At a Glance
- Tasks: Join us as a Security Engineer to protect our tech landscape and tackle security threats head-on.
- Company: L&Q is a leading charitable housing association dedicated to providing quality homes and community support.
- Benefits: Enjoy 28-31 days of holiday, a great pension scheme, and a supportive work-life balance.
- Why this job: Be part of an exciting transformation in technology while making a real impact in communities.
- Qualifications: Strong Azure security experience and knowledge of compliance frameworks are essential for this role.
- Other info: Flexible working with 1-2 days in the office and opportunities for travel between locations.
The predicted salary is between 43000 - 59000 £ per year.
Title: Security Engineer
Contract Type: Permanent
Location: Office based 20-40% at either Stratford, London, E15 4PH or Manchester
Persona: Agile (1-2 days working in the office, 3-4 days working from home)
Salary: £51,000 -£59,000 per annum dependant on experience and location
Closing date for completed applications: 5th March 2025
Early applications are encouraged as we reserve the right to close the advertisement and interview earlier than stated.
A great opportunity has arisen for an experienced Security Engineer to join L&Q at a very exciting time, where we will invest, grow and transform our business to provide a better service to customers old and new. There is huge investment in Technology, Modern Workplace and move to full Microsoft Azure and Azure Stack and a great place to get involved in all parts of the transformation.
We are looking for an adaptable and forward-thinking Security Engineer, able to help shape the future Technology Landscape of L&Q. They will assist in the development and implementation of roadmaps, data mapping and engagement that ensure the security and risk strategy meet regulatory requirements within the broad area of Technology. Attention to detail and a high level of accuracy are key.
The Security Engineer will report directly into the Cloud & Infrastructure Lead. The role will be aligned to the Enterprise Services and Security function, but specifically within the Cloud & Infrastructure and Information Security teams, who’s focus it is to provide exceptional service to all customers, internal and external to the business. This person will be an enabler with an innovative attitude and a proactive, positive approach.
The Security Engineer will be responsible for, but not limited to the following:
- Security patching and hardening across server and network infrastructure.
- Monitoring, detecting, and responding to security threats across hybrid environments.
- Managing and enhancing security configurations for Windows VMs, SQL databases, and PaaS solutions like Logic Apps.
- Administering security tools, including firewalls, endpoint protection, and vulnerability management systems.
- Ensuring data security by managing encryption, access controls, and compliance requirements.
- Performing security assessments, audits, and penetration testing.
- Developing security automation processes for identity and access management (IAM), network security, and patch management.
- Collaborating with stakeholders to ensure security best practices are integrated into new and existing solutions.
- Managing third parties delivering security, cloud, or infrastructure services.
- Keeping up to date with emerging threats and security trends, advising the organization on proactive measures.
Skills and Experience:
- Strong experience with security in Azure, including Defender for Cloud, Security Center, and Key Vault.
- Hands-on expertise with security configurations for Windows VMs and SQL databases.
- Knowledge of network security, firewalls, IDS/IPS, and SIEM solutions.
- Experience with security automation using PowerShell, Azure Policy, or Infrastructure-as-Code (IaC).
- Strong understanding of compliance frameworks (ISO 27001, NIST, CIS Benchmarks, GDPR).
- Experience in threat detection, incident response, and forensic analysis. Familiarity with Identity and Access Management (IAM) principles, Azure AD, and MFA.
- Experience working in a DevSecOps environment and improving IT systems to adhere to security guidelines proactively and reactively.
Experience of working with the Microsoft stack:
- Azure
- Office 365
- Windows Server
- Microsoft Exchange
- CCM
- Active Directory Domain Services
- Active Directory Federation Services
- Active Directory Certificate Services
Experience working with the following technologies:
- VMware/Hyper V
- HP 3PAR
- Commvault
- Waf, App Gateway and Firewalls
- Open Source
- SolarWinds
- Experience working in a DevOps environment, creating a DevOps pipeline
- Good working knowledge of on-premises and cloud-based security management technologies, such as Service Design, Security Monitoring and Security Performance Management
- Working knowledge of ISO27001 & PCI DSS and experience of improving IT systems to adhere to security guidelines, acting both proactively and reactively
- Understanding of CIS controls, e.g. Hardening
- Successful experience designing & documenting technical infrastructure designs as part of a Systems Development Lifecycle process
- Track record of delivering complex technical solutions to tight timescale
If successful you will be required to travel to our Manchester Office, Sale, M33 6AG or London, E15 4PH. The main office will be the office closest to you and expenses can be claimed when required to make additional journeys to other sites.
If you are interested in this role and have the experience required, then apply without delay!
*We are a multi-site organisation, so some roles may require occasional travel between offices but expenses will be covered.
Our commitments:
At L&Q, people are at the heart of our business and our success depends on employing the best people and getting the best from them. This is why we are committed to developing our people. It’s only by investing in a well-trained and motivated workforce that we can continue to prosper and sustain business success.
In addition to our support and training, the successful candidate will have access to our full suite of benefits including 28 days holiday rising to 31 days with length of service, excellent Pension scheme, an employee assistance programme and non-contributory life assurance.
We are committed to supporting your work-life balance and recognise the changing demands and circumstances in life.
We are recognised externally for our commitment to inclusion. We are a Stonewall Diversity Champion, a Disability Confident (Committed) employer and have signed the Time to Change Employer Pledge to demonstrate our commitment to end mental health discrimination in the workplace.
We expect all of our employees to support our environmental policy and social responsibility work. We are an employer committed to environmental and social responsibility.
L&Q is a regulated charitable housing association and one of the UK’s most successful independent social businesses. The L&Q Group houses around 250,000 people in more than 97,000 homes, primarily across London and the South East.
As a charitable organisation, our role goes beyond providing homes and housing services. We are a long-term partner in the neighbourhoods where we work. We hope to build aspiration, opportunity and confidence in our communities through our £250 million L&Q Foundation and our skills academy.
Our vision is that everyone has a quality home they can afford, and we combine our social purpose with commercial drive to create homes and neighbourhoods everyone can be proud of.
#J-18808-Ljbffr
Security Engineer employer: London & Quadrant Housing Trust
Contact Detail:
London & Quadrant Housing Trust Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer
✨Tip Number 1
Familiarize yourself with the specific security tools and technologies mentioned in the job description, such as Azure Defender, SQL databases, and firewalls. Being able to discuss your hands-on experience with these tools during the interview will demonstrate your suitability for the role.
✨Tip Number 2
Stay updated on the latest trends and threats in cybersecurity, especially those related to cloud environments. This knowledge will not only help you in interviews but also show that you are proactive about security, which is a key quality they are looking for.
✨Tip Number 3
Prepare to discuss your experience with compliance frameworks like ISO 27001 and GDPR. Be ready to provide examples of how you've implemented these standards in previous roles, as this aligns closely with their requirements.
✨Tip Number 4
Highlight any experience you have working in a DevSecOps environment. Discuss how you've integrated security practices into the development lifecycle, as this will resonate well with their focus on improving IT systems proactively.
We think you need these skills to ace Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security engineering, particularly with Azure and compliance frameworks like ISO 27001 and GDPR. Use specific examples that demonstrate your skills in threat detection and incident response.
Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role at L&Q and how your background aligns with their mission. Mention your proactive approach to security and any innovative solutions you've implemented in previous roles.
Highlight Relevant Skills: Clearly outline your hands-on expertise with security configurations for Windows VMs and SQL databases. Emphasize your experience with security automation tools and your understanding of network security principles.
Showcase Continuous Learning: Mention any recent training or certifications related to security, cloud technologies, or compliance. This demonstrates your commitment to staying updated with emerging threats and security trends, which is crucial for the role.
How to prepare for a job interview at London & Quadrant Housing Trust
✨Show Your Technical Expertise
Be prepared to discuss your hands-on experience with security in Azure, including tools like Defender for Cloud and Security Center. Highlight specific projects where you managed security configurations for Windows VMs or SQL databases.
✨Demonstrate Problem-Solving Skills
Prepare examples of how you've detected and responded to security threats in hybrid environments. Discuss your approach to incident response and any forensic analysis you've conducted.
✨Understand Compliance Frameworks
Familiarize yourself with compliance frameworks such as ISO 27001 and GDPR. Be ready to explain how you've ensured adherence to these standards in previous roles.
✨Emphasize Collaboration and Communication
Since the role involves working with various stakeholders, prepare to discuss how you've collaborated with teams to integrate security best practices into existing solutions. Share examples of successful teamwork in a DevSecOps environment.