The Cyber Security Engineer will be a vital member of our newly established SecOps team, reporting directly to the Infrastructure Platforms Manager. This position is crucial in implementing and maintaining robust security measures across our infrastructure, as well as managing incident response.The Cyber Security Engineer will spearhead key security initiatives in collaboration with the Lead Cyber Security Engineer and playing a pivotal role in enhancing our overall security posture. Additionally, the role will support the firm in its pursuit of ISO 27001 certification and the implementation of CIS controls.Roles and Responsibilities•Maintenance of the CrowdStrike platform, including configuring EDR policies, tuning SIEM rules, and optimizing the system for performance•Work with the network engineers to implement posture management i.e. ICE/NAC segmentation/lateral movement control and firewalls•Proactive collaboration with InfoSec to align CrowdStrike and other key security platforms with our security strategy and policies•Leading or participating in incident response efforts, conducting root cause analysis, and developing runbooks for incident handling•Monitoring for security threats, analysing alerts, and responding to incidents using CrowdStrike and other security tools. Conduct vulnerability scans and support remediation and risk mitigation efforts•Oversee WAF, DDoS, VPN, and perimeter firewalls•Work with Endpoints team to administer MFA, SSO, PAM, MDM/MAM, and Conditional Access•Maintain security certificates, encryption keys, and IDS/IPS systems•Collaborate with third-party penetration testers to identify, prioritize, and remediate security vulnerabilities•Creating detailed reports on detected threats, incidents, and response actions, as well as documenting configurations, processes, and runbooks.•Keeping well-informed of the latest cybersecurity trends, emerging threats, and updates•Comply with all relevant legal and regulatory obligations including the Solicitors Regulation Authority (SRA) Standards and Regulations, and Principles.Certified Information Systems Security Professional - CISSP•Crest Practitioner Security Analyst - CPSA•Palo Alto Network Certified Security Operations ProfessionalCompetencies•Working together•Integrity and respect•Inclusive•Personal impact and growth•Driving high standards•Commercial mindset•Client - centric•Responsible BusinessHybrid working - We adopt a hybrid and flexible working approach, dependent on the requirements of the role and subject to manager approval.Clicking 'apply' will direct you to the application tracking system, hosted for us by Reach-ATS.com.
Cyber Security Engineer (Hybrid in London employer: Charles Russell Speechlys
As an Events Manager at our firm, you will thrive in a dynamic and supportive environment that values creativity and collaboration. We offer a hybrid working model, competitive benefits, and ample opportunities for professional growth, all while being part of a team that delivers high-profile events across the UK and internationally. Join us to make a meaningful impact and develop your career in a culture that prioritises excellence and client satisfaction.