Descripción del trabajo
Role purpose:
- To work within the IT infrastructure engineering team, contributing to development and implementation of information service and technology solutions as used by the company at large.
- To lead efforts by the security operations team in pursuance of mitigation of security risks and issues.
Main responsibilities:
- Working with team members and internal stakeholders to design and implement IS&T solutions and changes, including both technical design and business / operational design elements.
- Participation in security operations management across various estates, including tracking and reporting on vulnerability status, working with info-sec and governance owners to define and track information security risks, and working on initiatives to risk reduce technology use within the business.
Qualifications
Core expertise and skills:
- Security engineering including firewalling, vulnerability remediation.
- Technical stewardship of third-party pen testing and analysis of results.
- Identity management and access control solutions (IAM, RBAC, ABAC eg Sailpoint ID now, Okta etc).
- Public cloud technologies (AWS, Azure).
- Private cloud (VCD in particular) and hypervisors (Vmware stack in particular).
- Networking L2, L3 including routing protocols, OSI, VPN (IPSEC, SSL), TCP / IP suite (DNS, DHCP, TLS), CDNs, NAT, reverse proxying.
- Windows operating system platforms.
- Experience in working in a large enterprise ITSM environment.
- Experience of working in a delivery-assurance environment, including experience of working within both agile and linear / waterfall delivery processes.
- Experience in working in a service outsourced environment / experience working with multiple service partners.
- Experience working in a change managed / release managed environment.
- Experience working within a risk managed / ISMS environment.
- Automation and scripting expertise (PowerShell, Python, Rundeck, Ansible).
- Familiarity with backup, recovery, and replication technologies (eg Comvault, Veeam, Zerto).
- Good understanding of business continuity processes and practices.
- Experience of ESD / patch management technologies (Microsoft SCCM, Avanti patch manager).
- Experience of report and MI generation for use by executive decision-making process.
- Effective communication skills / high level of technical English fluency.
Beneficial expertise and skills:
- ITIL certified (foundation v3 or v4).
- Experience of database services administration SQL server config, PaaS / database as a service administration.
- AWS Certified Cloud Practitioner.
- Experience drafting operational procedures / run books.
- Experience drafting design reference / documentation.
- nix operating system platforms (various Linux distros).
- Participation in pre-sales technical consultancy (not necessarily customer facing).
- Involvement in supporting SaaS / PaaS solutions, 3rd line engineering support.
- Familiarity with service / site reliability design / fault domain design etc.
- Experience of presenting / reporting to higher management.