Trouvez votre prochaine offre d’emploi ou de mission freelance ISO 27001

Votre recherche renvoie 71 résultats.
Freelance

Mission freelanceInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le

£500-650
Grand Londres, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. Demonstrated network engineering experience (e.g., routing, switching, firewalls, VPNs, secure network design). Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. Experience with regulatory and compliance frameworks (e.g., ISO 27001, GDPR, NIST) and security best practices. Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The rate for this role will be in the range £500 pd to £650 pd. This is a 3 month assignment. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
CDI

Offre d'emploiIT Operations and Security Lead

Nexus Jobs Limited
Publiée le

£85k-95k
Grand Londres, Royaume-Uni
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk – ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
CDI

Offre d'emploiIT Operations Platforms and Security Lead

Nexus Jobs Limited
Publiée le

£85k-100k
Grand Londres, Royaume-Uni
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years, Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget..) Key - 3 party operational infrastructure vendor management - i.e management of managed service partners, Migration of Legacy VM based estates to SaaS and Cloud services platforms, Legacy tech to Azure knowledge/experience, Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI
CDD

Offre d'emploiAdministrateur cybersécurité

EDC DIGITAL-IT
Publiée le
Cybersécurité
Endpoint detection and response (EDR)
Security Information Event Management (SIEM)

6 mois
40k-45k €
300-550 €
Poitiers, Nouvelle-Aquitaine
Missions : Dans le cadre du renforcement de son équipe Cybersécurité, notre client recherche un(e) Analyste Cybersécurité SOC / DevSecOps. Vous serez au cœur du dispositif de sécurité de l'entreprise avec pour mission de piloter les activités opérationnelles du SOC, renforcer les contrôles de sécurité et accompagner les projets de transformation cybersécurité. Vous interviendrez en étroite collaboration avec le RSSI, les équipes Infrastructure, Réseau, Système et Développement. Responsabilités : Piloter les activités opérationnelles du SOC et contribuer à son évolution. Développer et optimiser les règles de détection au sein du SIEM, tout en intégrant de nouvelles sources de données. Analyser et traiter les alertes de sécurité issues des solutions EDR et Microsoft 365. Participer aux investigations de sécurité et accompagner les collaborateurs dans le traitement des emails ou comportements suspects. Réaliser les revues d'habilitations et la gestion des droits en collaboration avec les équipes DevSecOps. Contribuer à l'analyse des audits de sécurité et au suivi des plans d'actions associés. Participer à la gestion des accès privilégiés et des environnements sécurisés. Accompagner les projets cybersécurité à venir, notamment autour des solutions SASE. Environnement technique : SIEM Sekoia EDR SentinelOne & Defender O365 Cloud AWS Ticketing Jira, Documentation Confluence Bonus : Terraform & Git / PowerShell / Bash Profil et compétences : Expérience significative en cybersécurité opérationnelle, SOC ou Blue Team. Bonne connaissance des environnements SIEM, EDR et Microsoft 365. Sens de l'analyse, rigueur et esprit d'équipe. Force de proposition et capacité à gérer les situations sensibles. Connaissance des normes ISO 27001, ISO 27005 et NIS2.
Voir cette offre
Freelance
CDI

Offre d'emploiConsultant Cybersécurité H/F

HAYS France
Publiée le
Cloud
Cloud privé
Cloud Provider

8 mois
50k-80k €
590-950 €
Bouches-du-Rhône, France
Dans un contexte d'accélération de la transformation digitale, de multiplication des échanges de données et d'évolution des menaces cyber, le groupe renforce sa Direction Cybersécurité afin de sécuriser ses infrastructures, ses applications métiers, ses entrepôts connectés et ses données stratégiques. Contexte de la missionAu sein de la DSI Groupe, vous participerez à la définition, à la mise en œuvre et à l'amélioration continue de la stratégie cybersécurité de l'entreprise. Vous interviendrez sur un environnement complexe intégrant notamment : ERP SAP WMS TMS Portails Clients Cloud Azure Réseaux multi-sites Infrastructures logistiques et industrielles Missions principalesGouvernance & CybersécuritéParticiper à la stratégie de cybersécurité du groupe. Réaliser des analyses de risque. Accompagner les projets IT sur les aspects sécurité. Mettre en œuvre les politiques de sécurité. Sécurité des infrastructuresSécuriser les environnements réseaux et systèmes. Réaliser les revues de sécurité. Participer à l'administration des solutions de sécurité. Assurer le suivi des vulnérabilités. Gestion des incidentsParticiper au traitement des incidents de cybersécurité. Contribuer aux plans de remédiation. Collaborer avec les équipes SOC et infrastructure. ConformitéAccompagner les audits internes et externes. Participer aux démarches ISO 27001. Veiller au respect des exigences réglementaires. SensibilisationAccompagner les utilisateurs sur les bonnes pratiques. Participer aux actions de sensibilisation cyber. Environnement TechniqueSécuritéMicrosoft Defender Sentinel EDR SIEM IAM MFA PKI CloudMicrosoft Azure, AWS, GCP, Privé RéseauxFirewall VPN IDS / IPS Segmentation réseau Applications MétiersSAP WMS TMS Applications Supply Chain
Voir cette offre

Déposez votre CV

  • Fixez vos conditions

    Rémunération, télétravail... Définissez tous les critères importants pour vous.

  • Faites-vous chasser

    Les recruteurs viennent directement chercher leurs futurs talents dans notre CVthèque.

  • 100% gratuit

    Aucune commission prélevée sur votre mission freelance.

Au service des talents IT

Free-Work est une plateforme qui s'adresse à tous les professionnels des métiers de l'informatique.

Ses contenus et son jobboard IT sont mis à disposition 100% gratuitement pour les indépendants et les salariés du secteur.

Free-workers
Ressources
A propos
Espace recruteurs
2026 © Free-Work / AGSI SAS
Suivez-nous