Cyber Security Engineer

Cyber Security Engineer

Full-Time 45000 - 60000 £ / year (est.) No home office possible
Go Premium
Wessex Water Services

At a Glance

  • Tasks: Implement and maintain security controls across cloud and on-premises environments.
  • Company: Join YTL UK, a diverse and innovative tech group.
  • Benefits: Enjoy competitive salary, generous holiday, and health benefits.
  • Other info: Great career progression opportunities and a supportive work culture.
  • Why this job: Make a real impact in cyber security while developing your skills.
  • Qualifications: Experience in security engineering and cloud platforms like Azure.

The predicted salary is between 45000 - 60000 £ per year.

In this new and exciting role, reporting to the Cyber Security Engineering Team Leader, you will implement, configure, and maintain security controls across the YTL UK Group's on-premises and cloud technology environments. The role supports the delivery of a secure baseline through recognised security engineering practices, contributing to secure build processes and optimisation activities. You will need strong technical capability in Microsoft Azure and on-premises Active Directory environments, with the ability to implement and maintain secure configurations in alignment with defined standards and architectural guidance.

What you'll do

  • Work with project, IT and Security teams to ensure security requirements are embedded within new deployments in accordance with agreed standards.
  • Implement and maintain system configurations across supported operating systems in alignment with build standards and baselines.
  • Perform configuration hardening activities and remediation of non-compliant systems to support adherence to security standards.
  • Assist in maintaining visibility of compliance against secure build baselines through validation and reporting activities.
  • Design, develop and maintain automation scripts and configurations to support security controls, configuration baselines and compliance validation activities.
  • Implement automation and orchestration capabilities to improve consistency, repeatability and efficiency of security engineering tasks, and contribute to the continual improvement of automated security controls.
  • Implement and maintain cloud security configurations in alignment with defined baselines and architectural standards, enforcing secure configuration practices across Azure and related platforms.
  • Collaborate with the IdAM and IT teams to support secure identity configuration within Azure/Entra ID environments.
  • Conduct cloud security configuration reviews and assessments, identifying misconfigurations and control gaps, and execute remediation activities in coordination with relevant teams.
  • Review security configurations for on-premises virtual machines and hypervisor platforms in alignment with secure build standards, performing configuration reviews to address identified gaps.
  • Contribute to the continual improvement of on-premises security controls by identifying optimisation opportunities and escalating issues where appropriate.
  • Configure, integrate and maintain enterprise security platforms and tooling, including endpoint protection, SIEM, EDR/XDR, CASB and related monitoring technologies.
  • Optimise tool configurations, policies and telemetry collection.
  • Support Security Operations by analysing platform performance, tuning configurations and resolving issues impacting detection capability.
  • Provide technical input to security architecture and infrastructure teams by identifying practical security enhancements and configuration improvements.
  • Advise and support secure configuration of technologies, including Active Directory, Azure/Entra ID, PKI, PAM/PIM, authentication services and application platforms.
  • Support the secure deployment and configuration of new services to ensure alignment with established baselines.
  • Contribute technical input to asset discovery and inventory tooling to improve visibility across the estate, integrating and configuring security tooling to ensure accurate asset identification and telemetry coverage.
  • Utilise defined asset management processes to support accurate tracking of systems and security control coverage, identifying visibility gaps and escalating as required.
  • Provide technical engineering support to Security Operations during incident response activities, including implementing mitigating controls, configuration changes and defensive enhancements.
  • Be willing to participate in an out-of-hours technical support rota for high-severity incidents, supporting post-incident analysis by ensuring relevant configuration and telemetry information is available.
  • Support threat hunting and detection improvement initiatives by implementing control adjustments, configuration updates or blocking mechanisms in response to IOCs.
  • Assist with compliance activities and audit requests by providing technical evidence, configuration details and remediation updates.
  • Collaborate with Security Operations, IdAM, Purple Team and infrastructure colleagues to provide practical guidance on configuration and control implementation.
  • Contribute engineering insight to projects and operational activities to ensure security requirements are implemented effectively.
  • Support colleagues in understanding secure configuration standards and applied controls within their respective technology domains.

What you'll need

  • Demonstrable knowledge of security engineering standards, practices and secure configuration principles.
  • Solid understanding of core security concepts, including defence-in-depth, least privilege, segmentation and identity-centric security models.
  • Proven hands-on experience deploying, configuring and maintaining enterprise security technologies and platforms.
  • Experience contributing to IT and cyber security projects involving the implementation of new controls or security enhancements.
  • Practical understanding of identity and access control principles and their role in maintaining confidentiality, integrity and availability.
  • Strong written communication skills for producing technical documentation, configuration standards and implementation guidance.
  • Clear verbal communication skills, able to explain configuration requirements to technical and non-technical stakeholders.
  • Ability to collaborate effectively across infrastructure, cloud and operational teams.
  • Experience supporting security investigations, including troubleshooting, remediation implementation and control adjustment.
  • Practical awareness of common cyber threats and experience implementing configuration-based mitigations.
  • Working knowledge of cloud platforms (e.g., Azure) and cloud security principles, including identity, configuration management and monitoring controls.
  • Hands-on experience with Microsoft Windows (desktop and server) environments, with working knowledge of Unix and Linux systems.

What you'll receive

  • A combined pension contribution of up to 20%.
  • Career progression and professional development opportunities.
  • 25 days' holiday rising to 28 with length of service.
  • The opportunity to sell up to five days of holiday every year.
  • The opportunity to buy up to ten days of holiday each year (subject to conditions).
  • A healthcare package that allows you to claim back healthcare costs.
  • Life assurance of up to eight times your salary.
  • The opportunity to lease a new electric car through salary sacrifice (subject to conditions).
  • Cashback and discounts from more than 3,000 retailers.
  • One paid volunteering day each year.
  • Enhanced family leave and pay arrangements.
  • Access to an interactive health and wellbeing platform.
  • Support from trained mental health first aiders.
  • A £1,000 referral fee if you recommend someone who is successfully recruited by us.

Who we are

YTL UK is part of the international YTL Group based in Kuala Lumpur. The UK companies include: Wessex Water, YTL Developments, YTL Construction UK, and YTL Live. Our people tell us that YTL UK is a great place to work, which is why so many of them stay with us! You will have a unique opportunity to develop and progress your career within such a diverse group. We are passionate about diversity and inclusion - with that in mind, all applicants are welcome. We are delighted to have signed the Armed Forces Covenant and are a Disability Confident Employer. If you require reasonable adjustments to be made during the recruitment process, please inform a member of our Recruitment team.

Cyber Security Engineer employer: Wessex Water Services

YTL UK is an exceptional employer that prioritises employee growth and well-being, offering a comprehensive benefits package including a generous pension contribution, extensive holiday options, and a supportive work culture. With a commitment to diversity and inclusion, employees are encouraged to develop their careers within a dynamic environment that values collaboration and innovation, making it an ideal place for Cyber Security Engineers to thrive.
Wessex Water Services

Contact Detail:

Wessex Water Services Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Security Engineer

✨Tip Number 1

Network like a pro! Reach out to folks in the cyber security field, attend meetups, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your projects, especially those related to Azure and security configurations. This gives potential employers a taste of what you can do and sets you apart from the crowd.

✨Tip Number 3

Prepare for interviews by brushing up on common cyber security scenarios. Be ready to discuss how you've tackled security challenges in the past, especially around compliance and configuration hardening.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!

We think you need these skills to ace Cyber Security Engineer

Microsoft Azure
Active Directory
Security Engineering Practices
Configuration Management
Automation Scripting
Cloud Security Principles
Identity and Access Management (IdAM)
Endpoint Protection
SIEM
EDR/XDR
CASB
Technical Documentation
Collaboration Skills
Troubleshooting
Cyber Threat Awareness

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cyber Security Engineer role. Highlight your experience with Microsoft Azure and Active Directory, and showcase any relevant projects that demonstrate your security engineering skills.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your skills align with our needs. Don’t forget to mention specific experiences that relate to the job description.

Showcase Your Technical Skills: In your application, be sure to highlight your technical capabilities, especially in cloud security configurations and compliance validation. We want to see your hands-on experience with security technologies and platforms!

Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s straightforward and ensures your application goes directly to us, so we can review it promptly!

How to prepare for a job interview at Wessex Water Services

✨Know Your Stuff

Make sure you brush up on your knowledge of security engineering standards and practices. Be ready to discuss how you've implemented secure configurations in both Azure and on-premises environments. This will show that you not only understand the theory but can apply it in real-world scenarios.

✨Showcase Your Experience

Prepare specific examples from your past work where you've successfully deployed and maintained security technologies. Highlight any projects where you collaborated with IT and Security teams to embed security requirements, as this demonstrates your ability to work cross-functionally.

✨Communicate Clearly

Practice explaining complex technical concepts in simple terms. You might need to communicate with both technical and non-technical stakeholders, so being able to articulate your thoughts clearly is crucial. Consider preparing a few key points about configuration requirements that you can easily explain.

✨Be Ready for Scenario Questions

Expect scenario-based questions that test your problem-solving skills. Think about potential misconfigurations or control gaps you might encounter and how you would address them. This will help demonstrate your practical awareness of common cyber threats and your proactive approach to security.

Cyber Security Engineer
Wessex Water Services
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>