> Markdown version of [/jobs/ext/2110797-security-engineer](https://www.wearedevelopers.com/jobs/ext/2110797-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Pontoon - **Location:** Tavistock, UK - **Salary:** £182,000.0 - **Contract:** Temporary contract - **Skills:** Microsoft Windows, Software System Penetration Testing, Microsoft Azure, Cyber Security, System Configuration, Identity and Access Management, Microsoft Security Essentials, Microsoft Servers, Role-Based Access Control, Azure Active Directory, Microsoft InTune, Microsoft Fabric - **Published:** August 19, 2026 - **Apply:** https://www.cv-library.co.uk/job/225468835/security-engineer ## About the Role * A strong security engineering background, with hands-on technical experience. * Proven experience in Microsoft Intune, Entra ID (Azure AD), Microsoft 365 Security, Azure Security, and Microsoft Purview. * A solid understanding of CIS-based security controls and experience remediating penetration testing findings. * Knowledge in Identity & Access Management, least privilege principles, and RBAC. * The ability to work independently with minimal supervision in greenfield or early-stage environments. * Strong stakeholder management and communication skills. Ideal Background: You'll excel in this role if you have: * Experience preparing environments for external penetration testing engagements. * The ability to recognise common vulnerabilities and security gaps. * Familiarity with regulated or Critical National Infrastructure (CNI) environments. * Exposure to incident response and CSIRT functions. * Relevant Microsoft or security certifications (e.g., SC-200, SC-300, SC-400, AZ-500, CCSP). What We're Looking For: This role is designed for a proactive Security Engineer who enjoys a hands-on approach rather than purely advisory tasks. If you thrive in maturing environments and can autonomously drive remediation activities, we want to hear from you! Your experience in preparing organisations for penetration testing and enhancing security posture will be invaluable to our client. ## Description Join our client's team as a proactive Security Engineer! This hands-on role is perfect for someone who thrives in evolving environments and is ready to boost the cyber security posture within a new Strategic Infrastructure Microsoft environment. Your key responsibilities will include: * Implementing, configuring, and maintaining security controls across various Microsoft security technologies such as Microsoft Intune, Entra ID, Microsoft 365, Azure, and Microsoft Purview. * Managing and enhancing identity and access management, along with data protection controls. * Configuring Conditional Access, RBAC, Privileged Identity Management, and compliance controls. * Identifying security gaps and executing remediation activities in line with security standards. * Leading preparation activities for upcoming penetration testing engagements. * Reviewing penetration testing findings and translating them into actionable remediation plans. * Supporting security assurance, risk assessments, and control validation activities. * Collaborating with Security Architecture and Cyber Security Incident Response teams to elevate the overall security posture. * Assisting with audit, compliance, and evidence-gathering activities when required. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs)