security posture and compliance across a large-scale hybrid environment. This is a high-impact technical role where you will work across infrastructure, cloud, and security teams to implement ZeroTrust principles , optimise Zscaler integrations, and enhance resilience of enterprise networks. Key Responsibilities Design, deploy, and manage Zscaler ZPA & ZIA solutions across enterprise networks. Integrate Zscaler with IdPs … and compliance teams to ensure secure and compliant access . Maintain detailed documentation of Zscaler configurations, policies, and procedures. Support design of On-Prem & Cloud security architecture aligned with Zero Trust. Use Linux (scripts, key updates, cron jobs, troubleshooting) for operational support. Stay current with emerging threats, vulnerabilities, and Zscaler updates . Required Skills & Experience 8+ years in network … large-scale environments. Strong understanding of TCP/IP, DNS, VPNs, firewalls, proxies , and routing protocols (OSPF/BGP). Experience working with cloud platforms (AWS, Azure, GCP) and ZeroTrust architectures . Familiarity with IAM and SAML/SSO integrations . Proficiency with network/security monitoring tools (Wireshark, Splunk, etc.). Excellent problem-solving, troubleshooting, and More ❯
remote access infrastructure. This role focuses on delivering secure, reliable, and high-performance connectivity for over 50,000 users and their devices through the implementation of VPN, SASE, and Zero-Trust Network Access (ZTNA) technologies. With a focus on automation, observability, and user experience, this position plays a vital role in ensuring seamless and secure connectivity across third … lead the strategy and roadmap for remote connectivity services, including VPNs, ZTNA, and SASE. Architect solutions that combine performance, resilience, and security using modern software-defined networking principles. Embed zero-trust principles and user-centric design into all remote connectivity services. Align remote connectivity architecture with broader enterprise network, security, and cloud strategies. Engineering & Operations: Lead the engineering … access solutions such as Cisco AnyConnect, Zscaler, and other mainstream VPN platforms. Drive automation of remote access provisioning, policy enforcement, and configuration management through Infrastructure as Code (IaC) and zero-touch deployment practices. Apply Site Reliability Engineering (SRE) principles to improve performance, availability, and troubleshooting. Establish observability practices across all access points with real-time metrics, logs, and telemetry. More ❯
Cheshire, North West, United Kingdom Hybrid / WFH Options
Exalto Consulting ltd
Lead Network Security Engineer - Outside IR35 - Remote - CCNP - palo alto - Zscaler - ZeroTrust Network - network security engineer. Exalto Consulting are currently recruiting for a contract lead network security engineer, this is initially 6 months daily rate is dependent on experience. This is remote but will be travel to sites in the UK every month and European travel when … needed. Essential skills for the roles: Zscaler Private Access & Internet Access ZeroTrust network Architecture You will be required to design and implement end to end network infrastructure automation capabilities. Proficiency in configuring, managing, and troubleshooting firewalls. Cisco, Palo Alto etc. Experience with intrusion detection/prevention systems, as well as with SIEM tools and security incident response. … for a new contract role please send your CV for immediate consideration as our client are looking to hire ASAP Network Security Engineer - Outside IR35 - Remote - CCNP - palo Alto - zerotrust - network security engineer More ❯
in support and architecture. Robust networking background, with experience in managing multiple sites from firewalls to edge switches (Cisco Meraki), and familiarity with SD-WAN, IPv6, VPN, BGP, and ZeroTrust/ZeroTrust Network Access (ZT/ZTNA). Experience with on-premise solutions, e.g. VMware. Proficiency in managing enterprise storage solutions across on-prem More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
governance frameworks (e.g., EU AI Act, NIST AI RMF). Integrate security into DevSecOps and MLOps pipelines , including CI/CD and infrastructure-as-code environments. Drive adoption of ZeroTrust principles, encryption standards, IAM policies, and network/data/application security controls. Collaborate with data scientists, ML engineers, and IT security teams to embed security throughout … and data privacy issues. Deep knowledge of: Identity & Access Management (IAM) Network and Application Security Data Protection & Encryption Kubernetes, Containers, and DevSecOps/MLOps practices SIEM, logging, and monitoring ZeroTrust architectures Skilled in applying frameworks such as NIST CSF, ISO 27001, PCI DSS, CSA CCM, NIST AI RMF . Hands-on with tools for vulnerability management, secrets More ❯
controls into CI/CD pipelines, cloud-native services, and on-prem platforms to enforce security-by-design principles. Deliver security capabilities that support modern work scenarios, remote access, zero-trust networking, and AI/ML workloads. Leverage automation frameworks and IaC to improve scalability and reduce manual intervention. Operational Security, SRE & Assurance: Ensure security platforms are resilient … ability to design and scale global solutions. Experience with security engineering in hybrid and cloud-native environments (AWS, Azure, GCP). Proven track record in automating security controls, implementing zero-trust models, and supporting 24x7 security operations. Strong understanding of compliance frameworks and risk management strategies. Preferred Qualifications: Certifications such as CISSP, CCSP, CISM, AWS/Azure Security More ❯
Center, Defender for Cloud, Key Vault, and Backup/Recovery Services. Implement hybrid cloud connectivity and Azure Virtual Desktop where required. Partner with the Cyber Security team to ensure ZeroTrust principles and best practice are embedded across infrastructure and M365. Monitor and manage firewalls (Cisco, Meraki, WatchGuard), VPNs, and endpoint protection. Oversee enterprise LAN, WAN, VPN, VLAN … platforms (VMware/Hyper-V) and SAN/NAS storage solutions. Skilled in network administration (LAN, WAN, VPN, VLANs, routing, firewalls). Strong background in cybersecurity practices, compliance, and ZeroTrust frameworks. Automation/scripting experience (PowerShell, Bash, or Python preferred). Excellent communication and leadership skills, able to translate technical requirements for senior stakeholders. Desirable but not More ❯
globally. By driving scalable, automated, and user-focused security engineering-and by embedding security into modern engineering and operational practices-this role ensures BCG can innovate securely while maintaining trust, compliance, and operational excellence. The Global Delivery Director - Secure Data is responsible for leading the design, delivery, and continuous evolution of BCG's data security strategy and controls. This … role is accountable for embedding security within DevSecOps practices, applying Site Reliability Engineering (SRE) principles across all security services, and aligning with privacy, compliance, and business leaders to maintain trust and regulatory compliance. Key Responsibilities: Strategic Leadership & Transformation: Define and execute a unified security engineering strategy that addresses data protection across all environments and data lifecycle stages. Lead the … and classification. Collaborate with the IAM team to align authentication, authorization, and privileged access policies with data security controls. Deliver security capabilities that support modern work scenarios, remote access, zero-trust networking, and protection of sensitive data in AI/ML workloads. Leverage automation frameworks and IaC to improve scalability and reduce manual intervention. Operational Security, SRE & Assurance More ❯
Northampton, Northamptonshire, United Kingdom Hybrid / WFH Options
Experis
Intune, SCCM) Application packaging and virtualization Drive automation and standardization across the EUC estate. Security & Compliance Ensure EUC solutions adhere to Barclays' security policies and regulatory requirements. Implement i zero-trust principles, identity and access management, and data protection strategies. Collaboration & Stakeholder Engagement Partner with infrastructure, security, and business teams to deliver integrated solutions. Engage with vendors and …/VMware Horizon, VDI Intune, SCCM, Autopilot Scripting (PowerShell, Bash) Strong understanding of cloud platforms (Azure, AWS, GCP) and hybrid environments. Security & Governance: Experience implementing secure EUC environments with zero-trust architecture. Familiarity with regulatory frameworks and compliance standards (e.g., GDPR, ISO 27001). Leadership & Communication: Proven ability to lead cross-functional teams and mentor junior staff. Strong More ❯
Northampton, Northamptonshire, United Kingdom Hybrid / WFH Options
Experis
Intune, SCCM) Application packaging and virtualization Drive automation and standardization across the EUC estate. Security & Compliance Ensure EUC solutions adhere to Barclays' security policies and regulatory requirements. Implement [i]zero-trust principles, identity and access management, and data protection strategies. Collaboration & Stakeholder Engagement Partner with infrastructure, security, and business teams to deliver integrated solutions. Engage with vendors and …/VMware Horizon, VDI Intune, SCCM, Autopilot Scripting (PowerShell, Bash) Strong understanding of cloud platforms (Azure, AWS, GCP) and hybrid environments. Security & Governance: Experience implementing secure EUC environments with zero-trust architecture. Familiarity with regulatory frameworks and compliance standards (e.g., GDPR, ISO 27001). Leadership & Communication: Proven ability to lead cross-functional teams and mentor junior staff. Strong More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Salt Search
projects, ensuring scalability, performance, and compliance. Implement and maintain CI/CD pipelines using GitHub Actions for automated deployments. Enforce cloud security policies including RBAC, policy-as-code, and ZeroTrust architecture. Collaborate with cross-functional teams to deliver solutions in an agile environment, writing user stories, tasks, and acceptance criteria. Monitor, optimize, and troubleshoot Azure environments to … expertise with Azure services (compute, networking, storage, identity, monitoring). Strong proficiency in Terraform (Infrastructure as Code). Hands-on experience with Python and PowerShell scripting. Solid understanding of ZeroTrust principles and cloud security best practices. Experience building CI/CD pipelines with GitHub Actions or similar tools. Strong communication skills with the ability to work collaboratively More ❯
troubleshoot Cisco and Meraki devices (routers, switches, firewalls). Administer firewall solutions using Fortinet and Palo Alto, and manage the decommissioning of legacy equipment. Implement and maintain SASE, CASB, ZeroTrust, and CATO/SASE security solutions. Utilise network visualization tools and virtualization platforms (VMware) for enhanced monitoring and flexibility. Automate infrastructure provisioning and management using Python, PowerShell … WAN, Wi-Fi). Hands-on experience with Cisco and Meraki networking hardware. Proficiency in firewall technologies (Fortinet, Palo Alto) and legacy infrastructure decommissioning. Demonstrable knowledge of SASE solutions, ZeroTrust security models, CASB, and CATO or SASE. Familiarity with network visualization tools and VMware virtualization. Relevant certifications (CCNP, CCIE, SASE Certified Architect, or similar). Advanced configuration More ❯
across the organization by managing our network and security platforms in a hybrid environment. Working within the Network Operations team, you'll oversee switching, routing, internet connectivity, firewalls, and ZeroTrust solutions across multiple vendor technologies. This role is essential to supporting and protecting our growing infrastructure. Key Responsibilities: Balance project work and operational support as part of … regulated sectors. Hands-on experience with automation and monitoring tools. Skilled in configuring, managing, monitoring, and troubleshooting Cisco Nexus, firewalls, Meraki switches, and WiFi networks. Knowledge and experience with ZeroTrust networking environments. Experience configuring, supporting, and maintaining monitoring solutions such as SolarWinds. Degree or equivalent qualification in a technical field. Network administration certification at CCNP level or … being Just and delivering the best outcomes for our customers. We're committed to building a more sustainable business, and we're working hard to make progress against ourNet Zero targets . We're reducing our reliance on fossil fuels in our offices, switching to more sustainable sources of energy and we're investing more of our money in More ❯
of cyber security architects and engineers dedicated to helping clients secure their technology ecosystems. Our work spans the breadth of the commercial sector covering areas such as cloud security, ZeroTrust, DevSecOps, data protection, and identity security. We partner with organisations to design and implement security solutions that are practical, scalable, and aligned with business goals. As a … you thrive: Cyber Security Architecture - Designing and securing cloud, applications, networks, data, or identity systems. Secure by Design & DevSecOps - Embedding security in CI/CD pipelines and development lifecycles. ZeroTrust & Risk Management - Applying security frameworks and risk-based approaches. Thought Leadership - Engaging in research and publishing in recognised forums. Stakeholder Influence - Engaging with technical teams, business leaders More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
of cyber security architects and engineers dedicated to helping clients secure their technology ecosystems. Our work spans the breadth of the commercial sector covering areas such as cloud security, ZeroTrust, DevSecOps, data protection, and identity security. We partner with organisations to design and implement security solutions that are practical, scalable, and aligned with business goals. As a … you thrive: Cyber Security Architecture - Designing and securing cloud, applications, networks, data, or identity systems. Secure by Design & DevSecOps - Embedding security in CI/CD pipelines and development lifecycles. ZeroTrust & Risk Management - Applying security frameworks and risk-based approaches. Thought Leadership - Engaging in research and publishing in recognised forums. Stakeholder Influence - Engaging with technical teams, business leaders More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
of cyber security architects and engineers dedicated to helping clients secure their technology ecosystems. Our work spans the breadth of the commercial sector covering areas such as cloud security, ZeroTrust, DevSecOps, data protection, and identity security. We partner with organisations to design and implement security solutions that are practical, scalable, and aligned with business goals. As a … you thrive: Cyber Security Architecture - Designing and securing cloud, applications, networks, data, or identity systems. Secure by Design & DevSecOps - Embedding security in CI/CD pipelines and development lifecycles. ZeroTrust & Risk Management - Applying security frameworks and risk-based approaches. Thought Leadership - Engaging in research and publishing in recognised forums. Stakeholder Influence - Engaging with technical teams, business leaders More ❯
Jenkins, and ArgoCD Embed security scanning and compliance tools (Snyk, Trivy, Checkov, SonarQube) into automated workflows Manage authentication, access control, and secrets using Vault, AWS Secrets Manager, OAuth2.0, and ZeroTrust principles Monitor environments with ELK Stack, Splunk, and Prometheus to ensure visibility, auditing, and compliance Collaborate with engineering, operations, and security teams to promote DevSecOps best practices … in cloud platforms, particularly AWS and Kubernetes (OpenShift experience advantageous) Proven expertise in IaC, automation, and modern CI/CD practices Deep knowledge of application security, access management, and ZeroTrust Networking Hands-on experience with vulnerability scanning, policy-as-code, and automated compliance tooling Proficiency in building secure, reliable, and scalable pipelines and platforms Excellent collaboration skills More ❯
Jenkins, and ArgoCD Embed security scanning and compliance tools (Snyk, Trivy, Checkov, SonarQube) into automated workflows Manage authentication, access control, and secrets using Vault, AWS Secrets Manager, OAuth2.0, and ZeroTrust principles Monitor environments with ELK Stack, Splunk, and Prometheus to ensure visibility, auditing, and compliance Collaborate with engineering, operations, and security teams to promote DevSecOps best practices … in cloud platforms, particularly AWS and Kubernetes (OpenShift experience advantageous) Proven expertise in IaC, automation, and modern CI/CD practices Deep knowledge of application security, access management, and ZeroTrust Networking Hands-on experience with vulnerability scanning, policy-as-code, and automated compliance tooling Proficiency in building secure, reliable, and scalable pipelines and platforms Excellent collaboration skills More ❯
Jenkins, and ArgoCD Embed security scanning and compliance tools (Snyk, Trivy, Checkov, SonarQube) into automated workflows Manage authentication, access control, and secrets using Vault, AWS Secrets Manager, OAuth2.0, and ZeroTrust principles Monitor environments with ELK Stack, Splunk, and Prometheus to ensure visibility, auditing, and compliance Collaborate with engineering, operations, and security teams to promote DevSecOps best practices … in cloud platforms, particularly AWS and Kubernetes (OpenShift experience advantageous) Proven expertise in IaC, automation, and modern CI/CD practices Deep knowledge of application security, access management, and ZeroTrust Networking Hands-on experience with vulnerability scanning, policy-as-code, and automated compliance tooling Proficiency in building secure, reliable, and scalable pipelines and platforms Excellent collaboration skills More ❯
Jenkins, and ArgoCD Embed security scanning and compliance tools (Snyk, Trivy, Checkov, SonarQube) into automated workflows Manage authentication, access control, and secrets using Vault, AWS Secrets Manager, OAuth2.0, and ZeroTrust principles Monitor environments with ELK Stack, Splunk, and Prometheus to ensure visibility, auditing, and compliance Collaborate with engineering, operations, and security teams to promote DevSecOps best practices … in cloud platforms, particularly AWS and Kubernetes (OpenShift experience advantageous) Proven expertise in IaC, automation, and modern CI/CD practices Deep knowledge of application security, access management, and ZeroTrust Networking Hands-on experience with vulnerability scanning, policy-as-code, and automated compliance tooling Proficiency in building secure, reliable, and scalable pipelines and platforms Excellent collaboration skills More ❯
london (city of london), south east england, united kingdom
Damia Group
Jenkins, and ArgoCD Embed security scanning and compliance tools (Snyk, Trivy, Checkov, SonarQube) into automated workflows Manage authentication, access control, and secrets using Vault, AWS Secrets Manager, OAuth2.0, and ZeroTrust principles Monitor environments with ELK Stack, Splunk, and Prometheus to ensure visibility, auditing, and compliance Collaborate with engineering, operations, and security teams to promote DevSecOps best practices … in cloud platforms, particularly AWS and Kubernetes (OpenShift experience advantageous) Proven expertise in IaC, automation, and modern CI/CD practices Deep knowledge of application security, access management, and ZeroTrust Networking Hands-on experience with vulnerability scanning, policy-as-code, and automated compliance tooling Proficiency in building secure, reliable, and scalable pipelines and platforms Excellent collaboration skills More ❯
health monitoring. Ensure endpoint telemetry is integrated with SIEM platforms and observability stacks. Partner with platform and infrastructure teams to enforce secure device baselines and policies. Build self-healing, zero-trust-aligned architectures for secure device management. Observability & Event Management: Implement real-time observability of endpoint health, risk exposure, and threat posture. Integrate with cybersecurity event and incident … endpoint protection, mobile security, and compliance tooling. Strong background in automation, scripting, and observability practices. Experience working with large, global device fleets and BYOD models. Preferred Qualifications: Familiarity with zero-trust security models and endpoint detection and response (EDR). Certifications such as CISSP, CISM, Microsoft Security certifications, or equivalent. Experience integrating device telemetry into SIEM and SOAR … of up to 30% and a generous retirement contribution that starts at 5% and moves to 10% after 2 years. All of our plans provide best in class coverage: Zero dollar ($0) health insurance premiums for BCG employees, spouses, and children Low $10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugs Dental More ❯
for Endpoint Strong experience with Entra ID/Active Directory, Conditional Access, and PIM Hands-on with PowerShell and Microsoft Graph API for security automation Familiarity with M365 security, ZeroTrust models, and Microsoft Information Protection Knowledge of compliance tools and frameworks (e.g. GDPR, ISO 27001, NIS2) Experience with Azure Firewall, NSGs, ASGs, and endpoint management Certifications (Required More ❯
for Endpoint Strong experience with Entra ID/Active Directory, Conditional Access, and PIM Hands-on with PowerShell and Microsoft Graph API for security automation Familiarity with M365 security, ZeroTrust models, and Microsoft Information Protection Knowledge of compliance tools and frameworks (e.g. GDPR, ISO 27001, NIS2) Experience with Azure Firewall, NSGs, ASGs, and endpoint management Certifications (Required More ❯
for Endpoint Strong experience with Entra ID/Active Directory, Conditional Access, and PIM Hands-on with PowerShell and Microsoft Graph API for security automation Familiarity with M365 security, ZeroTrust models, and Microsoft Information Protection Knowledge of compliance tools and frameworks (e.g. GDPR, ISO 27001, NIS2) Experience with Azure Firewall, NSGs, ASGs, and endpoint management Qualifications Microsoft More ❯