Back to search
REX Cyber Security Linkedin · Posted 15d ago

Cyber Security Engineer

United Kingdom

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Cyber Security Engineer

Leading International Law Firm

Leeds/Hybrid

£70,000 per annum + up to 20% Bonus & Comprehensive Benefits Package


We are working with a leading international law firm looking to appoint a Cyber Security Engineer to join its growing Cyber Security function.


This is a hands-on technical role with a strong focus on security operations, threat detection, incident response and continuous improvement. You will help protect the firm's systems, infrastructure and highly sensitive client data, while improving security capabilities across cloud, endpoint, identity and data environments.


The role offers the opportunity to work with modern Microsoft security technologies, including Microsoft Sentinel and Security Copilot, while also playing a key role in how the firm responds to emerging threats, particularly those associated with AI, automation and agentic technologies.


The Role


Working closely with senior members of the Cyber Security team and the wider IT function, you will help strengthen the firm's operational security capability and ensure security is embedded across technology decisions and platform change.


You will be involved across both proactive security improvement and reactive incident response, working alongside infrastructure, cloud, data and architecture teams as well as the firm's outsourced SOC/MDR provider.


Key responsibilities will include:


  • Supporting security monitoring, detection, investigation and incident response
  • Developing and refining detection logic within Microsoft Sentinel, including alert tuning and improving investigation workflows
  • Using Microsoft Security Copilot and AI-assisted technologies to improve investigation, triage and analysis
  • Designing and implementing AI-driven tooling and automation to enhance threat detection, incident response and security operations
  • Identifying emerging threats, including ransomware, identity-based attacks, cloud vulnerabilities and AI-driven attack techniques
  • Supporting complex and high-severity security investigations
  • Working closely with the firm's outsourced SOC/MDR provider to improve monitoring, response and overall service quality
  • Developing and improving incident response processes, playbooks and security automation
  • Supporting security across Azure, endpoint, identity and data environments
  • Contributing to the design and implementation of practical cyber security solutions
  • Working with Infrastructure, Data, Architecture and Service Management teams to embed security into technology delivery
  • Supporting audit, compliance and client security assurance requirements


What we're looking for


We are looking for a technically strong cyber security professional with hands-on experience across security operations, detection and incident response.


You should have:


  • Strong experience within cyber security operations, incident response, threat detection or a similar technical security role
  • Hands-on experience with Microsoft Sentinel in a production environment
  • Good knowledge of Microsoft Security Copilot or similar AI-assisted security technologies
  • Experience working with or managing an outsourced SOC or MDR provider
  • Strong understanding of modern cyber threats, including ransomware, identity attacks, cloud security risks and emerging AI-driven threats
  • Experience working across Microsoft Azure security environments
  • Knowledge of detection engineering, alert tuning and investigation workflows
  • Experience developing incident response processes and playbooks
  • Good understanding of security frameworks, controls and governance
  • Strong analytical and problem-solving skills
  • The ability to communicate technical security risks clearly to both technical and non-technical stakeholders
  • Relevant industry certifications such as Security+, SC-200, AZ-500, SSCP, CySA+ or equivalent would be highly valued.


Why join?


This is an opportunity to join a leading international law firm and play an important role in the continued development of its cyber security capability.


You will have exposure to sophisticated security challenges, modern Microsoft security technologies and emerging areas such as AI-driven security operations and agentic threats, while working in an environment where cyber security is considered a critical business priority.


The role offers a strong balance between hands-on technical security, incident response, security engineering and longer-term capability improvement, with the opportunity to have a genuine impact on how security evolves across the firm.

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search