> Markdown version of [/jobs/ext/2916919-security-engineer](https://www.wearedevelopers.com/jobs/ext/2916919-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Pontoon - **Location:** London, UK - **Salary:** £45,189.0 - **Contract:** Temporary contract - **Skills:** Microsoft Windows, Software System Penetration Testing, Microsoft Azure, Microsoft Online Services, Cloud Computing Security, Cyber Security, Identity and Access Management, Microsoft Security Essentials, Role-Based Access Control, Azure Active Directory, Microsoft InTune - **Published:** September 15, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5883862010 ## About the Role * Strong Security Engineering background. * Hands-on experience with: + Microsoft Entra ID + Microsoft Intune + Microsoft 365 Security + Microsoft Azure + Microsoft Purview * Experience implementing and assessing CIS security controls. * Previous experience remediating vulnerabilities and penetration testing findings. * Strong understanding of: + Identity & Access Management (IAM) + RBAC + Privileged Access Management + Least Privilege principles * Experience working in cloud-first Microsoft environments. * Ability to work independently and proactively identify security improvements. * Strong stakeholder engagement and communication skills. Desirable Experience * Experience preparing environments ahead of external penetration testing. * Exposure to regulated, critical infrastructure or highly secure environments. * Experience working alongside Security Operations or Incident Response teams. * Microsoft or security certifications such as SC-200, SC-300, SC-400, AZ-500, CISSP or CCSP. ## Description We're supporting a leading organisation operating within a highly regulated and nationally significant environment as they continue to build and mature a new Microsoft cloud security estate. This is a hands-on Security Engineer position suited to someone who enjoys improving security posture, implementing controls and solving security challenges in an evolving environment. You'll play a key role in strengthening the organisation's cyber security capabilities while helping prepare the environment for an upcoming penetration test programme over the next 3-6 months. The team are looking for someone who can work autonomously, identify potential weaknesses before they become audit or pen-test findings, and drive remediation activities from start to finish., * Implement, configure and maintain security controls across the Microsoft security ecosystem. * Identify security gaps and drive remediation activities to improve overall security posture. * Support the preparation, coordination and remediation of external penetration testing engagements. * Implement and manage identity, access management and privileged access controls. * Configure and maintain Conditional Access, RBAC and Privileged Identity Management controls. * Improve device, identity, data and cloud security controls across the estate. * Support audit, assurance and compliance activities. * Work closely with architecture, security operations and wider technology teams to deliver security improvements. * Contribute to security hardening initiatives and CIS control implementation., * Microsoft Security Engineer * Identity & Access Management Engineer * Azure Security Engineer * Cyber Security Engineer who enjoys hands-on technical delivery and taking ownership of security improvements within a developing environment. ## Related Videos - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)