An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Scale-Up Global Insurance Group seeks a Cyber Security Engineer to own the Zero Trust programme, focusing on Entra ID identity controls, Defender XDR policy tuning, Purview data protection, and endpoint hardening standards. You’ll automate security tasks, contribute to the M&A security playbook, and partner with MDR/XDR providers to ensure proactive protection.
The role is hybrid in London, reporting to the Lead Infrastructure Security Engineer, with a strong emphasis on automation and
Cyber Security Engineer | Zero Trust Platform & Identity Controls | Scale-Up Global Insurance Group | London (Hybrid) | up to £60K base
Our client is a fast-scaling, PE-backed specialist insurance group operating across the UK, Ireland, Europe, Singapore, and Australia. Having acquired over fifty separate businesses spanning specialist lines including professional indemnity, financial lines, and commercial insurance, they are executing a group-wide IT transformation programme to rebuild a fragmented legacy footprint into a unified, highly secure, and automated platform.
Operating with a Microsoft-first technology strategy, the organisation runs a lean in-house technology team that leverages world-class external partners to achieve massive operational leverage. They champion absolute ownership, engineering discipline, and radical simplicity—moving dynamically without layers of bureaucracy or corporate hand-holding. They are anti-bureaucracy but pro-governance, delivering regulatory compliance and security controls (ISO 27001 / NIST CSF) directly through platform automation rather than paperwork and committees.
If you are an exceptionally bright, technically curious engineer who would rather design a smart automated fix for a recurring problem than quietly work around it, you will find a massive opportunity here.
Reporting directly to the Lead Infrastructure Security Engineer within the Security & Devices team, this is a hands-on, keyboard-level security engineering role designed to build, automate, and maintain the technical security controls protecting the group.
This is not a passive policy oversight or ticket-monitoring position. While you will provide second-line security operations cover for alerts escalated by the group's outsourced MDR/XDR provider, your primary mission is proactive security engineering. You will own the Zero Trust security programme covering Entra ID identity controls, Microsoft Defender XDR policy tuning, Purview data protection, and endpoint hardening standards implemented by the infrastructure team. Additionally, you will play a central role in the M&A security playbook—standardising and automating the security posture of newly acquired entities through a structured "Contain, Encapsulate, Absorb" methodology.