> Markdown version of [/jobs/ext/1350587-cyber-security-engineer](https://www.wearedevelopers.com/jobs/ext/1350587-cyber-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Engineer - **Company:** DCV Technologies Limited - **Location:** Tring, UK - **Salary:** £65,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Azure, Business Systems, Cloud Computing Security, Cyber Security, Linux, Disaster Recovery, VMware ESX Servers, Networking Hardware, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Linux Servers, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Cloud Services, Kusto Query Language, Runbook, Security Information and Event Management, VMware Infrastructure, Virtual Local Area Networks, VMware VSphere, Software Vulnerability Management, Data Logging, Cybercrime, Microsoft Sentinel, Hardware Infrastructure, Firewall Services Module, Vulnerability Analysis, Vmware - **Published:** July 20, 2026 - **Apply:** https://www.totaljobs.com/job/cyber-security-engineer/dcv-technologies-limited-job107717758 ## About the Role ·Demonstrable experience in a cyber security engineering / infrastructure security role within a hybrid environment. ·Hands-on knowledge of Azure security fundamentals (identity, networking, logging/monitoring, governance). ·Practical understanding of VMware vSphere (vCenter/ESXi) and on-prem infrastructure fundamentals. ·Networking security fundamentals: segmentation (VLANs), firewall policy management, VPN concepts, and logging/visibility. ·Experience supporting security monitoring and incident handling processes, working with operational IT teams. ·Experience supporting DR testing and recovery activities (planning support, execution support, documentation). What We're Looking For (Must-have) ·Strong technical troubleshooting and methodical approach to investigations. ·Ability to communicate clearly with both technical and non-technical stakeholders. ·Good documentation discipline (runbooks, diagrams, test evidence). ·Ability to prioritise and manage multiple tasks in a busy operational environment. ·Ownership mindset-drives actions through to completion and follows up on remediation. Nice-to-have ·Experience with Sophos Central / Sophos MDR operations (coverage management, escalation handling, policy tuning). ·Familiarity with Microsoft Defender suite and/or Microsoft Sentinel. ·Scripting/automation skills (PowerShell, KQL, Python). ·Knowledge of ransomware recovery patterns (immutable backups, restore validation, offline documentation). ·Exposure to audit/compliance requirements (ISO 27001, NIST, CIS) and evidence collection. Technical Skills ·Cloud: Azure security controls, Entra ID (Azure AD), Conditional Access, RBAC, Azure Policy, secure logging/monitoring. ·On-prem: VMware vSphere (vCenter/ESXi), Windows/Linux hardening, patching and vulnerability remediation workflows. ·Networking: Cisco Meraki administration concepts (MX/MS/MR), firewall rules, VLAN segmentation, VPN, secure admin access, logging/alerting. ·Security Ops: Alert triage, incident response support, evidence capture, runbooks/playbooks, root cause analysis. ·Resilience: DR testing support, Dell RecoverPoint familiarity, recovery runbooks, RTO/RPO awareness. Certifications ·Certified Cloud Security Professional (CCSP) ·Microsoft: AZ-500, SC-200, SC-300 ·CompTIA: Security+, CySA+ ·Cisco/Meraki or VMware certifications ·Vendor tooling certifications (Sophos/Microsoft) Soft Skills ·Collaborative and service-oriented; works effectively with Infrastructure, Network, Service Desk and Application teams. ·Calm under pressure during incidents and recovery tests. ·Strong attention to detail with a practical, risk-based mindset. ·Continuous improvement mentality-learns, adapts, and raises the bar on controls and processes. Why This Role Matters This role strengthens the organisation's ability to prevent, detect and respond to cyber threats across cloud, on-prem and network environments. It also supports cyber resilience by helping ensure DR and recovery processes are tested, evidenced and continuously improved reducing downtime and business impact during outages or cyber incidents. ## Description The Cyber Security Engineer will help protect and improve security across a hybrid IT environment, spanning Microsoft Azure cloud services, on-prem VMware infrastructure, and the network estate (including Cisco Meraki). The role is hands-on and operational, partnering with IT teams to implement security controls, support monitoring and incident response through Sophos MDR, and improve cyber resilience by supporting Disaster Recovery (DR) testing and Business Continuity (BC) readiness., Cloud Security (Azure) ·Implement and maintain Azure security controls across identity, networking, compute and storage. ·Support governance guardrails (Azure Policy), secure baselines and logging/monitoring for cloud workloads. ·Contribute to security design reviews for new services and changes to ensure secure-by-default patterns. On-Prem Security (VMware) ·Support hardening and secure operation of VMware vSphere (vCenter/ESXi) and associated management networks. ·Assist with vulnerability remediation, patching coordination and secure configuration for Windows/Linux servers. ·Improve segmentation and admin access controls for critical systems and management planes. Network Security (Cisco Meraki) ·Support secure configuration of Cisco Meraki (MX/MS/MR as applicable), including firewall rules, segmentation (VLANs) and secure admin access. ·Assist with secure remote access/VPN configurations where required and ensure changes follow change control. ·Enable and review network security logging/alerting (e.g., syslog/SIEM integrations where applicable). Monitoring, Detection & Incident Response (Sophos MDR) ·Act as the internal technical point of contact for Sophos MDR and ensure smooth collaboration with MDR analysts. ·Maintain coverage and telemetry health (endpoints/servers) and support onboarding of new assets into MDR. ·Triage MDR escalations, coordinate containment/remediation with IT teams, and document outcomes and lessons learned. ·Maintain and improve incident runbooks and response playbooks; support post-incident improvements. Vulnerability & Secure Configuration ·Support vulnerability scanning, prioritisation, remediation tracking and verification. ·Help define and apply secure configuration baselines (e.g., CIS-aligned) across cloud, servers and network devices. ·Work with IT teams to reduce attack surface and prevent repeat security issues. ·Update, maintain and improve security policies, standards and supporting procedures to reflect evolving threats, business needs and technology changes. Disaster Recovery (DR) & Business Continuity (BC) Support ·Support DR & BC testing activities. Assist planning, execution support, recovery validation and evidence capture. ·Help maintain recovery runbooks, dependency maps, and escalation/communications pathways for major incidents. ·Support secure backup and recovery practices (access control, separation of duties, restoration validation). Ways of Working ·Collaborate closely with internal infrastructure, business systems, service desk teams, relevant business units, and delivery partners; ensure standards and runbooks are thoroughly documented so Security knowledge is accessible and not confined to a single individual. ·Participate as part of the out-of-hours support team rota. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)