CYBER SECURITY TECHNICAL SPECIALIST
Role details
Job location
Tech stack
Job description
The Cyber Security Tech Specialist plays a key role in operating and enhancing Laing O'Rourke's Cyber Security technology ecosystem.
A core part of this role is the hands-on management and optimisation of critical security platforms, including Privileged Access Management (PAM), Application Control, and Data Loss Prevention (DLP),to ensure strong protection, positive end-user experience, and compliance with our security certifications.
Success in this role requires a strong understanding of security standards, risk management, and the ability to proactively identify, respond to, and mitigate threats.
What will you be doing?
- Threat Awareness and Continuous improvement
- Operational ownership of core cyber security platforms - PAM, Application Control, Endpoint Protection & Control (EDR)
- Supporting testing and validation of cyber security controls
- Support Disaster recovery and Business Continuity Requirements (BCP)
In this role, you will:
- Collaborate and share knowledge with Cyber and Infrastructure teams
- Update documentation for security libraries
- Support the implementation of security best practice and provide guidance
- Research, assess and recommend responses to new threats
- Participating in incident response, containment and recovery
Who will you work with?
You'll work alongside IT colleagues, delivery partners and business stakeholders who value collaboration, openness and thoughtful problem-solving. This is an environment where strong relationships, trust and clear communication are central to successful delivery.
Requirements
You will have the opportunity to influence not just what is delivered, but how it is delivered. Your leadership approach, judgement and ability to bring people together will make a visible difference.
You will probably recognise yourself in many of the following:
Someone who understands and looks to enhance knowledge of Cyber Security & Infrastructure knowledge. You don't settle for standard and support enhancing process development, building technical documents and guidelines. You will be able to respond to incidents and analyse threats for lessons learned. Keeping up to date with regulatory and standards procedures comes second nature to you.
Experience required
- Knowledge of best practices of IT security hardware and software, security suites, identity and access management, and encryption
- Experience in IT, with an operational and customer-facing role
- Experience in managing / supporting PAM solutions in enterprise environments
- Familiarity with identity and access management (IAM) principles, including role-based access control (RBAC) and least privilege
- Understanding of Application Control concepts, tools, and technologies (e.g., whitelisting, blacklisting, application allowlisting). Experience in configuring and managing Application Control solutions in enterprise environments preferred
- Understanding of security frameworks such as NIST or CIS Controls, or ISO 27001
- Formal industry recognised Cyber Security qualification such as ISC2 CISSP, ISC2 CISM or Certified Ethical Hacker (CEH) (desired).
- Security and Network technology experience