particularly around how customer data is stored and shared. This has led to growing interest in privacy-focused roles, especially in data-heavy sectors like retail and financial services. ZeroTrust architecture is gaining traction Many organisations are moving towards a ZeroTrust approach, where nobody inside or outside the network is trusted by default. This … align security with risk, compliance and governance frameworks. Typical salary: £60,000 to £90,000 IAM Lead - Focused on identity and access management, a vital area as companies adopt ZeroTrust models. Typical salary: £65,000 to £95,000 DevSecOps Engineer - Combining development, operations and embedded security across the software lifecycle. Typical salary: £75,000 to … for more than technical knowledge, they're searching for people who can make a real impact. Core technical skills include: Incident response and threat hunting Identity and access management ZeroTrust architecture Familiarity with UK regulatory standards and NCSC guidance Certifications often requested: CISSP, CISM, CISA CompTIA Security+ ISO 27001 Cloud security credentials (e.g. AWS or Azure certification More ❯
As a Network and Endpoint Security Pre-Sales Architect, you will: Act as the technical lead in customer-facing engagements, translating complex security needs into effective solution architectures Design ZeroTrust-aligned network and endpoint architectures, including segmentation, micro-segmentation, NAC, and DNS-layer threat protection Lead conversations around network modernization , helping clients evolve from legacy architectures to … such as CrowdStrike, SentinelOne, Microsoft Defender, or Tanium Familiarity with DNS security tools and strategies (e.g., Zscaler, Cisco Umbrella, Infoblox) and their role in threat containment Deep knowledge of ZeroTrust Architecture, lateral movement prevention, and alignment to frameworks like MITRE ATT&CK and NIST CSF Excellent communication skills with the ability to influence technical and business stakeholders … and implementation capabilities. Provide input to product teams on feature gaps or enhancements based on customer feedback. Stay abreast of the latest threat trends, frameworks (e.g., MITRE ATT&CK, ZeroTrust), and regulatory requirements. Set yourself apart: Industry certifications such as CISSP, SC-200, PCNSE, Fortinet NSE, CCFR, or Zscaler Certified Expert Experience designing or implementing micro segmentation More ❯
Technical IAM Consultant required for global financial services firm. This role encompasses strategic direction and technical delivery of SailPoint, CyberArk (PAM) and ZeroTrust projects. Key Responsibilities Lead IAM Strategy: Develop and manage the global IAM strategy to align with business and security goals. ZeroTrust Adoption: Drive the strategic implementation of ZeroTrustMore ❯
and execution across a complex, fast-moving environment. As part of Trainline's Information Security (InfoSec) team, reporting to the CISO, the Principal Security Architect you will define our ZeroTrust architecture, embed secure-by-design thinking across engineering workflows, and partner with leaders across Platform, Engineering, Corporate Functions and GRC to uplift security maturity across both employee … strategy of the team. As a Security Architect at Trainline, you will Define and own the enterprise-wide security architecture blueprint across corporate and product domains. Drive the Trainline ZeroTrust initiative, spanning identity, device, network, and application layers. Lead secure design reviews and threat modelling for key product and infrastructure initiatives. Develop reference architectures and reusable security … We'd love to hear from you if you have Proven experience in security roles, with a focus on architecture across both corporate and product domains. Demonstrable experience implementing ZeroTrust in a cloud-first, SaaS-heavy environment. Strong knowledge of Cloud security architecture and tools (Preferably AWS). Experience with securing enterprise IT tools (O365, MDM, DLP More ❯
play a critical role in delivering cutting-edge security solutions to our customers. This role requires hands-on implementation, configuration, and deployment of secure network environments based on a zero-trust model. You will be responsible for end-to-end project delivery, from scoping to final handover, ensuring the highest standards of security and performance. Your work will … out-of-hours work during project go-lives and cutovers. Professional Services Engineer - Key Duties: Solution Design & Implementation - Design, configure, and deploy secure network environments with a focus on ZeroTrust security models - Deliver end-to-end implementations, from planning to deployment and testing, ensuring the best and most secure configurations for customers - Create detailed technical documentation, including … and cutovers, which may involve occasional out-of-hours work Professional Services Engineer - You: Technical Skills - Strong expertise in configuring firewalls, VPNs, and other security solutions, particularly within a ZeroTrust framework - Proficiency with Palo Alto Networks technologies, including experience with PAN-OS - Familiarity with security concepts such as IDS/IPS - Hands-on experience with scripting and More ❯
remote access infrastructure. This role focuses on delivering secure, reliable, and high-performance connectivity for over 50,000 users and their devices through the implementation of VPN, SASE, and Zero-Trust Network Access (ZTNA) technologies. With a focus on automation, observability, and user experience, this position plays a vital role in ensuring seamless and secure connectivity across third … lead the strategy and roadmap for remote connectivity services, including VPNs, ZTNA, and SASE. Architect solutions that combine performance, resilience, and security using modern software-defined networking principles. Embed zero-trust principles and user-centric design into all remote connectivity services. Align remote connectivity architecture with broader enterprise network, security, and cloud strategies. Engineering & Operations: Lead the engineering … access solutions such as Cisco AnyConnect, Zscaler, and other mainstream VPN platforms. Drive automation of remote access provisioning, policy enforcement, and configuration management through Infrastructure as Code (IaC) and zero-touch deployment practices. Apply Site Reliability Engineering (SRE) principles to improve performance, availability, and troubleshooting. Establish observability practices across all access points with real-time metrics, logs, and telemetry. More ❯
needs network, SASE and Cyber Security experience. Youll be leading the enhancement of the existing Microsoft Defender for Cloud Apps (MDCA) service model to support the implementation of Dynamic Trust Service Edge (DTSE), enabling modern, cloud-native access with strong ZeroTrust principles. KEY RESPOSNIBILITES: Service Design & Operational Modelling Lead the service design for SASE and DTSE … capabilities Design and implement cloud-based application access control mechanisms to enable secure, scalable access to modern applications. Develop ZeroTrust-based solutions to replace traditional remote access technologies such as VPN, proxies, and Citrix. Establish real-time, posture-aware access policies that adapt to user context, device health, and security posture for dynamic access control. Take ownership … case for investment in the updated service model. REQUIRED EXPERIENCE: Proven senior level experience in Service Design within strong Cyber Security and telecom environments Strong understanding of SASE frameworks , ZeroTrust architecture , and cloud-native security Deep knowledge of MDCA (Microsoft Defender for Cloud Apps) or similar security solutions Experience in process design , operational modelling , and stakeholder engagement More ❯
architecture. Networking: Robust networking background, with experience in managing multiple sites from firewalls to edge switches (Palo Alto, HP, Cisco), and familiarity with SD-WAN, IPv6, VPN, BGP, and ZeroTrust/ZeroTrust Network Access (ZT/ZTNA). On-Premise Solutions: Experience with on-premise solutions, e.g. VMware Enterprise Storage: Proficiency in managing enterprise … to the ISO27001 process. Contract Type : Permanent Here at Havas across the group we pride ourselves on being committed to offering equal opportunities to all potential employees and have zero tolerance for discrimination. We are an equal opportunity employer and welcome applicants irrespective of age, sex, race, ethnicity, disability and other factors that have no bearing on an individual More ❯
email, endpoints, and cloud services. Data-Centric Security: You'll champion a data-centric security approach, making sure data classification, handling, and protection are embedded from design to deployment. ZeroTrust: You'll promote and support ZeroTrust Architecture principles, continuously verifying identities, devices, and access requests. Security Awareness: You'll develop and maintain internal security More ❯
enterprise network technologies, alongside a strong foundation in network security fundamentals. In this role, you will collaborate closely with Security, IT, and Engineering teams to align automation workflows with ZeroTrust principles, enforce role-based access controls, and implement security best practices across network infrastructure. If you excel in cross-functional settings and have a proven track record … internal tools and dashboards to streamline network operations, optimize network workflows, and provide real-time visibility into network performance. Collaborate with security teams to align IT automation initiatives with ZeroTrust principles and compliance frameworks. Implement role-based access controls (RBAC) and mitigate security risks through automated policies. Work cross-functionally to identify areas for IT service improvement More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Lloyds Banking Group
engineering practices such as Infrastructure as Code and Policy as Code and engineering delivery and maintaining platform security posture. Incorporate best practices in network security, web application protection, and zerotrust architecture to strengthen defence -in-depth strategies. Design and deploy Web Application Firewalls (WAFs) and security controls to protect modern applications from threats and vulnerabilities. Guide the … Armor AWS WAF), and protection against OWASP Top 10 and emerging threats. Network & infrastructure security: Network security principles (e.g. segmentation, monitoring, intrusion detection/prevention). Any experience in ZeroTrust architecture in cloud environments would be very desirable. Security Defence Centre Tools and practices . Scripting & Automation Python (preferred), PowerShell , Configuration as Code principles and API integration More ❯
controls into CI/CD pipelines, cloud-native services, and on-prem platforms to enforce security-by-design principles. Deliver security capabilities that support modern work scenarios, remote access, zero-trust networking, and AI/ML workloads. Leverage automation frameworks and IaC to improve scalability and reduce manual intervention. Operational Security, SRE & Assurance: Ensure security platforms are resilient … ability to design and scale global solutions. Experience with security engineering in hybrid and cloud-native environments (AWS, Azure, GCP). Proven track record in automating security controls, implementing zero-trust models, and supporting 24x7 security operations. Strong understanding of compliance frameworks and risk management strategies. Preferred Qualifications: Certifications such as CISSP, CCSP, CISM, AWS/Azure Security More ❯
/AWS), and hybrid networks. Lead network upgrades, hardware/software deployments, and disaster recovery planning to ensure maximum uptime and resilience. Evaluate and integrate emerging technologies (AI, automation, zero-trust frameworks) to drive operational efficiency and cost savings. Identify and implement technology-driven business improvements, reducing manual processes through automation and intelligent system design. Partner with leadership … and service excellence. Experience & Qualifications Proven track record in an IT leadership/management role, with expertise in cybersecurity, infrastructure, and preferably digital transformation. Network security (firewalls, VPNs, SIEM, zero-trust architecture). Cloud security (Azure, AWS, hybrid environments). Compliance frameworks (GDPR, ISO 27001, NIST). Experience managing ERP systems, IT budgets, and projects. Industry certifications (CISSP More ❯
and proof-of-concept (PoC) engagements. Collaborate with the sales team to develop effective sales strategies and drive technical wins. Provide deep technical expertise on network security, SD-WAN, zero-trust architecture, cloud security, and remote access solutions . Assist customers in network architecture design , ensuring seamless integration of our solutions. Respond to technical RFPs/RFIs and … equivalent experience). 5+ years of experience in sales engineering or technical pre-sales roles in the networking and cybersecurity industry . Expertise in SASE technologies , including: SD-WAN ZeroTrust Network Access (ZTNA) Cloud Security & Secure Web Gateways (SWG) Firewall-as-a-Service ( FWaaS ) CASB (Cloud Access Security Broker) Endpoint Security & Threat Intelligence Strong understanding of networking More ❯
Bath, Somerset, United Kingdom Hybrid / WFH Options
Bmt Defence Services LTD
cyber security and apply your deep understanding and experience of HMG, NCSC, and international cyber standards. The role will require excellent stakeholder management and communication skills to build the trust and support necessary for successful outcomes. You will be supported by team members in a highly collaborative environment, a structured learning and development programme, and will have opportunities for … knowledge of cyber detection (e.g., threat identification/intelligence, real-time monitoring, anomaly detection) and cyber response (e.g. incident response, eradication and remediation, recovery, post-incident analysis). DevSecOps. ZeroTrust Architecture (ZTA) expertise for enterprise, cloud and air-gapped environments along with knowledge of operational use of ZeroTrust within any of the following: , IdAM More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
4Square Recruitment Ltd
identities, licenses, and security groups in Azure AD & Microsoft 365 . Configure and enforce Conditional Access Policies (CAP) for secure access. Implement and manage Multi-Factor Authentication (MFA) and ZeroTrust policies . Monitor and troubleshoot Microsoft 365 services (Exchange Online, SharePoint, Teams, OneDrive) . Endpoint Management (Intune & Autopilot): Deploy, configure, and manage Microsoft Intune for MDM (Mobile … Device Management) & MAM (Mobile Application Management) . Set up and automate Windows Autopilot for zero-touch device provisioning. Develop and enforce compliance policies for endpoints (Windows, macOS, iOS, Android). Manage application deployments and updates via Intune. Exchange Online & Migrations: Perform migrations from on-prem Exchange to Exchange Online . Manage mail flow, mailboxes, shared mailboxes, and distribution groups … similar role. Microsoft 365 Certified: Modern Desktop Administrator Associate (MD-100/MD-101) or equivalent certifications (preferred). Strong understanding of Azure AD, Identity & Access Management (IAM), and ZeroTrust security . Proven experience with Exchange Online migrations and hybrid environments . Experience with Intune, Autopilot, and endpoint security . Soft Skills: Strong problem-solving and troubleshooting More ❯
from commit to production with automated testing, security scanning, and progressive roll-outs. Implement end-to-end observability -metrics, traces, logs, and alerts-so engineers and customers alike can trust the health and performance of our agentic workers. Champion platform security : secrets management, zero-trust networking, least-privilege IAM, image provenance, and compliance-ready audit trails. Collaborate … Monitoring & Observability : Prometheus, Grafana, Loki, OpenTelemetry, ELK stack; designing end-to-end visibility into systems. Security Best Practices : secret management (Vault, AWS Secrets Manager), image scanning, least privilege access, zerotrust networking. Auditing & Policy Enforcement : integrating runtime policies, access controls, and system-level logging (SIEM-friendly formats). Backend Engineering Strengths in the following areas : Strong Language Proficiency More ❯
modernising how security is delivered across the business. This is a high-impact role at the intersection of security, architecture, and delivery, focused on embedding modern security principles - like ZeroTrust, secure by design, and cloud-native patterns- into large-scale transformation programmes. What you'll be doing Partnering closely with the Chief Architect, CISO, and security engineering … What they're looking for A senior security architect with hands-on experience designing and assuring secure systems in complex enterprise environments. Strong understanding of cloud security (especially Azure), ZeroTrust, and modern security engineering practices. Credibility to influence at senior levels (CISO, CIO, Heads of Department), with clear communication skills across technical and non-technical audiences. Proven … security-as-enabler, not blocker. Collaborative culture - Architecture team of 25+, flat structure, open to challenge and fresh thinking. Autonomy & impact - Shape how security is delivered at scale, with trust and space to lead. If you're passionate about making security smarter, more effective, and truly embedded into how a business operates - this is your chance to make a More ❯
across the organization by managing our network and security platforms in a hybrid environment. Working within the Network Operations team, you'll oversee switching, routing, internet connectivity, firewalls, and ZeroTrust solutions across multiple vendor technologies. This role is essential to supporting and protecting our growing infrastructure. Key Responsibilities: Balance project work and operational support as part of … regulated sectors. Hands-on experience with automation and monitoring tools. Skilled in configuring, managing, monitoring, and troubleshooting Cisco Nexus, firewalls, Meraki switches, and WiFi networks. Knowledge and experience with ZeroTrust networking environments. Experience configuring, supporting, and maintaining monitoring solutions such as SolarWinds. Degree or equivalent qualification in a technical field. Network administration certification at CCNP level or … being Just and delivering the best outcomes for our customers. We're committed to building a more sustainable business, and we're working hard to make progress against ourNet Zero targets . We're reducing our reliance on fossil fuels in our offices, switching to more sustainable sources of energy and we're investing more of our money in More ❯
role encompasses strat View job & apply Location: Frankfurt Job type: Permanent We're hiring an experienced IAM Manager to take ownership of identity governance and access View job & apply ZeroTrust Architect Location: Fully Remote Job type: Contract Position Overview: Leading FinTech company seeking a ZeroTrust Architect to design and implement Cyber Security Vulnerability Management More ❯
ll Be Solving This is not your typical AI role. You'll be tackling: Agent orchestration at scale - thousands of agents working concurrently, requiring sophisticated coordination and communication strategies. Trust and security in AI systems - dynamic authentication, zero-trust networking, and malicious output protection. State consistency and fault tolerance - navigating trade-offs between performance, reliability, and consistency … orchestration and scaling of AI components in production. Expert knowledge of distributed systems engineering , including consensus algorithms, conflict resolution, and partition tolerance. Proven experience with secure agent-based systems, zero-trust architecture , and dynamic authentication. In-depth understanding of LLM failure modes, particularly around prompt injection and adversarial behaviours. Strong programming ability in languages such as Python , Go More ❯
will play a crucial role in modernising the company's vulnerability management capabilities, ensuring they can support a fast-moving business and stand as a strong pillar within their zero-trust framework. Accountabilities: Explore and document our baseline vulnerability management architecture Capture our vulnerability management requirements and usage scenarios, captured as a set of patterns that a future … for significant and impactful change Desired: Establishing observability platforms Capabilities adjacent to exposure/vulnerability management capabilities (ie cyber security asset management, attack surface management, etc) Pragmatic application of zero-trust philosophies Cloud based security (GCP, AWS and Azure) Pentest scoping and analysis experience Application security Threat modelling To apply for this position please submit your CV. Carbon60 More ❯
and performance. Oversee the third-party NOC, ensuring effective diagnostics and issue resolution. Champion network best practices and mentor junior IT staff. Ensure compliance with relevant laws, standards, and ZeroTrust principles. What we're looking for: 5+ years of experience in network engineering or network management. Expert knowledge of TCP/IP, DNS, DHCP, BGP, OSPF, VLANs … VPNs, and SD-WAN technologies. Proven success in designing and managing enterprise-level network environments. Strong knowledge of network security, ZeroTrust, and compliance frameworks. Experience with network modernisation and cloud integration projects. Excellent stakeholder management, communication and leadership skills. Ability to manage complex projects, make data-driven decisions, and drive results. A curious, collaborative, and forward-thinking More ❯
Leeds, West Yorkshire, United Kingdom Hybrid / WFH Options
Corecom Consulting
with plenty of space to influence how things are done. What you'll be doing Architecting and optimising network infrastructure across Azure environments Designing and supporting Cloudflare implementations - WAF, ZeroTrust, CDN, DNS, edge security Advising on best practice for network security, connectivity, resilience, and performance Supporting delivery teams by translating technical requirements into scalable architecture Coaching junior … VPNs, NSGs, routing, identity, peering, private endpoints Solid knowledge or hands-on experience with Cloudflare, particularly in a secure enterprise context Understanding of network security principles, DNS, CDN design, ZeroTrust Ability to balance long-term design thinking with day-to-day delivery support Enjoys mentoring and working with others to raise the bar across the team The More ❯
to-end lifecycle of privileged and infrastructure access, including onboarding, provisioning, session management, monitoring, and deprovisioning. Drive modernization and automation initiatives, including vaulting, just-in-time (JIT) access, and zerotrust implementations. Technology & Architecture: Oversee the architecture, engineering, and operations of PAM platforms. Partner with infrastructure, cloud, and DevSecOps teams to integrate PAM into hybrid and cloud-native … leading privileged access or identity security functions in complex, regulated environments. Demonstrated success leading PAM in a multinational financial institution or critical infrastructure context. Deep knowledge of PAM technologies, zerotrust principles, and identity governance integration. Skills: Strong understanding of regulatory expectations in financial services related to identity and access. Ability to influence across technical and executive audiences More ❯