At a Glance
- Tasks: Support and enhance the company's information security programme while learning hands-on skills.
- Company: Join a forward-thinking company dedicated to protecting data and systems.
- Benefits: Gain valuable experience, competitive salary, and opportunities for professional growth.
- Other info: Collaborative environment with a focus on continuous improvement and ethical practices.
- Why this job: Dive into the world of cybersecurity and make a real difference in protecting customers.
- Qualifications: Degree in Cyber Security or related field; eagerness to learn and grow.
The predicted salary is between 30000 - 40000 £ per year.
The Information Security Engineer supports the day-to-day operation of the company’s information security program. This role reports into the Information Security Associate Director and works closely with cross-functional partners to help protect systems, data, and customers while building foundational experience across security operations, risk management, and compliance.
This role is ideal for someone with a strong interest in technical information security who is eager to learn, detail-oriented, and motivated to deepen their hands-on security expertise. Over time, it offers an excellent opportunity to grow into broader technical security or cyber risk responsibilities.
Responsibilities:- Support the implementation and maintenance of information security policies, standards, and procedures.
- Experience of monitoring tools, security tools, alerts, and logs: SIEM Platforms.
- Experience of EDR tools.
- Support incident response activities, including documentation, evidence collection, and post-incident reporting.
- Assist with third-party vendor security reviews and risk assessments.
- Help prepare documentation and evidence for audits, customer security questionnaires, and compliance reviews.
- Maintain security registers, risk logs, and control documentation.
- Support employee security awareness initiatives and training programs.
- Participate in continuous improvement of security processes and controls.
- Produce reports for internal and external stakeholders.
- Understanding of information security principles and risk management concepts.
- Familiarity with cloud environments, SaaS applications, or enterprise IT systems.
- Strong attention to detail with the ability to follow defined processes and document work clearly.
- Ability to communicate effectively with technical and non-technical stakeholders.
- Willingness to learn and take ownership of assigned tasks.
- Strong organizational skills and ability to manage multiple priorities.
- Degree in Cyber Security, Information Security, Computer Science, Information Technology, or a related field, or equivalent practical experience.
- Certifications (preferred or in progress):
- CompTIA Security+
- BCS Foundation Certificate in Cyber Security
- ISO/IEC 27001 Foundation
- NCSC-aligned training or certifications.
All StarCompliance employees are expected to commit to a high standard of personal integrity and carry out their responsibilities in an ethical manner.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Information Security Engineer - UK Based in York employer: StarCompliance
Contact Detail:
StarCompliance Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Engineer - UK Based in York
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to information security. This gives potential employers a taste of what you can do beyond just a CV.
✨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and incident response strategies. Practise explaining your thought process clearly, as communication is key when dealing with both technical and non-technical stakeholders.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Information Security Engineer - UK Based in York
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Engineer role. Highlight relevant experience, especially in security operations and risk management, and don’t forget to mention any certifications you have or are working towards!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to express your passion for information security and how your skills align with our needs. Be sure to mention specific tools or experiences that relate to the job description.
Show Off Your Attention to Detail: In the world of information security, attention to detail is key. Make sure your application is free from typos and clearly formatted. This shows us you can follow defined processes and document your work effectively.
Apply Through Our Website: We encourage you to apply through our website for the best chance of being noticed. It’s straightforward and ensures your application goes directly to our recruitment team. Plus, we love seeing candidates who take the initiative!
How to prepare for a job interview at StarCompliance
✨Know Your Stuff
Make sure you brush up on your information security principles and risk management concepts. Familiarise yourself with common tools like SIEM platforms and EDR tools, as well as the specifics of cloud environments and SaaS applications. This knowledge will help you answer technical questions confidently.
✨Show Your Attention to Detail
Since this role requires a strong attention to detail, be prepared to discuss how you've followed defined processes in past experiences. Bring examples of how you've documented work clearly or managed multiple priorities effectively. This will demonstrate your fit for the role.
✨Communicate Like a Pro
You'll need to communicate with both technical and non-technical stakeholders, so practice explaining complex concepts in simple terms. Think about how you can convey your ideas clearly and concisely during the interview, as this will showcase your ability to bridge the gap between different audiences.
✨Emphasise Your Willingness to Learn
This position is perfect for someone eager to deepen their hands-on security expertise. Be ready to share examples of how you've taken ownership of tasks and sought out learning opportunities in the past. Highlight your motivation to grow within the field and contribute to continuous improvement initiatives.