Key Responsibilities
- Embed secure-by-design principles across technology projects and programmes.
- Engage with delivery teams early to identify and address security requirements, risks and dependencies.
- Review solution designs, architecture documentation and technical proposals from a security perspective.
- Carry out threat modelling and identify risks around data flows, integrations, trust boundaries and third-party services.
- Translate security requirements into practical controls, actions and delivery requirements.
- Provide security assurance throughout the project lifecycle, including readiness and go-live reviews.
- Support the configuration, adoption and ongoing improvement of Microsoft-focused security platforms.
- Act as a technical point of contact for security platform issues, requests and operational queries.
- Troubleshoot platform-related issues and work with Security Operations, engineering teams and vendors where required.
- Support the implementation and onboarding of new security capabilities and tooling.
- Work with third-party security vendors on support cases, upgrades, fixes and new functionality.
- Develop practical security standards, templates, checklists and guidance for technology teams.
- Identify recurring security and platform issues and drive improvements to processes, configurations and controls.
- Work closely with Security Architecture, Security Operations, GRC and wider technology teams to deliver consistent security outcomes.
Key Skills & Experience
- Strong commercial experience as a Security Engineer within a complex enterprise environment.
- Proven experience delivering secure-by-design security outcomes across technology projects.
- Strong understanding of security across applications, infrastructure, cloud, identity and integrations.
- Experience reviewing technical and solution architectures and identifying security risks.
- Strong hands-on experience with Microsoft security technologies, covering areas such as identity, endpoint, cloud, monitoring and data security.
- Experience supporting or configuring enterprise security platforms and tooling.
- Practical experience with security assurance, risk assessment and threat modelling.
- Strong stakeholder management skills, with the ability to work effectively with architects, engineers and delivery teams.
- Experience managing security-related tickets, service requests and operational issues.
- Able to work independently and make an immediate impact in a fast-moving environment.
- Strong written and verbal communication skills, with the ability to turn complex security requirements into practical guidance.
We're looking for someone who is pragmatic, hands-on and delivery focused.
You'll be comfortable challenging technical teams where necessary, but equally focused on finding practical solutions rather than creating blockers.