IT Operations and Security Lead

Company: Nexus Jobs
Apply for the IT Operations and Security Lead
Location: London
Job Description:

Overview

In this role you will lead IT operations, security, and risk management within a global insurance environment. You will drive operational excellence, ensure platform stability, and oversee cloud-first security and compliance programs. You’ll collaborate with stakeholders and vendors to deliver secure, cost-effective IT services aligned with the strategic IT vision. This is a security-focused leadership position that shapes transformative IT delivery.

Responsibilities

  • Oversee IT operations, security, and risk management to ensure stability, continuity, and efficiency of technology platforms
  • Define and enforce cloud security policies, IAM, and access controls; promote zero-trust principles
  • Lead threat monitoring, detection, and response using cloud-native security tools (e.g., Microsoft Defender, Sentinel)
  • Ensure regulatory and governance compliance (ISO 27001, NIST, GDPR, SOC2, FCA) and conduct risk assessments
  • Lead DR/BCP planning with biannual testing; manage vendor and third-party relationships
  • Drive IT transformation projects, platform migrations, and continuous service improvement
  • Augment team capabilities with hands-on technical expertise across multiple IT domains
  • Promote ITIL-based service management and automation to optimise delivery

Key requirements

  • 10+ years hands-on experience in IT Infrastructure with Security and Risk management
  • Experience in banking or insurance sectors preferred
  • Proficiency in Microsoft technologies (Microsoft 365, Azure, Exchange Online) and cloud security tooling
  • Strong IAM expertise (Azure AD, MFA, Conditional Access, SSO, PAM)
  • Knowledge of security frameworks (ISO 27001, NIST, CIS) and regulatory requirements (GDPR, SOC2, FCA)
  • Experience with SIEM, threat monitoring, vulnerability management, and endpoint/security controls
  • Project leadership, change management, and vendor management capabilities
  • Bachelor’s degree in IT or similar
  • Stakeholder engagement
  • Problem-solving and decision-making
  • Resilience and adaptability
  • Microsoft 365 & Azure administration and security (Defender, Sentinel)
  • Azure AD, MFA, Conditional Access, SSO, PAM
  • Threat management, incident response, and vulnerability management

…

Posted: October 1st, 2026