DevSecOps Engineer - Azure / Application Security We're working with an established organisation looking to appoint an experienced DevSecOps Engineer to strengthen its Azure deployment and application security capabilities. This is a hands-on position combining Azure DevOps, cloud infrastructure and application security. You'll take ownership of CI/CD pipelines, Infrastructure-as-Code and security testing, while helping development teams embed secure practices throughout the software delivery lifecycle. The Role You'll be responsible for: Designing and maintaining CI/CD pipelines within Azure DevOps Deploying Azure applications and infrastructure using Terraform Supporting Azure services including App Services, AKS, Azure SQL, Storage, Key Vault, VNets, Private Endpoints and Front Door/WAF Introducing deployment practices such as blue/green releases, automated rollback and infrastructure drift detection Integrating SAST, DAST, dependency and container scanning into development pipelines Conducting web application security testing using Burp Suite, OWASP ZAP or similar tools Identifying and managing vulnerabilities against OWASP Top 10 and CVSS principles Implementing secrets detection, credential rotation and secure Key Vault practices Strengthening software supply-chain security through SBOM generation, dependency scanning and artefact signing Supporting API security testing, threat modelling and third-party penetration tests Configuring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure Monitor Enforcing identity and access controls across Entra ID, RBAC, Conditional Access and PIM Supporting compliance with frameworks such as Cyber Essentials Plus, ISO 27001 and GDPR Mentoring junior engineers and helping developers adopt secure coding and deployment practices What We're Looking For You'll need: Around three to five years' experience across DevOps, platform engineering or application security Strong hands-on experience with Microsoft Azure and Azure DevOps Proven experience securing web applications in a production environment Practical experience using Burp Suite for application security testing Experience with SonarQube or comparable SAST tooling Strong knowledge of OWASP Top 10, vulnerability management and remediation Experience building repeatable Azure deployments using Terraform Scripting ability with PowerShell, Python or Bash Experience implementing secrets detection and dependency/CVE remediation tooling The confidence to work independently, make risk-based decisions and support junior engineers Experience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful. Relevant certifications such as AZ-500, AZ-400, Security+, CySA+, CEH or OSCP would also be beneficial, although practical experience is more important. This is an excellent opportunity for someone who enjoys working across cloud engineering and application security and wants genuine ownership over how secure software is built, tested and released. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Aug 24, 2026
Full time
DevSecOps Engineer - Azure / Application Security We're working with an established organisation looking to appoint an experienced DevSecOps Engineer to strengthen its Azure deployment and application security capabilities. This is a hands-on position combining Azure DevOps, cloud infrastructure and application security. You'll take ownership of CI/CD pipelines, Infrastructure-as-Code and security testing, while helping development teams embed secure practices throughout the software delivery lifecycle. The Role You'll be responsible for: Designing and maintaining CI/CD pipelines within Azure DevOps Deploying Azure applications and infrastructure using Terraform Supporting Azure services including App Services, AKS, Azure SQL, Storage, Key Vault, VNets, Private Endpoints and Front Door/WAF Introducing deployment practices such as blue/green releases, automated rollback and infrastructure drift detection Integrating SAST, DAST, dependency and container scanning into development pipelines Conducting web application security testing using Burp Suite, OWASP ZAP or similar tools Identifying and managing vulnerabilities against OWASP Top 10 and CVSS principles Implementing secrets detection, credential rotation and secure Key Vault practices Strengthening software supply-chain security through SBOM generation, dependency scanning and artefact signing Supporting API security testing, threat modelling and third-party penetration tests Configuring Azure-native security tooling, including Defender for Cloud, Azure Policy, Sentinel and Azure Monitor Enforcing identity and access controls across Entra ID, RBAC, Conditional Access and PIM Supporting compliance with frameworks such as Cyber Essentials Plus, ISO 27001 and GDPR Mentoring junior engineers and helping developers adopt secure coding and deployment practices What We're Looking For You'll need: Around three to five years' experience across DevOps, platform engineering or application security Strong hands-on experience with Microsoft Azure and Azure DevOps Proven experience securing web applications in a production environment Practical experience using Burp Suite for application security testing Experience with SonarQube or comparable SAST tooling Strong knowledge of OWASP Top 10, vulnerability management and remediation Experience building repeatable Azure deployments using Terraform Scripting ability with PowerShell, Python or Bash Experience implementing secrets detection and dependency/CVE remediation tooling The confidence to work independently, make risk-based decisions and support junior engineers Experience with Docker, Kubernetes/AKS, API security testing, threat modelling, SIEM tooling or software supply-chain security would be particularly useful. Relevant certifications such as AZ-500, AZ-400, Security+, CySA+, CEH or OSCP would also be beneficial, although practical experience is more important. This is an excellent opportunity for someone who enjoys working across cloud engineering and application security and wants genuine ownership over how secure software is built, tested and released. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
IT Support Specialist We're working with a well-established and growing IT company that specialises in delivering comprehensive technology solutions to business clients. With a strong focus on innovation and customer satisfaction, they've built a reputation for exceptional IT support services and a collaborative, close-knit team culture. As part of a wider family MSP, they offer the backing and opportunities that come from being part of a larger, growing business. As part of their continued growth, they're now looking for an experienced and motivated IT Support Specialist to join their helpdesk team. This is primarily a helpdesk and cloud-focused role covering 1st, 2nd, and 3rd line support, with particular emphasis on Microsoft 365, Intune, and Microsoft security technologies. The Role Providing 1st to 3rd line technical support across a varied client base Diagnosing and resolving issues across Windows, Microsoft 365, cloud services, networks, and associated technologies Configuring, managing, and troubleshooting Microsoft Intune, including device enrolment, compliance policies, configuration profiles, and application deployment Administering Microsoft 365 and Entra ID, including users, groups, authentication, Multi-Factor Authentication, and Conditional Access Configuring and supporting Microsoft Defender, endpoint security, BitLocker, and other Microsoft security features Reviewing security alerts, vulnerabilities, and Microsoft Secure Score recommendations to help clients improve their security posture Supporting Windows Autopilot and modern cloud-based device deployment Troubleshooting networking issues including LAN, WAN, WiFi, VPNs, and firewalls Supporting Windows Server and Active Directory environments where required Assisting with Microsoft 365 migrations, system upgrades, and other technical projects Maintaining accurate technical documentation and taking ownership of support issues through to resolution The role can be largely remote, ideally with an initial onboarding period working from the Cambridge office; after this, there's considerable flexibility to work remotely, with occasional attendance at the office or client sites as needed Working hours are 8:30am to 5:30pm, Monday to Friday, with some flexibility required Requirements Proven experience in an IT support role, ideally within an MSP or multi-client environment (minimum 2 years) Strong knowledge of Microsoft 365 and its administration; MS certification would be desirable Practical experience with Microsoft Intune and Entra ID Good knowledge of Microsoft security technologies, including Conditional Access, Defender, and endpoint security Strong networking and troubleshooting skills, including experience with routers, switches, and firewalls Good understanding of Windows desktop and server environments, including a working knowledge of virtualisation A good understanding of cyber security principles and their practical application within businesses Excellent communication and interpersonal skills Personal Qualities Friendly and confident when communicating with clients and colleagues Good sense of humour Articulate and well presented, with an excellent telephone manner Organised, with excellent attention to detail Able to take ownership of technical problems and work through them logically Keen to continue developing your knowledge of Microsoft cloud and security technologies Ready to hit the ground running and self-motivated What They Offer A friendly and supportive working environment within an established and growing IT business A largely remote role with flexibility around where you work The backing and additional opportunities that come from being part of a larger MSP Exposure to a wide range of Microsoft cloud, security, and infrastructure technologies Opportunities for professional development, training, and relevant Microsoft certifications Zero Surplus is one of the UK's premier recruitment agencies, based just outside Cambridge our recruiters source staff for small and international businesses across the South of England. For registration purposes, please let us know where you are currently based or which locations you are considering as well as your required salary and notice period. Please upload a Microsoft Word version of your CV where possible, excluding text boxes or images. Any data we collect from you will be stored and processed in accordance with Zero Surplus' Privacy Policy.
Aug 23, 2026
Full time
IT Support Specialist We're working with a well-established and growing IT company that specialises in delivering comprehensive technology solutions to business clients. With a strong focus on innovation and customer satisfaction, they've built a reputation for exceptional IT support services and a collaborative, close-knit team culture. As part of a wider family MSP, they offer the backing and opportunities that come from being part of a larger, growing business. As part of their continued growth, they're now looking for an experienced and motivated IT Support Specialist to join their helpdesk team. This is primarily a helpdesk and cloud-focused role covering 1st, 2nd, and 3rd line support, with particular emphasis on Microsoft 365, Intune, and Microsoft security technologies. The Role Providing 1st to 3rd line technical support across a varied client base Diagnosing and resolving issues across Windows, Microsoft 365, cloud services, networks, and associated technologies Configuring, managing, and troubleshooting Microsoft Intune, including device enrolment, compliance policies, configuration profiles, and application deployment Administering Microsoft 365 and Entra ID, including users, groups, authentication, Multi-Factor Authentication, and Conditional Access Configuring and supporting Microsoft Defender, endpoint security, BitLocker, and other Microsoft security features Reviewing security alerts, vulnerabilities, and Microsoft Secure Score recommendations to help clients improve their security posture Supporting Windows Autopilot and modern cloud-based device deployment Troubleshooting networking issues including LAN, WAN, WiFi, VPNs, and firewalls Supporting Windows Server and Active Directory environments where required Assisting with Microsoft 365 migrations, system upgrades, and other technical projects Maintaining accurate technical documentation and taking ownership of support issues through to resolution The role can be largely remote, ideally with an initial onboarding period working from the Cambridge office; after this, there's considerable flexibility to work remotely, with occasional attendance at the office or client sites as needed Working hours are 8:30am to 5:30pm, Monday to Friday, with some flexibility required Requirements Proven experience in an IT support role, ideally within an MSP or multi-client environment (minimum 2 years) Strong knowledge of Microsoft 365 and its administration; MS certification would be desirable Practical experience with Microsoft Intune and Entra ID Good knowledge of Microsoft security technologies, including Conditional Access, Defender, and endpoint security Strong networking and troubleshooting skills, including experience with routers, switches, and firewalls Good understanding of Windows desktop and server environments, including a working knowledge of virtualisation A good understanding of cyber security principles and their practical application within businesses Excellent communication and interpersonal skills Personal Qualities Friendly and confident when communicating with clients and colleagues Good sense of humour Articulate and well presented, with an excellent telephone manner Organised, with excellent attention to detail Able to take ownership of technical problems and work through them logically Keen to continue developing your knowledge of Microsoft cloud and security technologies Ready to hit the ground running and self-motivated What They Offer A friendly and supportive working environment within an established and growing IT business A largely remote role with flexibility around where you work The backing and additional opportunities that come from being part of a larger MSP Exposure to a wide range of Microsoft cloud, security, and infrastructure technologies Opportunities for professional development, training, and relevant Microsoft certifications Zero Surplus is one of the UK's premier recruitment agencies, based just outside Cambridge our recruiters source staff for small and international businesses across the South of England. For registration purposes, please let us know where you are currently based or which locations you are considering as well as your required salary and notice period. Please upload a Microsoft Word version of your CV where possible, excluding text boxes or images. Any data we collect from you will be stored and processed in accordance with Zero Surplus' Privacy Policy.
Cyber Security Delivery Manager £80-90k Portsmouth (Hybrid) SC Clearance Eligibility essential Are you a senior cyber security professional who can lead from the front - advising at board level one day and getting hands-on with a security architecture review the next? We're recruiting on behalf of a well-regarded cyber security consultancy based in Hampshire. They work with a range of clients on complex, meaningful security challenges - and they're looking for an experienced Cyber Manager to join the senior team. This isn't a purely strategic role. You'll lead engagements, grow client relationships, and help shape the direction of the business - but you'll also roll your sleeves up when the work demands it. Salary: £ Package: Gym, private medical insurance, company pension, work from home flex Working Structure: Hybrid remote in Portsmouth (2 days onsite) Security Clearance: Active or Eligible for SC clearance. The Role: As Cyber Security Delivery Manager, you'll take ownership of client engagements from start to finish, covering risk assessments, security architecture reviews, policy development, incident response planning, and governance work. You'll be the senior point of contact on engagements, ensuring quality and consistency across everything that goes out the door. What You'll Be Doing: Leading end-to-end cyber security engagements across advisory and hands-on delivery Managing multiple projects simultaneously, ensuring delivery quality and client satisfaction Building and maintaining strong relationships with clients, including at CISO and board level Leading proposals and bids, contributing to go-to-market strategy and service development Supporting and developing junior and mid-level consultants through active mentoring Putting sensible operational processes in place and keeping day-to-day delivery on track Contributing to hiring decisions as the team grows What You'll Need: Significant experience delivering cyber security projects in a consultancy or professional services environment Strong technical knowledge across core cyber domains - risk management, security architecture, governance, assurance, or incident response CISSP, CISM, or equivalent professional certification A proven track record of leading teams and managing senior client relationships The ability to communicate complex security topics clearly to both technical and non-technical stakeholders Eligibility to obtain or active SC (Security Clearance) Self-motivated, decisive, and comfortable operating with a high degree of autonomy Desired but not essential: Experience across multiple disciplines such as GRC, penetration testing, SOC, cloud security, or OT security Familiarity with frameworks including NIST, ISO 27001, CAF, or Cyber Essentials Experience working with government, defence, or critical national infrastructure clients Additional certifications such as CREST, OSCP, or NCSC Certified Professional If this sounds like the right next step, apply now or get in touch for a confidential conversation. Candidates must be eligible to work in the UK and able to obtain Security Clearance. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
May 23, 2026
Full time
Cyber Security Delivery Manager £80-90k Portsmouth (Hybrid) SC Clearance Eligibility essential Are you a senior cyber security professional who can lead from the front - advising at board level one day and getting hands-on with a security architecture review the next? We're recruiting on behalf of a well-regarded cyber security consultancy based in Hampshire. They work with a range of clients on complex, meaningful security challenges - and they're looking for an experienced Cyber Manager to join the senior team. This isn't a purely strategic role. You'll lead engagements, grow client relationships, and help shape the direction of the business - but you'll also roll your sleeves up when the work demands it. Salary: £ Package: Gym, private medical insurance, company pension, work from home flex Working Structure: Hybrid remote in Portsmouth (2 days onsite) Security Clearance: Active or Eligible for SC clearance. The Role: As Cyber Security Delivery Manager, you'll take ownership of client engagements from start to finish, covering risk assessments, security architecture reviews, policy development, incident response planning, and governance work. You'll be the senior point of contact on engagements, ensuring quality and consistency across everything that goes out the door. What You'll Be Doing: Leading end-to-end cyber security engagements across advisory and hands-on delivery Managing multiple projects simultaneously, ensuring delivery quality and client satisfaction Building and maintaining strong relationships with clients, including at CISO and board level Leading proposals and bids, contributing to go-to-market strategy and service development Supporting and developing junior and mid-level consultants through active mentoring Putting sensible operational processes in place and keeping day-to-day delivery on track Contributing to hiring decisions as the team grows What You'll Need: Significant experience delivering cyber security projects in a consultancy or professional services environment Strong technical knowledge across core cyber domains - risk management, security architecture, governance, assurance, or incident response CISSP, CISM, or equivalent professional certification A proven track record of leading teams and managing senior client relationships The ability to communicate complex security topics clearly to both technical and non-technical stakeholders Eligibility to obtain or active SC (Security Clearance) Self-motivated, decisive, and comfortable operating with a high degree of autonomy Desired but not essential: Experience across multiple disciplines such as GRC, penetration testing, SOC, cloud security, or OT security Familiarity with frameworks including NIST, ISO 27001, CAF, or Cyber Essentials Experience working with government, defence, or critical national infrastructure clients Additional certifications such as CREST, OSCP, or NCSC Certified Professional If this sounds like the right next step, apply now or get in touch for a confidential conversation. Candidates must be eligible to work in the UK and able to obtain Security Clearance. Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Role: Infrastructure Engineer - Education Location: Windsor Onsite: 5 days Salary: £40k - £50k Job purpose Our client is seeking a skilled Microsoft-focused Infrastructure Engineer to join our IT team. The IT Department provides and supports all core technology services across the environment, ensuring systems are secure, resilient and capable of supporting users and operational delivery. This is a hands-on technical role supporting and developing the Clients Microsoft infrastructure across Azure, Microsoft 365 and hybrid environments. You will help ensure our systems remain secure, resilient and high performing, while contributing to the continued development of our cloud services. Key tasks and responsibilities You will: Design, implement and support Azure infrastructure and associated cloud services. Contribute to the design and architecture development of the Clients Microsoft cloud and hybrid infrastructure. Administer and optimise Microsoft 365 (Exchange Online, SharePoint, Teams, Entra ID). Lead endpoint management using Microsoft Intune (Autopilot, compliance policies, device configuration and update management). Support hybrid identity across Active Directory and Entra ID , including Conditional Access and Zero Trust principles. Contribute to cloud migration and service modernisation initiatives. Manage Infrastructure security , including patching, vulnerability remediation and Microsoft Defender controls. Support the investigation and remediation of security incidents relating to Microsoft cloud and identity platforms. Maintain and test backup, disaster recovery and business continuity processes. Monitor health, resilience and capacity, recommending improvements as appropriate. Maintain SSL certificates, domain registrations and related services. Work with external suppliers to support infrastructure services and project delivery. Produce and maintain clear technical documentation and infrastructure standards. Contribute to the development and maintenance of infrastructure policies and procedures. Provide 3 line support for complex Microsoft cloud and infrastructure issues. Support compliance with relevant security and data protection frameworks, including Cyber Essentials and NCSC guidance where applicable. All employees of the client are also expected to: Develop a good understanding of safeguarding procedures, given all positions at the client are classed as 'regulated activity'. Demonstrate a commitment to safeguarding and promoting the welfare of children. This includes but is not limited to completing safeguarding training as required, complying with all safeguarding procedures and ensuring any safeguarding updates issued by the Client are read and understood. Understand and comply with procedures and legislation relating to confidentiality. Display a commitment to and promotion of equality, diversity and inclusion. Skills and competencies required To be successful in this role, you will demonstrate: Strong hands-on experience designing and supporting Microsoft Azure infrastructure (IaaS, networking, security and monitoring). Excellent knowledge of identity and access management, including Active Directory and Microsoft Entra ID. Experience administering Microsoft 365 and managing modern endpoint environments using Intune Practical understanding of security best practice, including Conditional Access, Defender and Zero Trust principles. Experience operating within hybrid environments (on-premises and cloud). Knowledge of backup, recovery and disaster recovery testing processes. Good understanding of core networking concepts (DNS, DHCP, firewalls, secure connectivity). PowerShell or automation experience to improve efficiency and consistency. Experience supporting high availability, resilience and performance optimisation within cloud environments. Experience operating at 2/3 line support level within an enterprise infrastructure environment. Strong written and verbal communication skills, with a proactive and methodical approach. Desirable Microsoft certifications such as AZ-104, AZ-500 or other relevant Azure/Microsoft security certifications. Experience contributing to cloud migration or infrastructure modernisation programmes. Experience working within an educational environment. Familiarity with security and compliance frameworks such as Cyber Essentials or ISO-aligned standards. You may enjoy this role if: You can work effectively within a team environment. You have a passion for information and communications technology. You are confident and willing to build on knowledge acquired to date. You are an excellent communicator with a friendly and helpful manner. Working pattern You will be working 35 hours per week (core hours 8am to 6pm) Monday to Friday You will be working 52 weeks per year. You will be entitled to 28 days holiday, 3 of these days must be reserved for the Christmas shut down. If a bank holiday falls during a school term period, you will be required to work this day and you will receive an additional day's holiday in lieu. INDIT Planet Recruitment acts as an employment agency for permanent recruitment and an employment business for the supply of temporary workers. Planet Recruitment is an Equal Opportunities Employer. By applying for this role your details will be submitted to Planet Recruitment. Our Candidate Privacy Information Statement explains how we will use your information. Only candidates with the relevant skills and experience will be contacted after application, if you do not hear back from us within 7 days you have unfortunately been unsuccessful in your application. Please note that no terminology in this advert is intended to discriminate on the grounds of a person's gender, marital status, race, religion, colour, age, disability or sexual orientation. Every candidate will be assessed only in accordance with their merits, qualifications and abilities to perform the duties of the position.
May 19, 2026
Full time
Role: Infrastructure Engineer - Education Location: Windsor Onsite: 5 days Salary: £40k - £50k Job purpose Our client is seeking a skilled Microsoft-focused Infrastructure Engineer to join our IT team. The IT Department provides and supports all core technology services across the environment, ensuring systems are secure, resilient and capable of supporting users and operational delivery. This is a hands-on technical role supporting and developing the Clients Microsoft infrastructure across Azure, Microsoft 365 and hybrid environments. You will help ensure our systems remain secure, resilient and high performing, while contributing to the continued development of our cloud services. Key tasks and responsibilities You will: Design, implement and support Azure infrastructure and associated cloud services. Contribute to the design and architecture development of the Clients Microsoft cloud and hybrid infrastructure. Administer and optimise Microsoft 365 (Exchange Online, SharePoint, Teams, Entra ID). Lead endpoint management using Microsoft Intune (Autopilot, compliance policies, device configuration and update management). Support hybrid identity across Active Directory and Entra ID , including Conditional Access and Zero Trust principles. Contribute to cloud migration and service modernisation initiatives. Manage Infrastructure security , including patching, vulnerability remediation and Microsoft Defender controls. Support the investigation and remediation of security incidents relating to Microsoft cloud and identity platforms. Maintain and test backup, disaster recovery and business continuity processes. Monitor health, resilience and capacity, recommending improvements as appropriate. Maintain SSL certificates, domain registrations and related services. Work with external suppliers to support infrastructure services and project delivery. Produce and maintain clear technical documentation and infrastructure standards. Contribute to the development and maintenance of infrastructure policies and procedures. Provide 3 line support for complex Microsoft cloud and infrastructure issues. Support compliance with relevant security and data protection frameworks, including Cyber Essentials and NCSC guidance where applicable. All employees of the client are also expected to: Develop a good understanding of safeguarding procedures, given all positions at the client are classed as 'regulated activity'. Demonstrate a commitment to safeguarding and promoting the welfare of children. This includes but is not limited to completing safeguarding training as required, complying with all safeguarding procedures and ensuring any safeguarding updates issued by the Client are read and understood. Understand and comply with procedures and legislation relating to confidentiality. Display a commitment to and promotion of equality, diversity and inclusion. Skills and competencies required To be successful in this role, you will demonstrate: Strong hands-on experience designing and supporting Microsoft Azure infrastructure (IaaS, networking, security and monitoring). Excellent knowledge of identity and access management, including Active Directory and Microsoft Entra ID. Experience administering Microsoft 365 and managing modern endpoint environments using Intune Practical understanding of security best practice, including Conditional Access, Defender and Zero Trust principles. Experience operating within hybrid environments (on-premises and cloud). Knowledge of backup, recovery and disaster recovery testing processes. Good understanding of core networking concepts (DNS, DHCP, firewalls, secure connectivity). PowerShell or automation experience to improve efficiency and consistency. Experience supporting high availability, resilience and performance optimisation within cloud environments. Experience operating at 2/3 line support level within an enterprise infrastructure environment. Strong written and verbal communication skills, with a proactive and methodical approach. Desirable Microsoft certifications such as AZ-104, AZ-500 or other relevant Azure/Microsoft security certifications. Experience contributing to cloud migration or infrastructure modernisation programmes. Experience working within an educational environment. Familiarity with security and compliance frameworks such as Cyber Essentials or ISO-aligned standards. You may enjoy this role if: You can work effectively within a team environment. You have a passion for information and communications technology. You are confident and willing to build on knowledge acquired to date. You are an excellent communicator with a friendly and helpful manner. Working pattern You will be working 35 hours per week (core hours 8am to 6pm) Monday to Friday You will be working 52 weeks per year. You will be entitled to 28 days holiday, 3 of these days must be reserved for the Christmas shut down. If a bank holiday falls during a school term period, you will be required to work this day and you will receive an additional day's holiday in lieu. INDIT Planet Recruitment acts as an employment agency for permanent recruitment and an employment business for the supply of temporary workers. Planet Recruitment is an Equal Opportunities Employer. By applying for this role your details will be submitted to Planet Recruitment. Our Candidate Privacy Information Statement explains how we will use your information. Only candidates with the relevant skills and experience will be contacted after application, if you do not hear back from us within 7 days you have unfortunately been unsuccessful in your application. Please note that no terminology in this advert is intended to discriminate on the grounds of a person's gender, marital status, race, religion, colour, age, disability or sexual orientation. Every candidate will be assessed only in accordance with their merits, qualifications and abilities to perform the duties of the position.
Senior DevOps Engineer £80,000 Remote We are currently recruiting for an experienced Lead DevOps Engineer on behalf of a leader in their niche to head up their DevOps & Infrastructure environment. The Role You will be joining an experienced team of 10 developers. You will be working on brand new projects including a technology transformation project utilising the latest tools and equipment. Your role will specifically require you to oversee the DevOps, Security, and Cloud Infrastructure whilst leading the strategy and direction of the company. Your day-to-day will consist of: Leading and enhancing the company's infrastructure and tooling strategy. Implementing and improving Infrastructure as Code (IaC) with Terraform Working across AWS services - particularly IAM, S3, EKS Managing containerisation and orchestration. Delivering robust monitoring and alerting solutions Contributing to and maintaining CI/CD pipelines Driving ISO 27000 implementation and supporting ongoing compliance initiatives Introducing and managing cybersecurity tools such as vulnerability scanners, endpoint protection, SIEM, and cloud security monitoring solutions Requirements: Extensive experience in a DevOps team lead role using AWS, (IAM, S3, EKS). Experience with IaC such as Terraform Cloud formation/CDK is desirable. Expert knowledge in containerisation and orchestration technologies such as Docker and Kubernetes. Proficiency with CI/CID pipelines and tools via GitHub & ArgoCD. Experience delivering monitoring and alerting solutions. Senior DevOps Engineer £80,000 Remote Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
May 18, 2026
Full time
Senior DevOps Engineer £80,000 Remote We are currently recruiting for an experienced Lead DevOps Engineer on behalf of a leader in their niche to head up their DevOps & Infrastructure environment. The Role You will be joining an experienced team of 10 developers. You will be working on brand new projects including a technology transformation project utilising the latest tools and equipment. Your role will specifically require you to oversee the DevOps, Security, and Cloud Infrastructure whilst leading the strategy and direction of the company. Your day-to-day will consist of: Leading and enhancing the company's infrastructure and tooling strategy. Implementing and improving Infrastructure as Code (IaC) with Terraform Working across AWS services - particularly IAM, S3, EKS Managing containerisation and orchestration. Delivering robust monitoring and alerting solutions Contributing to and maintaining CI/CD pipelines Driving ISO 27000 implementation and supporting ongoing compliance initiatives Introducing and managing cybersecurity tools such as vulnerability scanners, endpoint protection, SIEM, and cloud security monitoring solutions Requirements: Extensive experience in a DevOps team lead role using AWS, (IAM, S3, EKS). Experience with IaC such as Terraform Cloud formation/CDK is desirable. Expert knowledge in containerisation and orchestration technologies such as Docker and Kubernetes. Proficiency with CI/CID pipelines and tools via GitHub & ArgoCD. Experience delivering monitoring and alerting solutions. Senior DevOps Engineer £80,000 Remote Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy. To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
To see more Chinese jobs please follow us on WeChat: teamchinapf AND pfteamchina Ref: 23406 Job Title: Mandarin speaking Information Security Manager (Banking) The Skills You'll Need: Fluent in Mandarin and English, with working experience in Information Security / Cyber Security / IT Risk Management Your New Salary: Competitive depending on experience Location: Central London Job Status: Permanent, office based Summary: The Information Security Manager is responsible for establishing, maintaining and improving the bank's information security framework to protect the confidentiality, integrity, and availability of information assets, particularly for the London Branch. The role develops and oversees security policies, strategies, and controls in line with internal governance, UK regulatory requirements, and industry best practices. Operating as a "1.5 Line of Defence" within the IT function, the role provides independent security risk oversight, challenges the effectiveness of IT security controls, and supports regulatory compliance and operational resilience. Information Security Manager - What You'll be Doing Each Day: Information Security Governance Upgrade and maintain the Branch's information security policies, standards and procedures in line with Head Office policies and regulatory requirements. Upgrade and maintain an effective information security governance framework within the Branch. Ensure information security policies and procedures are properly implemented and periodically reviewed. Information Security Risk Management Identify, assess and monitor information security risks affecting the Branch. Maintain the information security risk register and ensure appropriate mitigation measures are implemented. Provide information security risk reporting to senior management. Security Oversight and Control Effectiveness Provide oversight and challenge to the implementation of information security controls performed by the IT team. Monitor the effectiveness of technical and procedural security controls across systems, infrastructure and applications. Coordinate periodic security reviews and internal control assessments. Cyber Security and Security Monitoring Oversee cyber security measures including vulnerability management, access control, security monitoring and incident detection. Ensure regular vulnerability assessments, security reviews and penetration testing are conducted. Incident Management Establish and maintain procedures for managing information security incidents. Coordinate investigation, response and reporting of cyber security incidents. Operational Resilience Support the Branch's operational resilience framework from an information security perspective. Participate in disaster recovery planning, cyber security exercises and resilience testing. Third-Party and Outsourcing Risk Assess information security risks associated with third-party service providers and outsourcing arrangements. Ensure information security requirements are incorporated into vendor management and outsourcing governance processes. Regulatory Compliance Ensure compliance with applicable UK regulatory expectations relating to information security, cyber risk and operational resilience. Support regulatory reviews, internal audit and external audit activities. Security Awareness Promote information security awareness across the Branch. Organise information security training and awareness programmes for staff. Others Perform any other duties as required by the line manager or Senior Management. Information Security Manager - The Skills You'll Need to Succeed: Excellent verbal and written communication and presentation skills in Mandarin and English. Master's degree or above in Information Security, Computer Science, Information Technology or a related discipline. Professional certifications such as CCIE, HCIE, CISSP, CISM, CISA or ISO27001 Lead Implementer are highly desirable. Relevant experience in network, information security, cyber security or IT risk management , preferably within the financial services industry. Experience in developing and implementing information security governance frameworks. Strong understanding of information security standards and frameworks such as ISO 27001, NIST Cybersecurity Framework or CIS Controls . Good knowledge of UK regulatory expectations related to cyber security, operational resilience and outsourcing risk. Understanding of banking IT environments including networks, applications and infrastructure security. Strong analytical and risk assessment skills. Ability to communicate effectively with both technical teams and senior management. Ability to coordinate incident response and cross-departmental collaboration. High level of integrity and professionalism. Strong risk awareness and sense of responsibility. Ability to work effectively in a regulated banking environment. Please follow us on Linkedin: people-first-team-china We would be grateful if you could send your CV as a Word document. If your application is successful, you will be contacted within 7 days. We regret that due to the high volume of applications we receive we cannot provide feedback on individual CVs. Please note that we can only consider candidates who are eligible to work in the UK and are able to provide relevant supporting documentation. People First is committed to increasing diversity, and maintaining an inclusive workplace culture. We welcome applications from all qualified candidates regardless of their ethnicity, race, gender, religious beliefs, sexual orientation, age, marital status or whether or not they have a disability. People First (Recruitment) Limited acts as an employment agency for permanent and fixed term contract recruitment and as an employment business for the supply of temporary workers. Please note that by applying for this job you accept our Terms of Use and Privacy Policy which can be found on our website.
May 15, 2026
Full time
To see more Chinese jobs please follow us on WeChat: teamchinapf AND pfteamchina Ref: 23406 Job Title: Mandarin speaking Information Security Manager (Banking) The Skills You'll Need: Fluent in Mandarin and English, with working experience in Information Security / Cyber Security / IT Risk Management Your New Salary: Competitive depending on experience Location: Central London Job Status: Permanent, office based Summary: The Information Security Manager is responsible for establishing, maintaining and improving the bank's information security framework to protect the confidentiality, integrity, and availability of information assets, particularly for the London Branch. The role develops and oversees security policies, strategies, and controls in line with internal governance, UK regulatory requirements, and industry best practices. Operating as a "1.5 Line of Defence" within the IT function, the role provides independent security risk oversight, challenges the effectiveness of IT security controls, and supports regulatory compliance and operational resilience. Information Security Manager - What You'll be Doing Each Day: Information Security Governance Upgrade and maintain the Branch's information security policies, standards and procedures in line with Head Office policies and regulatory requirements. Upgrade and maintain an effective information security governance framework within the Branch. Ensure information security policies and procedures are properly implemented and periodically reviewed. Information Security Risk Management Identify, assess and monitor information security risks affecting the Branch. Maintain the information security risk register and ensure appropriate mitigation measures are implemented. Provide information security risk reporting to senior management. Security Oversight and Control Effectiveness Provide oversight and challenge to the implementation of information security controls performed by the IT team. Monitor the effectiveness of technical and procedural security controls across systems, infrastructure and applications. Coordinate periodic security reviews and internal control assessments. Cyber Security and Security Monitoring Oversee cyber security measures including vulnerability management, access control, security monitoring and incident detection. Ensure regular vulnerability assessments, security reviews and penetration testing are conducted. Incident Management Establish and maintain procedures for managing information security incidents. Coordinate investigation, response and reporting of cyber security incidents. Operational Resilience Support the Branch's operational resilience framework from an information security perspective. Participate in disaster recovery planning, cyber security exercises and resilience testing. Third-Party and Outsourcing Risk Assess information security risks associated with third-party service providers and outsourcing arrangements. Ensure information security requirements are incorporated into vendor management and outsourcing governance processes. Regulatory Compliance Ensure compliance with applicable UK regulatory expectations relating to information security, cyber risk and operational resilience. Support regulatory reviews, internal audit and external audit activities. Security Awareness Promote information security awareness across the Branch. Organise information security training and awareness programmes for staff. Others Perform any other duties as required by the line manager or Senior Management. Information Security Manager - The Skills You'll Need to Succeed: Excellent verbal and written communication and presentation skills in Mandarin and English. Master's degree or above in Information Security, Computer Science, Information Technology or a related discipline. Professional certifications such as CCIE, HCIE, CISSP, CISM, CISA or ISO27001 Lead Implementer are highly desirable. Relevant experience in network, information security, cyber security or IT risk management , preferably within the financial services industry. Experience in developing and implementing information security governance frameworks. Strong understanding of information security standards and frameworks such as ISO 27001, NIST Cybersecurity Framework or CIS Controls . Good knowledge of UK regulatory expectations related to cyber security, operational resilience and outsourcing risk. Understanding of banking IT environments including networks, applications and infrastructure security. Strong analytical and risk assessment skills. Ability to communicate effectively with both technical teams and senior management. Ability to coordinate incident response and cross-departmental collaboration. High level of integrity and professionalism. Strong risk awareness and sense of responsibility. Ability to work effectively in a regulated banking environment. Please follow us on Linkedin: people-first-team-china We would be grateful if you could send your CV as a Word document. If your application is successful, you will be contacted within 7 days. We regret that due to the high volume of applications we receive we cannot provide feedback on individual CVs. Please note that we can only consider candidates who are eligible to work in the UK and are able to provide relevant supporting documentation. People First is committed to increasing diversity, and maintaining an inclusive workplace culture. We welcome applications from all qualified candidates regardless of their ethnicity, race, gender, religious beliefs, sexual orientation, age, marital status or whether or not they have a disability. People First (Recruitment) Limited acts as an employment agency for permanent and fixed term contract recruitment and as an employment business for the supply of temporary workers. Please note that by applying for this job you accept our Terms of Use and Privacy Policy which can be found on our website.