At a Glance
- Tasks: Lead the charge in securing critical infrastructure and managing vulnerability ecosystems.
- Company: Join Sopra Steria, a leader in digital solutions for national security.
- Benefits: Enjoy flexible working, competitive salary, and generous leave options.
- Why this job: Make a real impact in enterprise security while developing your skills.
- Qualifications: Experience with Tenable Nessus, vulnerability management, and security compliance.
- Other info: Diverse and inclusive workplace with excellent career growth opportunities.
The predicted salary is between 32000 - 44000 £ per year.
Job Description
Are you passionate about protecting critical infrastructure and driving proactive security? We’re looking for an individual who’s ready to take ownership of our vulnerability management ecosystem and lead the charge in deploying and optimizing Tenable Nessus and Tenable SC platforms.
This is more than a technical role, it’s a mission-critical opportunity to shape how we defend our environments, empower our teams, and meet the highest standards of compliance and resilience. You’ll be the go-to expert, collaborating across departments to ensure our systems are secure, our risks are visible, and our responses are swift.
If you thrive in fast-paced environments, love solving complex problems, and want to make a real impact, this is your chance to be at the forefront of enterprise security.
What you will be doing:
- Lead deployment, configuration, and lifecycle management of Tenable Nessus and Tenable.SC across varied environments.
- Design and execute vulnerability scanning strategies aligned with business priorities and risk appetite.
- Validate results, investigate anomalies, and coordinate remediation with infra, network, hosting, and app teams.
- Maintain gold-standard documentation (guides, SOPs, user manuals).
- Build tailored dashboards and reports to drive visibility and informed decision-making.
- Embed vulnerability management into IT, security, and compliance workflows and planning.
- Provide training and mentorship to foster security awareness and technical excellence.
- Ensure practices meet Cyber Essentials Plus and ISO 27001 requirements, supporting audits and certification.
- Identify gaps, implement enhancements, and drive automation for continuous improvement.
- Integrate Tenable tools with SIEM, CMDB, and ticketing systems to streamline workflows.
- Serve as SME in vulnerability management for incident response, risk assessments, and architecture reviews.
- Represent the function in cross-functional forums, steering committees, and client engagements.
- Oversee patching strategies to achieve high compliance with infra and application teams.
What you will bring:
- Knowledge of leading the deployment, configuration, and lifecycle management of Tenable Nessus and Tenable.SC across diverse infrastructure environments.
- Designing and execution of comprehensive vulnerability scanning strategies that align with the client business priorities and risk appetite.
- Making security recommendations based on market intelligence and new security threats.
- Validating scan results, investigating anomalies, and coordinating remediation efforts with infrastructure, hosting, networks and application teams.
- Working knowledge of developing and overseeing patching strategies, working with infrastructure and application teams to achieve high levels of compliance each month.
- Familiarity and understanding of ISO27001, GDPR and NIST
- Certification such as CISSP, CISM, CEH, or SC-200, AZ-500
If you are interested in this role but not sure if your skills and experience are exactly what we’re looking for, please do apply, we’d love to hear from you!
Although this role is advertised as full-time, we support different ways of working and can offer a range of flexible working arrangements. So, if you’re interested and need to work flexibly, we encourage you to apply and talk to us about what might be possible.
Employment Type: Full-time
Location: Newport, Hybrid
Security Clearance Level: holding SC clearance or eligible for SC clearance
Internal Recruiter: Lee
Salary: £37k-£41k dependent on experience
Benefits: 25 days annual leave with the option to buy additional days, health cash plan, life assurance, pension, and generous flexible benefits fund (3% of base salary).
Although this role is advertised as full-time, we believe that flexibility at work can promote work/life balance, increase your motivation, reduce stress and improves performance and productivity. We support different ways of working and can offer a range of flexible working arrangements. So, if you’re interested and need to work flexibly, we encourage you to apply and talk to us about what might be possible.
Loved reading about this job and want to know more about us?
Sopra Steria’s Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client’s goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK’s most complex safety- and security-critical markets.
We embrace difference as a source of creativity, innovation and competitive advantage and are striving to become a more diverse organisation. We welcome applications from people with a diverse variety of backgrounds and identities. We are committed to equality of opportunity for all and do not discriminate on the basis of race, religion, colour, gender, age, disability, sexual orientation or marital status. We have partnered with Vercida, the UK's largest diversity and inclusion focused careers site, where all our vacancies are available in an accessible format.
If you require any adjustments to the recruitment process, to enable you to perform to the best of your ability, please let us know when completing your application. We participate in the Disability Confident scheme and are committed to offering an interview to any candidate with a disability, who meets the minimum criteria for the role. If you believe this could apply to you, please let us know when completing your application.
IT Security Engineer employer: Sopra Steria
Contact Detail:
Sopra Steria Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Security Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects and achievements in IT security. This gives potential employers a tangible look at what you can do beyond just a CV.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios related to vulnerability management. Think about how you’d handle specific challenges and be ready to share your thought process.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love hearing from passionate candidates like you!
We think you need these skills to ace IT Security Engineer
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with Tenable Nessus and Tenable SC. We want to see how your skills align with our mission to protect critical infrastructure!
Show Your Passion: In your application, let us know why you’re passionate about IT security. Share any personal projects or experiences that demonstrate your commitment to safeguarding systems and driving proactive security.
Be Clear and Concise: When writing your application, keep it clear and to the point. Use bullet points for key achievements and make it easy for us to see your relevant experience at a glance.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from us!
How to prepare for a job interview at Sopra Steria
✨Know Your Tools Inside Out
Make sure you’re well-versed in Tenable Nessus and Tenable SC. Familiarise yourself with their features, functionalities, and best practices. Being able to discuss your experience with these tools will show that you’re ready to hit the ground running.
✨Showcase Your Problem-Solving Skills
Prepare examples of how you've tackled complex security issues in the past. Think about specific vulnerabilities you've managed, how you validated results, and the steps you took to coordinate remediation. This will demonstrate your hands-on experience and analytical thinking.
✨Understand Compliance Standards
Brush up on ISO 27001, Cyber Essentials Plus, and GDPR. Be ready to discuss how you’ve ensured compliance in previous roles and how you plan to maintain these standards in the new position. This knowledge is crucial for the role and will set you apart.
✨Be Ready to Collaborate
This role involves working across various teams, so be prepared to talk about your experience in cross-functional collaboration. Share examples of how you’ve worked with infrastructure, network, and application teams to enhance security measures and streamline workflows.