At a Glance
- Tasks: Lead security operations, manage incidents, and implement robust security controls.
- Company: Dynamic tech company focused on innovative security solutions.
- Benefits: 27 days leave, healthcare plan, flexible working, and career development.
- Why this job: Make a real impact in cybersecurity while growing your skills in a vibrant team.
- Qualifications: Experience in security operations and strong communication skills.
- Other info: Join a culture of collaboration with regular team events and training opportunities.
The predicted salary is between 54000 - 75000 £ per year.
Salary: Up to £80,000 + benefits
Location: Hybrid — 3 days per week in Guildford
This is an excellent opportunity to shape and mature a growing security capability within a forward-thinking, cloud-first environment.
Security & Infrastructure Engineer
My client is undergoing a major technology evolution, modernising and strengthening its hybrid cloud estate with a strong focus on security, resilience, and scalable growth. They are looking for a hands-on Security & Infrastructure Engineer to help elevate and continuously enhance their security posture across cloud, on-prem, and SaaS environments.
This is a practical engineering role suited to someone who enjoys operating at pace, solving complex problems, and driving security best practice across a diverse technology landscape.
Cloud & Infrastructure Security
- Configure and support Azure security capabilities (Defender, Firewall, Policy, monitoring, backup).
- Implement secure cloud architecture aligned to best practice landing zone principles.
- Manage conditional access, patching, and hybrid infrastructure security controls.
- Contribute to Infrastructure-as-Code and secure CI/CD practices.
Microsoft 365 & Identity Security
- Strengthen security across Microsoft 365, Entra ID, and associated services.
- Enhance identity governance, privileged access management, DLP, and data classification.
- Support Defender tooling and alert management.
Threat & Vulnerability Management
- Work with SOC partners to triage and respond to alerts.
- Conduct vulnerability assessments and coordinate remediation efforts.
- Enhance endpoint protection and XDR capabilities.
Security Operations & Compliance
- Harden Windows Server, Active Directory, endpoints, and virtual desktop environments.
- Maintain logging, monitoring, and alerting coverage.
- Support external audits and recognised security certifications (e.g., Cyber Essentials Plus, ISO 27001, SOC 2).
About You
- 3+ years’ experience in security engineering or cyber operations.
- Strong hands-on Azure and Microsoft 365 security expertise.
- Experience with vulnerability management and endpoint protection tooling.
- Solid understanding of Zero Trust principles and cloud security architecture.
- Comfortable working cross-functionally and influencing security best practice.
Relevant certifications (Microsoft Security, Azure, ISC2, CompTIA, CCSK) and experience with Infrastructure-as-Code frameworks are advantageous.
Cyber Security Engineer employer: Digital Waffle
Contact Detail:
Digital Waffle Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. We can’t stress enough how personal connections can lead to job opportunities that aren’t even advertised.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects and contributions to security operations. This gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by practising common questions related to security incidents and incident response plans. We recommend doing mock interviews with friends or using online platforms to boost your confidence.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Cyber Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Engineer role. Highlight your experience in security operations, especially with cloud and on-premise environments. We want to see how your skills align with our needs!
Showcase Your Skills: Don’t just list your skills; demonstrate them! Use specific examples of how you've implemented security controls or managed incidents in the past. This helps us see your hands-on experience in action.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Explain why you’re passionate about security operations and how you can contribute to our team. Keep it engaging and relevant to the job description.
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates!
How to prepare for a job interview at Digital Waffle
✨Know Your Security Frameworks
Make sure you brush up on key security frameworks like NIST, ISO 27001, and CIS. Be ready to discuss how you've applied these in your previous roles, especially in relation to cloud and on-premise environments.
✨Showcase Your Incident Response Skills
Prepare examples of past security incidents you've managed. Highlight your approach to investigations and resolutions, and be ready to discuss how you would drive the creation and execution of incident response plans.
✨Demonstrate Automation Proficiency
Since automation is crucial in this role, come prepared to talk about your experience with scripting and Infrastructure as Code, particularly with tools like Terraform. Share specific instances where you've streamlined security processes.
✨Communicate Effectively
Strong communication skills are a must. Practice explaining complex security concepts in simple terms, as you'll need to coach and mentor colleagues. Show that you can engage with both technical and non-technical team members.