1,434,848open jobs
83,826companies
217,404added this week
Browse all
Salary
≈ $50k – $100k per year (Estimated)
Location
Hybrid (Kielce, Kraków, Wrocław, Poland)
Employment
Contractor

First seen by Alion on Oct 7, 2026.

Overview
Company
Impact
Profile match
VirtusLab is a software engineering and consulting company headquartered in Poland that works with clients internationally. It provides custom software development and technology consulting services with a focus on areas such as cloud computing, data platforms, and developer tooling.

VirtusLab is a leading European software consulting and engineering company. Our mission is to craft clean code and practical solutions with precision and purpose. We foster a dynamic culture rooted in strong engineering, a sense of ownership, and transparency, empowering professionals to make a substantial impact in the software industry.

About the Engagement

Shape the future of a rapidly scaling UK insurance leader. The scope of cooperation encompasses supporting security operations within a modern security stack and streamlining integration capabilities to unify a high-growth MGA and brokerage ecosystem. Core deliverables include contributing to incident response operations, managing AV/EDR mechanisms, developing and updating security policy frameworks, optimizing SIEM operations, and driving IAM hardening initiative.

Project

Enterprise Security E2E

Project Scope

Establishing a modern, enterprise-grade security function for one of the UK’s fastest-growing Managing General Agents and brokerage groups. The end-client operates across three continents with entities spanning the UK, Europe, and Asia-Pacific, expanding dynamically through M&A operations.

The scope focuses on hardening a complex hybrid Microsoft environment, unifying fragmented security tooling across a multi-entity ecosystem, and driving a consistent, governed, and resilient security baseline across the entire Group.

Legacy, reactive security practices are being replaced with a Zero Trust architecture – deploying Microsoft’s full security stack across identity, endpoints, cloud apps, data, and network. The project aims at strengthening detection and response capabilities to protect a high-growth insurance business operating under Lloyd’s, UK GDPR, and MAS regulatory frameworks.

Tech Stack

Microsoft Entra ID, Microsoft Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Defender for Office 365, Microsoft Sentinel, Microsoft Purview, Intune, Conditional Access, Azure, Microsoft Zero Trust framework, Terraform.

Key Deliverables & Challenges

The primary objective is hardening the Group’s security posture across a multi-entity structure and building operational capabilities to detect, respond to, and recover from security events. Main areas of engagement:

  • Deploying and Optimizing Microsoft Defender XDR: Onboarding entities to Defender for Endpoint, Defender for Identity, and Defender for Cloud Apps, alongside integrating operational signals into Microsoft Sentinel as the central SIEM/SOAR platform.

  • Identity and Access Hardening: Implementing Zero Trust identity controls including phishing-resistant MFA, Privileged Identity Management (PIM), Conditional Access policies, and Active Directory security hardening across hybrid on-premises and Entra ID environments.

  • Security Operations & Incident Response: Co-operating with external MDR providers to optimize operational response workflows.

  • Security Policy Standardization: Developing, documenting, and monitoring compliance with security baselines, configuration standards, and control frameworks across all Group entities worldwide.

  • Cloud and SaaS Security Governance: Securing M365, Azure, and the broader SaaS ecosystem through Purview data classification, DLP policies, MDCA session controls, and continuous posture management.

  • M&A Security Integration: Execution of a repeatable security onboarding framework for newly acquired entities during continuous business expansion.

Project Environment

The engagement takes place within a lean, agile project environment delivering complete security stack coverage across DevOps, Infrastructure Engineering, Security Engineering, and Business Analysis domains, requiring close cross-functional alignment with business stakeholders to facilitate effective knowledge transfer and strict integration with strategic goals.

Required Technical Expertise & Capabilities

  • 5+ years of track record in Cloud/SaaS Infrastructure Security consulting or engineering engagements.

  • Hands-on expertise with Microsoft Security Stack including Entra ID, Microsoft Defender, Intune, Network Security, and Cloud Security.

  • Proficiency in security practices: incident response, security analysis, and posture hardening.

  • Demonstrated experience in securing and maintaining Microsoft Stack services.

  • Experience with insurance infrastructure ecosystems is a plus.

  • Formal background in Computer Science, STEM, or equivalent practical industry expertise.

  • English communication skills at B2+ level or higher.

  • Familiarity with security standards and compliance frameworks such as ISO 27001 / SOC-2 is advantageous.

A few perks of being with us

  • Building tech community

  • Flexible hybrid work model

  • Home office reimbursement

  • Language lessons

  • MyBenefit points

  • Private healthcare

  • Training Package

  • Virtusity / in-house training

Access to the above perks is optional and completely voluntary for B2B contractors

Tech stack

  • Cloud
  • SaaS
  • Entra ID
  • Microsoft Defencder
  • Intune
  • Network Security
  • Microsoft
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,434,848 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Kielce
$126k – $154k per year • Hybrid • Freelance • 5+ years exp • Blagnac
Apply
$131k – $136k per year • In office • Full-Time • 3+ years exp • PhD • New York
DevOps
GCP
Azure
AWS
IAM
Windows
VPN
Cybersecurity
ISO 27001
DLP
Apply
≈ $72k – $169k per year (Estimated) • In office • Full-Time • Munich
DevOps
GCP
Azure
AWS
Cybersecurity
ISO 27001
GDPR
OWASP
Apply
≈ $51k – $116k per year (Estimated) • In office • Bergschenhoek
Management
Service Desk
Apply
≈ $48k – $112k per year (Estimated) • In office • Full-Time • France
Apply
≈ $47k – $93k per year (Estimated) • Remote (Poland) • Full-Time • Kielce
DevOps
Splunk
Linux
Windows
TCP/IP
DNS
Cybersecurity
IBM QRadar
SIEM
Apply
$61k – $77k per year • In office • Contractor • Warsaw • Gdańsk • Kielce • Poznań • Wrocław
SQL
DevOps
Rest API
Management
UML
BPMN
Apply
≈ $65k – $94k per year (Estimated) • Remote (likely Poland) • Full-Time • Łódź • Białystok • Poznań • Wrocław • Kielce
SQL
Databases
PostgreSQL
Apply
Business Analyst 4 days ago
≈ $35k – $75k per year (Estimated) • Remote (likely Poland) • Full-Time • Łódź • Poznań • Wrocław • Białystok • Kielce
Management
Confluence
Jira
ITIL
ITSM
Apply
≈ $21k – $54k per year (Estimated) • In office • Part-Time • Kielce
Apply
See all jobs
This is one of many
1,434,848 more open roles from verified company boards, updated every day.