Security Engineer
Role details
Job location
Tech stack
Job description
Our client is seeking an experienced Security Engineer with strong, hands-on expertise across the Microsoft security technology stack. This role will be central to enhancing and maintaining our client's enterprise security posture, owning core SecOps activity, and supporting incident response, identity security, data protection, and endpoint security across the organisation.
The successful candidate will bring deep practical knowledge of Microsoft security tools-spanning Entra, Defender XDR, Purview, Intune, and Sentinel-combined with the confidence to lead security cadence sessions, collaborate closely with SOC and Infrastructure teams, and drive the execution of the security strategy. Responsibilities:
- Own and manage core Microsoft security technologies, ensuring optimal configuration, monitoring, and continual improvement.
- Lead security operations activity, including cyber incident response, breach analysis, and initial forensic investigations.
- Partner closely with the SOC to triage alerts, conduct investigations, and enhance response playbooks.
- Chair and drive recurring security cadence sessions, stand-ups, and operational reviews.
- Support the delivery of the organisation's broader security roadmap and uplift in security maturity.
- Collaborate with Infrastructure and Operations teams to embed secure-by-design principles.
- Produce and maintain security documentation, runbooks, and incident artefacts.
- Communicate security risks, control effectiveness, and incident impacts to stakeholders.
Requirements
- Microsoft Entra (Azure AD): Identity governance, conditional access, MFA, and risk-based authentication.
- Microsoft Defender XDR: Experience across Defender for Endpoint, Office 365, Identity, and Cloud Apps.
- Microsoft Sentinel: Solid understanding of SIEM capabilities and analytic rules.
- Microsoft Purview & Priva: Data governance, DLP, information protection, and privacy compliance.
- Microsoft Intune: Endpoint security, device compliance, and configuration policies.
Security Operations & Incident Response
- Strong experience in cyber and data breach incident response, including forensic investigation.
- Ability to analyse alerts, determine root causes, and recommend remediation.
- Experience working with SOC teams to address escalated security events.
Soft Skills & Leadership
- Excellent communication skills with the ability to lead meetings and engage senior stakeholders.
- Ability to take ownership of and lead the SecOps function.
- Strong interpersonal skills and ability to influence cross-functional teams.
- Ability to present technical details in clear, business-focused language., * Experience as a Security Engineer or SecOps specialist with expertise across Microsoft security technologies.
- Undergraduate degree in Computer Science, Cyber Security, Information Systems, or equivalent experience.
- Certifications such as AZ-500, SC-200/300/400, or equivalent (beneficial).