Overview
In this role you will shape Hastings Direct’s cloud security by evaluating and implementing cloud-first solutions, partnering with Security Architects to define strategy, and delivering secure, scalable cloud services. You will work in a CIO-led, collaborative 4Cs culture, driving security governance while adopting Security as Code. The role combines hands-on engineering with cross-functional collaboration to protect digital insurance platforms and customer data.
Pay / Benefits
- salary based on experience + car allowance
- flexible and hybrid working
- annual performance bonus
- private healthcare
- pension contribution match up to 10%
- 27 days annual leave + bank holidays
Responsibilities
- Evaluate new security technologies and cloud services and determine adoption
- Develop cloud security solutions using Security as Code and cloud automation
- Define and own cloud security strategy with Security Architects
- Establish guardrails and cloud-native services for developers
- Ensure cloud solutions meet enterprise security standards and governance
- Collaborate in an agile, cross-functional environment to release enterprise-class cloud services
Key requirements
- Certifications in security (Azure Security Engineer, CCSP, CISSP, CCSK) are desirable
- Proven experience designing, implementing, and securing Azure-based cloud environments
- Knowledge of GDPR, ISO 27001, NIST and related security controls
- Experience with Azure Kubernetes Service (AKS) and microservices
- Familiarity with DevSecOps, security tooling, and SIEM platforms
- Proficiency with Microsoft Defender tools, vulnerability scanners, and cloud security practices
- Strong problem-solving abilities and cross-functional collaboration
- Hands-on experience with Microsoft ecosystem components (Firewalls, IDS/IPS, Load Balancers, Gateways, Proxies, M365, EDR, KQL)
- Scripting and automation with PowerShell, Python, BICEP, ARM
- Track record of secure, scalable Azure security infrastructure implementations
- Experience leveraging data analytics and Azure DevOps for security updates
- Strong communication
- Collaborative mindset
- Problem-solving
- Microsoft Azure services
- AKS (Azure Kubernetes Service)
- Security as Code
…
