Infrastructure Security Engineer

Infrastructure Security Engineer

Full-Time 36000 - 60000 £ / year (est.) No working from home possible
LGBT Great

At a Glance

  • Tasks: Secure and innovate LCP's infrastructure with hands-on security engineering and policy management.
  • Company: Join an award-winning consultancy that values collaboration and innovation.
  • Benefits: Enjoy hybrid working, professional development, and a comprehensive benefits package.
  • Other info: Dynamic workplace with a focus on personal growth and inclusivity.
  • Why this job: Be at the forefront of tech evolution while making a real impact on security.
  • Qualifications: Experience in information security methodologies and cloud infrastructure is essential.

The predicted salary is between 36000 - 60000 £ per year.

Location - London or Winchester with hybrid working as per departmental requirements (currently a MINIMUM of 40% (2 days per week). LCP is an award-winning actuarial and analytics consultancy providing market-leading capabilities and advice across pensions and financial services, energy, and health. We use powerful analytics fused with human expertise to shape a more positive future.

This role is perfectly poised at the intersection of traditional Infrastructure Security operations and the future's promise of AI and automation. As a Security Engineer you will be 75% Hands-On and 25% Policy/Process management. As LCP embarks on this transformative journey, the Infrastructure Security Engineer will be pivotal in ensuring a blend of technological innovation with a deeply human touch. Beyond just problem-solving, this role offers the chosen candidates an opportunity for personal and professional growth. We're not just seeking individuals to join us; we're seeking visionaries who will evolve with us, taking ownership of their development and skills as the landscape of service support undergoes this exciting metamorphosis. The aim remains consistent: to uphold LCP’s unwavering commitment to exceptional user experience across all locations.

What will you be doing?

  • Secure LCP’s infrastructure, spanning multiple physical office (UK and Europe) and numerous Cloud subscriptions, through a balanced-risk approach.
  • Design and implement technical information security controls and countermeasures, ensuring alignment with the risks they are intended to mitigate.
  • Work with an outsourced Security Operations Centre (SOC), maintaining threat detection and response processes in conjunction with the InfoSec team to ensure its continued effectiveness.
  • Effectively operate established technical information security controls and countermeasures, ensuring adherence to policy and compliance requirements.
  • Deliver standardised security measures for cloud resource templates and configuration baselines, that enable approved teams to efficiently self‑serve pre‑configured resources.
  • Automate manual or repetitive tasks, improving the end-to-end efficiency of technical security measures.
  • Respond to new and emerging security threats and vulnerabilities, effectively engaging in cross-functional collaboration as needed.
  • Conduct security incident investigations, collaborating with technical and non-technical stakeholders as appropriate, with the aim of identifying root cause, threat vector utilised, scope of compromise and related remedial and preventative actions.
  • Implement and administer technical security tooling (Such as Defender for Cloud, Defender for End‑Point, Nessus, etc), training others as required.
  • Optimise the cost of cloud‑based security measures, ensuring they remain fit‑for‑purpose and right‑sized as part of overall infrastructure efficiency.
  • Constantly maintain and develop awareness of Emerging threats and vulnerabilities and the techniques used to mitigate them.
  • Emerging information security practices, standards and trends within a modern, increasingly cloud‑based and Agile/DevOps oriented environment.
  • Coordinate with internal and external stakeholders.
  • Partner with InfoSec to deliver on key information security risk related initiatives, ensuring compliance to patching and vulnerability policies.
  • Partner with Product and Platform team members in respect of secure coding practices and security measures within the infrastructure resources they utilise.
  • Establish and cultivate relationships, being a trusted advisor and technical point of contact within the firms engineering community.

What skills and experience are we looking for?

  • First‑hand experience and knowledge of modern information security methodologies, techniques, and tooling, spanning both physical and cloud infrastructure.
  • Knowledge of key security standards/frameworks including ISO 27001, NIST, and CIS.
  • Experience of securing infrastructure within a DevOps organisation – including secure coding standards, automation and enterprise monitoring and reporting tools specifically within Microsoft Azure.
  • Demonstrable experience of security controls and countermeasures within IP based networks, WAN technologies, virtual server technologies and Microsoft Cloud on Windows and Linux.
  • Demonstrable experience working with DLP and EDR technologies such as Microsoft Defender.
  • Demonstrable first‑hand experience with modern Security Information and Event Management (SIEM) solutions and related workflow automation (SOAR).
  • Ability to proactively own and coordinate resolving security issues, to ensure solutions continue to meet business needs.
  • Ability to break a problem down into its component parts to identify and diagnose root causes, troubleshooting and identify problems across different technology capabilities.
  • Strong planning and organisational skills, including the ability to coordinate several work streams simultaneously, while balancing priorities and quality.
  • Excellent communication skills with a capacity to present, discuss and explain issues coherently and logically, both in writing and orally.
  • Ability to balance conflicting and changing demands through prioritisation and pragmatism.

What’s in it for you?

As well as joining a multi‑award winning, fun, collaborative, people first organisation where your personal and professional skills will be developed to make you the best you can be, we offer an attractive benefits package designed to promote your overall wellbeing so that you are able to perform to your full potential both in and out of work. Currently our core benefits package includes:

  • For you: Hybrid working (see top of the advert for details), Professional study support (where applicable), Access to our internal Wellbeing, LGBTQ+, Multicultural and Women’s networks.
  • For your family: Life assurance, Income protection, Enhanced maternity/paternity/adoption and shared parental leave.
  • For your health: 26 days annual leave (pro‑ra for part‑time working) plus bank holidays (most of which can be taken flexibly!) with options to buy & sell holiday, Private medical insurance, Discounted gym memberships, critical illness and dental insurance through our flexible benefits, Eye care vouchers, Cycle to work scheme, Digital GP services.
  • For your wealth: Competitive pension scheme, Discretionary bonus scheme, High street discounts, Season ticket loans.
  • For others: Volunteering opportunities.
  • For the environment: Electric vehicle salary sacrifice scheme (qualifying period applies).

We continuously strive to build an inclusive workplace where all forms of diversity are valued, including age, background, disability, gender, gender identity, gender expression, race, religion or sexual orientation. LCP is committed to making our opportunities accessible to all and would welcome you getting in touch to let us know if an adjustment can be made to help with your application. This may be extra time for assessments, pre‑interview site visits, interview structure or questions, or asking us about building accessibility. Whatever it may be, please get in touch via our dedicated email address - to discuss how we can support you with your application.

Infrastructure Security Engineer employer: LGBT Great

LCP is an award-winning consultancy that prioritises a people-first culture, offering Infrastructure Security Engineers the chance to thrive in a collaborative environment while working on cutting-edge security solutions. With a strong commitment to employee development, hybrid working options, and a comprehensive benefits package, LCP fosters both personal and professional growth, making it an exceptional employer for those looking to make a meaningful impact in the field of infrastructure security.

LGBT Great

Contact Details:

LGBT Great Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Infrastructure Security Engineer

Tip Number 1

Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for those interviews! Research common questions for Infrastructure Security Engineers and practice your answers. We recommend doing mock interviews with friends or using online platforms to get comfortable.

Tip Number 3

Show off your skills! If you’ve worked on relevant projects, create a portfolio or GitHub repository to showcase your work. This gives potential employers a tangible look at what you can do.

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at LCP.

We think you need these skills to ace Infrastructure Security Engineer

Information Security Methodologies
Cloud Security
ISO 27001
NIST
CIS
Secure Coding Standards
Automation

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Infrastructure Security Engineer role. Highlight relevant experience and skills that match the job description, especially those related to security methodologies and cloud infrastructure.

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background aligns with our mission at LCP. Don’t forget to mention any specific projects or achievements that showcase your expertise.

Showcase Your Problem-Solving Skills:In your application, give examples of how you've tackled security challenges in the past. We love candidates who can break down complex problems and come up with effective solutions, so don’t hold back on sharing your success stories!

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!

How to prepare for a job interview at LGBT Great

Know Your Stuff

Make sure you brush up on modern information security methodologies and tools, especially those relevant to both physical and cloud infrastructure. Familiarise yourself with key security standards like ISO 27001 and NIST, as these will likely come up during your chat.

Showcase Your Hands-On Experience

Since this role is 75% hands-on, be ready to discuss specific projects where you've implemented security controls or automated processes. Prepare examples that highlight your experience with tools like Microsoft Defender and SIEM solutions, as well as any challenges you faced and how you overcame them.

Communicate Clearly

Excellent communication skills are a must! Practice explaining complex security concepts in simple terms, as you'll need to engage with both technical and non-technical stakeholders. Think about how you can present your past experiences coherently and logically.

Be a Problem Solver

Demonstrate your ability to break down problems and identify root causes. Prepare to discuss scenarios where you've had to troubleshoot security issues, balancing priorities and quality while coordinating multiple work streams. This will show that you can think critically and act pragmatically under pressure.