaging, compliance and business operations. Previous experience supporting financial services applications within regulated organisations would be highly advantageous. Networking & Security You'll provide administration and support across the organisation's network and security estate, including: Enterprise switching and routing Firewall administration DNS, DHCP and TCP/IP services Secure remote connectivity Network monitoring and performance optimisation Endpoint protection technologies Vulnerability management Security monitoring platforms Certificate and encryption management Technical Environment You'll have strong experience across most of the following technologies: Infrastructure Windows Server Red Hat Enterprise Linux VMware vSphere / vCenter Microsoft 365 SQL Server Enterprise virtualisation Hybrid infrastructure Backup & Recovery Veeam Backup & Replication Disaster Recovery Infrastructure monitoring Networking Cisco networking Fortinet firewalls LAN/WAN Routing & Switching DNS DHCP Security Endpoint Detection & Response (EDR) Endpoint Encryption Data Loss Prevention SIEM solutions Vulnerability Management SSL Certificate Management Hardware Enterprise Dell server platforms SAN storage technologies About You We're looking for an experienced infrastructure professional who enjoys taking ownership of complex enterprise environments and delivering reliable technology services. You'll ideally have: Five or more years' experience supporting enterprise infrastructure. A background within banking, financial services or another highly regulated sector. Strong troubleshooting and problem-solving skills. Experience working within virtualised server environments. A broad understanding of infrastructure security principles.
24/07/2026
Contractor
Infrastructure Engineer An established financial services organisation is looking to appoint a Senior IT Infrastructure Engineer to play a key role in maintaining and developing its enterprise technology estate. This position combines hands-on technical engineering with infrastructure ownership, supporting business-critical platforms used across the organisation. Working within a highly regulated environment, you'll be responsible for the reliability, security and ongoing enhancement of server infrastructure, virtualisation, networking, endpoint technologies and core business applications. You'll also contribute to infrastructure projects, mentor colleagues and help shape future technology improvements. What You'll Be Doing As a senior member of the infrastructure team, you'll take ownership of day-to-day operations across the organisation's core technology platforms while supporting wider transformation initiatives. Your responsibilities will include: Managing Windows Server and Linux environments to ensure high availability and operational stability. Supporting and optimising VMware virtual infrastructure across production environments. Maintaining enterprise backup, recovery and disaster recovery capabilities using industry-leading technologies. Monitoring infrastructure performance and proactively resolving capacity, availability and resilience issues. Administering Microsoft 365 services and supporting hybrid infrastructure technologies. Managing Active Directory, Group Policy, identity administration and user access management. Supporting desktop operating systems, laptops, mobile devices and collaboration technologies across multiple office locations. Maintaining endpoint security controls, encryption technologies and vulnerability remediation processes. Working closely with cyber security teams to strengthen infrastructure security and reduce operational risk. Supporting enterprise patch management and software deployment across server and desktop environments. Troubleshooting complex infrastructure, networking and systems issues while acting as a senior technical escalation point. Contributing to infrastructure upgrades, technology refresh programmes and strategic improvement projects. Producing technical documentation, operational procedures and infrastructure standards. Working alongside third-party suppliers and internal stakeholders to deliver stable, secure technology services. Enterprise Systems The environment includes a range of specialist financial platforms supporting treasury operations, payments, market data, secure financial messaging, compliance and business operations. Previous experience supporting financial services applications within regulated organisations would be highly advantageous. Networking & Security You'll provide administration and support across the organisation's network and security estate, including: Enterprise switching and routing Firewall administration DNS, DHCP and TCP/IP services Secure remote connectivity Network monitoring and performance optimisation Endpoint protection technologies Vulnerability management Security monitoring platforms Certificate and encryption management Technical Environment You'll have strong experience across most of the following technologies: Infrastructure Windows Server Red Hat Enterprise Linux VMware vSphere / vCenter Microsoft 365 SQL Server Enterprise virtualisation Hybrid infrastructure Backup & Recovery Veeam Backup & Replication Disaster Recovery Infrastructure monitoring Networking Cisco networking Fortinet firewalls LAN/WAN Routing & Switching DNS DHCP Security Endpoint Detection & Response (EDR) Endpoint Encryption Data Loss Prevention SIEM solutions Vulnerability Management SSL Certificate Management Hardware Enterprise Dell server platforms SAN storage technologies About You We're looking for an experienced infrastructure professional who enjoys taking ownership of complex enterprise environments and delivering reliable technology services. You'll ideally have: Five or more years' experience supporting enterprise infrastructure. A background within banking, financial services or another highly regulated sector. Strong troubleshooting and problem-solving skills. Experience working within virtualised server environments. A broad understanding of infrastructure security principles.
# Vacancies Data Protection Officer & Compliance Manager Job Introduction The benefits Health and Wellbeing Plans23 days paid holiday increasing to 25 after 2 yearsDiscounts and CashbacksPaid Volunteering daysEmployee Assistance ProgramRefer a Friend SchemeCycle to Work SchemeBonus The role Carlisle Support Services is looking for a Data Protection Officer & Compliance Manager who will be responsible for leading the organisation's data protection, privacy, and compliance framework, ensuring compliance with UK GDPR, the Data Protection Act 2018, and other relevant regulatory obligations. Acting as the designated Data Protection Officer (DPO), the role provides expert advice and guidance across the business, drives a culture of compliance, manages data subject rights requests, and ensures robust governance processes are maintained. Your core role will include but not be limited to the following activities: Act as the formally appointed Data Protection Officer for Carlisle Support Services, ensuring all statutory responsibilities under UK GDPR and the Data Protection Act 2018 are effectively discharged. Serve as the primary point of contact for the Information Commissioner's Office (ICO) and other regulatory bodies on all privacy and data protection matters. Provide independent and expert advice to the Executive Team, senior management, and operational stakeholders on data protection obligations, privacy risks, and compliance requirements. Promote and embed a culture of data privacy, accountability, and responsible data handling throughout the organisation. Maintain oversight of the organisation's privacy governance framework and ensure data protection considerations are incorporated into strategic business decisions. Develop, implement, review, and maintain GDPR policies, standards, procedures, and guidance documents. Monitor legislative developments and regulatory guidance, assessing organisational impacts and implementing required changes. Maintain the Record of Processing Activities (ROPA). Lead and coordinate Data Protection Impact Assessments (DPIAs). Take full ownership and accountability for all Subject Access Requests and data subject rights requests. Manage SARs internally wherever possible and within statutory timescales. Provide guidance to managers responding to privacy-related enquiries. Identify opportunities to streamline SAR processes and reduce external support costs. Monitor compliance and adherence to GDPR requirements across the business. Identify areas of non-compliance and support corrective actions. Produce an annual GDPR and Data Protection Report outlining risks, incidents, trends and areas of concern. Develop and present an annual Data Protection Strategy and Improvement Plan for the following 12 months. Report compliance performance and emerging risks to senior leadership. Lead investigations into data protection incidents, complaints, breaches and near misses. Assess incidents against regulatory reporting thresholds. Coordinate root cause analysis and corrective actions. Maintain the Data Breach Register. Review privacy risks and implement proportionate controls. Develop and deliver GDPR and data protection training programmes. Create awareness campaigns, guidance notes and supporting materials. Provide practical advice to operational teams. Build effective relationships with internal stakeholders, clients, suppliers, auditors and regulators. Support tenders, audits, questionnaires and due diligence activities. Partner with HR, IT, Operations, Commercial, Finance and Procurement teams. Provide subject matter expertise on data protection and compliance matters. Identify opportunities to improve compliance controls and governance processes. Benchmark practices against industry standards and best practice. The ideal candidate Essential Significant experience in Data Protection, Compliance, Risk or Governance. Strong knowledge of UK GDPR and Data Protection legislation. Experience acting as a DPO or leading data protection programmes. Proven experience managing Subject Access Requests. Excellent communication, report writing and stakeholder management skills. Ability to develop policies, procedures and compliance frameworks.Desirable CIPP/E, CIPM, GDPR Practitioner or equivalent qualification. Experience within facilities management, security, cleaning or outsourced services. Experience liaising with the Information Commissioner's Office.Successful candidates will be required to provide original documentation for detailed screening and vetting processes.This could include the following: passport / driving licence / utility bill dated in the last 3 months / HMRC letter / original bank statement / original payslip / birth certificate / a valid share code. About us Join a growing market-leading brand of support services to work with the UK's largest brands such as Tottenham Hotspur Stadium, Jaguar Land Rover, Tesco, BBC StudioWorks, and many more.Carlisle currently employees over 5,000 dedicated and enthusiastic staff members to deliver events, security cleaning, and retail facilities support services across the UK's most renowned sites and critical infrastructure.Apply today to find out more and embark on an exciting career journey filled with unrivalled recognition schemes and progression opportunities aimed at helping you achieve your true potential. Equality, Diversity, and Inclusion At Carlisle, we are committed to Equality, Diversity, and Inclusion in all areas of employment, recruitment and selection, training, development, and promotion.In all situations people will be judged solely on merit or ability.+ Leaflet OpenStreetMap contributors Data Protection Officer & Compliance Manager Salary 70000 - 75000 Frequency Annually Job Reference carlisless/TP/452/2603 Contract Type Full Time Closing Date 16 August, 2026 Job Category Salaried Business Unit Head Office Location Luton, United Kingdom Posted on 17 July, 2026
21/07/2026
Full time
# Vacancies Data Protection Officer & Compliance Manager Job Introduction The benefits Health and Wellbeing Plans23 days paid holiday increasing to 25 after 2 yearsDiscounts and CashbacksPaid Volunteering daysEmployee Assistance ProgramRefer a Friend SchemeCycle to Work SchemeBonus The role Carlisle Support Services is looking for a Data Protection Officer & Compliance Manager who will be responsible for leading the organisation's data protection, privacy, and compliance framework, ensuring compliance with UK GDPR, the Data Protection Act 2018, and other relevant regulatory obligations. Acting as the designated Data Protection Officer (DPO), the role provides expert advice and guidance across the business, drives a culture of compliance, manages data subject rights requests, and ensures robust governance processes are maintained. Your core role will include but not be limited to the following activities: Act as the formally appointed Data Protection Officer for Carlisle Support Services, ensuring all statutory responsibilities under UK GDPR and the Data Protection Act 2018 are effectively discharged. Serve as the primary point of contact for the Information Commissioner's Office (ICO) and other regulatory bodies on all privacy and data protection matters. Provide independent and expert advice to the Executive Team, senior management, and operational stakeholders on data protection obligations, privacy risks, and compliance requirements. Promote and embed a culture of data privacy, accountability, and responsible data handling throughout the organisation. Maintain oversight of the organisation's privacy governance framework and ensure data protection considerations are incorporated into strategic business decisions. Develop, implement, review, and maintain GDPR policies, standards, procedures, and guidance documents. Monitor legislative developments and regulatory guidance, assessing organisational impacts and implementing required changes. Maintain the Record of Processing Activities (ROPA). Lead and coordinate Data Protection Impact Assessments (DPIAs). Take full ownership and accountability for all Subject Access Requests and data subject rights requests. Manage SARs internally wherever possible and within statutory timescales. Provide guidance to managers responding to privacy-related enquiries. Identify opportunities to streamline SAR processes and reduce external support costs. Monitor compliance and adherence to GDPR requirements across the business. Identify areas of non-compliance and support corrective actions. Produce an annual GDPR and Data Protection Report outlining risks, incidents, trends and areas of concern. Develop and present an annual Data Protection Strategy and Improvement Plan for the following 12 months. Report compliance performance and emerging risks to senior leadership. Lead investigations into data protection incidents, complaints, breaches and near misses. Assess incidents against regulatory reporting thresholds. Coordinate root cause analysis and corrective actions. Maintain the Data Breach Register. Review privacy risks and implement proportionate controls. Develop and deliver GDPR and data protection training programmes. Create awareness campaigns, guidance notes and supporting materials. Provide practical advice to operational teams. Build effective relationships with internal stakeholders, clients, suppliers, auditors and regulators. Support tenders, audits, questionnaires and due diligence activities. Partner with HR, IT, Operations, Commercial, Finance and Procurement teams. Provide subject matter expertise on data protection and compliance matters. Identify opportunities to improve compliance controls and governance processes. Benchmark practices against industry standards and best practice. The ideal candidate Essential Significant experience in Data Protection, Compliance, Risk or Governance. Strong knowledge of UK GDPR and Data Protection legislation. Experience acting as a DPO or leading data protection programmes. Proven experience managing Subject Access Requests. Excellent communication, report writing and stakeholder management skills. Ability to develop policies, procedures and compliance frameworks.Desirable CIPP/E, CIPM, GDPR Practitioner or equivalent qualification. Experience within facilities management, security, cleaning or outsourced services. Experience liaising with the Information Commissioner's Office.Successful candidates will be required to provide original documentation for detailed screening and vetting processes.This could include the following: passport / driving licence / utility bill dated in the last 3 months / HMRC letter / original bank statement / original payslip / birth certificate / a valid share code. About us Join a growing market-leading brand of support services to work with the UK's largest brands such as Tottenham Hotspur Stadium, Jaguar Land Rover, Tesco, BBC StudioWorks, and many more.Carlisle currently employees over 5,000 dedicated and enthusiastic staff members to deliver events, security cleaning, and retail facilities support services across the UK's most renowned sites and critical infrastructure.Apply today to find out more and embark on an exciting career journey filled with unrivalled recognition schemes and progression opportunities aimed at helping you achieve your true potential. Equality, Diversity, and Inclusion At Carlisle, we are committed to Equality, Diversity, and Inclusion in all areas of employment, recruitment and selection, training, development, and promotion.In all situations people will be judged solely on merit or ability.+ Leaflet OpenStreetMap contributors Data Protection Officer & Compliance Manager Salary 70000 - 75000 Frequency Annually Job Reference carlisless/TP/452/2603 Contract Type Full Time Closing Date 16 August, 2026 Job Category Salaried Business Unit Head Office Location Luton, United Kingdom Posted on 17 July, 2026
# Cyber Security Platform Engineer - Microsoft - LondonIT/Information/Cyber SecurityRef:198 Date Posted: Monday 25 May 2026LinkedInFacebookXTitle: Cyber Security Platform Engineer - MicrosoftReference No: 2161Company: FTSE 100Reports to Security Platform Engineering ManagerLocation: LondonWorking Pattern 37.5 hours per week, Monday - Friday. Location: London/Peterborough, with potential travel to divisional sites as required by advisory engagements (hybrid working arrangements in place).Salary: £59,000 - £72,000Benefits Bupa, Matched pension contributions. The Role Group Cyber Security Overview The Group Cyber Security (GCS) team is responsible for managing cyber risk appropriately across) the Group and has recently refreshed its cyber strategy, with a renewed focus on embedding cyber security as part of the culture and DNA. This is a highly federated business model spanning 11 divisions and over 50 countries, and the cyber strategy has been designed to build materially improved security capabilities whilst working with a divisional focus.It is an exciting time to join GCS. We are in a period of significant investment, with a multi-year transformation programme under way to build new security capabilities at pace. GCS is responsible for setting the Group cyber standard, measuring compliance against it across all the businesses, and delivering a portfolio of centrally managed security services that divisions can rely on.The Security Platform Engineering function is central to that portfolio - responsible for ensuring that the security tools the organisation invests in are deeply understood, expertly configured, continuously improved, and consistently delivering their intended security and business value. Microsoft is the most strategically significant security platform, and the uplift and optimisation of the Microsoft security estate is one of the most consequential engineering challenges in the GCS transformation programme. Role Summary Reporting to the Security Platform Engineering Manager, the Cyber Security Platform Engineer - Microsoft is the Group dedicated technical authority for the Microsoft security platform. The role carries implied ownership of the full Microsoft security stack: the M365 Defender suite, the security-relevant capabilities of Microsoft Entra ID (conditional access, Privileged Identity Management, access packages, and least privilege), Intune, and the foundational configuration of the Microsoft 365 and Azure environments on which all of these depend. This is a role that extends beyond BAU platform management: a significant part of the initial mandate is to critically assess the current state of the Microsoft estate - spanning E3, Active Directory, Entra ID, Intune, and existing Defender deployments - identify the gaps against vendor-recommended best practice and the Group cyber standard, and build a prioritised strategy and plan to close them.This role is the primary technical owner of that relationship on the GCS side - working directly with the Microsoft team to prioritise, plan, and drive the E5 deployment across the estate, and ensuring that the professional services and engineering resources available are directed at the highest-value activities. The role must navigate the realities of the federated organisation with skill: delivery will depend on partnership with divisional IT teams, and getting there will require excellent stakeholder management, a clear change communication approach, and an absolute commitment to end-user experience. Zero tolerance for avoidable downtime is not a preference - it is a non-negotiable operating constraint.The role works in close partnership with the Cyber Architecture Manager, the Group CTO function, the IT Frameworks Director, Assurance leads, Divisional Security Leads, and the Identity Transformation team. It shares the defining mindset of the whole platform engineering function: genuine passion for the Microsoft platform, curiosity about its full capability, and the drive to get to a secure, consistent, vendor-recommended configuration as quickly and as safely as possible. Role Responsibilities / Accountabilities Microsoft Estate Assessment, Gap Analysis & Strategy • Conduct a structured, critical assessment of the current Microsoft security estate, covering Active Directory, Microsoft Entra ID, Intune, M365 (E3 and current Defender deployments), and Azure security configuration; benchmark the current state against Microsoft's secure score recommendations, vendor best practice, and the Group cyber technical standard, and produce a clear, evidence-based gap analysis.• Develop a prioritised Microsoft security uplift strategy and delivery plan that sequences remediation and enhancement activity by risk reduction impact, operational feasibility, and alignment with the E5 migration roadmap; ensure the plan is realistic for federated environment and has clear milestones, owners, and success criteria.• Maintain the Microsoft security uplift plan as a live document; track progress against milestones, report status to the Security Platform Engineering Manager, and adapt the plan to the Groups environment, the threat landscape, and the Microsoft product roadmap evolve. Microsoft Defender Platform Ownership & Engineering • Own the technical configuration, ongoing engineering, and operational health of the full M365 Defender suite, including Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Defender for Office 365, and Microsoft Sentinel integration; maintain configurations to the approved baseline and drive continuous improvement against vendor-recommended configuration.• Work closely with the SOC to tune Defender configurations for effective detection and response; adjust detection rules, custom detection queries, and alert thresholds in response to SOC operational feedback, ensuring analysts receive high-fidelity, actionable alerts with minimal noise.• Develop and maintain detailed configuration documentation, runbooks, and change records for all Defender workloads; ensure configuration state is consistently documented, version-controlled, and auditable. Entra ID Security & Identity Controls • Own the security configuration of Microsoft Entra ID across the Group; take implied technical ownership of the security-relevant Entra capabilities including Conditional Access policy design and enforcement, Privileged Identity Management (PIM), access packages and entitlement management, Identity Protection, and the application of least privilege principles across the directory.• Work with the Cyber Architecture Manager, the IT Frameworks Director, and Assurance leads to ensure that GCS policies - including BYOD, remote access, and privilege management policies - are correctly and completely manifested in Entra Conditional Access policies and Intune device compliance rules; maintain a clear mapping between policy intent and platform configuration.• Support the Active Directory to Entra ID modernisation journey; identify legacy AD configurations and hybrid identity risks that need to be addressed as part of the E5 migration, and work with the Identity Transformation team to ensure Entra security configuration activity is co-ordinated with the broader identity programme.• Own the Intune security configuration, maintain device compliance policies, configuration profiles, and security baselines; ensure Intune is configured to enforce the Group endpoint security standard and provides accurate device compliance data to Entra Conditional Access and the Defender estate. E5 Migration, ECIF Engagement & Microsoft Relationship • Act as GCS's primary technical liaison to the Microsoft ECIF (Engineering Co-Investment Fund) team; plan, prioritise, and drive the E5 deployment programme in partnership with the ECIF team, ensuring that Microsoft engineering resources are directed at the highest-value activities and that the Organisation is getting the maximum benefit from the co-investment engagement.• Manage the technical relationship with Microsoft across the security and identity platform; maintain active engagement with Microsoft technical account management, product specialists, and engineering teams; use the account relationship to gain early access to roadmap briefings, preview features, escalation paths, and best-practice guidance relevant to the organisations environment.• Plan and manage the technical delivery of E5 capability rollout across the divisions; sequence deployment activity to maximise early security value, sequence it safely within the change management constraints, and ensure each phase is fully tested, documented, and supported before moving to the next.• Maintain accurate records of Microsoft licence entitlements, feature adoption, and E5 deployment progress; ensure the Group is consuming the capabilities it is paying for, and provide the Security Platform Engineering Manager with clear, up-to-date visibility of licence utilisation and deployment status.• Policy Manifestation, Standards Alignment & Assurance• Translate Group cyber technical standards and security policies into enforceable Microsoft platform configurations; maintain a clear, auditable mapping between each policy requirement and its implementation in Defender, Entra, Intune, or other Microsoft controls, and ensure divergence is identified and remediated promptly.• Work closely with the Director of Cyber Assurance and Assurance leads to support controls assessment of the Microsoft estate; provide technical evidence of configuration compliance, investigate gaps identified through continuous controls monitoring (including Axonius), and drive remediation of control failures to closure . click apply for full job details
21/07/2026
Full time
# Cyber Security Platform Engineer - Microsoft - LondonIT/Information/Cyber SecurityRef:198 Date Posted: Monday 25 May 2026LinkedInFacebookXTitle: Cyber Security Platform Engineer - MicrosoftReference No: 2161Company: FTSE 100Reports to Security Platform Engineering ManagerLocation: LondonWorking Pattern 37.5 hours per week, Monday - Friday. Location: London/Peterborough, with potential travel to divisional sites as required by advisory engagements (hybrid working arrangements in place).Salary: £59,000 - £72,000Benefits Bupa, Matched pension contributions. The Role Group Cyber Security Overview The Group Cyber Security (GCS) team is responsible for managing cyber risk appropriately across) the Group and has recently refreshed its cyber strategy, with a renewed focus on embedding cyber security as part of the culture and DNA. This is a highly federated business model spanning 11 divisions and over 50 countries, and the cyber strategy has been designed to build materially improved security capabilities whilst working with a divisional focus.It is an exciting time to join GCS. We are in a period of significant investment, with a multi-year transformation programme under way to build new security capabilities at pace. GCS is responsible for setting the Group cyber standard, measuring compliance against it across all the businesses, and delivering a portfolio of centrally managed security services that divisions can rely on.The Security Platform Engineering function is central to that portfolio - responsible for ensuring that the security tools the organisation invests in are deeply understood, expertly configured, continuously improved, and consistently delivering their intended security and business value. Microsoft is the most strategically significant security platform, and the uplift and optimisation of the Microsoft security estate is one of the most consequential engineering challenges in the GCS transformation programme. Role Summary Reporting to the Security Platform Engineering Manager, the Cyber Security Platform Engineer - Microsoft is the Group dedicated technical authority for the Microsoft security platform. The role carries implied ownership of the full Microsoft security stack: the M365 Defender suite, the security-relevant capabilities of Microsoft Entra ID (conditional access, Privileged Identity Management, access packages, and least privilege), Intune, and the foundational configuration of the Microsoft 365 and Azure environments on which all of these depend. This is a role that extends beyond BAU platform management: a significant part of the initial mandate is to critically assess the current state of the Microsoft estate - spanning E3, Active Directory, Entra ID, Intune, and existing Defender deployments - identify the gaps against vendor-recommended best practice and the Group cyber standard, and build a prioritised strategy and plan to close them.This role is the primary technical owner of that relationship on the GCS side - working directly with the Microsoft team to prioritise, plan, and drive the E5 deployment across the estate, and ensuring that the professional services and engineering resources available are directed at the highest-value activities. The role must navigate the realities of the federated organisation with skill: delivery will depend on partnership with divisional IT teams, and getting there will require excellent stakeholder management, a clear change communication approach, and an absolute commitment to end-user experience. Zero tolerance for avoidable downtime is not a preference - it is a non-negotiable operating constraint.The role works in close partnership with the Cyber Architecture Manager, the Group CTO function, the IT Frameworks Director, Assurance leads, Divisional Security Leads, and the Identity Transformation team. It shares the defining mindset of the whole platform engineering function: genuine passion for the Microsoft platform, curiosity about its full capability, and the drive to get to a secure, consistent, vendor-recommended configuration as quickly and as safely as possible. Role Responsibilities / Accountabilities Microsoft Estate Assessment, Gap Analysis & Strategy • Conduct a structured, critical assessment of the current Microsoft security estate, covering Active Directory, Microsoft Entra ID, Intune, M365 (E3 and current Defender deployments), and Azure security configuration; benchmark the current state against Microsoft's secure score recommendations, vendor best practice, and the Group cyber technical standard, and produce a clear, evidence-based gap analysis.• Develop a prioritised Microsoft security uplift strategy and delivery plan that sequences remediation and enhancement activity by risk reduction impact, operational feasibility, and alignment with the E5 migration roadmap; ensure the plan is realistic for federated environment and has clear milestones, owners, and success criteria.• Maintain the Microsoft security uplift plan as a live document; track progress against milestones, report status to the Security Platform Engineering Manager, and adapt the plan to the Groups environment, the threat landscape, and the Microsoft product roadmap evolve. Microsoft Defender Platform Ownership & Engineering • Own the technical configuration, ongoing engineering, and operational health of the full M365 Defender suite, including Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Defender for Office 365, and Microsoft Sentinel integration; maintain configurations to the approved baseline and drive continuous improvement against vendor-recommended configuration.• Work closely with the SOC to tune Defender configurations for effective detection and response; adjust detection rules, custom detection queries, and alert thresholds in response to SOC operational feedback, ensuring analysts receive high-fidelity, actionable alerts with minimal noise.• Develop and maintain detailed configuration documentation, runbooks, and change records for all Defender workloads; ensure configuration state is consistently documented, version-controlled, and auditable. Entra ID Security & Identity Controls • Own the security configuration of Microsoft Entra ID across the Group; take implied technical ownership of the security-relevant Entra capabilities including Conditional Access policy design and enforcement, Privileged Identity Management (PIM), access packages and entitlement management, Identity Protection, and the application of least privilege principles across the directory.• Work with the Cyber Architecture Manager, the IT Frameworks Director, and Assurance leads to ensure that GCS policies - including BYOD, remote access, and privilege management policies - are correctly and completely manifested in Entra Conditional Access policies and Intune device compliance rules; maintain a clear mapping between policy intent and platform configuration.• Support the Active Directory to Entra ID modernisation journey; identify legacy AD configurations and hybrid identity risks that need to be addressed as part of the E5 migration, and work with the Identity Transformation team to ensure Entra security configuration activity is co-ordinated with the broader identity programme.• Own the Intune security configuration, maintain device compliance policies, configuration profiles, and security baselines; ensure Intune is configured to enforce the Group endpoint security standard and provides accurate device compliance data to Entra Conditional Access and the Defender estate. E5 Migration, ECIF Engagement & Microsoft Relationship • Act as GCS's primary technical liaison to the Microsoft ECIF (Engineering Co-Investment Fund) team; plan, prioritise, and drive the E5 deployment programme in partnership with the ECIF team, ensuring that Microsoft engineering resources are directed at the highest-value activities and that the Organisation is getting the maximum benefit from the co-investment engagement.• Manage the technical relationship with Microsoft across the security and identity platform; maintain active engagement with Microsoft technical account management, product specialists, and engineering teams; use the account relationship to gain early access to roadmap briefings, preview features, escalation paths, and best-practice guidance relevant to the organisations environment.• Plan and manage the technical delivery of E5 capability rollout across the divisions; sequence deployment activity to maximise early security value, sequence it safely within the change management constraints, and ensure each phase is fully tested, documented, and supported before moving to the next.• Maintain accurate records of Microsoft licence entitlements, feature adoption, and E5 deployment progress; ensure the Group is consuming the capabilities it is paying for, and provide the Security Platform Engineering Manager with clear, up-to-date visibility of licence utilisation and deployment status.• Policy Manifestation, Standards Alignment & Assurance• Translate Group cyber technical standards and security policies into enforceable Microsoft platform configurations; maintain a clear, auditable mapping between each policy requirement and its implementation in Defender, Entra, Intune, or other Microsoft controls, and ensure divergence is identified and remediated promptly.• Work closely with the Director of Cyber Assurance and Assurance leads to support controls assessment of the Microsoft estate; provide technical evidence of configuration compliance, investigate gaps identified through continuous controls monitoring (including Axonius), and drive remediation of control failures to closure . click apply for full job details
Job Overview Join us at Barclays as a Cyber Operations Test Manager, where you'll play a key role in strengthening our cyber containment capabilities and supporting our transition to a more advanced Cyber Operations model. In this role, you'll regularly test and evidence our containment capability continues to work. This includes providing evidence for the self assessment and the protection for our organisation against an evolving threat landscape. Key responsibilities and experience requirements Cyber Containment & Incident Response Knowledge of cyber attack lifecycle, ransomware, malware, and threat containment strategies Ability to coordinate endpoint isolation, network segmentation, account restrictions, and other containment controls during security incidents Experience working with CSOC, IR, Threat Hunting, and Infrastructure teams during active incidents Test Management & Exercise Delivery Planning and execution of cyber recovery, cyber resilience, tabletop, and technical containment exercises Defining test objectives, success criteria, scenarios, and reporting outcomes Managing defect tracking, lessons learned, remediation activities, and continuous improvement programmes Other Desired Skills Stakeholder Leadership & Governance Coordinating across Technology, Security, Business, and Third Party teams Producing executive ready reports, risk assessments, and decision papers Driving governance, documentation, audit evidence, and regulatory readiness while ensuring testing and containment activities align with business objectives You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job specific technical skills. This role is based in Knutsford. Purpose of the role To monitor the performance of operational controls, implement and manage security controls and consider lessons learned in order to protect the bank from potential cyber attacks and respond to threats. Accountabilities Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats Triage of data loss prevention alerts to identify and prevent sensitive data from being exfiltrated from the bank's network Management of cyber security incidents including remediation and driving to closure Assistant Vice President Expectations To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/business divisions Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda Take ownership for managing risk and strengthening controls in relation to the work done Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub function Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience Influence or convince stakeholders to achieve outcomes All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
19/07/2026
Full time
Job Overview Join us at Barclays as a Cyber Operations Test Manager, where you'll play a key role in strengthening our cyber containment capabilities and supporting our transition to a more advanced Cyber Operations model. In this role, you'll regularly test and evidence our containment capability continues to work. This includes providing evidence for the self assessment and the protection for our organisation against an evolving threat landscape. Key responsibilities and experience requirements Cyber Containment & Incident Response Knowledge of cyber attack lifecycle, ransomware, malware, and threat containment strategies Ability to coordinate endpoint isolation, network segmentation, account restrictions, and other containment controls during security incidents Experience working with CSOC, IR, Threat Hunting, and Infrastructure teams during active incidents Test Management & Exercise Delivery Planning and execution of cyber recovery, cyber resilience, tabletop, and technical containment exercises Defining test objectives, success criteria, scenarios, and reporting outcomes Managing defect tracking, lessons learned, remediation activities, and continuous improvement programmes Other Desired Skills Stakeholder Leadership & Governance Coordinating across Technology, Security, Business, and Third Party teams Producing executive ready reports, risk assessments, and decision papers Driving governance, documentation, audit evidence, and regulatory readiness while ensuring testing and containment activities align with business objectives You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job specific technical skills. This role is based in Knutsford. Purpose of the role To monitor the performance of operational controls, implement and manage security controls and consider lessons learned in order to protect the bank from potential cyber attacks and respond to threats. Accountabilities Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats Triage of data loss prevention alerts to identify and prevent sensitive data from being exfiltrated from the bank's network Management of cyber security incidents including remediation and driving to closure Assistant Vice President Expectations To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/business divisions Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda Take ownership for managing risk and strengthening controls in relation to the work done Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub function Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience Influence or convince stakeholders to achieve outcomes All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
Cintra HR & Payroll Services Ltd
City, Newcastle Upon Tyne
Head of Compliance & Group DPO Application Deadline: 5 July 2026 Department: Operations Employment Type: Permanent - Full Time Location: Newcastle upon Tyne Compensation: £55,000 - £58,000 / year Description Join our Operations team as a Head of Compliance & Group DPO! We are Cintra. Known for our award-winning software that delivers payroll solutions to over 1000 clients. If you're passionate about payroll and are eager to join a dynamic team of seasoned professionals, this is the opportunity for you. As the proud recipient of the Payroll Service Provider of the Year 2025 award at the CIPP Annual Excellence Awards, we offer exciting opportunities for professional development, competitive bonus structures, and a collaborative work environment. Our modern offices are located in Hoults Yard, nestled on the outskirts of the vibrant Ouseburn Valley. This area boasts a thriving creative community, rich local heritage, and a lively social scene. Why This Role Is Different As Head of Compliance & Group DPO, you will play a critical role in safeguarding the integrity, security and compliance standards of the organisation. Working closely with senior leadership teams, you will oversee compliance and information security frameworks, ensure adherence to evolving regulatory requirements and act as the organisation's lead authority on data protection matters. You will be responsible for maintaining and enhancing our Information Security Management System (ISMS), supporting ISAE3402, ISO27001, ISO9001, CIPP PAS, Cyber Essentials Plus and BACS Bureau accreditation. The role will ensure that appropriate frameworks, controls and evidence are in place to demonstrate ongoing compliance with these standards. You will also support risk management activities, GDPR governance and the successful maintenance of all relevant certifications and accreditations. This role requires someone who can combine analytical thinking and attention to detail with a calm, collaborative and commercially aware approach. What You'll Be Doing Leading and continuously improving the organisation's compliance, information security and privacy frameworks. Maintaining and enhancing the ISMS in line with ISO 27001 and other compliance standards. Acting as Group Data Protection Officer and primary contact for data protection matters. Advising senior stakeholders on regulatory, compliance and information security risks. Leading internal audits and compliance reviews across multiple business areas. Overseeing data breach and security incident management processes. Developing and maintaining risk management frameworks. Delivering training, guidance and awareness initiatives across the organisation. Building strong collaborative relationships with internal stakeholders and external bodies including the ICO. Supporting a culture of accountability, governance and continuous improvement. Assisting with complex client queries relating to our Data Processing Agreement (DPA), ensuring its provisions can be clearly communicated and effectively positioned to minimise the need for significant concessions. What We're Looking For We are looking for an experienced and highly professional individual who brings strong technical knowledge of compliance, information security and GDPR, has excellent organisational and analytical skills, communicates complex information clearly and confidently, builds credibility and trust with stakeholders at all levels, is calm, measured and solutions-focused under pressure, takes a collaborative and supportive approach to leadership, enjoys creating structure, consistency and continuous improvement, has strong attention to detail alongside strategic oversight capability, and is confident balancing operational delivery with long-term governance priorities. Essential CISA, CISM or equivalent qualification. Proven experience within compliance, data protection and information security leadership. Strong working knowledge of GDPR and information security frameworks. Desirable ISO 27001 Lead Auditor / Implementer. Certified GDPR Practitioner. Experience operating within complex, multi-disciplinary or regulated environments. Why Join Cintra? At Cintra we know our colleagues are our biggest asset and an investment in them is an investment into the company. We offer: Hybrid and flexible working arrangements supporting your work life balance. Employer matched pension contribution to 5%. Wellbeing support through our company funded health plan, health checks and employee assistance program. Onsite parking. And more! We go the extra mile to strategically invest in our employees by providing them with invaluable learning opportunities to propel their careers forward. Our commitment to continuous employee training ensures that knowledge remains up to date, skills stay sharp, and confidence continues to grow. We firmly believe in empowering our workforce with the tools they need to thrive and succeed.
18/07/2026
Full time
Head of Compliance & Group DPO Application Deadline: 5 July 2026 Department: Operations Employment Type: Permanent - Full Time Location: Newcastle upon Tyne Compensation: £55,000 - £58,000 / year Description Join our Operations team as a Head of Compliance & Group DPO! We are Cintra. Known for our award-winning software that delivers payroll solutions to over 1000 clients. If you're passionate about payroll and are eager to join a dynamic team of seasoned professionals, this is the opportunity for you. As the proud recipient of the Payroll Service Provider of the Year 2025 award at the CIPP Annual Excellence Awards, we offer exciting opportunities for professional development, competitive bonus structures, and a collaborative work environment. Our modern offices are located in Hoults Yard, nestled on the outskirts of the vibrant Ouseburn Valley. This area boasts a thriving creative community, rich local heritage, and a lively social scene. Why This Role Is Different As Head of Compliance & Group DPO, you will play a critical role in safeguarding the integrity, security and compliance standards of the organisation. Working closely with senior leadership teams, you will oversee compliance and information security frameworks, ensure adherence to evolving regulatory requirements and act as the organisation's lead authority on data protection matters. You will be responsible for maintaining and enhancing our Information Security Management System (ISMS), supporting ISAE3402, ISO27001, ISO9001, CIPP PAS, Cyber Essentials Plus and BACS Bureau accreditation. The role will ensure that appropriate frameworks, controls and evidence are in place to demonstrate ongoing compliance with these standards. You will also support risk management activities, GDPR governance and the successful maintenance of all relevant certifications and accreditations. This role requires someone who can combine analytical thinking and attention to detail with a calm, collaborative and commercially aware approach. What You'll Be Doing Leading and continuously improving the organisation's compliance, information security and privacy frameworks. Maintaining and enhancing the ISMS in line with ISO 27001 and other compliance standards. Acting as Group Data Protection Officer and primary contact for data protection matters. Advising senior stakeholders on regulatory, compliance and information security risks. Leading internal audits and compliance reviews across multiple business areas. Overseeing data breach and security incident management processes. Developing and maintaining risk management frameworks. Delivering training, guidance and awareness initiatives across the organisation. Building strong collaborative relationships with internal stakeholders and external bodies including the ICO. Supporting a culture of accountability, governance and continuous improvement. Assisting with complex client queries relating to our Data Processing Agreement (DPA), ensuring its provisions can be clearly communicated and effectively positioned to minimise the need for significant concessions. What We're Looking For We are looking for an experienced and highly professional individual who brings strong technical knowledge of compliance, information security and GDPR, has excellent organisational and analytical skills, communicates complex information clearly and confidently, builds credibility and trust with stakeholders at all levels, is calm, measured and solutions-focused under pressure, takes a collaborative and supportive approach to leadership, enjoys creating structure, consistency and continuous improvement, has strong attention to detail alongside strategic oversight capability, and is confident balancing operational delivery with long-term governance priorities. Essential CISA, CISM or equivalent qualification. Proven experience within compliance, data protection and information security leadership. Strong working knowledge of GDPR and information security frameworks. Desirable ISO 27001 Lead Auditor / Implementer. Certified GDPR Practitioner. Experience operating within complex, multi-disciplinary or regulated environments. Why Join Cintra? At Cintra we know our colleagues are our biggest asset and an investment in them is an investment into the company. We offer: Hybrid and flexible working arrangements supporting your work life balance. Employer matched pension contribution to 5%. Wellbeing support through our company funded health plan, health checks and employee assistance program. Onsite parking. And more! We go the extra mile to strategically invest in our employees by providing them with invaluable learning opportunities to propel their careers forward. Our commitment to continuous employee training ensures that knowledge remains up to date, skills stay sharp, and confidence continues to grow. We firmly believe in empowering our workforce with the tools they need to thrive and succeed.
Company Description Working as a partnership, both Isle of Wight NHS Trust and Portsmouth Hospitals University NHS Trust have a shared vision for excellence in care for our patients and communities; with a set of strategic aims underpinning how we will achieve this. The single corporate service is delivered across both organisation. You may be based at either IWT or PHU and individuals may be required to undertake business travel between sites. For leaders managing staff across multi-site locations, you will need to be visible and provide in person leadership. The arrangements and frequency will be agreed locally. Job Description This vacancy is open to employees of Isle of Wight NHS Trust and Portsmouth Hospitals University NHS Trust only. NHS Band 6 Salary: £39,959 - £48,117 per annum Contract Type: Temporary (Maternity Cover) 12 months Hours Per Week: Full time 37.5 TheAutomation Developerwill support the delivery of intelligent automation and digital process improvement across both Trusts. You will develop, test, and maintainRobotic Process Automation (RPA)andPower Platformapplications, using your growing technical expertise to improve efficiency, reduce manual effort, and enhance the Trusts' digital capabilities. Working as part of a collaborative team, you will contribute to automation projects of varying complexity, ensuring that all solutions are robust, secure, and meet organisational and governance standards. Key Responsibilities Develop, test, and deploy RPA solutions usingBlue Prism, following established standards and best practice. Assist in the design and implementation ofMicrosoft Power Platformapplications, includingPower Automate andPower Apps. Collaborate with senior developers, business analysts, and service leads to translate business requirements into effective automation solutions. Maintain and enhance existing automations, ensuring reliability and ongoing value. Produce technical documentation, reusable components, and accurate process records. Support users and colleagues in understanding and adopting automated solutions. Ensure compliance with Information Governance, data protection, and cybersecurity requirements. Contribute to process improvement, testing, and innovation activities within the automation team. Participate in knowledge-sharing and skill-building across the wider digital team. Please read the full Job description attached for further details on this role. Qualifications Essential Degree-level education or equivalent experience in Computer Science, Information Technology, or a related field. 2 to 3 yearsexperience in automation development, ideally includingBlue Prism. Practical understanding of the RPA lifecycle and exception handling. Working knowledge ofMicrosoft 365, particularlyPower AutomateandPower Apps. Experience integrating systems via APIs, web services, or databases (SQL). Strong analytical and troubleshooting skills. Ability to prioritise workloads and meet agreed deadlines. Good communication and teamwork skills, with a willingness to learn and grow. Desirable Blue Prism Developercertification (Foundation or Professional). Experience working within the NHS or other large public-sector organisations. Familiarity with Agile or iterative development methodologies. Knowledge of other RPA tools (e.g., UiPath, Automation Anywhere). Awareness of cloud environments and virtual workforce management. Additional Information The health and wellbeing of our staff is at the forefront of everything we do. We are proud to be able to offer our staff some fantastic benefits including our on-site Nursery, access to our free Beach Hut for those long summer days, our on-site Wellness Centre including a gym and a swimming pool, access to our fantastic staff networks including LGBTQ, Race Equality and DisAbility, and awards ceremonies to recognise your achievements. We believe we can offer support to all of our staff when they need it the most. We welcome the unique contributions that you can bring in terms of your education, opinions, culture, ethnicity, race, sex, gender identity and expression, nation of origin, age, languages spoken, veteran's status, colour, religion, disability, sexual orientation, and beliefs. For more information, please see People and OD Strategy 2026
17/07/2026
Full time
Company Description Working as a partnership, both Isle of Wight NHS Trust and Portsmouth Hospitals University NHS Trust have a shared vision for excellence in care for our patients and communities; with a set of strategic aims underpinning how we will achieve this. The single corporate service is delivered across both organisation. You may be based at either IWT or PHU and individuals may be required to undertake business travel between sites. For leaders managing staff across multi-site locations, you will need to be visible and provide in person leadership. The arrangements and frequency will be agreed locally. Job Description This vacancy is open to employees of Isle of Wight NHS Trust and Portsmouth Hospitals University NHS Trust only. NHS Band 6 Salary: £39,959 - £48,117 per annum Contract Type: Temporary (Maternity Cover) 12 months Hours Per Week: Full time 37.5 TheAutomation Developerwill support the delivery of intelligent automation and digital process improvement across both Trusts. You will develop, test, and maintainRobotic Process Automation (RPA)andPower Platformapplications, using your growing technical expertise to improve efficiency, reduce manual effort, and enhance the Trusts' digital capabilities. Working as part of a collaborative team, you will contribute to automation projects of varying complexity, ensuring that all solutions are robust, secure, and meet organisational and governance standards. Key Responsibilities Develop, test, and deploy RPA solutions usingBlue Prism, following established standards and best practice. Assist in the design and implementation ofMicrosoft Power Platformapplications, includingPower Automate andPower Apps. Collaborate with senior developers, business analysts, and service leads to translate business requirements into effective automation solutions. Maintain and enhance existing automations, ensuring reliability and ongoing value. Produce technical documentation, reusable components, and accurate process records. Support users and colleagues in understanding and adopting automated solutions. Ensure compliance with Information Governance, data protection, and cybersecurity requirements. Contribute to process improvement, testing, and innovation activities within the automation team. Participate in knowledge-sharing and skill-building across the wider digital team. Please read the full Job description attached for further details on this role. Qualifications Essential Degree-level education or equivalent experience in Computer Science, Information Technology, or a related field. 2 to 3 yearsexperience in automation development, ideally includingBlue Prism. Practical understanding of the RPA lifecycle and exception handling. Working knowledge ofMicrosoft 365, particularlyPower AutomateandPower Apps. Experience integrating systems via APIs, web services, or databases (SQL). Strong analytical and troubleshooting skills. Ability to prioritise workloads and meet agreed deadlines. Good communication and teamwork skills, with a willingness to learn and grow. Desirable Blue Prism Developercertification (Foundation or Professional). Experience working within the NHS or other large public-sector organisations. Familiarity with Agile or iterative development methodologies. Knowledge of other RPA tools (e.g., UiPath, Automation Anywhere). Awareness of cloud environments and virtual workforce management. Additional Information The health and wellbeing of our staff is at the forefront of everything we do. We are proud to be able to offer our staff some fantastic benefits including our on-site Nursery, access to our free Beach Hut for those long summer days, our on-site Wellness Centre including a gym and a swimming pool, access to our fantastic staff networks including LGBTQ, Race Equality and DisAbility, and awards ceremonies to recognise your achievements. We believe we can offer support to all of our staff when they need it the most. We welcome the unique contributions that you can bring in terms of your education, opinions, culture, ethnicity, race, sex, gender identity and expression, nation of origin, age, languages spoken, veteran's status, colour, religion, disability, sexual orientation, and beliefs. For more information, please see People and OD Strategy 2026
Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Qualifications Strong engineering and automation background with a keen interest in Vulnerability Management Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with at least one programming language (ideally Java, Golang, Python, SQL.) Strong automation skills Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g. CIS Benchmarks, AWS/GCP best practices). Risk-Based prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be Desirable but not essential Endpoint vulnerability scanning, vulnerability intelligence, AppSec vulnerability management, vulnerability management of cloud native workloads, external attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard formats Interview process First stage with our Information Security Lead Second stage with additional members of the Vulnerability Management and Security Engineering team Final stage with Security Engineering Lead and Information Security Director We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. Benefits 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that Starling Bank will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.
16/07/2026
Full time
Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Qualifications Strong engineering and automation background with a keen interest in Vulnerability Management Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with at least one programming language (ideally Java, Golang, Python, SQL.) Strong automation skills Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g. CIS Benchmarks, AWS/GCP best practices). Risk-Based prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be Desirable but not essential Endpoint vulnerability scanning, vulnerability intelligence, AppSec vulnerability management, vulnerability management of cloud native workloads, external attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard formats Interview process First stage with our Information Security Lead Second stage with additional members of the Vulnerability Management and Security Engineering team Final stage with Security Engineering Lead and Information Security Director We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. Benefits 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law. When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that Starling Bank will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.
Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Qualifications Strong engineering and automation background with a keen interest in Vulnerability Management Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with at least one programming language (ideally Java, Golang, Python, SQL.) Strong automation skills Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross-functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g., CIS Benchmarks, AWS/GCP best practices). Risk-Based prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be Desirable but not essential Endpoint vulnerability scanning, vulnerability intelligence, AppSec vulnerability management, vulnerability management of cloud native workloads, external attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard formats Benefits 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr & Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Equal Opportunity Statement Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.
12/07/2026
Full time
Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Qualifications Strong engineering and automation background with a keen interest in Vulnerability Management Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with at least one programming language (ideally Java, Golang, Python, SQL.) Strong automation skills Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross-functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g., CIS Benchmarks, AWS/GCP best practices). Risk-Based prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be Desirable but not essential Endpoint vulnerability scanning, vulnerability intelligence, AppSec vulnerability management, vulnerability management of cloud native workloads, external attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard formats Benefits 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr & Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Equal Opportunity Statement Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.
Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Qualifications Strong engineering and automation background with a keen interest in Vulnerability Management Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with at least one programming language (ideally Java, Golang, Python, SQL.) Strong automation skills Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross-functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g., CIS Benchmarks, AWS/GCP best practices). Risk-Based prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be Desirable but not essential Endpoint vulnerability scanning, vulnerability intelligence, AppSec vulnerability management, vulnerability management of cloud native workloads, external attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard formats Benefits 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr & Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Equal Opportunity Statement Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.
12/07/2026
Full time
Starling is the UK's first and leading digital bank on a mission to fix banking! Our vision is fast technology, fair service, and honest values. All at the tap of a phone, all the time. We are about giving customers a new way to spend, save and manage their money while taking better care of the planet which has seen us become a multi-award winning bank that now employs over 2800 across five offices in London, Cardiff, Dublin, Southampton, and Manchester. Our journey started in 2014, and since then we have surpassed 3.5 million accounts (and four account types!) with 350,000 business customers. We are a fully licensed UK bank but at the heart, we are a tech first company, enabling our platform to deliver brilliant products. Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to take full ownership of everything around you: From building things, designing, discovering, to sharing knowledge with your colleagues and making sure all processes are efficient and productive to deliver the best possible results for our customers. Our purpose is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. Hybrid Working We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week. About the Role We are seeking a highly motivated and experienced Vulnerability Management Engineer to join our Cyber Security team. As a Vulnerability Management Engineer, your primary responsibility will be to manage vulnerability management tooling, and have an active role in improving existing processes. You will achieve this by creating automated solutions through collaboration with technical teams across Starling. Responsibilities Design, build, and maintain robust vulnerability management tooling and technical solutions. Drive efficiency by implementing automated solutions that eliminate manual overhead and streamline operations. Partner with internal engineering teams and remediators to intelligently prioritise remediation activities. Synthesise raw vulnerability data into actionable insights, reports, and metrics to support a risk-based security posture. Engineer custom integrations between internal and external platforms to enhance data capture throughout the remediation lifecycle. Maintain strict adherence to global security standards, regulatory requirements, and industry frameworks. Keep at the forefront of the industry by monitoring emerging trends in vulnerability management and shifting regulatory landscapes. Treat security as a continuous engineering challenge to outpace the threat landscape, proactively identifying vulnerabilities and architecting technical solutions to fortify our global ecosystem. Develop and maintain comprehensive technical playbooks and runbooks to standardise vulnerability triage, remediation, and incident response procedures, ensuring consistent, repeatable, and efficient security operations across the team. Utilise pattern and trend analysis to identify "Vulnerability Hotspots" (e.g., recurring issues in specific base Images or teams) to drive strategic risk reduction rather than just individual remediation. Qualifications Strong engineering and automation background with a keen interest in Vulnerability Management Strong technical knowledge, including: Cloud Experience (AWS, GCP) Kubernetes and Container experience Infrastructure as code (terraform) Proficiency with at least one programming language (ideally Java, Golang, Python, SQL.) Strong automation skills Experience with developing integrations by interacting with APIs Ability and willingness to learn new technologies and adapt to evolving security landscapes Capability to understand the bigger picture while effectively managing details Strong written and verbal communication skills to effectively collaborate with cross-functional teams and stakeholders Additional Technical Requirements Deep understanding of container & orchestration security: practical knowledge of securing containerised environments, including image scanning, runtime protection, and hardening K8s manifests. Proficiency in cloud posture management: familiarity with tools and frameworks to monitor cloud configuration drift and ensure adherence to security benchmarks (e.g., CIS Benchmarks, AWS/GCP best practices). Risk-Based prioritisation models: proven ability to translate raw vulnerability data (CVSS scores, exploitability) into business contextualised risk insights, enabling engineering teams to prioritise remediation effectively. Practical experience in one or more of the vulnerability management fields would be Desirable but not essential Endpoint vulnerability scanning, vulnerability intelligence, AppSec vulnerability management, vulnerability management of cloud native workloads, external attack surface management Experience with Software Bill of Materials (SBOM) management, specifically ingesting and correlating standard formats Benefits 25 days holiday (plus take your public holiday allowance whenever works best for you) An extra day's holiday for your birthday Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off 16 hours paid volunteering time a year Salary sacrifice, company enhanced pension scheme Life insurance at 4x your salary & group income protection Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr & Mrs Smith and Peloton Generous family-friendly policies Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing About Us You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren't sure if you're 100% there yet, get in touch anyway. We're on a mission to radically reshape banking - and that starts with our brilliant team. Whatever came before, we're proud to bring together people of all backgrounds and experiences who love working together to solve problems. Equal Opportunity Statement Starling is an equal opportunity employer, and we're proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling Bank are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.