Senior IT Engineer

DSM
Sibson, UK
16 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
£38,000.0 - £45,000.0
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Microsoft Windows Active Directory Software System Penetration Testing Microsoft Online Services CompTIA Security+ Data Centers Hyper-V Virtual Private Networks (VPN) Windows Servers Routing Windows PowerShell Security Information and Event Management
+8 more
Virtual Local Area Networks Virtualization Technology Firewalls (Computer Science) Microsoft InTune Microsoft Sentinel Fortinet Vulnerability Analysis Vmware

Job description

The Senior Engineer is the technical backbone of our helpdesk. You will take 2nd and 3rd line escalations across the full range of client infrastructure, including Windows Server, virtualisation, Microsoft 365 and Entra ID, networking and firewalls, backup and our hosted platform, and see complex problems through to root cause and permanent fix. You will also lead and deliver technical projects such as migrations, server and network refreshes and new client onboarding.

What sets this role apart is its security focus. You will be the engineer who owns the delivery of our VMaaS and SECaaS services, responding to MDR and SIEM alerts, running vulnerability scans, hardening client environments and driving remediation, and you will bring that security mindset to every piece of engineering work the team does. It suits an experienced MSP or infrastructure engineer who has built strong security skills and wants a role where both halves of that experience matter every day., * Act as the senior technical escalation point for the helpdesk, taking ownership of complex 2nd and 3rd line incidents across servers, networks, Microsoft 365 and hosted infrastructure and driving them to root cause.

  • Design, build and maintain client infrastructure including Windows Server, Hyper V or VMware, Active Directory and Entra ID, networking, firewalls, backup and disaster recovery, following DSM standards and secure configuration baselines.

  • Lead and deliver technical projects such as Microsoft 365 and server migrations, network and firewall refreshes, virtualisation upgrades and new client onboarding, from scoping through to handover and documentation.

  • Own the day to day delivery of our VMaaS and SECaaS services, monitoring and responding to managed detection and response, Microsoft 365 and SIEM alerts, and tuning detections to reduce noise.

  • Run internal and external vulnerability scans, prioritise findings by risk, agree remediation plans with clients and carry out or coordinate the fixes.

  • Harden client environments including conditional access, MFA, Defender, email security, endpoint protection, firewall rule sets and patching, and support clients through Cyber Essentials and Cyber Essentials Plus.

  • Produce clear, client ready technical and security reporting and attend quarterly reviews alongside account leads to explain findings and recommend improvements.

  • Coordinate annual penetration tests, from scoping and liaising with testers through to remediating findings, and support the onboarding of new security clients.

  • Mentor the 1st and 2nd line engineers, maintain accurate documentation and runbooks, and raise the technical and security standards of the whole team.

  • Participate in the escalation rota to provide cover across our core support hours.

Requirements

Essential

  • At least three years in an MSP or infrastructure engineering role at 2nd line or above

  • Strong Windows Server, Active Directory and virtualisation skills with Hyper V or VMware

  • Deep Microsoft 365 and Entra ID knowledge including Exchange Online, Intune, conditional access and Defender

  • Solid networking and firewall experience including VLANs, VPN, routing and rule management

  • Hands on experience with EDR, MDR or XDR tooling and with triaging security alerts

  • Experience with vulnerability scanning tools and turning results into practical remediation

  • Working knowledge of Cyber Essentials and the controls behind it

  • Clear written English and the confidence to explain technical risk to non technical clients

  • Self motivated and comfortable working independently from home with a reliable internet connection

  • Full UK driving licence for client site visits

Desirable

  • Experience with Bitdefender MDR or a comparable managed detection service

  • Exposure to SIEM or SOC platforms such as Microsoft Sentinel

  • Experience with WatchGuard, Fortinet or Ubiquiti networking and firewalls

  • Certifications such as Microsoft AZ-104, MS-102, SC-200 or SC-300, CompTIA Security+ or CySA+

  • Experience in a data centre or hosted infrastructure environment

  • PowerShell scripting for automation and reporting

Benefits & conditions

  • A senior technical role with real influence over how we build, secure and support client infrastructure.

  • Funded training and certifications across both infrastructure and security, with a progression path into technical or security leadership.

  • Broad, hands on exposure across servers, networks, Microsoft 365, our own data centre and a full stack of security tooling.

  • Hybrid working that gives you the flexibility of working from home alongside time with the team in Peterborough.

No Agencies

Pay: £38,000.00-£45,000.00 per year

About the company

DSM Group is a UK managed IT and cyber security services provider based in Sibson, Peterborough. We look after the technology that our clients depend on every day, from end user support and hosted infrastructure to security services, compliance and our own data centre. Our clients range from professional services firms to administration and financial businesses, and they trust us because we are responsive, honest and easy to deal with.

Security runs through everything we deliver. Alongside traditional managed services we provide Vulnerability Management as a Service (VMaaS) and Security as a Service (SECaaS), covering managed detection and response, vulnerability scanning and remediation, Microsoft 365 monitoring, managed firewalls, SIEM and SOC monitoring and penetration testing. We want engineers who treat security as part of doing the job properly rather than a separate department.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

1:35 min

Configuring file-based routing and Vue page layouts

Alexander Lichter · World Congress 2023

Videos

See all

Related articles

See all