System Architect - Infrastructure Security

1 week, 1 day ago
Full-time
Senior
DevOps and Infrastructure
Target Group

Target Group

Target Group specializes in digital transformation and business process outsourcing, providing operational solutions to enhance customer experiences for top-tier banks and public bodies in the financial services sector.

Diversified Financial Services
1K-5K
Founded 1979

Description

  • Assess security configurations across Windows Server, Linux, networking, Azure and Microsoft 365 against recognised best-practice standards.
  • Develop and implement remediation plans to address identified security weaknesses across the infrastructure estate.
  • Resolve permission and ACL issues, including file and folder access concerns, without impacting service availability.
  • Improve Azure and Microsoft 365 security posture, including remediation of findings raised by Microsoft security tooling and maintenance of Microsoft Secure Score.
  • Strengthen identity, ransomware resilience and end-user security controls across the wider technology estate.
  • Review and uplift data protection measures, including DLP configurations and broader data loss prevention controls.
  • Create and maintain process documentation as controls, processes and operating practices mature.
  • Work closely with Security Operations and IT Infrastructure colleagues to reduce risk and deliver secure solutions into production.

Requirements

  • Deep technical expertise and a methodical, independent approach with the confidence to collaborate effectively across teams.
  • Strong PowerShell skills and a drive to automate repeatable activity wherever possible.
  • Extensive experience across Windows, Linux, networking and enterprise infrastructure environments.
  • Strong Microsoft 365 expertise, particularly across Microsoft Defender, Threat Hunting and Microsoft Purview.
  • Solid knowledge of cloud and infrastructure security, particularly within Microsoft Azure.
  • Ability to interpret technical standards, assess current controls and implement improvements pragmatically.
  • Clear communication skills and confidence producing technical documentation, process guidance and progress updates.
  • Experience reviewing deployed technologies and applying guidance from standards bodies such as CIS, NCSC and CISA is beneficial.

Benefits

  • Competitive salary up to £60,000 per annum.
  • 30 days holiday plus bank holidays from day one.
  • Hybrid working policy with remote working available.
  • Defined Contribution Pension Scheme with employer match up to 6%.
  • Company-paid Private Medical Insurance.
  • Discretionary annual bonus scheme and annual pay review.
  • Flexible and lifestyle benefits via the My Flex platform, including voluntary benefits and a technology buying scheme.
  • Wellbeing support, enhanced parental leave, life assurance, income protection, discounted gym memberships, and other employee discounts and support services.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Saviynt IAM Specialist

The Missing Link 51-250 Internet Software & Services

The Missing Link is seeking a Security Engineer - Saviynt to support large enterprise identity governance initiatives, design and deliver Saviynt-based solutions, and strengthen its growing cyber security practice.

Active Directory Azure Cybersecurity JavaScript PowerShell REST API SAP SQL
14 hours, 53 minutes ago

AI Security Architect (REMOTE - United States)

EnableComp 251-1K Insurance

EnableComp is seeking a remote AI Security Architect to secure and govern its AI and machine learning initiatives within its healthcare revenue cycle management environment.

Azure Cybersecurity HIPAA LLM Machine Learning
15 hours, 8 minutes ago

Senior Infrastructure Security Engineer

Dropbox 1K-5K Internet Software & Services

Dropbox is hiring a Security Engineer to secure its AI and agentic infrastructure while helping protect products and users across cloud and on-prem environments.

Bash CI/CD CrowdStrike Go Java Kubernetes Linux LLM Node.js OAuth OpenID Connect OWASP Python Ruby Rust SIEM
15 hours, 8 minutes ago

Staff, Security Engineer

Fullscript 251-1K Health Care Providers & Services

Fullscript is hiring a Staff Security Engineer to lead hands-on security engineering across its healthcare technology platform, shaping secure product development and protecting systems that support practitioners and patients.

AWS GitHub GitLab GraphQL JavaScript Node.js Penetration Testing Ruby on Rails
15 hours, 38 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers