Trouvez votre prochaine offre d’emploi ou de mission freelance ISO 27001

Votre recherche renvoie 75 résultats.
Freelance
CDI

Offre d'emploiConsultant IAM

EDC DIGITAL-IT
Publiée le
IAM

12 mois
Moissy-Cramayel, Île-de-France
Nous recherchons un consultant IAM pour accompagner notre client : Afin de mener à bien cette mission, notre client souhaite préciser le niveau d'expertise nécessaire dans les domaines suivants : •Une solide maîtrise des solutions IAM d'entreprise. •Une expérience de déploiement et d'intégration de solutions IAM complexes. •Une bonne connaissance des protocoles SAML, OAuth2, OpenID Connect et LDAP. Une expertise sur Active Directory, Entra ID et les environnements hybrides. •Des compétences en automatisation (PowerShell, Python, API REST, Perl, Bash, Aix, Linux). •Une connaissance des solutions PAM (CyberArk, Delinea…). •Une maîtrise des exigences de cybersécurité, de gouvernance des identités (IGA) et des référentiels ISO 27001, NIST et ANSSI. •Une capacité à définir des architectures, accompagner les projets, piloter les intégrations techniques et assurer un rôle d'expertise auprès des équipes sécurité, infrastructure et applicatives. Sous la responsabilité du responsable de service et le support d'un référent interne expert le candidat aura en charge la gestion des activités suivantes (En conformité avec les règles d'exploitation et de sécurité client). Gestion globale d'exploitation du périmètre IAM : •Gestion des incidents et des changements •Maintien en Condition opérationnelles et de Sécurité (Patching) •Contribution à la mise à jour et au maintien du catalogue des services IAM •Reporting et du suivi d'activité global de son périmètre •Respect des normes et exigences de sécurité des systèmes d'informations •Respect des process •Réalisation et mise à jour des documentations d'exploitation •Rétro Ingénierie de l'environnement IAM actuel •Recenser les règles actuels de IAM SAE En complément, il participera à l'accompagnement technique d'intégration des environnements IAM pour les projets (BUILD) •Définition d'architecture des environnements IAM pour les projet applicatifs (accompagnement des architectes sur les spécifications et exigences techniques de dimensionnement, disponibilité, et de performance •Accompagnement à l'intégration des environnements IAM des solutions applicatives •Elaboration des référentiels techniques IAM (Dossier d'architecture technique détaillés, Dossier de mise en exploitation)
Voir cette offre
Freelance
CDI

Offre d'emploiEXPERT IAM SENIOR – IAM / AD / ENTRA ID / SSO / MFA

Gamme solutions
Publiée le
IAM

1 an
Paris, France
ContexteDans le cadre du renforcement de ses équipes, notre client recherche un Expert IAM Senior afin d'assurer l'expertise, l'exploitation, l'évolution et l'optimisation de sa solution de Gestion des Identités et des Accès (IAM). Le consultant interviendra à la fois sur les activités RUN/MCO et sur l'accompagnement des projets en BUILD, notamment pour la conception d'architectures IAM et l'intégration des services d'authentification et d'autorisation. L'environnement est international et multi-sites, avec environ 30 000 utilisateurs (internes, externes et prestataires). Missions🔹 Expertise et exploitation IAM – RUNAssurer le maintien en conditions opérationnelles et de sécurité des solutions IAM. Gérer les incidents, problèmes, changements et demandes d'évolution. Réaliser les opérations de patching et contribuer à la sécurisation des environnements. Effectuer la rétro-ingénierie de l'environnement IAM existant. Recenser et analyser les règles et mécanismes IAM actuellement en place. Contribuer à la mise à jour et au maintien du catalogue des services IAM. Produire les reportings et assurer le suivi de l'activité. Rédiger et maintenir la documentation technique et les procédures d'exploitation. Veiller au respect des normes, processus et exigences de sécurité du SI. 🔹 Architecture et intégration IAM – BUILDDéfinir les architectures IAM adaptées aux projets applicatifs. Accompagner les architectes dans la définition des spécifications et exigences techniques. Participer au dimensionnement des solutions en matière de disponibilité, performance et robustesse. Accompagner les équipes projets dans l'intégration des services IAM. Intégrer les mécanismes d'authentification et d'autorisation aux applications. Apporter son expertise aux équipes Sécurité, Infrastructure et Applicatives. Élaborer et maintenir les référentiels techniques IAM. Produire les DAT (Dossiers d'Architecture Technique) et dossiers de mise en exploitation. Participer aux stratégies de tests, à l'analyse des anomalies et à la validation de la robustesse des solutions. Compétences techniques recherchéesIAM / AuthentificationExpertise confirmée sur les solutions IAM d'entreprise. Expérience sur des projets IAM complexes et internationaux. SSO / MFA / RBAC / contrôle d'accès conditionnel. Gestion du cycle de vie des identités. Gouvernance des identités et des accès (IGA). Authentification et fédération d'identités. ProtocolesSAML OAuth 2.0 OpenID Connect LDAP Annuaire / MicrosoftActive Directory Microsoft Entra ID Environnements hybrides On-Premise / Cloud Automatisation / ScriptingPowerShell Python API REST Bash Perl Environnements AIX / Linux PAM / CybersécuritéConnaissance des solutions PAM, notamment : CyberArk Delinea Bonne maîtrise des exigences de cybersécurité. Connaissance des principes de gouvernance des identités. Référentiels et bonnes pratiques : ISO 27001 NIST ANSSI Environnement techniqueEnvironnements AIX, Linux et Microsoft. Active Directory. Bases de données Oracle. Interconnexion avec un grand nombre d'applications. Environnements internationaux et multi-sites. Une connaissance des environnements Cloud AWS constitue un plus. Profil recherché
Voir cette offre
Freelance
CDI
CDD

Offre d'emploiExpertise IAM

R&S TELECOM
Publiée le
AIX (Advanced Interactive eXecutive)
Bash
cyberark

6 mois
Seine-et-Marne, France
CONTEXTE DE LA MISSION L'entreprise souhaite renforcer l'expertise autour de sa solution de Gestion des Identités et des Accès afin d'en assurer l'évolution, le maintien en conditions opérationnelles et de sécurité, ainsi que l'optimisation. La solution intervient dans un environnement international et multisites d'environ 30 000 utilisateurs et est interconnectée avec l'ensemble du système d'information. La prestation couvre à la fois les activités d'exploitation du périmètre existant et l'accompagnement des nouveaux projets dans l'intégration des services d'authentification et d'autorisation. Le prestataire interviendra en qualité d'expert auprès des équipes infrastructure, sécurité, architecture et applicatives. OBJECTIFS DE LA PRESTATION • Garantir le maintien en conditions opérationnelles et de sécurité de l'environnement de Gestion des Identités et des Accès • Assurer la gestion des incidents, changements, correctifs et évolutions du périmètre • Réaliser une rétro-ingénierie de l'environnement existant et recenser les règles actuellement appliquées • Optimiser et faire évoluer les services de gestion des identités et des accès • Accompagner les projets applicatifs dans la définition de leur architecture d'authentification et d'autorisation • Piloter techniquement l'intégration des services de gestion des identités et des accès dans les nouveaux projets • Maintenir et enrichir les référentiels, documentations techniques et documents d'exploitation • Garantir le respect des exigences de cybersécurité, de gouvernance des identités et des processus internes de l'entreprise ENVIRONNEMENT TECHNIQUE • Environ 30 000 utilisateurs internes, externes et prestataires • Environnement international et multisites • Gestion des Identités et des Accès (IAM) • Active Directory (AD) • Microsoft Entra ID • Environnements hybrides • Authentification unique (SSO) • Authentification multifacteur (MFA) • Contrôle d'accès basé sur les rôles (RBAC) • Contrôle d'accès conditionnel • Gestion du cycle de vie des identités • Gouvernance des identités et des accès (IGA) • SAML, OAuth 2.0, OpenID Connect, LDAP • Solutions PAM : CyberArk, Delinea ou équivalent • AWS • Bases de données Oracle • AIX, Linux et environnements Microsoft • PowerShell, Python, API REST, Perl, Bash • Référentiels ISO 27001, NIST et ANSSI Objectifs et livrables PRESTATIONS ATTENDUES • Assurer la gestion globale de l'exploitation du périmètre IAM • Gérer les incidents et les changements • Assurer le maintien en conditions opérationnelles et de sécurité et les opérations de patching • Contribuer à la mise à jour et au maintien du catalogue des services IAM • Assurer le reporting et le suivi global de l'activité • Respecter les normes et exigences de sécurité des systèmes d'information • Respecter les processus internes de l'entreprise • Réaliser et mettre à jour les documentations d'exploitation • Effectuer la rétro-ingénierie de l'environnement IAM existant • Recenser et documenter les règles IAM actuellement appliquées • Définir les architectures IAM nécessaires aux projets applicatifs • Accompagner les architectes sur les spécifications, le dimensionnement, la disponibilité et les performances • Accompagner techniquement l'intégration des environnements IAM dans les solutions applicatives • Élaborer les référentiels techniques IAM • Produire les dossiers d'architecture technique détaillés et les dossiers de mise en exploitation • Participer aux réunions hebdomadaires de suivi et présenter les activités, difficultés et pistes d'amélioration • Contribuer aux diagnostics d'incidents complexes et aux audits d'infrastructures techniques PROFIL RECHERCHÉ • Niveau Expert • Expertise IAM et Active Directory dans des environnements complexes et internationaux • Solide maîtrise des solutions IAM d'entreprise • Expérience du déploiement et de l'intégration de solutions IAM complexes • Expertise Active Directory, Microsoft Entra ID et environnements hybrides • Maîtrise de SAML, OAuth 2.0, OpenID Connect et LDAP • Maîtrise des mécanismes SSO, MFA, RBAC et contrôle d'accès conditionnel • Compétences en automatisation : PowerShell, Python, API REST, Perl et Bash • Bonne maîtrise des environnements AIX et Linux • Connaissance des solutions PAM : CyberArk, Delinea ou équivalent • Maîtrise des problématiques de cybersécurité et de gouvernance des identités • Connaissance des référentiels ISO 27001, NIST et ANSSI • Expérience Oracle fortement appréciée • Connaissance des environnements AWS appréciée • Capacité à définir des architectures et piloter des intégrations techniques • Capacité à travailler avec les équipes sécurité, infrastructure et applicatives • Autonomie, leadership et bon relationnel • Capacité à animer des comités et à communiquer avec différents interlocuteurs • Bonnes capacités rédactionnelles : comptes rendus, documentation et présentations • Français courant • Anglais lu, parlé et écrit à un niveau soutenu pour des échanges réguliers avec les équipes internationales LIVRABLES • Dossiers d'intégration des environnements IAM • Dossiers d'exploitation des environnements IAM • Dossiers d'architecture technique détaillés • Dossiers de mise en exploitation • Modes opératoires et documentation d'exploitation • Rapports et documents techniques liés au périmètre • Documentation issue de la rétro-ingénierie de l'environnement existant • Documentation des règles IAM existantes • Rapport hebdomadaire d'activité à remettre chaque vendredi avant 16h • Comptes rendus remis aux dates attendues • Rapports ponctuels liés aux incidents complexes, diagnostics ou audits à remettre sous 5 jours ouvrés • Documentation définitive sous format non modifiable, notamment PDF, et sous format compatible Microsoft Office 2016 • Documentation intégrée dans la base de connaissances de l'entreprise MODALITÉS PRATIQUES • Localisation : Villaroche (vivre à -1h de route MAX) • Démarrage souhaité : 21 septembre 2026 • Durée : 6 mois renouvelables • Télétravail : 2j/ Semaine • Possibilité d'astreinte • Matériel : PC autorisé par l'entreprise à fournir par le prestataire et masterisé selon les standards du groupe
Voir cette offre
Freelance
CDI

Offre d'emploiExpert Sécurité de l'Intelligence Artificielle — Gouvernance, Conformité et Stratégie

R&S TELECOM
Publiée le
Microsoft Access

12 mois
40k-48k ¤
400-480 ¤
Île-de-France, France
Contexte de la mission Notre client, acteur bancaire de premier plan, structure la sécurité de l'intelligence artificielle au sein de son entité IT. Le besoin porte sur un profil senior capable de tenir à la fois l'expertise technique — architectures IA et agentiques, threat modeling, patterns de sécurisation — et le volet conformité et risques Cyber & IA dans un environnement fortement réglementé. Le/la consultant(e) intervient sur trois piliers : l'expertise technique et la veille, l'accompagnement sécurité des projets métier et socles techniques du cadrage à l'implémentation, et la stratégie (roadmap sécurité Cyber & IA, standards et directives, modèle d'opérationnalisation de la sécurité IA dans l'entreprise). Il/elle est l'interlocuteur sécurité IT opérationnel vis-à-vis des projets et des acteurs LoD2, en lien avec les équipes Data & IA et les équipes projets métier et infrastructure. Le poste implique une capacité de restitution au niveau du top management. Anglais professionnel indispensable. Objectifs et livrables Objectifs et livrables Analyses de risques et threat modeling appliqués aux systèmes d'IA (empoisonnement des données, évasion et vol de modèle, prompt injection) Définition des patterns d'architecture sécurisés pour l'IA et les architectures agentiques, et techniques de remédiation associées Traduction des exigences réglementaires et sécuritaires en contrôles techniques de sécurité Évaluation des risques tiers (Third-Party AI) et des solutions de sécurité IA du marché Élaboration et suivi de la roadmap stratégique sécurité Cyber & IA Rédaction des standards, directives et procédures encadrant l'usage de l'IA Définition du modèle d'opérationnalisation de la sécurité IA & Cyber Restitutions et supports de décision à destination du top management Compétences demandées Sécurité de l'IA Sécurité des systèmes d'IA et de Machine Learning Architecture de sécurité IA et Cyber Sécurité des architectures agentiques Threat modeling IA (empoisonnement de données, évasion de modèle, vol de modèle, prompt injection) Filtrage IA et garde-fous applicatifs MLOps / LLMOps Validation et évaluation de modèles Sécurisation des API et du protocole MCP Conformité, risques et gouvernance Conformité et risques Cyber & IA Conformité réglementaire IA, dont l'AI Act européen Gouvernance, risques et conformité (GRC) Évaluation des risques tiers (Third-Party AI) Politiques, standards et directives de sécurité Modèle des trois lignes de défense (LoD1 / LoD2) Référentiels normatifs (ISO 27001, NIST, OWASP, SOC 2) Roadmap et stratégie SSI Cybersécurité Architecture de sécurité applicative Cryptographie IAM / gestion des identités et des accès Intégration de la sécurité dans les projets (security by design) Analyse de risques, exigences et mesures de sécurité Secteur et formation Environnements réglementés : banque, finance, assurance ou santé Formation Bac+5 en cybersécurité et/ou intelligence artificielle Minimum 5 ans d'expérience en cybersécurité, dont 3 à 4 ans appliqués à l'IA Langues Anglais professionnel, à l'écrit comme à l'oral Français courant Savoir-être Restitution et communication au niveau top management Vulgarisation de concepts techniques complexes auprès de populations non techniques Posture de facilitateur et excellent relationnel Autonomie, rigueur et forte curiosité intellectuelle
Voir cette offre
CDI

Offre d'emploiIT Infrastructure Operations and Security Lead

Nexus Jobs Limited
Publiée le

£85k-100k
Grand Londres, Royaume-Uni
IT Infrastructure Operations and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. Summary of Skills Required: The following is a summary of the key skills that the Client would like you to bring to the company. Global Enterprise level Infrastructure Management position for the last 5 years, Buy before Build mentality and demonstrable migration of Legacy VM based estates to SaaS and Azure Cloud services platforms, Global Operational team management experience (human resources, strategic delivery, operational service, audit lead for Infra, budget..) Key 3 party operational infrastructure vendor management - i.e. management of managed service partners as a team extension globally, as well as service/solution delivery partners, Migration of Legacy VM based estates to SaaS and Cloud services platforms, Legacy Infra tech to Azure knowledge/experience, Prior to the last 5 years in Enterprise Management of a global estate/user-base, a demonstrable technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
CDI

Offre d'emploiInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le

£85k-100k
Grand Londres, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. Demonstrated network engineering experience (e.g., routing, switching, firewalls, VPNs, secure network design). Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. Experience with regulatory and compliance frameworks (e.g., ISO 27001, GDPR, NIST) and security best practices. Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The salary for this role will be in the range £85K - £100K + Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiIngénieur DevOps Services Cloud – Senior

RIDCHA DATA
Publiée le
Ansible
Cloud privé
DevOps

1 an
Aix-en-Provence, Provence-Alpes-Côte d'Azur
Contexte de la missionDans le cadre du développement d'une offre Platform as a Service (PaaS), nous recherchons un Ingénieur DevOps Services Cloud pour concevoir, développer et industrialiser des services Cloud managés sur la plateforme interne. Le consultant contribuera à la mise en place de services XaaS (Kubernetes as a Service, PostgreSQL, MongoDB, etc.) en collaboration avec les équipes Cloud, DevOps et SRE, tout en garantissant des solutions sécurisées, évolutives et conformes aux exigences ISO 27001 et HDS. Vos missionsConcevoir, développer et déployer des services PaaS/XaaS sur la plateforme Cloud interne. Développer un système agentique pour la conception de l'offre PaaS. Assurer l'intégration et l'interopérabilité des services avec les plateformes existantes (Morpheus, OpenStack). Développer et personnaliser des API en Go. Concevoir et intégrer des opérateurs Kubernetes. Industrialiser les déploiements via des pipelines CI/CD. Automatiser les déploiements avec Helm et Ansible. Intégrer les solutions aux outils de monitoring, logging et alerting. Garantir la sécurité des services Cloud conformément aux normes ISO 27001 et HDS. Produire et maintenir la documentation technique. Accompagner les équipes dans l'exploitation et l'évolution des services Cloud. Exploiter les solutions d'IA comme levier de productivité dans les processus de développement et d'automatisation. Livrables attendusConception et développement de l'offre PaaS. Déploiement des services Cloud managés. Intégration des services au SI Docaposte. Automatisation des déploiements CI/CD. Documentation technique. Mise en œuvre de solutions utilisant l'IA pour améliorer la productivité. Compétences indispensablesGo. Cloud (OpenStack, VMware). Kubernetes. Docker. Helm. Ansible. Linux / Unix. CI/CD (GitLab CI). Développement d'opérateurs Kubernetes. Français courant. Compétences appréciéesMorpheus CMP. RKE2 / Rancher. PostgreSQL. MongoDB. Nexus. Prometheus. Grafana. Solutions de logging centralisé. API REST. Sécurité Cloud. OpenStack. IA appliquée à l'automatisation et à la productivité. Soft SkillsExcellente capacité d'analyse et de résolution de problèmes. Autonomie et esprit d'initiative. Esprit d'équipe et collaboration transverse. Bonnes capacités de communication. Rigueur et sens de l'organisation. Orientation amélioration continue. Curiosité technologique et appétence pour les environnements Cloud innovants.
Voir cette offre
Freelance

Mission freelanceInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le

£500-650
Grand Londres, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. Demonstrated network engineering experience (e.g., routing, switching, firewalls, VPNs, secure network design). Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. Experience with regulatory and compliance frameworks (e.g., ISO 27001, GDPR, NIST) and security best practices. Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The rate for this role will be in the range £500 pd to £650 pd. This is a 3 month assignment. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
CDI

Offre d'emploiIT Operations and Security Lead

Nexus Jobs Limited
Publiée le

£85k-95k
Grand Londres, Royaume-Uni
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk – ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
CDI

Offre d'emploiIT Operations Platforms and Security Lead

Nexus Jobs Limited
Publiée le

£85k-100k
Grand Londres, Royaume-Uni
IT Operations Platforms and Security Lead This role requires excellent management of a small team in IT along with managing stakeholders and vendors. You must be hands-on technically in IT Infrastructure. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. Summary of Skills Required: Global Enterprise level Infrastructure Management position for the last 5 years, Global team management (human resources, strategic delivery, operational service, audit lead for Infra, budget..) Key - 3 party operational infrastructure vendor management - i.e management of managed service partners, Migration of Legacy VM based estates to SaaS and Cloud services platforms, Legacy tech to Azure knowledge/experience, Prior to the last 5 years, a technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £100K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre

Au service des talents IT

Free-Work est une plateforme qui s'adresse à tous les professionnels des métiers de l'informatique.

Ses contenus et son jobboard IT sont mis à disposition 100% gratuitement pour les indépendants et les salariés du secteur.

Free-workers
Ressources
A propos
Espace recruteurs
2026 © Free-Work / AGSI SAS
Suivez-nous