IT and Cyber Manager
Role details
Job location
Tech stack
Job description
We are seeking an IT and Cyber Manager to lead the strategy, governance and operational excellence of Microsoft 365-centric IT infrastructure and cybersecurity programmes, while remaining hands-on with endpoint setup, IT asset control, and user support. This pivotal role will balance modern workplace scalability, Intune-managed device lifecycle, and secure collaboration with enterprise-grade security and compliance-ensuring high-performance, secure, and compliant operations across UK and European sites.
Acting as the lead architect and operator of secure workplace infrastructure, you will serve as the primary interface between internal operations, Microsoft 365 specialists, compliance stakeholders, and third-party providers. You will design hardened Microsoft 365 environments, personally configure and deploy laptops and mobile devices, automate endpoint management, lead incident response, and deliver measurable improvements in productivity, security posture, and asset visibility., * Microsoft 365 & Intune Infrastructure Ownership Full accountability for the design, performance, availability, and governance of Microsoft 365 tenant-including Exchange Online, SharePoint, Teams, OneDrive, Azure AD, and hybrid Freight Hub integrations. Lead Intune device management, compliance policies, app protection, and autopilot deployment for Windows, iOS, and Android endpoints.
- Hands-On Endpoint & Asset Management Personally provision, configure, and deploy company laptops, tablets, and mobiles via Intune Autopilot and manual setup. Maintain full IT asset register (hardware, software licenses, warranties). Conduct regular inventory audits, enforce asset tagging, and manage secure disposal/recycling processes.
- Endpoint & Identity Security Implement and manage Microsoft Defender for Endpoint, Defender for Office 365, Conditional Access, MFA, and Privileged Identity Management (PIM). Configure advanced threat protection, DLP policies, sensitivity labels, and secure email gateways. Lead vulnerability management and patch orchestration via Intune.
- Modern Workplace Operations & Automation Deploy Configuration-as-Code (Intune profiles, PowerShell, Graph API), automated user provisioning, and lifecycle management. Oversee monitoring (Microsoft 365 Admin Center, Intune reports, Defender portal), alerting, license optimisation, and collaboration workload performance.
- IT Resilience & Incident Response Design and test business continuity for Microsoft 365 services (geo-redundancy, data retention, backup with Veeam/3rd-party). Lead the Cyber Incident Response Team (CIRT); develop playbooks for identity compromise, ransomware, and phishing; conduct tabletop exercises.
- Compliance & Risk Management Own compliance with GDPR, UK Data Protection Act, NIS Regulations, Cyber Essentials Plus, and logistics standards via Microsoft Purview, Compliance Manager, and audit logs. Manage third-party risk, penetration testing, and regulatory reporting.
- Vendor & Partner Oversight Evaluate security and reliability of Microsoft CSPs, managed service providers, and SaaS integrations. Negotiate SLAs for support and security, enforce data processing agreements, and conduct regular architecture and threat reviews.
- Enablement & Security Culture Deliver training on Microsoft 365 secure usage, Intune self-service, and phishing awareness. Act as escalation point for identity, endpoint, and access issues. Champion secure-by-design and zero-trust principles across all teams.
Requirements
Do you have experience in iOS?, * 5+ years in senior IT infrastructure and workplace security roles within regulated or data-intensive environments.
- Microsoft 365 certifications such as MS-102, MD-102, SC-300, MS-500; hands-on experience managing enterprise Microsoft 365 and Intune environments.
- Hands-on expertise in endpoint deployment-Windows Autopilot, laptop imaging, Intune enrolment, hardware troubleshooting, and user onboarding/offboarding.
- Balanced expertise in Microsoft 365 services (Exchange, Teams, SharePoint, OneDrive) and Intune (device compliance, app deployment, MAM, conditional access).
- Proficiency in PowerShell/Graph API automation, Defender stack (Endpoint, Office 365, Identity), and monitoring (Microsoft 365 Defender portal, Intune analytics).
- Strong experience with IT asset lifecycle management, inventory tracking, and secure hardware disposal.
- Proven ability to manage Microsoft 365 licensing, cost optimisation, security/compliance reporting, and physical asset control.
- Vendor governance skills including SLA management, contract reviews, and partner risk assessments.
- Excellent communication-able to translate workplace, cyber, and asset risks into business impact for non-technical stakeholders., * Architect, secure, and hands-on manage the Microsoft 365 and Intune-powered workplace of a fast-growth, award-winning logistics innovator headquartered in Pontypool, Wales, with expanding operations in Poland and Lithuania.
Benefits & conditions
- Lead modern workplace transformation and enterprise security-from strategy to laptop setup-for platforms supporting thousands of daily transactions and real-time logistics data across the UK and Europe.
- Work with cutting-edge Microsoft tools: AI-driven threat detection in Defender, automated compliance, secure collaboration, and real-time endpoint intelligence.
- Competitive salary, bonus, pension and private medical plan
Job Types: Full-time, Permanent
Pay: £30,000.00-£45,000.00 per year