Part Time
240
15
Jun 12, 2026
IT Administrator – Corporate IT
ISO 27001 Aligned (Within PCI DSS Certified Organisation)
Role Summary
This role is responsible for the ongoing maintenance, monitoring, and operational support of Corporate IT systems within an ISO 27001 certified environment.
The organisation is PCI DSS certified; however, this role does not have direct PCI DSS operational responsibilities.
The focus is on maintaining security controls, supporting audit readiness, and ensuring a secure, stable, and compliant Corporate IT environment.
Days: Monday-Friday
Time: 10am-1pm GMT Timezone
Assets: Hardware will be provided
Scope: Corporate IT systems only
Out of Scope: Production environments, PCI scoped systems
Core Responsibilities
Security Monitoring and Continuous Oversight
Monitor Microsoft 365 security alerts and identity risk detections
Review authentication anomalies including failed logins and impossible travel
Monitor MDM and EDR alerts and take remediation action
Ensure logging and audit trails remain enabled and retained
Perform daily review of security alerts and signals [PCI-DSS-v4...1-SAQ-A-EP | Word]
Identity and Access Management
Manage user lifecycle processes (Joiner, Mover, Leaver)
Perform periodic access reviews and access recertification
Monitor privileged access and administrative roles
Enforce MFA across all corporate systems
Investigate suspicious or unauthorised access activity
I
Act as first responder for Corporate IT security i
Preserve logs and technical evidence
Support containment, remediation, and recovery actions
Ensure all i
Vulnerability and Patch Oversight
Monitor vulnerability alerts and endpoint security tools
Track patch status across corporate devices
Escalate high and critical vulnerabilities
Support remediation tracking and closure
Asset Inventory and Configuration Management
Maintain accurate inventory of:
Corporate devices
Assigned users
SaaS licences
Track OS versions, patch levels, and ownership
Ensure configurations align with approved baselines [PCI-DSS-v4...1-SAQ-A-EP | Word]
Backup and Data Protection Support
Ensure OneDrive and SharePoint retention policies remain active
Support data recovery requests
Maintain backup and recovery documentation
Support secure handling of corporate data
Audit and Compliance Support
Maintain documentation and operational evidence for ISO 27001
Support internal audits and external certification audits
Ensure records are accurate, current, and audit ready
Support remediation of audit findings and corrective actions
Daily Operational Security Activities
Typical daily workload includes:
Reviewing identity and access changes
Checking authentication anomalies and alerts
Monitoring endpoint and vulnerability updates
Confirming logging systems are operational
Escalating high risk findings where required
Experience and Qualifications
Required Experience
2+ years experience in IT administration or security-focused IT support
Hands-on experience with Microsoft 365 (Entra ID, Exchange, SharePoint, Teams)
Experience with endpoint management (MDM, device compliance, EDR)
Practical experience in identity and access management
Experience monitoring alerts, logs, and supporting i
Experience maintaining documentation and audit records
Preferred Experience
Experience working in an ISO 27001 aligned or certified environment
Experience supporting audits and maintaining audit evidence
Familiarity with Annex A controls and risk-based security approaches
Experience with conditional access or Zero Trust models
Experience working in a structured ISMS environment
Qualifications
Degree or diploma in IT, Cybersecurity, or related field (or equivalent experience)
Relevant certifications (desirable):
Microsoft 365 or Azure fundamentals
CompTIA Security+ or equivalent
ISO 27001 Foundation or awareness level
Skills and Competencies
Strong understanding of information security principles
Good knowledge of identity security and access control
Ability to monitor systems and respond to security issues
Strong attention to detail, particularly in audit and documentation
Ability to work within structured processes and controls
Clear and professional communication
Ability to work independently in a controlled environment
Compliance Context
Operates within an ISO 27001 certified ISMS
Supports ongoing compliance and audit readiness
Works within a wider organisation that is PCI DSS certified, with no direct ownership of PCI controlled environments
Key Outcome
Corporate IT systems remain secure, stable, and compliant
Daily Reporting
Security controls are maintained and evidenced
Risks and i
The organisation remains continuously audit ready