We are seeking a proactive and technically capable Cyber Security Specialist to support the protection of the organisation's information assets, systems, and services. The role will work across security operations, governance, risk management, compliance, incident response, and security awareness to help maintain a robust and resilient security posture.
What you'll do:
Security Operations
- Monitor security alerts and events from security monitoring platforms and managed SOC providers.
- Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities.
- Support vulnerability management activities, including remediation tracking and reporting.
- Assist with threat intelligence gathering and analysis.
Governance, Risk & Compliance
- Support the maintenance and continual improvement of the Information Security Management System (ISMS).
- Conduct security risk assessments and maintain risk registers.
- Assist with internal and external audits, including ISO 27001, Cyber Essentials, and client assurance reviews.
- Ensure security policies, standards, and procedures are reviewed and updated.
AI Security & Governance
- Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation.
- Conduct security and privacy risk assessments for AI platforms, tools, and third‑party AI service providers.
- Evaluate AI solutions against organisational security, privacy, regulatory, and ethical requirements.
- Assist in developing and maintaining AI governance policies, standards, and acceptable use requirements.
- Monitor emerging AI‑related threats, vulnerabilities, and regulatory developments.
- Support controls designed to prevent unauthorised use of AI tools and the exposure of confidential information through AI platforms.
- Provide guidance to business users on the secure and responsible use of Generative AI technologies, including Microsoft Co‑pilot and other approved AI solutions.
Third-Party Security
- Perform security reviews and due diligence assessments of suppliers and service providers.
- Review security questionnaires and assess supplier risks.
- Monitor ongoing third‑party security compliance.
Security Awareness
- Assist with the delivery of security awareness programmes and phishing simulations.
- Develop guidance and educational materials for employees.
- Promote a positive security culture throughout the organisation.
Incident Response & Business Resilience
- Support cyber incident investigations and post‑incident reviews.
- Maintain incident response documentation and playbooks.
- Participate in incident response exercises and tabletop testing.
- Assist with business continuity and disaster recovery planning activities.
Security Engineering & Technology
- Support the deployment and management of security tools including:
- Microsoft Purview
- Microsoft Defender
- Microsoft Sentinel
- Microsoft Entra ID
- Email Security Solutions
- Endpoint Protection Technologies
- Vulnerability Management Platforms
- Assist with security configuration reviews and hardening activities.
Reporting & Stakeholder Engagement
- Produce security metrics, dashboards, and management reports.
- Communicate technical security issues to both technical and non‑technical audiences.
- Provide recommendations for improving security controls and reducing risk.
WHAT YOU'LL BRING:
- Strong experience in a cyber security, information security, or security operations role.
- Good understanding of:
- ISO 27001
- NIST Cyber Security Framework
- Cyber Essentials Plus
- Risk Management Methodologies
- Experience investigating security incidents.
- Knowledge of Microsoft 365 security technologies.
- Understanding of networking, operating systems, cloud technologies, and identity management.
- Strong analytical and problem‑solving skills.
- Excellent written and verbal communication skills.
Desirable
- Experience with Microsoft Sentinel and Defender XDR.
- Experience with third‑party risk management.
- Knowledge of GDPR and data protection requirements.
- Experience working with managed SOC providers.
- Exposure to security awareness and phishing simulation programmes.
Qualifications
Essential
- Degree in Cyber Security, Information Technology, Computer Science, or equivalent experience.
Desirable
- One or more of the following:
- CISSP
- SSCP
- CompTIA Security+
- Microsoft Security Certifications (SC-200, SC-300, SC-100)
WHAT YOU'RE GOOD AT:
- Self‑motivated and proactive.
- Strong attention to detail.
- Able to prioritise and manage multiple activities simultaneously.
- Collaborative team player with a customer‑focused approach.
- Strong commercial awareness and ability to balance security with business objectives.
- Passionate about staying current with emerging threats and technologies.
WHAT YOU'LL GET:
For the right candidate, we will offer a competitive salary and benefits package which includes 27 days annual holiday, private healthcare, employer contributory pension, life assurance and income protection. We also offer a host of benefits that support wellbeing including subsidised gym membership, whilst our commitment to Diversity and Inclusion sees us offer learning opportunities around D&I, mentoring programmes and the opportunity for all to participate in a number of active Employee Led Networks and associated events. Finally, this role will be supported with all the necessary personal development required to set someone up for success.
Group company M+C Saatchi Group Locations London Remote status Hybrid Employment type Full-time
M+C Saatchi Group is an Equal Opportunity Employer which does not discriminate, celebrates diversity and bases all hiring and promotion decisions solely on talent and capability, without regard for any personal characteristics.
All employee information is kept confidential according to General Data Protection Regulation (GDPR).
ABOUT M+C SAATCHI GROUP
M+C Saatchi Group is a creative solutions company that connects specialist expertise, fuelled by data, technology, and culture, to help clients navigate, create, and lead meaningful change. The Group operates across five core divisions: Connected Creativity; Passion Marketing; Global & Social Issues; Brand, Experience & Innovation; and Performance Media. Headquartered in London, operations span 23 countries with major hubs in the UK, Europe, US, Middle East & Africa, Asia and Australia. M+C Saatchi Group's two principles, Diversity of Thought and Brutal Simplicity of Thought, guide how they build teams and solve problems.
#J-18808-Ljbffr
Cyber Security Engineer employer: M+C Saatchi Group
M+C Saatchi is an exceptional employer located in the vibrant city of London, offering a dynamic work environment where creativity and technology intersect. As an AV & IT Specialist, you'll benefit from a competitive salary, generous annual leave, and comprehensive health benefits, all while being part of a diverse and inclusive culture that prioritises employee growth through mentoring programmes and active participation in Employee Led Networks. Join us to play a pivotal role in enhancing workplace experiences and enjoy the unique advantage of working in a collaborative team that values your expertise and contributions.