Trouvez votre prochaine offre d’emploi ou de mission freelance Sécurité informatique

Votre recherche renvoie 497 résultats.
Offre premium
Freelance

Mission freelanceApplication Security Program - International Industry - 92

Montreal Associates
Publiée le
DevSecOps
OWASP
SecOps

6 mois
650-750 €
Puteaux, Île-de-France
🔐 𝗖𝗼𝗻𝘀𝘂𝗹𝘁𝗮𝗻𝘁 𝗦𝗲𝗻𝗶𝗼𝗿 – 𝗦𝗵𝗶𝗳𝘁-𝗟𝗲𝗳𝘁 𝗔𝗽𝗽𝗹𝗶𝗰𝗮𝘁𝗶𝗼𝗻 𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗣𝗿𝗼𝗴𝗿𝗮𝗺 | 𝗚𝗿𝗼𝘂𝗽𝗲 𝗜𝗻𝗱𝘂𝘀𝘁𝗿𝗶𝗲𝗹 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 🚀 𝗩𝗼𝘂𝘀 𝗲̂𝘁𝗲𝘀 𝗽𝗮𝘀𝘀𝗶𝗼𝗻𝗻𝗲́(𝗲) 𝗽𝗮𝗿 𝗹𝗮 𝘀𝗲́𝗰𝘂𝗿𝗶𝘁𝗲́ 𝗮𝗽𝗽𝗹𝗶𝗰𝗮𝘁𝗶𝘃𝗲 𝗲𝘁 𝘀𝗼𝘂𝗵𝗮𝗶𝘁𝗲𝘇 𝗰𝗼𝗻𝘁𝗿𝗶𝗯𝘂𝗲𝗿 𝗮̀ 𝘂𝗻 𝗽𝗿𝗼𝗴𝗿𝗮𝗺𝗺𝗲 𝘀𝘁𝗿𝗮𝘁𝗲́𝗴𝗶𝗾𝘂𝗲 𝗮̀ 𝗹'𝗲́𝗰𝗵𝗲𝗹𝗹𝗲 𝗶𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹𝗲 ? Dans le cadre d'une initiative majeure visant à intégrer la sécurité dès la conception des applications, nous recherchons un Consultant Senior Application Security / DevSecOps capable d'accompagner la définition, la gouvernance et le déploiement d'un programme global de sécurisation des développements. Vos missions ✅ Définir et structurer les standards Secure SDLC et DevSecOps ✅ Construire les modèles opérationnels, processus, KPI et gouvernance ✅ Piloter des études de marché, benchmarks, PoC, RFI/RFP autour des solutions AppSec ✅ Accompagner l'intégration des pratiques de sécurité dans les chaînes CI/CD ✅ Sécuriser la Software Supply Chain et la gestion des dépendances logicielles ✅ Sensibiliser et accompagner les équipes de développement à l'adoption des bonnes pratiques Secure Coding ✅ Contribuer aux travaux relatifs à l'IA générative, à la sécurité des agents IA et aux nouveaux usages du développement assisté par l'IA Profil recherché ✔ 5 ans d'expérience minimum en Application Security, DevSecOps ou Secure SDLC ✔ Expérience confirmée dans des environnements grands comptes internationaux ✔ Solide maîtrise des sujets : OWASP SSDLC DevSecOps SAST / DAST / IAST / SCA GitLab / GitHub Secrets Management Software Supply Chain Security Infrastructure as Code Security AI Security ✔ Très bonnes capacités de communication, coordination et pilotage transverse ✔ Anglais fluide indispensable Vous avez déjà participé à la transformation DevSecOps d'un grand groupe ou au déploiement d'un programme Application Security à grande échelle ? Échangeons. #ApplicationSecurity #AppSec #DevSecOps #SSDLC #SecureSDLC #OWASP #CyberSecurity #SoftwareSecurity #SecureCoding #AISecurity #Freelance
Voir cette offre
Offre premium
Freelance

Mission freelanceInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le
Cisco
CISSP
Data governance

3 mois
£500-650
Cité de Westminster, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is a bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications · Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. · Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. · Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. · Demonstrated network engineering experience (eg, routing, switching, firewalls, VPNs, secure network design). · Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. · Experience with regulatory and compliance frameworks (eg, ISO 27001, GDPR, NIST) and security best practices. · Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. · Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber ​​​​Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc. Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber ​​Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITER ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber ​​Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The rate for this role will be in the range £500 pd to £650 pd. This is a 3-month assignment. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
CDI

Offre d'emploiInformation Security Manager

Nexus Jobs Limited
Publiée le

£60k-75k
Grand Londres, Royaume-Uni
Information Security Manager Role Description This is a full-time role as an Information Security Manager for Bank in Central London. The Information Security Manager will be responsible for day-to-day tasks related to information security management, including implementing and maintaining Information Security Management Systems (ISMS), ensuring cybersecurity and network security, and protecting sensitive information. This is a hybrid role, based in London with the flexibility for some remote work. Qualifications Information Security Management, ISMS, and Cybersecurity skills Network Security and Information Security knowledge Experience in implementing and maintaining ISMS Proficient in identifying and addressing information security vulnerabilities Strong analytical and problem-solving skills Excellent communication and interpersonal skills Certifications such as CISSP, CISM, or equivalent are preferred Bachelor's degree in Information Security, Computer Science, or related field Information Security Manager role (permanent) reporting into Head of IT (CIO | CISO) Need an individual with a strong hands on network and security background Cisco networking Cisco firewalls (Firepower / Threat Detection) Palo Alto firewalls SIEM experience (Logarithm desirable) Web proxy (Forcepoint desirable) Governance skills Policy writing / reviewing Reporting KPI monitoring Certifications like CCNP / CISM would be desirable but strong experience is preferable. The Client is based in Central London and the position is hybrid - 3 days in the office every week. Salary circa £60K - £75K + Benefits. Please do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiExpert Sécurité Réseau NAC – Cisco ISE / Fortinet - TOULOUSE

Ewolve
Publiée le
Cisco
Cybersécurité
Fortinet

2 ans
40k-45k €
400-550 €
Toulouse, Occitanie
Notre client, un grand compte du secteur bancaire, recherche un(e) Expert(e) Sécurité Réseau pour intégrer son équipe Sécurité Réseau Utilisateur. La mission consiste à participer activement aux projets de déploiement de nouveaux sites et à renforcer la sécurité du périmètre utilisateur, en s'appuyant principalement sur les technologies Cisco ISE (NAC) et, en complément, sur les politiques de filtrage Fortinet (FortiGate). Le consultant recherché est un profil technique polyvalent, capable de concevoir et déployer des solutions de sécurité (mode BUILD) tout en garantissant leur stabilité au quotidien (mode RUN). Missions principales – NAC Cisco ISE (impératif) : Piloter le déploiement de la solution NAC sur de nouveaux sites Mener les projets d'évolution et d'automatisation de l'infrastructure NAC Définir et mettre en œuvre le profiling des terminaux (Endpoint Profiling) Proposer de nouvelles solutions/configurations pour renforcer la sécurité NAC Assurer le support avancé : analyse des demandes, troubleshooting des incidents Gérer les modifications de la politique de filtrage Missions complémentaires – Firewalling Fortinet : Implémenter les matrices de flux selon les besoins des projets Créer des matrices de flux à partir des logs firewall Diagnostiquer les dysfonctionnements et proposer des solutions pérennes Améliorer les performances et l'exploitabilité (automatisation, bonnes pratiques) Documenter l'exploitation pour faciliter le transfert vers l'équipe RUN Firewall
Voir cette offre
CDI

Offre d'emploiNetwork Security Engineer

Rise Technical Recruitment Ltd
Publiée le

£40k-50k
Reigate and Banstead, Royaume-Uni
Network Security Engineer (Eligible for SC Clearance) Competitive Salary + Annual Bonus + Private Healthcare + Pension + Progression + Gym Membership + Full Training London Are you an experienced Network Security Engineer looking to take ownership of network security across complex global systems while working with cutting-edge satellite and communications technology? This is a fantastic opportunity to join a well-established and growing engineering organisation, where you will play a key role in developing and implementing security strategies across both internal and customer environments. You will work closely with compliance and engineering teams to embed robust security practices into daily operations and ensure systems are protected against evolving threats. In this role, you will be responsible for designing, implementing, and maintaining security solutions while actively monitoring threats and responding to incidents. You will utilise tools such as SIEM, IDS/IPS, and vulnerability management platforms to maintain the integrity of networks, as well as carry out investigations into security events and recommend improvements. The ideal candidate will have strong hands-on experience across multi-vendor network environments, with a deep understanding of cybersecurity frameworks and compliance standards such as ISO27001. This position offers a varied and technically engaging workload alongside opportunities to mentor colleagues and contribute to ongoing security improvements. The Role: Design, implement and maintain network security solutions across internal and customer systems Monitor security tools (SIEM, IDS/IPS) and respond to incidents and vulnerabilities Provide third-line support and act as a key escalation point for security issues Develop and maintain security policies, procedures, and documentation Collaborate with internal teams to improve security across infrastructure The Person: Strong experience with Cisco and Juniper networking technologies Proven background in cybersecurity tools including SIEM, IDS/IPS and penetration testing Knowledge of ISO27001, GDPR and security frameworks Ability to troubleshoot and resolve complex security issues independently Reference Number:BBBH276007 Rise Technical Recruitment Ltd acts an employment agency for permanent roles and an employment business for temporary roles. The salary advertised is the bracket available for this position. The actual salary paid will be dependent on your level of experience, qualifications and skill set and will be decided by our client, the employer. Rise are not responsible or liable for any hiring decisions made by the end client. We are an equal opportunities company and welcome applications from all suitable candidates.
Voir cette offre
Offre premium
CDI

Offre d'emploiInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le
Cisco
CISSP
Cybersécurité

£85k-100k
Cité de Westminster, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is a bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications · Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. · Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. · Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. · Demonstrated network engineering experience (eg, routing, switching, firewalls, VPNs, secure network design). · Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. · Experience with regulatory and compliance frameworks (eg, ISO 27001, GDPR, NIST) and security best practices. · Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. · Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber ​​​​Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc. Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber ​​Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITER ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber ​​Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The salary for this role will be in the range £85K - £100K + Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiUn Ingénieur Sécurité Produit sur Grenoble

Almatek
Publiée le
Sécurité informatique

3 mois
Grenoble, Auvergne-Rhône-Alpes
Almatek recherche pour l'un de ses clients Un Ingénieur Sécurité Produit sur Grenoble. Projet de mise en conformité CRA (Cyber Resilience Act) d'une gamme de produits connectés a Cluse : • Définir et réaliser le plan de tests de conformité CRA & de sécurité (suites de tests de conformité). • Identifier et valider les outillages (PoC) adaptés au contexte DevOps des produits du client pour démontrer la conformité CRA (SAST/DAST, génération de SBOM, scanner de CVE, artefacts de preuve CRA). • Documenter les résultats des tests de sécurité et fournir des recommandations. • Développer et maintenir les outils, scripts et frameworks de test de sécurité pour systèmes embarqués : - Analyse de conformité des fonctions de sécurité (vérification de signature, authentification d'interface). - Analyse de robustesse des mécanismes de sécurité. - Analyse de vulnérabilité (conception, BOM). - Analyse de sécurité des interfaces et des communications. - Analyse de résistance des mécanismes cryptographiques. - Analyse du générateur aléatoire (entropie). - Analyse du firmware (FW). • Animer la communauté de pratique (CoP) des tests de cybersécurité et l'évaluation des résultats de tests existants sur l'ensemble des produits. • Communiquer et coordonner avec les divisions et parties prenantes du client sur les problématiques et solutions de sécurité. Nota : le client fournira une base d'outils (base-stack) de fuzzing et de sniffing compatibles avec la communication IO-homecontrol pendant la période des tests DAST / d'intrusion. Cycle de développement sécurisé : • Secure Development Life Cycle, ex. IEC 62443-4-1. Systèmes embarqués : • HW/SW embarqué ; C, C++, MCU, mémoire flash, transceiver radio, JTAG ; Yocto, Linux, RTOS. RDPS & applications mobiles : • RDPS : Cloud (IAM, PKI, TLS). • Mobile : iOS, Android, Java, Kotlin, Go, JWT. Sécurité applicative : • C/C++, SAST, DAST, buffer overflow, race condition. CI/CD & outils de sécurité : • Git, IAR, Jenkins, SonarQube, Doxygen, Nexus, trivy, Proguard, MobSF. • SBOM : CycloneDX, SPDX. Protocoles & domaine : • Protocoles bas débit / basse consommation (legacy), Zigbee 3.0/4.0, 802.15.4, BLE 4.x, KNX, DTLS, TLS 1.3. • Smart home, automatisation du bâtiment. Localisation : Grenoble.
Voir cette offre
Freelance

Mission freelanceExpert Sécurité Applicative — AppSec Engineer

CONCRETIO SERVICES
Publiée le
Angular
OWASP
PHP

6 mois
Paris, France
MISSIONS PRINCIPALES Standards & Bonnes Pratiques DevSecOps Faire évoluer et maintenir la documentation des standards de développement sécurisé Intégrer les nouvelles menaces IA/LLM et définir les exigences de sécurité associées (OWASP LLM Top 10 2025 : prompt injection, data leakage, insecure output handling) Identifier et implémenter de nouvelles mesures de sécurité dans les pipelines CI/CD (security gates, shift-left) Contribuer aux réflexions sur les choix technologiques (frameworks, API Gateway, SSO) et définir les configurations sécurisées Accompagnement des Projets Stratégiques Assurer le conseil sécurité applicative sur les projets majeurs : analyse des architectures, identification des risques, définition des exigences de sécurité Réaliser des audits de code (boîte blanche) et des pentests applicatifs en phase de développement Proposer et aider à implémenter les corrections de vulnérabilités directement dans le code (Java, PHP, Python) Pilotage des Outils SAST/SCA/DAST Piloter Coverity (SAST) : configuration des politiques d'analyse, amélioration des règles, accompagnement des équipes sur l'interprétation des résultats Piloter Black Duck (SCA) : audit des dépendances tierces, gestion des CVE, politiques d'acceptation du risque Piloter Insight App Sec (DAST) : configuration des scans, interprétation et priorisation des résultats Intégrer ces outils dans les processus et pipelines de développement Suivi des Recommandations d'Audit Challenger et analyser les recommandations issues des tests d'intrusion externes Construire les plans d'action avec les équipes IT et piloter leur traitement Assurer le reporting auprès du responsable sécurité Sensibilisation & Formation Concevoir et animer le plan de sensibilisation sécurité auprès des équipes de développement (workshops, CTF, formations) Former les développeurs aux bonnes pratiques de développement sécurisé
Voir cette offre
Freelance

Mission freelanceDV Security Platform Engineer

LA International Computer Consultants Ltd
Publiée le

12 mois
GU14 7SR, Rushmoor, England, United Kingdom
Security Platform Engineer - DV Cleared (contract) Locations: London / Corsham / Farnborough As a Security Platform Engineer, you will play a role in designing, building, and managing cloud-native security platforms with a strong emphasis on Kubernetes-based environments. You'll be at the intersection of security and engineering, developing scalable tooling, automating security controls, and enabling robust detection and response capabilities across our cloud infrastructure. This is a hands-on, engineering-centric role that requires deep technical expertise in cloud environments, Kubernetes security, and platform automation. Responsibilities ● Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS). ● Develop and implement security monitoring and logging strategies. ● Investigate and analyse security incidents, including identifying root causes, determining the scope of impact, and taking appropriate containment and remediation actions. ● Perform forensic analysis to identify and investigate suspicious activity. ● Automate security tasks and workflows to improve efficiency and effectiveness. Preferred Qualifications (PQs) ● Certifications in Security (e.g., GSEC, CISSP, CISM, OSCP). ● Experience with Kubernetes threat detection and anomaly detection. ● Familiarity with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. ● Background in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. ● Contributions to security-focused open-source projects or internal security platform toolin Due to the nature and urgency of this post, candidates holding or who have held high level security clearance in the past are most welcome to apply. Please note successful applicants will be required to be security cleared prior to appointment which can take a minimum 18 weeks. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. An award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over multiple years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Voir cette offre
CDI

Offre d'emploiIT Operations and Security Lead

Nexus Jobs Limited
Publiée le

£85k-95k
Grand Londres, Royaume-Uni
IT Operations Platforms and Security Lead In summary the Client is looking to recruit an all-round individual with expert knowledge and hands-on experience of IT Infrastructure coupled with Security, Compliance & Risk Management You must have upwards of 10 years hands-on expertise in IT Infrastructure combined with Security and Risk – ideally from within the banking or insurance sector. The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment. While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate. The role requires a proactive leader who can drive IT operational excellence, manage security risks, focus on continual service improvement, drive transformational delivery projects, and work effectively with internal stakeholders and third-party vendors to deliver a high-quality Global IT services. Working in line with the Architecture defined IT principle of a "buy before build" environment, the individual will need to ensure that outsourced and cloud-based services are robust, cost-effective, and aligned with business needs and the Strategic IT vision. They will also play a key role in enhancing cybersecurity, protecting data and systems, driving transformative operational change, enhancing IT processes and ensuring compliance with governance bodies and industry regulations. Due to the nature of the role, complexity of the estate, current transformation activities and team size, the role requires the functional capability and proficiency to technically augment the team capabilities (when required) and have a detailed knowledge of technical IT support roles/services as a requirement, across multiple technical areas. Security, Compliance & Risk Management Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data. Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services. Oversee endpoint security, cloud network and API security for robust protection across all assets Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests. Technical Experience Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 administration and design Global Software Patching and estate management via Intune Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience Software Defined Networking (Cisco, Meraki, Versa) Key Skills Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel. Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills: IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery. Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness. Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption. Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Skills & Mindset: Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment. Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users. Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach. The Client is a financial organisation based in the City of London. This is a hybrid position with 3 days in the office. Must have a Bachelor's degree in IT or similar. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiExpert sécurité O365/MS - Toulouse (H/F)

STORM GROUP
Publiée le
Architecture
Sécurité informatique

3 ans
45k-50k €
520 €
Toulouse, Occitanie
Contexte : L'objectif de la mission est d'accompagner les projets de sécurité des solutions collaboratives, en particulier autour de l'écosystème M365 et des solutions de protection des données sensibles. Le consultant intégrera une équipe d'experts en sécurité des données et travaillera en collaboration étroite avec les équipes basées à Porto. La mission vise à garantir le maintien en condition de sécurité des solutions collaboratives, à piloter les campagnes de revue des accès, et à assurer le RUN des solutions de protection des stockages bureautiques. Missions : Sécurisation des solutions collaboratives :Définir, paramétrer et améliorer les règles de sécurisation M365. Produire des analyses de sécurité sur les nouveaux services M365. Assurer la sécurité des projets intégrés au tenant M365. Protection des données & gouvernance des accès :Déployer la solution de revue des partages M365 (IDECSI). Piloter les campagnes de revue des accès et des partages. Maintenir et améliorer un tableau de bord des indicateurs de sécurité. RUN & MCO des solutions de protection des données :Assurer le maintien en condition opérationnelle des solutions de protection des données bureautiques sur NAS (Varonis, SailPoint). Suivre les incidents N2/N3 et piloter les remédiations. Documentation & standards :Rédiger des guides, standards et bonnes pratiques de sécurité. Participer aux audits internes et externes. Appliquer les recommandations d'audit et les demandes de mise en conformité. Veille & innovation :Assurer une veille technologique sur les sujets sécurité, cloud et protection des données. Proposer des solutions innovantes pour améliorer la sécurité, la qualité et les performances.
Voir cette offre

Au service des talents IT

Free-Work est une plateforme qui s'adresse à tous les professionnels des métiers de l'informatique.

Ses contenus et son jobboard IT sont mis à disposition 100% gratuitement pour les indépendants et les salariés du secteur.

Free-workers
Ressources
A propos
Espace recruteurs
2026 © Free-Work / AGSI SAS
Suivez-nous