Cyber Security Engineer

The Martin Veasey Partnership
Milton Keynes, UK
7 days ago
Apply on www.linkedin.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
£60,000.0 - £70,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Application Services Cloud Computing Security Cyber Security Data Governance Data Sharing Multi-Factor Authentication Identity and Access Management Information Technology Operations Internet Security Cloud Services Zero Trust Network Access
+2 more
Systems Integration Data Logging

Job description

Significant investment has gone into technology and data capability in recent years, including an in-house development function and a growing analytics team. Headcount continues to expand and a further office opens next year. As the organisation grows, so does the requirement to secure it properly.

This is a hands-on security engineering role reporting directly to the Head of Technology. It is not a policy or advisory position, and it is not one layer within a large security operations centre. A dedicated Cyber and Data Governance Lead is already in post and owns governance policy, which means your findings have somewhere to go and your recommendations get acted upon.

What you will be doing as a Cyber Security Engineer

You will own the technical security of the estate, working alongside IT operations, development and platform teams. Your remit will include:

  • Reviewing and strengthening authentication, access and administrative privilege, promoting least privilege and zero trust principles

  • Improving endpoint security, device compliance and secure configuration

  • Assessing cloud services and hosted workloads for configuration weaknesses and excessive access

  • Running and improving vulnerability and exposure management, coordinating remediation with system owners and verifying that fixes hold

  • Investigating security alerts and incidents and maintaining practical response procedures

  • Reviewing the security of third-party applications, integrations and data sharing arrangements

  • Producing clear reporting on risk, incidents and remediation progress, and supporting audits and customer assurance requests

As the new second office is established you will extend security coverage to that site, giving you the opportunity to shape how security works across a growing multi-site estate rather than inheriting one already built.

Requirements

At least five years in cyber security, infrastructure security, cloud security or a closely related technical role, gained within a regulated commercial environment such as financial services, insurance, lending, wealth management or professional services.

You will bring practical experience of securing enterprise identity and collaboration services, a working understanding of identity and access management, multifactor authentication, conditional access and privileged access, and experience securing Windows endpoints through a modern device management platform. You will have used endpoint detection and response or comparable technologies, and will have assessed, prioritised and driven the remediation of vulnerabilities in a live environment. Working knowledge of public cloud security is essential, covering identity, networking, logging, data protection and secure configuration.

Just as important is how you work. This role involves a good deal of influencing and persistent, constructive chasing of people who do not report to you. You will need to distinguish genuine risk from technical noise, recommend improvements that are proportionate and achievable, and explain security matters clearly to colleagues who are not technical.

Relevant certifications and experience of frameworks such as ISO 27001, Cyber Essentials, the National Institute of Standards and Technology Cyber Security Framework or the Centre for Internet Security Controls are all welcome, though none is a prerequisite.

Benefits & conditions

  • Base salary of £60,000 - 70,000 pounds, dependent on experience

  • Uncapped annual bonus, typically five to fifteen per cent of base salary

  • Hybrid working, two to three days per week on site in the East Midlands office

  • Occasional travel to the new Southern office

  • Pension, enhanced leave and a modern office environment

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.linkedin.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:21 min

Introduction to automotive security and digital forensics

Martin Schmiedecker · LIVE

3:18 min

Utilizing AI and public data sharing for urban planning

Christian Wiegand +3 · World Congress 2024

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:42 min

Applying the satellite architecture for machine learning isolation

Christoph Fassbach Christoph Fassbach +1 · World Congress 2024

Videos

See all

Related articles

See all