Cyber Security Engineer

Cyber Security Engineer

Posted 1 day ago by Reed Professional Services

Negotiable
Inside
Hybrid
London Area, United Kingdom

Summary: The Cyber Security Engineer role involves joining the Information Security team to enhance security engineering capabilities within a dynamic environment. The position focuses on integrating security measures into IT infrastructure, conducting risk assessments, and collaborating with stakeholders to ensure the safety of operations. The role requires significant experience in security engineering and knowledge of cloud security, particularly AWS. The position offers a hybrid working model with flexibility for in-office work.

Key Responsibilities:

  • Capture and refine information security requirements and ensure their integration into information systems through proper configuration.
  • Work collaboratively with stakeholders across the organisation to embed adequate security measures.
  • Perform security reviews, identify gaps in security posture, and develop security risk management plans.
  • Define and document processes and procedures to secure infrastructure, hardware, and software.
  • Conduct risk assessments to identify potential security vulnerabilities and threats to systems and data.
  • Work with stakeholders to remediate risks and ensure the security of information systems.
  • Manage risks, assumptions, issues, decisions, opportunities, constraints, and dependencies throughout problem-solving activities.
  • Handle ad hoc requests from the Information Security Engineering Lead.

Key Skills:

  • Significant experience in security engineering.
  • Knowledge and understanding of Cloud security, with qualifications and/or certifications for AWS.
  • Proficiency in a broad range of security controls including Secure Software Development Lifecycles, firewalls, email filtering, web applications firewalls, and more.
  • Familiarity with common information security management frameworks such as NIST, ISO 27001, PCI, CIS, OWASP.
  • Exceptional communication, presentation, collaboration, problem-solving, reporting, and stakeholder management skills at all levels.
  • Desirable: CISSP - Certified Information Systems Security Professional.
  • Cloud security qualifications and/or certifications for GCP and Azure.
  • Extensive risk management experience (CRISC, ISO27005, NIST RMF).
  • Skills in network security, coding (Python, Bash, PowerShell, GitHub), and penetration testing.

Salary (Rate): undetermined

City: London

Country: United Kingdom

Working Arrangements: hybrid

IR35 Status: inside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Contract duration: 3 months

Location: London

Paying inside IR35

Join our client's Information Security (‘InfoSec’) team, where you will play a crucial role in establishing and driving the security engineering capability. This position offers the opportunity to work within a dynamic environment, ensuring the security of our IT infrastructure and contributing to the overall safety of our operations.

Day-to-day of the role:

  • Capture and refine information security requirements and ensure their integration into information systems through proper configuration.
  • Work collaboratively with stakeholders across the organisation to embed adequate security measures.
  • Perform security reviews, identify gaps in security posture, and develop security risk management plans.
  • Define and document processes and procedures to secure infrastructure, hardware, and software.
  • Conduct risk assessments to identify potential security vulnerabilities and threats to systems and data.
  • Work with stakeholders to remediate risks and ensure the security of information systems.
  • Manage risks, assumptions, issues, decisions, opportunities, constraints, and dependencies throughout problem-solving activities.
  • Handle ad hoc requests from the Information Security Engineering Lead.

Required Skills & Qualifications:

  • Significant experience in security engineering.
  • Knowledge and understanding of Cloud security, with qualifications and/or certifications for AWS.
  • Proficiency in a broad range of security controls including Secure Software Development Lifecycles, firewalls, email filtering, web applications firewalls, and more.
  • Familiarity with common information security management frameworks such as NIST, ISO 27001, PCI, CIS, OWASP.
  • Exceptional communication, presentation, collaboration, problem-solving, reporting, and stakeholder management skills at all levels.
  • Desirable: CISSP - Certified Information Systems Security Professional.
  • Cloud security qualifications and/or certifications for GCP and Azure.
  • Extensive risk management experience (CRISC, ISO27005, NIST RMF).
  • Skills in network security, coding (Python, Bash, PowerShell, GitHub), and penetration testing.

Benefits:

Engage in a high-impact, fast-paced role with significant responsibility.

Hybrid working model - flexibility with 3 days a week in the office.