Cybersecurity Specialist

HESA World Project Services
Portsmouth, UK
about 1 month ago
Apply on uk.indeed.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Compensation
£45,000.0 - £53,000.0
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Security CompTIA Security+ Cyber Security Monitoring of Systems Identity and Access Management Network Security Microsoft Security Essentials Cloud Services Phishing Security Information and Event Management Software Vulnerability Management EndPointSecurity
+5 more
Cloud Platform System Microsoft InTune Cybercrime Microsoft Sentinel CIS Benchmarks

Job description

Cybersecurity is no longer limited to blocking viruses or managing passwords. Modern organisations need continuous visibility across users, devices, cloud platforms, applications, and networks so that suspicious activity can be identified before it becomes a serious incident.

As a Cybersecurity Specialist, you will monitor security events, investigate alerts, manage vulnerabilities, support security controls, and help strengthen the organisation’s overall cyber resilience. You will work across endpoint security, identity protection, cloud environments, access management, and incident response.

The role combines active threat monitoring with longer-term security improvement. One day may involve investigating unusual login behaviour or a malware alert, while another could focus on reviewing vulnerabilities, strengthening Microsoft security configurations, or supporting an internal security assessment.

Key Responsibilities

  • Monitor security alerts and investigate suspicious activity across systems and networks.
  • Review endpoint, identity, cloud, and network security events.
  • Support incident response and document investigation findings.
  • Triage security alerts and escalate higher-risk incidents appropriately.
  • Maintain endpoint protection and threat-detection platforms.
  • Review vulnerabilities and coordinate remediation with technical teams.
  • Monitor privileged accounts and unusual access activity.
  • Support Microsoft Defender, Sentinel, Entra ID, Intune, or similar security platforms.
  • Assist with security configuration reviews across servers, endpoints, and cloud services.
  • Maintain security policies, standards, and operational procedures.
  • Support phishing awareness and user-security programmes.
  • Investigate reported phishing emails and suspicious messages.
  • Review user access and assist with periodic access-control reviews.
  • Monitor security patching and highlight systems with outstanding vulnerabilities.
  • Maintain accurate security incident and remediation records.
  • Support Cyber Essentials, ISO 27001, or similar security-assurance activities.
  • Assist with security risk assessments for new systems and suppliers.
  • Prepare reports showing security incidents, vulnerabilities, and remediation progress.
  • Coordinate with infrastructure, networking, and application teams during security investigations.
  • Identify recurring security weaknesses and recommend practical improvements.

Requirements

  • Previous experience in cybersecurity, SOC operations, information security, infrastructure security, or a related technical role.
  • Good understanding of common cyber threats and attack techniques.
  • Experience with SIEM, endpoint detection, or security-monitoring tools would be advantageous.
  • Familiarity with Microsoft Defender, Sentinel, Entra ID, or Intune is beneficial.
  • Understanding of vulnerability-management and patching processes.
  • Knowledge of identity and access-management principles.
  • Familiarity with ISO 27001, NIST, CIS Controls, or Cyber Essentials would be advantageous.
  • Strong analytical and technical troubleshooting skills.
  • Ability to interpret security alerts and distinguish genuine threats from false positives.
  • Good written communication skills for documenting incidents and recommendations.
  • Relevant certifications such as CompTIA Security+, Microsoft Security, CISSP, CISM, or equivalent would be beneficial.
  • Ability to handle sensitive security information responsibly.

Competencies

  • Security monitoring
  • Incident response
  • SIEM
  • Endpoint detection and response
  • Vulnerability management
  • Identity security
  • Microsoft Defender
  • Microsoft Sentinel
  • Cloud security
  • Access control
  • Security risk assessment
  • Cybersecurity reporting

Working Approach

You are naturally investigative. When an alert appears, you do not treat it as an isolated notification; you look at user activity, devices, timing, and related events to understand what actually happened. You are methodical during incidents and equally interested in fixing the weakness that allowed the issue to occur.

Benefits & conditions

Pay: £45,000.00-£53,000.00 per year

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on uk.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · World Congress 2023

Videos

See all

Related articles

See all