At a Glance
- Tasks: Protect clients from cyber threats and enhance security measures across systems and networks.
- Company: Join Kocho, a forward-thinking tech company with a commitment to equality and innovation.
- Benefits: Flexible remote work, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: Degree in Computer Science or Cyber Security, plus experience in Security Engineering.
- Other info: Dynamic team environment with a focus on continuous improvement and collaboration.
The predicted salary is between 36000 - 60000 ÂŁ per year.
About Kocho
We are Kocho, an equal opportunities employer committed to delivering technology adoption services alongside technical consulting to help clients achieve their business goals on the journey to Become Greater. Our head office is located in the heart of London's West End, with flexible collaboration spaces that encourage our people to Become Greater and Do What's Right. We also have offices in Cardiff and Cape Town.
Position Summary
As a Security Engineer, you will play a critical role in safeguarding our organisation, clients, and partners from cyber threats. You will utilize your experience in Security Engineering or as a Senior Security Analyst to design, implement, and optimise security measures across systems, networks, and data, ensuring that controls remain effective, aligned to best practice and continuously improved. This role is primarily remote but you may be asked to come into the Cardiff office at your manager's discretion, with a successful candidate expected to attend a couple of times a month.
Key Responsibilities
- Deliver handsâon expertise across the Microsoft Security Stack, particularly Microsoft Defender XDR and Microsoft Sentinel.
- Build, maintain, and enhance detection capabilities by deploying KQL analytical rules, developing Content Hub solutions, and tuning threat policies to ensure strong protection and highâquality signal.
- Manage phishing simulation campaigns, lead vulnerability scans, and produce accurate, wellâstructured reports with clear, actionable recommendations.
- Regularly engage with clients, presenting findings and guiding them through remediation activities alongside a Cyber Security Project Manager.
- Provide Incident Response support by handling escalations from the triage team, performing advanced investigations, and contributing to playbook automation using Azure Logic Apps to streamline processes and improve response consistency.
- Audit and uplift client environments across the Microsoft 365 Security Suite, focusing on areas such as Secure Score improvements, Device Tagging, Defender policy management, Exchange configuration hardening and other lifecycleârelated security tasks.
- Leverage scripting or automation skills (e.g., Python, Bicep, ARM, JSON, YAML) to further enhance operational efficiencies.
Required Qualifications
- A degree in Computer Science, Cyber Security or a related field, or equivalent and demonstrable experience.
- Extensive experience in Security Engineering or Senior Security Analysis.
- Strong knowledge of security protocols and industry standards.
- Experience with vulnerability testing and risk analysis.
- SME in Microsoft Defender XDR.
- Strong proven knowledge of KQL & Advanced Hunting.
- Experience using common vulnerability scanning tools and interpreting their results.
- Clientâfacing skills, including the ability to translate technical findings into clear, actionable recommendations.
- Regular preparation of wellâstructured reports, presentation of security insights to both technical and nonâtechnical stakeholders, and guidance to help clients strengthen their security posture.
Nice to Have
- Proficiency in languages, standards and assemblies/tools such as Python, Bicep, ARM, JSON, YAML.
- Familiarity with Jinja2, Codeless Playbooks, Azure Functions, Azure Logic Apps.
- Professional certifications such as AZâ500, SCâ100, SCâ200, CISSP, CEH, CYSA+.
- GitHub portfolio of solutions you've built.
Equal Opportunity Employer
Kocho is an equal opportunities employer. We make recruitment decisions based on qualifications, skill set and experiences. We consider all suitable candidates regardless of their age, sex, gender reassignment, race, religious beliefs, marital status, disability, sexual orientation or any other protected characteristic. This mindset aligns with our company values as we understand that we are Better Together.
Security Engineer- Cardiff in London employer: Kocho
Contact Detail:
Kocho Recruiting Team
StudySmarter Expert Advice đ¤Ť
We think this is how you could land Security Engineer- Cardiff in London
â¨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current employees at Kocho. A friendly chat can sometimes lead to opportunities that arenât even advertised!
â¨Tip Number 2
Show off your skills! Create a GitHub portfolio showcasing your projects, especially those related to security engineering. This gives you a chance to demonstrate your expertise and passion for the field.
â¨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and how youâd tackle them. Practice explaining complex concepts in simple terms, as you'll need to communicate effectively with both technical and non-technical stakeholders.
â¨Tip Number 4
Donât forget to apply through our website! Itâs the best way to ensure your application gets seen by the right people. Plus, it shows youâre genuinely interested in joining the Kocho team.
We think you need these skills to ace Security Engineer- Cardiff in London
Some tips for your application đŤĄ
Tailor Your CV: Make sure your CV is tailored to the Security Engineer role. Highlight your experience with Microsoft Security Stack and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to our mission at Kocho. Keep it concise but impactful, and donât forget to mention your client-facing skills.
Showcase Your Technical Skills: We love seeing technical skills in action! If you have experience with KQL, Python, or any other relevant tools, make sure to include specific examples of how you've used them in your previous roles. This will help us understand your hands-on expertise.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. Itâs super easy, and youâll be able to submit all your documents in one go. Plus, it helps us keep track of your application!
How to prepare for a job interview at Kocho
â¨Know Your Stuff
Make sure you brush up on your knowledge of the Microsoft Security Stack, especially Microsoft Defender XDR and Microsoft Sentinel. Be ready to discuss how you've used these tools in past roles and any specific projects where youâve implemented security measures.
â¨Showcase Your Client Skills
Since this role involves client engagement, prepare examples of how you've effectively communicated technical findings to non-technical stakeholders. Think about times when youâve guided clients through remediation activities and how you made complex information accessible.
â¨Prepare for Technical Questions
Expect to dive deep into topics like KQL analytical rules and vulnerability testing. Brush up on your scripting skills too, as they might ask you to explain how youâve used Python or other languages to enhance operational efficiencies.
â¨Bring Your Portfolio
If you have a GitHub portfolio showcasing your solutions, bring it along! This is a great way to demonstrate your hands-on experience and problem-solving skills. It shows that youâre proactive and passionate about your work in security engineering.