Security Engineer

Intigriti
UK
20 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Cloud Computing Cyber Security Computer Programming Intrusion Detection and Prevention Parsing Phishing Security Information and Event Management Software Security Mitre Att&ck Information Technology Cybercrime

Job description

As a Security Engineer, you play a crucial role in developing and implementing comprehensive security strategies, policies, and procedures to safeguard Intigriti’s information assets across corporate IT and the Intigriti platform.

You are a passionate individual who enjoys building defences against today’s cyber threats, targeting infrastructure, data, and employees. You should be able to analyze the current threat environment and Intigriti’s security posture, then design and implement controls in line with our risk appetite.

This position requires strategic thinking, technical expertise, and a deep understanding of cybersecurity principles. You will be expected to deploy, manage and maintain preventive and detective controls leveraging security tools, including EDR, SIEM, phishing simulation, and compliance solutions, among others.

In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections in our SIEM. You will use frameworks such as MITRE ATT&CK and MITRE D3FEND to assess threat scenarios, prioritize detection engineering work, and strengthen both preventative and detective controls.

What you’ll be doing

Infrastructure Security

  • Oversee the design, implementation, and maintenance of security across Intigriti infrastructure, ensuring the confidentiality, integrity, and availability of company data.
  • Collaborate with the IT System Administrator to manage and enhance the overall network and system security.

Incident Response, Threat Detection & SOC Operations

  • Develop, maintain, and run incident response plans to address security incidents promptly and effectively.
  • Run day-to-day SOC operations, including monitoring, triage, investigation, and response to security alerts.
  • Assess the company threat landscape using MITRE ATT&CK and MITRE D3FEND to identify detection and mitigation opportunities.
  • Connect and maintain log sources into our SIEM to ensure relevant coverage across corporate IT and the Intigriti platform.
  • Write, tune, and continuously improve SIEM detection rules to reduce risk and improve signal quality.
  • Document detection logic, response playbooks, and lessons learned from incidents to continuously improve processes.

Security Awareness and Training

  • Promote a culture of security awareness among all employees through training programs and communication initiatives.
  • Conduct regular security training for staff to enhance their understanding of security risks and best practices.

Governance & Compliance

  • Report on Intigriti’s security posture, internally and externally as required.
  • Stay abreast of industry best practices and emerging threats to inform the development of effective security measures.
  • Support the development, implementation, and continuous improvement of the organization’s security strategy, policies, and procedures.
  • Support the maintenance of our ISO 27001 and SOC 2 Level 2 certifications.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field. Master’s degree or relevant certifications (e.g., CISSP, CISM) is a plus.
  • Strong understanding of network and system security. Cloud or application security expertise is favoured.
  • Experience designing, building and implementing security controls. Programming skills are required.

  • Experience in threat and vulnerability management are desirable.
  • Experience operating or supporting a SOC function (monitoring, triage, incident handling).
  • Experience with SIEM concepts and detection engineering (log onboarding, parsing/normalization, correlation rules, alert tuning). Equivalent experience is acceptable if direct SIEM experience is limited.
  • Familiarity with MITRE ATT&CK (nice to have) and MITRE D3FEND (nice to have).
  • Strong communication, and interpersonal skills.
  • Ability to influence and drive security initiatives at both the tactical and strategic levels.
  • Familiarity with relevant laws, regulations, and industry standards.

Benefits & conditions

Competitive salary 26 days of annual leave and Bank Holidays Top-notch Private Healthcare and Health Cash Plan Hybrid working model Initial home office budget ļø 2-month work abroad policy Great training and yearly learning budget Employer pension scheme ļø Enhanced maternity pay Social activities and team outings Referral bonus Employee Assistance Program Great hardware and access to the best tools to be successful in your role ļø Mobile subscription contribution, * Cybersecurity is a great place to be! The security industry is fast-paced and continues to grow even during times of economic uncertainty.

  • We provide a clear career path and learning budget to help set you up for success.
  • Join a company that’s making a real impact. In addition to our sustainability goals, we empower ethical hackers from all backgrounds to earn a living.
  • Be yourself! Our international team celebrates individuality and places a strong focus on diversity and inclusion.
  • We are the proud winners of the Deloitte Rising Star award in 2020, the Deloitte Fast 50 award in 2021 and Security Innovation of the Year 2025 at the UK IT Industry awards.
  • We’re backed by top investors who are enabling us to grow internationally.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on intigriti.jobs.personio.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:56 min

Open-sourcing a complex parsing library for game data

Johan Hutting Johan Hutting Ā· WWC 2024

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa Ā· LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa Ā· LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Ā· Coffee With Developers

2:36 min

Managing complex operation sequence weights using recursive parsing

Florian Rappl Ā· LIVE

Videos

See all

Related articles

See all