Senior Engineer (Cyber Security)
Role details
Job location
Tech stack
Job description
We are seeking a Senior Engineer to join our Cyber Security team, playing a key role in strengthening the council's technical defences. The post holder will support core functions including endpoint security, vulnerability management, IAM, incident response, network security, and secure development practices. This role directly contributes to protecting the council's systems, data, and digital services.
The successful candidate
You will help deliver and improve technical security controls across the organisation, working closely with IT and development teams to ensure threats are identified and addressed effectively. Responsibilities include managing endpoint protection, conducting vulnerability assessments, triaging security alerts, supporting secure SDLC practices, and configuring NGFW policies and rule sets.
You will bring strong technical knowledge and hands-on experience with:
- Enhancing and operating core security capabilities including SIEM/SOAR, XDR, security monitoring, and threat detection tooling.
- Help optimise our Identity and Access Management Strategy, including least privilege design, MFA/SSO, PIM/PAM and identity governance across cloud and on prem environments.
- Perform regular vulnerability scans and assessments across all systems. Prioritise and remediate vulnerabilities in collaboration with IT and development teams.
- Supporting Security Incident Response activities, including triage, investigation, containment, and recovery.
- Monitor and protect the organisation's network infrastructure. Implement and manage network security measures, including Next Generation Firewalls (NGFW), VPNs, intrusion detection/prevention systems and proxy and web filtering technologies. Conduct network security assessments and penetration tests.
- Integrate security best practices into the software development lifecycles. Conduct security reviews and assessments of applications and code. Collaborate with development teams to ensure secure coding practices and design.
Requirements
2+ years in a Cyber Security Engineer, Analyst, or similar hands-on security role
Strong understanding of networking fundamentals (TCP/IP), systems administration, and core security principles
Cloud security (Microsoft 365, Azure, AWS)
Strong technical exposure to security tooling: SIEM/SOAR, EDR/XDR, vulnerability scanners, patch management, CASB, DLP, PIM/PAM.
Desirable
Knowledge of frameworks such as CAF, Cyber Essentials, ISO27001, PCI DSS, and CIS.
Knowledge and experience working with SDLC practices.
Experience in a large, complex environment and line management experience are also desirable.
A degree in computer science, information security or a related field, and certifications such as CompTIA Security+, CISSP, CISM, CEH, GIAC, or Microsoft Security certifications would strengthen your application.