> Markdown version of [/jobs/ext/2817723-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/2817723-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** Cybanetix - **Location:** London, UK - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Domain Controllers, Application Programming Interfaces (APIs), Cloud Computing, Cyber Security, Linux, Intrusion Detection and Prevention, Information Systems Security Architecture Professional, Python (Programming Language), Microsoft Security Essentials, Windows Servers, Windows PowerShell, Cloud Services, Kusto Query Language, Security Information and Event Management, Syslog, Data Logging, Sysadmin, Firewalls (Computer Science), Information Technology, Network Server, SentinelOne Expertise, Api Management - **Published:** September 10, 2026 - **Apply:** https://www.collegerecruiter.com/job/2840594354-senior-security-engineer ## About the Role Must have: * Strong, demonstrable experience across the Microsoft security stack. * Solid understanding of identity and endpoint security fundamentals. * Comfortable writing and tuning detection logic (e.g. KQL) across detective and threat-tuning scenarios. * Excellent communication and customer-facing skills; able to lead calls, drive discussions, and influence outcomes. * Ability to work autonomously, solve problems, and deliver high-quality technical work. Nice to have: * Experience with automation (PowerShell, Python, API integrations) and sysadmin background. * Familiarity with security frameworks and incident response concepts. * Exposure to logging pipelines (AMA, Syslog, Cribl, SIEM tooling). * Working knowledge of other, non-Microsoft security stacks (CrowdStrike, SentinelOne, Tenable, etc). * Experience producing architecture documents, diagrams, and design proposals. * Background working in an MSSP, consultancy, or customer-facing engineering role. ## Description Join us and help shape the security posture of the organisations we support. You will work directly with customers, engineers, and operationalsecurity teams to deliver meaningful improvements across identity, detection, endpoint security, and cloud posture. This role is at the intersection of technical knowledge, advisory ownership, and real-world impact. You'll be hands-on with the tools, designing and implementing modern security architectures, solving challenging problems, and acting as a trusted technical partner for our customers. Stack: * Exposure to other modern security stacks, such as SentinelOne or Crowdstrike is a strong advantage * Platforms: AD/Entra hybrid identity, Windows Server, Linux * Tooling: KQL, PowerShell, API usage, automation tooling Technical responsibilities * Lead technical discussions with customers and guide them through architecture, design decisions, and best practice implementation. * Own the delivery of security solutions. * Design and implement detection, automation, and runbooks. * Conduct technical assessments across identity, endpoint, cloud posture, logging, and security operations. * Build and optimise KQL queries, detections and hunting queries. * Review security configurations across Cloud and SIEM/SOAR platforms. * Work end-to-end through architecture, deployment, tuning, documentation, and customer enablement. * Identify gaps and recommend improvements across logging, identity, endpoint hardening, cloud posture, and threat detection. * Understand how endpoints, servers, domain controllers, and cloud workloads operate and how security tools plug into them. * Work with customers to remediate misconfigurations, optimise deployments, and improve operational resilience. * Use scripting, APIs, or automation tooling to streamline repeatable tasks. * Support integration work across firewalls, EDR, logging pipelines, and SIEM/SOAR tooling. * Act as a trusted technical advisor for security and engineering stakeholders. * Communicate complex technical concepts clearly to both technical and non-technical audiences. * Build strong relationships with customers based on clarity, competence, and follow-through. * Translate customer needs into actionable technical plans and deliverables. * Work closely with internal teams (engineering, SOC, platform) to improve processes and share insights. * Contribute to knowledge articles, runbooks, design documentation, and repeatable delivery patterns., * The opportunity to own technical direction on engagements and influence customer security posture. * A role that blends architecture, engineering, advisory, and hands-on implementation using the best and brightest security technologies. * Learn and grow via exposure to a wide variety of environments, threat models, and operational challenges. * The chance to make a real difference to how defenders and security teams operate every day. ## Related Videos - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Fake or News: Self-Driving Cars on Subscription, Crypto Attacks Rising and Working While You Sleep - Théodore Lefèvre](https://www.wearedevelopers.com/videos/1793-fake-or-news-self-driving-cars-on-subscription-crypto-attacks-rising-and-working-while-you-sleep-theodore-lefevre) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)