Security Engineer
Cyber Security Engineer
Location: London / Hybrid
Department: IT Security
Salary: £60k + Benefits
About the role
As part of our IT Security strategy for continual improvement, we are strengthening cyber security across the organisation to ensure a safe, compliant and resilient technology environment for all users.
We are looking for a Cyber Security Engineer to join our IT Security team and play a key role in security operations, incident response, vulnerability management and the ongoing development of our security posture. This is a hands-on role for a driven security professional who enjoys both technical depth and working collaboratively across teams.
You will be involved in day-to-day security operations while also contributing to longer-term security improvements, projects and risk reduction initiatives across the organisation.
Key responsibilities
- Monitor, investigate and respond to cyber security incidents using SIEM, EDR/MDR and other security tooling
- Perform deep-dive incident analysis across multiple log sources to identify root cause, indicators of compromise (IoCs) and remediation actions
- Conduct proactive and reactive threat hunting activities
- Manage vulnerability assessments, web application scanning and remediation as part of BAU operations
- Perform risk assessments, identify security gaps and define remediation options
- Work closely with IT, Infrastructure, Cloud and Service teams to improve security controls across the organisation
- Review, onboard and manage log sources into SOC/SIEM platforms
- Validate and respond to security alerts generated by SIEM and endpoint protection platforms
- Manage security incidents and tickets in line with ITIL best practices (ServiceNow)
- Support governance, compliance and audit activities (ISO27001, Cyber Essentials, CIS benchmarks, GDPR)
- Produce clear security reports and communicate risks and threats to both technical and non-technical stakeholders
- Participate in security audits, tabletop exercises and continuous improvement initiatives
- Ensure best-practice configuration across security platforms as recommended by vendors
Key skills & experience
Essential:
- Previous experience working in a technical Cyber Security or Security Operations role
- Hands-on experience with security incident response and investigation
- Strong knowledge of Microsoft security technologies (Azure, Entra ID, O365, Exchange, Defender)
- Experience working with SIEM, vulnerability scanners, endpoint protection and email security solutions
- Good working knowledge of DNS, web proxy, email security (DMARC, DKIM, SPF)
- Understanding of vulnerability and risk assessment methodologies
- Familiarity with MITRE ATT&CK framework and modern threat landscapes
- Strong communication skills with the ability to explain technical concepts to non-technical audiences
- Experience working within ITIL and change management processes
- Ability to work independently while contributing effectively as part of a team
Desirable:
- Experience working in or alongside a SOC environment
- Knowledge of NIST, NIS-R and PCI DSS
- Experience with WAF, IDS/IPS, firewalls and network security tools
- Exposure to automation or scripting
- Experience with cybersecurity training and awareness platforms
Qualifications
- Degree-level education or equivalent industry experience
- Microsoft security certifications (or working towards)
- ITIL v4 certification
- CySA+, CISSP or equivalent security certification (desirable)
What we’re looking for
- Self-motivated, proactive and driven to continuously improve security
- Highly analytical with strong attention to detail
- Comfortable working under pressure and prioritising incidents
- Excellent interpersonal skills with the ability to build strong stakeholder relationships
- Passionate about cyber security and staying up to date with emerging threats
Why join us?
- Opportunity to make a real impact on organisational cyber security
- Exposure to a broad range of security technologies and challenges
- Supportive team environment with scope for growth and development
- Involvement in meaningful security projects and initiatives
If you would like to hear more information about this exciting opportunity I would love to hear from you! Feel free to contact Catherine Burn at c.burn@ltharper.com or apply online.