At a Glance
- Tasks: Protect against cyber threats and enhance security measures in a dynamic environment.
- Company: Join a leading cybersecurity firm dedicated to safeguarding data.
- Benefits: Competitive salary, professional development, and a chance to work with cutting-edge technology.
- Why this job: Make a real impact by defending against cyber risks and shaping security strategies.
- Qualifications: Experience with Microsoft security tools and a degree in Cybersecurity or Computer Science.
- Other info: Collaborative culture with opportunities for continuous improvement and career growth.
The predicted salary is between 70000 - 90000 £ per year.
SC Cleared - UK Only - (Sponsorship is unavailable) you must hold SC Clearance. Provide expert advice on the defences against cyber threats, data breaches, and emerging risks. This includes offering guidance on the selection, design, justification, implementation, and operational management of cybersecurity strategies, technologies, and standards. Contribute to the development and refinement of controls and processes to ensure the safety, confidentiality, integrity, availability, and overall security of data stored on systems. You will be responsible for identifying gaps in existing cybersecurity policies and procedures and, in collaboration with security, network, information governance, and technical leads, developing new measures to address these gaps.
KEY RESPONSIBILITIES:
- You will work closely with system and service owners, as well as internal and external stakeholders, to design, implement, and enforce appropriate protective and detective security controls, policies, and procedures.
- The role includes the administration and operational management of security tooling and SIEM platforms, with responsibility for monitoring, detecting, and responding to cyber threats, intrusions, and unauthorised or suspicious activity. This includes Microsoft Sentinel (data and source tuning, creation and maintenance of workbooks and connectors, and threat intelligence review), Microsoft Defender for Endpoint and Defender for Cloud, and Darktrace, including system and model tuning, email module management, and configuration of autonomous response actions.
- You will be responsible for incident response activities, including triaging security alerts, investigating incidents, coordinating escalation and remediation, and conducting root cause analysis.
- You must be able to communicate effectively about security incidents and cyber risks to both technical and non-technical stakeholders.
- The role works closely with the Security Operations Centre (SOC) partner, supporting the assessment and investigation of alerts and contributing to the development and refinement of incident response plans and playbooks.
- You will support vulnerability management activities, including vulnerability assessments, annual audits, and penetration testing. This includes preparing and presenting incident, threat, and compliance reporting to stakeholders at all levels, including compiling a monthly SIRO report.
- Continuous improvement is a core responsibility. You will conduct post-incident reviews, recommend control and process improvements, and contribute to the creation and maintenance of cybersecurity governance documentation.
- You will also research emerging cyber threats and mitigation strategies and provide reports or presentations to senior stakeholders as required.
- The role supports cybersecurity training and awareness initiatives, promoting a strong security culture and helping to upskill colleagues in cybersecurity best practices.
- You will also collaborate with solution architects and project teams to ensure security is embedded into system and application designs, supporting secure architecture and delivery from the outset.
- Ensure security operations align with regulatory standards and frameworks such as NIST, ISO 27001, and NCSC CAF.
Person Specification
Essential:
- Demonstrated experience with Microsoft Sentinel, Microsoft Defender for Endpoint/Cloud SIEM tools, threat intelligence platforms, and vulnerability management.
- Technical experience securing Microsoft Azure and Amazon Web Services cloud environments as well as on-premise/virtual Microsoft technologies.
- Strong analytical, communication, and problem-solving skills, including the ability to produce clear technical and non-technical reports.
- Ability to analyse and interpret security events/logs and perform remediation work to address security issues.
Desirable:
- Recognised cybersecurity certifications (e.g., CompTIA Security+, CEH, GIAC, CISSP).
- Experience with DarkTrace.
Qualifications: Bachelor's degree in Cybersecurity or Computer Science.
Principal Cyber Security Engineer in City of London employer: Hays Technology
Contact Detail:
Hays Technology Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Principal Cyber Security Engineer in City of London
✨Tip Number 1
Network like a pro! Reach out to folks in the cybersecurity field, attend meetups, and join online forums. The more connections we make, the better our chances of landing that Principal Cyber Security Engineer role.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal website showcasing your projects, certifications, and any relevant experience. This gives us a chance to demonstrate our expertise beyond just a CV.
✨Tip Number 3
Prepare for interviews by brushing up on common cybersecurity scenarios and challenges. We should be ready to discuss how we would handle specific incidents or vulnerabilities, showing our problem-solving skills in action.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure our application gets noticed. Plus, we can keep track of our applications and follow up easily.
We think you need these skills to ace Principal Cyber Security Engineer in City of London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Principal Cyber Security Engineer role. Highlight your experience with Microsoft Sentinel, Defender tools, and any relevant certifications. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a perfect fit for our team. Keep it concise but impactful – we love a good story!
Showcase Your Problem-Solving Skills: In your application, don’t forget to mention specific examples of how you've tackled cybersecurity challenges in the past. We’re keen on seeing your analytical skills in action, so share those success stories with us!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our awesome team at StudySmarter!
How to prepare for a job interview at Hays Technology
✨Know Your Cybersecurity Tools
Make sure you’re well-versed in the tools mentioned in the job description, like Microsoft Sentinel and Darktrace. Be ready to discuss your hands-on experience with these platforms, including any specific incidents where you used them to detect or respond to threats.
✨Showcase Your Communication Skills
Since you'll need to communicate complex security issues to both technical and non-technical stakeholders, practice explaining a recent cybersecurity incident or project in simple terms. This will demonstrate your ability to bridge the gap between tech and business.
✨Prepare for Scenario-Based Questions
Expect questions that ask how you would handle specific cybersecurity incidents or vulnerabilities. Think through potential scenarios and outline your approach to triaging alerts, conducting root cause analysis, and implementing improvements.
✨Highlight Continuous Improvement Mindset
Emphasise your commitment to continuous improvement in cybersecurity practices. Be prepared to discuss past experiences where you identified gaps in policies or processes and how you contributed to enhancing security measures.