it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

14 jobs found

Email me jobs like this
Refine Search
Current Search
idam architect
Senior Cloud Platform Engineer: GCP, Kubernetes & DevSecOps
GCS Recruitment Bolsterstone, Sheffield
GCS Recruitment is seeking an experienced Cloud Platform Engineer in the UK to design and operate a cloud-native platform for IDAM 2.0. You will build and maintain Kubernetes clusters and IaC, implement CI/CD pipelines, and manage security, networking and observability across environments. You will collaborate with IAM, security and architecture teams to deliver scalable platform services and drive automation and best practices across the stack.
26/07/2026
Full time
GCS Recruitment is seeking an experienced Cloud Platform Engineer in the UK to design and operate a cloud-native platform for IDAM 2.0. You will build and maintain Kubernetes clusters and IaC, implement CI/CD pipelines, and manage security, networking and observability across environments. You will collaborate with IAM, security and architecture teams to deliver scalable platform services and drive automation and best practices across the stack.
Senior Cloud Platform Engineer (GCP Kubernetes DevSecOps)
GCS Recruitment Bolsterstone, Sheffield
The position works closely with IAM architects, business stakeholders and technology partners. In this role, you will: Build and maintain cloud-native platform services supporting the IDAM 2.0 programme. Design, deploy and manage Kubernetes clusters and supporting platform components. Develop Infrastructure as Code (IaC) for repeatable, automated deployments. Implement and maintain CI/CD pipelines and GitOps deployment workflows. Manage cloud networking, connectivity and platform security. Implement platform observability including logging, monitoring, metrics and distributed tracing. Automate platform provisioning, configuration management and operational tasks. Support deployment and operation of identity platform components and supporting services. Implement secure secrets management and certificate lifecycle automation. Configure service mesh technologies and secure service-to-service communication. Manage ingress, API gateways and network routing components. Implement platform resilience, backup, disaster recovery and high availability capabilities. Support workload identity and platform authentication mechanisms. Ensure platform compliance with enterprise security, governance and regulatory requirements. Optimise platform performance, scalability and cost efficiency. Develop operational tooling, scripts and self-service capabilities. Support incident management, troubleshooting and root cause analysis. Collaborate with Security, Architecture and Engineering teams to deliver secure platform services. Contribute to platform standards, operational documentation and runbooks. Support environment management across development, test, pilot and production environments. Drive continuous improvement through automation and platform engineering best practices. To be successful in this role, you should meet the following requirements: Key Skills & Experience Essential Skills Cloud Platform Engineering (GCP) Kubernetes Administration Infrastructure as Code (Terraform or equivalent) CI/CD Pipelines GitOps Linux Administration Networking and Load Balancing Service Mesh Technologies (Istio/Envoy) Container Platforms Secrets Management PKI and Certificate Management Workload Identity Observability (Logging, Monitoring and Tracing) Scripting and Automation DevSecOps Site Reliability Engineering (SRE) Performance and Capacity Management Operational Support Global Deployment Strategies Positive can-do attitude adept at solutionising in large, complex organisations
26/07/2026
Full time
The position works closely with IAM architects, business stakeholders and technology partners. In this role, you will: Build and maintain cloud-native platform services supporting the IDAM 2.0 programme. Design, deploy and manage Kubernetes clusters and supporting platform components. Develop Infrastructure as Code (IaC) for repeatable, automated deployments. Implement and maintain CI/CD pipelines and GitOps deployment workflows. Manage cloud networking, connectivity and platform security. Implement platform observability including logging, monitoring, metrics and distributed tracing. Automate platform provisioning, configuration management and operational tasks. Support deployment and operation of identity platform components and supporting services. Implement secure secrets management and certificate lifecycle automation. Configure service mesh technologies and secure service-to-service communication. Manage ingress, API gateways and network routing components. Implement platform resilience, backup, disaster recovery and high availability capabilities. Support workload identity and platform authentication mechanisms. Ensure platform compliance with enterprise security, governance and regulatory requirements. Optimise platform performance, scalability and cost efficiency. Develop operational tooling, scripts and self-service capabilities. Support incident management, troubleshooting and root cause analysis. Collaborate with Security, Architecture and Engineering teams to deliver secure platform services. Contribute to platform standards, operational documentation and runbooks. Support environment management across development, test, pilot and production environments. Drive continuous improvement through automation and platform engineering best practices. To be successful in this role, you should meet the following requirements: Key Skills & Experience Essential Skills Cloud Platform Engineering (GCP) Kubernetes Administration Infrastructure as Code (Terraform or equivalent) CI/CD Pipelines GitOps Linux Administration Networking and Load Balancing Service Mesh Technologies (Istio/Envoy) Container Platforms Secrets Management PKI and Certificate Management Workload Identity Observability (Logging, Monitoring and Tracing) Scripting and Automation DevSecOps Site Reliability Engineering (SRE) Performance and Capacity Management Operational Support Global Deployment Strategies Positive can-do attitude adept at solutionising in large, complex organisations
GCS
Senior Cloud Platform Engineer (GCP Kubernetes DevSecOps)
GCS City, Sheffield
The position works closely with IAM architects, business stakeholders and technology partners. In this role, you will: Build and maintain cloud-native platform services supporting the IDAM 2.0 programme. Design, deploy and manage Kubernetes clusters and supporting platform components. Develop Infrastructure as Code (IaC) for repeatable, automated deployments. Implement and maintain CI/CD pipelines and GitOps deployment workflows. Manage cloud networking, connectivity and platform security. Implement platform observability including logging, monitoring, metrics and distributed tracing. Automate platform provisioning, configuration management and operational tasks. Support deployment and operation of identity platform components and supporting services. Implement secure secrets management and certificate lifecycle automation. Configure service mesh technologies and secure service-to-service communication. Manage ingress, API gateways and network routing components. Implement platform resilience, backup, disaster recovery and high availability capabilities. Support workload identity and platform authentication mechanisms. Ensure platform compliance with enterprise security, governance and regulatory requirements. Optimise platform performance, scalability and cost efficiency. Develop operational tooling, scripts and self-service capabilities. Support incident management, troubleshooting and root cause analysis. Collaborate with Security, Architecture and Engineering teams to deliver secure platform services. Contribute to platform standards, operational documentation and runbooks. Support environment management across development, test, pilot and production environments. Drive continuous improvement through automation and platform engineering best practices. To be successful in this role, you should meet the following requirements: Key Skills & Experience Essential Skills Cloud Platform Engineering (GCP) Kubernetes Administration Infrastructure as Code (Terraform or equivalent) CI/CD Pipelines GitOps Linux Administration Networking and Load Balancing Service Mesh Technologies (Istio/Envoy) Container Platforms Secrets Management PKI and Certificate Management Workload Identity Observability (Logging, Monitoring and Tracing) Scripting and Automation DevSecOps Site Reliability Engineering (SRE) Performance and Capacity Management Operational Support Global Deployment Strategies Positive can-do attitude adept at solutionising in large, complex organisations GCS is acting as an Employment Business in relation to this vacancy.
25/07/2026
Contractor
The position works closely with IAM architects, business stakeholders and technology partners. In this role, you will: Build and maintain cloud-native platform services supporting the IDAM 2.0 programme. Design, deploy and manage Kubernetes clusters and supporting platform components. Develop Infrastructure as Code (IaC) for repeatable, automated deployments. Implement and maintain CI/CD pipelines and GitOps deployment workflows. Manage cloud networking, connectivity and platform security. Implement platform observability including logging, monitoring, metrics and distributed tracing. Automate platform provisioning, configuration management and operational tasks. Support deployment and operation of identity platform components and supporting services. Implement secure secrets management and certificate lifecycle automation. Configure service mesh technologies and secure service-to-service communication. Manage ingress, API gateways and network routing components. Implement platform resilience, backup, disaster recovery and high availability capabilities. Support workload identity and platform authentication mechanisms. Ensure platform compliance with enterprise security, governance and regulatory requirements. Optimise platform performance, scalability and cost efficiency. Develop operational tooling, scripts and self-service capabilities. Support incident management, troubleshooting and root cause analysis. Collaborate with Security, Architecture and Engineering teams to deliver secure platform services. Contribute to platform standards, operational documentation and runbooks. Support environment management across development, test, pilot and production environments. Drive continuous improvement through automation and platform engineering best practices. To be successful in this role, you should meet the following requirements: Key Skills & Experience Essential Skills Cloud Platform Engineering (GCP) Kubernetes Administration Infrastructure as Code (Terraform or equivalent) CI/CD Pipelines GitOps Linux Administration Networking and Load Balancing Service Mesh Technologies (Istio/Envoy) Container Platforms Secrets Management PKI and Certificate Management Workload Identity Observability (Logging, Monitoring and Tracing) Scripting and Automation DevSecOps Site Reliability Engineering (SRE) Performance and Capacity Management Operational Support Global Deployment Strategies Positive can-do attitude adept at solutionising in large, complex organisations GCS is acting as an Employment Business in relation to this vacancy.
TEKsystems
Dev Sec Ops Solutions Architect
TEKsystems Sheffield, Yorkshire
Job Title: Dev Sec Ops Solutions Architect 3 days on site - Sheffield Job Description This role sits within a global Identity and Access Management (IAM) function that is redefining how identity is managed at enterprise scale. You will act as a Solution Architect and Design Engineer for a multi-year IAM transformation, delivering secure, scalable and supportable identity services across a complex international technology estate. Working closely with IAM architects, business stakeholders and technology partners, you will define the target architecture for IDAM 2.0 and provide end-to-end technical design that bridges modern IAM technology with large-scale banking environments. Responsibilities Provide end-to-end solution architecture and technical design for the IDAM 2.0 programme across business, application, data and infrastructure domains. Produce high-quality High Level Designs (HLDs) and Low Level Designs (LLDs) that clearly describe identity and access management solutions. Translate business, security and regulatory requirements into secure, scalable and supportable technical solutions. Develop reference architectures, patterns and design standards to guide delivery across the IAM transformation programme. Define integration patterns between identity platforms, applications, infrastructure and wider enterprise services. Design cloud-native identity and security solutions for Google Cloud Platform (GCP) and Kubernetes environments. Define authentication, authorisation and federation architectures to support human and non-human identities. Design Agent Identity, Human Identity and Workload Identity solutions within a Zero Trust security architecture and clearly defined trust boundaries. Design API security architectures, including service-to-service authentication and workload authentication patterns. Develop event-driven integration architectures using messaging and asynchronous processing to support scalable IAM services. Design Policy Decision Point (PDP) and Policy Enforcement Point (PEP) architectures using Policy-as-Code approaches. Define patterns for secrets management, certificate life cycle management and PKI integration. Design resilience, disaster recovery and high-availability architectures for IAM platforms and services. Ensure all solutions meet non-functional requirements for security, scalability, resilience and performance. Produce architecture decision records (ADRs) and comprehensive design documentation for governance and delivery teams. Support architectural governance through participation in Architecture Review Boards and Design Authorities. Perform solution assurance and technical design reviews for internal and supplier-delivered solutions. Identify and manage technical risks, assumptions, constraints and dependencies across multiple workstreams. Collaborate with Enterprise Architecture to ensure alignment with the strategic architecture and target state. Work closely with Product Owners to refine technical requirements, clarify scope and prioritise delivery. Support engineering teams throughout implementation, testing and production readiness, providing ongoing technical guidance. Mentor engineers and promote engineering and DevSecOps best practices across the IAM function. Evaluate new technologies and vendor products against programme requirements and recommend adoption where appropriate. Contribute to roadmap planning and the definition of future-state architecture for identity and access management. Essential Skills Proven experience in enterprise solution architecture, ideally within large and complex global organisations. Strong expertise in Identity and Access Management (IAM), covering human and non-human identities. Deep knowledge of authentication and authorisation mechanisms and standards. Hands-on experience designing and implementing Zero Trust architectures. experience with Agent Identity and Workload Identity solutions. Strong understanding of identity federation standards such as OIDC, OAuth2, SAML and SCIM. Cloud architecture experience with Google Cloud Platform (GCP). Practical experience with Kubernetes and service mesh technologies. Expertise in API architecture and API security design. experience designing and implementing event-driven architectures. Knowledge and practical use of Policy-as-Code tools and frameworks (for example OPA or Cedar). Strong understanding of PKI, digital certificates and secrets management. experience working in DevSecOps environments with CI/CD pipelines. Demonstrable experience designing for high availability, resilience and disaster recovery. Background in security architecture, particularly in the context of IAM. experience operating within formal architecture governance frameworks. Strong stakeholder management skills, with the ability to influence and align diverse technical and business stakeholders. Proven technical leadership experience across multiple workstreams or programmes. Additional Skills & Qualifications experience working on large-scale, multi-year transformation programmes in regulated industries. Background in banking or financial services technology environments. Familiarity with core banking systems and large-scale technology estates. experience collaborating with external vendors and reviewing supplier-provided solution designs. experience documenting architecture decision records (ADRs) and maintaining architectural artefacts. Exposure to event-driven and messaging-based integration patterns within security-sensitive environments. experience mentoring engineers and contributing to the development of engineering standards and best practices. Location Sheffield, UK Trading as TEKsystems. Allegis Group Limited, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at our website. To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go our website. We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice on our website for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.
23/07/2026
Contractor
Job Title: Dev Sec Ops Solutions Architect 3 days on site - Sheffield Job Description This role sits within a global Identity and Access Management (IAM) function that is redefining how identity is managed at enterprise scale. You will act as a Solution Architect and Design Engineer for a multi-year IAM transformation, delivering secure, scalable and supportable identity services across a complex international technology estate. Working closely with IAM architects, business stakeholders and technology partners, you will define the target architecture for IDAM 2.0 and provide end-to-end technical design that bridges modern IAM technology with large-scale banking environments. Responsibilities Provide end-to-end solution architecture and technical design for the IDAM 2.0 programme across business, application, data and infrastructure domains. Produce high-quality High Level Designs (HLDs) and Low Level Designs (LLDs) that clearly describe identity and access management solutions. Translate business, security and regulatory requirements into secure, scalable and supportable technical solutions. Develop reference architectures, patterns and design standards to guide delivery across the IAM transformation programme. Define integration patterns between identity platforms, applications, infrastructure and wider enterprise services. Design cloud-native identity and security solutions for Google Cloud Platform (GCP) and Kubernetes environments. Define authentication, authorisation and federation architectures to support human and non-human identities. Design Agent Identity, Human Identity and Workload Identity solutions within a Zero Trust security architecture and clearly defined trust boundaries. Design API security architectures, including service-to-service authentication and workload authentication patterns. Develop event-driven integration architectures using messaging and asynchronous processing to support scalable IAM services. Design Policy Decision Point (PDP) and Policy Enforcement Point (PEP) architectures using Policy-as-Code approaches. Define patterns for secrets management, certificate life cycle management and PKI integration. Design resilience, disaster recovery and high-availability architectures for IAM platforms and services. Ensure all solutions meet non-functional requirements for security, scalability, resilience and performance. Produce architecture decision records (ADRs) and comprehensive design documentation for governance and delivery teams. Support architectural governance through participation in Architecture Review Boards and Design Authorities. Perform solution assurance and technical design reviews for internal and supplier-delivered solutions. Identify and manage technical risks, assumptions, constraints and dependencies across multiple workstreams. Collaborate with Enterprise Architecture to ensure alignment with the strategic architecture and target state. Work closely with Product Owners to refine technical requirements, clarify scope and prioritise delivery. Support engineering teams throughout implementation, testing and production readiness, providing ongoing technical guidance. Mentor engineers and promote engineering and DevSecOps best practices across the IAM function. Evaluate new technologies and vendor products against programme requirements and recommend adoption where appropriate. Contribute to roadmap planning and the definition of future-state architecture for identity and access management. Essential Skills Proven experience in enterprise solution architecture, ideally within large and complex global organisations. Strong expertise in Identity and Access Management (IAM), covering human and non-human identities. Deep knowledge of authentication and authorisation mechanisms and standards. Hands-on experience designing and implementing Zero Trust architectures. experience with Agent Identity and Workload Identity solutions. Strong understanding of identity federation standards such as OIDC, OAuth2, SAML and SCIM. Cloud architecture experience with Google Cloud Platform (GCP). Practical experience with Kubernetes and service mesh technologies. Expertise in API architecture and API security design. experience designing and implementing event-driven architectures. Knowledge and practical use of Policy-as-Code tools and frameworks (for example OPA or Cedar). Strong understanding of PKI, digital certificates and secrets management. experience working in DevSecOps environments with CI/CD pipelines. Demonstrable experience designing for high availability, resilience and disaster recovery. Background in security architecture, particularly in the context of IAM. experience operating within formal architecture governance frameworks. Strong stakeholder management skills, with the ability to influence and align diverse technical and business stakeholders. Proven technical leadership experience across multiple workstreams or programmes. Additional Skills & Qualifications experience working on large-scale, multi-year transformation programmes in regulated industries. Background in banking or financial services technology environments. Familiarity with core banking systems and large-scale technology estates. experience collaborating with external vendors and reviewing supplier-provided solution designs. experience documenting architecture decision records (ADRs) and maintaining architectural artefacts. Exposure to event-driven and messaging-based integration patterns within security-sensitive environments. experience mentoring engineers and contributing to the development of engineering standards and best practices. Location Sheffield, UK Trading as TEKsystems. Allegis Group Limited, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at our website. To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go our website. We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice on our website for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.
Lead Cyber Security Engineer
PSR Limited
Lead Cyber Security Engineer Division: Data, Technology and Innovation Department: Technology Resilience Salary: National (Edinburgh and Leeds) £60,700-£80,000; London £66,600-£88,000 per annum. About the FCA and team We regulate financial services firms in the UK to keep financial markets fair, thriving and effective. By joining us, you'll play a key part in protecting consumers, driving economic growth and shaping the future of UK finance services. The Data, Technology and Innovation (DTI) division enables the FCA to be a digital first, data led smart regulator by delivering a secure, agile and cost effective technology and data ecosystem that drives better decisions, transparency and operational efficiency. The Technology Resilience team safeguards the FCA's digital assets, services and suppliers to ensure the organisation remains secure and compliant. Role responsibilities Build the development and enhancement of Identity and Access Management security products and automation capabilities, enabling secure and efficient access across critical business applications. Drive the effective onboarding of key applications by delivering robust identity solutions that strengthen security and support organisational objectives. Provide strategic direction on cloud security initiatives, helping to shape technology investment decisions and enhance the value of security capabilities. Build good relationships with stakeholders to address security requirements, manage risk effectively and support business continuity across the organisation. Guide and support cloud security engineering teams, fostering collaboration, knowledge sharing and the delivery of high quality security outcomes. Apply industry insight and awareness of emerging technologies to identify opportunities for continuous improvement in identity and cloud security practices. Influence security priorities by translating complex technical risks into clear recommendations for senior stakeholders and decision makers. Manage the design and implementation of enterprise security products, services, policies and procedures in partnership with cyber security, programme and project teams, helping to strengthen organisational resilience and long term security maturity. Skills required Experience in a security engineering role supporting Enterprise Security services, products and architecture. Extensive IDAM experience in PAM and IGA. Effective communication skills to articulate complex security concepts to technical and non technical stakeholders and leadership abilities to inspire and motivate team members towards common security goals. Managing incidents, problem investigations, undertaking patching & release management activities in addition to managing product risks & mitigation activities. Effective decision making and problem solving skills to address security challenges in dynamic cloud environments. Demonstrated knowledge working with cloud computing environments. Benefits 25 days annual leave plus bank holidays. Hybrid model where employees work a minimum of 40% in the office each month (expectation of 50% for senior leaders). From September, a minimum of 50% in the office each month (expectation of 60% for Directors and Executive Directors). Non contributory pension (8-12% depending on age) and life assurance at eight times your salary. Private healthcare with Bupa, income protection and 24/7 Employee Assistance. 35 hours of paid volunteering annually. A flexible benefits scheme designed around your lifestyle. Our values & culture Our colleagues are the key to our success as a regulator. We are committed to fostering a diverse and inclusive culture that is free from discrimination and bias, celebrates difference and supports colleagues to deliver at their best. We believe that our differences and similarities enable us to be a better organisation - one that makes better decisions, drives innovation and delivers better regulation. Disability Confident: our hiring approach We're proud to be a Disability Confident Employer, and therefore, people or individuals with disabilities and long term conditions who best meet the minimum criteria for a role will go on to the next stage of the recruitment process. In cases of high application volumes, we may progress applicants whose experience most closely matches the role's key requirements. SC Clearance SC Clearance is required for this role (SC Guidance) - you will hold or will be required to obtain Security Check (SC) level vetting.
21/07/2026
Full time
Lead Cyber Security Engineer Division: Data, Technology and Innovation Department: Technology Resilience Salary: National (Edinburgh and Leeds) £60,700-£80,000; London £66,600-£88,000 per annum. About the FCA and team We regulate financial services firms in the UK to keep financial markets fair, thriving and effective. By joining us, you'll play a key part in protecting consumers, driving economic growth and shaping the future of UK finance services. The Data, Technology and Innovation (DTI) division enables the FCA to be a digital first, data led smart regulator by delivering a secure, agile and cost effective technology and data ecosystem that drives better decisions, transparency and operational efficiency. The Technology Resilience team safeguards the FCA's digital assets, services and suppliers to ensure the organisation remains secure and compliant. Role responsibilities Build the development and enhancement of Identity and Access Management security products and automation capabilities, enabling secure and efficient access across critical business applications. Drive the effective onboarding of key applications by delivering robust identity solutions that strengthen security and support organisational objectives. Provide strategic direction on cloud security initiatives, helping to shape technology investment decisions and enhance the value of security capabilities. Build good relationships with stakeholders to address security requirements, manage risk effectively and support business continuity across the organisation. Guide and support cloud security engineering teams, fostering collaboration, knowledge sharing and the delivery of high quality security outcomes. Apply industry insight and awareness of emerging technologies to identify opportunities for continuous improvement in identity and cloud security practices. Influence security priorities by translating complex technical risks into clear recommendations for senior stakeholders and decision makers. Manage the design and implementation of enterprise security products, services, policies and procedures in partnership with cyber security, programme and project teams, helping to strengthen organisational resilience and long term security maturity. Skills required Experience in a security engineering role supporting Enterprise Security services, products and architecture. Extensive IDAM experience in PAM and IGA. Effective communication skills to articulate complex security concepts to technical and non technical stakeholders and leadership abilities to inspire and motivate team members towards common security goals. Managing incidents, problem investigations, undertaking patching & release management activities in addition to managing product risks & mitigation activities. Effective decision making and problem solving skills to address security challenges in dynamic cloud environments. Demonstrated knowledge working with cloud computing environments. Benefits 25 days annual leave plus bank holidays. Hybrid model where employees work a minimum of 40% in the office each month (expectation of 50% for senior leaders). From September, a minimum of 50% in the office each month (expectation of 60% for Directors and Executive Directors). Non contributory pension (8-12% depending on age) and life assurance at eight times your salary. Private healthcare with Bupa, income protection and 24/7 Employee Assistance. 35 hours of paid volunteering annually. A flexible benefits scheme designed around your lifestyle. Our values & culture Our colleagues are the key to our success as a regulator. We are committed to fostering a diverse and inclusive culture that is free from discrimination and bias, celebrates difference and supports colleagues to deliver at their best. We believe that our differences and similarities enable us to be a better organisation - one that makes better decisions, drives innovation and delivers better regulation. Disability Confident: our hiring approach We're proud to be a Disability Confident Employer, and therefore, people or individuals with disabilities and long term conditions who best meet the minimum criteria for a role will go on to the next stage of the recruitment process. In cases of high application volumes, we may progress applicants whose experience most closely matches the role's key requirements. SC Clearance SC Clearance is required for this role (SC Guidance) - you will hold or will be required to obtain Security Check (SC) level vetting.
Hampshire County Council
IT Delivery Architect
Hampshire County Council Winchester, Hampshire
IT Delivery Architect Job Reference: HCC624160 Salary Range: £56,285 - £63,080 per annum, plus Market Supplement of £3,000 per annum available for the right candidate (subject to review) Contract Type: Permanent Are you an experienced IT professional with a passion for architecture, innovation, and designing solutions that make a real difference? Hampshire County Council is looking for an IT Delivery Architect to join our diverse and talented IT Delivery Team, helping us shape the future of our services and improve the lives of people across the county. The Role: As an IT Delivery Architect, you will play a key role in designing high quality, enterprise class solutions that support our business objectives and align with architectural standards. You'll work closely with colleagues across IT and the wider organisation, acting as a trusted advisor and helping to deliver meaningful change across a broad range of council services - including those supporting our most vulnerable residents. You'll collaborate with skilled Technical Specialists and Enterprise Architects to produce fully costed, end to end designs that meet both functional and non functional requirements. This role requires strong experience in Hybrid Cloud environments, spanning technologies such as SaaS, PaaS, IaaS, on premises hosting, application provisioning, system integration, Identity & Access Management (IdAM), Windows Server, firewalls, load balancers, and both cloud and locally hosted databases. What you'll do: Design robust, scalable solutions built on enterprise class platforms. Deliver architecture and design documentation, ensuring alignment with standards. Identify risks, issues, and constraints throughout the project lifecycle. Work with technical and business stakeholders to shape projects from early stages. Support the development of business cases through technical input and solution modelling. Act as a trusted advisor across IT and the wider organisation. Apply your knowledge of new and emerging technologies to identify opportunities for improvement. What we're looking for: You will be a motivated, enthusiastic IT Architect with: Passion for architecture, design, and innovation. Proven experience delivering architectural solutions in fast paced environments. Strong presentation skills and the ability to explain complex ideas simply. Ability to quickly learn new technologies and adapt to different ways of working. Strong problem solving skills and an aptitude for understanding business challenges. Experience in early stage technical shaping and project involvement. Excellent stakeholder management skills and the ability to work independently. Collaborative approach and enjoyment of team discussions and workshops. Senior level technical experience across similar IT domains. Our benefits package includes details of the holiday entitlement, pension scheme, flexi-time scheme, family friendly policies and interest free travel loans and discounts. We offer a flexible, motivating and inclusive workplace. We have created an environment that you can look forward to being a part of, where you are empowered to be your best and a workplace built on teamwork where people can grow and develop in their roles. Hampshire County Council offers a pleasant, supportive, and collaborative working environment. Contact Details for an Informal Discussion: Hampshire County Council is committed to safeguarding and promoting the welfare of children, young people and adults. We expect all employees, workers and volunteers to share this commitment. We will ensure that all our recruitment and selection practices reflect this commitment. In order to combat discrimination, no unnecessary conditions or requirements will be applied which could have a disproportionately adverse effect on any one group. All sections of the population will have equal access to jobs. No applicant or employee will receive less favourable treatment because of age, disability, gender reassignment, race, religion or belief, sex, sexual orientation, marriage or civil partnership and pregnancy or maternity, unless a Genuine Occupational Requirement (GOR) applies. We are a Disability Confident Employer - committed to ensuring that our recruitment and selection process is inclusive and accessible.
18/07/2026
Full time
IT Delivery Architect Job Reference: HCC624160 Salary Range: £56,285 - £63,080 per annum, plus Market Supplement of £3,000 per annum available for the right candidate (subject to review) Contract Type: Permanent Are you an experienced IT professional with a passion for architecture, innovation, and designing solutions that make a real difference? Hampshire County Council is looking for an IT Delivery Architect to join our diverse and talented IT Delivery Team, helping us shape the future of our services and improve the lives of people across the county. The Role: As an IT Delivery Architect, you will play a key role in designing high quality, enterprise class solutions that support our business objectives and align with architectural standards. You'll work closely with colleagues across IT and the wider organisation, acting as a trusted advisor and helping to deliver meaningful change across a broad range of council services - including those supporting our most vulnerable residents. You'll collaborate with skilled Technical Specialists and Enterprise Architects to produce fully costed, end to end designs that meet both functional and non functional requirements. This role requires strong experience in Hybrid Cloud environments, spanning technologies such as SaaS, PaaS, IaaS, on premises hosting, application provisioning, system integration, Identity & Access Management (IdAM), Windows Server, firewalls, load balancers, and both cloud and locally hosted databases. What you'll do: Design robust, scalable solutions built on enterprise class platforms. Deliver architecture and design documentation, ensuring alignment with standards. Identify risks, issues, and constraints throughout the project lifecycle. Work with technical and business stakeholders to shape projects from early stages. Support the development of business cases through technical input and solution modelling. Act as a trusted advisor across IT and the wider organisation. Apply your knowledge of new and emerging technologies to identify opportunities for improvement. What we're looking for: You will be a motivated, enthusiastic IT Architect with: Passion for architecture, design, and innovation. Proven experience delivering architectural solutions in fast paced environments. Strong presentation skills and the ability to explain complex ideas simply. Ability to quickly learn new technologies and adapt to different ways of working. Strong problem solving skills and an aptitude for understanding business challenges. Experience in early stage technical shaping and project involvement. Excellent stakeholder management skills and the ability to work independently. Collaborative approach and enjoyment of team discussions and workshops. Senior level technical experience across similar IT domains. Our benefits package includes details of the holiday entitlement, pension scheme, flexi-time scheme, family friendly policies and interest free travel loans and discounts. We offer a flexible, motivating and inclusive workplace. We have created an environment that you can look forward to being a part of, where you are empowered to be your best and a workplace built on teamwork where people can grow and develop in their roles. Hampshire County Council offers a pleasant, supportive, and collaborative working environment. Contact Details for an Informal Discussion: Hampshire County Council is committed to safeguarding and promoting the welfare of children, young people and adults. We expect all employees, workers and volunteers to share this commitment. We will ensure that all our recruitment and selection practices reflect this commitment. In order to combat discrimination, no unnecessary conditions or requirements will be applied which could have a disproportionately adverse effect on any one group. All sections of the population will have equal access to jobs. No applicant or employee will receive less favourable treatment because of age, disability, gender reassignment, race, religion or belief, sex, sexual orientation, marriage or civil partnership and pregnancy or maternity, unless a Genuine Occupational Requirement (GOR) applies. We are a Disability Confident Employer - committed to ensuring that our recruitment and selection process is inclusive and accessible.
Infrastructure Specialist
3761 Barclays - BX - UK Knutsford, Cheshire
Role Summary Infrastructure Specialist responsible for building and maintaining infrastructure platforms and products that support applications and data systems. Utilize hardware, software, networks, and cloud computing platforms to ensure reliability, scalability and security. Key Responsibilities Build Engineering - develop, deliver, and maintain high quality infrastructure solutions that meet business requirements, ensuring measurable reliability, performance, and availability. Incident Management - monitor IT infrastructure performance, identify and resolve potential issues, vulnerabilities or outages, and use data to reduce mean time to resolution. Automation - design and implement automated tasks and processes to improve efficiency and reduce manual intervention, leveraging scripting and coding disciplines. Security - implement secure configurations and measures to protect infrastructure against cyber attacks, vulnerabilities, and other security threats. Teamwork - collaborate with product managers, architects, and other engineers to define infrastructure requirements, create solutions, and ensure seamless alignment with business objectives. Learning - stay informed of industry technology trends and innovations, and contribute to the organization's technology communities. Support - provide 24x7 support for production systems, including work during standard hours, on call duty, weekends and evenings. Qualifications Expert knowledge of Mainframe security, including RACF administration, management of profiles, user access, permissions, and security policies. Experience performing regular audits and reviews of RACF access controls, and responding to security alerts with root cause analysis and corrective actions. Understanding of Mainframe certificates and cryptography. Experience with security best practices and compliance, and in developing maintenance of security policies. Expert knowledge of Enterprise Security Manager RACF. Proficiency in REXX programming and JCL scripting for automation of security processes and monitoring. Expert knowledge of JCL for secure batch processing and troubleshooting of job failures. Knowledge of Mainframe z/OS architecture and Sysplex. Understanding of IDAM certification (CISSP, CISA, or CISM). Location: Knutsford.
11/07/2026
Full time
Role Summary Infrastructure Specialist responsible for building and maintaining infrastructure platforms and products that support applications and data systems. Utilize hardware, software, networks, and cloud computing platforms to ensure reliability, scalability and security. Key Responsibilities Build Engineering - develop, deliver, and maintain high quality infrastructure solutions that meet business requirements, ensuring measurable reliability, performance, and availability. Incident Management - monitor IT infrastructure performance, identify and resolve potential issues, vulnerabilities or outages, and use data to reduce mean time to resolution. Automation - design and implement automated tasks and processes to improve efficiency and reduce manual intervention, leveraging scripting and coding disciplines. Security - implement secure configurations and measures to protect infrastructure against cyber attacks, vulnerabilities, and other security threats. Teamwork - collaborate with product managers, architects, and other engineers to define infrastructure requirements, create solutions, and ensure seamless alignment with business objectives. Learning - stay informed of industry technology trends and innovations, and contribute to the organization's technology communities. Support - provide 24x7 support for production systems, including work during standard hours, on call duty, weekends and evenings. Qualifications Expert knowledge of Mainframe security, including RACF administration, management of profiles, user access, permissions, and security policies. Experience performing regular audits and reviews of RACF access controls, and responding to security alerts with root cause analysis and corrective actions. Understanding of Mainframe certificates and cryptography. Experience with security best practices and compliance, and in developing maintenance of security policies. Expert knowledge of Enterprise Security Manager RACF. Proficiency in REXX programming and JCL scripting for automation of security processes and monitoring. Expert knowledge of JCL for secure batch processing and troubleshooting of job failures. Knowledge of Mainframe z/OS architecture and Sysplex. Understanding of IDAM certification (CISSP, CISA, or CISM). Location: Knutsford.
GXO Logistics
VP Information Security
GXO Logistics Northampton, Northamptonshire
The Deputy CISO is the CISO's principal delegate and second-in-command, accountable for day-to-day execution of the global cyber security program, team leadership and for elevating security influence across the enterprise. The role ensures cohesive strategy, robust operations, and clear business alignment in a complex logistics environment, including WMS/TMS platforms and warehouse robotics, IoT, and OT. The Deputy CISO strengthens succession planning, executive decision-making, and senior business partnering across the organisation. Operates in a global role, based at either of our UK corporate HQs (London or Northampton). Key Responsibilities: Strategy Support the CISO in translating the enterprise risk appetite into an actionable, outcome-driven security strategy; and support the multi-year roadmap and quarterly OKRs. Chair the executive security governance forums and drive enterprise security governance mechanisms. Architecture & Engineering Oversee Security Architecture and Engineering; ensure "secure-by-default" across cloud, application, data, identity, and infrastructure landscapes. Establish IDAM function with clear RACI and coherent operating model. Govern the security tooling strategy and operating model (build vs. buy vs. MSSP); maximize value from SIEM, SOAR, IAM, PAM, EDR, DLP, DSPM, and CTI platforms. Security Operations & Incident Response Accountable for SOC performance (24 7 detection, response, threat hunting), DFIR, purple-team/assurance, ransomware preparedness, and crisis playbooks. Maintain executive incident communications, regulator notifications, and post-incident improvements. Act as escalation point for any security related service failures or major incidents. Threat and Vulnerability Management Support the TVM team in continuously reducing vulnerability levels in the organisation. Recommend procedural improvements and reporting to drive constant improvement. Drive secure-by-design into applications and ensure all applications and the wider estate are sufficiently tested for signs of vulnerability. Governance, Risk & Compliance (GRC) Ensure audit readiness, control effectiveness (key SOX/ITGC, NIST/ISO mappings), and remediation governance; lead policy lifecycle and attestations. Oversee the enterprise risk process (RCSA, KRIs), executive reporting, and board risk briefings. Improve third-party risk management (carriers, 4PL/3PL partners, SaaS/IaaS providers) and regulatory alignment Business Partnering & PMO Ensure the Business Partnering function embeds security in product/platform roadmaps and regional operations (Americas/EMEA/APAC). Oversee the InfoSec PMO: portfolio selection, prioritization, benefits tracking, and transparent delivery reporting to business and technology leaders. People, Culture & Leadership Provide day-to-day management of InfoSec senior leaders (four directors/senior directors) and their teams; build succession paths, mentorship, and leadership development. Sponsor Security Awareness & Culture programs and executive engagement; promote inclusive, high-performance behaviors. The role has enterprise-wide accountability for the execution of the global cyber security program, ensuring effective risk management, operational resilience, and alignment with business strategy. It influences executive decision-making, enterprise risk posture, and regulatory outcomes across a complex global logistics environment. You will operate in a complex and evolving threat landscape, requiring continuous improvement of security processes, tooling, and operating models. You will address ambiguous and high-impact challenges across technology, risk, and business domains with enterprise-wide implications. The role engages extensively with the CISO, regulators, and senior business and technology leaders. It is responsible for executive-level incident communications, regulatory engagement, and influencing security outcomes across regions and functions. You will provide leadership to senior InfoSec leaders and their teams, supporting performance, development, and succession planning across the global security organisation. Experience and Qualifications Required: 15+ years in information security with progressive leadership; 8+ years leading multi-disciplinary teams across SecOps/IR, GRC, Engineering/Architecture and Business Partnering. Demonstrated success interfacing with boards/executive committees; executive incident leadership and public/regulatory communications. Deep experience in either GRC or technical cyber security. Experience in managing and leading global cross-functional and cross regional tech teams. Experience in Continuous improvement, six sigma or other improvement tools to drive business performance and create value Strong understanding and maturing of IT operating models in matrixed, global environments. Demonstrated success in driving technology standardization and transformation programs. Bachelor's degree in computer science, engineering, or a related field; advanced degree preferred. CISSP (or CISM) Other security certifications. Travel requirement - up to 20% GXO is a leading provider of cutting-edge supply chain solutions to the most successful companies in the world. We help our customers manage their goods most efficiently using our technology and services. Our greatest strength is our global team - energetic, innovative people of all experience levels and talents who make GXO a great place to work. GXO is an equal opportunity employer. We celebrate, support and thrive on diversity and are committed to creating an inclusive environment for all employees. We believe that diversity and inclusion in our business is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool. We are an Armed Forces friendly organisation and Disability Confident Leader as part of the Disability Confident Scheme (GIS) and actively welcome applications from people with disabilities. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All employees may be required to perform duties outside of their normal responsibilities from time to time, as needed. Review GXO's candidate privacy statement
10/07/2026
Full time
The Deputy CISO is the CISO's principal delegate and second-in-command, accountable for day-to-day execution of the global cyber security program, team leadership and for elevating security influence across the enterprise. The role ensures cohesive strategy, robust operations, and clear business alignment in a complex logistics environment, including WMS/TMS platforms and warehouse robotics, IoT, and OT. The Deputy CISO strengthens succession planning, executive decision-making, and senior business partnering across the organisation. Operates in a global role, based at either of our UK corporate HQs (London or Northampton). Key Responsibilities: Strategy Support the CISO in translating the enterprise risk appetite into an actionable, outcome-driven security strategy; and support the multi-year roadmap and quarterly OKRs. Chair the executive security governance forums and drive enterprise security governance mechanisms. Architecture & Engineering Oversee Security Architecture and Engineering; ensure "secure-by-default" across cloud, application, data, identity, and infrastructure landscapes. Establish IDAM function with clear RACI and coherent operating model. Govern the security tooling strategy and operating model (build vs. buy vs. MSSP); maximize value from SIEM, SOAR, IAM, PAM, EDR, DLP, DSPM, and CTI platforms. Security Operations & Incident Response Accountable for SOC performance (24 7 detection, response, threat hunting), DFIR, purple-team/assurance, ransomware preparedness, and crisis playbooks. Maintain executive incident communications, regulator notifications, and post-incident improvements. Act as escalation point for any security related service failures or major incidents. Threat and Vulnerability Management Support the TVM team in continuously reducing vulnerability levels in the organisation. Recommend procedural improvements and reporting to drive constant improvement. Drive secure-by-design into applications and ensure all applications and the wider estate are sufficiently tested for signs of vulnerability. Governance, Risk & Compliance (GRC) Ensure audit readiness, control effectiveness (key SOX/ITGC, NIST/ISO mappings), and remediation governance; lead policy lifecycle and attestations. Oversee the enterprise risk process (RCSA, KRIs), executive reporting, and board risk briefings. Improve third-party risk management (carriers, 4PL/3PL partners, SaaS/IaaS providers) and regulatory alignment Business Partnering & PMO Ensure the Business Partnering function embeds security in product/platform roadmaps and regional operations (Americas/EMEA/APAC). Oversee the InfoSec PMO: portfolio selection, prioritization, benefits tracking, and transparent delivery reporting to business and technology leaders. People, Culture & Leadership Provide day-to-day management of InfoSec senior leaders (four directors/senior directors) and their teams; build succession paths, mentorship, and leadership development. Sponsor Security Awareness & Culture programs and executive engagement; promote inclusive, high-performance behaviors. The role has enterprise-wide accountability for the execution of the global cyber security program, ensuring effective risk management, operational resilience, and alignment with business strategy. It influences executive decision-making, enterprise risk posture, and regulatory outcomes across a complex global logistics environment. You will operate in a complex and evolving threat landscape, requiring continuous improvement of security processes, tooling, and operating models. You will address ambiguous and high-impact challenges across technology, risk, and business domains with enterprise-wide implications. The role engages extensively with the CISO, regulators, and senior business and technology leaders. It is responsible for executive-level incident communications, regulatory engagement, and influencing security outcomes across regions and functions. You will provide leadership to senior InfoSec leaders and their teams, supporting performance, development, and succession planning across the global security organisation. Experience and Qualifications Required: 15+ years in information security with progressive leadership; 8+ years leading multi-disciplinary teams across SecOps/IR, GRC, Engineering/Architecture and Business Partnering. Demonstrated success interfacing with boards/executive committees; executive incident leadership and public/regulatory communications. Deep experience in either GRC or technical cyber security. Experience in managing and leading global cross-functional and cross regional tech teams. Experience in Continuous improvement, six sigma or other improvement tools to drive business performance and create value Strong understanding and maturing of IT operating models in matrixed, global environments. Demonstrated success in driving technology standardization and transformation programs. Bachelor's degree in computer science, engineering, or a related field; advanced degree preferred. CISSP (or CISM) Other security certifications. Travel requirement - up to 20% GXO is a leading provider of cutting-edge supply chain solutions to the most successful companies in the world. We help our customers manage their goods most efficiently using our technology and services. Our greatest strength is our global team - energetic, innovative people of all experience levels and talents who make GXO a great place to work. GXO is an equal opportunity employer. We celebrate, support and thrive on diversity and are committed to creating an inclusive environment for all employees. We believe that diversity and inclusion in our business is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool. We are an Armed Forces friendly organisation and Disability Confident Leader as part of the Disability Confident Scheme (GIS) and actively welcome applications from people with disabilities. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All employees may be required to perform duties outside of their normal responsibilities from time to time, as needed. Review GXO's candidate privacy statement
Senior IDAM Architect - Defence & Security (DV)
慨正橡扯 Farnborough, Hampshire
DXC Technology is seeking an IDAM Architect to design and govern enterprise scale identity and access management for defence and aerospace contexts. You will lead modernisation programs, architect authentication, authorization and governance, and ensure compliance with MOD security standards. You will guide cloud/hybrid identity, RBAC/ABAC, and PAM strategies while coordinating with customers and stakeholders. This demanding role requires senior expertise and DV clearance.
10/07/2026
Full time
DXC Technology is seeking an IDAM Architect to design and govern enterprise scale identity and access management for defence and aerospace contexts. You will lead modernisation programs, architect authentication, authorization and governance, and ensure compliance with MOD security standards. You will guide cloud/hybrid identity, RBAC/ABAC, and PAM strategies while coordinating with customers and stakeholders. This demanding role requires senior expertise and DV clearance.
IDAM Architect, Farnborough
慨正橡扯 Farnborough, Hampshire
Job Description: Location: Farnborough, Hampshire, UK Employment Type: Permanent, Full-Time Security Clearance: Developed Vetting (DV) - Essential About DXC Technology DXC Technology is a Fortune 500 company with over 40 years' UK presence, recently establishing its Aerospace and Defence Hub in Farnborough. We deliver secure identity, access and data management solutions enabling defence and aerospace organisations to operate securely at scale. About the Role The IDAM (Identity, Access and Data Management) Architect designs, governs and implements enterprise scale identity and access management solutions for defence and aerospace environments. You will architect secure authentication, authorisation and identity governance frameworks, lead IDAM modernisation programmes, and ensure compliance with stringent defence security and regulatory requirements. This role demands deep expertise in identity platforms, security architecture and MOD compliant IDAM design. Key Responsibilities IDAM Architecture & Strategy Design enterprise scale identity and access management architectures supporting defence operations Architect secure authentication, multi factor authentication (MFA) and authorisation frameworks Design role based access control (RBAC), attribute based access control (ABAC) and privilege access management (PAM) solutions Develop identity governance, access lifecycle management and entitlement management strategies Lead IDAM technology evaluation and vendor selection processes Security & Compliance Ensure IDAM architectures comply with MOD Classification Guides, Defence Security Policy and ITAR regulations Design identity solutions supporting defence contractor personnel vetting (PRF) requirements Architect data protection and encryption strategies aligned with defence security standards Lead security risk assessments for IDAM systems and vulnerabilities Design audit and logging capabilities supporting MOD compliance and forensic requirements IDAM Modernisation & Implementation Lead design and implementation of modern IDAM platforms (AD/Azure AD, Okta, Ping, ForgeRock) Design cloud ready and hybrid identity solutions supporting multi cloud environments Guide API driven identity architecture and microservices based identity solutions Lead IDAM system migrations and technology modernisation programmes Technical Leadership & Governance Lead IDAM technical teams and provide architectural mentoring Establish IDAM design standards, architecture patterns and operational governance Drive technical decision making through IDAM design reviews Document IDAM architecture decisions and design specifications Integration & Operations Design IDAM integration with enterprise applications, systems and cloud platforms Architect identity federation, single sign on (SSO) and cross domain authentication Support IDAM operational readiness, performance monitoring and incident response Establish IDAM lifecycle management and continuous improvement processes Customer & Stakeholder Engagement Serve as technical authority for IDAM architecture discussions with customer leadership Present identity and access management recommendations to defence programme teams Lead IDAM design workshops and customer validation activities Essential Requirements Security Clearance Must hold or be eligible to obtain DV clearance - Essential 10 years continuous UK residency required Experience & Expertise Minimum 12 years' identity and access management experience with 5+ years in architecture role Proven experience designing enterprise scale IDAM solutions Strong background in defence, aerospace or government IDAM programmes Demonstrated expertise with modern identity platforms (Azure AD, Okta, Ping, ForgeRock) Track record of leading IDAM modernisation and technology transformation programmes Technical Knowledge Deep expertise in IDAM architecture patterns, methodologies and best practices Expert level knowledge of identity technologies including LDAP, Active Directory, OAuth, SAML and OpenID Connect Strong understanding of Azure AD, Office 365 identity, hybrid identity and cloud native identity solutions Proficiency in privilege access management (PAM), role/attribute based access control (RBAC/ABAC) Knowledge of identity governance, access certification and entitlement management Expertise in API security, service to service authentication and microservices identity Familiarity with MOD security requirements, Classification Guides and defence compliance Understanding of cryptography, encryption and security protocols Personal Attributes Exceptional strategic thinking with strong technical depth Outstanding communication and stakeholder engagement skills Strong problem solving and analytical capabilities Proven ability to lead technical teams and influence senior stakeholders Commitment to security and compliance excellence Desirable Requirements Experience with defence or aerospace IDAM programmes CISSP, CISM or equivalent security certifications Azure AD or Okta advanced certifications Experience with identity driven security and zero trust architecture Knowledge of ITAR compliance and export controls What We Offer Highly competitive salary and comprehensive benefits package Enhanced pension and private medical insurance Flexible working and professional development support Opportunity to architect critical identity systems for major defence organisations Application Process & Security Vetting Existing DV clearance is essential. Applicants must have 10 years continuous UK residency. At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritises in person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We're committed to fostering an inclusive environment where everyone can thrive. Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
10/07/2026
Full time
Job Description: Location: Farnborough, Hampshire, UK Employment Type: Permanent, Full-Time Security Clearance: Developed Vetting (DV) - Essential About DXC Technology DXC Technology is a Fortune 500 company with over 40 years' UK presence, recently establishing its Aerospace and Defence Hub in Farnborough. We deliver secure identity, access and data management solutions enabling defence and aerospace organisations to operate securely at scale. About the Role The IDAM (Identity, Access and Data Management) Architect designs, governs and implements enterprise scale identity and access management solutions for defence and aerospace environments. You will architect secure authentication, authorisation and identity governance frameworks, lead IDAM modernisation programmes, and ensure compliance with stringent defence security and regulatory requirements. This role demands deep expertise in identity platforms, security architecture and MOD compliant IDAM design. Key Responsibilities IDAM Architecture & Strategy Design enterprise scale identity and access management architectures supporting defence operations Architect secure authentication, multi factor authentication (MFA) and authorisation frameworks Design role based access control (RBAC), attribute based access control (ABAC) and privilege access management (PAM) solutions Develop identity governance, access lifecycle management and entitlement management strategies Lead IDAM technology evaluation and vendor selection processes Security & Compliance Ensure IDAM architectures comply with MOD Classification Guides, Defence Security Policy and ITAR regulations Design identity solutions supporting defence contractor personnel vetting (PRF) requirements Architect data protection and encryption strategies aligned with defence security standards Lead security risk assessments for IDAM systems and vulnerabilities Design audit and logging capabilities supporting MOD compliance and forensic requirements IDAM Modernisation & Implementation Lead design and implementation of modern IDAM platforms (AD/Azure AD, Okta, Ping, ForgeRock) Design cloud ready and hybrid identity solutions supporting multi cloud environments Guide API driven identity architecture and microservices based identity solutions Lead IDAM system migrations and technology modernisation programmes Technical Leadership & Governance Lead IDAM technical teams and provide architectural mentoring Establish IDAM design standards, architecture patterns and operational governance Drive technical decision making through IDAM design reviews Document IDAM architecture decisions and design specifications Integration & Operations Design IDAM integration with enterprise applications, systems and cloud platforms Architect identity federation, single sign on (SSO) and cross domain authentication Support IDAM operational readiness, performance monitoring and incident response Establish IDAM lifecycle management and continuous improvement processes Customer & Stakeholder Engagement Serve as technical authority for IDAM architecture discussions with customer leadership Present identity and access management recommendations to defence programme teams Lead IDAM design workshops and customer validation activities Essential Requirements Security Clearance Must hold or be eligible to obtain DV clearance - Essential 10 years continuous UK residency required Experience & Expertise Minimum 12 years' identity and access management experience with 5+ years in architecture role Proven experience designing enterprise scale IDAM solutions Strong background in defence, aerospace or government IDAM programmes Demonstrated expertise with modern identity platforms (Azure AD, Okta, Ping, ForgeRock) Track record of leading IDAM modernisation and technology transformation programmes Technical Knowledge Deep expertise in IDAM architecture patterns, methodologies and best practices Expert level knowledge of identity technologies including LDAP, Active Directory, OAuth, SAML and OpenID Connect Strong understanding of Azure AD, Office 365 identity, hybrid identity and cloud native identity solutions Proficiency in privilege access management (PAM), role/attribute based access control (RBAC/ABAC) Knowledge of identity governance, access certification and entitlement management Expertise in API security, service to service authentication and microservices identity Familiarity with MOD security requirements, Classification Guides and defence compliance Understanding of cryptography, encryption and security protocols Personal Attributes Exceptional strategic thinking with strong technical depth Outstanding communication and stakeholder engagement skills Strong problem solving and analytical capabilities Proven ability to lead technical teams and influence senior stakeholders Commitment to security and compliance excellence Desirable Requirements Experience with defence or aerospace IDAM programmes CISSP, CISM or equivalent security certifications Azure AD or Okta advanced certifications Experience with identity driven security and zero trust architecture Knowledge of ITAR compliance and export controls What We Offer Highly competitive salary and comprehensive benefits package Enhanced pension and private medical insurance Flexible working and professional development support Opportunity to architect critical identity systems for major defence organisations Application Process & Security Vetting Existing DV clearance is essential. Applicants must have 10 years continuous UK residency. At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritises in person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We're committed to fostering an inclusive environment where everyone can thrive. Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
CyberArk Secret Manager Engineer (AAM) - CISO / IDAM
Salt Digital Recruitment
Overview We are supporting a leading global financial market infrastructure organisation within their CISO division, currently undergoing a major Privileged Access Management (PAM) transformation. As part of this initiative, they are deploying CyberArk Secret Manager (Application Access Manager - AAM) across a complex enterprise environment. This is a hands-on, delivery-focused role where you will take ownership of the end-to-end deployment, configuration, and integration of CyberArk Secret Manager components across both on-prem and cloud environments. Key Responsibilities Deploy, configure, and integrate CyberArk Secret Manager (AAM) components: Credential Provider (CP), Central Credential Provider (CCP), Application Service Credential Provider (ASCP). Design and implement solutions for secure management of service and application accounts. Integrate CyberArk with applications, middleware, databases, and enterprise systems. Configure and manage Safes, platforms, and access control policies. Ensure adherence to the principle of least privilege. Automate processes using PowerShell, Bash, REST APIs, and Ansible. Troubleshoot and resolve complex integration and authentication issues. Collaborate with application and infrastructure teams to enable secure-by-design practices. Produce technical documentation, including architecture diagrams and runbooks. Required Experience Strong hands-on experience with CyberArk Secret Manager / AAM. Proven experience implementing CP, CCP, and ASCP components. Solid background in CyberArk PAM administration: Safes, platforms, permissions, onboarding. Experience integrating CyberArk with enterprise applications and systems. Strong scripting and automation skills (PowerShell, Bash, REST APIs). Experience with Ansible automation. Good understanding of Windows and Linux environments. Solid knowledge of networking and security fundamentals. Key Attributes Able to work independently and take ownership of deliverables. Strong problem-solving and troubleshooting skills. Comfortable working in a fast-paced, project-driven environment. Excellent communication and stakeholder engagement skills. Why Apply? Work on a large-scale CyberArk Secret Manager deployment. Be part of a high-performing CISO / IDAM team. Exposure to complex enterprise and financial services environments. Flexible hybrid working model across multiple European locations. Opportunity to drive automation and modern PAM practices. Rates depend on experience and client requirements.
07/07/2026
Full time
Overview We are supporting a leading global financial market infrastructure organisation within their CISO division, currently undergoing a major Privileged Access Management (PAM) transformation. As part of this initiative, they are deploying CyberArk Secret Manager (Application Access Manager - AAM) across a complex enterprise environment. This is a hands-on, delivery-focused role where you will take ownership of the end-to-end deployment, configuration, and integration of CyberArk Secret Manager components across both on-prem and cloud environments. Key Responsibilities Deploy, configure, and integrate CyberArk Secret Manager (AAM) components: Credential Provider (CP), Central Credential Provider (CCP), Application Service Credential Provider (ASCP). Design and implement solutions for secure management of service and application accounts. Integrate CyberArk with applications, middleware, databases, and enterprise systems. Configure and manage Safes, platforms, and access control policies. Ensure adherence to the principle of least privilege. Automate processes using PowerShell, Bash, REST APIs, and Ansible. Troubleshoot and resolve complex integration and authentication issues. Collaborate with application and infrastructure teams to enable secure-by-design practices. Produce technical documentation, including architecture diagrams and runbooks. Required Experience Strong hands-on experience with CyberArk Secret Manager / AAM. Proven experience implementing CP, CCP, and ASCP components. Solid background in CyberArk PAM administration: Safes, platforms, permissions, onboarding. Experience integrating CyberArk with enterprise applications and systems. Strong scripting and automation skills (PowerShell, Bash, REST APIs). Experience with Ansible automation. Good understanding of Windows and Linux environments. Solid knowledge of networking and security fundamentals. Key Attributes Able to work independently and take ownership of deliverables. Strong problem-solving and troubleshooting skills. Comfortable working in a fast-paced, project-driven environment. Excellent communication and stakeholder engagement skills. Why Apply? Work on a large-scale CyberArk Secret Manager deployment. Be part of a high-performing CISO / IDAM team. Exposure to complex enterprise and financial services environments. Flexible hybrid working model across multiple European locations. Opportunity to drive automation and modern PAM practices. Rates depend on experience and client requirements.
JAM Recruitment Ltd
Cyber Security Architect
JAM Recruitment Ltd Penwortham, Lancashire
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
06/07/2026
Contractor
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
Infrastructure Specialist
慨正橡扯 Knutsford, Cheshire
Join us as an Infrastructure Specialist at Barclays working with the Mainframe Security Engineering Team, where you'll build and maintain infrastructure platforms and products that support applications and data systems. You will use hardware, software, networks, and cloud computing platforms as required, with the aim of ensuring that the infrastructure is reliable, scalable, and secure. The team provides 24x7 support for Production systems so you will be expected to work both standard hours and on an on-call basis, weekends, and evenings. To be successful in this role you should have: Expert knowledge of Mainframe security, including: RACF administration and the management of RACF profiles, user access, and permissions. The implementation and maintenance of RACF security policies and procedures to ensure data protection. Performance of regular audits and reviews of RACF access controls, resolving any security issues. Monitoring and response to security alerts; performing root cause analysis and implementing corrective actions. Understanding the implementation of Mainframe Certificates and Mainframe cryptography. Experience of Security Best Practices and Compliance, assisting in the development and maintenance of security policies and procedures. Knowledge of Enterprise Security Manager RACF. Expert knowledge of REXX programming, including: Proficiency in the development and maintenance of REXX and JCL scripts for the automation of security processes and monitoring. Allowing for the enhancement of system efficiency through scripting to support security operations. Working with development teams to optimize scripts for performance and maintainability. Expert knowledge of JCL, including: The creation, maintenance and troubleshooting of JCL scripts for batch processing in a secure manner. Ensuring that JCL scripts adhere to security best practices and company standards. Collaboration with the operations team to support job execution and resolve job failures. Some other highly valued skills may include: Knowledge of Mainframe z/OS architecture and Sysplex. Understanding of IDAM Certification - CISSP / CISA / CISM You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills. This role will be based out of our Knutsford location. Purpose of the role To build and maintain infrastructure platforms and products that support applications and data systems, using hardware, software, networks, and cloud computing platforms as required with the aim of ensuring that the infrastructure is reliable, scalable, and secure. Ensure the reliability, availability, and scalability of the systems, platforms, and technology through the application of software engineering techniques, automation, and best practices in incident response. Accountabilities Build Engineering: Development, delivery, and maintenance of high-quality infrastructure solutions to fulfil business requirements ensuring measurable reliability, performance, availability, and ease of use. Including the identification of the appropriate technologies and solutions to meet business, optimisation, and resourcing requirements. Incident Management: Monitoring of IT infrastructure and system performance to measure, identify, address, and resolve any potential issues, vulnerabilities, or outages. Use of data to drive down mean time to resolution. Automation: Development and implementation of automated tasks and processes to improve efficiency and reduce manual intervention, utilising software scripting/coding disciplines. Security: Implementation of a secure configuration and measures to protect infrastructure against cyber-attacks, vulnerabilities, and other security threats, including protection of hardware, software, and data from unauthorised access. Teamwork: Cross-functional collaboration with product managers, architects, and other engineers to define IT Infrastructure requirements, devise solutions, and ensure seamless integration and alignment with business objectives via a data driven approach. Learning: Stay informed of industry technology trends and innovations, and actively contribute to the organization's technology communities to foster a culture of technical excellence and growth. Assistant Vice President Expectations To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/ business divisions. Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/ or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes. Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues. Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda. Take ownership for managing risk and strengthening controls in relation to the work done. Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy. Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively. Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience. Influence or convince stakeholders to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
06/07/2026
Full time
Join us as an Infrastructure Specialist at Barclays working with the Mainframe Security Engineering Team, where you'll build and maintain infrastructure platforms and products that support applications and data systems. You will use hardware, software, networks, and cloud computing platforms as required, with the aim of ensuring that the infrastructure is reliable, scalable, and secure. The team provides 24x7 support for Production systems so you will be expected to work both standard hours and on an on-call basis, weekends, and evenings. To be successful in this role you should have: Expert knowledge of Mainframe security, including: RACF administration and the management of RACF profiles, user access, and permissions. The implementation and maintenance of RACF security policies and procedures to ensure data protection. Performance of regular audits and reviews of RACF access controls, resolving any security issues. Monitoring and response to security alerts; performing root cause analysis and implementing corrective actions. Understanding the implementation of Mainframe Certificates and Mainframe cryptography. Experience of Security Best Practices and Compliance, assisting in the development and maintenance of security policies and procedures. Knowledge of Enterprise Security Manager RACF. Expert knowledge of REXX programming, including: Proficiency in the development and maintenance of REXX and JCL scripts for the automation of security processes and monitoring. Allowing for the enhancement of system efficiency through scripting to support security operations. Working with development teams to optimize scripts for performance and maintainability. Expert knowledge of JCL, including: The creation, maintenance and troubleshooting of JCL scripts for batch processing in a secure manner. Ensuring that JCL scripts adhere to security best practices and company standards. Collaboration with the operations team to support job execution and resolve job failures. Some other highly valued skills may include: Knowledge of Mainframe z/OS architecture and Sysplex. Understanding of IDAM Certification - CISSP / CISA / CISM You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills. This role will be based out of our Knutsford location. Purpose of the role To build and maintain infrastructure platforms and products that support applications and data systems, using hardware, software, networks, and cloud computing platforms as required with the aim of ensuring that the infrastructure is reliable, scalable, and secure. Ensure the reliability, availability, and scalability of the systems, platforms, and technology through the application of software engineering techniques, automation, and best practices in incident response. Accountabilities Build Engineering: Development, delivery, and maintenance of high-quality infrastructure solutions to fulfil business requirements ensuring measurable reliability, performance, availability, and ease of use. Including the identification of the appropriate technologies and solutions to meet business, optimisation, and resourcing requirements. Incident Management: Monitoring of IT infrastructure and system performance to measure, identify, address, and resolve any potential issues, vulnerabilities, or outages. Use of data to drive down mean time to resolution. Automation: Development and implementation of automated tasks and processes to improve efficiency and reduce manual intervention, utilising software scripting/coding disciplines. Security: Implementation of a secure configuration and measures to protect infrastructure against cyber-attacks, vulnerabilities, and other security threats, including protection of hardware, software, and data from unauthorised access. Teamwork: Cross-functional collaboration with product managers, architects, and other engineers to define IT Infrastructure requirements, devise solutions, and ensure seamless integration and alignment with business objectives via a data driven approach. Learning: Stay informed of industry technology trends and innovations, and actively contribute to the organization's technology communities to foster a culture of technical excellence and growth. Assistant Vice President Expectations To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/ business divisions. Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/ or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes. Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues. Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda. Take ownership for managing risk and strengthening controls in relation to the work done. Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy. Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively. Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience. Influence or convince stakeholders to achieve outcomes. All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship - our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset - to Empower, Challenge and Drive - the operating manual for how we behave.
VP Information Security
GXO Logistics, Inc
The Deputy CISO is the CISO's principal delegate and second in command, accountable for day to day execution of the global cyber security program, team leadership and for elevating security influence across the enterprise. The role ensures cohesive strategy, robust operations, and clear business alignment in a complex logistics environment, including WMS/TMS platforms and warehouse robotics, IoT, and OT. The Deputy CISO strengthens succession planning, executive decision making, and senior business partnering across the organisation. Operates in a global role, based at either of our UK corporate HQs (London or Northampton). Key Responsibilities Support the CISO in translating the enterprise risk appetite into an actionable, outcome driven security strategy; and support the multi year roadmap and quarterly OKRs. Chair the executive security governance forums and drive enterprise security governance mechanisms. Architecture & Engineering Oversee Security Architecture and Engineering; ensure "secure by default" across cloud, application, data, identity, and infrastructure landscapes. Establish IDAM function with clear RACI and coherent operating model. Govern the security tooling strategy and operating model (build vs. buy vs. MSSP); maximize value from SIEM, SOAR, IAM, PAM, EDR, DLP, DSPM, and CTI platforms. Security Operations & Incident Response Accountable for SOC performance (24 7 detection, response, threat hunting), DFIR, purple team/assurance, ransomware preparedness, and crisis playbooks. Maintain executive incident communications, regulator notifications, and post incident improvements. Act as escalation point for any security related service failures or major incidents. Threat and Vulnerability Management Support the TVM team in continuously reducing vulnerability levels in the organisation. Recommend procedural improvements and reporting to drive constant improvement. Drive secure by design into applications and ensure all applications and the wider estate are sufficiently tested for signs of vulnerability. Governance, Risk & Compliance (GRC) Ensure audit readiness, control effectiveness (key SOX/ITGC, NIST/ISO mappings), and remediation governance; lead policy lifecycle and attestations. Oversee the enterprise risk process (RCSA, KRIs), executive reporting, and board risk briefings. Improve third party risk management (carriers, 4PL/3PL partners, SaaS/IaaS providers) and regulatory alignment. Business Partnering & PMO Ensure the Business Partnering function embeds security in product/platform roadmaps and regional operations (Americas/EMEA/APAC). Oversee the InfoSec PMO: portfolio selection, prioritization, benefits tracking, and transparent delivery reporting to business and technology leaders. Provide day to day management of InfoSec senior leaders (four directors/senior directors) and their teams; build succession paths, mentorship, and leadership development. Sponsor Security Awareness & Culture programs and executive engagement; promote inclusive, high performance behaviors. The role has enterprise wide accountability for the execution of the global cyber security program, ensuring effective risk management, operational resilience, and alignment with business strategy. It influences executive decision making, enterprise risk posture, and regulatory outcomes across a complex global logistics environment. You will operate in a complex and evolving threat landscape, requiring continuous improvement of security processes, tooling, and operating models. You will address ambiguous and high impact challenges across technology, risk, and business domains with enterprise wide implications. The role engages extensively with the CISO, regulators, and senior business and technology leaders. It is responsible for executive level incident communications, regulatory engagement, and influencing security outcomes across regions and functions. You will provide leadership to senior InfoSec leaders and their teams, supporting performance, development, and succession planning across the global security organisation. Experience and Qualifications Required 15+ years in information security with progressive leadership; 8+ years leading multi disciplinary teams across SecOps/IR, GRC, Engineering/Architecture and Business Partnering. Demonstrated success interfacing with boards/executive committees; executive incident leadership and public/regulatory communications. Deep experience in either GRC or technical cyber security. Experience in managing and leading global cross functional and cross regional tech teams. Experience in Continuous improvement, Six Sigma or other improvement tools to drive business performance and create value. Strong understanding and maturing of IT operating models in matrixed, global environments. Demonstrated success in driving technology standardization and transformation programs. Bachelor's degree in computer science, engineering, or a related field; advanced degree preferred. CISSP (or CISM). Other security certifications. Travel requirement - up to 20%. GXO is an equal opportunity employer. We celebrate, support and thrive on diversity and are committed to creating an inclusive environment for all employees. We believe that diversity and inclusion in our business is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool. We are an Armed Forces friendly organisation and Disability Confident Leader as part of the Disability Confident Scheme (GIS) and actively welcome applications from people with disabilities.
04/07/2026
Full time
The Deputy CISO is the CISO's principal delegate and second in command, accountable for day to day execution of the global cyber security program, team leadership and for elevating security influence across the enterprise. The role ensures cohesive strategy, robust operations, and clear business alignment in a complex logistics environment, including WMS/TMS platforms and warehouse robotics, IoT, and OT. The Deputy CISO strengthens succession planning, executive decision making, and senior business partnering across the organisation. Operates in a global role, based at either of our UK corporate HQs (London or Northampton). Key Responsibilities Support the CISO in translating the enterprise risk appetite into an actionable, outcome driven security strategy; and support the multi year roadmap and quarterly OKRs. Chair the executive security governance forums and drive enterprise security governance mechanisms. Architecture & Engineering Oversee Security Architecture and Engineering; ensure "secure by default" across cloud, application, data, identity, and infrastructure landscapes. Establish IDAM function with clear RACI and coherent operating model. Govern the security tooling strategy and operating model (build vs. buy vs. MSSP); maximize value from SIEM, SOAR, IAM, PAM, EDR, DLP, DSPM, and CTI platforms. Security Operations & Incident Response Accountable for SOC performance (24 7 detection, response, threat hunting), DFIR, purple team/assurance, ransomware preparedness, and crisis playbooks. Maintain executive incident communications, regulator notifications, and post incident improvements. Act as escalation point for any security related service failures or major incidents. Threat and Vulnerability Management Support the TVM team in continuously reducing vulnerability levels in the organisation. Recommend procedural improvements and reporting to drive constant improvement. Drive secure by design into applications and ensure all applications and the wider estate are sufficiently tested for signs of vulnerability. Governance, Risk & Compliance (GRC) Ensure audit readiness, control effectiveness (key SOX/ITGC, NIST/ISO mappings), and remediation governance; lead policy lifecycle and attestations. Oversee the enterprise risk process (RCSA, KRIs), executive reporting, and board risk briefings. Improve third party risk management (carriers, 4PL/3PL partners, SaaS/IaaS providers) and regulatory alignment. Business Partnering & PMO Ensure the Business Partnering function embeds security in product/platform roadmaps and regional operations (Americas/EMEA/APAC). Oversee the InfoSec PMO: portfolio selection, prioritization, benefits tracking, and transparent delivery reporting to business and technology leaders. Provide day to day management of InfoSec senior leaders (four directors/senior directors) and their teams; build succession paths, mentorship, and leadership development. Sponsor Security Awareness & Culture programs and executive engagement; promote inclusive, high performance behaviors. The role has enterprise wide accountability for the execution of the global cyber security program, ensuring effective risk management, operational resilience, and alignment with business strategy. It influences executive decision making, enterprise risk posture, and regulatory outcomes across a complex global logistics environment. You will operate in a complex and evolving threat landscape, requiring continuous improvement of security processes, tooling, and operating models. You will address ambiguous and high impact challenges across technology, risk, and business domains with enterprise wide implications. The role engages extensively with the CISO, regulators, and senior business and technology leaders. It is responsible for executive level incident communications, regulatory engagement, and influencing security outcomes across regions and functions. You will provide leadership to senior InfoSec leaders and their teams, supporting performance, development, and succession planning across the global security organisation. Experience and Qualifications Required 15+ years in information security with progressive leadership; 8+ years leading multi disciplinary teams across SecOps/IR, GRC, Engineering/Architecture and Business Partnering. Demonstrated success interfacing with boards/executive committees; executive incident leadership and public/regulatory communications. Deep experience in either GRC or technical cyber security. Experience in managing and leading global cross functional and cross regional tech teams. Experience in Continuous improvement, Six Sigma or other improvement tools to drive business performance and create value. Strong understanding and maturing of IT operating models in matrixed, global environments. Demonstrated success in driving technology standardization and transformation programs. Bachelor's degree in computer science, engineering, or a related field; advanced degree preferred. CISSP (or CISM). Other security certifications. Travel requirement - up to 20%. GXO is an equal opportunity employer. We celebrate, support and thrive on diversity and are committed to creating an inclusive environment for all employees. We believe that diversity and inclusion in our business is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool. We are an Armed Forces friendly organisation and Disability Confident Leader as part of the Disability Confident Scheme (GIS) and actively welcome applications from people with disabilities.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board