Cloud Platform Security Consultant in York
Cloud Platform Security Consultant

Cloud Platform Security Consultant in York

York Full-Time 36000 - 60000 £ / year (est.) Home office (partial)
S

At a Glance

  • Tasks: Design and implement security controls for Azure cloud platforms, enhancing threat detection and incident response.
  • Company: Join a Microsoft Solutions Partner recognised for positive change and innovation in data transformation.
  • Benefits: Competitive salary, flexible working, and opportunities for professional growth in a dynamic environment.
  • Why this job: Make a real impact by securing cloud infrastructures and supporting purpose-led organisations.
  • Qualifications: Experience with Microsoft Sentinel, KQL, and Azure security services; relevant degree or certifications preferred.
  • Other info: Collaborative culture with a focus on creativity and career development.

The predicted salary is between 36000 - 60000 £ per year.

Simpson Associates transforms raw data into actionable insights that drive positive change. Our Microsoft data expertise, specialist sector knowledge, and innovative advice are some of the reasons clients choose to work with us. Our mission is to help purpose-led organisations from both the public and private sectors harness data as a lever for change and enable them to realise business value more quickly. We provide a full range of services to support organisations on their data transformation journey, from advisory support and data strategy to developing Data & AI solutions and providing managed services.

We are a Microsoft Solutions Partner, holding specialisations in AI Platform on Microsoft Azure, Analytics on Microsoft Azure, Data Warehouse Migration to Microsoft Azure, and Migrate Enterprise Applications to Microsoft Azure. We also hold Solutions Partner designations in Data & AI (Azure), Digital & App Innovation (Azure), Infrastructure (Azure), and Security. We are proud to be recognised as the winner of the 2024 Microsoft Community Response Partner of the Year award, reflecting our dedication to using technology for positive change. Additionally, we are a Databricks partner and an IBM Gold Partner, specialising in Cognos Analytics and Planning Analytics.

With offices in York and Sheffield, and a team based throughout the UK, we champion creativity, innovation, and collaboration in the workplace.

The Role

A Cloud Platform Security Consultant to partner with our clients in designing, implementing, and maintaining security controls across their Azure cloud platforms. You will work directly with customers to enhance their threat detection capabilities, establish security monitoring frameworks, support incident response activities, and ensure their cloud infrastructure meets regulatory requirements, industry best practices, and aligns with the Azure Well-Architected Framework and Cloud Adoption Framework principles.

Key Responsibilities

  • Security Monitoring & Threat Detection
    • Design and maintain security monitoring solutions using Microsoft Sentinel and other SIEM tools
    • Develop and optimise KQL queries for threat hunting, detection rules, and analytics
    • Investigate security incidents and coordinate response activities
    • Map threats and detections to the MITRE ATT&CK framework
    • Perform continuous threat intelligence analysis and proactive threat hunting
  • Cloud Security Architecture
    • Implement and maintain security controls across Azure landing zones and workloads
    • Secure AI and machine learning workloads, including Azure OpenAI, Azure ML, and Cognitive Services
    • Design and enforce network security policies using Azure Firewall, NSGs, and Private Link
    • Implement identity and access management controls using Entra ID and conditional access
    • Ensure compliance with relevant cyber security legislation (GDPR, NIS Directive, UK Cyber Essentials, etc.)
  • Automation & Engineering
    • Develop security automation workflows using Azure Logic Apps, Functions, and Sentinel playbooks
    • Implement security controls as code (policy as code, infrastructure as code)
    • Build automated security testing and validation pipelines
    • Create custom connectors and integrations for security tooling
  • Governance & Compliance
    • Maintain security policies and standards aligned to industry frameworks
    • Conduct security assessments and gap analyses
    • Support audit and compliance activities for public sector clients
    • Produce security documentation, reports, and technical guidance

Skills and Attributes Required

  • Strong hands-on experience with Microsoft Sentinel including workbook creation, analytics rules, and automation
  • Advanced Search Query Language proficiency, ideally KQL, for log analysis and threat hunting
  • Deep knowledge of Azure security services (Defender for Cloud, Key Vault, Managed Identity, etc.)
  • Experience with SIEM tools and security information management
  • Understanding of the MITRE ATT&CK framework and its practical application
  • Strong analytical skills with the ability to investigate complex security incidents
  • Proven ability to develop automation solutions for security operations
  • Knowledge of cyber security legislation and regulatory requirements (UK public sector experience advantageous)
  • Experience with Azure DevOps, Infrastructure as Code (Terraform/Bicep)
  • Experience securing AI workloads and understanding AI-specific threat vectors
  • Experience in stakeholder management
  • Experience in Project Management – Prince 2 or Agile Methodologies

Advantageous Qualifications and Skills

  • Degree in Computer Science, Cyber Security, or related field (or equivalent experience)
  • Industry certifications such as CISSP, CEH, GIAC, or Microsoft security certifications
  • Microsoft security certifications (SC-200, SC-300, AZ-500)
  • Knowledge of data platform security (Databricks, Synapse, Fabric)
  • Experience with Microsoft Purview for data security, including Sensitive Information Types, DLP policies, and DSPM
  • Familiarity with penetration testing and vulnerability management tools
  • Experience working with NHS, police, or local government clients
  • Understanding of FinOps and cloud cost optimisation

Simpson Associates reserves the right to close the recruitment process at any time.

Cloud Platform Security Consultant in York employer: Simpson Associates

Simpson Associates is an exceptional employer, offering a dynamic work environment that fosters creativity, innovation, and collaboration. With a strong commitment to employee growth, we provide extensive training opportunities and support for professional development, particularly in the rapidly evolving field of cloud security. Our recognition as a Microsoft Community Response Partner of the Year highlights our dedication to making a positive impact, making this an ideal place for those looking to contribute meaningfully while advancing their careers in York or Sheffield.
S

Contact Detail:

Simpson Associates Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cloud Platform Security Consultant in York

✨Tip Number 1

Network like a pro! Reach out to people in the industry, attend events, and connect with potential colleagues on LinkedIn. We all know that sometimes it’s not just what you know, but who you know that can help you land that dream job.

✨Tip Number 2

Show off your skills! Create a portfolio or a personal project that highlights your expertise in cloud security. This is a great way for us to demonstrate our capabilities and stand out from the crowd when chatting with potential employers.

✨Tip Number 3

Prepare for interviews by practising common questions and scenarios related to cloud security. We should also be ready to discuss how we’ve tackled challenges in past roles. Confidence and preparation can make all the difference!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are genuinely interested in joining our team at Simpson Associates.

We think you need these skills to ace Cloud Platform Security Consultant in York

Microsoft Sentinel
KQL (Advanced Search Query Language)
Azure Security Services
SIEM Tools
MITRE ATT&CK Framework
Analytical Skills
Automation Solutions Development
Cyber Security Legislation Knowledge
Azure DevOps
Infrastructure as Code (Terraform/Bicep)
AI Workload Security
Stakeholder Management
Project Management (Prince 2 or Agile Methodologies)
Industry Certifications (CISSP, CEH, GIAC, Microsoft Security Certifications)

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Cloud Platform Security Consultant role. Highlight your experience with Microsoft Sentinel, KQL, and Azure security services to show us you’re the perfect fit!

Showcase Your Skills: Don’t just list your skills; give us examples of how you've used them in real-world scenarios. Whether it’s threat detection or incident response, we want to see how you’ve made an impact in previous roles.

Be Clear and Concise: Keep your application clear and to the point. Use bullet points where possible to make it easy for us to read through your qualifications and experiences quickly.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into our hands quickly and efficiently. Plus, it shows us you’re keen on joining our team!

How to prepare for a job interview at Simpson Associates

✨Know Your Azure Security Inside Out

Make sure you brush up on your knowledge of Azure security services, especially Microsoft Sentinel and KQL. Be prepared to discuss how you've used these tools in past projects, as well as any specific challenges you've faced and how you overcame them.

✨Understand the MITRE ATT&CK Framework

Familiarise yourself with the MITRE ATT&CK framework and be ready to explain how it applies to threat detection and incident response. You might be asked to map threats to this framework, so having practical examples from your experience will really help you stand out.

✨Showcase Your Automation Skills

Since automation is key in this role, come prepared to discuss any security automation workflows you've developed using Azure Logic Apps or Functions. Highlight how these solutions improved efficiency or security posture in your previous roles.

✨Demonstrate Stakeholder Management Experience

This position involves working closely with clients, so be ready to share examples of how you've managed stakeholder relationships in the past. Discuss any project management methodologies you've used, like Agile or Prince 2, and how they helped you deliver successful outcomes.

Cloud Platform Security Consultant in York
Simpson Associates
Location: York

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

S
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>