IT Infrastructure Operations and Security Lead
IT Infrastructure Operation s and Security Lead
This role requires excellent management of a small team in IT along with managing stakeholders and vendors.
You must be hands-on technically in IT Infrastructure.
The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment.
While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate.
Security, Compliance & Risk Management
- Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data.
- Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms.
- Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM).
- Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms.
- Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA).
- Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services.
- Oversee endpoint security, cloud network and API security for robust protection across all assets
- Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests.
Technical Experience
- Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge,
- Microsoft AD (Entra), Server and SQL experience,
- O365 administration and design
- Global Software Patching and estate management via Intune
- Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience
- Software Defined Networking (Cisco, Meraki, Versa)
Key Skills
- Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel.
- Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices.
- Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM).
- Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools.
- Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls.
- IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills:
- IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery.
- Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness.
- Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption.
- Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset:
- Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment.
- Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users.
- Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach.
Summary of Skills Required:
The following is a summary of the key skills that the Client would like you to bring to the company.
Global Enterprise level Infrastructure Management position for the last 5 years,
Buy before Build mentality and demonstrable migration of Legacy VM based estates to SaaS and Azure Cloud services platforms,
Global Operational team management experience (human resources, strategic delivery, operational service, audit lead for Infra, budget..)
Key 3rd party operational infrastructure vendor management - i.e. management of managed service partners as a team extension globally, as well as service/ solution delivery partners,
Migration of Legacy VM based estates to SaaS and Cloud services platforms,
Legacy Infra tech to Azure knowledge/ experience,
Prior to the last 5 years in Enterprise Management of a global estate/ user-base, a demonstrable technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/ SDWAN, and Networks (WAN &/ or LAN).
The Client is based in the City of London.
This is a hybrid position with 3 days in the office.
The salary for this role will be in the range £85K - £95K plus Benefits.
Do send your CV to us in Word format along with your salary and notice period.
- Company
- Nexus Jobs Limited
- Location
- City of London, London
- Employment Type
- Permanent
- Salary
- £85,000 - £100,000
- Posted
- Company
- Nexus Jobs Limited
- Location
- City of London, London
- Employment Type
- Permanent
- Salary
- £85,000 - £100,000
- Posted