IT Infrastructure Operations and Security Lead

Nexus
Charing Cross, United Kingdom
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
£ 95K

Job location

Charing Cross, United Kingdom

Tech stack

Microsoft Windows
Software System Penetration Testing
Azure
Software as a Service
Cloud Computing Security
Computer Networks
Domain Name System Security Extensions
DNS
Multi-Factor Authentication
Identity and Access Management
Information Technology Operations
Virtual Private Networks (VPN)
Local Area Networks
Windows Server
Azure
Cloud Services
Zero Trust Network Access
SharePoint
Security Information and Event Management
Single Sign-On
SQL Databases
Software Vulnerability Management
Wide Area Networks
Wi-Fi Technology
Office365
Software Security
Firewalls (Computer Science)
Microsoft InTune
Information Technology
Cybercrime
Cloudflare
Cisco networks

Job description

This role requires excellent management of a small team in IT along with managing stakeholders and vendors.

You must be hands-on technically in IT Infrastructure.

The IT Operational Platform and Security Lead is responsible for overseeing the organisation's IT operations, ensuring the stability, continuity, security, and efficiency of its technology platforms within a global commercial insurance environment.

While Microsoft technologies (Microsoft 365, Azure, Exchange Online) form a core part of the infrastructure, the role also encompasses broader enterprise IT systems, multi layered networking, security, data management, and third-party platforms that support global business operations and the associated applications estate.

Security, Compliance & Risk Management

  • Define and enforce cloud security policies, identity management, and access controls to protect systems, networks, and data.
  • Oversee the adoption of zero-trust security principles to enhance protection across cloud platforms.
  • Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM).
  • Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms.
  • Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA).
  • Conduct regular security risk assessments, penetration tests, and vulnerability management across cloud services.
  • Oversee endpoint security, cloud network and API security for robust protection across all assets
  • Define, manage and maintain accurate DR and BCP plans for the infrastructure area with biannual tests.

Technical Experience

  • Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge,
  • Microsoft AD (Entra), Server and SQL experience,
  • O365 administration and design
  • Global Software Patching and estate management via Intune
  • Firewall (Azure, CheckPoint and Cloudflare), DNS, VPN, WIFI and Local Area Network design & administration experience
  • Software Defined Networking (Cisco, Meraki, Versa)

Requirements

  • Microsoft 365 & Azure: Strong experience managing Microsoft 365 (Exchange, SharePoint, Teams), Azure cloud infrastructure, and security tools such as Microsoft Defender and Sentinel.
  • Security & Compliance: Deep knowledge of security frameworks (ISO 27001, NIST, CIS), compliance requirements (GDPR, SOC2), and risk management best practices.
  • Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM).
  • Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools.
  • Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls.
  • IT Service Management & Automation: Experience implementing ITIL-based service management, automating operational tasks, and optimising service delivery. Operational & Leadership Skills:
  • IT Operations & Service Continuity: Ability to ensure IT systems are highly available, resilient, and fit for purpose, with a strong focus on business continuity and disaster recovery.
  • Supplier & Vendor Management: Experience managing third-party IT vendors, MSPs, and SaaS providers, ensuring service levels, performance, and cost-effectiveness.
  • Project Leadership & Change Management: Ability to lead technology projects, system upgrades, and platform migrations, ensuring smooth execution and minimal business disruption.
  • Process Improvement & Automation: Strong analytical mindset to identify inefficiencies, automate workflows, and enhance security controls. Soft Skills & Mindset:
  • Problem-Solving & Decision-Making: Capable of making informed decisions and resolving complex IT issues in a fast-paced environment.
  • Stakeholder Engagement: Ability to communicate effectively with technical and non-technical stakeholders, including senior leadership and business users.
  • Resilience & Adaptability: Comfortable working in an evolving technology landscape, with a proactive and security-first approach.

About the company

Buy before Build mentality and demonstrable migration of Legacy VM based estates to SaaS and Azure Cloud services platforms, Global Operational team management experience (human resources, strategic delivery, operational service, audit lead for Infra, budget..) Key 3 party operational infrastructure vendor management - i.e. management of managed service partners as a team extension globally, as well as service/solution delivery partners, Migration of Legacy VM based estates to SaaS and Cloud services platforms, Legacy Infra tech to Azure knowledge/experience, Prior to the last 5 years in Enterprise Management of a global estate/user-base, a demonstrable technical infrastructure engineering level background, working on Windows Server, AD , SQL environments, Firewalls/SDWAN, and Networks (WAN &/or LAN). The Client is based in the City of London. This is a hybrid position with 3 days in the office. The salary for this role will be in the range £85K - £95K plus Benefits. Do send your CV to us in Word format along with your salary and notice period. Discover Nexus Jobs Limited Knightsbridge, England, United Kingdom 100 - 249 employees Recruitment agency Nexus Jobs is a leading recruitment agency that connects top talent with industry-leading companies. Specializing in IT, Banking, HR, Finance and engineering sectors. Nexus Jobs provides efficient staffing solutions for businesses and jobseekers alike. Send your CV to cv@nexusjobs.com in Word format.

Apply for this position