Trouvez votre prochaine offre d’emploi ou de mission freelance Security Information Event Management (SIEM)

Votre recherche renvoie 117 résultats.
Freelance
CDI

Offre d'emploiIngénieur GCP - banque

CONCRETIO SERVICES
Publiée le
Cloud
DevOps
Google Cloud Platform (GCP)

1 an
40k-45k €
460-550 €
Guyancourt, Île-de-France
MISSIONS PRINCIPALES Exploitation Quotidienne & Gestion des Incidents Superviser les services GCP en production via Cloud Monitoring et Cloud Logging : alerting, dashboards, détection proactive des anomalies Gérer les incidents N2/N3 sur l'infrastructure cloud : diagnostic, communication, résolution et production des post-mortems Gérer les changements dans le respect des processus ITIL (CAB, fenêtres de maintenance, traçabilité) Assurer le MCO des services managés : GKE, Cloud SQL, Cloud Storage, Pub/Sub, Cloud Run Sécurité & Conformité Bancaire Administrer les IAM en profondeur : service accounts, workload identity federation, conditions IAM, audit des droits, principe du moindre privilège Gérer la posture de sécurité via Security Command Center (SCC) : traitement des findings, politiques de sécurité, remédiation Administrer Cloud KMS : gestion des clés de chiffrement, rotation, CMEK sur les données sensibles Répondre aux audits internes et réglementaires (DORA, ACPR, RGPD) et assurer la conformité des accès Intégrer les logs GCP avec le SIEM de la banque (Splunk, QRadar ou Chronicle) Réseau & Connectivité GCP Gérer les VPC, sous-réseaux, firewall rules, Cloud NAT, Load Balancers L4/L7, Cloud DNS Gérer la connectivité on-premise (Cloud Interconnect ou VPN) et les flux réseau Diagnostiquer et résoudre les problèmes de connectivité complexes en production bancaire Continuité & Résilience Gérer les sauvegardes et les tests de restauration dans un contexte de données critiques (RTO/RPO exigeants) Contribuer aux procédures PRA/PCA et aux tests de résilience Documenter et maintenir les procédures d'exploitation pour la continuité opérationnelle Amélioration Continue & Automatisation Automatiser les gestes d'administration récurrents via Python, Bash ou Terraform Contribuer aux évolutions de la plateforme GCP et à la capitalisation des procédures Gérer les Organization Policies et le Resource Manager pour la gouvernance du tenant GCP
Voir cette offre
Freelance

Mission freelanceCyber Security Analyst (SOC Analyst) - DV Cleared

LA International Computer Consultants Ltd
Publiée le

6 mois
£600
Bracknell Forest, Royaume-Uni
Level 1 Cyber Security Analyst Must have an Active DV Clearance as immediate starts available Level 1 Cyber Security Analyst Responsibilities Monitor SIEM tooling to identify potential security threats. Perform initial investigation and triage of security alerts. Escalate incidents in line with defined processes. Oversee Security Operators during shift activities. Identify and report faults within monitoring tools. Support continuous security monitoring across a 24x7 operation. Follow incident management processes to ensure timely response. Level 1 Cyber Security Analyst Skills and Experience Experience within cyber security or security operations environments. Strong understanding of SIEM tools and alert handling. Technical knowledge across enterprise IT such as networks or servers. Ability to lead activities within a shift environment. Strong communication skills across technical teams. Level 1 Cyber Security Analyst Additional Information To apply, please send your CV by pressing the apply button Due to the nature and urgency of this post, candidates holding or who have held high level security clearance in the past are most welcome to apply. Please note successful applicants will be required to be security cleared prior to appointment which can take a minimum 18 weeks. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. An award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over multiple years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Voir cette offre
Offre premium
Freelance

Mission freelanceInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le
Cisco
CISSP
Data governance

3 mois
£500-650
Cité de Westminster, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is a bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications · Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. · Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. · Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. · Demonstrated network engineering experience (eg, routing, switching, firewalls, VPNs, secure network design). · Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. · Experience with regulatory and compliance frameworks (eg, ISO 27001, GDPR, NIST) and security best practices. · Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. · Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber ​​​​Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc. Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber ​​Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITER ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber ​​Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The rate for this role will be in the range £500 pd to £650 pd. This is a 3-month assignment. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Offre premium
CDI

Offre d'emploiInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le
Cisco
CISSP
Cybersécurité

£85k-100k
Cité de Westminster, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is a bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications · Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. · Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. · Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. · Demonstrated network engineering experience (eg, routing, switching, firewalls, VPNs, secure network design). · Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. · Experience with regulatory and compliance frameworks (eg, ISO 27001, GDPR, NIST) and security best practices. · Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. · Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber ​​​​Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc. Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber ​​Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITER ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber ​​Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The salary for this role will be in the range £85K - £100K + Benefits. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiPMO SI & Cybersécurité habilitable

Exiptel
Publiée le
Administration Windows
Azure
CrowdStrike

1 an
40k-62k €
400-600 €
Paris, France
Dans le cadre de projets stratégiques, nous recherchons pour l'un de nos clients du secteur public, un PMO SI & Cybersécurité. Ce poste nécessite d'être éligible à une habilitation défense délivrée par les autorités françaises. Contexte Dans le cadre de projets de transformation et de sécurisation des systèmes d'information, le PMO intervient sur le pilotage d'un portefeuille de projets stratégiques liés à la cybersécurité, à la conformité et à la modernisation des infrastructures IT au sein de grands comptes internationaux. Missions principales Piloter des projets et portefeuilles de projets IT et cybersécurité de bout en bout. Recueillir, analyser et formaliser les besoins métiers et techniques. Élaborer les plannings, suivre les jalons, les budgets, les charges et les risques projets. Organiser et animer les instances de gouvernance (COPIL, COPROJ, ateliers de travail, comités de suivi). Assurer la coordination des équipes métiers, IT, sécurité, infrastructure, SOC, production et des partenaires externes. Piloter les appels d'offres, participer au choix des fournisseurs et assurer le suivi contractuel. Superviser le déploiement de solutions de cybersécurité (SOC, SIEM, PAM, EDR, SOAR, IAM). Organiser et piloter les audits techniques, les campagnes de tests d'intrusion, les analyses de vulnérabilités et le suivi des plans de remédiation. Contribuer aux démarches de conformité et de gestion des risques (ISO 27001, EBIOS, PCI DSS, LPM, II901). Produire les livrables projets, tableaux de bord, indicateurs de pilotage (KPI) et reportings à destination des directions. Accompagner les utilisateurs et assurer la conduite du changement lors des déploiements de nouvelles solutions. Garantir la qualité, les coûts, les délais et la bonne exécution des projets. Ce poste nécessite d'être éligible à une habilitation défense délivrée par les autorités françaises.
Voir cette offre
CDI

Offre d'emploiInformation Security Manager

Nexus Jobs Limited
Publiée le

£60k-75k
Grand Londres, Royaume-Uni
Information Security Manager Role Description This is a full-time role as an Information Security Manager for Bank in Central London. The Information Security Manager will be responsible for day-to-day tasks related to information security management, including implementing and maintaining Information Security Management Systems (ISMS), ensuring cybersecurity and network security, and protecting sensitive information. This is a hybrid role, based in London with the flexibility for some remote work. Qualifications Information Security Management, ISMS, and Cybersecurity skills Network Security and Information Security knowledge Experience in implementing and maintaining ISMS Proficient in identifying and addressing information security vulnerabilities Strong analytical and problem-solving skills Excellent communication and interpersonal skills Certifications such as CISSP, CISM, or equivalent are preferred Bachelor's degree in Information Security, Computer Science, or related field Information Security Manager role (permanent) reporting into Head of IT (CIO | CISO) Need an individual with a strong hands on network and security background Cisco networking Cisco firewalls (Firepower / Threat Detection) Palo Alto firewalls SIEM experience (Logarithm desirable) Web proxy (Forcepoint desirable) Governance skills Policy writing / reviewing Reporting KPI monitoring Certifications like CCNP / CISM would be desirable but strong experience is preferable. The Client is based in Central London and the position is hybrid - 3 days in the office every week. Salary circa £60K - £75K + Benefits. Please do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiIngénieur SOC N3

NETSEC DESIGN
Publiée le
CrowdStrike
Google Security Operations (SecOps)
SOC (Security Operation Center)

1 an
45k-70k €
400-700 €
Boulogne-Billancourt, Île-de-France
On recherche pour notre client final grand compte un Ingénieur SOC N3 pour renforcer la capacité opérationnelle du Global SOC (GSOC) . Le GSOC couvre l'ensemble des entités du Groupe ainsi que tous les périmètres IS/IT. Ce besoin s'inscrit dans une démarche globale d'augmentation de la capacité d'onboarding applicatif et d'amélioration de la couverture des menaces cyber. La prestation couvre l'ensemble du cycle de vie des activités SOC, depuis la définition des besoins jusqu'à l'exploitation opérationnelle, en passant par l'implémentation technique. Elle comprend notamment : - Contribution à la définition et au maintien de la stratégie de détection et de réaction du GSOC, en cohérence avec l'évolution des menaces et des architectures du Groupe. - Intégration technique des systèmes et applications du Groupe dans le service de monitoring du GSOC, comprenant : l'identification et la documentation des scénarios de menaces pour les applications et technologies à onboarder (basées sur l'expertise des menaces, les données CTI et les analyses de risques) ; l'identification des données nécessaires à la détection (logs, listes blanches/noires) et la mise en place de la chaîne de collecte, du parsing et de l'intégration SIEM ; la création et la maintenance des règles de détection et des playbooks de réaction (SOAR). - Participation à la définition et au maintien en condition de sécurité des technologies de détection et de protection déployées dans le Groupe (gestion des politiques de sécurité des équipements). - Participation à l'évaluation et au déploiement des solutions techniques du SOC, et accompagnement du déploiement des solutions de sécurité sur l'infrastructure du Groupe. - Elaboration et maintien des exigences techniques, lignes directrices, normes et recommandations du GSOC applicables aux entités du Groupe. - Collaboration et support technique au réseau de correspondants sécurité des entités du Groupe, à l'échelle mondiale. Les livrables attendus dans le cadre de la présente prestation sont les suivants : 1. Dossier d'analyse des besoins de couverture de la menace : document structuré recensant les scénarios de menaces identifiés pour chaque système ou application à onboarder dans le GSOC, incluant les sources de logs nécessaires, les critères de détection et les priorités. Ce livrable est soumis à la validation du responsable technique 2. Spécifications techniques et fonctionnelles des mécanismes de détection et de réaction : document décrivant les règles de détection (cas d'usage SIEM) et les playbooks de réaction (SOAR) associés, avec critères d'acceptation définis en accord avec le responsable technique. 3. Implémentation des mécanismes de détection et de réaction dans les outils du GSOC (SIEM, SOAR), avec validation fonctionnelle par le responsable technique. 4. Recommandations détaillées et argumentées pour l'amélioration du niveau de détection et de réaction de l'existant, remises selon une fréquence à convenir avec le responsable technique. 5. Documentation technique maintenue à jour dans l'outil de gestion documentaire du SOC. 6. Activités mises à jour régulièrement dans l'outil de suivi des activités du SOC. 7. Participation active à l'ensemble des réunions techniques et de suivi d'avancement.
Voir cette offre
CDI

Offre d'emploiAdministrateur Systèmes & Cloud Azure

MGI Consultants
Publiée le
Azure
Cloud
Intune

45k-50k €
La Défense, Île-de-France
Rejoignez-nous pour une mission chez notre client du secteur de la gestion immobilière basée à La Défense (92) en tant qu'Administrateur Systèmes & Cloud Azure. L'Administrateur Systèmes, Réseaux et Cloud assure la gestion, l'exploitation et l'évolution des infrastructures IT de l'entreprise, couvrant les environnements On-Premise et Cloud. Il est garant du maintien en conditions opérationnelles (MCO) et en conditions de sécurité (MCS) des systèmes et réseaux.. Missions : Administration Systèmes • Installer, configurer et administrer les systèmes d'exploitation Windows Server et Linux. • Gérer les environnements de virtualisation (Hyper-V). • Administrer les annuaires et services associés (Active Directory, Azure AD, DNS, DHCP, GPO). • Superviser et administrer les solutions de messagerie et de collaboration (Exchange Online, M365, Teams). Administration Réseaux • Administrer les réseaux type LAN, WAN, Wi-Fi et VPN, SD WAN • Mettre en place et administrer des solutions de sécurisation réseau (IPS/IDS, filtrage web). Administration Cloud • Administrer les environnements Microsoft Azure (IaaS, PaaS, SaaS). • Gérer Azure AD, Intune, Exchange Online, NinjaOne et les solutions de sécurité associées (MFA, Conditional Access). • Superviser les workloads cloud (machines virtuelles, bases de données, stockage, réseaux virtuels). Exploitation & Supervision • Déployer et administrer les outils de supervision et de monitoring (, Zabbix, Grafana ). • Suivre la capacité, les performances et la disponibilité des infrastructures. • Diagnostiquer et résoudre les incidents systèmes, réseaux et cloud. • Assurer la traçabilité et l'exploitation des événements (logs, SIEM, Sentinel). • Contribuer aux procédures de gestion des incidents majeurs et gestion de crise. Support & Assistance • Apporter un support de niveau 2/3 aux utilisateurs et aux équipes support. • Assurer une assistance technique lors des déploiements et des incidents. • Accompagner les équipes métiers et les collaborateurs de la DSI dans leurs besoins spécifiques. • Former et sensibiliser aux bonnes pratiques d'usage des systèmes RUN & Maintien Opérationnel • Veiller à la conformité permanente des postes de travail (antivirus, EDR/XDR, correctifs, chiffrement, conformité Intune). • Contrôler régulièrement l'état de mise à jour des serveurs, Appliance réseau et équipements de sécurité. • Assurer le suivi du patch management et signaler toute dérive de conformité. • Surveiller l'état des sauvegardes et garantir leur bon déroulement (tests de restauration inclus). • Mettre en place des contrôles automatisés (reporting de conformité, tableaux de bord MCO/MCS). • Participer à la gestion proactive de la capacité et anticiper les saturations (CPU, mémoire, stockage, réseau). • Assurer la continuité des services (tests PRA/PCA, bascule régulière, exercices de crise). • Analyser les alertes et vulnérabilités détectées, appliquer les remédiations nécessaires en lien avec la sécurité. • Garantir la bonne application des politiques de sécurité (MFA, durcissement, segmentation, PSSI). • Contribuer à l'amélioration continue des processus RUN (standardisation, industrialisation, automatisation). Documentation et Reporting : • Maintenir une documentation technique précise sur les environnements, les sauvegardes et les procédures opérationnelles. • Produire des rapports réguliers sur les performances, les incidents et les améliorations mises en œuvre. Informations clés : Démarrage : ASAP Lieu : La Défense 92 Contrat : CDI uniquement Rytrhme : 1 à 2 jours de TT Rémunération : 45 à 50 K€
Voir cette offre
CDI

Offre d'emploiSenior IT Infrastructure Officer

Nexus Jobs Limited
Publiée le

£70k-75k
Grand Londres, Royaume-Uni
Senior IT Infrastructure Officer Our Client a bank, in Central London are looking for an experienced IT Infrastructure professional who is ideally looking for their next challenge in a dynamic and regulated financial services environment. We are seeking a highly skilled Senior IT Infrastructure Officer to lead the management, security, and continuous improvement of our enterprise IT infrastructure. The Senior IT Infrastructure Officer will be playing a key role in ensuring the availability, resilience, and performance of critical systems while supporting technologies across servers, networks, cloud services, cybersecurity, and business-critical financial applications. The candidate must have strong technical expertise in Windows/Linux, VMware, Microsoft 365, networking, cybersecurity, and infrastructure management who also enjoys solving complex challenges and driving operational excellence. Must have 7 years' experience in enterprise infrastructure, ideally within banking or financial services, and be passionate about delivering secure, reliable IT services.. The role will be Monday to Friday, 9:30am to 5:30pm and reporting into the Head of IT & Data. Due to the nature of the role, the individual is expected to work in our offices, 5 days per week, during their probationary period Infrastructure & Systems Management Administer, maintain, and optimize Windows and Linux server environments. Manage VMware virtualized infrastructure (vSphere 8 and above). Oversee enterprise backup and disaster recovery solutions using Veeam Backup & Replication. Manage Veeam ONE monitoring and Veeam Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. In depth understanding of Cyber security Monitor system performance, capacity, availability, and infrastructure health. Ensure compliance with IT governance, security policies, and operational standards. End-User Computing & Branch Support Provide advanced desktop, laptop, printer, Mobile device (iOS) and branch office IT support. Deliver AV support for meeting rooms, conferencing, presentations, and collaboration systems. Manage OS deployment, imaging, image creation, maintenance, and software packaging. Administer Active Directory (AD), Group Policy Objects (GPOs) and user provisioning and NTFS permissions. Support Microsoft 365 applications including Outlook, Teams, OneDrive, and SharePoint. Resolve technical incidents and service requests in line with agreed SLAs. 3. Enterprise Applications & Financial Systems Support Support and administer business-critical applications, including: Bloomberg FXT and Refinitiv Eikon, Murex Treasury System, SWIFT Alliance Access (SAA), 1AML, SIBS, GFMS, COP Support enterprise file synchronization and replication solutions (e.g., Syncovery, other SFTP). 4. Networking • Configure and support Cisco switches and routers. • Administer FortiGate firewall environments. • Strong network fundamentals: DNS, DHCP, TCP/IP, LAN/WAN, Routing and connectivity troubleshooting. Monitor network performance, availability, and security posture. Security & Endpoint Management Support vulnerability management using tools such as Tenable. Manage security monitoring and log analysis tools (e.g., Splunk). Perform SSL/TLS certificate lifecycle management using OpenSSL. Create and manage CSRs, certificate chains, and private keys. Ensure adherence to cybersecurity policies, standards, and regulatory requirements. Support physical access control systems (e.g., Paxton) Operating Systems Windows 11 Windows Server 2019/2022 (or equivalent enterprise environments) Red Hat Linux Infrastructure & Virtualization VMware vSphere / vCenter (v8.0.3 and above) Veeam Backup & Replication Veeam ONE, VRO Microsoft Office 365 ManageEngine Patch Manager Plus SAAS solutions SQL Server Security Symantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/ XDR Endpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) Networking Cisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & Storage Dell PowerEdge Servers Dell PowerVault SAN Storage Education Bachelor or Master's degree or professional qualification in relevant discipline (IT/Information Systems/Computer Science/Technology/Programming/Information Science/System Engineering/Computing) The role is based in Central London and initally will be be 5 days per week in the office. This is a 12 month FTC position. The salary for the role will be circa £70K - £75K. Do send your CV to us in Word format along with your salary and availability.
Voir cette offre
Freelance

Mission freelance260354/Consultant Cyber (SOC, CTI)

WorldWide People
Publiée le
CyberSoc

6 mois
340-380 €
Courbevoie, Île-de-France
Consultant Cyber (SOC, CTI)Project contextles missions: Opérationnel : soutien direct aux équipes SOC et CSIRT pour détecter, analyser et répondre aux incidents. Stratégique : veille proactive sur les menaces émergentes et production de renseignement pour orienter les décisions de sécurité et de gestion des risques. Missions : Volet Opérationnel - Surveiller les flux d'alertes et enrichir les investigations avec des indicateurs de compromission (IoCs). - Fournir des analyses techniques sur les attaques en cours (malwares, phishing, ransomware, etc.). Collaborer avec les équipes SOC/CSIRT pour accélérer la détection et la remédiation. Volet Stratégique : - Collecter et analyser des informations issues de sources ouvertes (OSINT), fermées (dark web, forums), et partenaires (CERT, InterCERT). - Identifier les tactiques, techniques et procédures (TTPs) des groupes APT et cybercriminels. - Produire des rapports de veille et des bulletins de menace pour la direction et les métiers. - Contribuer à l'élaboration de la stratégie de cybersécurité et à la sensibilisation des collaborateurs. Compétences requises : -Connaissance des frameworks MITRE ATT&CK, Kill Chain, Diamond Model. -Maîtrise des outils de CTI (MISP, SIEM, TIP). -Compétences en investigation numérique et en OSINT. -Capacité à vulgariser des analyses techniques pour un public non technique. -Esprit analytique, curiosité et rigueur. -Capacité à travailler en transversal avec des équipes techniques et stratégiques Présentiel le 1er mois. Télétravail possible, à la main du donneur d'ordre (max 2 jours par semaine) Une forte proactivité et autonomie est requise sur cette mission. Connaissance des techniques d'attaques Confirmed Maitrise outils CTI ((MISP, SIEM, TIP) Confirmed Compétences en investigation numérique /OSINT Confirmed
Voir cette offre
CDD

Offre d'emploiSenior IT Infrastructure & Systems Lead

Nexus Jobs Limited
Publiée le

£70k-75k
Grand Londres, Royaume-Uni
Senior IT Infrastructure & Systems Lead Our Client a bank, in Central London are looking for an experienced IT Infrastructure professional who is ideally looking for their next challenge in a dynamic and regulated financial services environment. We are seeking a highly skilled Senior IT Infrastructure Officer to lead the management, security, and continuous improvement of our enterprise IT infrastructure. The Senior IT Infrastructure Officer will be playing a key role in ensuring the availability, resilience, and performance of critical systems while supporting technologies across servers, networks, cloud services, cybersecurity, and business-critical financial applications. The candidate must have strong technical expertise in Windows/Linux, VMware, Microsoft 365, networking, cybersecurity, and infrastructure management who also enjoys solving complex challenges and driving operational excellence. Must have 7 years' experience in enterprise infrastructure, ideally within banking or financial services, and be passionate about delivering secure, reliable IT services.. The role will be Monday to Friday, 9:30am to 5:30pm and reporting into the Head of IT & Data. Due to the nature of the role, the individual is expected to work in our offices, 5 days per week, during their probationary period Infrastructure & Systems Management Administer, maintain, and optimize Windows and Linux server environments. Manage VMware virtualized infrastructure (vSphere 8 and above). Oversee enterprise backup and disaster recovery solutions using Veeam Backup & Replication. Manage Veeam ONE monitoring and Veeam Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. In depth understanding of Cyber security Monitor system performance, capacity, availability, and infrastructure health. Ensure compliance with IT governance, security policies, and operational standards. End-User Computing & Branch Support Provide advanced desktop, laptop, printer, Mobile device (iOS) and branch office IT support. Deliver AV support for meeting rooms, conferencing, presentations, and collaboration systems. Manage OS deployment, imaging, image creation, maintenance, and software packaging. Administer Active Directory (AD), Group Policy Objects (GPOs) and user provisioning and NTFS permissions. Support Microsoft 365 applications including Outlook, Teams, OneDrive, and SharePoint. Resolve technical incidents and service requests in line with agreed SLAs. Enterprise Applications & Financial Systems Support Support and administer business-critical applications, including: Bloomberg FXT and Refinitiv Eikon, Murex Treasury System, SWIFT Alliance Access (SAA), 1AML, SIBS, GFMS, COP Support enterprise file synchronization and replication solutions (e.g., Syncovery, other SFTP). Networking • Configure and support Cisco switches and routers. • Administer FortiGate firewall environments. • Strong network fundamentals: DNS, DHCP, TCP/IP, LAN/WAN, Routing and connectivity troubleshooting. Monitor network performance, availability, and security posture. Security & Endpoint Management Support vulnerability management using tools such as Tenable. Manage security monitoring and log analysis tools (e.g., Splunk). Perform SSL/TLS certificate lifecycle management using OpenSSL. Create and manage CSRs, certificate chains, and private keys. Ensure adherence to cybersecurity policies, standards, and regulatory requirements. Support physical access control systems (e.g., Paxton) Operating Systems Windows 11 Windows Server 2019/2022 (or equivalent enterprise environments) Red Hat Linux Infrastructure & Virtualization VMware vSphere / vCenter (v8.0.3 and above) Veeam Backup & Replication Veeam ONE, VRO Microsoft Office 365 ManageEngine Patch Manager Plus SAAS solutions SQL Server Security Symantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/ XDR Endpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) Networking Cisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & Storage Dell PowerEdge Servers Dell PowerVault SAN Storage Education Bachelor or Master's degree or professional qualification in relevant discipline (IT/Information Systems/Computer Science/Technology/Programming/Information Science/System Engineering/Computing) The role is based in Central London and initially will be be 5 days per week in the office. This is a 12 month FTC position. The salary for the role will be circa £70K - £75K. Do send your CV to us in Word format along with your salary and availability.
Voir cette offre

Au service des talents IT

Free-Work est une plateforme qui s'adresse à tous les professionnels des métiers de l'informatique.

Ses contenus et son jobboard IT sont mis à disposition 100% gratuitement pour les indépendants et les salariés du secteur.

Free-workers
Ressources
A propos
Espace recruteurs
2026 © Free-Work / AGSI SAS
Suivez-nous