East and Africa, Asia and Oceania, and East Asia The group has over 150,000 employees, offering services including commercial banking, trust banking, securities, credit cards, consumer finance, asset management, and leasing.As one of the top financial groups globally with a vison to be the world's most trusted, we want to attract, nurture and retain the most talented … and MUFG Americas Holdings.Please visit our website for more information - Security department covers cyber security strategy maintenance and tactical planning and operations to provide IT Security protection, governance, risk management and reporting. This includes promoting Head Office Information Security Standards and Procedures (ISSP) requirements and local security requirements. The department supports and monitors security solutions such as virus protection … vulnerability management, compliance monitoring and threat/incident management activities to reduce risk.Main Purpose of the Role :We are seeking a highly skilled Privileged Access Management (PAM) Lead with deep expertise in CyberArk to drive the strategy, implementation, and continuous improvement of our enterprise PAM program. The ideal candidate will possess strong technical leadership, hands-on engineering More ❯
Central London, London, United Kingdom Hybrid/Remote Options
Halian Technology Limited
application security across engineering teamsproviding hands-on guidance, resolving concerns, and fostering a security-first mindset. DevSecOps Enablement : Promote and implement secure development practices across CI/CD pipelines, secrets and key management, dependency management, and secure design. Vulnerability Management : Lead vulnerability remediation effortstriaging findings, prioritizing risks, and partnering with teams to deliver effective, pragmatic fixes. … Tooling & Automation : Integrate security tools (e.g., SAST, DAST, SCA, secrets scanning) into developer workflows, ensuring automation is both scalable and developer-friendly. Cloud Security Collaboration : Work alongside infrastructure teams to ensure secure configuration of AWS and Azure environments, with a focus on IAM, network security, encryption, and observability. Architecture & Design Reviews : Provide input and recommendations to ensure new services … focus. Hands-on experience with secure CI/CD practices, DevSecOps methodologies, GitHub workflows, and Terraform. Deep understanding of cloud security principles in AWS and Azure, particularly around IAM, secretsmanagement, and networking. Proficient in secure coding practices, threat modeling, and vulnerability remediation. Familiar with a range of security tooling including static and dynamic analysis, software composition analysis More ❯
Sheffield, South Yorkshire, England, United Kingdom
KBC Technologies UK LTD
Lead Security Solution Architect Project Overview Client is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, SecretsManagement and API Security is done across the bank. Client is working on uplifting controls and capabilities in privileged access for the Group and introducing … as subject matter expert. Principal Preferred Requirements Cybersecurity Expertise: Significant experience and proven technical depth within one of the following domains of cybersecurity; security operations & incident response, threat & vulnerability management, identity & access management, cryptography, infrastructure, network, application, data, cloud Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable … governance processes Ensure all architecture artefacts undergo appropriate peer review prior to design authority presentation Present publications at technical design authorities for input, feedback, and approval Risk and Dependency Management: Effectively manages and escalates both technical and project risks or issues Articulates solutions and remediation steps to technical risks & issues Provides technical thought leadership to the Design Team and More ❯
IaC code tooling , including Terraform, Ansible, Harbor SCA/IAST/DAST tooling, e.g. Black Duck, Coverity, Codesight, JFrog, Snyk Automated Test tooling , ideally Selenium/Robot Framework Test Management Tooling ideally Azure Test Plans Secure SecretsManagement, ideally Azure DevOps and Hashicorp Vault Version control with Git General Software Development Background Strong problem-solving and analytical More ❯
scalable cloud infrastructure using AWS services such as EC2, EKS, RDS/Aurora, ElastiCache, OpenSearch, and CloudFront. Drive and support the development and adoption of Kubernetes on EKS for management of both production and internal workloads. Architect and implement Infrastructure-as-Code (IaC) pipelines – integrating Terraform (or similar) into CI/CD workflows for environment provisioning, validation, and automated … Collaborate with SRE, Security and Engineering teams to enhance observability, monitoring and alerting through tools like Prometheus, Grafana and CloudWatch. Partner with Security to embed best practices for IAM, secretsmanagement, WAF, and posture management. Optimise performance and cloud spend through automation tools and cost visibility dashboards Participate in on-call rotations, post-incident reviews, and ongoing improvements More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
Hargreaves Lansdown
observability: metrics, logs and traces using Azure Monitor/Log Analytics/Application Insights, plus Datadog/Grafana where appropriate. Embed security by design: Azure Policy, Defender for Cloud, secretsmanagement with Key Vault, SBOM and image scanning, policy-as-code and least privilege IAM. Drive reliability using SRE practices: define SLIs/SLOs, error budgets, capacity planning … and lead/coordinate incident response when required. About you Strong hands-on experience with Microsoft Azure core services (networking, compute, storage) and platform services (AKS, App Services, API Management, Event Hub/Service Bus). Proficiency with Infrastructure as Code: Terraform (essential) and/or Bicep (optional); module design, versioning and testing. Solid CI/CD background using … Azure DevOps or GitHub Actions (pipelines, environments, approvals, templates), including build and release strategies. Kubernetes experience in production (AKS): cluster operations, node pools, networking (CNI), ingress, secrets, RBAC and workload identity. Experience with GitOps, and container build pipelines (e.g., ACR, OPA policies, image scanning). Working knowledge of observability tooling (Azure Monitor, Log Analytics, Application Insights, Datadog/Grafana More ❯
Employment Type: Permanent, Part Time, Work From Home
infrastructure using Terraform/Bicep for AKS, container registries, application services, and networking Implement monitoring, alerting, and observability frameworks with SLOs and diagnostic tools Enforce security through access controls, secretsmanagement, vulnerability scanning, and policy-as-code Manage environment consistency and optimise cloud costs through performance monitoring and capacity planning Create reusable automation tools, templates, and documentation for … as Code with Terraform or Bicep Extensive CI/CD pipeline experience with GitHub Actions or Azure Pipelines Background in observability and telemetry solutions Understanding of cloud security, identity management, and compliance frameworks Networking fundamentals and familiarity with Azure databases and messaging services Scripting skills (Bash/PowerShell/Python) and Linux system administration Strong Azure experience: AKS, Container … Registry, App Services, Virtual Networks, API Management, monitoring tools Azure certifications (AZ-104, AZ-400, CKA) advantageous To be considered, please ensure you complete your application on the Computappoint website. Services offered by Computappoint Limited are those of an Employment Business and/or Employment Agency in relation to this vacancy. More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Computappoint
infrastructure using Terraform/Bicep for AKS, container registries, application services, and networking Implement monitoring, alerting, and observability frameworks with SLOs and diagnostic tools Enforce security through access controls, secretsmanagement, vulnerability scanning, and policy-as-code Manage environment consistency and optimise cloud costs through performance monitoring and capacity planning Create reusable automation tools, templates, and documentation for … as Code with Terraform or Bicep Extensive CI/CD pipeline experience with GitHub Actions or Azure Pipelines Background in observability and telemetry solutions Understanding of cloud security, identity management, and compliance frameworks Networking fundamentals and familiarity with Azure databases and messaging services Scripting skills (Bash/PowerShell/Python) and Linux system administration Strong Azure experience: AKS, Container … Registry, App Services, Virtual Networks, API Management, monitoring tools Azure certifications (AZ-104, AZ-400, CKA) advantageous To be considered, please ensure you complete your application on the Computappoint website. Services offered by Computappoint Limited are those of an Employment Business and/or Employment Agency in relation to this vacancy. More ❯
Deploy and manage containerized applications in AKS, ensuring theyre scalable and resilient Build and maintain CI/CD pipelines using Azure DevOps, automating testing, builds, and deployments Implement secure secretsmanagement workflows and cloud security best practices Develop reusable Terraform modules to support consistent infrastructure as code Write scripts and automation tools using PowerShell, Bash, and Azure CLI More ❯
IaC code tooling , including Terraform, Ansible, Harbor SCA/IAST/DAST tooling, e.g. Black Duck, Coverity, Codesight, JFrog, Snyk Automated Test tooling , ideally Selenium/Robot Framework Test Management Tooling ideally Azure Test Plans Secure SecretsManagement, ideally Azure DevOps and Hashicorp Vault Version control with Git Your benefits: 26 Days annual leave plus public holidays More ❯
Employment Type: Permanent
Salary: £78000/annum 15% bonus, £6k car, 10% DV bonus
Basingstoke, Hampshire, South East, United Kingdom
Sanderson Recruitment
in the Implementation/Configuration/Usage in several of the following: - CI/CD Pipelines IaC code tooling SCA/IAST/DAST tooling Automated Test tooling Test Management Tooling Secure SecretsManagement Version control with Git This role will require you to be willing and eligible to undergo a high level of UK security clearance More ❯
Rate: Outside IR35 - £650 to £750 p/d Duration: 3-6 Months Initial - with intention to extend Payment Terms: Monthly Our client is a FTSE100 Wealth/Asset Management firm seeking to engage a Lead SRE Engineer (Observability SME) to support the implementation and instrumentation of their new Observability solution. This role will be critical in delivering against … cloud-native platforms and modern application architectures. Proficiency in programming and scripting languages such as Python or Go. Experience building and managing enterprise-grade observability solutions. Strong understanding of secretsmanagement, RBAC, audit logging, compliance, and secure infrastructure practices. Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
Sanderson Recruitment
Rate: Outside IR35 - £650 to £750 p/d Duration: 3-6 Months Initial - with intention to extend Payment Terms: Monthly Our client is a FTSE100 Wealth/Asset Management firm seeking to engage a Lead SRE Engineer (Observability SME) to support the implementation and instrumentation of their new Observability solution. This role will be critical in delivering against … cloud-native platforms and modern application architectures. Proficiency in programming and scripting languages such as Python or Go. Experience building and managing enterprise-grade observability solutions. Strong understanding of secretsmanagement, RBAC, audit logging, compliance, and secure infrastructure practices. Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid/Remote Options
Adecco
Work closely with SRE and Security teams to enhance monitoring and observability through Prometheus, Grafana, and CloudWatch. Embed security best practices into every layer of the platform, covering IAM, secretsmanagement, WAF, and compliance. Drive cost efficiency and performance improvements through proactive automation and resource optimization. Contribute to operational excellence by participating in on-call rotations and post More ❯
or AWS Own CI/CD pipelines and infrastructure-as-code (Terraform/CloudFormation) Embed security across the build and deployment life cycle Implement container security (Docker/Kubernetes), secretsmanagement and scanning Support deployments into restricted, offline, or air-gapped environments Automate security controls, monitoring, and compliance Collaborate with engineering and product teams on secure architecture What More ❯
robust testing, error handling, and secure coding practices. Strong experience with Infrastructure as Code (Terraform) and CI/CD (GitHub Actions) for automating cloud and identity configurations, including secure secrets management. Solid understanding of core AWS services relevant to modern authentication patterns, such as API Gateway, Lambda authorisers, and CloudWatch. A commitment to observability, with hands-on experience implementing More ❯
Bath, Somerset, United Kingdom Hybrid/Remote Options
Seccl Technology Limited
robust testing, error handling, and secure coding practices. Strong experience with Infrastructure as Code (Terraform) and CI/CD (GitHub Actions) for automating cloud and identity configurations, including secure secrets management. Solid understanding of core AWS services relevant to modern authentication patterns, such as API Gateway, Lambda authorisers, and CloudWatch. A commitment to observability, with hands-on experience implementing More ❯
blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the … requirements, and user experience expectations. Champion DevSecOps practices to embed security early into development and delivery workflows. Security Platform Engineering: Lead end-to-end engineering for identity and access management (IAM), including authentication, authorization, and privileged access controls. Oversee endpoint security architecture and enforcement, ensuring comprehensive coverage for threat detection, malware prevention, and device compliance. Build and operate scalable … data protection solutions, including data loss prevention (DLP), secretsmanagement, encryption, and classification. Integrate security controls into CI/CD pipelines, cloud-native services, and on-prem platforms to enforce security-by-design principles. Deliver security capabilities that support modern work scenarios, remote access, zero-trust networking, and AI/ML workloads. Leverage automation frameworks and IaC to More ❯
london, south east england, united kingdom Hybrid/Remote Options
Cogna
infrastructure-as-code (IaC) using tools such as Terraform. Own CI/CD pipelines and DevX workflows in collaboration with the dev teams. Implement and monitor security controls, identity management (Entra ID), and network configurations. Support container orchestration, and workload deployment using Kubernetes and AKS. Improve observability by implementing logging, monitoring, and alerting systems (e.g. Azure Monitor, Datadog, etc. … and Kubernetes (AKS). Prior experience or expertise with these is a plus. Security-first mindset: Deep appreciation for secure-by-default design. Familiar with principles like least privilege, secretsmanagement, threat modeling, and how to embed security controls into infrastructure and CI/CD pipelines. Cross-functional collaboration: Comfortable partnering with other engineers, product managers, sales, marketing More ❯
frameworks like Selenium useful. Knowledge of Python, JavaScript or Java for test scripting. Familiarity with JMeter or Gatling for load/performance testing. Strong AWS identity knowledge (IAM, SSO, Secrets Manager, logging/monitoring). Experience testing privileged access, IAM or security-critical workflows. Understanding of NCSC CAF and cloud security controls. More ❯
london, south east england, united kingdom Hybrid/Remote Options
BAE
plans for changes at the program level, assessing potential impacts on existing products. Write Implementation Plans: Develop comprehensive technical implementation plans to guide the development and deployment process. Incident Management: Lead incident resolution efforts from a technical standpoint, working closely with incident management teams to ensure quick and effective resolution. Root Cause Analysis: Investigate incidents to identify underlying … issues and implement preventative measures. Technical Communication: Liaise with the Release Working Group to communicate upcoming changes impacting other teams or releases. Team and Stakeholder Management Team Management: Lead, mentor, and support a team of engineers, ensuring high morale and productivity while fostering a culture of collaboration and excellence. Stakeholder Collaboration: Partner with other suppliers responsible for different … Development: Design, build, and deploy applications from concept to production within tight timelines. Metrics and Monitoring: Build application metric exporters and maintain dashboards for performance and operational insights. Kubernetes Management: Develop, deploy, and manage all Kubernetes object types, ensuring optimal cluster operations. Vault Management: To secure sensitive information and build and manage Vault and Vault secrets. Clustered Solutions More ❯
Java, JavaScript, Groovy, JSP, HTML, XML, SQL, Bash. Experience with build tools like Maven and Gradle. Knowledge of relational DBMS such as Postgres. Experience using AWS services via Terraform (Secrets Manager, Kinesis Firehose, S3, Open Search, etc.). Familiarity with monitoring tools like New Relic and Kibana for metrics and alerts. Experience with Docker, containers, Helm, Kustomize, and Kubernetes … management tools. Knowledge of networks, AWS ACM certificates, VPCs, transit gateways is a plus. Responsibilities: Serve as a primary technical contact for external resources. Contribute to design and development of system components. Collaborate with customers and end users. Lead coding and technical problem-solving efforts. Finalize requirements with technical teams. Design complex data models. Mentor and lead developers in More ❯
of support requests are the Team's goals.Knowledge and experience of build tools - Maven and Gradle Knowledge and experience of relational DBMS - PostgresdbKnowledge of using AWS services via Terraform - Secrets Manager, Kinesis Firehose, S3, Open Search etcKnowledge and experience of configuring and using New Relic, Kibana for observing metrics and configuring alerts.Knowledge and experience of using Docker, containers, helm … processes, coding best practices, and code reviews. • Operate in various development environments (Agile, Waterfall, etc.) while collaborating with key stakeholders. • Train entry-level software engineers as directed by department management, ensuring they are knowledgeable in critical aspects of their roles. Responsibilities: We promote a healthy work/life balance across the organisation. We offer an appealing working prospect for More ❯