> Markdown version of [/jobs/ext/3642493-security-engineer](https://www.wearedevelopers.com/jobs/ext/3642493-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** CPS Group - **Location:** Cardiff, UK - **Salary:** £40,000.0 - £45,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Azure, Cloud Computing, Cyber Security, Intrusion Detection and Prevention, JSON, Jinja (Template Engine), Python (Programming Language), Microsoft Security Essentials, Microsoft Office, Anti-Phishing, Kusto Query Language, Software Vulnerability Management, YAML, Information Technology, Bicep, Microsoft Sentinel, Serverless Computing, Vulnerability Analysis - **Published:** October 9, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5918820276 ## About the Role * Experience in a security or technical environment, such as SOC, Security Engineering, IT Support or Technical Delivery * Working knowledge of Microsoft security technologies, particularly Defender XDR, Entra, Defender for Cloud Apps and Exchange Online * Strong knowledge of KQL and Advanced Hunting * Experience with Microsoft Sentinel, including analytics rules and Content Hub solutions * Good understanding of security protocols, standards and best practices * Knowledge of vulnerability management and risk analysis * Strong technical judgement and the ability to recognise when an issue needs to be escalated * Excellent communication skills, including the ability to explain technical information to technical and non-technical audiences * Strong written skills and experience producing technical documentation or reports * A proactive, curious approach and a genuine desire to continue developing technical skills * A degree in Computer Science, Cyber Security or a related subject is beneficial; equivalent professional experience will also be considered * Experience with Python, Bicep, ARM, JSON or YAML, Azure Logic Apps, Azure Functions, codeless playbooks, Jinja2, or Microsoft certifications such as SC-200, SC-300, SC-401, MS-102 or AZ-500 would be beneficial ## Description * Build strong relationships with clients and act as a trusted technical point of contact * Support client calls and clearly explain technical issues and recommendations * Assess incoming technical requests to ensure they are appropriate, in scope and aligned with best practice * Configure and tune Microsoft security controls, including Defender policies, Entra settings and Exchange Online security * Build and maintain detection capabilities using KQL, Advanced Hunting and Microsoft Sentinel * Manage phishing simulation campaigns and support vulnerability scanning * Review client environments and identify opportunities to improve their Microsoft 365 security posture * Support incident response activities and security investigations * Produce clear technical reports, recommendations and documentation * Work with senior engineers to triage and escalate complex technical issues * Where applicable, use scripting and automation to improve processes and efficiency Technologies: * ARM * Azure * Cloud * Support * JSON * Microsoft 365 * Python * Security * Office 365