Security Operations Engineer

Context Recruitment Limited
Greater London, UK
1 day ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£75,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services Microsoft Antivirus Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Information Leak Prevention Data Security Virtual Private Networks (VPN) Network Security Microsoft Security Essentials
+21 more
Routing Network Segmentation Windows PowerShell Proprietary Software Azure Active Directory Security Information and Event Management TCP/IP Software Vulnerability Management Scripting Transport Layer Security Office365 QRadar Firewalls (Computer Science) Microsoft InTune Information Technology Patch Management Cisco Qualys Servicenow Vulnerability Analysis User Accounts

Job description

This role is ideal for a proactive security professional with strong technical expertise across Microsoft 365, cloud, infrastructure and network security. You will play a key part in implementing security controls, mitigating risk, improving the organisation’s overall security posture and ensuring systems remain compliant with ISO 27001 and Cyber Essentials Plus (CE+)., * Monitor security tools including SIEM (QRadar) and respond to threat detection alerts

  • Triage, analyse and prioritise security incidents via ServiceNow
  • Investigate root causes of security issues and design effective remediation solutions
  • Oversee Patch Management across servers, endpoints and infrastructure
  • Conduct vulnerability scans using Qualys, analyse findings and prioritise remediation activities
  • Take ownership of the Microsoft 365 security platform, proactively analysing the environment and remediating security recommendations across Microsoft Defender, Entra ID and Intune
  • Review, optimise and maintain Conditional Access Policies, Compliance Policies and Configuration Profiles to ensure user accounts and endpoint devices remain secure and compliant
  • Implement and continuously improve Microsoft 365 security controls, identity protection and endpoint compliance in line with Microsoft best practices
  • Support the organisation’s ISO 27001 and Cyber Essentials Plus (CE+) compliance by implementing and maintaining appropriate Microsoft security controls
  • Manage end-user device (EUD) security through Microsoft Intune, Sophos and NinjaOne
  • Schedule and assess vulnerability scans on critical infrastructure
  • Maintain patching compliance for Windows OS, Microsoft 365 applications and third-party software
  • Collaborate with external SOC providers to investigate and respond to security incidents
  • Automate security processes and operational tasks using PowerShell, Batch or similar scripting languages
  • Produce post-incident reports, root cause analyses and security recommendations
  • Document SecOps processes and create knowledge base articles in line with best practices
  • Support infrastructure teams to deploy systems, strengthen security policies and manage security-related changes
  • Produce weekly security operations and compliance reports
  • Manage Cisco Umbrella web filtering and SSL inspection policies

Requirements

  • Previous hands-on experience within a Security Operations (SecOps), Cyber Security or Incident Response role
  • Strong experience administering and securing Microsoft 365 environments
  • Hands-on experience with Microsoft Entra ID, Microsoft Intune, Microsoft Defender and Microsoft 365 security capabilities
  • Experience reviewing and optimising Conditional Access Policies, Compliance Policies and Configuration Profiles
  • Experience assessing Microsoft Secure Score and remediating Microsoft 365 security recommendations
  • Experience implementing Microsoft security controls to support ISO 27001 and Cyber Essentials Plus (CE+) compliance
  • Strong knowledge of Microsoft Windows security and system hardening
  • Working PowerShell scripting ability for automation tasks
  • Solid understanding of cloud security across Microsoft 365, Azure and AWS
  • Experience supporting enterprise IT infrastructure
  • Recognised security certifications such as Security+, CEH, Microsoft Security certifications or equivalent

Any experience with the following will be highly favoured:

  • Qualys Vulnerability Management
  • QRadar SIEM
  • Varonis
  • Microsoft Purview (Compliance, Information Protection or Data Loss Prevention)
  • ServiceNow
  • Network security knowledge covering TCP/IP, VPNs, routing, firewalls and network segmentation
  • Sophos security solutions

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:38 min

Exploring developer resources for further API automation learning

Shweta Palande · LIVE

Videos

See all

Related articles

See all