Enable job alerts via email!

Cyber Security Administrator

ESP Utilities Group Ltd

Leatherhead

On-site

GBP 40,000 - 60,000

Full time

Yesterday
Be an early applicant

Job summary

A utilities organization is seeking a Cyber Security Administrator to oversee cybersecurity operations and incident responses. The successful candidate will handle Microsoft 365 and Azure environments, ensuring data security and compliance through effective management and collaboration. Ideal for candidates with 2-4 years of experience in IT or cybersecurity administration roles.

Qualifications

  • 2-4 years of experience in IT or cybersecurity administration roles.
  • Strong understanding of security configurations and compliance frameworks.
  • Experience with automated processes or scripting is advantageous.

Responsibilities

  • Monitor and manage day-to-day cybersecurity operations.
  • Respond to cybersecurity incidents and alerts.
  • Conduct security configuration reviews and updates.
  • Administer email security controls effectively.

Skills

Microsoft 365 Security & Compliance Centre
Azure AD / Entra ID configuration
Incident response workflows
Documentation and communication skills
Email security solutions
Network security tools
Vulnerability management
Endpoint protection

Tools

Microsoft Defender for Endpoint
Splunk
PowerShell
Python
Job description
Overview

The Cyber Security Administrator is responsible for the day-to-day operation, monitoring, and improvement of the organization's cybersecurity posture. This role ensures that systems and data remain secure and available through proactive management, incident response, and collaboration with SOC and SIEM teams. The successful candidate will have hands-on experience in Microsoft 365 and Azure environments, as well as familiarity with MDR, email, and network security tools.

Key Responsibilities
  • Monitor and manage day-to-day cybersecurity operations across on-premise and Microsoft environments.
  • Respond to and assist in resolving cybersecurity incidents, alerts, and escalations.
  • Work closely with the SOC and SIEM teams to triage, analyse, and remediate detected threats.
  • Conduct regular reviews and updates of security configurations, firewall rules, and endpoint protection settings.
  • Identify, assess, and remediate manual configuration vulnerabilities in systems and applications.
  • Maintain and review user access controls, MFA enforcement, and identity protection settings.
  • Review, audit, and remediate Identity and Access Management (IAM) credentials and permissions to ensure least privilege access, reduce risk of credential misuse, and maintain compliance with security policies.
  • Review, monitor, and manage Data Loss Prevention (DLP) policies and technologies to prevent unauthorized data access, transmission, or exfiltration across endpoints, email, and cloud services.
  • Assist in the implementation and upkeep of MDR (Managed Detection and Response) solutions.
  • Administer and optimise email security controls (e.g., Microsoft Defender for Office 365, Proofpoint, Mimecast).
  • Support periodic audits and compliance checks (ISO 27001, Cyber Essentials, or equivalent).
  • Document incidents, configuration changes, and policy updates accurately and consistently.
  • Contribute to continuous improvement of security policies, processes, and documentation.
Essential Skills & Experience
  • 2-4 years of experience in IT or cybersecurity administration roles.
  • Microsoft 365 Security & Compliance Centre
  • Azure AD / Entra ID configuration and security settings
  • Endpoint protection (Defender for Endpoint or similar)
  • SIEM platforms (e.g., Sentinel, Splunk, or equivalent)
  • MDR and EDR tools
  • Email security solutions (Defender, Proofpoint, Mimecast, etc.)
  • Network security tools such as firewalls, VPNs, and intrusion prevention systems
  • Strong understanding of incident response workflows and escalation procedures.
  • Familiarity with vulnerability management tools and patching practices, including manual remediations
  • Solid grasp of authentication, identity management, and least privilege principles.
  • Strong documentation and communication skills, with the ability to convey technical detail clearly
Desirable Qualifications & Certifications
  • Experience working in a hybrid cloud environment (Azure + on-prem).
  • Exposure to scripting or automation (PowerShell, Python) is advantageous.
  • Familiarity with compliance frameworks such as ISO 27001, NIST, or Cyber Essentials.
  • CompTIA Security+, CySA+, or Microsoft SC-200
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.