Cyber Security Engineer
The Cyber Security Engineer joins our client's Proactive Security team, focusing on developing security technology stacks to ensure threat mitigation through offensive and preventive measures. The role offers the opportunity to work within a high-calibre security environment dedicated to safeguarding information assets.
Our client is a leading financial institution committed to protecting its infrastructure and client data through innovative security solutions. The organisation values proactive risk management and employs advanced security technologies to stay ahead of emerging threats.
Role Overview
The Cyber Security Engineer will develop and maintain threat models, assess security controls, and build tools for proactive detection, configuration drift monitoring, and automated remediation. You will be responsible for managing SIEM systems, developing use cases, and refining security monitoring practices. Ensuring the integrity and performance of security infrastructure and collaborating closely with incident response teams to detect and respond to threats are key components of the role. Success hinges on delivering robust security solutions and continuously improving detection capabilities and operational procedures.
Key Skills & Experience
- Develop and maintain threat models for information assets and services.
- Build and optimise security tools for detection, remediation, and orchestration.
- Design, implement, and maintain SIEM workspaces and develop custom queries for threat hunting and incident investigation.
- Develop, test, and deploy advanced threat detection use cases based on vulnerability insights.
- Analyse security controls and collaborate with the SOC team to enhance detection logic.
- Provide security guidance on application and infrastructure protection.
- Automate security tasks using scripting languages such as PowerShell and Python.
- Manage security infrastructure related to privileged access, session management, and cloud security principles.
Requirements
- Right to work in the UK.
- Proven experience with SIEM (implementation, configuration, custom rule creation).
- Minimum of 5+ years in Security Engineering, Security Automation, or similar roles.
- Extensive hands-on experience with EDR and SIEM technology stacks.
- In-depth knowledge of Active Directory security principles, Windows event collection, and network security.
- Proficiency in scripting (PowerShell, Python).
- Familiarity with cloud security principles in Azure, GCP, and AWS.
- Knowledge of operating systems including Windows Server and UNIX variants.
- Industry certifications such as AZ-500, SC-200, SC-900, or similar.
- On-site based in the UK, working in a hybrid environment.
#J-18808-Ljbffr
Cyber Security Engineer - AVP in London employer: Gravitas Group
As a global leader in risk and reinsurance, our client offers an exceptional work environment that prioritises collaboration, inclusivity, and professional development. The role of International Contracts Leader not only provides the opportunity to shape contract strategy across UK and Europe but also fosters personal growth through exposure to complex contractual issues and stakeholder management. With a commitment to innovation and high-quality standards, employees are empowered to thrive in a hybrid working model while contributing to meaningful solutions for clients.