Cyber Security Engineer

Cyber Security Engineer

Full-Time 50000 - 60000 £ / year (est.) Home office (partial)
Womble Bond Dickinson (UK) LLP

At a Glance

  • Tasks: Protect and enhance the firm's cyber security across various technology layers.
  • Company: Join a leading legal firm known for its innovative IT solutions.
  • Benefits: Hybrid working, competitive salary, and opportunities for professional growth.
  • Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
  • Qualifications: Expert knowledge in cyber security and strong communication skills required.
  • Other info: Dynamic team environment with excellent career advancement opportunities.

The predicted salary is between 50000 - 60000 £ per year.

We are currently looking for an experienced Cyber Security Engineer to join our IT team on a full-time, permanent basis to help deliver our Modern Workplace strategy. This role can be based in Newcastle, Bristol or Plymouth and falls under our hybrid working policy. We would ask that you reside close enough to one of our office locations so that you can visit weekly/a few days a fortnight as per current working practices.

The team: First-class IT systems are absolutely key to the success of any business in today's commercial world and the legal sector is no exception. Womble Bond Dickinson (UK) LLP prides itself on being at the forefront of technological advancements within the legal profession, something we've become well known for. To remain competitive in our markets, and to continue supporting our growth strategies, our team of dedicated IT professionals have a key role to play, ensuring the integrity of the IT infrastructure, development of new and existing systems and excellent support to all of our employees, and clients.

The role: The purpose of this role is to protect the confidentiality, integrity, and availability of the firm's information systems and data. The Cyber Security Engineer is responsible for the design, implementation, operation, and continuous improvement of cyber security controls across a complex and heavily third-party integrated technology estate. This role is critical to maintaining the firm's security posture, meeting regulatory and client security requirements, supporting audits and accreditations, and enabling the safe operation and evolution of the firm's IT services.

What we are looking for? We are open to different industry backgrounds, so you do not necessarily need to have worked within the legal sector. What is most important is your expert knowledge, approach, attitude and ability to communicate your ideas and contribute to improving the future direction of our infrastructure journey.

Principal Duties
  • Operate, maintain and enhance the firm's cyber security controls across endpoint, email, identity, network, cloud and application layers.
  • Manage and integrate a broad ecosystem of third-party cyber security platforms, including managed detection and response services, email security gateways, vulnerability management tools, privileged access management and threat intelligence services.
  • Lead and support cyber security incident response activities, including investigation, containment, remediation and post incident review.
  • Oversee security monitoring, alerting and response processes, working closely with managed service providers where applicable.
  • Conduct and coordinate vulnerability assessment and remediation activities across infrastructure, endpoints, applications and cloud services.
  • Support regulatory, client and internal audits (e.g. ISO 27001), including evidence gathering, control validation and remediation planning.
  • Maintain security policies, standards, procedures and technical documentation on the IT Wiki.
  • Work closely with infrastructure, applications, data and supplier teams to embed security by design across projects and services.
  • Provide third line support for security related incidents and escalations from the Service Desk and wider IT teams.
  • Assess and manage cyber security risks associated with new technologies, suppliers and business initiatives.
  • Support threat intelligence activities and ensure emerging threats are assessed for relevance to the firm's environment.
  • Provide guidance, mentoring and knowledge sharing to improve cyber security awareness and capability across IT.
Minimum requirements and certifications

To be considered you must meet the minimum requirements and ideally have a mix of the following certifications:

  • Recognised cyber security certifications (e.g. CC, SSCP, CISSP, CEH, Security+, or equivalent).
  • Microsoft cloud security aligned certifications (e.g. SC-100, SC-200, SC-300, AZ-500).
  • Strong hands-on experience operating enterprise cyber security platforms from multiple vendors.
  • Proven experience working in regulated environments with formal audit and compliance requirements.
  • Strong understanding of cyber security frameworks, risk management and control assurance.
  • Ability to clearly articulate technical security risks to non-technical stakeholders.
Highly desired experience
  • Security operations (SecOps), incident response and threat analysis.
  • Managed detection and response (MDR) service oversight and integration.
  • Email security, endpoint protection, vulnerability management and identity security platforms.
  • Privileged access management (PAM) solutions.
  • Cloud and hybrid infrastructure security.
  • Supplier and third-party security risk assessment.
  • Experience within legal, professional services or similarly regulated environments.
  • Experience of scoping and delivering technical projects.

In addition to your technical skills, we are looking for a candidate who has the right attitude, mindset and is driven, hungry to learn and able to excel in their area of expertise and is eager to contribute with a desire to be successful.

Cyber Security Engineer employer: Womble Bond Dickinson (UK) LLP

Womble Bond Dickinson (UK) LLP is an exceptional employer that fosters a dynamic and inclusive work culture, prioritising employee growth and development within the rapidly evolving legal sector. With a commitment to technological advancement, our Cyber Security Engineers play a pivotal role in safeguarding our IT infrastructure while enjoying the benefits of hybrid working arrangements from vibrant locations like Newcastle, Bristol, or Plymouth. We offer competitive remuneration, comprehensive training opportunities, and a collaborative environment that encourages innovation and professional excellence.
Womble Bond Dickinson (UK) LLP

Contact Detail:

Womble Bond Dickinson (UK) LLP Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Security Engineer

✨Tip Number 1

Network like a pro! Attend industry meetups, webinars, or local tech events. It's all about making connections and showing off your passion for cyber security. You never know who might be looking for someone just like you!

✨Tip Number 2

Get your online presence sorted! Update your LinkedIn profile to reflect your skills and experiences. Share relevant articles or insights about cyber security to showcase your knowledge and engage with others in the field.

✨Tip Number 3

Prepare for interviews by practising common questions and scenarios related to cyber security. Think about how you'd handle specific incidents or challenges. This will help you feel more confident and ready to impress!

✨Tip Number 4

Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our team. Tailor your application to highlight how your skills align with our needs, and let us know why you're excited about the role!

We think you need these skills to ace Cyber Security Engineer

Cyber Security
Incident Response
Vulnerability Management
Threat Intelligence
Security Monitoring
Regulatory Compliance
ISO 27001
Cloud Security
Identity Security
Privileged Access Management
Risk Management
Technical Documentation
Communication Skills
Mentoring
Project Delivery

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cyber Security Engineer role. Highlight your relevant experience and skills that match the job description, especially your knowledge of cyber security frameworks and incident response.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you a great fit for our team. Don’t forget to mention your eagerness to contribute to our Modern Workplace strategy.

Showcase Your Certifications: List any relevant certifications prominently in your application. Whether it's CC, CISSP, or Microsoft cloud security certifications, we want to see what you've got! This shows us you're serious about your professional development.

Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates from us!

How to prepare for a job interview at Womble Bond Dickinson (UK) LLP

✨Know Your Stuff

Make sure you brush up on your cyber security knowledge, especially around the specific technologies and frameworks mentioned in the job description. Be ready to discuss your hands-on experience with enterprise cyber security platforms and how you've tackled challenges in previous roles.

✨Showcase Your Communication Skills

Since you'll need to articulate technical risks to non-technical stakeholders, practice explaining complex concepts in simple terms. Think of examples where you've successfully communicated security issues or solutions to different audiences.

✨Prepare for Scenario Questions

Expect to be asked about how you'd handle specific cyber security incidents or vulnerabilities. Prepare by thinking through past experiences where you led incident response activities or managed security controls, and be ready to share your thought process.

✨Research the Company Culture

Womble Bond Dickinson values innovation and collaboration, so it’s a good idea to understand their approach to technology in the legal sector. Familiarise yourself with their Modern Workplace strategy and think about how your skills can contribute to their goals.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>