Lead Security Engineer - Azure Cloud 3 days in London
The Lead Security Engineer ensures a secure architecture for internal systems and business-to-business operations. This includes managing risks, implementing security measures-particularly for cloud platforms like Azure, Teams/O365, and iManage Cloud-and maintaining documentation for the Global Security Team. The role works closely with IT and security leadership to achieve objectives, ensure compliance, and respond effectively to security incidents.
What you'll do:
- Ensure a secure architecture for authorisation and authentication internally, as well as business to business
- Implement security architecture of the firm related to transition to cloud (e.g., Azure, Teams/O365 and iManage Cloud)
- Develops and maintains all documentation related to Global Security Team operations and functions
- Managing Data Loss Prevention (DLP) systems, defining policies, monitoring incidents, and reporting metrics
- Detects, investigates, and responds to all information security incidents
- Maintains and executes the incident response plan, identifying causes and recommending mitigation
- Controls access to information systems and manages related security configurations
- Develops and enforces security policies to meet compliance and client requirements
- Ensures monitoring, alerts, and risk assessments for vendors, projects, and systems are completed
- Assists with new IT policy development, security audits, and testing before production
- Oversees independent security program reviews and addresses identified gaps
- Monitors physical data security (e.g., backup storage) and implements improvements as needed
- Controlling access and ensuring monitoring/alerting systems meet business needs
- Conducting risk assessments for vendors, projects, and systems
- Maintaining security awareness, training, and documentation for employees
- Supporting Business Continuity and Disaster Recovery efforts
- Collaborating with IT teams to enforce security standards
- Performing investigations as requested by HR, IT, or Legal
What you'll bring:
- Minimum 5 years' experience in an Information Security role
- Strong working knowledge of CISSP and CEH; ISO 27002 knowledge preferred
- Solid understanding of networking, firewalls, and security standards
- Experience with authentication methods and documentation
- Knowledge of Disaster Recovery processes preferred
- Technical expertise in cloud environments, especially Azure and O365
- Familiarity with DLP incident handling, remediation, and reporting
- Familiarity with security tools such as Microsoft Defender for Endpoint, Thales, CrowdStrike Falcon, SIEM, CyberArk, Rapid7, and Palo Alto is a plus
Robert Walters Operations Limited is an employment business and employment agency and welcomes applications from all candidates