Amplity Health Logo

Amplity Health

Security & Infrastructure Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United Kingdom
Mid level
Remote
Hiring Remotely in United Kingdom
Mid level
Hands-on role to administer Microsoft identity, endpoint and cloud security (Entra ID, Intune, Defender, Azure). Responsibilities include EDR management, vulnerability triage, patching (including out-of-hours), incident support, compliance (ISO27001/SOC2), automation with PowerShell, and documentation to improve security posture and operational resilience.
The summary above was generated by AI

Join Amplity, the full-service go-to partner of biopharma companies that delivers flexible + specialized medical + commercial services. No matter where a drug is in its lifecycle, we scale with ease to maximize resources + improve impact for all our clients. Through strategic partnerships + deep therapeutic expertise, Amplity transforms how breakthrough treatments reach the people who need them.

Business Unit: Corporate - Information Technology

Reports to: Sr. Manager, Global Security & Infrastructure

Location: Home office based with a hybrid working arrangement. Employee must be within a commutable distance of our office in Chalfont St Peter, Buckinghamshire, with travel to the office required when necessary.

Mgmt Level: Individual Contributor

About the Role

We are seeking a hands-on Security & Infrastructure Engineer to support and improve our cloud, identity, endpoint and security operations capabilities.

This is not a pure SOC role. The successful candidate will work across Microsoft cloud security, endpoint management, vulnerability management, infrastructure support and compliance activities, helping to strengthen the organisation's security posture while ensuring core services remain secure, reliable and well managed.

This position includes occasional out-of-hours patch management and maintenance activities.


Key Responsibilities

Identity & Access Management
  • Administer Microsoft Entra ID, including users, groups, enterprise applications and identity-related configurations.
  • Support Conditional Access, MFA, SSO and identity security controls.
  • Assist with identity governance, access reviews, privileged access controls and user lifecycle processes.
  • Troubleshoot authentication, access and account-related issues across Microsoft cloud services.
Endpoint & Device Management
  • Administer Microsoft Intune and Mobile Device Management (MDM) policies across corporate devices.
  • Manage device compliance, configuration profiles, security baselines and application deployment.
  • Support endpoint lifecycle activities, including enrolment, configuration, troubleshooting and remediation.
  • Work closely with IT and security colleagues to improve endpoint hardening and operational consistency.
  • Perform server and endpoint patching, including out-of-hours maintenance where required.

Security Operations & EDR
  • Support the management and optimisation of Endpoint Detection and Response (EDR) platforms, including Microsoft Defender and similar technologies.
  • Investigate security alerts, validate findings and assist with incident response activities.
  • Contribute to improvements in monitoring, alert handling, endpoint protection and security control effectiveness.
  • Maintain clear documentation for operational processes and security procedures.
Vulnerability Management
  • Support vulnerability scanning, triage, prioritisation and remediation tracking.
  • Work with infrastructure, application and business stakeholders to drive timely remediation of security weaknesses.
  • Validate remediation actions and help maintain accurate vulnerability reporting.
  • Support external penetration testing activities and track remediation actions through to completion.
Cloud, Microsoft 365 & Infrastructure
  • Support Azure administration and cloud security improvement initiatives.
  • Assist with Microsoft 365 administration, security configuration and operational support.
  • Contribute to infrastructure projects covering endpoints, identity, networking, resilience and platform improvements.
  • Provide technical escalation support for security and infrastructure-related issues.
Governance, Risk & Compliance
  • Assist with ISO 27001, SOC 2 and similar audit and compliance activities.
  • Support evidence collection, access reviews, control validation and audit remediation actions.
  • Contribute to security standards, procedures, operational checklists and technical documentation.
  • Support vendor security reviews and third-party risk management activities where required.
Automation & Continuous Improvement
  • Use PowerShell and other scripting approaches to automate repeatable operational tasks.
  • Identify opportunities to simplify processes, improve control visibility and reduce manual effort.
  • Create and maintain technical documentation, runbooks and knowledge articles.
  • Support ongoing improvements in security maturity, operational resilience and service reliability.
Qualifications & ExperienceEssential
  • Previous experience in a Security Engineer, Infrastructure Engineer, Systems Administrator or similar technical role.
  • Strong working knowledge of Microsoft Entra ID and Microsoft 365 administration.
  • Hands-on experience with Microsoft Intune, MDM and endpoint management.
  • Experience working with EDR or endpoint security platforms.
  • Experience supporting vulnerability management processes and remediation tracking.
  • Good understanding of cloud, endpoint, identity and access management concepts.
  • Ability to troubleshoot technical issues across security and infrastructure environments.
  • Strong communication skills and the ability to work effectively with both technical and non-technical stakeholders.
  • Strong documentation skills and a practical, process-driven approach to operational improvement.
Desirable
  • Azure administration or cloud security experience.
  • Networking knowledge, including firewalls, VPNs, DNS, routing and secure remote access.
  • PowerShell scripting or automation experience.
  • Exposure to ISO 27001, SOC 2, Cyber Essentials, NIST or similar security frameworks.
  • Penetration testing, vulnerability assessment or remediation experience.
  • Experience supporting audits, evidence collection, access reviews or security questionnaires.
  • Relevant certifications such as Security+, AZ-104, SC-300, SC-200, MD-102, CISSP Associate or similar.

About Us

Amplity powers biopharma innovation through expert-led teams that deliver. Whether you knew us in the 80’s as Physician Detailing Inc., or in the 00’s as part of Publicis Health , the companies that came together in 2019 to form Amplity have delivered contract medical, commercial + communications excellence for 40+ years.

Our people-driven, tech-enabled DNA fuels everything we do. Our professionals understand the pharmaceutical industry from the inside out. With a deep grasp on product lifecycles, marketing hurdles, operational nuances + the complex needs of providers and patients, we help our clients launch products + operate smoothly with precision — across all business shapes, sizes + specialties.

We are on a mission to improve patient outcomes through executional excellence — enabling our partners in pharma to thrive in turn. At Amplity, we are allies in excellence. And we do it quicker, better, nicer than anyone else.

Our Diversity Policy

We encourage and support equal employment opportunities for all associates and applicants for employment without regard to sex, race, color, religion, national origin, age, disability, marital status, sexual orientation or veteran status. Employment decisions are evaluated on the basis of an individual's skills, knowledge, abilities, job performance and other qualifications. In addition, Amplity Health maintains policies and procedures designed to comply with applicable federal, state and local laws governing non-discrimination in employment in every location in which Amplity Health has facilities.

Similar Jobs

20 Days Ago
Easy Apply
Remote
United Kingdom
Easy Apply
Expert/Leader
Expert/Leader
Cloud • Security • Software • Cybersecurity • Automation
The Staff Infrastructure Security Engineer will lead security initiatives, set architectural patterns, conduct security reviews, and mentor engineers while ensuring security in cloud infrastructures for GitLab.
Top Skills: AnsibleAWSAzureCloudFormationGCPGoKubernetesPythonRubyTerraform
35 Minutes Ago
In-Office or Remote
Senior level
Senior level
Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
The Senior Solutions Engineer II will lead technical solutions for Capital Markets, working with Business Development and clients to design and implement scalable solutions, provide market feedback, and support integrations.
Top Skills: APIsBlockchainDatabasesFintechSaaSWeb3
9 Hours Ago
Remote or Hybrid
Senior level
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Lead strategic sourcing and procurement across the organisation: develop category strategies, manage supplier relationships and contracts, drive cost savings and risk mitigation, ensure governance and compliance (UK), champion sustainability/ESG and digital procurement, and lead and mentor procurement teams while partnering with senior stakeholders.
Top Skills: AribaJaggaerOracleSAP

What you need to know about the Belfast Tech Scene

If asked to name the birthplace of the RMS Titanic, you might not say Belfast. Similarly, if asked to name Europe's leading destination for foreign direct investment in new software development, Belfast might not come to mind. Yet, both are true. The city has emerged as a tech powerhouse, recently ranked among the best in the U.K. for tech careers — especially for software developers. It also leads the U.K. with the highest percentage of software development jobs advertised.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account