Infrastructure Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+22 more
Job description
We’re looking for an Infrastructure Engineer to help us manage, secure, and modernise our on-premise and cloud infrastructure. You’ll work across a hybrid estate - supporting existing on-premise systems while playing an active role in our ongoing migration to modern cloud and hybrid platforms, and in the day-to-day administration of Microsoft Entra ID. This is a hands-on engineering role with genuine scope to shape how infrastructure is built and secured across the Group.
What You’ll Be Doing
On-Premise Infrastructure
-
Administer and maintain our server estate (physical and virtualised), including patching, capacity management, and lifecycle planning.
-
Support and help decommission legacy/EOL systems (servers, SQL Server instances, and applications) as part of the Group’s estate rationalisation programme.
-
Manage Active Directory across multiple domains, supporting ongoing consolidation and identity modernisation work.
-
Administer core infrastructure services: DNS, DHCP, file/print, backup and disaster recovery, VOIP Telephony.
-
Support the Group’s migration from VMware vSphere 7 to vSphere 8/9 or to Hyper-V/Azure, including build, testing, and cutover activity.
Entra ID & Cloud Identity Administration
-
Own day-to-day administration of Microsoft Entra ID: user and group lifecycle, licensing, app registrations, and enterprise applications.
-
Support Entra ID tenant consolidation across all Group brands, including domain and UPN/primary SMTP alignment.
-
Configure and maintain Conditional Access policies, MFA enforcement, and password policy in line with NCSC guidance.
-
Administer Privileged Identity Management (PIM) and just-in-time (JIT) access for privileged roles.
-
Support hybrid identity sync (AD to Entra ID) and troubleshoot synchronisation issues.
Cloud & Security
-
Support Microsoft 365 administration alongside Entra ID (Exchange Online, SharePoint, Teams).
-
Assist with Azure infrastructure (App Services, Functions, storage, networking) supporting Group applications and data platforms.
-
Contribute to the Group’s Cyber Essentials Plus programme, including remediation of findings and ongoing control maintenance.
-
Operate and tune endpoint and network security tooling (e.g. Microsoft Defender, Sophos, ThreatLocker, Ivanti Patch Management, SIEM alerting).
-
Support security patching, vulnerability remediation, and hardening across both on-premise and cloud infrastructure.
-
Participate in incident response and root-cause investigation for infrastructure and security incidents.
General
-
Produce and maintain clear documentation for infrastructure, configurations, and standard operating procedures.
-
Work within change management (CAB) processes for planned infrastructure changes.
-
Provide 2nd/3rd-line escalation support and mentor junior team members where required.
-
Collaborate with the wider IT team on projects spanning infrastructure, security, and identity.
Requirements
-
Educated to Degree Level with a minimum of 5 years of experience working in a similar capacity as an Infrastructure Engineer, or a minimum of 10 years’ experience working in an IT Infrastructure role.
-
Proven experience administering Windows Server environments and Active Directory at scale.
-
Hands-on experience administering Microsoft Entra ID (Azure AD) - users, groups, Conditional Access, and app registrations.
-
Hands-on experience with virtualisation platforms (VMware and/or Hyper-V).
-
Practical understanding of core networking (DNS, DHCP, VLANs, firewalls).
-
Some exposure to Azure or another public cloud platform (IaaS/PaaS fundamentals).
-
Working knowledge of endpoint security, patch management, and vulnerability remediation.
-
Strong troubleshooting skills and a methodical approach to problem-solving.
-
Clear communicator, comfortable working with both technical peers and non-technical stakeholders.
Desirable
-
Experience with VMware, Hyper-V or Azure migrations, including performing VMware upgrades.
-
Exposure to Cyber Essentials / Cyber Essentials Plus or similar security frameworks.
-
Familiarity with SIEM tooling, Privileged Identity Management (PIM/JIT), or hybrid identity sync tooling (Entra Connect).
-
Scripting ability (PowerShell / Microsoft Graph API) for automation of routine tasks.
-
Experience operating in a multi-brand, multi-domain, or multi-site organisation.
-
Relevant certifications (e.g. Microsoft Certified: Identity and Access Administrator, Azure Administrator, Windows Server, Security+).
Benefits & conditions
- Competitive salary and benefits package.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The Most Popular IT Jobs on the Market
IT Salaries in UK
The 12 Best Jobs for Software Engineers
Where to Find Entry-Level Software Engineering Jobs