Cyber Security Engineer
Strengthen security across identity, endpoints, cloud services and applications through practical controls, monitoring and risk-informed engineering.
Job description
The Cyber Security Engineer will support defensive security design and implementation across client environments, with emphasis on identity, cloud, endpoints, application delivery and operational monitoring.
The role is focused on authorised defensive work, security improvement and evidence-based control implementation.
Key responsibilities
- Assess security posture and identify practical control gaps across identity, cloud, endpoint and application environments.
- Support secure architecture reviews, hardening standards and security requirements for technology delivery.
- Improve vulnerability-management, security-monitoring and incident-readiness processes.
- Work with engineering teams to integrate security checks into delivery pipelines and operational processes.
- Document risks, control decisions, exceptions and remediation actions.
Qualifications
- 4–8 years of professional cyber-security, cloud-security or security-engineering experience.
- Strong understanding of IAM, endpoint security, vulnerability management and security monitoring.
- Practical experience securing Azure, AWS or comparable cloud environments.
- Ability to communicate risk and remediation priorities to technical and business stakeholders.
Preferred qualifications
- Experience with SIEM, EDR, Microsoft Entra ID or comparable enterprise security tooling.
- Relevant security certification or demonstrable equivalent experience.
- Experience in regulated or security-sensitive enterprise environments.
Benefits & employment terms
- Compensation, leave, pension and any role-specific benefits are confirmed during the recruitment process and stated in the written offer.
- Any client-site, travel, security-screening or right-to-work requirements are confirmed before appointment.
Nature of working style
- Security engineers work as part of authorised client and delivery teams with clear scope and access boundaries.
- The role combines assessment, engineering, documentation and collaboration rather than isolated compliance reporting.
Location
London-based hybrid role. Some engagements may require controlled access to a UK client environment.
