Cyber Security Engineer
Indexed description
About the Role
I am currently engaged with a leading health care organisation that is seeking a Cyber Security Engineer to join its Security function. This is an exciting opportunity for a security professional with strong Microsoft and Azure expertise to play a key role in protecting critical systems, data, identities, and cloud services.
Working closely with the Senior Cyber Security Specialist, you will be responsible for implementing, maintaining, and continuously improving cyber security controls across Microsoft 365, Azure, endpoint environments, and cloud platforms. You'll combine hands-on security engineering with governance, assurance, and compliance activities to ensure technology solutions remain secure, resilient, and aligned with regulatory requirements.
Key Responsibilities
Security Engineering - (Primary)
- Design, implement, and manage security controls across Microsoft Azure
- Participate in architecture reviews for new systems, applications, and infrastructure projects to ensure security requirements are incorporated from the design phase.
- Implement and maintain Zero Trust security principles, ensuring verification of users, devices, and access requests at all layers, and reducing reliance on perimeter-based controls
- Secure Azure workloads and services, including virtual machines, storage accounts, databases, and platform services, ensuring secure configurations, encryption, and appropriate network controls (NSGs, private endpoints, Azure Firewall)
- Develop and maintain security baselines and configuration standards for cloud and endpoint environments, ensuring consistency and compliance across the organisation
- Support endpoint security and device management, working with Microsoft Intune to enforce compliance policies, device hardening, encryption (e.g., BitLocker), and secure configuration of user devices
- Continuously assess and improve the security posture of the Microsoft environment by leveraging Secure Score, Defender recommendations, and threat intelligence insights
- Collaborate closely with infrastructure, cloud, and application teams to ensure security controls are practical, effective, and aligned with business and operational needs
- Drive automation and efficiency by developing scripts and workflows to enhance security operations and reduce manual effort
- Provide technical expertise and guidance to internal stakeholders, supporting the adoption of secure practices and ensuring that security considerations are embedded across all technology solutions
Compliance & Assurance
- Support compliance activities aligned to ISO 27001, Cyber Essentials Plus, and NHS DSP Toolkit requirements.
- Assist with internal and external audits.
- Maintain security policies, procedures, standards, and documentation.
- Support governance and risk management initiatives.
Cloud & Infrastructure Security
- Implement and manage security controls across cloud environments.
- Configure cloud-native security services, identity management, encryption, logging, and monitoring solutions.
- Conduct cloud security assessments and support secure cloud migrations.
- Ensure secure configuration and hardening of servers, endpoints, databases, and network devices.
- Support segmentation, secure remote access, and Zero Trust initiatives.
What We're Looking For
Essential Skills & Experience
- Hands-on experience with Microsoft security technologies, including the Microsoft Defender suite.
- Strong knowledge of Azure security, including Defender for Cloud, Azure Policy, Azure Firewall, and NSGs.
- Experience with Microsoft Entra ID (Azure AD), Conditional Access, MFA, PIM, and RBAC.
- Understanding of Zero Trust architecture and modern security principles.
- Knowledge of network security, firewalls, and intrusion detection/prevention technologies.
- Experience securing endpoints through Intune, device compliance, hardening, and encryption.
- Familiarity with ISO 27001, Cyber Essentials Plus, and NHS DSP Toolkit requirements.
- Experience in cyber security engineering within Microsoft cloud environments.
Desirable Qualifications
- Degree in Cyber Security, Computer Science, IT, or equivalent experience.
- CompTIA Security+ or equivalent certification.
- CISSP, CISM, or other advanced security certifications.
- ISO 27001-related certifications (Foundation, Implementer, or Lead Auditor).
Why Join Us?
This is an opportunity to make a meaningful impact within a growing organisation where cyber security is a strategic priority. You'll work with modern Microsoft security technologies, contribute to major cloud and security initiatives, and help shape a secure-by-design culture across the business.
If you're passionate about cyber security and want to help protect critical healthcare services, we'd love to hear from you.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search