At a Glance
- Tasks: Lead the security function, manage incidents, and protect systems and data.
- Company: Join a forward-thinking company dedicated to security excellence.
- Benefits: 25 days holiday, career development, free onsite meals, and more!
- Why this job: Make a real difference in cybersecurity while growing your skills.
- Qualifications: Strong knowledge of security tools and incident response experience required.
- Other info: Inclusive workplace with a commitment to equal opportunities.
The predicted salary is between 34000 - 48000 £ per year.
Location: Dummer, Basingstoke
Salary: £40,000 - £45,000
We are looking for a Security Engineer to join our team to lead the technical security function within Group IT Services, ensuring robust protection of systems, data and users. You will be managing the security ticket workload within the Security team and responding to and managing security incidents and alerts. In addition, you will provide consultation and expertise on security matters.
Responsibilities:
- Security Operations & Incident Management: Managing ticket workload within the Security team. Gathering, analysing and acting upon threat intelligence. Responding to ongoing security incidents. Responding to active alerts from security systems. Writing change management requests for security-related changes.
- Vulnerability & Endpoint Management: Conducting penetration testing and tracking corrective actions. Resolving vulnerabilities in the infrastructure and EUC estate. Defining and managing the configuration of endpoint protection policies. Managing the configuration of Identity and Access Management services.
- Accreditation & Compliance: Writing and ratifying policies and ensuring compliance with the Information Security Management System (ISO27001). Ensuring compliance with CyberEssentials and CyberEssentials+ requirements and carrying out audits. Ensuring compliance with accreditation policies through auditing with external 3rd party auditors. Providing security expertise on Change Request Approvals (CAB). Being consulted on software deployment from a security perspective. Being consulted on endpoint protection matters for infrastructure and EUC. Being consulted on identity and access administration matters.
Skills Required:
- Strong technical knowledge of security tools, frameworks and best practices.
- Experience with penetration testing and vulnerability management processes.
- Understanding of endpoint protection technologies and policies.
- Knowledge of identity and access management principles.
- Familiarity with security accreditations such as ISO27001, CyberEssentials and CyberEssentials+.
- Excellent incident response and threat intelligence skills.
- Strong communication skills to convey security matters to technical and non-technical audiences.
Benefits:
- 25 Days Holiday
- Birthday Day Off
- Buy Holiday Scheme
- Career Development and Progression Opportunities
- Employee Assistance Programme
- Enhanced Company Sick Pay
- Discounted Retail Vouchers
- Reduced Gym Membership
- SCG Mobile Benefit
- Employee Referral Bonus
- Annual Salary Reviews
- Pension Scheme
- Onsite Canteen (offering free croissants and free freshly made soup daily)
- Free On-Site Parking
- Charity Events
SCG is proud to be an equal opportunities employer. We welcome applications from all parts of the community and are committed to upholding the principles of the Equality Act 2010. We are committed to supporting applicants with disabilities. We will endeavour to make necessary adjustments to ensure a fair and accessible recruitment process.
Security Engineer in Bristol employer: Southern Communications Ltd
Contact Detail:
Southern Communications Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer in Bristol
✨Tip Number 1
Network like a pro! Reach out to folks in the security field on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those related to penetration testing and vulnerability management. This will give potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on your incident response scenarios. Be ready to discuss how you've handled security incidents in the past and how you would approach new challenges. Confidence is key!
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Security Engineer in Bristol
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Engineer role. Highlight your experience with security tools, incident management, and any relevant certifications. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background makes you a great fit for our team. Keep it concise but impactful – we love a good story!
Show Off Your Technical Skills: Don’t hold back on showcasing your technical knowledge! Mention specific tools and frameworks you’ve worked with, especially those related to penetration testing and vulnerability management. We’re keen to see your expertise in action.
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, it’s super easy!
How to prepare for a job interview at Southern Communications Ltd
✨Know Your Security Tools
Make sure you brush up on your knowledge of security tools and frameworks. Be ready to discuss specific tools you've used in the past, how they helped you manage incidents, and any best practices you've implemented.
✨Showcase Your Incident Response Skills
Prepare to share examples of how you've handled security incidents in previous roles. Highlight your thought process, the steps you took, and the outcomes. This will demonstrate your ability to respond effectively under pressure.
✨Understand Compliance Standards
Familiarise yourself with ISO27001, CyberEssentials, and other relevant compliance standards. Be prepared to discuss how you've ensured compliance in past projects and how you would approach it in this role.
✨Communicate Clearly
Practice explaining complex security concepts in simple terms. You might be asked to convey security matters to both technical and non-technical audiences, so being able to adapt your communication style is key.