Birmingham, West Midlands, West Midlands (County), United Kingdom
Experis
Outside IR35, Senior DevSecOps Architect / Consultant, hybrid, ISO27001 My client is looking for a Senior DevSecOps Architect / Consultant to lead governance, architecture guidance, and assurance for cloud and infrastructure security across Microsoft Azure, AWS, and key SaaS platforms. This is a hybrid role, so you need to be flexible to attend … embed best practices, validate implementations, and support audit readiness across IaaS, PaaS, and SaaS environments. Responsibilities Define and maintain multi-cloud security standards and reference blueprints (e.g. Azure Policy / Initiatives, AWS Control Tower / SCPs) Own security architecture patterns and contribute to HLD / LLD, threat models, and risk assessments Set assurance criteria and control evidence … standards (Entra ID Conditional Access, MFA, PIM; AWS IAM federation) Govern SaaS security onboarding (SSO, OAuth governance, DLP controls, vendor assessments) Specify telemetry and logging requirements for Microsoft Sentinel / SOC and review analytics / reporting Lead compliance mapping for ISO27001 and curate audit-ready evidence packs Chair Cloud & Platform Security design reviews More ❯
Lichfield, Staffordshire, West Midlands, United Kingdom Hybrid / WFH Options
IO Associates
security projects, ensuring compliance with cyber assurance standards and information security frameworks. Key Responsibilities Support and maintain information assurance across Defence and OGD (Other Government Department) environments. Conduct ISO27001 audits and ensure continued compliance with security frameworks. Act as a Defence or OGD Information Technology Security Officer (DITSO), providing expert advice and assurance to programmes. … Security with a willingness to learn and travel when required. ISO27001 auditor experience. Proven experience in Defence or Government cyber security assurance roles (DITSO / WARP). Desired Skills Broad knowledge of HMG Cyber Security and Assurance policy and guidance. Experience working with CCF, CAF, and NIST frameworks. Familiarity with NCSC best practice and More ❯
Security Center. Microsoft Sentinel Deep understanding of cloud-native security, zero-trust models, and secure network architecture Familiarity with compliance standards and security frameworks such as NIST, CIS, ISO27001, GDPR, and HIPAA Excellent verbal and written communication skills with the ability to convey complex technical issues to business leaders Qualifications such as Microsoft Azure Security More ❯