Salary: £65,000 - 75,000 per year
Requirements
- We require strong experience in security engineering and security platform management.
- We require experience supporting SOC tooling and security operations environments.
- We require hands on experience with Microsoft Defender and Microsoft Sentinel.
- We require a strong understanding of SIEM, XDR, and security platform integrations.
- We require experience in hybrid on premises and cloud environments.
- We require strong troubleshooting skills across platforms, integrations, and data pipelines.
- We require experience with scripting and automation such as PowerShell, Python, or similar tools.
- We require a strong understanding of networking, cloud, and infrastructure fundamentals.
- We require experience working in regulated environments, ideally financial services.
- We require strong documentation and communication skills.
- We would prefer experience with vulnerability and scanning tools such as Qualys.
- We would prefer familiarity with exposure management and BAS tools such as XM Cyber and AttackIQ.
- We would prefer knowledge of DLP, email security, and cloud security platforms.
- We would prefer awareness of PAM and data security tools such as CyberArk and Varonis.
Responsibilities
- We maintain and configure security platforms including SIEM, XDR/EDR, vulnerability, and cloud security tooling.
- We perform lifecycle activities including patching, upgrades, and configuration changes.
- We ensure security platforms are fully integrated across on premises and cloud environments.
- We monitor platform health, performance, and availability, and resolve issues proactively.
- We support service transitions, upgrades, and controlled change activities.
- We act as the escalation point for platform issues raised by our Security Analyst team.
- We provide engineering support during complex incidents and investigations.
- We implement platform level changes to support incident response and remediation.
- We support detection engineering including rule deployment, tuning, and validation.
- We resolve data quality, alerting, and detection gaps that affect operational effectiveness.
- We support automation and SOAR initiatives such as Sentinel and Logic Apps.
- We collaborate with SOC providers to maintain SIEM configuration and log ingestion.
- We maintain accurate engineering documentation, runbooks, and platform records.
- We ensure all platforms meet regulatory, audit, and compliance requirements.
- We contribute to governance, reporting, and continuous improvement initiatives.
Technologies
- Cloud
- Support
- PowerShell
- Python
- Security
More
We are a client aligned security engineering team supporting a financial services organisation operating in a regulated environment. This is a hands on Senior Security Engineer role focused on the day to day operation, maintenance, and optimisation of security platforms, working closely with our 24/7 Security Analyst team to support investigations, resolve platform issues, and improve detection and response capabilities. The role is based in London with approximately three days onsite each week.