Make yourself visible and let companies apply to you.
Roles

Vault Jobs

Overview

Looking for top Vault jobs? Explore the latest Vault career opportunities on Haystack, your go-to IT job board. Whether you specialize in Vault administration, development, or security, find the perfect role that matches your skills and advance your career today. Start applying for Vault jobs now!
Filters applied
Vault
Search
Salary
Location
Remote preference
Role type
Seniority
Tech stack
Sectors
Contract type
Company size
Visa sponsorship
Linux Infrastructure Engineer
Sopra Steria
Salisbury
Hybrid
Mid - Senior
£25,000
RECENTLY POSTED
linux
mysql
terraform
git
ansible
kubernetes
+6
There is a lot happening in Linux! Join our dynamic IT Defence team, where you will be responsible for all aspects of our Linux capabilities. This role offers exposure to business-as-usual operations, delivered services, and innovative project work. We welcome candidates with experience in Slurm or HPC and Ansible.We have different level opportunities in this growing team, so dont shy away if you dont have all the skills.You do need to be eligible for SC and DV Clearance.Hybrid Fixed: 3 days per week on our Portsmouth OR Salisbury site, 2 days home working.What you’ll be doing:
Oversee and enhance Linux platform capabilities.
Develop and maintain open-source and commercial tooling.
Provide expert 3rd line technical support, mentoring, and fault resolution for 1st/2nd line teams.
Act as a subject matter expert in Linux.
What we need from you:
Extensive experience in large-scale Linux platform engineering and automation.
Proficiency with Enterprise Linux OS (RedHat, CentOS, Oracle) to RHCE level.
Familiarity with DevOps and automation tools (Terraform, Git, Ansible, Vault).
Experience in building and securing Linux environments, including Kubernetes clusters (on-premise and cloud).
It would be great if you had:
Network technologies (LAN, WAN, Cisco switching, Juniper and Fortinet security products) and working knowledge of TCP/IP networking.
Database administration (MySQL, PostgreSQL, MariaDB or InfluxDB).
Virtualisation management experience - VMware, XenServer, OpenStack or Hyper-V.
Working knowledge of Openshift, Openstack.
Secure LINUX and IPTablesI
If you are interested in this role but not sure if your skills and experience are exactly what were looking for, please do apply, wed love to hear from you!Employment Type: Permanent Location: Hybrid Fixed: 3 days in Portsmouth OR Salisbury. Security Clearance Level: Eligible for SC and DV Clearance. Internal Recruiter: Jane Salary: To £Dependant on experience Benefits: 25 days annual leave with the choice to buy additional days, health cash plan, life assurance, pension, and generous flexible benefits fund.Loved reading about this job and want to know more about us??Sopra Sterias Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the clients goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UKs most complex safety- and security-critical markets.
Integration Developer
Shaw Daniels Solutions Ltd
Not Specified
Fully remote
Mid - Senior
Private salary
RECENTLY POSTED
fabric
javascript
dot-net
powershell
kanban
csharp
+7
RemoteAs a seasoned and flexible Integrations Developer, you will play a key role as part of a skilled and multi-disciplinary development team delivering innovative solutions as part of the DX Programme. You will be responsible for designing, developing and implementing solutions using the MS Integration Services & MS Power Platform suite including but not limited to Logic Apps, Service Bus, Event Grid, APIM, Functions & Function Apps, SQL Server, Azure SQL, Dataverse, D365 modules, 3rd-party APIs, Azure Synapse, Fabric and Key Vault. You will be helping design end-to-end solutions involving a variety of technologies, endpoints and integration patterns along with utilising your problem-solving skills to understand client pain points and troubleshoot as challenges arise.Overall Role Objectives
Design, develop, and implement successful custom integrations solutions using MS Integrations Services and Power Platform components to automate processes, streamline operations and extend functionality of core applications.
Build out an enterprise class data platform interfacing with a multitude of differing endpoints, technologies and data structures
Provide expert guidance on Azure integration component implementation, configuration and customisation to meet business requirements.
As part of Service Delivery, provide support to troubleshoot and resolve issues with data and application integrations and related environments.
Collaborate with stakeholders at all levels to gather requirements, analyse processes and recommend optimal solutions.
Stay up to date with the latest MS Azure, Power Platform and D365 features and best practices.
Fully participate in team planning and work with colleagues to continuously improve the team’s performance.
Tasks/Responsibilities Technical Excellence
Extensive experience in the Microsoft Azure Integrations Service technologies and components -
Developing robust, scalable, secure & efficient enterprise class integrations interfacing with a wide variety of in-house and 3rd-party applications and services.
Implement error logging, error trapping, and checkpoints.
Implement secrets and Key Vault stores for optimum security.
Deploy integrations via CI/CD pipelines in DevOps across multiple environments in a fully controlled and traceable process.
Maintain code and object repositories in DevOps.
Provide ongoing support and troubleshooting for deployed integrations.
Work as part of a collaborative, medium-sized multi-disciplinary team, excellent communication skills.
Able to work on own initiative when called upon.
Proficient in aiding with design and architecture discussions and decision making.
Proficient in reverse engineering existing integrations and processes to aid with transposing into new data platform.
Proficient in interpreting designs and patterns provided by other team members and approved 3rd parties into workable, scalable, reliable solutions.
Proficient in creating code, processes, JavaScript, T-SQL, formulas, C#, PowerShell and other scripts as required.
Proficient in manipulating and working with a range of data formats including JSON, XML, delimited text, Excel, etc.
Familiarity with .Net development, Microsoft tools and DevOps.
Responsible for the development of Azure Logic Apps, Azure Function Apps, workflows and other components as required.
Provide architecture, configuration, administration, and functional support to expand capabilities in Microsoft 365 (Dynamics 365 is a plus).
Assist in implementing best practice for information and document management.
Gather requirements, make recommendations and estimate effort to complete work.
Offering mentoring and support to less experienced members of the team.
Interpret and design database models (SQL Server, Azure DB etc).
Good foundational knowledge of Office 365 platforms, including Azure AD, and Azure ecosystem.
Working knowledge of medallion architecture and how it fits within a data platform.
Working knowledge of Log Analytics, KQL and how it fits within monitoring solutions.
Essential Knowledge, Skills & Experience Experience/Knowledge
Integrations development involving Azure Integrations, SQL Server / Azure SQL, APIs, Saas & PaaS systems
CI/CD
Experience in an Agile development life cycle (SCRUM, RAD, KANBAN) using Azure DevOps or similar
Working as part of medium sized development team (5+)
Desirable Knowledge, Skills & Experience Experience/Knowledge
Exposure to multi-platform integration (MS tools preferred).
On premise SQL environments, legacy SSIS, SSRS and other SQL-related technologies employed in complex ETL or ELT patterns
Synapse Link for Dataverse
Dataverse, Data Flows, Cloud Flows, DAX and Power Platform implementations
Synchronisation methods for Synapse and Fabric from D365
FTP / STFP configurations and services
Web services, SaaS and PaaS development
Developer
InfinityQuest Ltd,
Sheffield
Remote or hybrid
Mid - Senior
Private salary
RECENTLY POSTED
processing-js
terraform
kubernetes
java
vault
jwt
We are looking for a highly skilled Application Developer with strong expertise in identity API development, data ingestion and transformation, and event-driven (Pub/Sub) architectures. This role focuses on building secure, scalable identity and access workflows across Google Cloud Platform, integrating identity services with custom APIs, Pub/Sub pipelines, and cloud-native applications.You will collaborate closely with tech leads, Cloud Security, DevOps, and Application Engineering teams to design and implement robust IAM automation, identity lifecycle workflows, and secure service integrations that support enterprise-level cloud and Identity operations.Key Responsibilities
Identity Orchestration
Design and implement identity flows for provisioning, de-provisioning and orchestration of identity lifecycle events.
Integrate with Cloud Identity Services, ServiceNow, and internal services to streamline / orchestrate identity provisioning and identity lifecycle management.
Build policy-based orchestration workflows for adaptive authentication and context-aware access using industry standards (like OPA).
API Development
Design, build, and secure RESTful APIs and backend services supporting identity, provisioning, and governance workflows.
Integrate APIs with our new authentication service for token validation, user sessions, and application-level authorization.
Build and document internal SDKs, middleware, and shared libraries for consistent IAM logic across services.
Ensure API security, performance, reliability, resilience, and observability.
API-to-Pub/Sub Event Processing
Develop pipelines where API events publish to Pub/Sub for asynchronous workflows such as:
automated identity lifecycle tasks
access review event triggers
logging and audit forwarding
security anomaly detection
Build Cloud Functions, Cloud Run microservices, or containerized services to process Pub/Sub messages.Implement robust event-processing patterns including retries, idempotency, DLQs, and structured logging.
Automation & Infrastructure as Code
Build and maintain Terraform modules for IAM, API services, Pub/Subtopics, workloads, and permissions.
Automate deployment and validation of identity and access configurations via CI/CD pipelines.
Implement automated testing for IAM policies and API behaviour.
Support, Troubleshooting & Collaboration
Troubleshoot identity, access, and API workflow issues across distributed systems.
Provide technical guidance to engineering teams on secure API design, IAM best practices, and identity workflows.
Work with security teams during audits, compliance checks, and incident investigations.
Required Skills & ExperienceTechnical Expertise
Proven experience with modern identity orchestration platforms (Auth0 Actions, Okta Workflows, WorkOS, or SlashID)
Strong programming skills in Python, Go, Java, or Node.js for API and microservice development.
Experience designing and deploying cloud-native APIs (Cloud Run, Cloud Functions, GKE).
Deep understanding of event-driven architectures, Pub/Sub, message processing, and workflow automation.
Strong knowledge of OAuth2, OIDC, JWT, SAML, and identity federation patterns.
Proficiency in Terraform or equivalent IaC tools.
Experience using API gateways, reverse proxies, or service mesh technologies.
Soft Skills
Analytical thinker with strong debugging and root-cause analysis abilities.
Clear communication skills with the ability to collaborate across engineering, security, and operations teams.
Ownership mindset, with a security-first mentality and attention to detail.
Ability to work in an agile, fast-paced environment.
Nice-to-Have
Google Professional Cloud Security Engineer or Cloud Architect certification.
Experience with additional identity providers (Okta, Azure AD, Ping Identity).
Familiarity with Kubernetes (GKE RBAC + workload identity).
Experience using Secret Manager, Vault, or other secrets management tools.
Knowledge of compliance frameworks (SOC2, ISO 27001, PCI, HIPAA).
Education
Bachelors degree in computer science, Engineering, Information Security, or equivalent hands-on experience.
Mechanical Design Engineer
Bennett and Game
Haywards Heath
In office
Mid - Senior
£50,000
RECENTLY POSTED
vault
Design Engineer Job OverviewDue to continued growth, there is an exciting opportunity to join a well-established engineering team specialising in the design and manufacture of manufacturing machinery.The successful applicant will be involved in a wide range of activities within the engineering department and will report to the Lead Engineer. Responsibilities will include machinery design for customer projects, R&D initiatives, product development, and cost-saving improvements. The role may also involve equipment testing, occasionally in the presence of customers.You will be expected to take full ownership of design, development, and release of machines for manufacture, as well as the production of build manuals, user manuals, statutory documentation, and testing documentation.The engineering team currently includes a group of Mechanical Design Engineers and Control & Automation Engineers. The right candidate will be a strong team player with a sound understanding of engineering principles, technical drawings, and industry standards, combined with a proactive and committed approach.Design Engineer Job RequirementsWe are looking for a proactive, positive, and collaborative individual with both creativity and structure-someone who can bring innovative ideas while maintaining the discipline required to deliver high-quality outputs on time. Strong attention to detail and a ‘right first time’ attitude are essential.Key skills and attributes include:
SolidWorks competency
Experience with SolidWorks/EPDM Vault (advantageous)
Strong IT skills, including MS Office applications
Degree in Mechanical Engineering (or equivalent)
Good understanding of pneumatic control systems
Knowledge of ATEX and CE marking requirements (preferred)
Ideally 5+ years’ experience within the packaging machinery industry or a related sector
Design Engineer Salary & Benefits
Salary circa £45,000- £50,000 DOE
Location: West Sussex (close to a mainline train station for easy commuting)
Hours: 35 per week, with flexibility required on occasion
8% employer pension contribution
Annual performance-related bonus
Annual pay review
Company mobile phone & laptop
Optional private medical healthcare
Death-in-service benefit
Strong career progression opportunities
Bennett & Game Recruitment are acting as a Recruitment Agency in relation to this vacancy.Bennett and Game Recruitment are a multi-disciplined technical recruitment agency based in Chichester, West Sussex operating across the UK with specialist teams covering a range of industries.We are acting as a Recruitment Agency in relation to this vacancy, and in accordance with GDPR by applying you are granting us consent to process your data, contact you about the services we offer, and submit your CV for the role you have applied for.
Azure Cloud DevOps Engineer
McCabe & Barton
London
Hybrid
Mid - Senior
£120,000
RECENTLY POSTED
terraform
github
ansible
yaml
datadog
sql
+1
London | Hybrid: 3 days per week | PermanentSalary: Competitive with excellent bonus and benefitsAbout the RoleMcCabe & Barton are partnering with a leading financial services client in London who are seeking an Azure Cloud DevOps Engineer to join their talented team.You will manage and support Azure cloud platform operations with a focus on Infrastructure as Code, network operations, and identity management, ensuring platform reliability, security, and performance across Azure environments.Key Responsibilities
Manage and maintain Azure environments including Virtual Machines, Storage (Blob, Files, Disks), SQL Database, App Services, Functions, and container services (ACI, AKS).
Implement and optimise monitoring, cost management, and resource tagging strategies for platform performance.
Provision and manage infrastructure using Terraform, maintaining reusable modules, workflows, and version control (GitHub/ADO).
Configure and automate deployments using Ansible for Azure VMs and manage Azure-specific modules and inventories.
Design and maintain secure Azure network architectures (VNets, NSGs, Firewalls, VPN Gateway, ExpressRoute, VNet Peering).
Integrate and manage SASE and zero-trust frameworks including Azure Virtual WAN, CATO, Zscaler, and Palo Alto.
Administer Microsoft Entra ID (Azure AD), manage roles and access (RBAC, PIM), and ensure secure authentication (SAML/OAuth, MFA).
Support CI/CD pipelines via Azure DevOps or GitHub Actions, troubleshoot builds, and manage YAML configurations.
Implement observability best practices using Azure Monitor, Log Analytics, Application Insights, and dashboards (KQL and Datadog experience desirable).
Ensure compliance and security through Microsoft Defender for Cloud, Azure Policy, Key Vault, and accepted frameworks (ISO 27001, SOC 2, GDPR).
Conduct backup and disaster recovery operations using Azure Backup, Site Recovery, and geo-redundant storage for business continuity.
Collaborate effectively across DevOps, infrastructure, security, and development teams to manage incidents and drive continuous improvement.
Required Experience
Hands-on Azure administration experience with advanced platform operations knowledge.
Proficiency in Terraform and Ansible for automation and infrastructure management.
Deep technical understanding of networking, identity, and security within the Azure ecosystem.
Strong exposure to CI/CD, monitoring, and observability tools.
Experience supporting financial services or highly regulated environments is advantageous.
How to ApplyIf your experience aligns with the requirements above, please apply with an updated CV.
Azure Architect
HAYS
Birmingham
Hybrid
Mid - Senior
£550,000
RECENTLY POSTED
sql
vault
umbraco
We are seeking an experienced Azure Engineer / Architect to review and assess the cloud infrastructure supporting an Umbraco CMS Multisite installation. The role focuses on identifying improvements in security, performance, reliability, and cost efficiency.
£550 - £650 p/s depending on experience
Contract: Initially until the end of March with possible extension
Location: Mainly remote but you will need to be able to get to site as and when needed in Birmingham
Key Responsibilities
Review Azure resources including App Services, Azure SQL, Storage, CDN, Key Vault, and networking.
Assess CI/CD pipelines and deployment processes.
Evaluate security posture, access controls, backups, and disaster recovery.
Analyse performance, scaling configuration, and monitoring setup.
Identify cost-saving opportunities and unused or misconfigured resources.
Validate alignment with Umbraco hosting best practices.
Produce a clear report with findings and recommended actions.
What you need to do nowIf you’re interested in this role, click ‘apply now’ to forward an up-to-date copy of your CV, or call us now. If this job isn’t quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career.Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C’s, Privacy Policy and Disclaimers which can be found at hays.co.uk
Security Architect SAP, ServiceNow, SalesForce, Azure
Smart Sourcer Limited
North West London
Hybrid
Senior - Leader
£100,000
RECENTLY POSTED
salesforce
oauth2
vault
Were looking for an experienced Security Solutions Architect to lead security architecture across a major enterprise transformation programme. If you thrive in complex environments, enjoy shaping secure design across multiple platforms, and can influence senior stakeholders, this is a standout opportunity.Required Experience:
710 years in security architecture or security-focused solution architecture.
Strong experience securing enterprise platforms (SAP, ServiceNow, Salesforce, cloud, integration, data).
Deep knowledge of IAM, SSO, MFA, SAML, OAuth2, encryption, key management, zero-trust, network segmentation and secure API/event-driven design.
Proven ability to work with ISO 27001, NIST, CIS, GDPR and audit frameworks.
Excellent documentation, diagramming and threat-modelling skills.
Confident influencing architects, engineers and senior leaders.
SAP (ECC/S4): authorisation models, SoD, secure interfaces (IDoc/BAPI/OData/RFC), hybrid data flow protection.
ServiceNow: ACLs, roles, IntegrationHub, MID Server, CMDB protection, secure monitoring.
Salesforce: sharing model, permission sets, API security, OAuth2/OIDC, PII protection, encrypted fields.
Cloud & Integration: secure API design, zero-trust networking, Azure security (Managed Identity, Key Vault, Conditional Access, PIM/PAM), NSGs, firewalls, private endpoints, secure logging pipelines.
A willingness to work on client site (North London) 1-2 days per week (the rest remote)
What Youll Do:
Own the end-to-end security architecture for all solutions in the transformation programme.
Embed zero-trust, secure-by-design principles across SAP, ServiceNow, Salesforce, cloud, integration and data platforms.
Produce high-quality security artefacts: HLDs, threat models, design patterns, data flows, control mappings and impact assessments.
Lead security reviews at TDA/PDA, providing authoritative sign-off.
Ensure RBAC, SAML/OAuth2/OIDC, secure API patterns, encryption, PAM/PIM, logging and SIEM integration are consistently applied.
Drive compliance with ISO 27001, NCSC Cloud Security Principles, GDPR, CIS benchmarks and other frameworks.
Conduct risk assessments, maintain ADRs and support audit readiness.
£95k-£100k, 12-month Fixed Term Contract. London & 70% remote
Senior Privileged Access Management (PAM) Engineer, CyberArk
ARC IT Recruitment
London
Hybrid
Senior
£100,000
RECENTLY POSTED
aws
python
powershell
sentry
vault
City of London/Hybrid Circa £100K + bonus and benefitsSenior Privileged Access Management (PAM) Engineer with extensive CyberArk experience is required to join a prestigious financial services organisation based in the City of London. This is a high-impact role within a global, regulated environment where CyberArk is a critical, business-essential security platform. You will take enterprise-wide ownership of CyberArk with a strong focus on the CyberArk Identity Security Platform (cloud) and play a central role in protecting privileged access across complex hybrid environments. This position sits at the heart of the organisation’s security strategy with strong visibility across senior technology and risk leadership.The organisation offers a strong base salary, alongside a competitive bonus, an excellent benefits package and clear, long-term career progression within a global security and technology function.The RoleThis is a senior, hands-on CyberArk role where you will act as both the technical authority and operational owner. You will work closely with security, infrastructure, cloud and compliance teams to ensure CyberArk continues to operate as a robust, scalable and future-proof security control.Key Responsibilities
Act as the operational owner and subject matter expert for the CyberArk Identity Security Platform (cloud)
Own the design, implementation and ongoing optimisation of CyberArk across the enterprise
Manage day-to-day CyberArk operations, including credential vaulting, access policies, session management and monitoring
Lead troubleshooting and resolution of complex CyberArk-related technical issues
Partner with internal security, risk, compliance and infrastructure teams to meet regulatory and security requirements
Support and deliver migration initiatives from on-premise CyberArk PAS to the CyberArk ISP cloud platform
Maintain high-quality technical documentation, runbooks and operational procedures
Track CyberArk product enhancements and emerging identity security trends, feeding these into platform strategy
Experience and Skills Required
Five+ years’ experience working in Privileged Access Management
Extensive hands-on CyberArk experience, covering CyberArk Identity Security Platform (cloud) and/or CyberArk PAS
Deep technical understanding of CyberArk components including Vault, CPM, PVWA, PSM, PTA, AIM and cloud equivalents
Proven experience operating CyberArk in large, complex or highly regulated environments
Strong understanding of identity security, access controls and enterprise security architecture
Experience supporting or leading migrations to cloud-based PAM platforms
Exposure to AWS and/or Azure within hybrid infrastructures
Strong analytical and problem-solving capability, with a pragmatic and security-first mindset
CyberArk certifications (Defender, Sentry, Guardian) are highly desirable
Desirable Experience
Experience working with CyberArk Professional Services or certified CyberArk partners
Knowledge of financial services regulatory frameworks such as ISO 27001, NIST or GDPR
Scripting or automation skills using PowerShell and/or Python
For a full consultation on this pivotal role, send your CV to ARC IT Recruitment.
Snowflake Senior Developer
Resourgenix Ltd
Not Specified
Hybrid
Senior
£375 - £450
RECENTLY POSTED
snowflake
processing-js
kafka
python
airflow
sql
+4
Location: London (Hybrid) Employment Type: Full-time Seniority: Senior Individual Contributor Reports to: Data Engineering Lead / ManagerSummary of roleWe are seeking a Snowflake Senior Developer to design, develop, and optimise data solutions on our cloud data platform. You will work closely with data engineers, analysts, and architects to deliver high-quality, scalable data pipelines and models. Strong expertise in Snowflake, ETL/ELT, data modelling, and data warehousing is essential.Responsibilities
Snowflake Development: Build and optimise Snowflake objects (databases, schemas, tables, views, tasks, streams, resource monitors).
ETL/ELT Pipelines: Develop and maintain robust data pipelines using tools like dbt, Airflow, Azure Data Factory, or similar.
Data Modelling: Implement dimensional models (star/snowflake schemas), handle SCDs, and design efficient structures for analytics.
Performance Tuning: Optimise queries, manage clustering, caching, and warehouse sizing for cost and speed.
Data Quality: Implement testing frameworks (dbt tests, Great Expectations) and ensure data accuracy and freshness.
Security & Governance: Apply RBAC, masking policies, and comply with data governance standards.
Collaboration: Work with BI teams to ensure semantic alignment and support self-service analytics.
Documentation: Maintain clear technical documentation for pipelines, models, and processes.
Qualifications
Matric and a Degree in IT
Strong SQL skills (complex queries, performance tuning) and proficiency in Python for data processing.
Experience with ETL/ELT tools (dbt, Airflow, ADF, Informatica, Matillion).
Solid understanding of data warehousing concepts (Kimball, Data Vault, normalization).
Familiarity with cloud platforms (Azure preferred; AWS/GCP acceptable).
Knowledge of data governance, security, and compliance (GDPR).
Excellent problem-solving and communication skills.
Skills
Experience with Snowpark, UDFs, dynamic tables, and external tables.
Exposure to streaming/CDC (Kafka, Fivetran, Debezium).
BI tool integration (Power BI, Tableau, Looker).
Certifications: SnowPro Core or Advanced.
SC Technical Architect CGEMJP
Experis
Croydon
Hybrid
Senior
Private salary
RECENTLY POSTED
aws
prometheus
confluence
nginx
terraform
grafana
+9
Role Title: Technical ArchitectDuration: contract to run until 30/09/2026Location: Croydon, Remote with occasional need to be onsiteRate: up to 518.54 p/d Umbrella inside IR35Clearance required: Active SC Clearance is requiredRole purpose / summarySolution Architects are required for one of the largest AWS based developer platforms in the UK, which supports 100+ teams and runs multiple critical workloads. The work our architect’s take on is split into three key areas. Firstly, architects pick up new requirements from our teams, understand their needs, proposing options and getting the design governed and into delivery teams. Due to the scale of the platform, solutions often touch multiple areas and close working with other architects is essential to ensure ‘tribal knowledge’ is exploited. The second area is supporting teams with delivery and service. Inevitably delivery teams encounter problems in delivering against the roadmap or with incidents that need architect support to analyse and resolve. Lastly, architects work on longer term strategies or ad hoc pieces of work delegated by the Senior Management Team.Key Skills and ExperienceMandatory:
Strong understanding of core AWS services; VPCs, subnets, EC2, lambda, s3, route 53, VPC endpoints
Good understanding of networking - TCP/IP, DNS, routing, proxy patterns
Good understanding of containers and Kubernetes (does not require detailed Kubernetes knowledge, more the broad architecture)
Design documentation skills
Influencing, negotiating & pragmatism - getting designs through assurance processes
Problem solving and options analysis
Evidence based decision making
Excellent communication skills, ranging from getting a junior engineer’s input into a design to explaining a complex technical issue to a senior leader
Optional:Our architects work across a wide range of technologies and as such are expected to be able to quickly learn and adapt to unfamiliar tools. Whilst not essential, it is desirable architects have expertise in the following;
Elasticsearch Stack
Dynatrace Prometheus & Grafana
AWS EKS & KOPS
Hashicorp Consul/ Vault
VPNs - e.g. OpenVPN, Fortigate site to site VPNs
Atlassian tooling - e.g. Bitbucket, confluence, JIRA, Crowd
AWS Workspaces
LDAP
Redhat SSO & OIDC
Firewalling technologies - e.g. AWS Network Firewall, Fortigate
Proxy Servers - e.g. nginx, openresty, squid, fortiweb
DevOps - e.g. Terraform, Concourse, Sonarqube
Transit Gateway
All profiles will be reviewed against the required skills and experience. Due to the high number of applications we will only be able to respond to successful applicants in the first instance. We thank you for your interest and the time taken to apply!
Cloud Engineer
HAYS
Salisbury
In office
Mid - Senior
£60,000/day
RECENTLY POSTED
linux
windows
mongodb
itil
window-server
terraform
+8
Your new company Our client, Landmarc, is the leading Industry Partner for the Defence Infrastructure Organisation (DIO), managing and maintaining the Defence Training Estate (DTE). With a new 10-year contract (TESC) with DIO commencing from 2024, they are at the forefront of delivering exceptional services. Their Information and Technology Department is crucial in supporting our mission by delivering, supporting, and maintaining all user-facing IT services, enabling their team to excel in their roles. Your new role This is a cloud-focused infrastructure position where your primary responsibility will be supporting and enhancing the Microsoft Azure environment. You’ll play a key role in designing and deploying secure, resilient Azure infrastructure and services that underpin the organisation’s operations. Your day-to-day work will involve managing and administering a wide range of Azure resources, including compute, storage, networking, identity, and security services. You’ll also be responsible for automating infrastructure provisioning, using Infrastructure as Code tools such as Terraform or ARM templates, to ensure efficiency and consistency across deployments. Cloud services will be a crucial part of your role, as will enforcing security best practices and compliance standards to protect the business. You’ll take ownership of patch management, vulnerability remediation, and system hardening processes, ensuring that the cloud environment remains robust and secure. In addition, you’ll support the migration of workloads from on-premises infrastructure to Azure, helping the organisation take full advantage of cloud capabilities. Maintaining robust disaster recovery and backup strategies across all Azure environments will also be a key focus, ensuring business continuity at all times. Finally, you’ll be expected to stay up to date with the latest Azure innovations, proactively identifying and proposing opportunities for continuous improvement. Your expertise will help drive the evolution of the company’s cloud landscape, keeping it secure, scalable, and aligned with business needs. What you’ll need to succeed We’re looking for someone with a strong technical background and a genuine passion for cloud technology. To succeed in this role, you’ll need at least three years’ experience working in cloud environments, with a particular focus on Microsoft Azure. You should hold a Microsoft Certified: Azure Administrator Associate (AZ-104) qualification, as well as an ITIL v4 Foundation certification. Hands-on experience with a broad range of Azure services is essential. This includes working with Virtual Machines, Azure Storage, Networking, Active Directory, Key Vault, Security Center, Policy, and container services such as Kubernetes (AKS). You’ll also need to be comfortable scripting and automation, using tools like PowerShell or Bash to streamline processes and improve efficiency. A solid understanding of networking fundamentals, such as VPNs, DNS, firewalls, and load balancers-is important, as is knowledge of cloud identity, access control, and security features like RBAC, MFA, and conditional access. Familiarity with monitoring, logging, and alerting tools will help you keep the environment running smoothly. Experience with Microsoft operating systems and applications, including Windows Server (2016-2025), Windows 11, and Office 365, is also required.Strong analytical and problem-solving skills are a must, along with excellent documentation and communication abilities. You should be comfortable working independently as well as collaborating within a team. It would be an advantage if you have experience with Azure SQL, MongoDB, or Azure Sentinel, as well as knowledge of Linux administration and hybrid workloads. Familiarity with Azure DevOps or GitHub Actions pipelines would also be beneficial. You’ll bring a proactive, flexible, and results-oriented approach to your work, with the ability to prioritise effectively and meet tight deadlines. Your constructive attitude will help you interact positively with IT users across the business, drive high levels of customer satisfaction, and contribute to a culture of continuous improvement. A commitment to health and safety, along with the ability to build strong working relationships, is essential for success in this role. Additional Requirements Eligibility for BPSS & SC clearance (current SC clearance desirable) UK Driving Licence (desirable, for travel between sites) What you need to do now If you’re interested in this role, click ‘apply now’ to forward an up-to-date copy of your CV, or call us now. If this job isn’t quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C’s, Privacy Policy and Disclaimers which can be found at hays.co.uk TPBN1_UKTJ
Cloud Infrastructure Manager
Integral Recruitment Ltd
Epsom
In office
Senior - Leader
£70,000 - £80,000
RECENTLY POSTED
windows
aws
window-server
terraform
sql
vault
Epsom, Surrey, KT17 £70,000 - £80,000 plus a bonus, generous pension and lots moreWe are working with a highly respected financial services organisation, seeking an experienced Cloud Infrastructure Manager to lead the design, delivery and ongoing management of their cloud and hybrid infrastructure estate.This is a pivotal leadership role, combining hands-on technical expertise with people management and strategic planning. You will take ownership of the full cloud lifecycle across Azure, ensuring resilience, security, performance and cost-effectiveness, while developing and mentoring a high-performing infrastructure team.The Cloud Infrastructure Manager Role:You will be responsible for the planning, build, operation and lifecycle management of cloud infrastructure and related services, with a strong focus on Azure. Key responsibilities include:
Deployment, configuration and ongoing administration of Azure services
Ownership of Azure tenancy, security controls, DLP and MFA
Producing Low Level Design (LLD) documentation for new and evolving solutions
Migration of legacy on-premise systems to Azure
SQL infrastructure administration across on-prem and cloud environments
Capacity planning, disaster recovery and Azure Site Recovery testing
Storage lifecycle management (Blob, Files, SharePoint, OneDrive)
Backup strategy ownership (including monitoring, escalation, reporting and optimisation)
Infrastructure monitoring and integration with security and operational platforms
Maintaining CMDB accuracy and infrastructure diagrams
Supporting the Service Desk with complex incidents and escalations
Working closely with Solution Architects and Change Management to deliver secure, well-governed change
Managing transitional physical and virtual server and networking platforms
Producing operational and cost management information for senior stakeholders
Leading, mentoring and developing the infrastructure team, including performance management and objective setting
Establishing and maintaining technical standards, policies and procedures
Skills & Experience Required:Essential:
Proven experience in a regulated environment
Strong Azure administration background (certifications highly desirable)
Cloud networking, firewalls and security architecture
Microsoft 365 Enterprise (Exchange Online, SharePoint Online)
Windows Server administration
Azure Disaster Recovery and Business Continuity
VDI platforms (Azure Virtual Desktop, VMware ESX, Horizon)
Backup technologies (Veeam Backup & Replication, Azure, Microsoft 365, Data Cloud Vault)
Platform security, DLP and MFA
Infrastructure monitoring and alerting tools
Low-level cloud design and solution architecture
Excellent communication, stakeholder engagement and leadership skills
Demonstrable people management and team development experience
Proactive, detail-driven and solutions-focused mindset
Desirable:
Infrastructure as Code (Terraform, ARM, Azure DevOps)
Cloud security frameworks and policy definition
SQL Server administration
Working knowledge of AWS
Experience with Pluralsight skills and sandbox environments
Why Apply?This is a rare opportunity to step into a highly influential role where you will shape cloud strategy, modernise infrastructure and build a best-in-class cloud operations function. You ll work with cutting-edge Microsoft technologies, lead a talented technical team and play a key part in the organisation s digital transformation journey.If you are a technically strong Cloud Infrastructure Manager who enjoys balancing strategy, delivery and people leadership, this role offers genuine scope, challenge and progression.Integral Recruitment are acting as an employment agency in regard to this advertisement.
Senior Messaging Engineer - 3rd line - Exchange/Email Security
Coltech Recruitment
Not Specified
Hybrid
Senior
£200/day - £250/day
RECENTLY POSTED
itil
powershell
vault
Job Title: Senior Messaging Engineer - 3rd line - Exchange / Email Security Location: Hybrid - 2 days per week onsite in London or Leeds Salary/Rate: Up to 250/day INSIDE IR35 Start Date: ASAP Job Type: 9 month contract - very likely to extend Company: Financial Services/Banking clientWe are hiring for an SC Cleared Senior Messaging Engineer with strong third-line support experience, deep expertise in Exchange / email security, and the ability to design, improve, and stabilize complex messaging environments.Key Responsibilities
Implement, support, and enhance enterprise messaging and email security solutions
Provide third-line support for messaging-related incidents and escalations
Manage and improve Exchange Online and Exchange Hybrid environments
Support and administer secure email gateways and encryption technologies
Troubleshoot complex messaging issues and drive root-cause resolution
Lead and contribute to initiatives aimed at simplifying and modernising email estates
Mentor junior engineers and support first- and second-line teams
Produce clear technical and user documentation
Work across multiple workstreams, balancing competing priorities and deadlines
Essential Skills & Experience
Strong experience with Exchange Online and Exchange Hybrid
Proven background supporting secure enterprise messaging in complex environments
Hands-on experience with email security gateways and encryption technologies
Strong PowerShell scripting and automation skills
Excellent troubleshooting and problem-solving abilities
Strong written and verbal communication skills
Experience mentoring and knowledge-sharing with wider support teams
Desirable Experience
Experience with Mimecast and/or Clearswift
Knowledge of email DNS and authentication (SPF, DKIM, DMARC, MX records)
Experience with email encryption (PGP, TLS, PME)
Exposure to email journaling and archiving solutions (e.g. Enterprise Vault)
Experience migrating complex messaging environments to Exchange Online
Familiarity with Agile delivery and sprint-based working
Knowledge of ITIL processes (Incident, Problem, Change)
Apply now for immediate consideration
Messaging Engineer
VIQU IT Recruitment
Multiple locations
Hybrid
Mid - Senior
£400/day - £500/day
RECENTLY POSTED
powershell
vault
Messaging Engineer – 6-month contract – London/Remote – SC Cleared – Inside IR35My Customer is seeking an experienced Messaging Engineer to join a technically complex environment, supporting and evolving enterprise messaging services.The Messaging Engineer will play a key role in the support, enhancement and transformation of the organisation’s messaging estate. Working across Exchange Hybrid and Exchange Online, you will deliver change, maintain service stability, and ensure secure and reliable email services for the business.Skills & Experience required from the Messaging Engineer:
Active/recently lapsed SC Clearance
Strong experience with Microsoft Exchange (Hybrid/Online) – administration and delivering changes
Experience with Security Email Gateways (SEG’s) – supporting email encryption technologies
Experience managing highly secure messaging in a complex network environment
Solid PowerShell scripting capability
Experience with the following would be beneficial:
Secure Email Gateways (Mimecast and Clearswift)
MX Records and Email DNS Authentication (SPF, DKIM, DMARC)
Email encryption (PGP, TLS, and PME)
Cloud Fax Solution
Email Journal Archiving (Enterprise Vault)
Key Responsibilities of the Messaging Engineer:
Support, administer and deliver changes across Exchange Hybrid and Exchange Online environments
Manage and support secure enterprise messaging solutions, including email security gateways and encryption technologies
Troubleshoot complex messaging issues across a varied and highly secure estate
Handle multiple workstreams simultaneously, balancing changing priorities and tight deadlines
Produce clear, concise technical and user-facing documentation
Share knowledge and mentor first- and second-line teams to improve overall capability
Work closely with stakeholders to communicate progress, risks and technical concepts effectively
The Messaging Engineer is required onsite, 2 days per week or 40% of your time each Month in Central London.Apply now to speak with VIQU IT in confidence. Or reach out to Connor Smal via the VIQU IT website.Do you know someone great? We’ll thank you with up to £1,000 if your referral is successful (terms apply).For more exciting roles and opportunities like this, please follow us on LinkedIn @VIQU IT Recruitment.
Infrastructure Architect
Damia Group Ltd
Farnborough
In office
Mid - Senior
£85,000 - £92,000
RECENTLY POSTED
linux
windows
window-server
terraform
kubernetes
powershell
+1
Infrastructure Architect - up to £92,000 per annum base + benefits - Farnborough 4-5 days onsite**Security Clearance: This role requires the successful candidate to undergo and be eligible for UK Security Vetting at DV level. Clearance sponsorship will be provided where required. Due to the nature of the work, candidates should meet the relevant residency requirements. If applicable, Reserved Post nationality restrictions will be confirmed by the client. Damia is committed to inclusive recruitment and welcomes applicants from all backgrounds.The role is responsible for designing, building, securing, and operating cloud and virtualised infrastructure across public, private, and hybrid environments. You will support experimentation and delivery platforms, maintain secure-by-design capabilities, and ensure systems are stable, monitored, and compliant with security standards. The role involves incident response, infrastructure maintenance, and continuous improvement, working closely with technical teams and stakeholders while contributing to knowledge sharing and professional development.Key responsibilities:Deliver the build phase for the Joint Environment for Data-Centric Interoperability - eXperimentation (JEDI-X), overseeing the technical team. Cohere the utilisation of JEDI-X through the experimentation phase of Integrated by Design (IBD). Maintain, improve, and secure the organisations multi-classification, virtualised, collaboration and development environments. Work with IT infrastructure colleagues to improve the ‘Secure by Design’ capabilities, internally and across its projects. Provide Infrastructure support to the organisations public cloud SaaS offerings (Office 365) as well as project-based systems (public, private and hybrid clouds) in implementation and support lifecycles. Perform maintenance tasks on the infrastructure through change control. Assist with monitoring and management of the companies and project-based ticketing and alerting systems for new changes and security alerts. Triage monitoring alerts and perform appropriate action. Maintain monitoring components in line with infrastructure developments. Ensure all platforms are patched in line with provider recommendations and security policies. Quickly and accurately assess impact of incidents, initiate return to service and ensure follow up actions are completed. Identify trends and problems and plan changes to improve stability and performance. Maintain cutting edge knowledge and skills in the design and build of secure public, private, and hybrid cloud and network technologies. Develop personal knowledge through study/research toward vocational certifications in relevant technologies/vendors. Advise customers and project teams on infrastructure and support aspects. Cascade knowledge through knowledge articles for the team and wider organisation.Essentials Key skills:Windows Server 2016+ administration. VMware vSphere/vCenter/VCF.Azure/Microsoft 365 administration. Linux (CentOS/RedHat/Ubuntu). PowerShell. EUD provisioning (Autopilot), maintenance, patching and hardening.SSO - concepts and operation. Understanding of working in protectively marked environments.Desirable skills:Kubernetes administration e.g. VMware TKGI DevSec Ops Tooling Elastic Nessus Application Packaging HashiCorp Terraform HashiCorp Vault Experience working in Agile sprintsDamia Group Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept our Data Protection Policy which can be found on our website.Please note that no terminology in this advert is intended to discriminate on the grounds of a person’s gender, marital status, race, religion, colour, age, disability or sexual orientation. Every candidate will be assessed only in accordance with their merits, qualifications and ability to perform the duties of the job.Damia Group is acting as an Employment Business in relation to this vacancy and in accordance to Conduct Regulations 2003
Infrastructure Engineer - DV Cleared
CBSbutler Holdings Limited
Corsham
In office
Senior
£500/day - £530/day
RECENTLY POSTED
windows
window-server
vault
Rate: £530 a dayLocation: Corsham (5 days a week on site)Clearance: UKSV DV required.A global IT consultancy are seeking a DV Cleared Infrastructure Engineer to join their team as they bring digital transformation to the MoD.You will be an experienced and highly skilled Senior Infrastructure Support Engineer who will provide advanced support for critical infrastructure systems, ensuring high availability and security. This role requires proficiency with cutting-edge technologies and a strong focus on resolving complex issues efficiently. The position also includes participation in an on-call rota to provide 24/7 support for mission-critical systems.Key DutiesAdvanced Support and Troubleshooting:
Provide expert-level support for VMware Cloud Foundation, Tanzu, Dell VxRail, and Dell Data Domain solutions.
Troubleshoot and resolve issues related to key management systems such as Hashicorp Vault, Thales Hardware Security Module, and other key management technologies.
Manage and support privileged access management solutions using BeyondTrust and single sign-on systems like KeyCloak.
Have a good foundation of networking principles.
System Maintenance and Optimisation:
Administer and optimise Microsoft Windows-based technologies, including Windows Server 2022 and Hyper-V.
Perform proactive monitoring and maintenance to ensure system performance and reliability.
Implement and support disaster recovery and business continuity strategies
Collaboration and Documentation:
Work closely with cross-functional teams to resolve infrastructure issues and implement improvements.Maintain accurate and up-to-date documentation for all systems, processes, and configurations.
On-Call Support:
Participate in an on-call rota to provide out-of-hours support for critical systems and ensure rapid resolution of incidents.
Your skills and experience
Experience of working in Defence
Proven experience in a senior support role, managing complex IT environments.
Certifications in relevant technologies are highly desirable (e.g., VMware, Microsoft, Dell, or security certifications).
Strong problem-solving skills, attention to detail, and a commitment to delivering high-quality solutions.
Familiarity with Hyper-converged infrastructure.
Senior Data Engineer/ PowerBI
Head Resourcing
Glasgow
Hybrid
Senior
£60,000 - £80,000
RECENTLY POSTED
powerbi
processing-js
fabric
unity-3d
git
python
+4
Lead Data Engineer - Azure & Databricks Lakehouse Glasgow (3/4 days onsite) | Exclusive Role with a Leading UK Consumer Business A rapidly scaling UK consumer brand is undertaking a major data modernisation programme-moving away from legacy systems, manual Excel reporting and fragmented data sources into a fully automated Azure Enterprise Landing Zone + Databricks Lakehouse. They are building a modern data platform from the ground up using Lakeflow Declarative Pipelines, Unity Catalog, and Azure Data Factory, and this role sits right at the heart of that transformation. This is a rare opportunity to join early, influence architecture, and help define engineering standards, pipelines, curated layers and best practices that will support Operations, Finance, Sales, Logistics and Customer Care. If you want to build a best-in-class Lakehouse from scratch-this is the one. ? What You’ll Be Doing Lakehouse Engineering (Azure + Databricks) Engineer scalable ELT pipelines using Lakeflow Declarative Pipelines, PySpark, and Spark SQL across a full Medallion Architecture (Bronze ? Silver ? Gold). Implement ingestion patterns for files, APIs, SaaS platforms (e.g. subscription billing), SQL sources, SharePoint and SFTP using ADF + metadata-driven frameworks. Apply Lakeflow expectations for data quality, schema validation and operational reliability. Curated Data Layers & Modelling Build clean, conformed Silver/Gold models aligned to enterprise business domains (customers, subscriptions, deliveries, finance, credit, logistics, operations). Deliver star schemas, harmonisation logic, SCDs and business marts to power high-performance Power BI datasets. Apply governance, lineage and fine-grained permissions via Unity Catalog. Orchestration & Observability Design and optimise orchestration using Lakeflow Workflows and Azure Data Factory. Implement monitoring, alerting, SLAs/SLIs, runbooks and cost-optimisation across the platform. DevOps & Platform Engineering Build CI/CD pipelines in Azure DevOps for notebooks, Lakeflow pipelines, SQL models and ADF artefacts. Ensure secure, enterprise-grade platform operation across Dev ? Prod, using private endpoints, managed identities and Key Vault. Contribute to platform standards, design patterns, code reviews and future roadmap. Collaboration & Delivery Work closely with BI/Analytics teams to deliver curated datasets powering dashboards across the organisation. Influence architecture decisions and uplift engineering maturity within a growing data function. ? Tech Stack You’ll Work With Databricks: Lakeflow Declarative Pipelines, Workflows, Unity Catalog, SQL Warehouses Azure: ADLS Gen2, Data Factory, Key Vault, vNets & Private Endpoints Languages: PySpark, Spark SQL, Python, Git DevOps: Azure DevOps Repos, Pipelines, CI/CD Analytics: Power BI, Fabric ? What We’re Looking For Experience 5-8+ years of Data Engineering with 2-3+ years delivering production workloads on Azure + Databricks. Strong PySpark/Spark SQL and distributed data processing expertise. Proven Medallion/Lakehouse delivery experience using Delta Lake. Solid dimensional modelling (Kimball) including surrogate keys, SCD types 1/2, and merge strategies. Operational experience-SLAs, observability, idempotent pipelines, reprocessing, backfills. Mindset Strong grounding in secure Azure Landing Zone patterns. Comfort with Git, CI/CD, automated deployments and modern engineering standards. Clear communicator who can translate technical decisions into business outcomes. Nice to Have Databricks Certified Data Engineer Associate Streaming ingestion experience (Auto Loader, structured streaming, watermarking) Subscription/entitlement modelling experience Advanced Unity Catalog security (RLS, ABAC, PII governance) Terraform/Bicep for IaC Fabric Semantic Model / Direct Lake optimisation
Messaging Engineer
VIQU Ltd
Leeds
Hybrid
Mid - Senior
£400/day - £500/day
RECENTLY POSTED
powershell
vault
Messaging Engineer - 6-month contract - London/Remote - SC Cleared - Inside IR35My Customer is seeking an experienced Messaging Engineer to join a technically complex environment, supporting and evolving enterprise messaging services.The Messaging Engineer will play a key role in the support, enhancement and transformation of the organisation’s messaging estate. Working across Exchange Hybrid and Exchange Online, you will deliver change, maintain service stability, and ensure secure and reliable email services for the business.Skills & Experience required from the Messaging Engineer:
Active/recently lapsed SC Clearance
Strong experience with Microsoft Exchange (Hybrid/Online) - administration and delivering changes
Experience with Security Email Gateways (SEG’s) - supporting email encryption technologies
Experience managing highly secure messaging in a complex network environment
Solid PowerShell Scripting capability
Experience with the following would be beneficial:
Secure Email Gateways (Mimecast and Clearswift)
MX Records and Email DNS Authentication (SPF, DKIM, DMARC)
Email encryption (PGP, TLS, and PME)
Cloud Fax Solution
Email Journal Archiving (Enterprise Vault)
Key Responsibilities of the Messaging Engineer:
Support, administer and deliver changes across Exchange Hybrid and Exchange Online environments
Manage and support secure enterprise messaging solutions, including email security gateways and encryption technologies
Troubleshoot complex messaging issues across a varied and highly secure estate
Handle multiple workstreams simultaneously, balancing changing priorities and tight deadlines
Produce clear, concise technical and user-facing documentation
Share knowledge and mentor first- and second-line teams to improve overall capability
Work closely with stakeholders to communicate progress, risks and technical concepts effectively
The Messaging Engineer is required onsite, 2 days per week or 40% of your time each Month in Central London.Apply now to speak with VIQU IT in confidence. Or reach out to Connor Smal via the VIQU IT website.Do you know someone great? We’ll thank you with up to £1,000 if your referral is successful (terms apply).
Senior Cloud Infrastructure Engineer
Hargreaves Lansdown
Bristol
Hybrid
Senior
Private salary
RECENTLY POSTED
itil
terraform
github
kubernetes
vault
microsoft-azure
As we progress our digital transformation, we are scaling our Platform Engineering capability to build and operate our Internal Developer Platform (IDP) on Microsoft Azure. We are seeking a Cloud Infrastructure Engineer with a track record of delivering secure, reliable, and automated cloud platforms at enterprise scale. You will help design, build and run paved roads (golden paths) that enable product teams to ship quickly and safely, applying SRE and DevSecOps practices throughout the software delivery lifecycle.What you’ll be doing
Design, build and operate the Azure-based Internal Developer Platform as a product, enabling self-service environment provisioning and repeatable golden paths.
Develop and maintain Infrastructure as Code (Terraform and/or Bicep) modules and reusable templates for AKS, networking, storage, databases, and app runtimes.
Implement and evolve CI/CD pipelines (HL version control set) with quality gates, automated testing, security scanning, and progressive delivery.
Introduce and run GitOps for Kubernetes (AKS preferred), patterns and multi-environment promotions.
Own platform observability: metrics, logs and traces using Azure Monitor / Log Analytics / Application Insights, plus Datadog/Grafana where appropriate.
Embed security by design: Azure Policy, Defender for Cloud, secrets management with Key Vault, SBOM and image scanning, policy-as-code and least privilege IAM.
Drive reliability using SRE practices: define SLIs/SLOs, error budgets, capacity planning, chaos testing, incident response and blameless post-incident reviews.
Partner with application squads to remove toil, improve developer experience (DX), and reduce lead time for changes through automation and platform enhancements.
Implement cost visibility and optimisation (FinOps) across the platform: tagging, budgets/alerts, rightsizing, autoscaling and usage reporting.
Maintain platform documentation, runbooks and service catalog entries; contribute to onboarding guides and demo sessions for consumers of the platform.
Participate in an on-call rota for critical platform services and lead/coordinate incident response when required.
About you
Strong hands-on experience with Microsoft Azure core services (networking, compute, storage) and platform services (AKS, App Services, API Management, Event Hub/Service Bus).
Proficiency with Infrastructure as Code: Terraform (essential) and/or Bicep (optional); module design, versioning and testing.
Solid CI/CD background using Azure DevOps or GitHub Actions (pipelines, environments, approvals, templates), including build and release strategies.
Kubernetes experience in production (AKS): cluster operations, node pools, networking (CNI), ingress, secrets, RBAC and workload identity.
Experience with GitOps, and container build pipelines (e.g., ACR, OPA policies, image scanning).
Working knowledge of observability tooling (Azure Monitor, Log Analytics, Application Insights, Datadog/Grafana) and alerting/response workflows.
Understanding of the Microsoft Cloud Adoption Framework, Azure Landing Zones and the Well-Architected Framework.
Familiarity with DevSecOps practices: threat modelling, dependency and container scanning, SBOM management, and shift-left security.
Comfortable collaborating with software engineers and SREs; able to translate platform capabilities into simple self-service experiences.
Excellent communication, documentation and stakeholder management skills; able to lead by influence and mentor others.
Qualifications
Microsoft AZ-104 (Administrator) - Required, or equivalent experience.
AZ-400 (DevOps Engineer Expert), AZ-305 (Solutions Architect), CKA/CKAD, HashiCorp Terraform Associate - Desired, one or more.
ITIL 4 Foundation or SRE Foundation - Desired.
Willingness to provide occasional out-of-hours and on call support as required.
Desirable
Experience building IDP capabilities such as service catalogues (e.g., Backstage), developer portals, or golden path templates.
Serverless and event-driven architectures (Functions, Logic Apps, Event Grid).
Experience in regulated industries (e.g., Financial Services) and with compliance standards (ISO 27001, SOC 2).
Knowledge of FinOps principles and cost governance on Azure.
Interview process
Stage 1 (remote): competency and technical interview including discussion of prior platform/DevOps work and scenario-based problem solving.
Stage 2 (on-site/remote): practical exercise (e.g., pipeline/IaC/Kubernetes task) and a short design presentation to a panel.
Working scheduleThis role is permanent, full time, 37.5 hours per week, Monday to Friday. We offer a hybrid flexible working pattern to enable you the option of working from home and coming into the office.Why us?Here at HL, we’re the UK’s number 1 investment platform for private investors, based in Bristol. For more than 40 years we’ve helped investors save time, tax and money on their investments.To achieve our mission, we believe we have a workplace like no other, with constant learning, dynamic teams, and a great ethos. We’re steered by core values that promote service, quality, innovation, and opportunity in everything we do.What’s on offer?
Discretionary annual bonus* and annual pay review
25 days* holiday plus bank holidays and 1-day additional Christmas closure
Option to purchase an additional 5 days holiday**
Flexible working options available, including hybrid working
Enhanced parental leave
Pension scheme up to 11% employer contribution
Income Protection and Life insurance (4 x salary core level of cover)
Private medical insurance*
Health care cash plans - including optical, dental, and out patientcare
Health screening programme
Help@hand - confidential support including mental health counselling and remote GP
Wellhub - unlimited access to fitness providers and wellness coach sessions
Variety of travel to work schemes with bike storage and shower facilities
Inhouse barista and deli serving subsidised coffee and sandwiches
Two paid volunteering days per year
* dependant on role level** only available to select during our annual benefits window, in November each yearHargreaves Lansdown is an inclusive employer that values diversity in its workforce. We encourage applications from all individuals without regard to race, religion, gender, sexual orientation, national origin, disability or age.This role may also be available on a flexible working or part time basis - please ask the Recruitment & Onboarding team for more information.Please note, we are unable to provide employment sponsorship to candidates.
Application Developer
VANLOQ LIMITED
Sheffield
Hybrid
Mid - Senior
Private salary
processing-js
terraform
kubernetes
java
oauth2
vault
+1
Application Developer Identity & API Engineering (Contract) Location: Hybrid Sheffield Contract: Until end of year (Inside IR35) Sector: Financial ServicesWe are working with a leading financial services organisation who are looking to engage a highly skilled Application Developer to support the build-out of modern, cloud-native identity and access management (IAM) capabilities.This contract role is focused on developing secure identity APIs, event-driven workflows, and automation across Google Cloud Platform, supporting enterprise-scale identity lifecycle management and access orchestration.You will work closely with cloud security, DevOps, platform, and application engineering teams to deliver scalable, secure identity services in a fast-paced, regulated environment.Key Responsibilities
Design and implement identity lifecycle workflows covering provisioning, de-provisioning, and orchestration
Build secure, scalable RESTful APIs supporting identity, access, and governance use cases
Integrate APIs with authentication and token services using OAuth2, OIDC, JWT, and federation standards
Develop event-driven architectures using Pub/Sub to support asynchronous identity and access workflows
Build cloud-native services using Cloud Run, Cloud Functions, GKE, or containerised workloads
Implement Infrastructure as Code using Terraform for IAM, APIs, Pub/Sub topics, and permissions
Support CI/CD pipelines, automated testing, and validation of IAM policies and API behaviour
Troubleshoot identity, access, and API issues across distributed systems
Collaborate with security teams on audits, compliance, and incident investigations
Produce clear technical documentation and reusable components
Required Experience
Strong experience building identity-focused APIs and workflows
Hands-on experience with identity orchestration platforms (e.g. Auth0 Actions, Okta Workflows, WorkOS, SlashID)
Strong programming skills in Python, Go, Java, or Node.js
Solid understanding of event-driven architectures, Pub/Sub, and message processing patterns
Proven experience with cloud-native development on GCP
Good knowledge of Terraform or equivalent IaC tooling
Experience with API gateways, service mesh, or reverse proxies
Strong understanding of security-first design principles in enterprise environments
Nice to Have
Experience with additional identity providers (Okta, Azure AD, Ping Identity)
Exposure to Kubernetes (GKE, workload identity, RBAC)
Experience with secrets management tools (Vault, Secret Manager)
Familiarity with compliance frameworks such as SOC2, ISO 27001, or PCI
Why Apply?
Contract through to year-end with extension potential
Hybrid working from Sheffield
Inside IR35 engagement
Opportunity to work on large-scale identity and access platforms
High-impact role within a major financial services transformation programme
If you are an Application Developer with strong identity, API, and cloud experience looking for your next contract role, please apply or get in touch for more details.
Senior Platform Engineer
Connells Limited
Milton Keynes
In office
Senior
Private salary
terraform
github
git
kubernetes
powershell
docker
+3
We are looking for a Senior Platform Engineer to join our Group Technology team in Milton Keynes. You will be responsible for developing and maintaining components of the ConnellsX Platform. Your success is directly tied to enabling engineering teams to efficiently deploy, monitor, and scale their services on the platform. Your technical expertise and collaborative approach will drive both tactical implementations and contribute to strategic platform evolution.You will be a hands-on engineer with a customer-centric mindset, working directly with development teams to understand their needs and deliver solutions. You will work across multiple technical domains including orchestration, automation, CI/CD pipelines, cloud services, observability, and security, developing deeper expertise in areas that align with platform priorities and your interests. Experience with Microsoft Azure is essential.You will play your part in operating the platform aligned to our approach of you build it, you run it with multi-disciplinary teamsDaily coding is a core expectation of this role. You will implement platform features, automation tools, and infrastructure improvements while collaborating with team members to share knowledge and best practices. You will help establish Platform Engineering practices at Connells by mentoring colleagues and contributing to technical standards and documentation.The platform team operates with a focus on automation and efficiency, maintaining a lean structure where engineers contribute across multiple areas of expertise. You will work alongside specialists in site reliability, onboarding, architecture, and delivery teams, reporting to the Platform Lead to help build a robust platform that supports all of Connells’ digital initiatives.Experience and Skills Required:
Solid understanding of Terraform syntax, modules, and state management
Experience with Azure Terraform provider and common patterns
Familiarity with ARM templates and Azure resource management
Knowledge of core Azure services (Virtual Networks, VMs, Storage, App Services, etc.)
Understanding of Azure AD, RBAC, and Key Vault integration
Proficiency with Git workflows and version control best practices
Experience with PowerShell, Azure CLI, or Bash for automation tasks
Understanding of CI/CD pipeline concepts and tools (Azure DevOps, GitHub Actions, etc.
Containerisation experience with Docker and basic Kubernetes concepts
Understanding of cloud networking concepts (VNets, subnets, NSGs)
Awareness of cloud security best practices and compliance requirements
Basic knowledge of monitoring, logging, and observability tools
Understanding of cloud cost management and resource optimisation principles
Comfort with troubleshooting and supporting development teams
Understanding of service reliability and incident response practices
Connells Group UK is an equal opportunities employer and positively encourages applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, transgender status, religion or belief, marital status, or pregnancy and maternity.Dont meet every single requirement? Studies have shown that women and people of colour are less likely to apply to jobs unless they meet every single qualification. At Connells Group we are dedicated to building a diverse, inclusive and authentic workplace. So, if youre excited about this role but your experience doesnt fit perfectly with every aspect of the job description, we encourage you to apply anyway. You may be just the right candidate for this or other opportunities.
Page 1 of 2

Frequently asked questions

What types of Vault-related jobs can I find on Haystack?
You can find a variety of Vault-related jobs including Vault Engineer, DevOps Engineer with Vault expertise, Security Engineer focused on Vault, and System Administrator roles that require HashiCorp Vault skills.
What skills are commonly required for Vault jobs listed on Haystack?
Common skills include experience with HashiCorp Vault, secrets management, authentication methods, policy creation, CI/CD integration, cloud infrastructure knowledge, and familiarity with DevOps practices.
Can I filter Vault jobs by experience level on Haystack?
Yes, our platform allows you to filter Vault job listings by experience level such as entry-level, mid-level, and senior positions to help you find the best match for your career stage.
Are remote Vault job opportunities available on Haystack?
Absolutely. Haystack features both remote and on-site Vault job opportunities, allowing you to search based on location preferences including fully remote roles.
How can I apply for a Vault job through Haystack?
After finding a Vault job that matches your skills and preferences, you can apply directly through Haystack by submitting your resume and any required documents via our application portal.