At a Glance
- Tasks: Lead the charge against cyber threats and enhance data security strategies.
- Company: Join a forward-thinking cybersecurity firm dedicated to protecting vital information.
- Benefits: Competitive salary, professional development, and a chance to work with cutting-edge technology.
- Other info: Opportunity for continuous learning and career advancement in a dynamic environment.
- Why this job: Make a real difference in cybersecurity while collaborating with top professionals in the field.
- Qualifications: Experience with Microsoft Sentinel and cloud security; strong analytical skills required.
The predicted salary is between 70000 - 90000 £ per year.
Provide expert advice on the defences against cyber threats, data breaches, and emerging risks. This includes offering guidance on the selection, design, justification, implementation, and operational management of cybersecurity strategies, technologies, and standards. Contribute to the development and refinement of controls and processes to ensure the safety, confidentiality, integrity, availability, and overall security of data stored on systems. You will be responsible for identifying gaps in existing cybersecurity policies and procedures and, in collaboration with security, network, information governance, and technical leads, developing new measures to address these gaps.
KEY RESPONSIBILITIES:
- You will work closely with system and service owners, as well as internal and external stakeholders, to design, implement, and enforce appropriate protective and detective security controls, policies, and procedures.
- The role includes the administration and operational management of security tooling and SIEM platforms, with responsibility for monitoring, detecting, and responding to cyber threats, intrusions, and unauthorised or suspicious activity. This includes Microsoft Sentinel (data and source tuning, creation and maintenance of workbooks and connectors, and threat intelligence review), Microsoft Defender for Endpoint and Defender for Cloud, and Darktrace, including system and model tuning, email module management, and configuration of autonomous response actions.
- You will be responsible for incident response activities, including triaging security alerts, investigating incidents, coordinating escalation and remediation, and conducting root cause analysis. You must be able to communicate effectively about security incidents and cyber risks to both technical and non-technical stakeholders.
- The role works closely with the Security Operations Centre (SOC) partner, supporting the assessment and investigation of alerts and contributing to the development and refinement of incident response plans and playbooks.
- You will support vulnerability management activities, including vulnerability assessments, annual audits, and penetration testing. This includes preparing and presenting incident, threat, and compliance reporting to stakeholders at all levels, including compiling a monthly SIRO report.
- Continuous improvement is a core responsibility. You will conduct post-incident reviews, recommend control and process improvements, and contribute to the creation and maintenance of cybersecurity governance documentation. You will also research emerging cyber threats and mitigation strategies and provide reports or presentations to senior stakeholders as required.
- The role supports cybersecurity training and awareness initiatives, promoting a strong security culture and helping to upskill colleagues in cybersecurity best practices.
- You will also collaborate with solution architects and project teams to ensure security is embedded into system and application designs, supporting secure architecture and delivery from the outset.
- Ensure security operations align with regulatory standards and frameworks such as NIST, ISO 27001, and NCSC CAF.
Person Specification
Essential:
- Demonstrated experience with Microsoft Sentinel, Microsoft Defender for Endpoint/Cloud SIEM tools, threat intelligence platforms, and vulnerability management.
- Technical experience securing Microsoft Azure and Amazon Web Services cloud environments as well as on-premise/virtual Microsoft technologies.
- Strong analytical, communication, and problem-solving skills, including the ability to produce clear technical and non-technical reports.
- Ability to analyse and interpret security events/logs and perform remediation work to address security issues.
Desirable:
- Recognised cybersecurity certifications (e.g., CompTIA Security+, CEH, GIAC, CISSP).
- Experience with DarkTrace.
Qualifications
Bachelor's degree in Cybersecurity or Computer Science.
Principal Cyber Security Engineer in London employer: Hays Specialist Recruitment Limited
Contact Detail:
Hays Specialist Recruitment Limited Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Principal Cyber Security Engineer in London
✨Tip Number 1
Network like a pro! Reach out to your connections in the cybersecurity field and let them know you're on the hunt for a Principal Cyber Security Engineer role. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Prepare a portfolio or a presentation that highlights your experience with Microsoft Sentinel, Defender tools, and any successful projects you've led. This will help you stand out during interviews and give you something tangible to discuss.
✨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or mentors to refine your ability to communicate complex cybersecurity concepts clearly. This is crucial when talking to both technical and non-technical stakeholders.
✨Tip Number 4
Don't forget to apply through our website! We’ve got loads of resources to help you land that dream job, and applying directly can sometimes give you an edge over other candidates. Plus, it shows you're serious about joining our team!
We think you need these skills to ace Principal Cyber Security Engineer in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Principal Cyber Security Engineer role. Highlight your experience with Microsoft Sentinel, Defender tools, and any relevant certifications. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a perfect fit for our team. Keep it concise but impactful – we love a good story!
Showcase Your Problem-Solving Skills: In your application, don’t forget to mention specific examples where you've tackled cybersecurity challenges. We’re keen on seeing how you’ve identified gaps and implemented solutions in past roles. It’s all about demonstrating your expertise!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy – just a few clicks and you’re done!
How to prepare for a job interview at Hays Specialist Recruitment Limited
✨Know Your Cybersecurity Tools
Make sure you’re well-versed in the specific tools mentioned in the job description, like Microsoft Sentinel and Darktrace. Be ready to discuss your hands-on experience with these platforms and how you've used them to monitor and respond to threats.
✨Showcase Your Incident Response Skills
Prepare examples of past incidents you've managed, focusing on your role in triaging alerts and conducting root cause analysis. Highlight how you communicated findings to both technical and non-technical stakeholders, as this is crucial for the role.
✨Understand Compliance Standards
Brush up on relevant compliance frameworks such as NIST and ISO 27001. Be prepared to discuss how you’ve ensured security operations align with these standards in your previous roles, as this will demonstrate your understanding of regulatory requirements.
✨Emphasise Continuous Improvement
Think about instances where you’ve contributed to post-incident reviews or recommended process improvements. Sharing these experiences will show your commitment to enhancing cybersecurity measures and fostering a strong security culture.