At a Glance
- Tasks: Protect and enhance security across hybrid IT environments, including Azure and VMware.
- Company: Join a forward-thinking organisation dedicated to cyber resilience and innovation.
- Benefits: Competitive salary, hybrid work model, and opportunities for professional growth.
- Other info: Collaborative environment with a focus on continuous improvement and career development.
- Why this job: Make a real difference in safeguarding against cyber threats and enhancing business continuity.
- Qualifications: Experience in cyber security engineering and strong troubleshooting skills required.
The predicted salary is between 65000 - 65000 £ per year.
The Cyber Security Engineer will help protect and improve security across a hybrid IT environment, spanning Microsoft Azure cloud services, on-prem VMware infrastructure, and the network estate (including Cisco Meraki). The role is hands-on and operational, partnering with IT teams to implement security controls, support monitoring and incident response through Sophos MDR, and improve cyber resilience by supporting Disaster Recovery (DR) testing and Business Continuity (BC) readiness.
Key Responsibilities
- Cloud Security (Azure): Implement and maintain Azure security controls across identity, networking, compute and storage. Support governance guardrails (Azure Policy), secure baselines and logging/monitoring for cloud workloads. Contribute to security design reviews for new services and changes to ensure secure-by-default patterns.
- On-Prem Security (VMware): Support hardening and secure operation of VMware vSphere (vCenter/ESXi) and associated management networks. Assist with vulnerability remediation, patching coordination and secure configuration for Windows/Linux servers. Improve segmentation and admin access controls for critical systems and management planes.
- Network Security (Cisco Meraki): Support secure configuration of Cisco Meraki (MX/MS/MR as applicable), including firewall rules, segmentation (VLANs) and secure admin access. Assist with secure remote access/VPN configurations where required and ensure changes follow change control. Enable and review network security logging/alerting (e.g., syslog/SIEM integrations where applicable).
- Monitoring, Detection & Incident Response (Sophos MDR): Act as the internal technical point of contact for Sophos MDR and ensure smooth collaboration with MDR analysts. Maintain coverage and telemetry health (endpoints/servers) and support onboarding of new assets into MDR. Triage MDR escalations, coordinate containment/remediation with IT teams, and document outcomes and lessons learned. Maintain and improve incident runbooks and response playbooks; support post-incident improvements.
- Vulnerability & Secure Configuration: Support vulnerability scanning, prioritisation, remediation tracking and verification. Help define and apply secure configuration baselines (e.g., CIS-aligned) across cloud, servers and network devices. Work with IT teams to reduce attack surface and prevent repeat security issues. Update, maintain and improve security policies, standards and supporting procedures to reflect evolving threats, business needs and technology changes.
- Disaster Recovery (DR) & Business Continuity (BC) Support: Support DR & BC testing activities. Assist planning, execution support, recovery validation and evidence capture. Help maintain recovery runbooks, dependency maps, and escalation/communications pathways for major incidents. Support secure backup and recovery practices (access control, separation of duties, restoration validation).
Ways of Working
- Collaborate closely with internal infrastructure, business systems, service desk teams, relevant business units, and delivery partners; ensure standards and runbooks are thoroughly documented so Security knowledge is accessible and not confined to a single individual.
- Participate as part of the out-of-hours support team rota.
Required Skills & Experience
- Demonstrable experience in a cyber security engineering / infrastructure security role within a hybrid environment.
- Hands-on knowledge of Azure security fundamentals (identity, networking, logging/monitoring, governance).
- Practical understanding of VMware vSphere (vCenter/ESXi) and on-prem infrastructure fundamentals.
- Networking security fundamentals: segmentation (VLANs), firewall policy management, VPN concepts, and logging/visibility.
- Experience supporting security monitoring and incident handling processes, working with operational IT teams.
- Experience supporting DR testing and recovery activities (planning support, execution support, documentation).
What We're Looking For (Must-have)
- Strong technical troubleshooting and methodical approach to investigations.
- Ability to communicate clearly with both technical and non-technical stakeholders.
- Good documentation discipline (runbooks, diagrams, test evidence).
- Ability to prioritise and manage multiple tasks in a busy operational environment.
- Ownership mindset drives actions through to completion and follows up on remediation.
Nice-to-have
- Experience with Sophos Central / Sophos MDR operations (coverage management, escalation handling, policy tuning).
- Familiarity with Microsoft Defender suite and/or Microsoft Sentinel.
- Scripting/automation skills (PowerShell, KQL, Python).
- Knowledge of ransomware recovery patterns (immutable backups, restore validation, offline documentation).
- Exposure to audit/compliance requirements (ISO 27001, NIST, CIS) and evidence collection.
Technical Skills
- Cloud: Azure security controls, Entra ID (Azure AD), Conditional Access, RBAC, Azure Policy, secure logging/monitoring.
- On-prem: VMware vSphere (vCenter/ESXi), Windows/Linux hardening, patching and vulnerability remediation workflows.
- Networking: Cisco Meraki administration concepts (MX/MS/MR), firewall rules, VLAN segmentation, VPN, secure admin access, logging/alerting.
- Security Ops: Alert triage, incident response support, evidence capture, runbooks/playbooks, root cause analysis.
- Resilience: DR testing support, Dell RecoverPoint familiarity, recovery runbooks, RTO/RPO awareness.
Certifications
- Certified Cloud Security Professional (CCSP)
- Microsoft: AZ-500, SC-200, SC-300
- CompTIA: Security+, CySA+
- Cisco/Meraki or VMware certifications
- Vendor tooling certifications (Sophos/Microsoft)
Soft Skills
- Collaborative and service-oriented; works effectively with Infrastructure, Network, Service Desk and Application teams.
- Calm under pressure during incidents and recovery tests.
- Strong attention to detail with a practical, risk-based mindset.
- Continuous improvement mentality learns, adapts, and raises the bar on controls and processes.
Why This Role Matters
This role strengthens the organisation's ability to prevent, detect and respond to cyber threats across cloud, on-prem and network environments. It also supports cyber resilience by helping ensure DR and recovery processes are tested, evidenced and continuously improved reducing downtime and business impact during outages or cyber incidents.
Cyber Security Engineer employer: DCV Technologies Limited
Join a forward-thinking company that values innovation and collaboration, where as a Senior Hardware Engineer, you will be part of a dynamic team dedicated to developing cutting-edge electronic systems. Our supportive work culture fosters professional growth through continuous learning opportunities and mentorship, while our location offers a vibrant community with access to top-notch resources and amenities, making it an ideal place for both personal and career development.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security Engineer
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including DCV Technologies Limited, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through DCV Technologies Limited
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at DCV Technologies Limited. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Cyber Security Engineer
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at DCV Technologies Limited insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to DCV Technologies Limited that you’re committed to staying ahead in the game.
How to prepare for a job interview at DCV Technologies Limited
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at DCV Technologies Limited to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at DCV Technologies Limited.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.