it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

5 jobs found

Email me jobs like this
Refine Search
Current Search
senior proofpoint email security engineer
Proofpoint
Sr. Critical Situation Manager
Proofpoint
About Us: Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people. How We Work Bold in how we dream and innovate Responsive to feedback, challenges and opportunities Accountable for results and best in class outcomes Visionary in future focused problem-solving Exceptional in execution and impact The Role As a member of the Global Critical Situation Management Organization, the Sr. Critical Situation Manager is assigned to help manage the most urgent customer problems involving Proofpoint products and services. This person serves as the communication focal point for the customer and oversees all resolution efforts from the initial problem identification to post-mortem analysis. The Sr. Critical Situation Manager also acts as a customer advocate to help drive improvements in all aspects of business, including Customer Service, Professional Services, Product and Engineering. Your day-to-day Lead high-severity customer incidents (major system outages) and/or executive escalations Leverage the internal, cross-functional community to drive critical situations to resolution Provide customer-facing updates and internal reporting Lead cross-departmental process improvement to maximize customer retention Drive process improvement as part of the overall Services group Provide post-escalation analysis reporting that will capture and help drive process improvements throughout the organization Coordinate and research incident root cause and generate customer-facing root cause analysis documents Evaluate customer requests for service level agreement violations Participate in on-call support 24x7 rotation as assigned What you bring to the team Proficient in using AI tools to help analyse escalated situations and create internal and customer-facing reporting Extensive experience in customer-facing technology roles with escalation management background Solid understanding of Database and SaaS applications Basic familiarity with Linux command line environments An accomplished communicator and influencer, able to thrive in high pressure situations working with customers, users, senior level management, sales and peers Comfortable interacting with executives (customer and internal) Proven success coordinating solutions across multiple cross-functional teams Working knowledge of Salesforce service cloud-based systems Strong business and management acumen Possess the ability to resolve issues and conflicts, as well as be able to take ownership in challenging situations Ability to maintain a calm and professional demeanour in the face of high-pressure, intense escalations Knowledge of email privacy/protection, cloud services, software as a service (SaaS) is preferred Project Management experience, PMP certification is a plus Why Proofpoint? Competitive compensation Comprehensive benefits Career success on your terms Flexible work environment Annual wellness and community outreach days Always on recognition for your contributions Global collaboration and networking opportunities Our Culture Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone. We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to . Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability. Proofpoint has been honored with six Best Places to Work Awards in 2024 by workplace culture leader Comparably, including Best Company Career Growth, Best Company Outlook, Best Global Culture, Best Engineering Teams, Best Sales Teams, and Best HR Teams. We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We're driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people. Our BRAVE Values: At Proofpoint, we are BRAVE in everything we do, and our values aren't just words-they shape how we work, collaborate, and grow. We seek people who are bold enough to challenge the status quo, responsive in the face of ever-evolving threats, and accountable for delivering real impact. We value those with a visionary mindset who anticipate what's next and push cybersecurity forward, and we celebrate exceptional execution that ensures we continue to defend data and protect people. Find your network, your allies, and your biggest fans. We know that work is simply better when you're surrounded by people who inspire you - who share ideas, cheer you on, and genuinely want to see you succeed. That's why we offer social circles, sponsored networks, and connection points across teams and time zones - to help you find your people, build your community, and thrive together. This isn't just a job - it's a mission to protect people and defend data in a world that never slows down. We're building the future of human-centric cybersecurity, and that future belongs to all of us. We take ownership, move fast, and hold ourselves accountable - because that's what it takes to stay ahead. And we do it together, winning as one. Be empowered to reach your full potential through meaningful challenges and personalized support - designed around you and your goals. Whether you're growing as a leader or leveling up from great to exceptional as an individual contributor, we're here to help you get there.
26/07/2026
Full time
About Us: Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people. How We Work Bold in how we dream and innovate Responsive to feedback, challenges and opportunities Accountable for results and best in class outcomes Visionary in future focused problem-solving Exceptional in execution and impact The Role As a member of the Global Critical Situation Management Organization, the Sr. Critical Situation Manager is assigned to help manage the most urgent customer problems involving Proofpoint products and services. This person serves as the communication focal point for the customer and oversees all resolution efforts from the initial problem identification to post-mortem analysis. The Sr. Critical Situation Manager also acts as a customer advocate to help drive improvements in all aspects of business, including Customer Service, Professional Services, Product and Engineering. Your day-to-day Lead high-severity customer incidents (major system outages) and/or executive escalations Leverage the internal, cross-functional community to drive critical situations to resolution Provide customer-facing updates and internal reporting Lead cross-departmental process improvement to maximize customer retention Drive process improvement as part of the overall Services group Provide post-escalation analysis reporting that will capture and help drive process improvements throughout the organization Coordinate and research incident root cause and generate customer-facing root cause analysis documents Evaluate customer requests for service level agreement violations Participate in on-call support 24x7 rotation as assigned What you bring to the team Proficient in using AI tools to help analyse escalated situations and create internal and customer-facing reporting Extensive experience in customer-facing technology roles with escalation management background Solid understanding of Database and SaaS applications Basic familiarity with Linux command line environments An accomplished communicator and influencer, able to thrive in high pressure situations working with customers, users, senior level management, sales and peers Comfortable interacting with executives (customer and internal) Proven success coordinating solutions across multiple cross-functional teams Working knowledge of Salesforce service cloud-based systems Strong business and management acumen Possess the ability to resolve issues and conflicts, as well as be able to take ownership in challenging situations Ability to maintain a calm and professional demeanour in the face of high-pressure, intense escalations Knowledge of email privacy/protection, cloud services, software as a service (SaaS) is preferred Project Management experience, PMP certification is a plus Why Proofpoint? Competitive compensation Comprehensive benefits Career success on your terms Flexible work environment Annual wellness and community outreach days Always on recognition for your contributions Global collaboration and networking opportunities Our Culture Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone. We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to . Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability. Proofpoint has been honored with six Best Places to Work Awards in 2024 by workplace culture leader Comparably, including Best Company Career Growth, Best Company Outlook, Best Global Culture, Best Engineering Teams, Best Sales Teams, and Best HR Teams. We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We're driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people. Our BRAVE Values: At Proofpoint, we are BRAVE in everything we do, and our values aren't just words-they shape how we work, collaborate, and grow. We seek people who are bold enough to challenge the status quo, responsive in the face of ever-evolving threats, and accountable for delivering real impact. We value those with a visionary mindset who anticipate what's next and push cybersecurity forward, and we celebrate exceptional execution that ensures we continue to defend data and protect people. Find your network, your allies, and your biggest fans. We know that work is simply better when you're surrounded by people who inspire you - who share ideas, cheer you on, and genuinely want to see you succeed. That's why we offer social circles, sponsored networks, and connection points across teams and time zones - to help you find your people, build your community, and thrive together. This isn't just a job - it's a mission to protect people and defend data in a world that never slows down. We're building the future of human-centric cybersecurity, and that future belongs to all of us. We take ownership, move fast, and hold ourselves accountable - because that's what it takes to stay ahead. And we do it together, winning as one. Be empowered to reach your full potential through meaningful challenges and personalized support - designed around you and your goals. Whether you're growing as a leader or leveling up from great to exceptional as an individual contributor, we're here to help you get there.
3rd Line Support Engineer
Experis - ManpowerGroup Manchester, Lancashire
Role Title: 3rd Line Support Engineer (Messaging Specialist) Location: Manchester / fully onsite Duration: 6 initial months contract Rate: £470 - £520 Clearance: BPSS required MUST BE PAYE THROUGH UMBRELLA Role Description We are seeking an experienced 3rd Line Support Microsoft 365 Engineer with strong expertise across the Microsoft 365 ecosystem and a specialization in Messaging and Collaboration Services. The successful candidate will act as a senior technical escalation point for complex incidents, problems, and service requests, providing expert-level support for Microsoft Exchange Online, mail flow, security, compliance, and hybrid messaging environments. Your skills and experience Provide expert 3rd line support for enterprise messaging platforms. Manage and troubleshoot complex email security, encryption, and compliance solutions. Investigate and resolve issues relating to email delivery and routing, secure email encryption, message hygiene and filtering, anti spam and anti phishing policies, Data Loss Prevention (DLP), false positives and quarantine management, secure mail exchange with external partners. Configure and support third party messaging security gateways and email protection platforms. Work with Security Operations teams to investigate phishing campaigns, email spoofing attempts, malware incidents, and email based threats. Support regulatory and compliance requirements through secure email and information protection technologies. Microsoft 365 Expertise & SharePoint Skills Strong hands on experience with Microsoft 365 suite, including SharePoint Online, Teams, OneDrive, and Exchange. Expertise in M365 administration, configuration, and tenant management. Knowledge of security, compliance, and governance in M365 environments. Experience with SharePoint site architecture, permissions, content management, and document libraries. Expert level knowledge of Exchange Online, Exchange Hybrid, Exchange Online Protection (EOP), Microsoft Defender for Office 365, Outlook and Outlook connectivity, mail flow management and transport rules, SMTP and email routing. Hands on administration and support of enterprise email security and governance platforms, including Proofpoint, ClearSwift, Egress & PGP.
20/07/2026
Full time
Role Title: 3rd Line Support Engineer (Messaging Specialist) Location: Manchester / fully onsite Duration: 6 initial months contract Rate: £470 - £520 Clearance: BPSS required MUST BE PAYE THROUGH UMBRELLA Role Description We are seeking an experienced 3rd Line Support Microsoft 365 Engineer with strong expertise across the Microsoft 365 ecosystem and a specialization in Messaging and Collaboration Services. The successful candidate will act as a senior technical escalation point for complex incidents, problems, and service requests, providing expert-level support for Microsoft Exchange Online, mail flow, security, compliance, and hybrid messaging environments. Your skills and experience Provide expert 3rd line support for enterprise messaging platforms. Manage and troubleshoot complex email security, encryption, and compliance solutions. Investigate and resolve issues relating to email delivery and routing, secure email encryption, message hygiene and filtering, anti spam and anti phishing policies, Data Loss Prevention (DLP), false positives and quarantine management, secure mail exchange with external partners. Configure and support third party messaging security gateways and email protection platforms. Work with Security Operations teams to investigate phishing campaigns, email spoofing attempts, malware incidents, and email based threats. Support regulatory and compliance requirements through secure email and information protection technologies. Microsoft 365 Expertise & SharePoint Skills Strong hands on experience with Microsoft 365 suite, including SharePoint Online, Teams, OneDrive, and Exchange. Expertise in M365 administration, configuration, and tenant management. Knowledge of security, compliance, and governance in M365 environments. Experience with SharePoint site architecture, permissions, content management, and document libraries. Expert level knowledge of Exchange Online, Exchange Hybrid, Exchange Online Protection (EOP), Microsoft Defender for Office 365, Outlook and Outlook connectivity, mail flow management and transport rules, SMTP and email routing. Hands on administration and support of enterprise email security and governance platforms, including Proofpoint, ClearSwift, Egress & PGP.
Experis
3rd Line Support Engineer
Experis City, Manchester
Role Title: 3rd Line Support Engineer (Messaging Specialist) Location: Manchester / fully onsite Duration: 6 initial months contract Rate 470 - 520 CLearance: BPSS required MUST BE PAYE THROUGH UMBRELLA Role Description: Job Description - Workplace Engineer - 3rd Line Support Microsoft 365 Engineer (Messaging Specialist) We are seeking an experienced 3rd Line Support Microsoft 365 Engineer with strong expertise across the Microsoft 365 ecosystem and a specialization in Messaging and Collaboration Services. The successful candidate will act as a senior technical escalation point for complex incidents, problems, and service requests, providing expert-level support for Microsoft Exchange Online, mail flow, security, compliance, and hybrid messaging environments. Your skills and experience Provide expert 3rd line support for enterprise messaging platforms Manage and troubleshoot complex email security, encryption, and compliance solutions. Investigate and resolve issues relating to: o Email delivery and routing o Secure email encryption o Message hygiene and filtering o Anti-spam and anti-phishing policies o Data Loss Prevention (DLP) o False positives and quarantine management o Secure mail exchange with external partners Configure and support third-party messaging security gateways and email protection platforms. Work with Security Operations teams to investigate phishing campaigns, email spoofing attempts, malware incidents, and email-based threats. Support regulatory and compliance requirements through secure email and information protection technologies. Microsoft 365 Expertise & SharePoint Skills Strong hands-on experience with Microsoft 365 suite, including SharePoint Online, Teams, OneDrive, and Exchange. Expertise in M365 administration, configuration, and tenant management. Knowledge of security, compliance, and governance in M365 environments. Experience with Sharepoint site architecture, permissions, content management, and document libraries Expert-level knowledge of: o Exchange Online o Exchange Hybrid o Exchange Online Protection (EOP) o Microsoft Defender for Office 365 o Outlook and Outlook connectivity o Mail flow management and transport rules o SMTP and email routing Hands-on administration and support of enterprise email security and governance platforms, including: Proofpoint -Mail gateway and security ClearSwift -Routing, DLP and content control Egress & PGP - Encryption and partner mail If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
18/07/2026
Contractor
Role Title: 3rd Line Support Engineer (Messaging Specialist) Location: Manchester / fully onsite Duration: 6 initial months contract Rate 470 - 520 CLearance: BPSS required MUST BE PAYE THROUGH UMBRELLA Role Description: Job Description - Workplace Engineer - 3rd Line Support Microsoft 365 Engineer (Messaging Specialist) We are seeking an experienced 3rd Line Support Microsoft 365 Engineer with strong expertise across the Microsoft 365 ecosystem and a specialization in Messaging and Collaboration Services. The successful candidate will act as a senior technical escalation point for complex incidents, problems, and service requests, providing expert-level support for Microsoft Exchange Online, mail flow, security, compliance, and hybrid messaging environments. Your skills and experience Provide expert 3rd line support for enterprise messaging platforms Manage and troubleshoot complex email security, encryption, and compliance solutions. Investigate and resolve issues relating to: o Email delivery and routing o Secure email encryption o Message hygiene and filtering o Anti-spam and anti-phishing policies o Data Loss Prevention (DLP) o False positives and quarantine management o Secure mail exchange with external partners Configure and support third-party messaging security gateways and email protection platforms. Work with Security Operations teams to investigate phishing campaigns, email spoofing attempts, malware incidents, and email-based threats. Support regulatory and compliance requirements through secure email and information protection technologies. Microsoft 365 Expertise & SharePoint Skills Strong hands-on experience with Microsoft 365 suite, including SharePoint Online, Teams, OneDrive, and Exchange. Expertise in M365 administration, configuration, and tenant management. Knowledge of security, compliance, and governance in M365 environments. Experience with Sharepoint site architecture, permissions, content management, and document libraries Expert-level knowledge of: o Exchange Online o Exchange Hybrid o Exchange Online Protection (EOP) o Microsoft Defender for Office 365 o Outlook and Outlook connectivity o Mail flow management and transport rules o SMTP and email routing Hands-on administration and support of enterprise email security and governance platforms, including: Proofpoint -Mail gateway and security ClearSwift -Routing, DLP and content control Egress & PGP - Encryption and partner mail If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.
Technical Specialist - Detection, Engineering and Automation
Fidelity International
Technical Specialist - Detection, Engineering and Automation申请locations: Kingswood Fields Officetime type: Full timeposted on: 今天发布time left to apply: 结束日期:2026年7月31日 (申请时间还剩 30+ 天)job requisition id: J67604# About the Opportunity Job Type: PermanentApplication Deadline: 31 July 2026 Job Description Title Technical Specialist -Detection, Engineering and Automation Department FIL - Global Cybersecurity Operations Location Kingswood, Surrey Reports To Senior Manager - Detection, Engineering and Automation Level 4 We share a commitment to making things better for clients and each other. We continually explore new technology and different ways of working to put our clients first. So bring your boldest ideas to our Cyber Defense Operations team and feel like you're making progress. About your team Technology function across FIL is responsible for all global aspects of Technology, Digital, Cybersecurity, and Innovation. Fidelity is a value-driven, customer-obsessed organization and in Technology we are fortunate to play a direct role in helping our clients with one of the most important aspects of their lives - their financial well-being. Within the Technology function is our Global Cyber & Information Security (GCIS) that operates enterprise security services and controls. These are designed to mitigate Cyber and Information Security risks ensuring that Fidelity's business operates securely. The Technical Cybersecurity teams monitor both the internal and external threat environment, responding to security alerts and events in close to real time, as well as providing security assurance and access management services across the enterprise technology and business environment. Our global innovative Cyber Defence Operations team sits within GCIS and provides proactive, cutting-edge solutions to protect clients' digital assets and infrastructure against evolving cyber threats. The Detection Engineering & Automation team within our Global Cybersecurity Operations focuses on the development of automated detection capabilities to reduce manual effort of the Global Cybersecurity Operations team freeing up time to focus on real cyber threats. They ensure that security controls are performing effectively and efficiently and that they are feeding into automation technologies allowing the organisation to make intelligent correlated decisions. About your role The Detection Engineering & Automation Specialist plays a critical hands on role in strengthening the Global Cybersecurity Operations capability by building, maintaining and enhancing the security tooling that underpins our detection and response functions. The ideal candidate will work deeply across technologies including SIEM, SOAR, EDR, email security and cloud security platforms, contributing engineering expertise to ensure these controls operate effectively and deliver high quality telemetry. You will be responsible for developing and improving detections, building CI/CD pipelines, onboarding new log sources, implementing automation and supporting technical investigations during security incidents. The ideal candidate has experience using a wide range of security technologies to enhance detection coverage, streamline analyst workflows and support the ongoing maintenance and optimisation of critical security controls. This role is essential in supporting engineering maturity and ensuring our cyber defence capabilities remain modern, integrated and responsive to evolving threats. About you Key Responsibilities The Detection, Automation and Engineering Specialist will be responsible to: Build, maintain and enhance security detections using Sentinel as Code, ensuring accurate and high quality analytics. Develop and maintain CI/CD pipelines to automate deployment of detections, automation playbooks and configuration updates. Engineer and optimise SOAR automation and integrations to reduce manual analyst workload and streamline response processes. Onboard high value security logs into the SIEM from the backlog, ensuring quality, normalisation and integration into detection logic. Support SOC and CIRT during incidents by providing engineering expertise, rapid telemetry onboarding, and timely detection and automation enhancements. Maintain and improve security controls across SIEM, SOAR, EDR, email security and network detection tooling. Assess and implement tool updates, new features and product enhancements, ensuring their secure and effective adoption across the environment. Manage tooling related incidents with vendors and internal teams, ensuring business impact is known, communicated and minimised. Work with global engineering teams to deliver high priority backlog items and operational improvements. Collaborate with front line analysts to identify quick win improvements for detections, automation and tooling integrations. Produce clear documentation, reporting and quality checks to support engineering delivery and continuous improvement. Experience and Skills Required At least 4 years of experience working in a Detection Engineering function, or a combination of Detection Engineering and hands on engineering responsibilities within a SOC environment. Experience focusing on automation, engineering maturity and continuous improvement within security operations. Experience managing and maintaining security tools within a global environment, preferably within Financial Services. Hands on experience developing detections in Microsoft Sentinel, including strong KQL and detection as code practices. Proven ability to build and maintain CI/CD pipelines (Azure DevOps, GitHub Actions) for detection, automation and configuration deployments. Experience onboarding and operationalising new log sources into a SIEM, ensuring data quality, enrichment and alignment with detection logic. Practical experience engineering SIEM, SOAR or EDR platforms and improving their operational effectiveness. Experience supporting security incidents from an engineering perspective by enabling telemetry, building detections and enhancing automation under time pressure. Strong experience with cloud platforms, particularly AWS and Azure, including their native security telemetry and integrations. Experience with email security solutions (such as Proofpoint, Microsoft Defender for Office 365, or equivalent), with a solid understanding of how email telemetry can be used in detection engineering. Strong scripting skills (PowerShell, Python, Bash or JavaScript) for automation, integration and tooling improvements. Familiarity with YAML/JSON, IaC principles and modern automation frameworks. Knowledge of Azure and/or AWS cloud environments and their native security telemetry. Strong communication skills with the ability to take technical feedback from SOC/CIRT and translate it into meaningful engineering improvements. Analytical mindset with a passion for cybersecurity, process improvement and challenging inefficient workflows. Preferred Certifications: Microsoft SC 200, AZ 500, AWS Security Specialty, CySA+, SSCP, OSCP. Feel rewarded For starters, we'll offer you a comprehensive benefits package. We'll value your wellbeing and support your development. And we'll be as flexible as we can about where and when you work - finding a balance that works for all of us. It's all part of our commitment to making you feel motivated by the work you do and happy to be part of our team. For more about our work, our approach to dynamic working and how you could build your future here, visit For more about our work, our approach to dynamic working and how you could build your future here, visit As an international financial services organisation, we are in-scope of international regulations in the way that we carry out our work. This position is involved in work that is regulated by the FCA and/or the PRA and their Individual Conduct Rules (COCON) apply to it, along with any other regulation. We provide training on COCON and how it affects our employees. More information about COCON can be found in the Employment Handbook.
09/07/2026
Full time
Technical Specialist - Detection, Engineering and Automation申请locations: Kingswood Fields Officetime type: Full timeposted on: 今天发布time left to apply: 结束日期:2026年7月31日 (申请时间还剩 30+ 天)job requisition id: J67604# About the Opportunity Job Type: PermanentApplication Deadline: 31 July 2026 Job Description Title Technical Specialist -Detection, Engineering and Automation Department FIL - Global Cybersecurity Operations Location Kingswood, Surrey Reports To Senior Manager - Detection, Engineering and Automation Level 4 We share a commitment to making things better for clients and each other. We continually explore new technology and different ways of working to put our clients first. So bring your boldest ideas to our Cyber Defense Operations team and feel like you're making progress. About your team Technology function across FIL is responsible for all global aspects of Technology, Digital, Cybersecurity, and Innovation. Fidelity is a value-driven, customer-obsessed organization and in Technology we are fortunate to play a direct role in helping our clients with one of the most important aspects of their lives - their financial well-being. Within the Technology function is our Global Cyber & Information Security (GCIS) that operates enterprise security services and controls. These are designed to mitigate Cyber and Information Security risks ensuring that Fidelity's business operates securely. The Technical Cybersecurity teams monitor both the internal and external threat environment, responding to security alerts and events in close to real time, as well as providing security assurance and access management services across the enterprise technology and business environment. Our global innovative Cyber Defence Operations team sits within GCIS and provides proactive, cutting-edge solutions to protect clients' digital assets and infrastructure against evolving cyber threats. The Detection Engineering & Automation team within our Global Cybersecurity Operations focuses on the development of automated detection capabilities to reduce manual effort of the Global Cybersecurity Operations team freeing up time to focus on real cyber threats. They ensure that security controls are performing effectively and efficiently and that they are feeding into automation technologies allowing the organisation to make intelligent correlated decisions. About your role The Detection Engineering & Automation Specialist plays a critical hands on role in strengthening the Global Cybersecurity Operations capability by building, maintaining and enhancing the security tooling that underpins our detection and response functions. The ideal candidate will work deeply across technologies including SIEM, SOAR, EDR, email security and cloud security platforms, contributing engineering expertise to ensure these controls operate effectively and deliver high quality telemetry. You will be responsible for developing and improving detections, building CI/CD pipelines, onboarding new log sources, implementing automation and supporting technical investigations during security incidents. The ideal candidate has experience using a wide range of security technologies to enhance detection coverage, streamline analyst workflows and support the ongoing maintenance and optimisation of critical security controls. This role is essential in supporting engineering maturity and ensuring our cyber defence capabilities remain modern, integrated and responsive to evolving threats. About you Key Responsibilities The Detection, Automation and Engineering Specialist will be responsible to: Build, maintain and enhance security detections using Sentinel as Code, ensuring accurate and high quality analytics. Develop and maintain CI/CD pipelines to automate deployment of detections, automation playbooks and configuration updates. Engineer and optimise SOAR automation and integrations to reduce manual analyst workload and streamline response processes. Onboard high value security logs into the SIEM from the backlog, ensuring quality, normalisation and integration into detection logic. Support SOC and CIRT during incidents by providing engineering expertise, rapid telemetry onboarding, and timely detection and automation enhancements. Maintain and improve security controls across SIEM, SOAR, EDR, email security and network detection tooling. Assess and implement tool updates, new features and product enhancements, ensuring their secure and effective adoption across the environment. Manage tooling related incidents with vendors and internal teams, ensuring business impact is known, communicated and minimised. Work with global engineering teams to deliver high priority backlog items and operational improvements. Collaborate with front line analysts to identify quick win improvements for detections, automation and tooling integrations. Produce clear documentation, reporting and quality checks to support engineering delivery and continuous improvement. Experience and Skills Required At least 4 years of experience working in a Detection Engineering function, or a combination of Detection Engineering and hands on engineering responsibilities within a SOC environment. Experience focusing on automation, engineering maturity and continuous improvement within security operations. Experience managing and maintaining security tools within a global environment, preferably within Financial Services. Hands on experience developing detections in Microsoft Sentinel, including strong KQL and detection as code practices. Proven ability to build and maintain CI/CD pipelines (Azure DevOps, GitHub Actions) for detection, automation and configuration deployments. Experience onboarding and operationalising new log sources into a SIEM, ensuring data quality, enrichment and alignment with detection logic. Practical experience engineering SIEM, SOAR or EDR platforms and improving their operational effectiveness. Experience supporting security incidents from an engineering perspective by enabling telemetry, building detections and enhancing automation under time pressure. Strong experience with cloud platforms, particularly AWS and Azure, including their native security telemetry and integrations. Experience with email security solutions (such as Proofpoint, Microsoft Defender for Office 365, or equivalent), with a solid understanding of how email telemetry can be used in detection engineering. Strong scripting skills (PowerShell, Python, Bash or JavaScript) for automation, integration and tooling improvements. Familiarity with YAML/JSON, IaC principles and modern automation frameworks. Knowledge of Azure and/or AWS cloud environments and their native security telemetry. Strong communication skills with the ability to take technical feedback from SOC/CIRT and translate it into meaningful engineering improvements. Analytical mindset with a passion for cybersecurity, process improvement and challenging inefficient workflows. Preferred Certifications: Microsoft SC 200, AZ 500, AWS Security Specialty, CySA+, SSCP, OSCP. Feel rewarded For starters, we'll offer you a comprehensive benefits package. We'll value your wellbeing and support your development. And we'll be as flexible as we can about where and when you work - finding a balance that works for all of us. It's all part of our commitment to making you feel motivated by the work you do and happy to be part of our team. For more about our work, our approach to dynamic working and how you could build your future here, visit For more about our work, our approach to dynamic working and how you could build your future here, visit As an international financial services organisation, we are in-scope of international regulations in the way that we carry out our work. This position is involved in work that is regulated by the FCA and/or the PRA and their Individual Conduct Rules (COCON) apply to it, along with any other regulation. We provide training on COCON and how it affects our employees. More information about COCON can be found in the Employment Handbook.
Technical Specialist - Detection, Engineering and Automation
Fidelity International Lower Kingswood, Surrey
Job Opportunity Technical Specialist - Detection, Engineering and Automation Department FIL - Global Cybersecurity Operations Location: Kingswood, Surrey Reports To: Senior Manager - Detection, Engineering and Automation Level: 4 Job Type: Permanent Application Deadline: 31 July 2026 About the Team Technology function across FIL is responsible for all global aspects of Technology, Digital, Cybersecurity and Innovation. Fidelity is a value driven, customer obsessed organization and in Technology we play a direct role in helping clients with one of the most important aspects of their lives - their financial well being. Within the Technology function is GCIS (Global Cyber & Information Security) that operates enterprise security services and controls. These are designed to mitigate Cyber and Information Security risks ensuring that Fidelity's business operates securely. The Technical Cybersecurity teams monitor both the internal and external threat environment, respond to security alerts and events in close to real time, and provide security assurance and access management services across the enterprise technology and business environment. Our global innovative Cyber Defence Operations team sits within GCIS and provides proactive, cutting edge solutions to protect clients' digital assets and infrastructure against evolving cyber threats. The Detection Engineering & Automation team within Global Cybersecurity Operations focuses on the development of automated detection capabilities to reduce manual effort of the Global Cybersecurity Operations team, freeing up time to focus on real cyber threats. They ensure that security controls are performing effectively and efficiently, feeding into automation technologies and allowing the organisation to make intelligent correlated decisions. About Your Role The Detection Engineering & Automation Specialist plays a critical hands on role in strengthening the Global Cybersecurity Operations capability by building, maintaining and enhancing the security tooling that underpins our detection and response functions. The ideal candidate will work deeply across technologies including SIEM, SOAR, EDR, email security and cloud security platforms, contributing engineering expertise to ensure these controls operate effectively and deliver high quality telemetry. You will be responsible for developing and improving detections, building CI/CD pipelines, onboarding new log sources, implementing automation and supporting technical investigations during security incidents. Key Responsibilities Build, maintain and enhance security detections using Sentinel as Code, ensuring accurate and high quality analytics. Develop and maintain CI/CD pipelines to automate deployment of detections, automation playbooks and configuration updates. Engineer and optimise SOAR automation and integrations to reduce manual analyst workload and streamline response processes. Onboard high value security logs into the SIEM from the backlog, ensuring quality, normalisation and integration into detection logic. Support SOC and CIRT during incidents by providing engineering expertise, rapid telemetry onboarding, and timely detection and automation enhancements. Maintain and improve security controls across SIEM, SOAR, EDR, email security and network detection tooling. Assess and implement tool updates, new features and product enhancements, ensuring their secure and effective adoption across the environment. Manage tooling related incidents with vendors and internal teams, ensuring business impact is known, communicated and minimised. Work with global engineering teams to deliver high priority backlog items and operational improvements. Collaborate with front line analysts to identify quick win improvements for detections, automation and tooling integrations. Produce clear documentation, reporting and quality checks to support engineering delivery and continuous improvement. Experience and Skills Required At least 4 years of experience working in a Detection Engineering function, or a combination of Detection Engineering and hands on engineering responsibilities within a SOC environment. Experience focusing on automation, engineering maturity and continuous improvement within security operations. Experience managing and maintaining security tools within a global environment, preferably within Financial Services. Hands on experience developing detections in Microsoft Sentinel, including strong KQL and detection as code practices. Proven ability to build and maintain CI/CD pipelines (Azure DevOps, GitHub Actions) for detection, automation and configuration deployments. Experience onboarding and operationalising new log sources into a SIEM, ensuring data quality, enrichment and alignment with detection logic. Practical experience engineering SIEM, SOAR or EDR platforms and improving their operational effectiveness. Experience supporting security incidents from an engineering perspective by enabling telemetry, building detections and enhancing automation under time pressure. Strong experience with cloud platforms, particularly AWS and Azure, including their native security telemetry and integrations. Experience with email security solutions (such as Proofpoint, Microsoft Defender for Office 365, or equivalent), with a solid understanding of how email telemetry can be used in detection engineering. Strong scripting skills (PowerShell, Python, Bash or JavaScript) for automation, integration and tooling improvements. Familiarity with YAML/JSON, IaC principles and modern automation frameworks. Knowledge of Azure and/or AWS cloud environments and their native security telemetry. Strong communication skills with the ability to take technical feedback from SOC/CIRT and translate it into meaningful engineering improvements. Analytical mindset with a passion for cybersecurity, process improvement and challenging inefficient workflows. Preferred Certifications Microsoft SC 200 AZ 500 AWS Security Specialty CySA+ SSCP OSCP Benefits We'll offer a comprehensive benefits package to support your wellbeing and development. We also provide flexible working arrangements to help you find a balance that works for everyone. Regulatory Information As an international financial services organisation, we are in scope of international regulations in the way that we carry out our work. This position is involved in work that is regulated by the FCA and/or the PRA and their Individual Conduct Rules (COCON) apply to it, along with any other regulation. We provide training on COCON and how it affects our employees. More information about COCON can be found in the Employment Handbook.
04/07/2026
Full time
Job Opportunity Technical Specialist - Detection, Engineering and Automation Department FIL - Global Cybersecurity Operations Location: Kingswood, Surrey Reports To: Senior Manager - Detection, Engineering and Automation Level: 4 Job Type: Permanent Application Deadline: 31 July 2026 About the Team Technology function across FIL is responsible for all global aspects of Technology, Digital, Cybersecurity and Innovation. Fidelity is a value driven, customer obsessed organization and in Technology we play a direct role in helping clients with one of the most important aspects of their lives - their financial well being. Within the Technology function is GCIS (Global Cyber & Information Security) that operates enterprise security services and controls. These are designed to mitigate Cyber and Information Security risks ensuring that Fidelity's business operates securely. The Technical Cybersecurity teams monitor both the internal and external threat environment, respond to security alerts and events in close to real time, and provide security assurance and access management services across the enterprise technology and business environment. Our global innovative Cyber Defence Operations team sits within GCIS and provides proactive, cutting edge solutions to protect clients' digital assets and infrastructure against evolving cyber threats. The Detection Engineering & Automation team within Global Cybersecurity Operations focuses on the development of automated detection capabilities to reduce manual effort of the Global Cybersecurity Operations team, freeing up time to focus on real cyber threats. They ensure that security controls are performing effectively and efficiently, feeding into automation technologies and allowing the organisation to make intelligent correlated decisions. About Your Role The Detection Engineering & Automation Specialist plays a critical hands on role in strengthening the Global Cybersecurity Operations capability by building, maintaining and enhancing the security tooling that underpins our detection and response functions. The ideal candidate will work deeply across technologies including SIEM, SOAR, EDR, email security and cloud security platforms, contributing engineering expertise to ensure these controls operate effectively and deliver high quality telemetry. You will be responsible for developing and improving detections, building CI/CD pipelines, onboarding new log sources, implementing automation and supporting technical investigations during security incidents. Key Responsibilities Build, maintain and enhance security detections using Sentinel as Code, ensuring accurate and high quality analytics. Develop and maintain CI/CD pipelines to automate deployment of detections, automation playbooks and configuration updates. Engineer and optimise SOAR automation and integrations to reduce manual analyst workload and streamline response processes. Onboard high value security logs into the SIEM from the backlog, ensuring quality, normalisation and integration into detection logic. Support SOC and CIRT during incidents by providing engineering expertise, rapid telemetry onboarding, and timely detection and automation enhancements. Maintain and improve security controls across SIEM, SOAR, EDR, email security and network detection tooling. Assess and implement tool updates, new features and product enhancements, ensuring their secure and effective adoption across the environment. Manage tooling related incidents with vendors and internal teams, ensuring business impact is known, communicated and minimised. Work with global engineering teams to deliver high priority backlog items and operational improvements. Collaborate with front line analysts to identify quick win improvements for detections, automation and tooling integrations. Produce clear documentation, reporting and quality checks to support engineering delivery and continuous improvement. Experience and Skills Required At least 4 years of experience working in a Detection Engineering function, or a combination of Detection Engineering and hands on engineering responsibilities within a SOC environment. Experience focusing on automation, engineering maturity and continuous improvement within security operations. Experience managing and maintaining security tools within a global environment, preferably within Financial Services. Hands on experience developing detections in Microsoft Sentinel, including strong KQL and detection as code practices. Proven ability to build and maintain CI/CD pipelines (Azure DevOps, GitHub Actions) for detection, automation and configuration deployments. Experience onboarding and operationalising new log sources into a SIEM, ensuring data quality, enrichment and alignment with detection logic. Practical experience engineering SIEM, SOAR or EDR platforms and improving their operational effectiveness. Experience supporting security incidents from an engineering perspective by enabling telemetry, building detections and enhancing automation under time pressure. Strong experience with cloud platforms, particularly AWS and Azure, including their native security telemetry and integrations. Experience with email security solutions (such as Proofpoint, Microsoft Defender for Office 365, or equivalent), with a solid understanding of how email telemetry can be used in detection engineering. Strong scripting skills (PowerShell, Python, Bash or JavaScript) for automation, integration and tooling improvements. Familiarity with YAML/JSON, IaC principles and modern automation frameworks. Knowledge of Azure and/or AWS cloud environments and their native security telemetry. Strong communication skills with the ability to take technical feedback from SOC/CIRT and translate it into meaningful engineering improvements. Analytical mindset with a passion for cybersecurity, process improvement and challenging inefficient workflows. Preferred Certifications Microsoft SC 200 AZ 500 AWS Security Specialty CySA+ SSCP OSCP Benefits We'll offer a comprehensive benefits package to support your wellbeing and development. We also provide flexible working arrangements to help you find a balance that works for everyone. Regulatory Information As an international financial services organisation, we are in scope of international regulations in the way that we carry out our work. This position is involved in work that is regulated by the FCA and/or the PRA and their Individual Conduct Rules (COCON) apply to it, along with any other regulation. We provide training on COCON and how it affects our employees. More information about COCON can be found in the Employment Handbook.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board