it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

10 jobs found

Email me jobs like this
Refine Search
Current Search
security engineer defender sentinel entra iam
Xcede Recruitment Solutions
Security Engineer: Defender, Sentinel & Entra IAM
Xcede Recruitment Solutions
Xcede Recruitment Solutions is seeking an experienced Microsoft Security Engineer to join a high-profile cybersecurity programme in Greater London. This hands-on engineering role focuses on the design, implementation, and optimisation of security solutions across the Microsoft security ecosystem. The successful candidate will engineer enterprise-grade security solutions using Microsoft Defender, Sentinel, and Entra ID, and improve endpoint security posture. Experience in financial services or highly regulated environments is desirable.
10/07/2026
Full time
Xcede Recruitment Solutions is seeking an experienced Microsoft Security Engineer to join a high-profile cybersecurity programme in Greater London. This hands-on engineering role focuses on the design, implementation, and optimisation of security solutions across the Microsoft security ecosystem. The successful candidate will engineer enterprise-grade security solutions using Microsoft Defender, Sentinel, and Entra ID, and improve endpoint security posture. Experience in financial services or highly regulated environments is desirable.
Cyber Technical Delivery Manager
Vanquish Tech
Cyber Technical Delivery Manager Location: London (Hybrid - 4 Days per Week Onsite) Contract Length:12 Months Engagement:Inside IR35 Industry:Investment Banking / Financial Services Start Date:ASAP Overview We are supporting a leading investment banking client in London who is seeking an experienced Cyber Technical Delivery Manager to join a large-scale Cyber Security Transformation Programme. This role will be responsible for the successful delivery of complex cyber security initiatives across multiple technology domains, including Identity & Access Management (IAM), Security Operations, Cloud Security, Vulnerability Management, Data Protection, and Regulatory Compliance. The successful candidate will act as the bridge between technical engineering teams, cyber security stakeholders, business leaders, and third-party vendors, ensuring projects are delivered on time, within budget, and in line with regulatory and security requirements. Key Responsibilities Programme & Project Delivery Lead the end-to-end delivery of cyber security projects and workstreams. Develop and maintain project plans, milestones, RAID logs, budgets, and resource plans. Ensure delivery aligns with business objectives, security standards, and regulatory requirements. Manage dependencies across multiple technology and business teams. Drive project governance and reporting activities. Cyber Security Delivery Deliver initiatives across: Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with senior stakeholders across Cyber Security, Infrastructure, Cloud, Risk, Compliance, and Business Functions. Provide regular programme updates to senior management and governance forums. Manage relationships with third-party suppliers and technology vendors. Facilitate workshops, steering committees, and technical review sessions. Risk & Governance Identify, manage, and mitigate project risks and issues. Ensure compliance with internal security policies and regulatory frameworks. Support audit, risk, and compliance activities. Track and report programme KPIs and delivery metrics. Requirements Required Skills & Experience Cyber Security Experience Strong understanding of enterprise cyber security principles and controls. Experience delivering projects involving: IAM and Access Governance PAM Solutions SIEM and Security Monitoring Cloud Security Endpoint Security Vulnerability Management Data Protection Security Compliance Programmes Familiarity with security frameworks and standards such as: NIST ISO 27001 CIS Controls Cyber Essentials Regulatory requirements within Financial Services Technical Knowledge Good understanding of: Microsoft Azure AWS Active Directory / Entra ID Security Monitoring Platforms Identity Management Solutions Network and Infrastructure Security Ability to engage effectively with technical architects, engineers, and security specialists. Delivery Management Proven experience delivering complex technology or cyber programmes within large enterprise environments. Strong project and programme management experience. Experience managing multiple workstreams simultaneously. Excellent RAID management and governance skills. Strong budget and financial management experience. Essential Experience Previous experience working within Investment Banking, Banking, or Financial Services. Experience delivering cyber security transformation programmes. Experience operating within regulated environments. Strong stakeholder management skills with the ability to engage at Executive and C-Level. Experience managing third-party suppliers and system integrators. Desirable Skills Experience with: Microsoft Sentinel Splunk SailPoint CyberArk Okta CrowdStrike Microsoft Defender Suite Knowledge of DevSecOps practices. Exposure to cloud migration and security transformation programmes. Experience supporting regulatory remediation initiatives. Qualifications & Certifications One or more of the following would be advantageous: PRINCE2 Practitioner PMP Agile Practitioner / Scrum Certification CISSP CISM CISA CRISC Personal Attributes Strong leadership and organisational skills. Excellent communication and presentation abilities. Ability to influence stakeholders at all levels. Strong analytical and problem-solving mindset. Ability to operate effectively in fast-paced, complex environments. Self motivated with a strong focus on delivery and outcomes. Key Deliverables Successful delivery of cyber security projects and workstreams. Effective management of risks, issues, and dependencies. Timely implementation of security controls and technologies. Improved cyber security posture and compliance alignment. High quality governance reporting and stakeholder engagement.
08/07/2026
Full time
Cyber Technical Delivery Manager Location: London (Hybrid - 4 Days per Week Onsite) Contract Length:12 Months Engagement:Inside IR35 Industry:Investment Banking / Financial Services Start Date:ASAP Overview We are supporting a leading investment banking client in London who is seeking an experienced Cyber Technical Delivery Manager to join a large-scale Cyber Security Transformation Programme. This role will be responsible for the successful delivery of complex cyber security initiatives across multiple technology domains, including Identity & Access Management (IAM), Security Operations, Cloud Security, Vulnerability Management, Data Protection, and Regulatory Compliance. The successful candidate will act as the bridge between technical engineering teams, cyber security stakeholders, business leaders, and third-party vendors, ensuring projects are delivered on time, within budget, and in line with regulatory and security requirements. Key Responsibilities Programme & Project Delivery Lead the end-to-end delivery of cyber security projects and workstreams. Develop and maintain project plans, milestones, RAID logs, budgets, and resource plans. Ensure delivery aligns with business objectives, security standards, and regulatory requirements. Manage dependencies across multiple technology and business teams. Drive project governance and reporting activities. Cyber Security Delivery Deliver initiatives across: Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with senior stakeholders across Cyber Security, Infrastructure, Cloud, Risk, Compliance, and Business Functions. Provide regular programme updates to senior management and governance forums. Manage relationships with third-party suppliers and technology vendors. Facilitate workshops, steering committees, and technical review sessions. Risk & Governance Identify, manage, and mitigate project risks and issues. Ensure compliance with internal security policies and regulatory frameworks. Support audit, risk, and compliance activities. Track and report programme KPIs and delivery metrics. Requirements Required Skills & Experience Cyber Security Experience Strong understanding of enterprise cyber security principles and controls. Experience delivering projects involving: IAM and Access Governance PAM Solutions SIEM and Security Monitoring Cloud Security Endpoint Security Vulnerability Management Data Protection Security Compliance Programmes Familiarity with security frameworks and standards such as: NIST ISO 27001 CIS Controls Cyber Essentials Regulatory requirements within Financial Services Technical Knowledge Good understanding of: Microsoft Azure AWS Active Directory / Entra ID Security Monitoring Platforms Identity Management Solutions Network and Infrastructure Security Ability to engage effectively with technical architects, engineers, and security specialists. Delivery Management Proven experience delivering complex technology or cyber programmes within large enterprise environments. Strong project and programme management experience. Experience managing multiple workstreams simultaneously. Excellent RAID management and governance skills. Strong budget and financial management experience. Essential Experience Previous experience working within Investment Banking, Banking, or Financial Services. Experience delivering cyber security transformation programmes. Experience operating within regulated environments. Strong stakeholder management skills with the ability to engage at Executive and C-Level. Experience managing third-party suppliers and system integrators. Desirable Skills Experience with: Microsoft Sentinel Splunk SailPoint CyberArk Okta CrowdStrike Microsoft Defender Suite Knowledge of DevSecOps practices. Exposure to cloud migration and security transformation programmes. Experience supporting regulatory remediation initiatives. Qualifications & Certifications One or more of the following would be advantageous: PRINCE2 Practitioner PMP Agile Practitioner / Scrum Certification CISSP CISM CISA CRISC Personal Attributes Strong leadership and organisational skills. Excellent communication and presentation abilities. Ability to influence stakeholders at all levels. Strong analytical and problem-solving mindset. Ability to operate effectively in fast-paced, complex environments. Self motivated with a strong focus on delivery and outcomes. Key Deliverables Successful delivery of cyber security projects and workstreams. Effective management of risks, issues, and dependencies. Timely implementation of security controls and technologies. Improved cyber security posture and compliance alignment. High quality governance reporting and stakeholder engagement.
JAM Recruitment Ltd
Cyber Security Architect
JAM Recruitment Ltd Penwortham, Lancashire
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
06/07/2026
Contractor
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
L2 Security Analyst
Salt Digital Recruitment Brighton, Sussex
Role Overview Join the next generation of AI-driven cyber defence. We're looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting edge AI powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across a complex enterprise environment. This is an excellent opportunity for someone with a strong cyber engineering or SOC background who enjoys integrating security platforms, solving technical challenges and validating innovative security solutions. What you'll be doing Support the implementation of AI powered Security Operations (SOC) capabilities, intelligent assistants and security workflow automation. Integrate security technologies, data sources, APIs and third party platforms into the security ecosystem. Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams. Validate AI assisted detection, investigation and automated response workflows. Design and execute testing scenarios, attack simulations and operational readiness exercises. Identify integration issues, deployment risks and workflow improvements. Troubleshoot implementation challenges and support successful production deployments. Produce high quality technical documentation, implementation guides, test results and operational procedures. What we're looking for 3+ years' experience in Cyber Security Engineering, Security Operations, Threat Detection or Security Platform Implementation. Experience integrating enterprise security technologies into complex environments. Good understanding of SIEM, SOAR, EDR, Threat Intelligence and modern SOC operations. Knowledge of networking, APIs, authentication, Identity & Access Management (IAM) and cloud platforms. Experience with security testing, attack simulation, validation or Purple Team activities. Excellent analytical, troubleshooting and documentation skills. Exposure to AI powered security platforms, automation technologies or security orchestration tools would be highly desirable. Desirable technologies SIEM & SOAR platforms - Microsoft Sentinel, Splunk or QRadar Microsoft Defender, CrowdStrike or other EDR solutions Azure, AWS or Google Cloud APIs, REST integrations and automation Identity & Access Management (Entra ID, Active Directory or similar) Threat Intelligence platforms AI enabled Security Operations tools Rates depend on experience and client requirements
06/07/2026
Full time
Role Overview Join the next generation of AI-driven cyber defence. We're looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting edge AI powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across a complex enterprise environment. This is an excellent opportunity for someone with a strong cyber engineering or SOC background who enjoys integrating security platforms, solving technical challenges and validating innovative security solutions. What you'll be doing Support the implementation of AI powered Security Operations (SOC) capabilities, intelligent assistants and security workflow automation. Integrate security technologies, data sources, APIs and third party platforms into the security ecosystem. Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams. Validate AI assisted detection, investigation and automated response workflows. Design and execute testing scenarios, attack simulations and operational readiness exercises. Identify integration issues, deployment risks and workflow improvements. Troubleshoot implementation challenges and support successful production deployments. Produce high quality technical documentation, implementation guides, test results and operational procedures. What we're looking for 3+ years' experience in Cyber Security Engineering, Security Operations, Threat Detection or Security Platform Implementation. Experience integrating enterprise security technologies into complex environments. Good understanding of SIEM, SOAR, EDR, Threat Intelligence and modern SOC operations. Knowledge of networking, APIs, authentication, Identity & Access Management (IAM) and cloud platforms. Experience with security testing, attack simulation, validation or Purple Team activities. Excellent analytical, troubleshooting and documentation skills. Exposure to AI powered security platforms, automation technologies or security orchestration tools would be highly desirable. Desirable technologies SIEM & SOAR platforms - Microsoft Sentinel, Splunk or QRadar Microsoft Defender, CrowdStrike or other EDR solutions Azure, AWS or Google Cloud APIs, REST integrations and automation Identity & Access Management (Entra ID, Active Directory or similar) Threat Intelligence platforms AI enabled Security Operations tools Rates depend on experience and client requirements
Cloud Security Engineer
Jentic Technology Limited Birmingham, Staffordshire
Role Overview We are seeking a mid level Cloud Security Engineer to join our Security Engineering team. This role is the first dedicated hire for cloud security within the organisation and will be critical in defining, implementing, and managing security controls across our Azure, AWS and SaaS environments. The successful candidate will work independently, reporting to the Head of Security Engineering, while collaborating with SOC, GRC, IT, Modern Workplace and Systems Engineering teams to build and mature our cloud security posture. Key Responsibilities Cloud Security Framework Define and implement the cloud security framework in collaboration with IT Systems, SOC leadership, and GRC. Implementation Recommend security best practices and implement controls for cloud security and governance. Implement automated security tooling to validate security requirements and identify potential issues. Threat Detection & Incident Response Define threat detection and incident response processes and playbooks for cloud environments. Collaborate with the SOC to operationalise detection rules and incident handling. Compliance & Audit Support GRC in meeting evidence and compliance requirements for ISO27001, NCSC Cloud Security Principles, and SOC2. Review outputs from security tools and practices, filter and prioritise into security stories for delivery teams. Collaboration & Enablement Influence and guide junior engineers and developers to adopt secure practices. Upskill and train the wider security team in cloud security topics and tooling. Identity & Access Management Provide input into IAM strategy and policy (RBAC, Conditional Access, MFA, least privilege) working closely with IT and Systems teams. Optional / Beneficial Areas Support automation of cloud security (IaC scanning, CI/CD integration). Document standards, runbooks, and training material where appropriate. Required Skills & Experience Previous experience in cloud security engineering or related roles. Working knowledge of industry cloud security frameworks and best practice (CSA STAR, NCSC Cloud Security Principles). Experience with automation and scripting (Python, PowerShell, Bash). Proficiency with: Azure security services: Defender for Cloud, Entra ID, Sentinel etc. AWS security services: Security Hub, GuardDuty, IAM, Config, CloudTrail, CloudWatch. Working knowledge of cloud incident response processes and procedures. Strong understanding of security best practices in multi cloud environments. Desirable Skills & Experience Familiarity with Infrastructure as Code (Terraform). Knowledge of cloud network security concepts (firewalls, NSGs, VPCs, private endpoints). Exposure to compliance frameworks (ISO27001, SOC2, NCSC Cloud Security Principles). Security certifications such as AZ-500, SC-100, AWS Security Specialty, CISSP, or CCSK. Embracing our differences At Kainos, we believe in the power of diversity, equity and inclusion. We are committed to building a team that is as diverse as the world we live in, where everyone is valued, respected, and given an equal chance to thrive. We actively seek out talented people from all backgrounds, regardless of age, race, ethnicity, gender, sexual orientation, religion, disability, or any other characteristic that makes them who they are. We also believe every candidate deserves a level playing field. Our friendly talent acquisition team is here to support you every step of the way, so if you require any accommodations or adjustments, we encourage you to reach out. We understand that everyone's journey is different, and by having a private conversation we can ensure that our recruitment process is tailored to your needs.
02/07/2026
Full time
Role Overview We are seeking a mid level Cloud Security Engineer to join our Security Engineering team. This role is the first dedicated hire for cloud security within the organisation and will be critical in defining, implementing, and managing security controls across our Azure, AWS and SaaS environments. The successful candidate will work independently, reporting to the Head of Security Engineering, while collaborating with SOC, GRC, IT, Modern Workplace and Systems Engineering teams to build and mature our cloud security posture. Key Responsibilities Cloud Security Framework Define and implement the cloud security framework in collaboration with IT Systems, SOC leadership, and GRC. Implementation Recommend security best practices and implement controls for cloud security and governance. Implement automated security tooling to validate security requirements and identify potential issues. Threat Detection & Incident Response Define threat detection and incident response processes and playbooks for cloud environments. Collaborate with the SOC to operationalise detection rules and incident handling. Compliance & Audit Support GRC in meeting evidence and compliance requirements for ISO27001, NCSC Cloud Security Principles, and SOC2. Review outputs from security tools and practices, filter and prioritise into security stories for delivery teams. Collaboration & Enablement Influence and guide junior engineers and developers to adopt secure practices. Upskill and train the wider security team in cloud security topics and tooling. Identity & Access Management Provide input into IAM strategy and policy (RBAC, Conditional Access, MFA, least privilege) working closely with IT and Systems teams. Optional / Beneficial Areas Support automation of cloud security (IaC scanning, CI/CD integration). Document standards, runbooks, and training material where appropriate. Required Skills & Experience Previous experience in cloud security engineering or related roles. Working knowledge of industry cloud security frameworks and best practice (CSA STAR, NCSC Cloud Security Principles). Experience with automation and scripting (Python, PowerShell, Bash). Proficiency with: Azure security services: Defender for Cloud, Entra ID, Sentinel etc. AWS security services: Security Hub, GuardDuty, IAM, Config, CloudTrail, CloudWatch. Working knowledge of cloud incident response processes and procedures. Strong understanding of security best practices in multi cloud environments. Desirable Skills & Experience Familiarity with Infrastructure as Code (Terraform). Knowledge of cloud network security concepts (firewalls, NSGs, VPCs, private endpoints). Exposure to compliance frameworks (ISO27001, SOC2, NCSC Cloud Security Principles). Security certifications such as AZ-500, SC-100, AWS Security Specialty, CISSP, or CCSK. Embracing our differences At Kainos, we believe in the power of diversity, equity and inclusion. We are committed to building a team that is as diverse as the world we live in, where everyone is valued, respected, and given an equal chance to thrive. We actively seek out talented people from all backgrounds, regardless of age, race, ethnicity, gender, sexual orientation, religion, disability, or any other characteristic that makes them who they are. We also believe every candidate deserves a level playing field. Our friendly talent acquisition team is here to support you every step of the way, so if you require any accommodations or adjustments, we encourage you to reach out. We understand that everyone's journey is different, and by having a private conversation we can ensure that our recruitment process is tailored to your needs.
IT Operations Platforms and Security Lead
Onyx-Conseil
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a 'buy before build' environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years. Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget ). Key - 3rd party operational infrastructure vendor management - i.e management of managed service partners. Migration of Legacy VM based estates to SaaS and Cloud services platforms. Legacy tech to Azure knowledge/experience. Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
27/06/2026
Full time
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third party vendors to deliver a high quality Global IT services. Working in line with the Architecture defined IT principle of a 'buy before build' environment, the individual will need to ensure that outsourced and cloud based services are robust, cost effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets. Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge. Microsoft AD (Entra), Server and SQL experience. O365 administration and design. Global Software Patching and estate management via Intune. Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience. Software Defined Networking (Cisco, Meraki, Versa). Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL based service management, automating operational tasks, and optimising service delivery. IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Problem Solving & Decision Making: Capable of making informed decisions and resolving complex IT issues in a fast paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years. Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget ). Key - 3rd party operational infrastructure vendor management - i.e management of managed service partners. Migration of Legacy VM based estates to SaaS and Cloud services platforms. Legacy tech to Azure knowledge/experience. Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Senior Cloud Security Consultant
Hollybank Trustees Ltd
Location: Remote / Redheughs Rigg, Edinburgh EH12 9DQ, UK job type: Permanent / Full-time Sector and subsector: IT Cybersecurity Salary: Competitive salary Company Description: At Quorum Cyber, we're on a mission to help good people win.Founded in Edinburgh in 2016, we're one of the fastest growing cyber security companies in the UK and North America, serving over 400 customers on four continents. We protect organisations against the rising threat of cyber-attacks, enabling them to thrive in an increasingly unpredictable and inhospitable digital landscape. As a Microsoft-only security house, a Microsoft Solutions Partner for Security, a member of the Microsoft Intelligent Security Association (MISA), and winner of the Microsoft Security MSSP of the Year 2025 award, we offer a unified security ecosystem comprised of innovative services, all delivered through our customer platform, Clarity. In September 2024, Quorum Cyber acquired Canada-based, Microsoft Solutions Partner for Security, Difenda. This was closely followed in December 2024 by the acquisition of US-based, Kivu Consulting, a global cyber security firm with world-leading incident response capabilities. Role Purpose: To deliver and lead customer-facing Professional Services engagements that help clients assess, design, implement and onboard Microsoft cloud security capabilities. This role leads defined workstreams and smaller projects, supports XDR managed-service onboarding, produces high-quality delivery documentation and ensures customer environments are ready for transition into operational service across Azure, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and Microsoft 365 security services. What I Do Is: Lead assigned customer-facing cloud security workstreams and smaller projects, including discovery, assessments, workshops, implementation tasks, documentation and customer updates. Assess Microsoft cloud environments, including Azure, Microsoft 365, Defender XDR, Sentinel and Entra, for security risks, compliance gaps and onboarding readiness. Support and, where appropriate, lead XDR managed-service onboarding activities by validating technical readiness, required integrations, data source coverage, alerting and handover requirements. Design and implement cloud security controls and configuration improvements, escalating complex design decisions to the Lead Cloud Security Consultant when required. Produce delivery artefacts including discovery outputs, recommendations, implementation plans, HLD/LLD contributions, configuration records and transition-to-service documentation. Advise clients on cloud security good practice, governance, policies, operational improvements and Microsoft security capability adoption. Coordinate project tasks, customer actions and technical dependencies for assigned workstreams to keep delivery moving and risks visible. Support integration of security controls into cloud operations, DevOps practices, SOC processes and customer operating models. Work with SOC, engineering, managed services, project managers and customer stakeholders to ensure smooth handover into BAU operations. Support presales and discovery activities by providing technical input when required. Stay current with Microsoft cloud security capabilities, emerging threats and regulatory requirements. The Skills I Need Are: Strong understanding of Microsoft cloud security, including Azure, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and Microsoft 365 security services. Strong knowledge of the Defender suite, Sentinel, Entra ID, identity security, endpoint and cloud workload protection, and security operations concepts. Knowledge of cloud security frameworks and guidance, including CIS, NIST, ISO 27001, Azure Cloud Adoption Framework and Microsoft Cybersecurity Reference Architecture. Experience with IAM, RBAC, Conditional Access, encryption, networking, logging, monitoring and secure configuration in Microsoft cloud environments. Hands-on experience implementing or supporting security tools such as Sentinel, Defender for Cloud, Defender for Endpoint, Defender for Identity, Defender for Cloud Apps and Entra. Ability to create clear technical documentation and contribute to HLDs, LLDs, implementation plans and service transition artefacts. Strong communication, workshop and presentation skills for technical and non-technical audiences. Ability to coordinate assigned delivery activities across customers, SOC, engineering, managed services and project teams. Analytical mindset with attention to detail, problem-solving skills and a focus on delivery quality. Understanding of Professional Services delivery, including scope, time, quality, customer satisfaction, utilisation and when to escalat delivery risks. I Know I Have Done A Great Job If: Assigned customer engagements, workstreams and smaller projects are delivered to scope, on time and with clear customer sign-off. Customers are successfully onboarded into managed service with agreed integrations, controls and handover requirements completed. Cloud security risks and onboarding gaps are clearly identified, prioritised and remediated or transitioned into an agreed improvement plan. HLD/LLD contributions, implementation documentation and handover artefacts are accurate, consistent and reusable. Security controls are integrated into cloud operations, SOC processes and customer operating models. Customers view me as a trusted advisor and value the Professional Services engagement. Billable utilisation, delivery quality and customer satisfaction expectations are achieved. Stakeholders in SOC, engineering and managed services have the information needed to operate the service effectively. Other Information: You will get an excellent salary, with world class benefits. As leading-edge technology company you will have access to the latest technology, and an environment that will encourage and nurture your curiosity. We are passionate about your development, and you will be empowered to advance your skills and expertise. Our Commitment to Equality & Diversity: "Our diversity is a huge part of our success, and collecting data during the hiring process helps us understand how to keep strengthening and supporting that diversity." We are an equal opportunity employer. We are committed to fostering an inclusive, accessible, and equitable workplace where all qualified applicants receive fair consideration. We do not discriminate on the basis of race, national or ethnic origin, colour, religion, age, sex, sexual orientation, gender identity or expression, marital status, family status, disability, or any other characteristic protected under applicable federal, provincial, or territorial human rights legislation. The information requested below is collected to help us meet our employment equity and reporting obligations, and to support our ongoing diversity and inclusion initiatives. Providing this information is entirely voluntary. It will not be shared with hiring managers and will not be used in any hiring decision. Declining to provide this information will not affect your application in any way.
27/06/2026
Full time
Location: Remote / Redheughs Rigg, Edinburgh EH12 9DQ, UK job type: Permanent / Full-time Sector and subsector: IT Cybersecurity Salary: Competitive salary Company Description: At Quorum Cyber, we're on a mission to help good people win.Founded in Edinburgh in 2016, we're one of the fastest growing cyber security companies in the UK and North America, serving over 400 customers on four continents. We protect organisations against the rising threat of cyber-attacks, enabling them to thrive in an increasingly unpredictable and inhospitable digital landscape. As a Microsoft-only security house, a Microsoft Solutions Partner for Security, a member of the Microsoft Intelligent Security Association (MISA), and winner of the Microsoft Security MSSP of the Year 2025 award, we offer a unified security ecosystem comprised of innovative services, all delivered through our customer platform, Clarity. In September 2024, Quorum Cyber acquired Canada-based, Microsoft Solutions Partner for Security, Difenda. This was closely followed in December 2024 by the acquisition of US-based, Kivu Consulting, a global cyber security firm with world-leading incident response capabilities. Role Purpose: To deliver and lead customer-facing Professional Services engagements that help clients assess, design, implement and onboard Microsoft cloud security capabilities. This role leads defined workstreams and smaller projects, supports XDR managed-service onboarding, produces high-quality delivery documentation and ensures customer environments are ready for transition into operational service across Azure, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and Microsoft 365 security services. What I Do Is: Lead assigned customer-facing cloud security workstreams and smaller projects, including discovery, assessments, workshops, implementation tasks, documentation and customer updates. Assess Microsoft cloud environments, including Azure, Microsoft 365, Defender XDR, Sentinel and Entra, for security risks, compliance gaps and onboarding readiness. Support and, where appropriate, lead XDR managed-service onboarding activities by validating technical readiness, required integrations, data source coverage, alerting and handover requirements. Design and implement cloud security controls and configuration improvements, escalating complex design decisions to the Lead Cloud Security Consultant when required. Produce delivery artefacts including discovery outputs, recommendations, implementation plans, HLD/LLD contributions, configuration records and transition-to-service documentation. Advise clients on cloud security good practice, governance, policies, operational improvements and Microsoft security capability adoption. Coordinate project tasks, customer actions and technical dependencies for assigned workstreams to keep delivery moving and risks visible. Support integration of security controls into cloud operations, DevOps practices, SOC processes and customer operating models. Work with SOC, engineering, managed services, project managers and customer stakeholders to ensure smooth handover into BAU operations. Support presales and discovery activities by providing technical input when required. Stay current with Microsoft cloud security capabilities, emerging threats and regulatory requirements. The Skills I Need Are: Strong understanding of Microsoft cloud security, including Azure, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and Microsoft 365 security services. Strong knowledge of the Defender suite, Sentinel, Entra ID, identity security, endpoint and cloud workload protection, and security operations concepts. Knowledge of cloud security frameworks and guidance, including CIS, NIST, ISO 27001, Azure Cloud Adoption Framework and Microsoft Cybersecurity Reference Architecture. Experience with IAM, RBAC, Conditional Access, encryption, networking, logging, monitoring and secure configuration in Microsoft cloud environments. Hands-on experience implementing or supporting security tools such as Sentinel, Defender for Cloud, Defender for Endpoint, Defender for Identity, Defender for Cloud Apps and Entra. Ability to create clear technical documentation and contribute to HLDs, LLDs, implementation plans and service transition artefacts. Strong communication, workshop and presentation skills for technical and non-technical audiences. Ability to coordinate assigned delivery activities across customers, SOC, engineering, managed services and project teams. Analytical mindset with attention to detail, problem-solving skills and a focus on delivery quality. Understanding of Professional Services delivery, including scope, time, quality, customer satisfaction, utilisation and when to escalat delivery risks. I Know I Have Done A Great Job If: Assigned customer engagements, workstreams and smaller projects are delivered to scope, on time and with clear customer sign-off. Customers are successfully onboarded into managed service with agreed integrations, controls and handover requirements completed. Cloud security risks and onboarding gaps are clearly identified, prioritised and remediated or transitioned into an agreed improvement plan. HLD/LLD contributions, implementation documentation and handover artefacts are accurate, consistent and reusable. Security controls are integrated into cloud operations, SOC processes and customer operating models. Customers view me as a trusted advisor and value the Professional Services engagement. Billable utilisation, delivery quality and customer satisfaction expectations are achieved. Stakeholders in SOC, engineering and managed services have the information needed to operate the service effectively. Other Information: You will get an excellent salary, with world class benefits. As leading-edge technology company you will have access to the latest technology, and an environment that will encourage and nurture your curiosity. We are passionate about your development, and you will be empowered to advance your skills and expertise. Our Commitment to Equality & Diversity: "Our diversity is a huge part of our success, and collecting data during the hiring process helps us understand how to keep strengthening and supporting that diversity." We are an equal opportunity employer. We are committed to fostering an inclusive, accessible, and equitable workplace where all qualified applicants receive fair consideration. We do not discriminate on the basis of race, national or ethnic origin, colour, religion, age, sex, sexual orientation, gender identity or expression, marital status, family status, disability, or any other characteristic protected under applicable federal, provincial, or territorial human rights legislation. The information requested below is collected to help us meet our employment equity and reporting obligations, and to support our ongoing diversity and inclusion initiatives. Providing this information is entirely voluntary. It will not be shared with hiring managers and will not be used in any hiring decision. Declining to provide this information will not affect your application in any way.
Lead Cloud Security Consultant
Hollybank Trustees Ltd
Location: Remote / Redheughs Rigg, Edinburgh EH12 9DQ, UK job type: Permanent / Full-time Sector and subsector: IT Cybersecurity Salary: Competitive salary Company Description: At Quorum Cyber, we're on a mission to help good people win. Founded in Edinburgh in 2016, we're one of the fastest growing cyber security companies in the UK and North America, serving over 400 customers on four continents. We protect organisations against the rising threat of cyber-attacks, enabling them to thrive in an increasingly unpredictable and inhospitable digital landscape. As a Microsoft-only security house, a Microsoft Solutions Partner for Security, a member of the Microsoft Intelligent Security Association (MISA), and winner of the Microsoft Security MSSP of the Year 2025 award, we offer a unified security ecosystem comprised of innovative services, all delivered through our customer platform, Clarity. In September 2024, Quorum Cyber acquired Canada-based, Microsoft Solutions Partner for Security, Difenda. This was closely followed in December 2024 by the acquisition of US-based, Kivu Consulting, a global cyber security firm with world-leading incident response capabilities. Role Purpose: To act as the senior technical SME and technical/team lead for customer facing Professional Services engagements across Microsoft cloud security and XDR managed service onboarding. The role leads complex technical delivery, provides design assurance, supports the development of the Cloud Security consulting team, and acts as the technical escalation point for Microsoft Defender XDR, Sentinel, Entra, Azure and Microsoft 365 security work. Resource allocation, utilisation forecasting and overall commercial governance remain led by the Head of Microsoft Security Professional Services, with this role providing technical input and early escalation of risks, blockers and capability gaps. What I Do Is: Lead complex customer facing cloud security projects as the technical delivery lead, from discovery, workshops and architecture through implementation, documentation, customer sign off and transition into managed service. Act as the technical authority for cloud security engagements, shaping the technical approach and guiding decisions across design, implementation, risks, dependencies and quality. Provide day to day technical leadership, coaching and mentoring to Cloud Security Consultants, supporting capability development, consistent delivery standards and confidence with customers. Act as the technical escalation point for the Cloud Security team, supporting complex design, implementation and customer facing challenges. Support the Head of Microsoft Security Professional Services with technical input into delivery planning, project risks, capability gaps, team development and delivery quality. Lead onboarding readiness assessments and transition to service planning for XDR managed service customers, ensuring integrations, data sources, controls, alerting, handover and acceptance criteria are complete. Own or lead technical delivery across Azure, Microsoft 365, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and wider Microsoft security capabilities. Design and assure advanced cloud security architectures, governance models and operating models aligned to customer requirements, Microsoft best practice and managed service delivery. Own and quality review HLDs, LLDs, implementation plans, service transition documents, recommendations and customer facing deliverables. Provide high value SME input into presales, technical discovery, SoW input, proposal review and shaping of cloud security service offerings. Work closely with project managers, SOC, managed services, engineering and customer stakeholders to ensure successful delivery, clean handover and ongoing service operability. Drive standardisation and reuse of delivery methods, documentation templates, design patterns and cloud security offerings, while staying current with emerging Microsoft security capabilities, cloud threats, technologies and compliance mandates. The Skills I Need Are: Deep expertise in Microsoft cloud security, including Azure, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and Microsoft 365 security services. Advanced knowledge of the Defender suite, Sentinel architecture, Entra ID, identity security, cloud workload protection, endpoint security, threat detection and security operations. Advanced knowledge of cloud security frameworks and guidance, including CIS, NIST, ISO 27001, Azure Cloud Adoption Framework and Microsoft Cybersecurity Reference Architecture. Strong experience designing and implementing IAM, RBAC, Conditional Access, encryption, network security, logging, monitoring, secure DevOps and governance controls. Expert level technical project leadership, including leading workshops, shaping the technical approach, managing technical risks/issues, guiding design decisions and driving customer confidence. Strong ability to own and quality assure HLDs, LLDs, SoW technical inputs, implementation plans, project artefacts and service transition documentation. Strong coaching and mentoring skills, with the ability to support team development, provide constructive technical feedback and build capability in others. Commercial awareness of Professional Services delivery, including scope, effort, utilisation, margin, risks and customer satisfaction, with the ability to elevate commercial or delivery risks early. Leadership, communication, stakeholder management, analytical thinking and problem solving skills across technical, operational and business audiences. Relevant Microsoft security certifications are desirable. CCSP, CISSP or similar cloud/security certifications are desirable. I Know I Have Done A Great Job If: Complex customer projects have clear technical leadership from discovery through implementation, sign off and transition into managed service. Technical delivery is high quality, customer facing outputs are clear, and engagements achieve agreed outcomes. Cloud Security Consultants are supported, coached and developed, with stronger technical confidence and consistent delivery standards across the team. XDR managed service customers are transitioned successfully into BAU operations with clear acceptance criteria, documentation and stakeholder alignment. Technical risks, blockers, dependencies and capability gaps are surfaced early to the Head of Microsoft Security Professional Services and project stakeholders. HLDs, LLDs, SoWs and delivery artefacts are technically accurate, consistent, commercially realistic and reusable. Presales and scoping inputs are technically sound, realistic and aligned to the team's delivery capability. The Cloud Security team is recognised internally as a high value SME function for Microsoft cloud security delivery. SOC, engineering and managed services teams receive a clean handover and are set up to operate effectively. Our Commitment to Equality & Diversity: "Our diversity is a huge part of our success, and collecting data during the hiring process helps us understand how to keep strengthening and supporting that diversity." We are an equal opportunity employer. We are committed to fostering an inclusive, accessible, and equitable workplace where all qualified applicants receive fair consideration. We do not discriminate on the basis of race, national or ethnic origin, colour, religion, age, sex, sexual orientation, gender identity or expression, marital status, family status, disability, or any other characteristic protected under applicable federal, provincial, or territorial human rights legislation. The information requested below is collected to help us meet our employment equity and reporting obligations, and to support our ongoing diversity and inclusion initiatives. Providing this information is entirely voluntary. It will not be shared with hiring managers and will not be used in any hiring decision. Declining to provide this information will not affect your application in any way.
19/06/2026
Full time
Location: Remote / Redheughs Rigg, Edinburgh EH12 9DQ, UK job type: Permanent / Full-time Sector and subsector: IT Cybersecurity Salary: Competitive salary Company Description: At Quorum Cyber, we're on a mission to help good people win. Founded in Edinburgh in 2016, we're one of the fastest growing cyber security companies in the UK and North America, serving over 400 customers on four continents. We protect organisations against the rising threat of cyber-attacks, enabling them to thrive in an increasingly unpredictable and inhospitable digital landscape. As a Microsoft-only security house, a Microsoft Solutions Partner for Security, a member of the Microsoft Intelligent Security Association (MISA), and winner of the Microsoft Security MSSP of the Year 2025 award, we offer a unified security ecosystem comprised of innovative services, all delivered through our customer platform, Clarity. In September 2024, Quorum Cyber acquired Canada-based, Microsoft Solutions Partner for Security, Difenda. This was closely followed in December 2024 by the acquisition of US-based, Kivu Consulting, a global cyber security firm with world-leading incident response capabilities. Role Purpose: To act as the senior technical SME and technical/team lead for customer facing Professional Services engagements across Microsoft cloud security and XDR managed service onboarding. The role leads complex technical delivery, provides design assurance, supports the development of the Cloud Security consulting team, and acts as the technical escalation point for Microsoft Defender XDR, Sentinel, Entra, Azure and Microsoft 365 security work. Resource allocation, utilisation forecasting and overall commercial governance remain led by the Head of Microsoft Security Professional Services, with this role providing technical input and early escalation of risks, blockers and capability gaps. What I Do Is: Lead complex customer facing cloud security projects as the technical delivery lead, from discovery, workshops and architecture through implementation, documentation, customer sign off and transition into managed service. Act as the technical authority for cloud security engagements, shaping the technical approach and guiding decisions across design, implementation, risks, dependencies and quality. Provide day to day technical leadership, coaching and mentoring to Cloud Security Consultants, supporting capability development, consistent delivery standards and confidence with customers. Act as the technical escalation point for the Cloud Security team, supporting complex design, implementation and customer facing challenges. Support the Head of Microsoft Security Professional Services with technical input into delivery planning, project risks, capability gaps, team development and delivery quality. Lead onboarding readiness assessments and transition to service planning for XDR managed service customers, ensuring integrations, data sources, controls, alerting, handover and acceptance criteria are complete. Own or lead technical delivery across Azure, Microsoft 365, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and wider Microsoft security capabilities. Design and assure advanced cloud security architectures, governance models and operating models aligned to customer requirements, Microsoft best practice and managed service delivery. Own and quality review HLDs, LLDs, implementation plans, service transition documents, recommendations and customer facing deliverables. Provide high value SME input into presales, technical discovery, SoW input, proposal review and shaping of cloud security service offerings. Work closely with project managers, SOC, managed services, engineering and customer stakeholders to ensure successful delivery, clean handover and ongoing service operability. Drive standardisation and reuse of delivery methods, documentation templates, design patterns and cloud security offerings, while staying current with emerging Microsoft security capabilities, cloud threats, technologies and compliance mandates. The Skills I Need Are: Deep expertise in Microsoft cloud security, including Azure, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra and Microsoft 365 security services. Advanced knowledge of the Defender suite, Sentinel architecture, Entra ID, identity security, cloud workload protection, endpoint security, threat detection and security operations. Advanced knowledge of cloud security frameworks and guidance, including CIS, NIST, ISO 27001, Azure Cloud Adoption Framework and Microsoft Cybersecurity Reference Architecture. Strong experience designing and implementing IAM, RBAC, Conditional Access, encryption, network security, logging, monitoring, secure DevOps and governance controls. Expert level technical project leadership, including leading workshops, shaping the technical approach, managing technical risks/issues, guiding design decisions and driving customer confidence. Strong ability to own and quality assure HLDs, LLDs, SoW technical inputs, implementation plans, project artefacts and service transition documentation. Strong coaching and mentoring skills, with the ability to support team development, provide constructive technical feedback and build capability in others. Commercial awareness of Professional Services delivery, including scope, effort, utilisation, margin, risks and customer satisfaction, with the ability to elevate commercial or delivery risks early. Leadership, communication, stakeholder management, analytical thinking and problem solving skills across technical, operational and business audiences. Relevant Microsoft security certifications are desirable. CCSP, CISSP or similar cloud/security certifications are desirable. I Know I Have Done A Great Job If: Complex customer projects have clear technical leadership from discovery through implementation, sign off and transition into managed service. Technical delivery is high quality, customer facing outputs are clear, and engagements achieve agreed outcomes. Cloud Security Consultants are supported, coached and developed, with stronger technical confidence and consistent delivery standards across the team. XDR managed service customers are transitioned successfully into BAU operations with clear acceptance criteria, documentation and stakeholder alignment. Technical risks, blockers, dependencies and capability gaps are surfaced early to the Head of Microsoft Security Professional Services and project stakeholders. HLDs, LLDs, SoWs and delivery artefacts are technically accurate, consistent, commercially realistic and reusable. Presales and scoping inputs are technically sound, realistic and aligned to the team's delivery capability. The Cloud Security team is recognised internally as a high value SME function for Microsoft cloud security delivery. SOC, engineering and managed services teams receive a clean handover and are set up to operate effectively. Our Commitment to Equality & Diversity: "Our diversity is a huge part of our success, and collecting data during the hiring process helps us understand how to keep strengthening and supporting that diversity." We are an equal opportunity employer. We are committed to fostering an inclusive, accessible, and equitable workplace where all qualified applicants receive fair consideration. We do not discriminate on the basis of race, national or ethnic origin, colour, religion, age, sex, sexual orientation, gender identity or expression, marital status, family status, disability, or any other characteristic protected under applicable federal, provincial, or territorial human rights legislation. The information requested below is collected to help us meet our employment equity and reporting obligations, and to support our ongoing diversity and inclusion initiatives. Providing this information is entirely voluntary. It will not be shared with hiring managers and will not be used in any hiring decision. Declining to provide this information will not affect your application in any way.
Experis IT
Senior Dev Sec Ops Engineer/Consultant - Outside IR35
Experis IT
Outside IR35, Dev/Sec Ops Engineer, Azure, AWS, Technical Blueprint, Best practice, Regulatory Environment background, London + West Midlands. We are seeking a Senior Dev Sec Ops Consultant to lead governance, architecture guidance, and assurance for cloud and infrastructure security across Microsoft Azure, AWS, and key SaaS platforms. This role is pivotal in defining technical blueprints, setting security standards, and ensuring regulatory compliance with Cyber Essentials Plus, ISO 27001, and Zero Trust principles. You will work closely with IT and platform teams to embed best practices, validate implementations, and support audit readiness across IaaS, PaaS, and SaaS environments. Key Responsibilities Define and maintain multi-cloud security standards and reference blueprints (eg Azure Policy/Initiatives, AWS Control Tower/SCPs) Own security architecture patterns and contribute to HLD/LLD, threat models, and risk assessments Set assurance criteria and control evidence requirements for internal teams and third-party vendors Establish policy-as-code requirements and maintain an exceptions register with expiry and risk ownership Define identity and access control standards (Entra ID Conditional Access, MFA, PIM; AWS IAM federation) Govern SaaS security onboarding (SSO, OAuth governance, DLP controls, vendor assessments) Specify telemetry and logging requirements for Microsoft Sentinel/SOC and review analytics/reporting Lead compliance mapping for ISO 27001 and curate audit-ready evidence packs Chair Cloud & Platform Security design reviews and participate in CAB for risk appraisal Strong regulatory sector experience Educate and influence teams through guidance, clinics, and coaching sessions Familiarity with IaaS, PaaS, SaaS risk models and audit frameworks Excellent written communication and facilitation skills to drive adoption and influence stakeholders Additional Skills Certifications: AZ-500, SC-100, SC-200, AZ-700, AWS Security Specialty, CISSP (or equivalents) Experience with blueprint catalogues and architecture governance processes Working knowledge of containers/Kubernetes (AKS/EKS) policy models While this role focuses on governance and assurance, hands-on use may be required for validation: Azure : Policy/Initiatives, Defender for Cloud, Entra ID, PIM AWS : Control Tower, SCPs, Security Hub, GuardDuty, IAM Security & Monitoring : Microsoft Sentinel (KQL), Defender XDR, audit dashboards Documentation & Governance : Blueprint repositories, risk registers, ITSM/CAB records If this role is of interest please send your CV to review ASAP
01/10/2025
Contractor
Outside IR35, Dev/Sec Ops Engineer, Azure, AWS, Technical Blueprint, Best practice, Regulatory Environment background, London + West Midlands. We are seeking a Senior Dev Sec Ops Consultant to lead governance, architecture guidance, and assurance for cloud and infrastructure security across Microsoft Azure, AWS, and key SaaS platforms. This role is pivotal in defining technical blueprints, setting security standards, and ensuring regulatory compliance with Cyber Essentials Plus, ISO 27001, and Zero Trust principles. You will work closely with IT and platform teams to embed best practices, validate implementations, and support audit readiness across IaaS, PaaS, and SaaS environments. Key Responsibilities Define and maintain multi-cloud security standards and reference blueprints (eg Azure Policy/Initiatives, AWS Control Tower/SCPs) Own security architecture patterns and contribute to HLD/LLD, threat models, and risk assessments Set assurance criteria and control evidence requirements for internal teams and third-party vendors Establish policy-as-code requirements and maintain an exceptions register with expiry and risk ownership Define identity and access control standards (Entra ID Conditional Access, MFA, PIM; AWS IAM federation) Govern SaaS security onboarding (SSO, OAuth governance, DLP controls, vendor assessments) Specify telemetry and logging requirements for Microsoft Sentinel/SOC and review analytics/reporting Lead compliance mapping for ISO 27001 and curate audit-ready evidence packs Chair Cloud & Platform Security design reviews and participate in CAB for risk appraisal Strong regulatory sector experience Educate and influence teams through guidance, clinics, and coaching sessions Familiarity with IaaS, PaaS, SaaS risk models and audit frameworks Excellent written communication and facilitation skills to drive adoption and influence stakeholders Additional Skills Certifications: AZ-500, SC-100, SC-200, AZ-700, AWS Security Specialty, CISSP (or equivalents) Experience with blueprint catalogues and architecture governance processes Working knowledge of containers/Kubernetes (AKS/EKS) policy models While this role focuses on governance and assurance, hands-on use may be required for validation: Azure : Policy/Initiatives, Defender for Cloud, Entra ID, PIM AWS : Control Tower, SCPs, Security Hub, GuardDuty, IAM Security & Monitoring : Microsoft Sentinel (KQL), Defender XDR, audit dashboards Documentation & Governance : Blueprint repositories, risk registers, ITSM/CAB records If this role is of interest please send your CV to review ASAP
Station
Infrastructure & Security Engineer X 2 - London/Hybrid - Permanent
Station
Infrastructure & Security Engineer - Retail Sector London (Hybrid) 30% BAU/70% Project Work Permanent | Immediate Interviews Available We're partnering with a London-based retail brand currently undergoing infrastructure transformation. This is a fantastic opportunity for an experienced Infrastructure & Security Engineer to join a fast-moving organisation investing heavily in technology and digital maturity. You'll play a key role in both business-as-usual operations (30%) and a wide range of modernisation and transformation projects (70%), helping to reshape the future of the company's IT infrastructure. This opportunity is perfect for an experienced Infrastructure or Network Engineer who enjoys being hands-on with both Legacy systems and modern cloud-first environments. If you're looking to work on meaningful projects within a dynamic retail business, this could be the next step in your career. Key Responsibilities Work as a hands-on infrastructure and security engineer, delivering technical improvements and helping to secure enterprise systems. Support and maintain a range of technologies including VMware, Windows Server, Azure, Microsoft 365, and SQL Server. Help manage and enhance the company's Cisco Meraki network infrastructure across head office and retail sites. Contribute to vulnerability management, compliance (PCIDSS), and alignment with NIST/ISO27001 standards. Assist in the deployment of secure, scalable device imaging using Intune & Autopilot for POS, hospitality, and corporate users. Configure and manage SIEM, endpoint protection, IAM, MFA, and RBAC to strengthen infrastructure security. Create and maintain infrastructure documentation, diagrams, and operational runbooks. Support disaster recovery processes and participate in testing and readiness planning. Collaboration & Communication Work closely with internal IT teams and third-party vendors to deliver secure, high-performing infrastructure solutions. Share expertise and promote best practices in infrastructure, networking, and security across the organisation. Contribute to a security-first culture, providing guidance and support across teams. Key Experience & Skills We're looking for candidates with strong experience in: Microsoft Infrastructure: Windows Server, Azure, Microsoft 365, Entra ID, Active Directory, Group Policy Networking: Cisco networking (LAN/WAN/Wi-Fi, TCP/IP, Firewalls, Switching/Routing) Virtualisation: VMware vSphere, ESXi, vCenter Scripting: PowerShell Security & Compliance: Microsoft Defender, Sentinel, IAM, PCIDSS, MFA, RBAC Hardware: Dell server/storage platforms Monitoring & DR: Familiarity with SolarWinds, PRTG, Zabbix, backup tools, and DR best practices If this role is of interest please share your CV and we will be in touch!
01/10/2025
Full time
Infrastructure & Security Engineer - Retail Sector London (Hybrid) 30% BAU/70% Project Work Permanent | Immediate Interviews Available We're partnering with a London-based retail brand currently undergoing infrastructure transformation. This is a fantastic opportunity for an experienced Infrastructure & Security Engineer to join a fast-moving organisation investing heavily in technology and digital maturity. You'll play a key role in both business-as-usual operations (30%) and a wide range of modernisation and transformation projects (70%), helping to reshape the future of the company's IT infrastructure. This opportunity is perfect for an experienced Infrastructure or Network Engineer who enjoys being hands-on with both Legacy systems and modern cloud-first environments. If you're looking to work on meaningful projects within a dynamic retail business, this could be the next step in your career. Key Responsibilities Work as a hands-on infrastructure and security engineer, delivering technical improvements and helping to secure enterprise systems. Support and maintain a range of technologies including VMware, Windows Server, Azure, Microsoft 365, and SQL Server. Help manage and enhance the company's Cisco Meraki network infrastructure across head office and retail sites. Contribute to vulnerability management, compliance (PCIDSS), and alignment with NIST/ISO27001 standards. Assist in the deployment of secure, scalable device imaging using Intune & Autopilot for POS, hospitality, and corporate users. Configure and manage SIEM, endpoint protection, IAM, MFA, and RBAC to strengthen infrastructure security. Create and maintain infrastructure documentation, diagrams, and operational runbooks. Support disaster recovery processes and participate in testing and readiness planning. Collaboration & Communication Work closely with internal IT teams and third-party vendors to deliver secure, high-performing infrastructure solutions. Share expertise and promote best practices in infrastructure, networking, and security across the organisation. Contribute to a security-first culture, providing guidance and support across teams. Key Experience & Skills We're looking for candidates with strong experience in: Microsoft Infrastructure: Windows Server, Azure, Microsoft 365, Entra ID, Active Directory, Group Policy Networking: Cisco networking (LAN/WAN/Wi-Fi, TCP/IP, Firewalls, Switching/Routing) Virtualisation: VMware vSphere, ESXi, vCenter Scripting: PowerShell Security & Compliance: Microsoft Defender, Sentinel, IAM, PCIDSS, MFA, RBAC Hardware: Dell server/storage platforms Monitoring & DR: Familiarity with SolarWinds, PRTG, Zabbix, backup tools, and DR best practices If this role is of interest please share your CV and we will be in touch!

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board