Find your next tech and IT Job or contract Endpoint detection and response (EDR)

Your search returns 48 results.
Contractor

Contractor jobSecurity Operations Engineer (M/W) - Remote

Mindquest
Published on
Cortex XSOAR
Cybersecurity
Kubernetes

1 year
700-800 €
Germany
Security Operations Engineer – Middle/Senior 1. Contexte Dans le cadre d'un projet au sein du secteur de l'énergie, nous recherchons un Security Operations Engineer Middle/Senior pour rejoindre une équipe dédiée à la sécurité d'une plateforme cloud-native. La plateforme, déployée dans un environnement hybride cloud (cloud privé et clouds publics), fournit aux équipes de développement des services permettant de concevoir, déployer et exploiter leurs applications. L'équipe intervient sur les sujets de Security Operations, Incident Response, Detection Engineering et DevSecOps, avec pour objectif de renforcer la visibilité, la détection et les capacités de réponse face aux menaces de sécurité. 2. Mission Le consultant interviendra notamment sur les activités suivantes : SecOps Tooling Engineering Concevoir et développer des outils et solutions intégrés à l'écosystème SecOps. Définir des architectures et patterns de solutions autour des technologies SIEM, SOAR, EDR, Vulnerability Management, logging et User Behavior Analytics. Évaluer et intégrer de nouveaux outils et technologies afin d'améliorer les capacités de détection, de réponse et d'automatisation. Concevoir et maintenir des pipelines d'ingestion, de corrélation et d'alerting à grande échelle. Développer des scripts, playbooks et workflows d'automatisation afin de réduire les tâches répétitives des équipes sécurité. Collaborer avec les équipes SOC, Incident Response et Operations pour transformer les besoins opérationnels en solutions techniques. Participer à la conception d'un produit SecOps interne dédié à la détection et à la réponse aux vulnérabilités, menaces et événements de sécurité. Intégrer les capacités de détection avec les solutions d'Observability et les capacités SOC existantes. Participer à la mise en place progressive d'une capacité de Security Operations 24x7. Incident Response Apporter une expertise technique lors des incidents de sécurité, notamment sur les outils, la qualité des données et les corrections techniques. Faire évoluer les règles de détection, modèles de données, dashboards et mécanismes de corrélation en fonction des incidents rencontrés. Mettre rapidement en place l'instrumentation, l'intégration de logs et les outils nécessaires lors d'incidents de sécurité. Detection Engineering Développer, tester et industrialiser de nouvelles capacités de détection en fonction des menaces et des besoins métier. Concevoir et maintenir des éléments de Detection-as-Code : Sigma, YARA, requêtes KQL, règles d'analyse statique, etc. Améliorer continuellement la qualité des détections via des simulations d'attaques, du purple teaming et du tuning. Documenter, versionner et valider les règles de détection sur les sources de données de production.
View this job
Contractor

Contractor jobAnalyste CyberSoc anglais bilingue mission en Chine

IBSI
Published on
CyberSoc
Google Security Operations (SecOps)
Threat hunting

12 months
€510-580
China
Cyber Security Operations Center (SOC) Analyst [Shanghai] About the Role Join an elite operational cybersecurity team whose mission is to rapidly detect, investigate, and respond to cyber threats and security incidents. As a SOC Analyst, you will be at the forefront of cyber defense, leveraging advanced security technologies to identify malicious activity, conduct investigations, and support incident response efforts. • Be part of a highly skilled cyber defense team operating in a dynamic and challenging environment. • Work with advanced security technologies and modern detection capabilities. • Develop expertise in incident response, threat hunting, and digital forensics. • Investigate real-world cyber threats and contribute to the protection of a global organization. • Collaborate with international cybersecurity teams and security experts. • Play a key role in enhancing detection capabilities and strengthening cyber resilience. Key Responsibilities • Monitor and analyze security events and alerts from multiple security platforms. • Perform triage, investigation, and escalation of security incidents. • Conduct root cause analysis and support digital forensic investigations. • Execute incident response activities, including containment, eradication, and recovery. • Perform proactive threat hunting activities to identify potential threats. • Develop and improve detection rules, playbooks, and security use cases. • Collaborate with global cybersecurity teams to ensure effective threat monitoring and response. • Document incidents and produce clear reports for both technical and non-technical stakeholders. • Contribute to the continuous improvement of SOC processes, tools, and operational capabilities. Technical Environment • SOAR: Palo Alto Cortex - EDR: SentinelOne - NDR: Vectra - SIEM: Google SecOps - Sandbox : Joe Sandbox Proven experience in a Security Operations Center (SOC) environment. Strong knowledge of cybersecurity operations, threat detection, and incident response. Hands-on experience with SIEM, EDR, NDR, and SOAR technologies. Excellent analytical, investigation, and problem-solving skills. Ability to operate effectively in a fast-paced, global cybersecurity environment. Fluency in both English and Mandarin Chinese is mandatory. Strong communication skills, with the ability to present technical findings to both technical and non-technical stakeholders. Compétences SIEM (Google SecOps) Confirmé Threat Hunting Expert Threat Detection & Analysis Expert Incident Response Expert Security Operations Center (SOC) Expert
View this job
Contractor

Contractor jobArchitecte Solutions Cybersécurité Senior

REVIRIS
Published on
Architecture
AWS Cloud
Azure

24 months
600-750 €
Bois-Colombes, Ile-de-France
Mission au sein de la Direction des Systèmes d'Information d'un acteur de premier plan, dans un environnement multisite et hybride (on-premise et Cloud) à fortes exigences de maîtrise des risques cyber. Le département Cyberdéfense est en pleine montée en maturité. Il regroupe des équipes spécialisées dans la détection, la réponse à incident, la gestion des vulnérabilités et l'outillage des solutions de sécurité, et mène plusieurs chantiers structurants pour renforcer la détection, la résilience et la sécurité globale du SI. Rattaché à ce département, l'architecte interviendra notamment sur les axes suivants : - Cartographier et structurer l'existant (assets, applications, solutions de sécurité) - Définir et formaliser des architectures de sécurité cibles et les standards associés - Accompagner les projets et les équipes techniques dans l'intégration de la sécurité (security by design) - Garantir la cohérence globale des dispositifs de sécurité (on-premise, cloud, hybride) - Contribuer à l'amélioration des capacités de détection et de réponse, notamment via l'optimisation des architectures, des logs et de la télémétrie - Construire des standards de sécurité réutilisables par les équipes Le consultant pourra intervenir sur des projets liés à la gestion des vulnérabilités, à la Cyber Threat Intelligence, à l'orchestration de la réponse à incident (SOAR) et à l'évolution des capacités de collecte et d'analyse des logs (SIEM). Environnement technique : architectures multisite et hybrides (on-premise, cloud), sécurité réseau (pare-feu, WAF, IDS/IPS), modèles Zero Trust et défense en profondeur, EDR/XDR, SIEM, SOAR, sécurité cloud (Azure, AWS), IAM/PAM. Modalités : poste basé à Bois-Colombes, jusqu'à deux jours de télétravail par semaine selon les contraintes opérationnelles de la mission. Mission initiale de trois mois, renouvelable sur une durée longue. Démarrage dès que possible.
View this job
Permanent

Job VacancyIT Infrastructure Operations and Security Lead

Nexus Jobs Limited
Published on

£85k-100k
London, England, United Kingdom
IT Infrastructure Operations and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. Summary of Skills Required: The following is a summary of the key skills that the Client would like you to bring to the company. Global Enterprise level Infrastructure Management position for the last 5 years, Buy before Build mentality and demonstrable migration of Legacy VM based estates to SaaS and Azure Cloud services platforms, Global Operational team management experience (human resources, strategic delivery, operational service, audit lead for Infra, budget..) Key 3 party operational infrastructure vendor management - i.e. management of managed service partners as a team extension globally, as well as service/solution delivery partners, Migration of Legacy VM based estates to SaaS and Cloud services platforms, Legacy Infra tech to Azure knowledge/experience, Prior to the last 5 years in Enterprise Management of a global estate/user-base, a demonstrable technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
View this job
Contractor

Contractor jobChef de projet technique en cybersécurité

LeHibou
Published on
cyberark
Cybersecurity

6 months
600 €
Paris, France
Notre client dans le secteur Aérospatial et défense recherche un/une Chef de projet technique en cybersécurité H/F Description de la mission : Expression de besoinLa prestation consiste à piloter forfaitairement des projets informatiques et à délivrer des services de gestion de projet selon les phases et les processus mis en place au sein de la Direction du Numérique et de la Transformation. Il s'agit d'une prestation de chefferie de projet. Les projets concernent les pôles de l'entité Opérations Informatiques. La réalisation proprement dite des projets — maîtrise d'œuvre — n'est pas incluse dans la prestation. Le chef de projet sera missionné sur un volume constant de projets équivalent à : 2 projets de taille S 5 projets de taille M La liste des projets identifiés dans le domaine de la cybersécurité comprend notamment : LPM CyberArk EDR Contexte et contraintesLa prestation se déroule sur site à Paris-Orly — Cœur d'Orly — et Paris-Charles de Gaulle — Roissy pôle — dans les locaux du clients. La répartition prévisionnelle est de : 3 jours minimum à Orly 2 jours en télétravail Un réajustement des jours de présence sur site pourra être envisagé selon le déroulement des missions. Chaque projet dispose d'un représentant désigné de l'entité Opérations Informatiques, qui constitue le référent du titulaire. Les chefs de projet appartiennent à la cellule « chefferie de projet » de l'entité opérationnelle de la direction. Les interlocuteurs sont multiples : chefs de projets, experts techniques, managers de différents pôles des Opérations Informatiques, entités DSI et hors DSI, ainsi que des prestataires de services intervenant en maîtrise d'œuvre, maîtrise d'ouvrage ou assistance à maîtrise d'œuvre et à maîtrise d'ouvrage. Projets cybersécurité identifiésLPMLa phase 4 de la LPM comprend notamment : Évolution des infrastructures actuelles pour répondre à des besoins croissants : VXRAIL, infrastructure virtuelle et SIEM Ajout de briques de sécurité, notamment un VPN dédié Migration de différents systèmes dans l'AD LPM Migration du bastion en LPM Intégration de nouveaux besoins SICS-SUR Audits, analyses de risques et homologation CyberArkProjet de refonte de l'utilisation de CyberArk afin de répondre aux exigences réglementaires, autour de deux axes : Architecture : adaptation de la logique de zoning aux standards exigés par la législation Utilisation de l'outil : revue des processus et pratiques liés à l'utilisation de CyberArk par les équipes DSI, UO et autres, avec recherche de conformité et d'efficacité Le projet nécessite un accompagnement externe apportant une expertise en conseil et en mise en œuvre. EDRL'EDR — Endpoint Detection and Response — est une solution de sécurité permettant de surveiller et d'analyser les activités sur les postes de travail et les serveurs afin de détecter et de traiter les menaces avancées. La mission vise notamment le déploiement d'une solution EDR sur les serveurs afin de protéger les environnements critiques dans une démarche de défense en profondeur. Prestations attenduesLa prestation de chefferie de projet comprend notamment : Concevoir et mettre à jour les plannings Évaluer les risques Concevoir et mettre à jour les tableaux de bord Préparer, organiser et animer les comités projet et de pilotage Formaliser les ateliers Élaborer et animer les présentations Rédiger les comptes rendus Structurer la base documentaire du projet Assurer un suivi rigoureux et informer régulièrement le responsable NxTO Produire les reportings hebdomadaires et mensuels d'avancement Appliquer les méthodes, modèles et normes documentaires ADP Utiliser les outils ADP Préparer et lancer les projets Cadrer les projets et constituer les dossiers de décision Mettre en place les structures, méthodes, outils et indicateurs de pilotage Définir les objectifs, livrables et délais avec les équipes techniques et fonctionnelles Préparer, suivre et animer les ateliers fonctionnels et techniques Rédiger les expressions de besoin et cahiers des charges Piloter et superviser la réalisation Coordonner les réalisations Évaluer les risques en phase de réalisation Mesurer l'avancement et organiser les comités de pilotage S'assurer de la fourniture des livrables et de la conformité des réalisations Le suivi de la prestation comprend des réunions hebdomadaires avec le référent projet et le référent de la prestation, un compte rendu d'activité hebdomadaire et un comité mensuel de pilotage. Modalités contractuelles et complémentairesLa tranche ferme PF01 est prévue pour une durée de 6 mois à compter du 1er octobre 2026 au plus tard, avec une option de renouvellement d'au minimum 3 mois. Des prestations optionnelles de pilotage forfaitaire de projets de natures équivalentes (PF02) peuvent être commandées pour une durée de 6 mois, renouvelable jusqu'à 3 fois. Le pilotage forfaitaire de projets de taille L (PF03), d'une durée de 6 mois renouvelable jusqu'à 4 fois, est également prévu. Pour les projets de taille L ou dont la charge de réalisation dépasse 600 jours, le titulaire doit proposer un devis dans les 5 jours suivant la réception du détail du projet et une organisation avec les ressources mobilisées dans les 2 semaines suivant l'acceptation du devis. Profil recherchéDirecteur de projet ou chef de projet technique maîtrisant la conduite de projet Minimum 7 ans d'expérience en pilotage de projet ou programme Compétences techniques dans les domaines de la sécurité et du réseau Expérience de gestion de projets dans ces domaines Rigueur et méthodologie Aisance relationnelle Capacité à coordonner des équipes technico-fonctionnelles Compétences rédactionnelles et pédagogiques Respect de la confidentialité des données Le candidat devra détailler sa compréhension du besoin, sa capacité à y répondre et ses compétences techniques sur les périmètres réseau et sécurité. Compétences / Qualités indispensables : Pilotage de projets, Sécurité des systèmes d'information, Réseaux, Coordination d'équipes technico-fonctionnelles, Méthodologie et rigueur, Rédaction de livrables Informations concernant le télétravail : Oui — 2 jours/semaine
View this job
Permanent

Job VacancyIT Operations Platforms and Security Lead

Nexus Jobs Limited
Published on

£85k-100k
London, England, United Kingdom
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years, Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget..) Key - 3 party operational infrastructure vendor management - i.e management of managed service partners, Migration of Legacy VM based estates to SaaS and Cloud services platforms, Legacy tech to Azure knowledge/experience, Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
View this job
Permanent

Job VacancyIT Operations and Security Lead

Nexus Jobs Limited
Published on

£85k-95k
London, England, United Kingdom
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk – ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
View this job
Permanent

Job VacancyIT Manager

Nexus Jobs Limited
Published on

£60k-65k
London, England, United Kingdom
IT Manager Our Client is a Bank based in Central London, are looking to recruit an IT Manager ideally with at least 2 years of experience in IT within the financial industry and overall 7 to 10 years of experience in IT. You will be working in a small team managing the day-to-day technology infrastructure to ensure that the Bank can operate efficiently. Cybersecurity Strategy and Planning Evaluate and proritize security initiatives for the branch in London in collaboration with GT (Group Technology) - Group IT Security. Stay up-to-date with the latest cybersecurity threats and trends and escalate risks promptly. Ensure compliance with relevant industry regulations and standards (e.g., GDPR and any other applicable to the IT). Evaluate GT s compliance with relevant regulatory standards (eg ISO 27001) as part of critical vendor performance assessment ensuring operational resilience is maintained. In collaboration with GT, manage security systems, including firewalls, intrusion detection/prevention systems, and antivirus software. In collaboration with GT, Develop and test incident response plans and coordinate responses to security incidents and breaches Raise awareness of cybersecurity issues among bank London employees; conduct annual training /workshops to educate staff on security best practices aligned with GT. Other Duties Maintain professional and technical knowledge (Conduct Rule 2) e.g. by attending educational workshops; read professional publications; benchmarking state-of-the-art practices etc where relevant. Collaborate with stakeholders to handle backlogs and new requirements - Resolve conflicts and remove blockers for the team - Monitor, track and uphold quality of deliverables. Be the point of contact for external communications and facilitate internal communication for effective collaboration on IT related matters. Ensure work deliverables are in compliance with policies and regulatory requirements . Maintains quality service by establishing and enforcing organization standards. To act as second/third level support with GT for support related issues. To comply with all applicable FCA/PRA conduct rules. Compliance with all mandatory training as set by the Branch/Group. Technical/Functional skills - Proficient in common operating systems o Windows 10, Windows Server 2018 and above o Redhat Linux based Operating System - Software proficiency o VMWare v6.7 and above o Veeam Backup and Replication o Symantec Endpoint Protection o Symantec Endpoint Encryption o ManageEngine Patch Manager Plus o Microsoft Office 365 o Bloomberg FXT/eikons o Murex Treasury System o SWIFT Alliance Access (SAA) - Networking (IT) o Cisco Switches and Routers o Fortigate Firewalls o LAN/WAN Routing - Hardware o Dell PowerEdge Servers o Dell PowerVault SAN Storage - Data analysis - Basic PC/Laptop support (formatting, imaging, etc) - Experience of writing and updating IT policies, standards, procedures, and guidelines Personal skills (Soft Competencies [Core/Leadership]) - Committed and dedicated to team deliverables. - Ownership of the business - Strong interpersonal stakeholders management skills - Strong written and verbal communication skills - Ability to train IT staff, supervise and motivate team members for high performance - Experience in coordinating installations, upgrades, and maintenance - Knowledge of architecture processes and performance reports of operating systems - Strong analytical/critical thinking skills - Ability to understand and oversee code development Qualifications: Bachelors degree qualification in relevant discipline Professional Qualification and/or Regulatory, Licensing requirements Project management certification (e.g., PMP, PRINCE2) is highly desirable. Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA) are highly desirable. Relevant Work Experience At least 6 years of experience in IT within the financial/banking industry is preferable. Minimum of 2 years experience in managing staff or managing teams in a cross functional set-up. The position is based in Central London and is hybrid 3 days w eek in the office. The salary for this position will be up to £65K. Please do send your CV to us in Word format along with your salary and notice period.
View this job
Permanent

Job VacancyCyber Security Manager

Nexus Jobs Limited
Published on

£70k-80k
Paddington, England, United Kingdom
Cyber Security Manager Our Client to be secured and protected from increased cyber threats and compliant to industry standards. This role covers information protection, including data loss protection and data classification, and threat protection, including security information and event management (SIEM), user and entity behaviour analytics (UEBA), point products like anti-virus (AV) and intrusion detection system/intrusion prevention system (IDS/IPS) and penetration testing. The Service Delivery team consists of approximately 20 staff who support and operate the Company's services and there is an opportunity in that team for a Cyber Security Manager to oversee and govern all security services. Reporting Lines This role reports to Head of Service Delivery Main Accountabilities Technical leadership for all security solutions, including all the 3rd party managed services Maintain the overall security of Company's network, systems, and data Monitor security access and manage IDS/IPS configurations Establishing and implementing security 'best-practice' standards as well as departmental policies and procedures Responsible for Security scanning and the efficient remediation of vulnerabilities Responsible for analysing all security incidents to determine root cause Determine, recommend, and implement upgrade security measures and controls Delivery security responses for customer and client compliance requirements Developing and managing security plans with vendors Audit activities of administrators and conduct Security awareness training Requirements Demonstrable skills and capability in Security leadership and 3rd party management experience CISSP certification preferred. Compliance knowledge required in ISO27001, PCI and GDPR. Possibly a certified ethical hacker Knowledge of Security technologies is essential, such as network appliances, firewall administration, AD, IAM, PAM, SIEM, UEBA, AV, IDS/IPS and MDM solutions Understanding of common frameworks, such as ITIL or LEAN is preferred Good exposure of user environment management, including desktops/laptops, profile management, access control methodologies Must be very proactive in understanding and staying up to date with current security technologies and industry technology trends The job/Client is located at our head office in Paddington, London with hybrid working The Client holds a Licence to Sponsor (grade A) and will always consider sponsoring employees if needed We welcome applications from Ukrainian Refugees The salary for this position is circa £70K - £80K plus Benefits. Please do send your CV to us in Word format along with your salary.
View this job
Contractor
Permanent

Job VacancyInformation Security Architect / Manager

Nexus Jobs Limited
Published on

£500-550
London, England, United Kingdom
Information Security Architect / Manager Our Client is an International company with offices in Central London. They are looking to bring on-board an Information Security Architect / Manager with at least 5 to 8 years proven expertise within Information Security. The function of the position will be as follows: Assess the current environment against industry standards and trends. Implement robust security and control measures, in line with the global IT team Streamline current processes and execute changes for a secured and optimised technology and data landscape. Subject matter expert in application and network security, with operational experience of managing security operations, SIEM solutions, incident, and response management. Collaborate to develop the Infosec strategy and associated operating model. Conduct an in-depth security risk assessment across the technology stack and provide end-to-end mitigation steps for resilience. Working closely with key stakeholders to ensure compliance with security policies, and promotion of strong information security culture. Provide weekly governance, risk and compliance reports utilising key risk and key performance indicators and metrics. Skills/Competencies Required: Experience developing information security policy, process and procedure design and implementation. Excellent troubleshooting, problem solving, and root-cause analytical (RCA) skills. Good working knowledge of Cisco Meraki and associated technologies. Practical knowledge of Continual Service Improvement (CSI) methodologies. Vulnerability management and assessment. Intrusion detection and prevention analysis / frameworks. Solid exposure to cloud based applications security and provisioning. Experience in writing policy, process, and standard playbooks. Experience in SOC and SIEM platforms Excellent communications skills in framing and messaging issues of highly technical nature, into meaningful and relevant information for a varied audience. Excellent analytical skills, with an ability to manage multiple projects under tight guidelines. Experience with common Information security frameworks such as ISO, ITIL, and COBIT. Information security professional qualifications (CISMP, CISSM, SSCP, CAP..etc) ** Occasional travel to other sites may be required. This is 6 month contract assignment based in Central London. Rate will be circa £500 per day. Please do send your CV to us in Word format along with your daily rate and availability.
View this job
Permanent

Job VacancyInformation Security Manager

Nexus Jobs Limited
Published on

£60k-75k
London, England, United Kingdom
Information Security Manager Role Description This is a full-time role as an Information Security Manager for Bank in Central London. The Information Security Manager will be responsible for day-to-day tasks related to information security management, including implementing and maintaining Information Security Management Systems (ISMS), ensuring cybersecurity and network security, and protecting sensitive information. This is a hybrid role, based in London with the flexibility for some remote work. Qualifications Information Security Management, ISMS, and Cybersecurity skills Network Security and Information Security knowledge Experience in implementing and maintaining ISMS Proficient in identifying and addressing information security vulnerabilities Strong analytical and problem-solving skills Excellent communication and interpersonal skills Certifications such as CISSP, CISM, or equivalent are preferred Bachelor's degree in Information Security, Computer Science, or related field Information Security Manager role (permanent) reporting into Head of IT (CIO | CISO) Need an individual with a strong hands on network and security background Cisco networking Cisco firewalls (Firepower / Threat Detection) Palo Alto firewalls SIEM experience (Logarithm desirable) Web proxy (Forcepoint desirable) Governance skills Policy writing / reviewing Reporting KPI monitoring Certifications like CCNP / CISM would be desirable but strong experience is preferable. The Client is based in Central London and the position is hybrid - 3 days in the office every week. Salary circa £60K - £75K + Benefits. Please do send your CV to us in Word format along with your salary and notice period.
View this job
Contractor

Contractor jobSC Security Platform Engineer - 12 Month Contract

LA International Computer Consultants Ltd
Published on

12 months
GU14 7SR, Rushmoor, England, United Kingdom
Security Platform Engineer Locations: London / Corsham / Farnborough As a Security Platform Engineer, you will play a role in designing, building, and managing cloud-native security platforms with a strong emphasis on Kubernetes-based environments. You'll be at the intersection of security and engineering, developing scalable tooling, automating security controls, and enabling robust detection and response capabilities across our cloud infrastructure. This is a hands-on, engineering-centric role that requires deep technical expertise in cloud environments, Kubernetes security, and platform automation. Responsibilities ● Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS). ● Develop and implement security monitoring and logging strategies. ● Investigate and analyse security incidents, including identifying root causes, determining the scope of impact, and taking appropriate containment and remediation actions. ● Perform forensic analysis to identify and investigate suspicious activity. ● Automate security tasks and workflows to improve efficiency and effectiveness. Preferred Qualifications (PQs) ● Certifications in Security (e.g., GSEC, CISSP, CISM, OSCP). ● Experience with Kubernetes threat detection and anomaly detection. ● Familiarity with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. ● Background in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. ● Contributions to security-focused open-source projects or internal security platform toolin Due to the nature and urgency of this post, candidates holding or who have held high level security clearance in the past are most welcome to apply. Please note successful applicants will be required to be security cleared prior to appointment which can take a minimum 10 weeks. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. An award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over multiple years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
View this job
Permanent

Job VacancyProject Manager with Digital Banking Operations and Artificial Intelligence AI

Nexus Jobs Limited
Published on

London, England, United Kingdom
Project Manager with Digital Banking Operations and Artificial Intelligence AI We are seeking a Project Manager with Digital Banking Operations and Artificial Intelligence (AI) Projects experience to join our Client a bank based in Central London. This is a full-time role located in London, with flexibility for some remote work. As an AI project manager, you be responsible for overseeing and managing the implementation of AI projects within our digital banking operations. You will collaborate with cross-functional teams to define project goals, develop project plans, allocate resources, track progress, and ensure timely and successful delivery of projects. Experience and Qualifications Previous experience in project management, preferably within the banking or financial services industry Strong understanding of digital banking operations and Artificial Intelligence AI technologies Proven track record of successfully delivering complex projects on time and within budget Excellent communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams Strong problem-solving and decision-making abilities Knowledge of agile project management methodologies Experience with data analysis and reporting Ability to adapt to changing priorities and work well under pressure Project management certification (e.g., PMP) is a plus Bachelor's degree in a relevant field Areas to Consider 1. Customer Service Enhancement Chatbots and Virtual Assistants: Deploy AI-driven chatbots to handle routine inquiries, provide 24/7 support, and reduce wait times. Sentiment Analysis: Use AI to analyze customer feedback and sentiment from various channels to improve services. 2. Fraud Detection and Prevention Real-Time Monitoring: Implement AI algorithms to detect and flag unusual transactions in real-time. Predictive Analytics: Use machine learning models to predict potential fraud based on historical data and behavioural patterns. 3. Loan Processing Automation Credit Scoring: AI can evaluate creditworthiness more accurately by analyzing a wider range of data points. Document Verification: Automate the verification of documents submitted for loan applications, speeding up the approval process. 4. Personalized Banking Services Customer Insights: Leverage AI to gain insights into customer behaviour and preferences, allowing for personalized product recommendations. Marketing Campaigns: Use AI to target customers with tailored marketing campaigns based on their transaction history and preferences. 5. Risk Management Risk Assessment: AI can analyze market trends and economic indicators to provide early warnings about potential risks. Compliance Monitoring: Automate compliance checks and monitoring to ensure adherence to regulations and reduce the risk of non-compliance penalties. 6. Operational Efficiency Process Automation: Use robotic process automation (RPA) to handle repetitive tasks such as data entry, account reconciliation, and report generation. Workflow Optimization: AI can optimize workflows by identifying bottlenecks and suggesting improvements. Implementation Strategy Assessment: Evaluate the current state of digital banking operations and identify areas where AI can add value. Pilot Projects: Start with pilot projects to test AI applications in a controlled environment. Scalability: Ensure that AI solutions are scalable and can handle increasing volumes of data and transactions. Employee Training: Train staff on AI tools and their applications to ensure seamless integration. Continuous Improvement: Regularly update AI models and algorithms based on new data and evolving business needs. Challenges and Considerations Data Quality: Ensure high-quality data for accurate AI predictions and analysis. Regulatory Compliance: Stay compliant with financial regulations while implementing AI solutions. Customer Trust: Maintain transparency in AI-driven decisions to build and maintain customer trust. Integration: Seamlessly integrate AI with existing banking systems and processes. The main emphasis of this position to is harness the data from a variety of data tables at the bank and collate a Data Lake from which to extract a variety of AI reports to increase the banks customer strategy. By strategically implementing AI in these areas, a Digital Banking Operations Manager can greatly improve the efficiency, security, and customer satisfaction in digital banking operations. The position will be hybrid 3 days a week in the office. The salary is negotiable depending on experience but probably in the range £80K - £120K plus benefits. Do send your CV to us in Word format along with your salary and notice period.
View this job
Permanent

Job VacancyHead of IT Infrastructure and Security

Nexus Jobs Limited
Published on

£85k-95k
London, England, United Kingdom
Head of IT Infrastructure and Security In summary we are looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk – ideally from within the banking or insurance sector. The Head of IT Infrastructure and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. Some of the key points to consider for this role are: Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Technology: Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Summary: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. The role will involve managing a Cloud environment in a team of 4 Technical people. Managing 6 different suppliers which include Security, IT Networks, Hosting and Servers and 3 party software. The aim of the role is to bring the MSP's (suppliers of hardware and software) to the same page for the stakeholders and the Board and ensure technology is running smoothly. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Excellent Benefits. Do send your CV to us in Word format along with your salary and notice period.
View this job

Connecting Tech-Talent

Free-Work, THE platform for all IT professionals.

Free-workers
Resources
About
Recruiters area
2026 © Free-Work / AGSI SAS
Follow us